-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathautorecon.sh
More file actions
128 lines (114 loc) · 4.6 KB
/
Copy pathautorecon.sh
File metadata and controls
128 lines (114 loc) · 4.6 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
#! /bin/bash
welcome=$(whoami)
if [ $welcome == root ] ;
then
echo " Welcome To AutoRecon"
echo " Script Wrriten By Yash Hax"
echo " https://github.com/yash-hax"
echo " https://twitter/yash_hax"
else
echo " Kindly root this device"
echo " If you getting any kind of trouble then please get in touch with tool developer"
echo " https://github.com/yash-hax"
echo " https://twitter/yash_hax"
fi
if [ $welcome == root ] ;
then read -p "Do you want to do domain enumaration yes/no ? " ASK
if [ $ASK == yes ];
then
read -p "website ? " website
echo $website
elif [ $ASK == no ];
then
read -p "What kind of service do you want ? " service
echo $service
else
echo " ABORT 'WRONG INPUT'"
fi
if [ $ASK == yes ];
then
echo | mkdir $website
echo | subfinder -d $website -o $website/subdomains.txt
echo | nmap -sV -sS $website -oS $website/nmap.txt
echo | dirsearch -u $website -o $website/dir.txt
echo " Github Dorking
'$website' password
'$website' password_credentials
'$website' secret
'$website' credentials
'$website' token
'$website' api
'$website' config
'$website' key
'$website' pass
'$website' private
'$website' login
'$website' ftp
'$website' pwd
'$website' ajira
'$website' security_credentials
'$website' connectionstring
'$website' JDBC
'$website' ssh2_auth_password
'$website' send_keys
'$website' send
'$website' keys
'$website' ldap
'$website' docker
'$website' db_host
'$website' db_user
'$website' db_password
'$website' passwd
'$website' smtp
'$website' vsphere_password
'$website' vsphere
'$website' dbpassword
'$website' dbuser
'$website' access_key
'$website' aws
'$website' sftp
'$website' proxy
'$website' vpn
'$website' internal
'$website' siem
'$website' firewall
'$website' jenkins
'$website' secret_access_key
'$website' bucket_password
'$website' redis_password
'$website' root_password" >$website/githubdork.txt
echo " Google Dorking
site:*.$website
site:$website intext:credentials
site:$website filetype:pdf
site:$website filetype:xls
site:$website filetype:doc
site:$website filetype:docx
site:$website inurl:admin
site:$website intext:password
site:$website inurl:php
site:$website inurl:jsp
site:$website inurl:html
site:$website inurl:xhtml
site:$website inurl:shtml
site:$website inurl:htm
site:$website intext:phone
site:$website intext:address
site:$website inurl:/proc/self/cwd
site:$website inurl:ftp
site:$website inurl:admin/login
site:$website intext:private
site:$website intext:API KEY
site:$website inurl:php?q=
site:$website inurl:login.jsp
site:$website inurl:users/password/new
site:$website intext:your password is
site:$website intext:disallow
" >$website/googledork.txt
elif [ $ASK == no ];
then
echo "($website) This service is not available yet, Please come back soon"
else echo "come back again"
fi
else echo $(sudo su)
fi