Skip to content

Commit 3fa6cfb

Browse files
authored
Merge pull request #79 from opsdisk/add-log-file-switch
Add --log switch and misc. other updates
2 parents c8356eb + 205a621 commit 3fa6cfb

15 files changed

Lines changed: 455 additions & 49 deletions

README.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -217,6 +217,11 @@ one will be generated.
217217
`-s [optional/path/to/results.txt]` - Save URLs to a text file. If you do not specify a filename, a datetimestamped one
218218
will be generated.
219219

220+
### Save logs
221+
222+
`--log [optional/path/to/file.log]` - Save logs to the specified file. If you do not specify a filename, the default
223+
file `pagodo.py.log` at the root of pagodo directory will be used.
224+
220225
## Google is blocking me!
221226

222227
Performing 7300+ search requests to Google as fast as possible will simply not work. Google will rightfully detect it

dorks/advisories_and_vulnerabilities.dorks

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2216,3 +2216,4 @@ inurl:wp-content/plugins/Ultimate-member
22162216
inurl:/wp-content/plugins/wpdiscuz/
22172217
inurl:quicklinks.aspx
22182218
"PHP Projectworlds 1.0"
2219+
inurl:"index.php?page=news.php"

dorks/all_google_dorks.json

Lines changed: 1 addition & 1 deletion
Large diffs are not rendered by default.

dorks/all_google_dorks.txt

Lines changed: 196 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6956,7 +6956,7 @@ intext:"index of/" "top secret" gov
69566956
inurl:/servicedesk/customer/user/signup
69576957
inurl:wp-content/plugins/easy-wp-smtp
69586958
Fwd: inurl:"/sslvpn_logon.shtml" intitle:"User Authentication" "WatchGuard Technologies"
6959-
Re: inurl:"/app/kibana#"
6959+
inurl:"/app/kibana#"
69606960
intitle:"Portal" inurl:"login.jsp"
69616961
intitle:"SonicWall Analyzer Login"
69626962
intext:"adobe coldfusion 8"
@@ -7339,3 +7339,198 @@ Fwd: intitle:"atvise - next generation"
73397339
site:papaly.com + keyword
73407340
inurl:adminpanel site:gov.*
73417341
site:vps-*.vps.ovh.net
7342+
intitle:"Apache Flink Web Dashboard"
7343+
intitle:"Login to SDT-CS3B1"
7344+
intitle:" SyncThru Web Service" intext:"Supplies Information"
7345+
inurl:"ucp.php?mode=login"
7346+
intitle:iDRAC* inurl:login.html
7347+
intitle:"Index of cd"
7348+
intitle:"index of" "files.pl"
7349+
intitle:"index of" "man.sh"
7350+
allintitle:index of "/icewarp"
7351+
allintitle:index of "/microweber"
7352+
Fwd: intitle:"Web UI" inurl:"/cgi-bin/luci"
7353+
site:gov.* intitle:"index of" *Dokuments"
7354+
site:gov.* intitle:"index of" *.css
7355+
intitle:"index of" google-api-php-client
7356+
intitle:"index of" twitter-api-php
7357+
intitle:"index of /" "sqlite.db"
7358+
intitle:"index of" sns-login
7359+
intitle:"index of" linkedin-api
7360+
intitle:"index of" facebook-api
7361+
intitle:"index of" instagram-api
7362+
intitle:"index of" zoom-api
7363+
=?UTF-8?Q?intitle:"Index_of=E2=80=9D_user=5Fcarts_OR_user_=5Fcart.?=
7364+
intitle:"Index of" htpasswd
7365+
intitle:"Index of" etc/shadow
7366+
intitle:"Index of" pwd.db
7367+
intitle:"Index of" people.1st
7368+
service._vti_pvt.index
7369+
=?UTF-8?Q?=E2=80=9CIndex_of_/backup=E2=80=9D?=
7370+
# Description: site:gov.in filetype:xlsx "password"
7371+
intitle:index.of.etc
7372+
inurl:/intranet/signup
7373+
site:gov.* intitle:"index of" *.doc
7374+
site:gov intitle:"index of" *.data
7375+
intitle:"index of" .ovpn
7376+
site:gov.* intitle:"index of" *.pptx
7377+
site:org.* intitle:"index of" * resources
7378+
site:gov.* intitle:"index of" *.xls
7379+
inurl:/admin/login.php intitle:("Iniciar sesion" OR "hacked")
7380+
intext:"SQL" && "DB" inurl:"/runtime/log/"
7381+
intitle:" index of "/order/status"
7382+
inurl:"*admin|login" site: gov
7383+
intitle:"index of" "wp-upload"
7384+
intitle:"index of" filetype:sql
7385+
intitle:"index of" " *admin-login.php "
7386+
intitle:"index of" " *config.php "
7387+
intitle:"index of" " admin.php "
7388+
intitle:index of /backup private
7389+
intitle:"index of" " index.php?id= "
7390+
intitle:"index of" " wp-includes "
7391+
inurl:.com index of movies
7392+
inurl:.com index of apks
7393+
site:.com intitle:"Admin portal"
7394+
intitle:index of "aws/credentials"
7395+
inurl:wp-content/plugins/reflex-gallery/
7396+
site:com.* intitle:"index of" *.admin
7397+
site:com.* intitle:"index of" *.admin.password
7398+
index of "fileadmin/php"
7399+
intitle:"index of" "admin-shell"
7400+
site:gov.* intitle:"index of" *.php
7401+
site:gov.* intitle:"index of" *.shell
7402+
site:com.* intitle:"index of" *shell.php
7403+
site:gov.* intitle:"index of" *.db
7404+
site:com.* intitle:"index of" *.db
7405+
site:com.* intitle:"index of" *.sql
7406+
site:.edu intext:"index of" "shell"
7407+
"index of" :.py
7408+
"index of" :.env
7409+
"index of" filetype:env
7410+
"index of" filetype:sql
7411+
"index of" filetype:db
7412+
site:com intitle:index of ..................etcpasswd
7413+
inurl:*org intitle:"index of" "docker-compose"
7414+
intext:"/webdynpro/resources/sap.com/"
7415+
intitle:"index of" ".env" OR "pass"
7416+
intitle:"HFS" AND intext:"httpfileserver 2.3" AND -intext:"remote"
7417+
ext:java intext:"import org.apache.logging.log4j.Logger;"
7418+
"This system" inurl:login
7419+
intitle:"SAP Web Application Server" logon
7420+
intitle:"index of" "java.log" | "java.logs"
7421+
intitle:index of ./jira-software
7422+
allintext:wp-includes/rest-api
7423+
inurl:/sap/bc/webdynpro/ logon
7424+
intext:"token" filetype:log "authenticate"
7425+
intitle:"index of" "printenv.pl
7426+
intitle:Index of "pyvenv.cfg"
7427+
inurl:webcam site:skylinewebcams.com inurl:roma
7428+
inurl:/doc/page/login.asp?
7429+
intitle:"login" intext:"authorized users only"
7430+
intitle:"Login. MicroStrategy"
7431+
inurl:"microstrategy/servlet/mstrweb"
7432+
inurl:/RDWeb/Pages/en-US/ filetype:aspx ~login
7433+
intitle:"ST Web Client"
7434+
inurl:7001/console intitle:weblogic
7435+
inurl: document/d intext: ssn
7436+
inurl:gitlab "AWS_SECRET_KEY"
7437+
inurl:/_vti_bin/ ext:asmx
7438+
inurl:/_layouts "[To Parent Directory]"
7439+
intitle:"ManageEngine Desktop Central 10" AND (inurl:configurations OR inurl:authorization)
7440+
inurl:"/sap/admin/public"
7441+
sap/bc/ui5_ui5/ui2/ushell/shells/abap/FioriLaunchpad.html -site:sap.com
7442+
site:.com intitle:"index of" /payments.txt
7443+
intitle:index of "error_log"
7444+
site:.com intitle:"index of" /paypal
7445+
site:cloudfront.net inurl:d
7446+
site:amazonaws.com inurl:elb.amazonaws.com
7447+
intitle:"index of "docker-compose.yml"
7448+
intitle:"index of" "keystore.jks"
7449+
site:*.com "index of" error_logs
7450+
site:.com intitle:"index of" /ipa
7451+
intitle:"index of" aws/
7452+
intitle:"index of" "catalina.out"
7453+
intitle:"index of" include/
7454+
intitle:"index of" /gscloud
7455+
intitle:"index of" ("passenger.*.log" | "passenger.log" | | "production.log" )
7456+
index of /wp-admin.zip
7457+
intitle:"index of" "private_key.pem"
7458+
intitle:"Index of /" inurl:(resume|cv)
7459+
intitle:"index of "cloud-config.yml"
7460+
intitle:[TM4Web] inurl:login.msw
7461+
intitle: index of "awstats"
7462+
inurl:"opac/login " site:.edu
7463+
Various Online Devices Dork
7464+
Fwd: site:*/opac/login
7465+
intitle:"index of" "db.py"
7466+
Re: intext:"index of /" "server at"
7467+
inurl:s3.amazonaws.com intitle:"AWS S3 Explorer"
7468+
Dork
7469+
inurl:/admin ext:config
7470+
intitle:"JupyterHub" inurl:/hub/login
7471+
inurl:"/index.php?qa=login"
7472+
intitle:"Login" -com "/doc/page/login.asp"
7473+
intitle:"Roteador Wireless" inurl:login.asp
7474+
inurl:_admin "login"
7475+
intitle:"web server login" "please enter your login"
7476+
intitle:"Login page for" inurl:user.cgi
7477+
intext:"change your SurgeMAIL account settings"
7478+
intitle:"Oracle Access Management" "login" -inurl:oracle
7479+
intitle:"Login to Redash"
7480+
intitle:"Login to ICC PRO system"
7481+
intitle:"Network Camera" inurl:main.cgi
7482+
intitle:"Login - Residential Gateway"
7483+
intitle:"System Administration" inurl:top.cgi
7484+
Dork for Employees Self Service(ESS) Login Portals
7485+
index of:"backtrack" "hack" ext:php
7486+
intitle:"index of" "cookies" "php"
7487+
inurl:443 ext:php inurl:login
7488+
intitle:" TROJANS" Analysis Report
7489+
intitle:"bugs" Analysis Report
7490+
inurl:http ext:php inurl:login
7491+
intext:"index of" "httpclient" "login"
7492+
intext:"sign up" "**" filetype:php
7493+
intext:"index of" "repository"
7494+
intext:"index of" "transaction"
7495+
intext:"index of" ".html"
7496+
intext:"index of" "phonepe" "wp-content"
7497+
intitle:"index of smtp"
7498+
intext: "admin" "subscribe" filetype:php
7499+
intext:"index of" "ipaddress"
7500+
intitle:"index of /" intext:".env"
7501+
intitle:"Pi-hole-ip" inurl:admin
7502+
intitle:"NoVus IP camera" -com
7503+
intitle:"Device(IP CAMERA)" "language" -com|net
7504+
intitle:"Gargoyle Router Management Utility" -com|net
7505+
intext:"login to authorize" "DynDNS"
7506+
intitle:"Synnefo Admin"
7507+
inurl:_admin "login.aspx"
7508+
intitle:"index of" "cron.sh"
7509+
intitle:"User Authentication : IR*"
7510+
Sensitive Dork Exposing Uploads and Transcation details
7511+
intitle:"index of" "setup.sh"
7512+
intitle:"index of" "after.sh"
7513+
intitle:"index of" "*db.sh"
7514+
intitle:"index of" "configure.sh"
7515+
intitle:"index of" "deploy.sh"
7516+
intitle:"index of" "release.sh"
7517+
intitle:"index of" intext:"Apache/2.2.3"
7518+
inurl: /wp-includes/uploads
7519+
inurl:viewer/live/index.html
7520+
intitle:'olt web management interface'
7521+
inurl:"admin/default.aspx"
7522+
intitle:Index of "/venv"
7523+
allintitle:"Log on to MACH-ProWeb"
7524+
intitle:"WEB SERVICE" "wan" "lan" "alarm"
7525+
intitle: "index of" intext: human resources
7526+
intitle:"index of"|"access_token.json"
7527+
filetype:reg [HKEY_USERSDEFAULT]
7528+
inurl:/sym404/root
7529+
inurl:"index.php?page=news.php"
7530+
intext:"index of" ".sql"
7531+
intitle:"index of" inurl:superadmin
7532+
intitle:"index of" inurl:SUID
7533+
intitle:"IIS Windows Server"
7534+
intitle:"WAMPSERVER Homepage"
7535+
intitle:"index of" intext:"Apache/2.2.3"
7536+
inurl: json beautifier online

dorks/files_containing_juicy_info.dorks

Lines changed: 128 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1056,7 +1056,7 @@ index of / inurl:/pki/
10561056
intext:"index of/" "top secret" gov
10571057
inurl:/servicedesk/customer/user/signup
10581058
inurl:wp-content/plugins/easy-wp-smtp
1059-
Re: inurl:"/app/kibana#"
1059+
inurl:"/app/kibana#"
10601060
intext:"adobe coldfusion 8"
10611061
Fwd: intitle:"Authorize application" "Learn more about OAuth"
10621062
inurl:/wp-content/plugins/elementor/
@@ -1318,3 +1318,130 @@ Fwd: intitle:"Index of /" intext:"resource/"
13181318
Google to wordpress
13191319
Fwd: intitle:"atvise - next generation"
13201320
site:papaly.com + keyword
1321+
intitle:"Apache Flink Web Dashboard"
1322+
intitle:"Index of cd"
1323+
intitle:"index of" "files.pl"
1324+
intitle:"index of" "man.sh"
1325+
allintitle:index of "/icewarp"
1326+
allintitle:index of "/microweber"
1327+
site:gov.* intitle:"index of" *Dokuments"
1328+
site:gov.* intitle:"index of" *.css
1329+
intitle:"index of" google-api-php-client
1330+
intitle:"index of" twitter-api-php
1331+
intitle:"index of" sns-login
1332+
intitle:"index of" linkedin-api
1333+
intitle:"index of" facebook-api
1334+
intitle:"index of" instagram-api
1335+
intitle:"index of" zoom-api
1336+
=?UTF-8?Q?intitle:"Index_of=E2=80=9D_user=5Fcarts_OR_user_=5Fcart.?=
1337+
intitle:"Index of" etc/shadow
1338+
intitle:"Index of" people.1st
1339+
service._vti_pvt.index
1340+
=?UTF-8?Q?=E2=80=9CIndex_of_/backup=E2=80=9D?=
1341+
# Description: site:gov.in filetype:xlsx "password"
1342+
site:gov.* intitle:"index of" *.doc
1343+
site:gov intitle:"index of" *.data
1344+
intitle:"index of" .ovpn
1345+
site:gov.* intitle:"index of" *.pptx
1346+
site:org.* intitle:"index of" * resources
1347+
site:gov.* intitle:"index of" *.xls
1348+
intext:"SQL" && "DB" inurl:"/runtime/log/"
1349+
intitle:" index of "/order/status"
1350+
intitle:"index of" "wp-upload"
1351+
intitle:"index of" filetype:sql
1352+
intitle:"index of" " *config.php "
1353+
intitle:"index of" " admin.php "
1354+
intitle:index of /backup private
1355+
intitle:"index of" " index.php?id= "
1356+
intitle:"index of" " wp-includes "
1357+
inurl:.com index of apks
1358+
intitle:index of "aws/credentials"
1359+
inurl:wp-content/plugins/reflex-gallery/
1360+
site:com.* intitle:"index of" *.admin
1361+
site:com.* intitle:"index of" *.admin.password
1362+
index of "fileadmin/php"
1363+
intitle:"index of" "admin-shell"
1364+
site:gov.* intitle:"index of" *.php
1365+
site:gov.* intitle:"index of" *.shell
1366+
site:com.* intitle:"index of" *shell.php
1367+
site:gov.* intitle:"index of" *.db
1368+
site:com.* intitle:"index of" *.db
1369+
site:com.* intitle:"index of" *.sql
1370+
site:.edu intext:"index of" "shell"
1371+
"index of" :.py
1372+
"index of" :.env
1373+
"index of" filetype:env
1374+
"index of" filetype:sql
1375+
"index of" filetype:db
1376+
inurl:*org intitle:"index of" "docker-compose"
1377+
intext:"/webdynpro/resources/sap.com/"
1378+
intitle:"index of" ".env" OR "pass"
1379+
ext:java intext:"import org.apache.logging.log4j.Logger;"
1380+
intitle:"index of" "java.log" | "java.logs"
1381+
intitle:index of ./jira-software
1382+
intext:"token" filetype:log "authenticate"
1383+
intitle:"index of" "printenv.pl
1384+
intitle:"login" intext:"authorized users only"
1385+
inurl: document/d intext: ssn
1386+
inurl:gitlab "AWS_SECRET_KEY"
1387+
inurl:/_vti_bin/ ext:asmx
1388+
inurl:/_layouts "[To Parent Directory]"
1389+
intitle:"ManageEngine Desktop Central 10" AND (inurl:configurations OR inurl:authorization)
1390+
site:.com intitle:"index of" /payments.txt
1391+
intitle:index of "error_log"
1392+
site:.com intitle:"index of" /paypal
1393+
site:cloudfront.net inurl:d
1394+
site:amazonaws.com inurl:elb.amazonaws.com
1395+
intitle:"index of "docker-compose.yml"
1396+
intitle:"index of" "keystore.jks"
1397+
site:*.com "index of" error_logs
1398+
site:.com intitle:"index of" /ipa
1399+
intitle:"index of" aws/
1400+
intitle:"index of" "catalina.out"
1401+
intitle:"index of" include/
1402+
intitle:"index of" /gscloud
1403+
intitle:"index of" ("passenger.*.log" | "passenger.log" | | "production.log" )
1404+
index of /wp-admin.zip
1405+
intitle:"index of" "private_key.pem"
1406+
intitle:"Index of /" inurl:(resume|cv)
1407+
intitle:"index of "cloud-config.yml"
1408+
intitle: index of "awstats"
1409+
intitle:"index of" "db.py"
1410+
Re: intext:"index of /" "server at"
1411+
inurl:s3.amazonaws.com intitle:"AWS S3 Explorer"
1412+
inurl:/admin ext:config
1413+
index of:"backtrack" "hack" ext:php
1414+
intitle:"index of" "cookies" "php"
1415+
intitle:" TROJANS" Analysis Report
1416+
intitle:"bugs" Analysis Report
1417+
intext:"index of" "httpclient" "login"
1418+
intext:"sign up" "**" filetype:php
1419+
intext:"index of" "repository"
1420+
intext:"index of" "transaction"
1421+
intext:"index of" ".html"
1422+
intext:"index of" "phonepe" "wp-content"
1423+
intitle:"index of smtp"
1424+
intext: "admin" "subscribe" filetype:php
1425+
intext:"index of" "ipaddress"
1426+
intitle:"index of /" intext:".env"
1427+
intitle:"index of" "cron.sh"
1428+
Sensitive Dork Exposing Uploads and Transcation details
1429+
intitle:"index of" "setup.sh"
1430+
intitle:"index of" "after.sh"
1431+
intitle:"index of" "*db.sh"
1432+
intitle:"index of" "configure.sh"
1433+
intitle:"index of" "deploy.sh"
1434+
intitle:"index of" "release.sh"
1435+
intitle:"index of" intext:"Apache/2.2.3"
1436+
inurl: /wp-includes/uploads
1437+
intitle: "index of" intext: human resources
1438+
intitle:"index of"|"access_token.json"
1439+
filetype:reg [HKEY_USERSDEFAULT]
1440+
inurl:/sym404/root
1441+
intext:"index of" ".sql"
1442+
intitle:"index of" inurl:superadmin
1443+
intitle:"index of" inurl:SUID
1444+
intitle:"IIS Windows Server"
1445+
intitle:"WAMPSERVER Homepage"
1446+
intitle:"index of" intext:"Apache/2.2.3"
1447+
inurl: json beautifier online

dorks/files_containing_passwords.dorks

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -393,3 +393,5 @@ site:pastebin.com "password"
393393
site:pastebin.com "admin password"
394394
site:controlc.com intext:"password"
395395
site:rentry.co intext:"password"
396+
intitle:"Index of" htpasswd
397+
intitle:"Index of" pwd.db

dorks/ghdb.json

Lines changed: 1 addition & 0 deletions
Large diffs are not rendered by default.

0 commit comments

Comments
 (0)