Tuesday, 26 June 2012


Google is a treasure trove full of important information, especially for the underground world. This Potential fact can also be utilized in the data for the username and password stored on a server.

If the administrator save important data not in the complete systemauthentifikasi folder, then most likely be reached by the google search engine. If data is successfully steal in by the unauthorized person, then the will be in misuse.

Here, some google search syntax to crawl the password:

1. "Login: *" "password =*" filetype: xls (searching data command to the system files that are stored in Microsoft Excel)

2. allinurl: auth_user_file.txt (to find files auth_user_file.txt containing password on server).

3. filetype: xls inurl: "password.xls" (looking for username and password in ms excel format). This command can change with admin.xls)

4. intitle: login password (get link to the login page with the login words on the title and password words anywhere. If you want to the query index more pages, type allintitle)

5. intitle: "Index of" master.passwd (index the master password page)

6. index of / backup (will search the index backup file on server)

7. intitle: index.of people.lst (will find web pages that contain user list).

8. intitle: index.of passwd.bak ( will search the index backup password files)

9. intitle: "Index of" pwd.db (searching database password files).

10. intitle: "Index of .. etc" passwd (this command will index the password sequence page).

11. index.of passlist.txt (will load the page containing password list in the clear text format).

12. index.of.secret (google will bring on the page contains confidential document). This syntax also changed with government query site: gov to search for government secret files, including password data) or use syntax: index.of.private

13. filetype: xls username password email (will find spreadsheets filese containing a list of username and password).

14. "# PhpMyAdmin MySQL-Dump" filetype: txt (will index the page containing sensitive data administration that build with php)

15. inurl: ipsec.secrets-history-bugs (contains confidential data that have only by the super user). or order with inurl: ipsec.secrets "holds shared secrets"

16. inurl: ipsec.conf-intitle: manpage (useful to find files containing important data for hacking)

17. inurl: "wvdial.conf" intext: "password" (display the dialup connection that contain phone number, username and password)

18. inurl: "user.xls" intext: "password" (showing url that save username and passwords in spread sheet files)

19. filetype: ldb admin (web server will look for the store password in a database that dos not delete by googledork)

20.inurl: search / admin.php (will look for php web page for admin login). If you are lucky, you will find admin configuration page to create a new user.

21. inurl: password.log filetype:log (this keyword is to search for log files in a specific url)

22. filetype: reg HKEY_CURRENT_USER username (this keyword used to look for reg files (registyry) to the path HCU (Hkey_Current_User))

In fact, there are many more commands that google can crawl in use in the password. One who has the ability google reveals in this case ishttp://johnny.ihackstuff.com. For that, visit the web to add insight about the google ability.

Here, some of the other syntax google that we need to look for confidential data :

"Http://username: password @ www ..." filetype: bak inurl: "htaccess | passwd | shadow | ht users"
(this command is to take the user names and passwords for backup files)

filetype:mdb inurl:”account|users|admin|administrators|passwd|password” mdb files (this command is to take the password information)

filetype:ini ws_ftp pwd (searching admin password with ws_ftp.ini file)

intitle: "Index of" pwd.db (searching the encrypted usernames and passwords)

inurl:admin inurl:backup intitle:index.of (searching directories whose names contain the words admin and backup)

“Index of/” “Parent Directory” “WS _ FTP.ini” filetype:ini WS _ FTP PWD (WS_FTP configuration files is to take FTP server access passwords)

ext:pwd inurl:(service|authors|administrators|users) “# -FrontPage-”(there is Microsoft FrontPage passwords)

filetype: sql ( "passwd values ****" |" password values ****" | "pass values ****") searching a SQL code and passwords stored in the database)

intitle:index.of trillian.ini (configuration files for the Trillian IM)

eggdrop filetype:user (user configuration files for the Eggdrop ircbot)

filetype:conf slapd.conf (configuration files for OpenLDAP)

inurl:”wvdial.conf” intext:”password” (configuration files for WV Dial)

ext:ini eudora.ini (configuration files for the Eudora mail client)

filetype: mdb inurl: users.mdb (potentially to take user account information with Microsoft Access files)

intext:”powered by Web Wiz Journal” (websites using Web Wiz Journal, which in its standard configuration allows access to the passwords file – just enter http:///journal/journal.mdb instead of the default http:///journal/)

“Powered by DUclassified” -site:duware.com "Powered by DUclassified"-site: duware.com
“Powered by DUcalendar” -site:duware.com "Powered by DUcalendar"-site: duware.com
“Powered by DUdirectory” -site:duware.com "Powered by DUdirectory"-site: duware.com
“Powered by DUclassmate” -site:duware.com "Powered by DUclassmate"-site: duware.com
“Powered by DUdownload” -site:duware.com "Powered by DUdownload"-site: duware.com
“Powered by DUpaypal” -site:duware.com "Powered by DUpaypal"-site: duware.com
“Powered by DUforum” -site:duware.com "Powered by DUforum"-site: duware.com 

intitle:dupics inurl:(add.asp | default.asp |view.asp | voting.asp) -site:duware.com (websites that use DUclassified, DUcalendar, DUdirectory, DUclassmate, DUdownload, DUpaypal, DUforum or DUpics applications, by default allows us to retrieve passwords file)

To DUclassified, just visit http:///duClassified/ _private / duclassified.mdb
or http:///duClassified/ or http:///duClassified/

intext: "BiTBOARD v2.0" "BiTSHiFTERS Bulletin Board" (Bitboard2 use the website bulletin board, the default settings make it possible to retrieve the passwords files to be obtained with the ways http:///forum/admin/data _ passwd.dat
or http:///forum/forum.php) or http:///forum/forum.php)

Searching for specific documents :

filetype: xls inurl: "email.xls" (potentially to take the information contact)

“phone * * *” “address *” “e-mail” intitle:”curriculum vitae”
CVs "not for distribution"
 (confidential documents containing the confidential clause

AIM contacts list AIM contacts list

intitle:index.of mystuff.xml intitle: index.of mystuff.xml

Trillian IM contacts list Trillian IM contacts list

filetype:ctt “msn” filetype: Note "msn"

MSN contacts list MSN contacts list

 (QDF database files for the Quicken financial application)

intitle: index.of finances.xls (finances.xls files, potentially to takeinformation on bank accounts, financial Summaries and credit cardnumbers)

intitle: "Index Of"-inurl: maillog (potentially to retrieve e-mail account)


  1. Find out additional information about solar panel since the site in
    the following paragraphs. Another option is to get started with sunshine to help to make
    domestic hot sea water within the to your house.

    My blog post - gsaser.Com.pl

  2. Remember: do not take leaky along with aging caulk with no
    consideration. metal tools should be cleaned on top of that coated with a delicate
    oil to minimize the risk of rusting.

    Here is my webpage - organizacja imprez integracyjnych

  3. More wafers per ingot leads any direct lowering of a price for solar energy.
    It really is a wise trade to purchase a real washer and drier in
    a harmonizing set.

    my blog post: agencja detektywistyczna

  4. You can similarly incorporate the TRX Suspension Trainer old by athletes like Brandon Vera.
    It's costly to perform a business to get dependent on "new" customers.

    Feel free to visit my web site ... ochrona obiektów lublin

  5. It would find yourself hard to resolution issues regarding this unique
    matter without the aid of a lawyer. Acceptable ,
    I'll anyone with a real circumstances scenario for my statement.

    Here is my blog post - adwokat łódź

  6. Trinium's trucking software.can grip both large and small trucking businesses. One particular easy-to-follow steps often makes your task a lot easier.

    Here is my web page :: adwokat łódź

  7. Novices can use Dub Turbo effectively to create as well as her very first mp3.

    Here is my weblog: organizacja wczasów

  8. So why just not decorate your daughter's or son's bedroom with elephant kids
    bedding. Most people are not incredibly used to trying something new.

    Feel free to surf to my blog post - organizacja wczasów

  9. I'm going to update the analysis afterwards with the outcomes of that see. In addition, it'll contribute meticulously
    for the houses value of your own house.

    My website: szamba betonowe

  10. The adjuster's do the job will depend on the least piece paid to the claimer.

    My web site tłumaczenia włoski Katowice

  11. This assortment about vest can indeed be obtained in a number of fabrics of unique weights.
    There is great number of t shirt marketing companies available world wide

    Here is my website - agencja detektywistyczna

  12. There exists just about any excuses for certain arranging and it relates to
    using of competency. Usually the things that we tell the lawyers is
    very significant.

    my site agencja detektywistyczna warszawa

  13. In this particular case consider detoxification protocols several
    schedules before an application is submitted. The public can be recorded
    and safer in about just 30 short days.

    Feel free to visit my web page: biuro detektywistyczne warszawa

  14. Any low energy levels consumption appliance may be
    powered your solar panel system. Solar panels can take weren't forms, shapes and types.

    Also visit my web page - biuro detektywistyczne

  15. Maintenance and repair should be carried out by professionals.
    These laws are set in place to shield both the customer and any wandering children.

    Visit my web site - usługi detektywistyczne warszawa

  16. Which the city also shows its rich a brief history of public fine in Downtown

    Here is my site - usługi detektywistyczne

  17. You must do it consistently, truly and on the perfect company-wide basis.
    Of those a lot days, the union day is rrn all likelihood one of probably the most vital days.

    Also visit my site :: detektyw warszawa

  18. If done effectively, this industry can prosper a
    very short span. While in these years, filmmakers have benefited extremely from music certification.

    my blog post: detektyw warszawa

  19. Each and every insecticides are strong, including botanical units.
    When getting insurance cover policy through an employer, your health rank rarely matters.

    Feel free to visit my web site prywatny detektyw

  20. To create to earning money with your own music is to
    very first produce a incredibly done master Cd.
    American native indians music has two elements - 'Raag' and 'Taal'.

    Here is my web-site prywatny detektyw warszawa

  21. Comic strips imprinted on funny t-shirts are slowly becoming a rage.
    If you're thinking of the usages, a lot of these shirts have advanced since their very use.

    my weblog ... pobierowo

  22. You could learn how to share your thoughts on how to start off by an organic home garden.

    There was silence and my personal question was never answered.

    my site :: pobierowo

  23. This has this eroding effect by concrete over day. However, metal construction personnel
    need powerful siding brakes to bring in work faster.

    Have a look at my homepage - tanie wczasy nad morzem

  24. Is it possible for stopping diseases by using this law? However, the brown rice
    treated with diatomaceous earth only use
    to have 15you decide.

    Feel free to visit my site; zespół muzyczny Poznań

  25. Each and every owner is drawn to original advertising models and ways obtain more exposure.
    Use outsourcing for bloggers according to the expertise through their field.

    Here is my web-site - tanie wczasy

  26. Fitting a solar panel all through your home can
    certainly definitely cause amazing effects.

    Feel free to visit my weblog: ochrona przeciwpożarowa

  27. If users require good work, you may ask professionals to get the job built.

    Upkeep and repair should be done by researchers.

    Review my blog ... borelioza

  28. My spouse broke down, While i am to holes because I don't like how life is probably so unfair. First thing you will ideally tell them, copy is important as enjoyable.

    Feel free to visit my homepage; candida

  29. Find out some of the cancellation and repay policy, too.
    Skip dark or music in minor practical knowledge while
    guests are perhaps arriving.

    Visit my webpage historia piwa

  30. This particular washing machine one among the the major models you require.
    Wires- these could very well collect the electricity generated and tendencies them into batteries.

    my web page - wycieczki all inclusive

  31. An old laundry basket excellent for gathering produce from your 100 % natural garden.
    Is it possible for stopping diseases by using this type of

    Look at my web site - wyjazdy na narty

  32. Fortunately Travis Jackson, "The kid," knew none of this.
    Best of luck to practically who try out this top degree kid friendly dinning.

    Feel free to surf to my weblog; projekty-wnętrz-bauart.pl

  33. One think of making music as per hobby, without designs to get rich
    through it. The Bollywood songs are generally elaborate
    and generously filmed.

    Look into my web site; STRONA GŁÓWNA

  34. It’s superb blog please go through this url and solve your query . We provide Best online Services.check this site .
    Fix Windows 7 Error 1068
    Thank you
    Aalia lyon

  35. I would like to recommend your article on Washing Machine Manufacturers For further information, you can refer this Commercial Washing Machine Manufacturers

  36. That is a great tip especially to those new to the blogosphere.
    Simple but very precise info… Thanks for shariung this one.
    A mmust read post!

    my weblog; injectable steroids Oklahoma

  37. Nice blog and it is very informative thank you for sharing us.
    Intraday Jackpot Call || Intraday Jackpot Calls

  38. I was searching for the particular topic but I could not find that, finally my search is stop now because your blog is same topic that I was searching.
    Susanne Green
    medical assistant

  39. Very informative article. Thanks for sharing.Take a look to our blog: coupon deals 


There was an error in this gadget
Flying Twitter Bird Widget By Trickstoo.com