{"id":796,"date":"2025-10-24T15:10:34","date_gmt":"2025-10-24T07:10:34","guid":{"rendered":"https:\/\/www.youvii.site\/?p=796"},"modified":"2025-10-24T15:56:53","modified_gmt":"2025-10-24T07:56:53","slug":"zichanshouji","status":"publish","type":"post","link":"https:\/\/www.youvii.site\/index.php\/archives\/zichanshouji","title":{"rendered":"\u8d44\u4ea7\u6536\u96c6"},"content":{"rendered":"<h1>\u8d44\u4ea7\u6536\u96c6<\/h1>\n<h1>\u6982\u8ff0<\/h1>\n<p>\u4fe1\u606f\u6536\u96c6\u662f\u6e17\u900f\u6d4b\u8bd5\u7684\u524d\u671f\u5de5\u4f5c\uff0c\u6536\u96c6\u8db3\u591f\u591a\u7684\u4fe1\u606f\u624d\u80fd\u65b9\u4fbf\u63a5\u4e0b\u6765\u7684\u6d4b\u8bd5\uff0c\u4e3b\u8981\u662f\u6536\u96c6\u7f51\u7ad9\u7684\u57df\u540d\u3001\u5b50\u57df\u540d\u3001\u76ee\u6807\u7f51\u7ad9\u3001\u76ee\u6807\u7f51\u7ad9\u771f\u5b9eIP\u3001\u654f\u611f\/\u76ee\u5f55\u6587\u4ef6\u3001\u5f00\u653e\u7aef\u53e3\u548c\u4e2d\u95f4\u4ef6\u4fe1\u606f\u7b49\u7b49\u3002\u901a\u8fc7\u5404\u79cd\u6e20\u9053\u548c\u624b\u6bb5\u5c3d\u53ef\u80fd\u6536\u96c6\u5230\u591a\u7684\u5173\u4e8e\u8fd9\u4e2a\u7ad9\u70b9\u7684\u4fe1\u606f\uff0c\u6709\u52a9\u4e8e\u6211\u4eec\u66f4\u591a\u7684\u53bb\u627e\u5230\u6e17\u900f\u70b9\uff0c\u7a81\u7834\u53e3\u3002<\/p>\n<h1>\u5206\u7c7b<\/h1>\n<p>1\u3001\u670d\u52a1\u5668\u7684\u4fe1\u606f\uff08\u771f\u5b9eIP\u3001\u7cfb\u7edf\u7c7b\u578b\u3001\u7248\u672c\u3001\u5f00\u653e\u7aef\u53e3\u3001WAF\uff09<\/p>\n<p>2\u3001\u7f51\u7ad9\u6307\u7eb9\u8bc6\u522b\uff08cms\u3001cdn\u3001\u8bc1\u4e66\u7b49\uff09dns\u8bb0\u5f55<\/p>\n<p>3\u3001whois\u4fe1\u606f\uff0c\u59d3\u540d\uff0c\u5907\u6848\uff0c\u90ae\u7bb1\uff0c\u7535\u8bdd\u53cd\u67e5\uff08\u793e\u5de5\uff09<\/p>\n<p>4\u3001\u5b50\u57df\u540d\u624b\u673a\uff0c\u65c1\u7ad9\uff0cC\u6bb5<\/p>\n<p>5\u3001google hacking\u9488\u5bf9\u5316\u641c\u7d22\uff0cword\/excel\/pdf\u6587\u4ef6\uff0c\u4e2d\u95f4\u4ef6\u7248\u672c\uff0c\u5f31\u53e3\u4ee4\u626b\u63cf\u7b49<\/p>\n<p>6\u3001\u4f20\u8f93\u534f\u8bae\uff0c\u901a\u7528\u6f0f\u6d1e\uff0cexp\uff0cgithub\u6e90\u7801<\/p>\n<h1>\u5e38\u89c1\u65b9\u6cd5<\/h1>\n<p>1\u3001whois\u67e5\u8be2<\/p>\n<p>\u57df\u540d\u5728\u6ce8\u518c\u7684\u65f6\u5019\u9700\u8981\u586b\u5165\u4e2a\u4eba\u6216\u8005\u4f01\u4e1a\u4fe1\u606f\u5982\u679c\u6ca1\u6709\u8bbe\u7f6e\u9690\u85cf\u5c5e\u6027\u53ef\u4ee5\u67e5\u8be2\u51fa\u6765\u901a\u8fc7\u5907\u6848\u53f7\u67e5\u8be2\u4e2a\u4eba\u6216\u8005\u4f01\u4e1a\u4fe1\u606f\u4e5f\u53ef\u4ee5whois\u53cd\u67e5\u6ce8\u518c\u4eba\u90ae\u7bb1\u7535\u8bdd\u673a\u6784\u53cd\u67e5\u66f4\u591a\u5f97\u57df\u540d\u548c\u9700\u8981\u5f97\u4fe1\u606f\u3002<\/p>\n<p>2\u3001\u6536\u96c6\u5b50\u57df\u540d<\/p>\n<p>\u57df\u540d\u5206\u4e3a\u6839\u57df\u540d\u548c\u5b50\u57df\u540d<\/p>\n<p>moonsec.com \u6839\u57df\u540d\u9876\u7ea7\u57df\u540d<\/p>\n<p>www.moonsec.com\u5b50\u57df\u540d\u4e5f\u53eb\u4e8c\u7ea7\u57df\u540d<\/p>\n<p>www.wiki.moonsec.com  \u5b50\u57df\u540d\u4e5f\u53eb\u4e09\u7ea7\u57df\u540d\u56db\u7ea7\u5982\u6b64\u7c7b\u63a8<\/p>\n<p>3\u3001\u7aef\u53e3\u626b\u63cf<\/p>\n<p>\u670d\u52a1\u5668\u9700\u8981\u5f00\u653e\u670d\u52a1\uff0c\u5c31\u5fc5\u987b\u5f00\u542f\u7aef\u53e3\uff0c\u5e38\u89c1\u7684\u7aef\u53e3\u662ftcp \u548cudp\u4e24\u79cd\u7c7b\u578b<\/p>\n<p>\u8303\u56f4 0-65535 \u901a\u8fc7\u626b\u5f97\u5230\u7684\u7aef\u53e3\uff0c\u8bbf\u95ee\u670d\u52a1\u89c4\u5212\u4e0b\u4e00\u6b65\u6e17\u900f\u3002<\/p>\n<p>4\u3001\u67e5\u627e\u771f\u5b9eip<\/p>\n<p>\u4f01\u4e1a\u7684\u7f51\u7ad9\uff0c\u4e3a\u4e86\u63d0\u9ad8\u8bbf\u95ee\u901f\u5ea6\uff0c\u6216\u8005\u907f\u514d\u9ed1\u5ba2\u653b\u51fb\uff0c\u7528\u4e86cdn\u670d\u52a1\uff0c\u7528\u4e86cdn\u4e4b\u540e\u771f\u5b9e\u670d\u52a1\u5668ip\u4f1a\u88ab\u9690\u85cf\u3002<\/p>\n<p>5\u3001\u63a2\u6d4b\u65c1\u7ad9\u53caC\u6bb5<\/p>\n<p>\u65c1\u7ad9\uff1a\u4e00\u4e2a\u670d\u52a1\u5668\u4e0a\u6709\u591a\u4e2a\u7f51\u7ad9\uff0c\u901a\u8fc7ip\u67e5\u8be2\u670d\u52a1\u5668\u4e0a\u7684\u7f51\u7ad9<\/p>\n<p>c\u6bb5\uff1a\u67e5\u627e\u540c\u4e00\u4e2a\u6bb5\uff0c\u670d\u52a1\u5668\u4e0a\u7684\u7f51\u7ad9\uff0c\u53ef\u4ee5\u627e\u5230\u540c\u6837\u7f51\u7ad9\u7684\u7c7b\u578b\u548c\u670d\u52a1\u5668\uff0c\u4e5f\u53ef\u4ee5\u83b7\u53d6\u540c\u6bb5\u670d\u52a1\u5668\u8fdb\u884c\u4e0b\u4e00\u6b65\u6e17\u900f<\/p>\n<p>6\u3001\u7f51\u7edc\u7a7a\u95f4\u641c\u7d22\u5f15\u64ce<\/p>\n<p>\u901a\u8fc7\u8fd9\u4e9b\u5f15\u64ce\u67e5\u627e\u7f51\u7ad9\u6216\u8005\u670d\u52a1\u5668\u7684\u4fe1\u606f\u8fdb\u884c\u4e0b\u4e00\u6b65\u6e17\u900f<\/p>\n<p>7\u3001\u626b\u63cf\u654f\u611f\u76ee\u5f55\/\u6587\u4ef6<\/p>\n<p>\u901a\u8fc7\u626b\u63cf\u76ee\u5f55\u548c\u6587\u4ef6\uff0c\u5927\u81f4\u4e86\u89e3\u7f51\u7ad9\u7684\u7ed3\u6784\uff0c\u83b7\u53d6\u7a81\u7834\u70b9\uff0c\u6bd4\u5982\u540e\u53f0\u3001\u6587\u4ef6\u5907\u4efd\u3001\u4e0a\u4f20\u70b9<\/p>\n<p>8\u3001\u6307\u7eb9\u8bc6\u522b<\/p>\n<p>\u83b7\u53d6\u7f51\u7ad9\u7684\u7248\u672c\uff0c\u5c5e\u4e8e\u90a3\u4e9bcms\u7ba1\u7406\u7cfb\u7edf\uff0c\u67e5\u627e\u6f0f\u6d1eexp\uff0c\u4e0b\u8f7dcms\u8fdb\u884c\u4ee3\u7801\u5ba1\u8ba1<\/p>\n<h1>\u5728\u7ebfwhois\u67e5\u8be2<\/h1>\n<p>\u901a\u8fc7whois\u6765\u5bf9\u57df\u540d\u4fe1\u606f\u8fdb\u884c\u67e5\u8be2\uff0c\u53ef\u4ee5\u67e5\u5230\u6ce8\u518c\u5546\u3001\u6ce8\u518c\u4eba\u3001\u90ae\u7bb1\u3001DNS\u89e3\u6790\u670d\u52a1\u5668\u3001\u6ce8\u518c\u4eba\u8054\u7cfb\u7535\u8bdd\u7b49\uff0c\u56e0\u4e3a\u6709\u4e9b\u7f51\u7ad9\u4fe1\u606f\u67e5\u5f97\u5230\uff0c\u6709\u4e9b\u7f51\u7ad9\u4fe1\u606f\u67e5\u4e0d\u5230\uff0c\u6240\u4ee5\u63a8\u8350\u4ee5\u4e0b\u4fe1\u606f\u6bd4\u8f83\u5168\u7684\u67e5\u8be2\u7f51\u7ad9\uff0c\u76f4\u63a5\u8f93\u5165\u76ee\u6807\u7ad9\u70b9\u5373\u53ef\u67e5\u8be2\u5230\u76f8\u5173\u4fe1\u606f\u3002<\/p>\n<p>\u7ad9\u957f\u4e4b\u5bb6\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/whois.chinaz.com\/\">\u57df\u540dWhois\u67e5\u8be2 &#8211; \u7ad9\u957f\u5de5\u5177<\/a><\/p>\n<p>\u7231\u7ad9\u7f51\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/whois.aizhan.com\/\">\u7ad9\u957f\u5de5\u5177_whois\u67e5\u8be2\u5de5\u5177_\u7231\u7ad9\u7f51<\/a><\/p>\n<p>\u817e\u8baf\u4e91\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/whois.cloud.tencent.com\/\">\u57df\u540d\u4fe1\u606f\u67e5\u8be2 &#8211; \u817e\u8baf\u4e91<\/a><\/p>\n<p>\u7f8e\u6a59\u4e92\u8054\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/whois.cndns.com\/\">\u7f8e\u6a59\u57df\u540dwhois\u67e5\u8be2-\u57df\u540dwhois\u67e5\u8be2_whois\u67e5\u8be2_whois,\u7f8e\u6a59\u4e92\u8054\u57df\u540dwhois\u4fe1\u606f\u67e5\u8be2\u4e2d\u5fc3.<\/a><\/p>\n<p>\u7231\u540d\u7f51\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/www.22.cn\/domain\/\">\u57df\u540d\u6ce8\u518c,\u57df\u540d\u67e5\u8be2,\u57df\u540d\u7533\u8bf7\u8d2d\u4e70\u2014\u7231\u540d\u7f51<\/a><\/p>\n<p>\u6613\u540d\u7f51\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/whois.ename.net\/\">\u57df\u540d Whois\u67e5\u8be2,\u57df\u540d\u6ce8\u518c\u4fe1\u606f\u67e5\u8be2,\u57df\u540d\u7f51\u7ad9\u4fe1\u606f\u67e5\u8be2<\/a><\/p>\n<p>\u4e2d\u56fd\u4e07\u7f51\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740<a href=\"https:\/\/whois.aliyun.com\/\">whois\u67e5\u8be2_\u57df\u540d\u67e5\u8be2_\u57df\u540d\u4ea4\u6613_\u963f\u91cc\u4e91\u4f01\u822a(\u539f\u4e07\u7f51)-\u963f\u91cc\u4e91<\/a><\/p>\n<p>\u897f\u90e8\u6570\u7801\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/whois.west.cn\/\">https:\/\/whois.west.cn\/<\/a><\/p>\n<p>\u65b0\u7f51\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"http:\/\/whois.xinnet.com\/domain\/whois\/index.jsp\">http:\/\/whois.xinnet.com\/domain\/whois\/index.jsp<\/a><\/p>\n<p>\u7eb3\u7f51\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"http:\/\/whois.nawang.cn\/\">http:\/\/whois.nawang.cn\/<\/a><\/p>\n<p>\u4e2d\u8d44\u6e90\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/www.zzy.cn\/domain\/whois.html\">https:\/\/www.zzy.cn\/domain\/whois.html<\/a><\/p>\n<p>\u4e09\u4e94\u4e92\u8054\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"https:\/\/cp.35.com\/chinese\/whois.php\">https:\/\/cp.35.com\/chinese\/whois.php<\/a><\/p>\n<p>\u65b0\u7f51\u4e92\u8054\u57df\u540dWHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <a href=\"http:\/\/www.dns.com.cn\/show\/domain\/whois\/index.do\">http:\/\/www.dns.com.cn\/show\/domain\/whois\/index.do<\/a><\/p>\n<p>\u56fd\u5916WHOIS\u4fe1\u606f\u67e5\u8be2\u5730\u5740 <\/p>\n<p><a href=\"https:\/\/who.is\/\">https:\/\/who.is\/<\/a><\/p>\n<h1>\u5728\u7ebf\u7f51\u7ad9\u5907\u6848\u67e5\u8be2<\/h1>\n<p>\u7f51\u7ad9\u5907\u6848\u4fe1\u606f\u662f\u6839\u636e\u56fd\u5bb6\u6cd5\u5f8b\u6cd5\u89c4\u89c4\u5b9a\uff0c\u7531\u7f51\u7ad9\u6240\u6709\u8005\u5411\u56fd\u5bb6\u6709\u5173\u90e8\u95e8\u7533\u8bf7\u7684\u5907\u6848\uff0c\u5982\u679c\u9700\u8981\u67e5\u8be2\u4f01\u4e1a\u5907\u6848\u4fe1\u606f\uff08\u5355\u4f4d\u540d\u79f0\u3001\u5907\u6848\u7f16\u53f7\u3001\u7f51\u7ad9\u8d1f\u8d23\u4eba\u3001\u7535\u5b50\u90ae\u7bb1\u3001\u8054\u7cfb\u7535\u8bdd\u3001\u6cd5\u4eba\u7b49\uff09\uff0c\u63a8\u8350\u4ee5\u4e0b\u7f51\u7ad9\u67e5\u8be2<\/p>\n<p>\u5929\u773c\u67e5<a href=\"https:\/\/www.tianyancha.com\/\">\u5929\u773c\u67e5-\u5546\u4e1a\u67e5\u8be2\u5e73\u53f0_\u4f01\u4e1a\u4fe1\u606f\u67e5\u8be2_\u516c\u53f8\u67e5\u8be2_\u5de5\u5546\u67e5\u8be2_\u4f01\u4e1a\u4fe1\u7528\u4fe1\u606f\u7cfb\u7edf<\/a><\/p>\n<p>ICP\u5907\u6848\u67e5\u8be2\u7f51<a href=\"https:\/\/beian.miit.gov.cn\/#\/Integrated\/index\">https:\/\/beian.miit.gov.cn\/#\/Integrated\/index<\/a><\/p>\n<p>\u7231\u7ad9\u5907\u6848\u67e5\u8be2<a href=\"https:\/\/icp.aizhan.com\/\">icp\u5907\u6848\u67e5\u8be2_\u7f51\u7ad9\u5907\u6848\u67e5\u8be2_\u57df\u540d\u5907\u6848\u67e5\u8be2_APP\u5907\u6848\u67e5\u8be2_\u5c0f\u7a0b\u5e8f\u5907\u6848\u67e5\u8be2_\u5feb\u5e94\u7528\u5907\u6848\u67e5\u8be2_\u7231\u7ad9\u7f51<\/a><\/p>\n<p>\u57df\u540d\u52a9\u624b\u5907\u6848\u4fe1\u606f\u67e5\u8be2<a href=\"http:\/\/cha.fute.com\/index\">\u57df\u540d\u5de5\u5177_IP\u67e5\u8be2_\u5907\u6848\u57df\u540d\u67e5\u8be2_\u57df\u540d\u5907\u6848_\u57df\u540d\u52a9\u624b<\/a><\/p>\n<h2>\u4e3e\u4f8b\u67e5\u8be2\u7eff\u76dfwhois\u4fe1\u606f<\/h2>\n<p>nsfocus.com.cn<\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9a95b218.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745648371389-0cb86970-4c5b-4574-9b8d-0146df9983db.png\" \/><\/p>\n<p>\u901a\u8fc7\u53cd\u67e5\u6ce8\u518c\u4eba\u548c\u90ae\u7bb1\u5f97\u591a\u66f4\u591a\u5f97\u57df\u540d<\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9ac09b8b.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745648656633-cd252ece-4d38-4d8a-a50f-729e4382b904.png\" \/><\/p>\n<h1>\u6536\u96c6\u5b50\u57df\u540d<\/h1>\n<h2>\u5b50\u57df\u540d\u4f5c\u7528<\/h2>\n<p>\u6536\u96c6\u5b50\u57df\u540d\u53ef\u4ee5\u6269\u5927\u6d4b\u8bd5\u8303\u56f4\uff0c\u540c\u4e00\u57df\u540d\u4e0b\u7684\u4e8c\u7ea7\u57df\u540d\u90fd\u5c5e\u4e8e\u76ee\u6807\u8303\u56f4<\/p>\n<h2>\u5e38\u7528\u65b9\u5f0f<\/h2>\n<p>\u5b50\u57df\u540d\u4e2d\u7684\u5e38\u89c1\u8d44\u4ea7\u7c7b\u578b\u4e00\u822c\u5305\u62ec\u529e\u516c\u7cfb\u7edf\uff0c\u90ae\u7bb1\u7cfb\u7edf\uff0c\u8bba\u575b\uff0c\u5546\u57ce\uff0c\u5176\u4ed6\u7ba1\u7406\u7cfb\u7edf\uff0c\u7f51\u7ad9\u7ba1\u7406\u540e\u53f0\u4e5f\u6709\u53ef\u80fd\u51fa\u73b0\u5b50\u57df\u540d\u4e2d\u3002<\/p>\n<p>\u9996\u5148\u627e\u5230\u76ee\u6807\u7ad9\u70b9\uff0c\u5728\u5b98\u7f51\u4e2d\u53ef\u80fd\u4f1a\u627e\u5230\u76f8\u5173\u8d44\u4ea7\uff08\u591a\u4e3a\u529e\u516c\u7cfb\u7edf\uff0c\u90ae\u7bb1\u7cfb\u7edf\u7b49\uff09\uff0c\u5173\u6ce8\u4e00\u4e0b\u9875\u9762\u5e95\u90e8\uff0c\u4e5f\u8bb8\u6709\u7ba1\u7406\u540e\u53f0\u7b49\u6536\u83b7\u3002<\/p>\n<p>\u67e5\u627e\u76ee\u6807\u57df\u540d\u4fe1\u606f\u7684\u65b9\u6cd5\u6709\uff1a<\/p>\n<ol>\n<li>\n<p>FOFA title=&quot;\u516c\u53f8\u540d\u79f0&quot;<\/p>\n<\/li>\n<li>\n<p>\u767e\u5ea6 intitle=\u516c\u53f8\u540d\u79f0<\/p>\n<\/li>\n<li>\n<p>Google intitle=\u516c\u53f8\u540d\u79f0<\/p>\n<\/li>\n<li>\n<p>\u7ad9\u957f\u4e4b\u5bb6\uff0c\u76f4\u63a5\u641c\u7d22\u540d\u79f0\u6216\u8005\u7f51\u7ad9\u57df\u540d\u5373\u53ef\u67e5\u770b\u76f8\u5173\u4fe1\u606f\uff1a<\/p>\n<\/li>\n<\/ol>\n<p><a href=\"http:\/\/tool.chinaz.com\/\">http:\/\/tool.chinaz.com\/<\/a><\/p>\n<ol start=\"5\">\n<li>\u949f\u9997\u4e4b\u773c site=\u57df\u540d\u5373\u53ef<\/li>\n<\/ol>\n<p><a href=\"https:\/\/www.zoomeye.org\/\">https:\/\/www.zoomeye.org\/<\/a><\/p>\n<p>\u627e\u5230\u5b98\u7f51\u540e\uff0c\u518d\u6536\u96c6\u5b50\u57df\u540d\uff0c\u4e0b\u9762\u63a8\u8350\u51e0\u79cd\u5b50\u57df\u540d\u6536\u96c6\u7684\u65b9\u6cd5\uff0c\u76f4\u63a5\u8f93\u5165domain\u5373\u53ef\u67e5\u8be2<\/p>\n<h2>\u57df\u540d\u7c7b\u578b<\/h2>\n<p>A\u8bb0\u5f55\u3001\u522b\u540d\u8bb0\u5f55(CNAME)\u3001MX\u8bb0\u5f55\u3001TXT\u8bb0\u5f55\u3001NS\u8bb0\u5f55<\/p>\n<h3>A (Address) \u8bb0\u5f55\uff1a<\/h3>\n<p>\u662f\u7528\u6765\u6307\u5b9a\u4e3b\u673a\u540d\uff08\u6216\u57df\u540d\uff09\u5bf9\u5e94\u7684IP\u5730\u5740\u8bb0\u5f55\u3002\u7528\u6237\u53ef\u4ee5\u5c06\u8be5\u57df\u540d\u4e0b\u7684\u7f51\u7ad9\u670d\u52a1\u5668\u6307\u5411\u5230\u81ea\u5df1\u7684web server\u4e0a\u3002\u540c\u65f6\u4e5f\u53ef\u4ee5\u8bbe\u7f6e\u60a8\u57df\u540d\u7684\u4e8c\u7ea7\u57df\u540d\u3002<\/p>\n<h3>\u522b\u540d(CNAME)\u8bb0\u5f55\uff1a<\/h3>\n<p>\u4e5f\u88ab\u79f0\u4e3a\u89c4\u8303\u540d\u5b57\u3002\u8fd9\u79cd\u8bb0\u5f55\u5141\u8bb8\u60a8\u5c06\u591a\u4e2a\u540d\u5b57\u6620\u5c04\u5230\u540c\u4e00\u53f0\u8ba1\u7b97\u673a\u3002\u901a\u5e38\u7528\u4e8e\u540c\u65f6\u63d0\u4f9bWWW\u548cMAIL\u670d\u52a1\u7684\u8ba1\u7b97\u673a\u3002\u4f8b\u5982\uff0c\u6709\u4e00\u53f0\u8ba1\u7b97\u673a\u540d\u4e3a\u201chost.mydomain.com\u201d\uff08A\u8bb0\u5f55\uff09\u3002\u5b83\u540c\u65f6\u63d0\u4f9bWWW\u548cMAIL\u670d\u52a1\uff0c\u4e3a\u4e86\u4fbf\u4e8e\u7528\u6237\u8bbf\u95ee\u670d\u52a1\u3002\u53ef\u4ee5\u4e3a\u8be5\u8ba1\u7b97\u673a\u8bbe\u7f6e\u4e24\u4e2a\u522b\u540d\uff08CNAME\uff09\uff1aWWW\u548cMAIL\u3002\u8fd9\u4e24\u4e2a\u522b\u540d\u7684\u5168\u79f0\u5c31\u662f\u201cwww.mydomain.com\u201d\u548c\u201cmail.mydomain.com\u201d\u3002\u5b9e\u9645\u4e0a\u4ed6\u4eec\u90fd\u6307\u5411\u201chost.mydomain.com\u201d\u3002\u540c\u6837\u7684\u65b9\u6cd5\u53ef\u4ee5\u7528\u4e8e\u5f53\u60a8\u62e5\u6709\u591a\u4e2a\u57df\u540d\u9700\u8981\u6307\u5411\u540c\u4e00\u670d\u52a1\u5668IP\uff0c\u6b64\u65f6\u60a8\u5c31\u53ef\u4ee5\u5c06\u4e00\u4e2a\u57df\u540d\u505aA\u8bb0\u5f55\u6307\u5411\u670d\u52a1\u5668IP\u7136\u540e\u5c06\u5176\u4ed6\u7684\u57df\u540d\u505a\u522b\u540d\u5230\u4e4b\u524d\u505aA\u8bb0\u5f55\u7684\u57df\u540d\u4e0a\uff0c\u90a3\u4e48\u5f53\u60a8\u7684\u670d\u52a1\u5668IP\u5730\u5740\u53d8\u66f4\u65f6\u60a8\u5c31\u53ef\u4ee5\u4e0d\u5fc5\u9ebb\u70e6\u7684\u4e00\u4e2a\u4e00\u4e2a\u57df\u540d\u66f4\u6539\u6307\u5411\u4e86\u53ea\u9700\u8981\u66f4\u6539\u505aA\u8bb0\u5f55\u7684\u90a3\u4e2a\u57df\u540d\u5176\u4ed6\u505a\u522b\u540d\u7684\u90a3\u4e9b\u57df\u540d\u7684\u6307\u5411\u4e5f\u5c06\u81ea\u52a8\u66f4\u6539\u5230\u65b0\u7684IP\u5730\u5740\u4e0a\u4e86\u3002<\/p>\n<h3>\u5982\u4f55\u68c0\u6d4bCNAME\u8bb0\u5f55\uff1f<\/h3>\n<p>1\u3001\u8fdb\u5165\u547d\u4ee4\u72b6\u6001\uff1b\uff08\u5f00\u59cb\u83dc\u5355 &#8211; \u8fd0\u884c &#8211; CMD[\u56de\u8f66]\uff09\uff1b<\/p>\n<p>2\u3001\u8f93\u5165\u547d\u4ee4&quot; nslookup -q=cname \u8fd9\u91cc\u586b\u5199\u5bf9\u5e94\u7684\u57df\u540d\u6216\u4e8c\u7ea7\u57df\u540d&quot;\uff0c\u67e5\u770b\u8fd4\u56de\u7684\u7ed3\u679c\u4e0e\u8bbe\u7f6e\u7684\u662f\u5426\u4e00\u81f4\u5373\u53ef\u3002<\/p>\n<h3>MX\uff08Mail Exchanger\uff09\u8bb0\u5f55\uff1a<\/h3>\n<p>\u662f\u90ae\u4ef6\u4ea4\u6362\u8bb0\u5f55\uff0c\u5b83\u6307\u5411\u4e00\u4e2a\u90ae\u4ef6\u670d\u52a1\u5668\uff0c\u7528\u4e8e\u7535\u5b50\u90ae\u4ef6\u7cfb\u7edf\u53d1\u90ae\u4ef6\u65f6\u6839\u636e\u6536\u4fe1\u4eba\u7684\u5730\u5740\u540e\u7f00\u6765\u5b9a\u4f4d\u90ae\u4ef6\u670d\u52a1\u5668\u3002\u4f8b\u5982\uff0c\u5f53Internet\u4e0a\u7684\u67d0\u7528\u6237\u8981\u53d1\u4e00\u5c01\u4fe1\u7ed9 user@mydomain.com \u65f6\uff0c\u8be5\u7528\u6237\u7684\u90ae\u4ef6\u7cfb\u7edf\u901a\u8fc7DNS\u67e5\u627emydomain.com\u8fd9\u4e2a\u57df\u540d\u7684MX\u8bb0\u5f55\uff0c\u5982\u679cMX\u8bb0\u5f55\u5b58\u5728\uff0c\u7528\u6237\u8ba1\u7b97\u673a\u5c31\u5c06\u90ae\u4ef6\u53d1\u9001\u5230MX\u8bb0\u5f55\u6240\u6307\u5b9a\u7684\u90ae\u4ef6\u670d\u52a1\u5668\u4e0a\u3002<\/p>\n<h3>\u4ec0\u4e48\u662fTXT\u8bb0\u5f55\uff1f\uff1a<\/h3>\n<p>TXT\u8bb0\u5f55\u4e00\u822c\u6307\u4e3a\u67d0\u4e2a\u4e3b\u673a\u540d\u6216\u57df\u540d\u8bbe\u7f6e\u7684\u8bf4\u660e\uff0c\u5982\uff1a<\/p>\n<p>1\uff09admin IN TXT &quot;jack, mobile:13800138000&quot;\uff1b<\/p>\n<p>2\uff09mail IN TXT &quot;\u90ae\u4ef6\u4e3b\u673a, \u5b58\u653e\u5728xxx ,\u7ba1\u7406\u4eba\uff1aAAA&quot;\uff0cJim IN TXT &quot;contact: abc@mailserver.com&quot;<\/p>\n<p>\u4e5f\u5c31\u662f\u60a8\u53ef\u4ee5\u8bbe\u7f6e TXT \uff0c\u4ee5\u4fbf\u4f7f\u522b\u4eba\u8054\u7cfb\u5230\u60a8\u3002<\/p>\n<p>\u5982\u4f55\u68c0\u6d4bTXT\u8bb0\u5f55\uff1f<\/p>\n<p>1\u3001\u8fdb\u5165\u547d\u4ee4\u72b6\u6001\uff1b\uff08\u5f00\u59cb\u83dc\u5355 &#8211; \u8fd0\u884c &#8211; CMD[\u56de\u8f66]\uff09\uff1b<\/p>\n<p>2\u3001\u8f93\u5165\u547d\u4ee4&quot; nslookup -q=txt \u8fd9\u91cc\u586b\u5199\u5bf9\u5e94\u7684\u57df\u540d\u6216\u4e8c\u7ea7\u57df\u540d&quot;\uff0c\u67e5\u770b\u8fd4\u56de\u7684\u7ed3\u679c\u4e0e\u8bbe\u7f6e\u7684\u662f\u5426\u4e00\u81f4\u5373\u53ef\u3002<\/p>\n<h3>\u4ec0\u4e48\u662fNS\u8bb0\u5f55\uff1f<\/h3>\n<p>ns\u8bb0\u5f55\u5168\u79f0\u4e3aName Server \u662f\u4e00\u79cd\u57df\u540d\u670d\u52a1\u5668\u8bb0\u5f55\uff0c\u7528\u6765\u660e\u786e\u5f53\u524d\u4f60\u7684\u57df\u540d\u662f\u7531\u54ea\u4e2aDNS\u670d\u52a1\u5668\u6765\u8fdb\u884c\u89e3\u6790\u7684\u3002<\/p>\n<h2>\u5b50\u57df\u540d\u5728\u7ebf\u67e5\u8be2<\/h2>\n<p><a href=\"https:\/\/www.dnsgrep.cn\/subdomain\/nsfocus.com\">https:\/\/www.dnsgrep.cn\/subdomain\/nsfocus.com<\/a><\/p>\n<p><a href=\"https:\/\/www.douhao.com\/subdomain\">https:\/\/www.douhao.com\/subdomain<\/a><\/p>\n<p><a href=\"https:\/\/zh.subdomains.whoisxmlapi.com\/lookup\">https:\/\/zh.subdomains.whoisxmlapi.com\/lookup<\/a><\/p>\n<p><a href=\"https:\/\/site.ip138.com\/nsfocus.com.cn\/domain.htm\">https:\/\/site.ip138.com\/nsfocus.com.cn\/domain.htm<\/a><\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9adf3318.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649200737-d084bfe9-a096-4bd2-9b1f-9479ef3517c6.png\" \/><\/p>\n<h2>dns\u4fa6\u6d4b<\/h2>\n<p><a href=\"https:\/\/dnsdumpster.com\/\">https:\/\/dnsdumpster.com\/<\/a><\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9b001a97.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649131985-3f2b5399-e5b3-4237-9469-d50cd845e6b0.png\" \/><\/p>\n<h2>FOFA\u641c\u7d22\u5b50\u57df\u540d<\/h2>\n<p><a href=\"https:\/\/fofa.info\/\">https:\/\/fofa.info\/<\/a><\/p>\n<p>\u8bed\u6cd5\uff1adomain=&quot;baidu.com&quot;<\/p>\n<p>\u63d0\u793a\uff1a\u4ee5\u4e0a\u4e24\u79cd\u65b9\u6cd5\u65e0\u9700\u7206\u7834\uff0c\u67e5\u8be2\u901f\u5ea6\u5feb\uff0c\u9700\u8981\u5feb\u901f\u6536\u96c6\u8d44\u4ea7\u65f6\u53ef\u4ee5\u4f18\u5148\u4f7f\u7528\uff0c\u540e\u9762\u518d\u7528\u5176\u4ed6\u65b9\u6cd5\u8865\u5145\u3002<\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9b25ff88.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649267603-f942b8e5-2f67-4970-8e2e-cfe5ee9818f5.png\" \/><\/p>\n<h2>Hackertarget\u67e5\u8be2\u5b50\u57df\u540d<\/h2>\n<p><a href=\"https:\/\/hackertarget.com\/find-dns-host-records\/\">https:\/\/hackertarget.com\/find-dns-host-records\/<\/a><\/p>\n<p>\u6ce8\u610f\uff1a\u901a\u8fc7\u8be5\u65b9\u6cd5\u67e5\u8be2\u5b50\u57df\u540d\u53ef\u4ee5\u5f97\u5230\u4e00\u4e2a\u76ee\u6807\u5927\u6982\u7684ip\u6bb5\uff0c\u63a5\u4e0b\u6765\u53ef\u4ee5\u901a\u8fc7ip\u6765\u6536\u96c6\u4fe1\u606f\u3002<\/p>\n<h2>360\u6d4b\u7ed8\u7a7a\u95f4<\/h2>\n<p><a href=\"https:\/\/quake.360.net\/quake\/\">https:\/\/quake.360.net\/quake\/<\/a><\/p>\n<h2>Layer\u5b50\u57df\u540d\u6316\u6398\u673a<\/h2>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9b58f18e.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649358248-1a2e259e-0d62-47ca-b7ed-d8c299868349.png\" \/><\/p>\n<h2>SubDomainBrute<\/h2>\n<p>pip install aiodns<\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9b862507.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649354990-58bfae50-a2b1-4fd2-9a7e-0a32bd3653c2.png\" \/><\/p>\n<p>\u8fd0\u884c\u547d\u4ee4subDomainsBrute.py freebuf.com  <\/p>\n<p>subDomainsBrute.py  freebuf.com &#8211;full -o freebuf2.txt<\/p>\n<h2>Sublist3r<\/h2>\n<p><a href=\"https:\/\/github.com\/aboul3la\/Sublist3r\">https:\/\/github.com\/aboul3la\/Sublist3r<\/a><\/p>\n<p>pip install -r requirements.txt<\/p>\n<p>\u63d0\u793a\uff1a\u4ee5\u4e0a\u65b9\u6cd5\u4e3a\u7206\u7834\u5b50\u57df\u540d\uff0c\u7531\u4e8e\u5b57\u5178\u6bd4\u8f83\u5f3a\u5927\uff0c\u6240\u4ee5\u6548\u7387\u8f83\u9ad8\u3002<\/p>\n<p><strong>\u5e2e\u52a9\u6587\u6863<\/strong><\/p>\n<p>usage: sublist3r.py [-h] -d DOMAIN [-b [BRUTEFORCE]] [-p PORTS] [-v [VERBOSE]]<\/p>\n<p>[-t THREADS] [-e ENGINES] [-o OUTPUT] [-n]<\/p>\n<p>OPTIONS:<\/p>\n<p>-h, &#8211;help            show this help message and exit<\/p>\n<p>-d DOMAIN, &#8211;domain DOMAIN<\/p>\n<p>Domain name to enumerate it&#8217;s subdomains<\/p>\n<p>-b [BRUTEFORCE], &#8211;bruteforce [BRUTEFORCE]<\/p>\n<p>Enable the subbrute bruteforce module<\/p>\n<p>-p PORTS, &#8211;ports PORTS<\/p>\n<p>Scan the found subdomains against specified tcp ports<\/p>\n<p>-v [VERBOSE], &#8211;verbose [VERBOSE]<\/p>\n<p>Enable Verbosity and display results in realtime<\/p>\n<p>-t THREADS, &#8211;threads THREADS<\/p>\n<p>Number of threads to use for subbrute bruteforce<\/p>\n<p>-e ENGINES, &#8211;engines ENGINES<\/p>\n<p>Specify a comma-separated list of search engines<\/p>\n<p>-o OUTPUT, &#8211;output OUTPUT<\/p>\n<p>Save the results to text file<\/p>\n<p>-n, &#8211;no-color        Output without color<\/p>\n<p>Example: python sublist3r.py -d google.com<\/p>\n<p><strong>\u4e2d\u6587\u7ffb\u8bd1<\/strong><\/p>\n<p>-h \uff1a\u5e2e\u52a9<\/p>\n<p>-d \uff1a\u6307\u5b9a\u4e3b\u57df\u540d\u679a\u4e3e\u5b50\u57df\u540d<\/p>\n<p>-b \uff1a\u8c03\u7528subbrute\u66b4\u529b\u679a\u4e3e\u5b50\u57df\u540d<\/p>\n<p>-p \uff1a\u6307\u5b9atpc\u7aef\u53e3\u626b\u63cf\u5b50\u57df\u540d<\/p>\n<p>-v \uff1a\u663e\u793a\u5b9e\u65f6\u8be6\u7ec6\u4fe1\u606f\u7ed3\u679c<\/p>\n<p>-t \uff1a\u6307\u5b9a\u7ebf\u7a0b<\/p>\n<p>-e \uff1a\u6307\u5b9a\u641c\u7d22\u5f15\u64ce<\/p>\n<p>-o \uff1a\u5c06\u7ed3\u679c\u4fdd\u5b58\u5230\u6587\u672c<\/p>\n<p>-n \uff1a\u8f93\u51fa\u4e0d\u5e26\u989c\u8272<\/p>\n<p><strong>\u9ed8\u8ba4\u53c2\u6570\u626b\u63cf\u5b50\u57df\u540d<\/strong><\/p>\n<p>python sublist3r.py -d baidu.com <\/p>\n<p><strong>\u4f7f\u7528\u66b4\u529b\u679a\u4e3e\u5b50\u57df\u540d<\/strong><\/p>\n<p>python sublist3r -b -d baidu.com <\/p>\n<h2>OneForALL<\/h2>\n<p>pip3 install &#8211;user -r requirements.txt -i <a href=\"https:\/\/mirrors.aliyun.com\/pypi\/simple\/\">https:\/\/mirrors.aliyun.com\/pypi\/simple\/<\/a><\/p>\n<p>python3 oneforall.py &#8211;target baidu.com run \/<em>\u6536\u96c6<\/em>\/<\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9bc0a0a5.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649423617-874159d3-5f65-403b-9af2-2e9dd13cccd9.png\" \/><\/p>\n<p>\u7206\u7834\u5b50\u57df\u540d<\/p>\n<p>Example\uff1a<\/p>\n<p>brute.py &#8211;target domain.com &#8211;word True run<\/p>\n<p>brute.py &#8211;targets .\/domains.txt &#8211;word True run<\/p>\n<p>brute.py &#8211;target domain.com &#8211;word True &#8211;concurrent 2000 run<\/p>\n<p>brute.py &#8211;target domain.com &#8211;word True &#8211;wordlist subnames.txt run<\/p>\n<p>brute.py &#8211;target domain.com &#8211;word True &#8211;recursive True &#8211;depth 2 run<\/p>\n<p>brute.py &#8211;target d.com &#8211;fuzz True &#8211;place m.*.d.com &#8211;rule &#8216;[a-z]&#8217; run<\/p>\n<p>brute.py &#8211;target d.com &#8211;fuzz True &#8211;place m.*.d.com &#8211;fuzzlist subnames.txt run<\/p>\n<h2>Wydomain<\/h2>\n<p>dnsburte.py -d aliyun.com -f dnspod.csv -o aliyun.log<\/p>\n<p>wydomain.py -d aliyun.com <\/p>\n<h2>FuzzDomain<\/h2>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9bf7684d.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649454574-6b271509-40d5-4868-90bd-66c9454920c4.png\" \/><\/p>\n<h2>\u9690\u85cf\u57df\u540dhosts\u78b0\u649e<\/h2>\n<p>\u9690\u85cf\u8d44\u4ea7\u63a2\u6d4b-hosts\u78b0\u649e<\/p>\n<p>\u5f88\u591a\u65f6\u5019\u8bbf\u95ee\u76ee\u6807\u8d44\u4ea7IP\u54cd\u5e94\u591a\u4e3a\uff1a401\u3001403\u3001404\u3001500\uff0c\u4f46\u662f\u7528\u57df\u540d\u8bf7\u6c42\u5374\u80fd\u8fd4\u56de\u6b63\u5e38\u7684\u4e1a\u52a1\u7cfb\u7edf\uff08\u7981\u6b62IP\u76f4\u63a5\u8bbf\u95ee\uff09\uff0c\u56e0\u4e3a\u8fd9\u5927\u591a\u6570\u90fd\u662f\u9700\u8981\u7ed1\u5b9ahost\u624d\u80fd\u6b63\u5e38\u8bf7\u6c42\u8bbf\u95ee\u7684\uff08\u76ee\u524d\u4e92\u8054\u7f51\u516c\u53f8\u57fa\u672c\u7684\u505a\u6cd5\uff09\uff08\u57df\u540d\u5220\u9664\u4e86A\u8bb0\u5f55\uff0c\u4f46\u662f\u53cd\u4ee3\u7684\u914d\u7f6e\u672a\u66f4\u65b0\uff09\uff0c\u90a3\u4e48\u6211\u4eec\u5c31\u53ef\u4ee5\u901a\u8fc7\u6536\u96c6\u5230\u7684\u76ee\u6807\u7684\u57df\u540d\u548c\u76ee\u6807\u8d44\u4ea7\u7684IP\u6bb5\u7ec4\u5408\u8d77\u6765\uff0c\u4ee5 IP\u6bb5+\u57df\u540d\u7684\u5f62\u5f0f\u8fdb\u884c\u6346\u7ed1\u78b0\u649e\uff0c\u5c31\u80fd\u53d1\u73b0\u5f88\u591a\u6709\u610f\u601d\u7684\u4e1c\u897f\u3002<\/p>\n<p>\u5728\u53d1\u9001http\u8bf7\u6c42\u7684\u65f6\u5019\uff0c\u5bf9\u57df\u540d\u548cIP\u5217\u8868\u8fdb\u884c\u914d\u5bf9\uff0c\u7136\u540e\u904d\u5386\u53d1\u9001\u8bf7\u6c42\uff08\u5c31\u76f8\u5f53\u4e8e\u4fee\u6539\u4e86\u672c\u5730\u7684hosts\u6587\u4ef6\u4e00\u6837\uff09\uff0c\u5e76\u628a\u76f8\u5e94\u7684title\u548c\u54cd\u5e94\u5305\u5927\u5c0f\u62ff\u56de\u6765\u505a\u5bf9\u6bd4\uff0c\u5373\u53ef\u5feb\u901f\u53d1\u73b0\u4e00\u4e9b\u9690\u853d\u7684\u8d44\u4ea7\u3002<\/p>\n<p>\u8fdb\u884chosts\u78b0\u649e\u9700\u8981\u76ee\u6807\u7684\u57df\u540d\u548c\u76ee\u6807\u7684\u76f8\u5173IP\u4f5c\u4e3a\u5b57\u5178<\/p>\n<p>\u57df\u540d\u5c31\u4e0d\u8bf4\u4e86<\/p>\n<p>\u76f8\u5173IP\u6765\u6e90\u6709\uff1a<\/p>\n<p>\u76ee\u6807\u57df\u540d\u5386\u53f2\u89e3\u6790IP<\/p>\n<p><a href=\"https:\/\/site.ip138.com\/\">https:\/\/site.ip138.com\/<\/a><\/p>\n<p><a href=\"https:\/\/ipchaxun.com\/\">https:\/\/ipchaxun.com\/<\/a><\/p>\n<p>ip\u6b63\u5219<\/p>\n<p><a href=\"https:\/\/www.aicesu.cn\/reg\/\">https:\/\/www.aicesu.cn\/reg\/<\/a><\/p>\n<h1>\u7aef\u53e3\u626b\u63cf<\/h1>\n<h2>msscan\u7aef\u53e3\u626b\u63cf<\/h2>\n<p>msscan -p 1-65535 ip &#8211;rate=1000<\/p>\n<p><a href=\"https:\/\/gitee.com\/youshusoft\/GoScanner\/\">https:\/\/gitee.com\/youshusoft\/GoScanner\/<\/a><\/p>\n<h2>\u5fa1\u5251\u7aef\u53e3\u626b\u63cf\u5de5\u5177<\/h2>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9c33da2f.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649694831-af8a7301-129c-4937-9de6-a22f0b0260ca.png\" \/><\/p>\n<h2>nmap\u626b\u63cf\u7aef\u53e3\u548c\u63a2\u6d4b\u7aef\u53e3\u4fe1\u606f<\/h2>\n<p>\u5e38\u7528\u53c2\u6570\uff0c\u5982\uff1a<\/p>\n<p>nmap -sV 192.168.0.2<\/p>\n<p>nmap -sT 92.168.0.2<\/p>\n<p>nmap -Pn -A -sC 192.168.0.2<\/p>\n<p>nmap -sU -sT -p0-65535 192.168.122.1<\/p>\n<p>\u7528\u4e8e\u626b\u63cf\u76ee\u6807\u4e3b\u673a\u670d\u52a1\u7248\u672c\u53f7\u4e0e\u5f00\u653e\u7684\u7aef\u53e3<\/p>\n<p>\u5982\u679c\u9700\u8981\u626b\u63cf\u591a\u4e2aip\u6216ip\u6bb5\uff0c\u53ef\u4ee5\u5c06\u4ed6\u4eec\u4fdd\u5b58\u5230\u4e00\u4e2atxt\u6587\u4ef6\u4e2d<\/p>\n<p>nmap -iL ip.txt\u6765\u626b\u63cf\u5217\u8868\u4e2d\u6240\u6709\u7684ip\u3002<\/p>\n<p>Nmap\u4e3a\u7aef\u53e3\u63a2\u6d4b\u6700\u5e38\u7528\u7684\u65b9\u6cd5\uff0c\u64cd\u4f5c\u65b9\u4fbf\uff0c\u8f93\u51fa\u7ed3\u679c\u975e\u5e38\u76f4\u89c2\u3002<\/p>\n<h2>\u5728\u7ebf\u7aef\u53e3\u68c0\u6d4b<\/h2>\n<p><a href=\"http:\/\/coolaf.com\/tool\/port\">http:\/\/coolaf.com\/tool\/port<\/a><\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9c7680e4.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649750582-b1b00136-ba22-4a00-9b53-d52b2eefe9e0.png\" \/><\/p>\n<h2>\u7aef\u53e3\u626b\u63cf\u5668<\/h2>\n<p>\u5fa1\u5251\uff0cmsscan\uff0czmap\u7b49<\/p>\n<p>\u5fa1\u5251\u9ad8\u901f\u7aef\u53e3\u626b\u63cf\u5668\uff1a<\/p>\n<p>\u586b\u5165\u60f3\u8981\u626b\u63cf\u7684ip\u6bb5\uff08\u5982\u679c\u53ea\u626b\u63cf\u4e00\u4e2aip\uff0c\u5219\u5f00\u59cbIP\u548c\u7ed3\u675fIP\u586b\u4e00\u4e2a\u5373\u53ef\uff09\uff0c\u53ef\u4ee5\u9009\u62e9\u4e0d\u6539\u9ed8\u8ba4\u7aef\u53e3\u5217\u8868\uff0c\u4e5f\u53ef\u4ee5\u9009\u62e9\u81ea\u5df1\u6307\u5b9a\u7aef\u53e3\u3002<\/p>\n<h2>\u6e17\u900f\u7aef\u53e3<\/h2>\n<p>21,22,23,1433,152,3306,3389,5432,5900,50070,50030,50000,27017,27018,11211,9200,9300,7001,7002,6379,5984,873,443,8000-9090,80-89,80,10000,8888,8649,8083,8080,8089,9090,7778,7001,7002,6082,5984,4440,3312,3311,3128,2601,2604,2222,2082,2083,389,88,512,513,514,1025,111,1521,445,135,139,53<\/p>\n<h2>\u6e17\u900f\u5e38\u89c1\u7aef\u53e3\u53ca\u5bf9\u5e94\u670d\u52a1<\/h2>\n<p>1.web\u7c7b(web\u6f0f\u6d1e\/\u654f\u611f\u76ee\u5f55)<\/p>\n<p>\u7b2c\u4e09\u65b9\u901a\u7528\u7ec4\u4ef6\u6f0f\u6d1estruts thinkphp jboss ganglia zabbix<\/p>\n<p>80 web <\/p>\n<p>80-89 web <\/p>\n<p>8000-9090 web<\/p>\n<p>2.\u6570\u636e\u5e93\u7c7b(\u626b\u63cf\u5f31\u53e3\u4ee4)<\/p>\n<p>1433 MSSQL <\/p>\n<p>1521 Oracle <\/p>\n<p>3306 MySQL <\/p>\n<p>5432 PostgreSQL <\/p>\n<p>3.\u7279\u6b8a\u670d\u52a1\u7c7b(\u672a\u6388\u6743\/\u547d\u4ee4\u6267\u884c\u7c7b\/\u6f0f\u6d1e)<\/p>\n<p>443 SSL\u5fc3\u810f\u6ef4\u8840<\/p>\n<p>873 Rsync\u672a\u6388\u6743<\/p>\n<p>5984 CouchDB <a href=\"http:\/\/xxx:5984\/_utils\/\">http:\/\/xxx:5984\/_utils\/<\/a> <\/p>\n<p>6379 redis\u672a\u6388\u6743<\/p>\n<p>7001,7002 WebLogic\u9ed8\u8ba4\u5f31\u53e3\u4ee4\uff0c\u53cd\u5e8f\u5217<\/p>\n<p>9200,9300 elasticsearch \u53c2\u8003WooYun: \u591a\u73a9\u67d0\u670d\u52a1\u5668ElasticSearch\u547d\u4ee4\u6267\u884c\u6f0f\u6d1e<\/p>\n<p>11211 memcache\u672a\u6388\u6743\u8bbf\u95ee<\/p>\n<p>27017,27018 Mongodb\u672a\u6388\u6743\u8bbf\u95ee<\/p>\n<p>50000 SAP\u547d\u4ee4\u6267\u884c<\/p>\n<p>50070,50030 hadoop\u9ed8\u8ba4\u7aef\u53e3\u672a\u6388\u6743\u8bbf\u95ee<\/p>\n<p>4.\u5e38\u7528\u7aef\u53e3\u7c7b(\u626b\u63cf\u5f31\u53e3\u4ee4\/\u7aef\u53e3\u7206\u7834)<\/p>\n<p>21 ftp <\/p>\n<p>22 SSH <\/p>\n<p>23 Telnet <\/p>\n<p>2601,2604 zebra\u8def\u7531\uff0c\u9ed8\u8ba4\u5bc6\u7801zebra<\/p>\n<p>3389 \u8fdc\u7a0b\u684c\u9762<\/p>\n<p>5.\u7aef\u53e3\u5408\u8ba1\u8be6\u60c5<\/p>\n<p>21 ftp <\/p>\n<p>22 SSH <\/p>\n<p>23 Telnet <\/p>\n<p>80 web <\/p>\n<p>80-89 web <\/p>\n<p>161 SNMP <\/p>\n<p>389 LDAP <\/p>\n<p>443 SSL\u5fc3\u810f\u6ef4\u8840\u4ee5\u53ca\u4e00\u4e9bweb\u6f0f\u6d1e\u6d4b\u8bd5<\/p>\n<p>445 SMB <\/p>\n<p>512,513,514 Rexec <\/p>\n<p>873 Rsync\u672a\u6388\u6743<\/p>\n<p>1025,111 NFS <\/p>\n<p>1433 MSSQL <\/p>\n<p>1521 Oracle:(iSqlPlus Port:5560,7778) <\/p>\n<p>2082\/2083 cpanel\u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf\u767b\u9646\uff08\u56fd\u5916\u7528\u8f83\u591a\uff09<\/p>\n<p>2222 DA\u865a\u62df\u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf\u767b\u9646\uff08\u56fd\u5916\u7528\u8f83\u591a\uff09<\/p>\n<p>2601,2604 zebra\u8def\u7531\uff0c\u9ed8\u8ba4\u5bc6\u7801zebra<\/p>\n<p>3128 squid\u4ee3\u7406\u9ed8\u8ba4\u7aef\u53e3\uff0c\u5982\u679c\u6ca1\u8bbe\u7f6e\u53e3\u4ee4\u5f88\u53ef\u80fd\u5c31\u76f4\u63a5\u6f2b\u6e38\u5185\u7f51\u4e86<\/p>\n<p>3306 MySQL <\/p>\n<p>3312\/3311 kangle\u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf\u767b\u9646<\/p>\n<p>3389 \u8fdc\u7a0b\u684c\u9762<\/p>\n<p>4440 rundeck \u53c2\u8003WooYun: \u501f\u7528\u65b0\u6d6a\u67d0\u670d\u52a1\u6210\u529f\u6f2b\u6e38\u65b0\u6d6a\u5185\u7f51<\/p>\n<p>5432 PostgreSQL <\/p>\n<p>5900 vnc <\/p>\n<p>5984 CouchDB <a href=\"http:\/\/xxx:5984\/_utils\/\">http:\/\/xxx:5984\/_utils\/<\/a> <\/p>\n<p>6082 varnish \u53c2\u8003WooYun: Varnish HTTP accelerator CLI \u672a\u6388\u6743\u8bbf\u95ee\u6613\u5bfc\u81f4\u7f51\u7ad9\u88ab\u76f4\u63a5\u7be1\u6539\u6216\u8005\u4f5c\u4e3a\u4ee3\u7406\u8fdb\u5165\u5185\u7f51<\/p>\n<p>6379 redis\u672a\u6388\u6743<\/p>\n<p>7001,7002 WebLogic\u9ed8\u8ba4\u5f31\u53e3\u4ee4\uff0c\u53cd\u5e8f\u5217<\/p>\n<p>7778 Kloxo\u4e3b\u673a\u63a7\u5236\u9762\u677f\u767b\u5f55<\/p>\n<p>8000-9090 \u90fd\u662f\u4e00\u4e9b\u5e38\u89c1\u7684web\u7aef\u53e3\uff0c\u6709\u4e9b\u8fd0\u7ef4\u559c\u6b22\u628a\u7ba1\u7406\u540e\u53f0\u5f00\u5728\u8fd9\u4e9b\u975e80\u7684\u7aef\u53e3\u4e0a<\/p>\n<p>8080 tomcat\/WDCP\u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf\uff0c\u9ed8\u8ba4\u5f31\u53e3\u4ee4<\/p>\n<p>8080,8089,9090 JBOSS <\/p>\n<p>8083 Vestacp\u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf\uff08\u56fd\u5916\u7528\u8f83\u591a\uff09<\/p>\n<p>8649 ganglia <\/p>\n<p>8888 amh\/LuManager \u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf\u9ed8\u8ba4\u7aef\u53e3<\/p>\n<p>9200,9300 elasticsearch \u53c2\u8003WooYun: \u591a\u73a9\u67d0\u670d\u52a1\u5668ElasticSearch\u547d\u4ee4\u6267\u884c\u6f0f\u6d1e<\/p>\n<p>10000 Virtualmin\/Webmin \u670d\u52a1\u5668\u865a\u62df\u4e3b\u673a\u7ba1\u7406\u7cfb\u7edf<\/p>\n<p>11211 memcache\u672a\u6388\u6743\u8bbf\u95ee<\/p>\n<p>27017,27018 Mongodb\u672a\u6388\u6743\u8bbf\u95ee<\/p>\n<p>28017 mongodb\u7edf\u8ba1\u9875\u9762<\/p>\n<p>50000 SAP\u547d\u4ee4\u6267\u884c<\/p>\n<p>50070,50030 hadoop\u9ed8\u8ba4\u7aef\u53e3\u672a\u6388\u6743\u8bbf\u95ee<\/p>\n<h2>\u5e38\u89c1\u7684\u7aef\u53e3\u548c\u653b\u51fb\u65b9\u6cd5<\/h2>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9ca6904c.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745649826799-e686aecb-e9b7-4167-8e12-7203252606b2.png\" \/><\/p>\n<h1>\u67e5\u627e\u771f\u5b9eip<\/h1>\n<p>\u5982\u679c\u76ee\u6807\u7f51\u7ad9\u4f7f\u7528\u4e86CDN\uff0c\u4f7f\u7528\u4e86cdn\u771f\u5b9e\u7684ip\u4f1a\u88ab\u9690\u85cf\uff0c\u5982\u679c\u8981\u67e5\u627e\u771f\u5b9e\u7684\u670d\u52a1\u5668\u5c31\u5fc5\u987b\u83b7\u53d6\u771f\u5b9e\u7684ip\uff0c\u6839\u636e\u8fd9\u4e2aip\u7ee7\u7eed\u67e5\u8be2\u65c1\u7ad9\u3002<\/p>\n<p>\u6ce8\u610f\uff1a\u5f88\u591a\u65f6\u5019\uff0c\u4e3b\u7ad9\u867d\u7136\u662f\u7528\u4e86CDN\uff0c\u4f46\u5b50\u57df\u540d\u53ef\u80fd\u6ca1\u6709\u4f7f\u7528CDN\uff0c\u5982\u679c\u4e3b\u7ad9\u548c\u5b50\u57df\u540d\u5728\u4e00\u4e2aip\u6bb5\u4e2d\uff0c\u90a3\u4e48\u627e\u5230\u5b50\u57df\u540d\u7684\u771f\u5b9eip\u4e5f\u662f\u4e00\u79cd\u9014\u5f84\u3002<\/p>\n<h2>\u591a\u5730ping\u786e\u8ba4\u662f\u5426\u4f7f\u7528CDN<\/h2>\n<p><a href=\"https:\/\/ping.chinaz.com\/\">https:\/\/ping.chinaz.com\/<\/a><\/p>\n<p><a href=\"https:\/\/ping.aizhan.com\/\">https:\/\/ping.aizhan.com\/<\/a><\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9cd8e763.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745659252855-f0843197-7cbc-45b8-a608-9eb118462d92.png\" \/><\/p>\n<h2>\u67e5\u8be2\u5386\u53f2DNS\u89e3\u6790\u8bb0\u5f55<\/h2>\n<p>\u5728\u67e5\u8be2\u5230\u7684\u5386\u53f2\u89e3\u6790\u8bb0\u5f55\u4e2d\uff0c\u6700\u65e9\u7684\u5386\u53f2\u89e3\u6790ip\u5f88\u6709\u53ef\u80fd\u8bb0\u5f55\u7684\u5c31\u662f\u771f\u5b9eip\uff0c\u5feb\u901f\u67e5\u627e\u771f\u5b9eIP\u63a8\u8350\u6b64\u65b9\u6cd5\uff0c\u4f46\u5e76\u4e0d\u662f\u6240\u6709\u7f51\u7ad9\u90fd\u80fd\u67e5\u5230\u3002<\/p>\n<h3>DNSDB<\/h3>\n<p><a href=\"https:\/\/getdns.dnsdb.io\/\">https:\/\/getdns.dnsdb.io\/<\/a><\/p>\n<h3>\u5fae\u6b65\u5728\u7ebf<\/h3>\n<p><a href=\"https:\/\/x.threatbook.com\/\">https:\/\/x.threatbook.com\/<\/a><\/p>\n<h3>lpip.net<\/h3>\n<p><a href=\"https:\/\/tools.ipip.net\/cdn.php\">https:\/\/tools.ipip.net\/cdn.php<\/a><\/p>\n<h3>viewdns<\/h3>\n<p><a href=\"https:\/\/viewdns.info\/\">https:\/\/viewdns.info\/<\/a><\/p>\n<h2>phpinfo<\/h2>\n<p>\u5982\u679c\u76ee\u6807\u7f51\u7ad9\u5b58\u5728phpinfo\u6cc4\u9732\u7b49\uff0c\u53ef\u4ee5\u5728phpinfo\u4e2d\u7684SERVER_ADDR\u6216_SERVER[\u201cSERVER_ADDR&quot;]\u627e\u5230\u771f\u5b9eip<\/p>\n<h2>\u7ed5\u8fc7CDN<\/h2>\n<p><a href=\"https:\/\/www.cnblogs.com\/qiudabai\/p\/9763739.html\">https:\/\/www.cnblogs.com\/qiudabai\/p\/9763739.html<\/a><\/p>\n<h1>\u65c1\u7ad9\u548cC\u6bb5<\/h1>\n<p>\u65c1\u7ad9\u5f80\u5f80\u5b58\u5728\u4e1a\u52a1\u529f\u80fd\u7ad9\u70b9\uff0c\u5efa\u8bae\u5148\u6536\u96c6\u5df2\u6709IP\u7684\u65c1\u7ad9\uff0c\u518d\u63a2\u6d4bC\u6bb5\uff0c\u786e\u8ba4C\u6bb5\u76ee\u6807\u540e\uff0c\u518d\u5728C\u6bb5\u7684\u57fa\u7840\u4e0a\u518d\u6536\u96c6\u4e00\u6b21\u65c1\u7ad9\u3002<\/p>\n<p>\u65c1\u7ad9\u662f\u548c\u5df2\u77e5\u76ee\u6807\u7ad9\u70b9\u5728\u540c\u4e00\u670d\u52a1\u5668\u4f46\u4e0d\u540c\u7aef\u53e3\u7684\u7ad9\u70b9\uff0c\u901a\u8fc7\u4ee5\u4e0b\u65b9\u6cd5\u641c\u7d22\u5230\u65c1\u7ad9\u540e\uff0c\u5148\u8bbf\u95ee\u4e00\u4e0b\u786e\u5b9a\u662f\u4e0d\u662f\u81ea\u5df1\u9700\u8981\u7684\u7ad9\u70b9\u4fe1\u606f\u3002<\/p>\n<h3>\u957f\u4e4b\u5bb6<\/h3>\n<p>\u540cip\u7f51\u7ad9\u67e5\u8be2http:\/\/stool.chinaz.com\/same<\/p>\n<p><a href=\"https:\/\/chapangzhan.com\/\">https:\/\/chapangzhan.com\/<\/a><\/p>\n<h2>google hacking<\/h2>\n<p><a href=\"https:\/\/blog.csdn.net\/qq_36119192\/article\/details\/84029809\">https:\/\/blog.csdn.net\/qq_36119192\/article\/details\/84029809<\/a><\/p>\n<h3>\u7f51\u7edc\u7a7a\u95f4\u641c\u7d22\u5f15\u64ce<\/h3>\n<p>\u5982FOFA\u641c\u7d22\u65c1\u7ad9\u548cC\u6bb5<\/p>\n<p>\u8be5\u65b9\u6cd5\u6548\u7387\u8f83\u9ad8\uff0c\u5e76\u80fd\u591f\u76f4\u89c2\u5730\u770b\u5230\u7ad9\u70b9\u6807\u9898\uff0c\u4f46\u4e5f\u6709\u4e0d\u5e38\u89c1\u7aef\u53e3\u672a\u6536\u5f55\u7684\u60c5\u51b5\uff0c\u867d\u7136\u8fd9\u79cd\u60c5\u51b5\u5f88\u5c11\uff0c\u4f46\u4e4b\u540e\u8865\u5145\u8d44\u4ea7\u7684\u65f6\u5019\u53ef\u4ee5\u7528\u4e0b\u9762\u7684\u65b9\u6cd5nmap\u626b\u63cf\u518d\u6536\u96c6\u4e00\u904d\u3002<\/p>\n<h3>\u5728\u7ebfc\u6bb5 webscan.cc<\/h3>\n<p>webscan.cc<\/p>\n<p><a href=\"https:\/\/c.webscan.cc\/\">https:\/\/c.webscan.cc\/<\/a><\/p>\n<p>c\u6bb5\u5229\u7528\u811a\u672c<\/p>\n<p>pip install requests<\/p>\n<pre class=\"prettyprint linenums\" ><code class=\"language-sql\">#coding:utf-8\nimport requests\nimport json\n\ndef get_c(ip):\nprint(\"\u6b63\u5728\u6536\u96c6{}\".format(ip))\nurl=\"http:\/\/api.webscan.cc\/?action=query&amp;ip={}\".format(ip)\nreq=requests.get(url=url)\nhtml=req.text\ndata=req.json()\nif 'null' not in html:\nwith open(\"resulit.txt\", 'a', encoding='utf-8') as f:\nf.write(ip + 'n')\n       f.close()\nfor i in data:\nwith open(\"resulit.txt\", 'a',encoding='utf-8') as f:\nf.write(\"t{} {}n\".format(i['domain'],i['title']))\nprint(\"     [+] {} {}[+]\".format(i['domain'],i['title']))\nf.close()\n\ndef get_ips(ip):\niplist=[]\nips_str = ip[:ip.rfind('.')]\nfor ips in range(1, 256):\nipadd=ips_str + '.' + str(ips)\niplist.append(ipadd)\nreturn iplist\n\nip=input(\"\u8bf7\u4f60\u8f93\u5165\u8981\u67e5\u8be2\u7684ip:\")\n\nips=get_ips(ip)\nfor p in ips:\nget_c(p)<\/code><\/pre>\n<h1>\u7f51\u7edc\u7a7a\u95f4\u641c\u7d22\u5f15\u64ce<\/h1>\n<p>\u5982\u679c\u60f3\u8981\u5728\u77ed\u65f6\u95f4\u5185\u5feb\u901f\u6536\u96c6\u8d44\u4ea7\uff0c\u90a3\u4e48\u5229\u7528\u7f51\u7edc\u7a7a\u95f4\u641c\u7d22\u5f15\u64ce\u662f\u4e0d\u9519\u7684\u9009\u62e9\uff0c\u53ef\u4ee5\u76f4\u89c2\u5730\u770b\u5230\u65c1\u7ad9\uff0c\u7aef\u53e3\uff0c\u7ad9\u70b9\u6807\u9898\uff0cIP\u7b49\u4fe1\u606f\uff0c\u70b9\u51fb\u5217\u4e3e\u51fa\u7ad9\u70b9\u53ef\u4ee5\u76f4\u63a5\u8bbf\u95ee\uff0c\u4ee5\u6b64\u6765\u5224\u65ad\u662f\u5426\u4e3a\u81ea\u5df1\u9700\u8981\u7684\u7ad9\u70b9\u4fe1\u606f\u3002FOFA\u7684\u5e38\u7528\u8bed\u6cd5<\/p>\n<p>1\u3001\u540cIP\u65c1\u7ad9\uff1aip=&quot;192.168.0.1&quot;<\/p>\n<p>2\u3001C\u6bb5\uff1aip=&quot;192.168.0.0\/24&quot;<\/p>\n<p>3\u3001\u5b50\u57df\u540d\uff1adomain=&quot;baidu.com&quot;<\/p>\n<p>4\u3001\u6807\u9898\/\u5173\u952e\u5b57\uff1atitle=&quot;\u767e\u5ea6&quot;<\/p>\n<p>5\u3001\u5982\u679c\u9700\u8981\u5c06\u7ed3\u679c\u7f29\u5c0f\u5230\u67d0\u4e2a\u57ce\u5e02\u7684\u8303\u56f4\uff0c\u90a3\u4e48\u53ef\u4ee5\u62fc\u63a5\u8bed\u53e5<\/p>\n<p>title=&quot;\u767e\u5ea6&quot;&amp;&amp; region=&quot;Beijing&quot;<\/p>\n<p>6\u3001\u7279\u5f81\uff1abody=&quot;\u767e\u5ea6&quot;\u6216header=&quot;baidu&quot;<\/p>\n<h1>\u626b\u63cf\u654f\u611f\u76ee\u5f55\/\u6587\u4ef6<\/h1>\n<p>\u626b\u63cf\u654f\u611f\u76ee\u5f55\u9700\u8981\u5f3a\u5927\u7684\u5b57\u5178\uff0c\u9700\u8981\u5e73\u65f6\u79ef\u7d2f\uff0c\u62e5\u6709\u5f3a\u5927\u7684\u5b57\u5178\u80fd\u591f\u66f4\u9ad8\u6548\u5730\u627e\u51fa\u7f51\u7ad9\u7684\u7ba1\u7406\u540e\u53f0\uff0c\u654f\u611f\u6587\u4ef6\u5e38\u89c1\u7684\u5982.git\u6587\u4ef6\u6cc4\u9732\uff0c.svn\u6587\u4ef6\u6cc4\u9732\uff0cphpinfo\u6cc4\u9732\u7b49\uff0c\u8fd9\u4e00\u6b65\u4e00\u534a\u4ea4\u7ed9\u5404\u7c7b\u626b\u63cf\u5668\u5c31\u53ef\u4ee5\u4e86\uff0c\u5c06\u76ee\u6807\u7ad9\u70b9\u8f93\u5165\u5230\u57df\u540d\u4e2d\uff0c\u9009\u62e9\u5bf9\u5e94\u5b57\u5178\u7c7b\u578b\uff0c\u5c31\u53ef\u4ee5\u5f00\u59cb\u626b\u63cf\u4e86\uff0c\u5341\u5206\u65b9\u4fbf\u3002<\/p>\n<h2>\u5fa1\u5251<\/h2>\n<p><a href=\"https:\/\/www.fujieace.com\/hacker\/tools\/yujian.html\">https:\/\/www.fujieace.com\/hacker\/tools\/yujian.html<\/a><\/p>\n<h2>7kbstorm<\/h2>\n<p><a href=\"https:\/\/github.com\/7kbstorm\/7kbscan-WebPathBrute\">https:\/\/github.com\/7kbstorm\/7kbscan-WebPathBrute<\/a><\/p>\n<h2>bbscan<\/h2>\n<p><a href=\"https:\/\/github.com\/lijiejie\/BBScan\">https:\/\/github.com\/lijiejie\/BBScan<\/a><\/p>\n<p>\u5728pip\u5df2\u7ecf\u5b89\u88c5\u7684\u524d\u63d0\u4e0b\uff0c\u53ef\u4ee5\u76f4\u63a5\uff1a<\/p>\n<p>pip install -r requirements.txt<\/p>\n<p>\u4f7f\u7528\u793a\u4f8b\uff1a<\/p>\n<ol>\n<li>\u626b\u63cf\u5355\u4e2aweb\u670d\u52a1 www.target.com<\/li>\n<\/ol>\n<p>python BBScan.py  &#8211;host <a href=\"http:\/\/www.target.com\">www.target.com<\/a><\/p>\n<ol start=\"2\">\n<li>\u626b\u63cfwww.target.com\u548cwww.target.com\/28\u4e0b\u7684\u5176\u4ed6\u4e3b\u673a<\/li>\n<\/ol>\n<p>python BBScan.py  &#8211;host www.target.com &#8211;network 28 <\/p>\n<ol start=\"3\">\n<li>\u626b\u63cftxt\u6587\u4ef6\u4e2d\u7684\u6240\u6709\u4e3b\u673a<\/li>\n<\/ol>\n<p>python BBScan.py -f wandoujia.com.txt<\/p>\n<ol start=\"4\">\n<li>\u4ece\u6587\u4ef6\u5939\u4e2d\u5bfc\u5165\u6240\u6709\u7684\u4e3b\u673a\u5e76\u626b\u63cf<\/li>\n<\/ol>\n<p>python BBScan.py -d targets\/<\/p>\n<p>\u2013network \u53c2\u6570\u7528\u4e8e\u8bbe\u7f6e\u5b50\u7f51\u63a9\u7801\uff0c\u5c0f\u516c\u53f8\u8bbe\u4e3a28~30\uff0c\u4e2d\u7b49\u89c4\u6a21\u516c\u53f8\u8bbe\u7f6e26~28\uff0c\u5927\u516c\u53f8\u8bbe\u4e3a24~26 <\/p>\n<p>\u5f53\u7136\uff0c\u5c3d\u91cf\u907f\u514d\u8bbe\u4e3a24\uff0c\u626b\u63cf\u8fc7\u4e8e\u8017\u65f6\uff0c\u9664\u975e\u662f\u60f3\u5728\u5404SRC\u591a\u5237\u51e0\u4e2a\u6f0f\u6d1e\u3002<\/p>\n<p>\u8be5\u63d2\u4ef6\u662f\u4ece\u5185\u90e8\u626b\u63cf\u5668\u4e2d\u62bd\u79bb\u51fa\u6765\u7684\uff0c\u611f\u8c22 Jekkay Hu&lt;34538980[at]qq.com&gt;<\/p>\n<p>\u5982\u679c\u4f60\u6709\u975e\u5e38\u6709\u7528\u7684\u89c4\u5219\uff0c\u8bf7\u627e\u51e0\u4e2a\u7f51\u7ad9\u9a8c\u8bc1\u6d4b\u8bd5\u540e\uff0c\u518d pull request <\/p>\n<p>\u811a\u672c\u8fd8\u4f1a\u4f18\u5316\uff0c\u63a5\u4e0b\u6765\u7684\u4e8b:<\/p>\n<p>\u589e\u52a0\u6709\u7528\u89c4\u5219\uff0c\u5c06\u89c4\u5219\u66f4\u597d\u5730\u5206\u7c7b\uff0c\u7ec6\u5316<\/p>\n<p>\u540e\u7eed\u53ef\u4ee5\u76f4\u63a5\u4ece rulesrequest \u6587\u4ef6\u5939\u4e2d\u5bfc\u5165HTTP_request <\/p>\n<p>\u4f18\u5316\u626b\u63cf\u903b\u8f91<\/p>\n<h2>dirmap<\/h2>\n<p>pip install -r requirement.txt<\/p>\n<p><a href=\"https:\/\/github.com\/H4ckForJob\/dirmap\">https:\/\/github.com\/H4ckForJob\/dirmap<\/a><\/p>\n<p>\u5355\u4e2a\u76ee\u6807<\/p>\n<p>python3 dirmap.py -i <a href=\"https:\/\/target.com\">https:\/\/target.com<\/a> -lcf<\/p>\n<p>\u591a\u4e2a\u76ee\u6807<\/p>\n<p>python3 dirmap.py -iF urls.txt -lcf<\/p>\n<h2>dirsearch<\/h2>\n<p><u><font style=\"color:blue;\"><a href=\"https:\/\/gitee.com\/Abaomianguan\/dirsearch.git\">https:\/\/gitee.com\/Abaomianguan\/dirsearch.git<\/a><\/font><\/u><\/p>\n<p><u><font style=\"color:blue;\">unzip dirsearch.zip<\/font><\/u><\/p>\n<p><u><font style=\"color:blue;\">python3 dirsearch.py -u <a href=\"http:\/\/m.scabjd.com\/\">http:\/\/m.scabjd.com\/<\/a> -e * <\/font><\/u><\/p>\n<h2>gobuster<\/h2>\n<p>sudo apt-get install gobuster <\/p>\n<p>gobuster dir -u <a href=\"https:\/\/www.servyou.com.cn\/\">https:\/\/www.servyou.com.cn\/<\/a> -w \/usr\/share\/wordlists\/dirbuster\/directory-list-2.3-medium.txt -x php -t 50<\/p>\n<p>dir -u \u7f51\u5740 w\u5b57\u5178 -x \u6307\u5b9a\u540e\u7f00 -t \u7ebf\u7a0b\u6570\u91cf<\/p>\n<p>dir -u <a href=\"https:\/\/www.servyou.com.cn\/\">https:\/\/www.servyou.com.cn\/<\/a> -w \/usr\/share\/wordlists\/dirbuster\/directory-list-2.3-medium.txt -x &quot;php,html,rar,zip&quot; -d &#8211;wildcard -o servyou.log | grep ^&quot;3402&quot;<\/p>\n<h2>\u7f51\u7ad9\u6587\u4ef6<\/h2>\n<ol>\n<li>\n<p>robots.txt<\/p>\n<\/li>\n<li>\n<p>crossdomin.xml<\/p>\n<\/li>\n<li>\n<p>sitemap.xml<\/p>\n<\/li>\n<li>\n<p>\u540e\u53f0\u76ee\u5f55<\/p>\n<\/li>\n<li>\n<p>\u7f51\u7ad9\u5b89\u88c5\u5305<\/p>\n<\/li>\n<li>\n<p>\u7f51\u7ad9\u4e0a\u4f20\u76ee\u5f55<\/p>\n<\/li>\n<li>\n<p>mysql\u7ba1\u7406\u9875\u9762<\/p>\n<\/li>\n<li>\n<p>phpinfo<\/p>\n<\/li>\n<li>\n<p>\u7f51\u7ad9\u6587\u672c\u7f16\u8f91\u5668<\/p>\n<\/li>\n<li>\n<p>\u6d4b\u8bd5\u6587\u4ef6<\/p>\n<\/li>\n<li>\n<p>\u7f51\u7ad9\u5907\u4efd\u6587\u4ef6(.rar\u3001zip\u3001.7z\u3001.tar.gz\u3001.bak)<\/p>\n<\/li>\n<li>\n<p>DS_Store \u6587\u4ef6<\/p>\n<\/li>\n<li>\n<p>vim\u7f16\u8f91\u5668\u5907\u4efd\u6587\u4ef6(.swp)<\/p>\n<\/li>\n<li>\n<p>WEB\u2014INF\/web.xml\u6587\u4ef6<\/p>\n<\/li>\n<\/ol>\n<p>15 .git<\/p>\n<p>16 .svn<\/p>\n<p><a href=\"https:\/\/www.secpulse.com\/archives\/55286.html\">https:\/\/www.secpulse.com\/archives\/55286.html<\/a><\/p>\n<h1>\u626b\u63cf\u7f51\u9875\u5907\u4efd<\/h1>\n<p>\u4f8b\u5982<\/p>\n<p>config.php<\/p>\n<p>config.php~<\/p>\n<p>config.php.bak<\/p>\n<p>config.php.swp<\/p>\n<p>config.php.rar<\/p>\n<p>conig.php.tar.gz<\/p>\n<h1>\u7f51\u7ad9\u5934\u4fe1\u606f\u6536\u96c6<\/h1>\n<p>1\u3001\u4e2d\u95f4\u4ef6\uff1aweb\u670d\u52a1\u3010Web Servers\u3011 apache iis7 iis7.5 iis8 nginx WebLogic tomcat<\/p>\n<p>2.\u3001\u7f51\u7ad9\u7ec4\u4ef6\uff1a js\u7ec4\u4ef6jquery\u3001vue  \u9875\u9762\u7684\u5e03\u5c40bootstrap<\/p>\n<p>\u901a\u8fc7\u6d4f\u89c8\u5668\u83b7\u53d6<\/p>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9d05bcce.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745661867877-ecd011ec-9a62-47f0-b4ed-4d1a6dc608be.png\" \/><\/p>\n<p><a href=\"http:\/\/whatweb.bugscaner.com\/look\/\">http:\/\/whatweb.bugscaner.com\/look\/<\/a><\/p>\n<p>\u706b\u72d0\u7684\u63d2\u4ef6Wappalyzer<\/p>\n<p>curl\u547d\u4ee4\u67e5\u8be2\u5934\u4fe1\u606f<\/p>\n<p>curl <a href=\"https:\/\/www.moonsec.com\">https:\/\/www.moonsec.com<\/a> -i<\/p>\n<h1>\u654f\u611f\u6587\u4ef6\u641c\u7d22<\/h1>\n<h2>GitHub\u641c\u7d22<\/h2>\n<p>in:name test #\u4ed3\u5e93\u6807\u9898\u641c\u7d22\u542b\u6709\u5173\u952e\u5b57test<\/p>\n<p>in:descripton test #\u4ed3\u5e93\u63cf\u8ff0\u641c\u7d22\u542b\u6709\u5173\u952e\u5b57<\/p>\n<p>in:readme test #Readme\u6587\u4ef6\u641c\u7d20\u542b\u6709\u5173\u952e\u5b57<\/p>\n<p>\u641c\u7d22\u67d0\u4e9b\u7cfb\u7edf\u7684\u5bc6\u7801<\/p>\n<p><a href=\"https:\/\/github.com\/search?q=smtp+58.com+password+3306&amp;type=Code\">https:\/\/github.com\/search?q=smtp+58.com+password+3306&amp;type=Code<\/a><\/p>\n<p>github \u5173\u952e\u8bcd\u76d1\u63a7<\/p>\n<p><a href=\"https:\/\/www.codercto.com\/a\/46640.html\">https:\/\/www.codercto.com\/a\/46640.html<\/a><\/p>\n<p>\u8c37\u6b4c\u641c\u7d22<\/p>\n<p>site:Github.com sa password<\/p>\n<p>site:Github.com root password<\/p>\n<p>site:Github.com User ID=&#8217;sa&#8217;;Password<\/p>\n<p>site:Github.com inurl:sql<\/p>\n<p>SVN \u4fe1\u606f\u6536\u96c6<\/p>\n<p>site:Github.com svn<\/p>\n<p>site:Github.com svn username<\/p>\n<p>site:Github.com svn password<\/p>\n<p>site:Github.com svn username password<\/p>\n<p>\u7efc\u5408\u4fe1\u606f\u6536\u96c6<\/p>\n<p>site:Github.com password<\/p>\n<p>site:Github.com ftp ftppassword<\/p>\n<p>site:Github.com \u5bc6\u7801<\/p>\n<p>site:Github.com \u5185\u90e8<\/p>\n<p><a href=\"https:\/\/blog.csdn.net\/qq_36119192\/article\/details\/99690742\">https:\/\/blog.csdn.net\/qq_36119192\/article\/details\/99690742<\/a><\/p>\n<p><a href=\"http:\/\/www.361way.com\/github-hack\/6284.html\">http:\/\/www.361way.com\/github-hack\/6284.html<\/a><\/p>\n<p><a href=\"https:\/\/docs.github.com\/cn\/github\/searching-for-information-on-github\/searching-code\">https:\/\/docs.github.com\/cn\/github\/searching-for-information-on-github\/searching-code<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/search?q=smtp+bilibili.com&amp;type=code\">https:\/\/github.com\/search?q=smtp+bilibili.com&amp;type=code<\/a><\/p>\n<h2>Google-hacking<\/h2>\n<p>site:\u57df\u540d<\/p>\n<p>inurl: url\u4e2d\u5b58\u5728\u7684\u5173\u952e\u5b57\u7f51\u9875<\/p>\n<p>intext\uff1a\u7f51\u9875\u6b63\u6587\u4e2d\u7684\u5173\u952e\u8bcd<\/p>\n<p>filetype:\u6307\u5b9a\u6587\u4ef6\u7c7b\u578b<\/p>\n<h2>wooyun\u6f0f\u6d1e\u5e93<\/h2>\n<p><a href=\"https:\/\/wooyun.website\/\">https:\/\/wooyun.website\/<\/a><\/p>\n<h2>\u7f51\u76d8\u641c\u7d22<\/h2>\n<p>\u51cc\u4e91\u641c\u7d22  <a href=\"https:\/\/www.lingfengyun.com\/\">https:\/\/www.lingfengyun.com\/<\/a><\/p>\n<p>\u76d8\u591a\u591a\uff1a<a href=\"http:\/\/www.panduoduo.net\/\">http:\/\/www.panduoduo.net\/<\/a><\/p>\n<p>\u76d8\u641c\u641c\uff1a<a href=\"http:\/\/www.pansoso.com\/\">http:\/\/www.pansoso.com\/<\/a><\/p>\n<p>\u76d8\u641c\uff1a<a href=\"http:\/\/www.pansou.com\/\">http:\/\/www.pansou.com\/<\/a><\/p>\n<h2>\u793e\u5de5\u5e93<\/h2>\n<p>\u540d\u5b57\/\u5e38\u7528id\/\u90ae\u7bb1\/\u5bc6\u7801\/\u7535\u8bdd\u767b\u5f55\u7f51\u76d8\u7f51\u7ad9\u90ae\u7bb1\u627e\u654f\u611f\u4fe1\u606f<\/p>\n<p>tg\u673a\u5668\u4eba<\/p>\n<h2>\u7f51\u7ad9\u6ce8\u518c\u4fe1\u606f<\/h2>\n<p><a href=\"http:\/\/www.reg007.com\">www.reg007.com<\/a>\u67e5\u8be2\u7f51\u7ad9\u6ce8\u518c\u4fe1\u606f<\/p>\n<p>\u4e00\u822c\u662f\u914d\u5408\u793e\u5de5\u5e93\u4e00\u8d77\u6765\u4f7f\u7528\u3002<\/p>\n<h2>js\u654f\u611f\u4fe1\u606f<\/h2>\n<p>1.\u7f51\u7ad9\u7684url\u8fde\u63a5\u5199\u5230js\u91cc\u9762<\/p>\n<p>2.js\u7684api\u63a5\u53e3\u91cc\u9762\u5305\u542b\u7528\u6237\u4fe1\u606f\u6bd4\u5982\u8d26\u53f7\u548c\u5bc6\u7801<\/p>\n<h3>jsfinder<\/h3>\n<p><a href=\"https:\/\/gitee.com\/kn1fes\/JSFinder\">https:\/\/gitee.com\/kn1fes\/JSFinder<\/a><\/p>\n<p>python3 JSFinder.py -u <a href=\"http:\/\/www.mi.com\">http:\/\/www.mi.com<\/a><\/p>\n<p>python3 JSFinder.py -u <a href=\"http:\/\/www.mi.com\">http:\/\/www.mi.com<\/a> -d<\/p>\n<p>python3 JSFinder.py -u <a href=\"http:\/\/www.mi.com\">http:\/\/www.mi.com<\/a> -d -ou mi_url.txt -os mi_subdomain.txt<\/p>\n<p>\u5f53\u4f60\u60f3\u83b7\u53d6\u66f4\u591a\u4fe1\u606f\u7684\u65f6\u5019\uff0c\u53ef\u4ee5\u4f7f\u7528-d\u8fdb\u884c\u6df1\u5ea6\u722c\u53d6\u6765\u83b7\u5f97\u66f4\u591a\u5185\u5bb9\uff0c\u5e76\u4f7f\u7528\u547d\u4ee4 -ou, -os\u6765\u6307\u5b9aURL\u548c\u5b50\u57df\u540d\u6240\u4fdd\u5b58\u7684\u6587\u4ef6\u540d<\/p>\n<p>\u6279\u91cf\u6307\u5b9aURL\u548cJS\u94fe\u63a5\u6765\u83b7\u53d6\u91cc\u9762\u7684URL\u3002<\/p>\n<p>\u6307\u5b9aURL\uff1a<\/p>\n<p>python JSFinder.py -f text.txt<\/p>\n<p>\u6307\u5b9aJS\uff1a<\/p>\n<p>python JSFinder.py -f text.txt -j<\/p>\n<h3>Packer-Fuzzer<\/h3>\n<p>\u5bfb\u627e\u7f51\u7ad9\u4ea4\u4e92\u63a5\u53e3\u6388\u6743key<\/p>\n<p>\u968f\u7740WEB\u524d\u7aef\u6253\u5305\u5de5\u5177\u7684\u6d41\u884c\uff0c\u60a8\u5728\u65e5\u5e38\u6e17\u900f\u6d4b\u8bd5\u3001\u5b89\u5168\u670d\u52a1\u4e2d\u662f\u5426\u9047\u5230\u8d8a\u6765\u8d8a\u591a\u4ee5Webpack\u6253\u5305\u5668\u4e3a\u4ee3\u8868\u7684\u7f51\u7ad9\uff1f\u8fd9\u7c7b\u6253\u5305\u5668\u4f1a\u5c06\u6574\u7ad9\u7684API\u548cAPI\u53c2\u6570\u6253\u5305\u5728\u4e00\u8d77\u4f9bWeb\u96c6\u4e2d\u8c03\u7528\uff0c\u8fd9\u4e5f\u4fbf\u4e8e\u6211\u4eec\u5feb\u901f\u53d1\u73b0\u7f51\u7ad9\u7684\u529f\u80fd\u548cAPI\u6e05\u5355\uff0c\u4f46\u5f80\u5f80\u8fd9\u4e9b\u6253\u5305\u5668\u6240\u751f\u6210\u7684JS\u6587\u4ef6\u6570\u91cf\u5f02\u5e38\u4e4b\u591a\u5e76\u4e14\u603bJS\u4ee3\u7801\u91cf\u5f02\u5e38\u5e9e\u5927\uff08\u591a\u8fbe\u4e0a\u4e07\u884c\uff09\uff0c\u8fd9\u7ed9\u6211\u4eec\u7684\u624b\u5de5\u6d4b\u8bd5\u5e26\u6765\u4e86\u6781\u5927\u7684\u4e0d\u4fbf\uff0cPacker Fuzzer\u8f6f\u4ef6\u5e94\u8fd0\u800c\u751f\u3002<\/p>\n<p>\u672c\u5de5\u5177\u652f\u6301\u81ea\u52a8\u6a21\u7cca\u63d0\u53d6\u5bf9\u5e94\u76ee\u6807\u7ad9\u70b9\u7684API\u4ee5\u53caAPI\u5bf9\u5e94\u7684\u53c2\u6570\u5185\u5bb9\uff0c\u5e76\u652f\u6301\u5bf9\uff1a\u672a\u6388\u6743\u8bbf\u95ee\u3001\u654f\u611f\u4fe1\u606f\u6cc4\u9732\u3001CORS\u3001SQL\u6ce8\u5165\u3001\u6c34\u5e73\u8d8a\u6743\u3001\u5f31\u53e3\u4ee4\u3001\u4efb\u610f\u6587\u4ef6\u4e0a\u4f20\u4e03\u5927\u6f0f\u6d1e\u8fdb\u884c\u6a21\u7cca\u9ad8\u6548\u7684\u5feb\u901f\u68c0\u6d4b\u3002\u5728\u626b\u63cf\u7ed3\u675f\u4e4b\u540e\uff0c\u672c\u5de5\u5177\u8fd8\u652f\u6301\u81ea\u52a8\u751f\u6210\u626b\u63cf\u62a5\u544a\uff0c\u60a8\u53ef\u4ee5\u9009\u62e9\u4fbf\u4e8e\u5206\u6790\u7684HTML\u7248\u672c\u4ee5\u53ca\u8f83\u4e3a\u6b63\u89c4\u7684doc\u3001pdf\u3001txt\u7248\u672c\u3002<\/p>\n<p>sudo apt-get install nodejs &amp;&amp; sudo apt-get install npm<\/p>\n<p>git clone <a href=\"https:\/\/gitee.com\/keyboxdzd\/Packer-Fuzzer.git\">https:\/\/gitee.com\/keyboxdzd\/Packer-Fuzzer.git<\/a><\/p>\n<p>pip3 install -r requirements.txt<\/p>\n<p>python3 PackerFuzzer.py -u <a href=\"https:\/\/www.liaoxuefeng.com\">https:\/\/www.liaoxuefeng.com<\/a>                         <\/p>\n<h3>SecretFinder<\/h3>\n<p>\u4e00\u6b3e\u57fa\u4e8ePython\u811a\u672c\u7684JavaScript\u654f\u611f\u4fe1\u606f\u641c\u7d22\u5de5\u5177<\/p>\n<p><a href=\"https:\/\/gitee.com\/mucn\/SecretFinder\">https:\/\/gitee.com\/mucn\/SecretFinder<\/a><\/p>\n<p>python3 SecretFinder.py -i <a href=\"https:\/\/www.moonsec.com\/\">https:\/\/www.moonsec.com\/<\/a> -e<\/p>\n<h1>CMS\u8bc6\u522b<\/h1>\n<h2>\u4e91\u6089<\/h2>\n<p><a href=\"http:\/\/www.yunsee.cn\/info.html\">http:\/\/www.yunsee.cn\/info.html<\/a><\/p>\n<h2>\u6f6e\u6c50\u6307\u7eb9<\/h2>\n<p><a href=\"http:\/\/finger.tidesec.net\/\">http:\/\/finger.tidesec.net\/<\/a><\/p>\n<h2>CMS\u6307\u7eb9\u8bc6\u522b<\/h2>\n<p><a href=\"http:\/\/whatweb.bugscaner.com\/look\/\">http:\/\/whatweb.bugscaner.com\/look\/<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/search?q=cms\u8bc6\u522b\">https:\/\/github.com\/search?q=cms\u8bc6\u522b<\/a><\/p>\n<h2>whatcms<\/h2>\n<p><img loading="lazy" decoding="async" decoding=\"async\"  src=\"https:\/\/www.youvii.site\/wp-content\/themes\/lolimeow-lolimeowV13.13\/assets\/images\/loading.gif\" data-src=\"https:\/\/cdn.picui.cn\/vip\/2025\/10\/24\/68fae9d37ad5e.png\" class=\"lazy\" loading=\"lazy\" alt=\"1745662046773-d0d5ed25-e9c2-427a-9614-fe61e728d878.png\" \/><\/p>\n<h2>\u5fa1\u5251cms\u8bc6\u522b<\/h2>\n<p><a href=\"https:\/\/github.com\/ldbfpiaoran\/cmscan\">https:\/\/github.com\/ldbfpiaoran\/cmscan<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/theLSA\/cmsIdentification\/\">https:\/\/github.com\/theLSA\/cmsIdentification\/<\/a><\/p>\n<h1>\u975e\u5e38\u89c4\u64cd\u4f5c<\/h1>\n<p>1\u3001\u5982\u679c\u627e\u5230\u4e86\u76ee\u6807\u7684\u4e00\u5904\u8d44\u4ea7\uff0c\u4f46\u662f\u5bf9\u76ee\u6807\u5176\u4ed6\u8d44\u4ea7\u7684\u6536\u96c6\u65e0\u5904\u4e0b\u624b\u65f6\uff0c\u53ef\u4ee5\u67e5\u770b\u4e00\u4e0b\u8be5\u7ad9\u70b9\u7684body\u91cc\u662f\u5426\u6709\u76ee\u6807\u7684\u7279\u5f81\uff0c\u7136\u540e\u5229\u7528\u7f51\u7edc\u7a7a\u95f4\u641c\u7d22\u5f15\u64ce\uff08\u5982fofa\u7b49\uff09\u5bf9\u8be5\u7279\u5f81\u8fdb\u884c\u641c\u7d22\uff0c\u5982\uff1abody=\u201dXX\u516c\u53f8\u201d\u6216body=\u201dbaidu\u201d\u7b49\u3002<\/p>\n<p>\u8be5\u65b9\u5f0f\u4e00\u822c\u9002\u7528\u4e8e\u7279\u5f81\u660e\u663e\uff0c\u8d44\u4ea7\u6570\u91cf\u8f83\u591a\u7684\u76ee\u6807\uff0c\u5e76\u4e14\u5f88\u591a\u65f6\u5019\u6548\u679c\u62d4\u7fa4\u3002<\/p>\n<p>2\u3001\u5f53\u901a\u8fc7\u4e0a\u8ff0\u65b9\u5f0f\u7684\u627e\u5230test.com\u7684\u7279\u5f81\u540e\uff0c\u518d\u8fdb\u884cbody\u7684\u641c\u7d22\uff0c\u7136\u540e\u518d\u641c\u7d22\u5230test.com\u7684\u65f6\u5019\uff0c\u6b64\u65f6fofa\u4e0a\u663e\u793a\u7684ip\u5927\u6982\u7387\u4e3atest.com\u7684\u771f\u5b9eIP\u3002<\/p>\n<p>3\u3001\u5982\u679c\u9700\u8981\u5bf9\u653f\u5e9c\u7f51\u7ad9\u4f5c\u4e3a\u76ee\u6807\uff0c\u90a3\u4e48\u5728\u6279\u91cf\u83b7\u53d6\u7f51\u7ad9\u9996\u9875\u7684\u65f6\u5019\uff0c\u53ef\u4ee5\u7528\u4e0a<\/p>\n<p><a href=\"http:\/\/114.55.181.28\/databaseInfo\/index\">http:\/\/114.55.181.28\/databaseInfo\/index<\/a><\/p>\n<p>\u4e4b\u540e\u53ef\u4ee5\u7ed3\u5408\u4e0a\u4e00\u6b65\u7684\u65b9\u6cd5\u8fdb\u884c\u8fdb\u4e00\u6b65\u7684\u4fe1\u606f\u6536\u96c6\u3002<\/p>\n<h1>SSL\/TLS\u8bc1\u4e66\u67e5\u8be2<\/h1>\n<p>SSL\/TLS\u8bc1\u4e66\u901a\u5e38\u5305\u542b\u57df\u540d\u3001\u5b50\u57df\u540d\u548c\u90ae\u4ef6\u5730\u5740\u7b49\u4fe1\u606f\uff0c\u7ed3\u5408\u8bc1\u4e66\u4e2d\u7684\u4fe1\u606f\uff0c\u53ef\u4ee5\u66f4\u5feb\u901f\u5730\u5b9a\u4f4d\u5230\u76ee\u6807\u8d44\u4ea7\uff0c\u83b7\u53d6\u5230\u66f4\u591a\u76ee\u6807\u8d44\u4ea7\u7684\u76f8\u5173\u4fe1\u606f\u3002<\/p>\n<p><a href=\"https:\/\/myssl.com\/\">https:\/\/myssl.com\/<\/a><\/p>\n<p><a href=\"https:\/\/crt.sh\">https:\/\/crt.sh<\/a><\/p>\n<p><a href=\"https:\/\/censys.io\">https:\/\/censys.io<\/a><\/p>\n<p><a href=\"https:\/\/developers.facebook.com\/tools\/ct\/\">https:\/\/developers.facebook.com\/tools\/ct\/<\/a><\/p>\n<p><a href=\"https:\/\/google.com\/transparencyreport\/https\/ct\/\">https:\/\/google.com\/transparencyreport\/https\/ct\/<\/a><\/p>\n<p>SSL\u8bc1\u4e66\u641c\u7d22\u5f15\u64ce\uff1a<\/p>\n<p><a href=\"https:\/\/certdb.com\/domain\/github.com\">https:\/\/certdb.com\/domain\/github.com<\/a><\/p>\n<p><a href=\"https:\/\/crt.sh\/?Identity=%25.moonsec.com\">https:\/\/crt.sh\/?Identity=%.moonsec.com<\/a><\/p>\n<p><a href=\"https:\/\/censys.io\/\">https:\/\/censys.io\/<\/a><\/p>\n<p>GetDomainsBySSL.py<\/p>\n<h1>\u67e5\u627e\u5382\u5546IP\u6bb5<\/h1>\n<p><a href=\"http:\/\/ipwhois.cnnic.net.cn\/index.jsp\">http:\/\/ipwhois.cnnic.net.cn\/index.jsp<\/a><\/p>\n<h1>\u79fb\u52a8\u8d44\u4ea7\u6536\u96c6<\/h1>\n<h2>\u5fae\u4fe1\u5c0f\u7a0b\u5e8f\u652f\u4ed8\u5b9d\u5c0f\u7a0b\u5e8f<\/h2>\n<p>\u73b0\u5728\u5f88\u591a\u4f01\u4e1a\u90fd\u6709\u5c0f\u7a0b\u5e8f\uff0c\u53ef\u4ee5\u5173\u6ce8\u4f01\u4e1a\u7684\u5fae\u4fe1\u516c\u4f17\u53f7\u6216\u8005\u652f\u4ed8\u5b9d\u5c0f\u7a0b\u5e8f\uff0c\u6216\u5173\u6ce8\u8fd0\u8425\u76f8\u5173\u4eba\u5458\uff0c\u67e5\u770b\u670b\u53cb\u5708\uff0c\u83b7\u53d6\u5c0f\u7a0b\u5e8f\u3002<\/p>\n<p><a href=\"https:\/\/weixin.sogou.com\/weixin?type=1&amp;ie=utf8&amp;query=%E6%8B%BC%E5%A4%9A%E5%A4%9A\">https:\/\/weixin.sogou.com\/weixin?type=1&amp;ie=utf8&amp;query=%E6%8B%BC%E5%A4%9A%E5%A4%9A<\/a><\/p>\n<h2>app\u8f6f\u4ef6\u641c\u7d22<\/h2>\n<p><a href=\"https:\/\/www.qimai.cn\/\">https:\/\/www.qimai.cn\/<\/a><\/p>\n<h1>\u793e\u4ea4\u4fe1\u606f\u641c\u7d22<\/h1>\n<p>QQ\u7fa4 QQ\u624b\u673a\u53f7<\/p>\n<p>\u5fae\u4fe1\u7fa4<\/p>\n<p>\u9886\u82f1<\/p>\n<p><a href=\"https:\/\/www.linkedin.com\/\">https:\/\/www.linkedin.com\/<\/a><\/p>\n<p>\u8109\u8109\u62db\u8058<\/p>\n<p>boss\u62db\u8058<\/p>\n<h1>js\u654f\u611f\u6587\u4ef6<\/h1>\n<p><a href=\"https:\/\/github.com\/m4ll0k\/SecretFinder\">https:\/\/github.com\/m4ll0k\/SecretFinder<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/Threezh1\/JSFinder\">https:\/\/github.com\/Threezh1\/JSFinder<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/rtcatc\/Packer-Fuzzer\">https:\/\/github.com\/rtcatc\/Packer-Fuzzer<\/a><\/p>\n<h1>github\u4fe1\u606f\u6cc4\u9732\u76d1\u63a7<\/h1>\n<p><a href=\"https:\/\/github.com\/0xbug\/Hawkeye\">https:\/\/github.com\/0xbug\/Hawkeye<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/MiSecurity\/x-patrol\">https:\/\/github.com\/MiSecurity\/x-patrol<\/a><\/p>\n<p><a href=\"https:\/\/github.com\/VKSRC\/Github-Monitor\">https:\/\/github.com\/VKSRC\/Github-Monitor<\/a><\/p>\n<h1>\u9632\u62a4\u8f6f\u4ef6\u6536\u96c6<\/h1>\n<p>\u5b89\u5168\u9632\u62a4\u4e91waf\u3001\u786c\u4ef6waf\u3001\u4e3b\u673a\u9632\u62a4\u8f6f\u4ef6\u3001\u8f6fwaf<\/p>\n<h1>\u793e\u5de5\u76f8\u5173<\/h1>\n<p>\u5fae\u4fe1\u6216\u8005QQ \u6df7\u5165\u5185\u90e8\u7fa4\uff0c\u8e72\u70b9\u89c2\u6d4b\u3002\u52a0\u5ba2\u670d\u5c0f\u59d0\u59d0\u53d1\u4e00\u4e9b\u8fde\u63a5\u3002\u8fdb\u4e00\u6b65\u83b7\u53d6\u654f\u611f\u4fe1\u606f\u3002\u6d4b\u8bd5\u4ea7\u54c1\uff0c\u8d2d\u4e70\u670d\u52a1\u5668\uff0c\u62ff\u53bb\u6d4b\u8bd5\u8d26\u53f7\u548c\u5bc6\u7801\u3002<\/p>\n<h1>\u7269\u7406\u63a5\u89e6<\/h1>\n<p>\u5230\u4f01\u4e1a\u529e\u516c\u5c42\u8fde\u63a5wifi\uff0c\u8fde\u540c\u5185\u7f51\u3002\u4e22\u4e00\u4e9b\u5e26\u6709\u540e\u95e8\u7684usb \u5f00\u653e\u514d\u8d39\u7684wifi\u622a\u53d6\u8d26\u53f7\u548c\u5bc6\u7801\u3002<\/p>\n<h1>\u793e\u5de5\u5e93<\/h1>\n<p>\u5728tg\u627e\u793e\u5de5\u673a\u5668\u4eba\u67e5\u627e\u5bc6\u7801\u4fe1\u606f  \u6216\u672c\u5730\u7684\u793e\u5de5\u5e93\u67e5\u627e\u90ae\u7bb1\u6216\u8005\u7528\u6237\u7684\u5bc6\u7801\u6216\u5bc6\u6587\u3002\u7ec4\u5408\u5bc6\u7801\u5728\u8fdb\u884c\u731c\u89e3\u767b\u5f55\u3002<\/p>\n<h1>\u8d44\u4ea7\u6536\u96c6\u795e\u5668<\/h1>\n<p>ARL(Asset Reconnaissance Lighthouse)\u8d44\u4ea7\u4fa6\u5bdf\u706f\u5854\u7cfb\u7edf<\/p>\n<p><a href=\"https:\/\/github.com\/TophantTechnology\/ARL\">https:\/\/github.com\/TophantTechnology\/ARL<\/a><\/p>\n<p>AssetsHunter<\/p>\n<p><a href=\"https:\/\/github.com\/rabbitmask\/AssetsHunter\">https:\/\/github.com\/rabbitmask\/AssetsHunter<\/a><\/p>\n<p>\u4e00\u6b3e\u7528\u4e8esrc\u8d44\u4ea7\u4fe1\u606f\u6536\u96c6\u7684\u5de5\u5177<\/p>\n<p><a href=\"https:\/\/github.com\/sp4rkw\/Reaper\">https:\/\/github.com\/sp4rkw\/Reaper<\/a><\/p>\n<p>domain_hunter_pro<\/p>\n<p><a href=\"https:\/\/github.com\/bit4woo\/domain_hunter_pro\">https:\/\/github.com\/bit4woo\/domain_hunter_pro<\/a><\/p>\n<p>LangSrcCurise<\/p>\n<p><a href=\"https:\/\/github.com\/shellsec\/LangSrcCurise\">https:\/\/github.com\/shellsec\/LangSrcCurise<\/a><\/p>\n<p>\u7f51\u6bb5\u8d44\u4ea7<\/p>\n<p><a href=\"https:\/\/github.com\/colodoo\/midscan\">https:\/\/github.com\/colodoo\/midscan<\/a><\/p>\n<h1>\u5de5\u5177<\/h1>\n<p>Fuzz\u5b57\u5178\u63a8\u8350\uff1a<a href=\"https:\/\/github.com\/TheKingOfDuck\/fuzzDicts\">https:\/\/github.com\/TheKingOfDuck\/fuzzDicts<\/a><\/p>\n<p>BurpCollector(BurpSuite\u53c2\u6570\u6536\u96c6\u63d2\u4ef6)\uff1a<a href=\"https:\/\/github.com\/TEag1e\/BurpCollector\">https:\/\/github.com\/TEag1e\/BurpCollector<\/a><\/p>\n<p>Wfuzz\uff1a<a href=\"https:\/\/github.com\/xmendez\/wfuzz\">https:\/\/github.com\/xmendez\/wfuzz<\/a><\/p>\n<p>LinkFinder\uff1a<a href=\"https:\/\/github.com\/GerbenJavado\/LinkFinder\">https:\/\/github.com\/GerbenJavado\/LinkFinder<\/a><\/p>\n<p>PoCBox\uff1a<a href=\"https:\/\/github.com\/Acmesec\/PoCBox\">https:\/\/github.com\/Acmesec\/PoCBox<\/a><\/p>\n<blockquote>\n<p>\u66f4\u65b0: 2025-04-26 18:11:09<br \/>\n\u539f\u6587: <a href=\"https:\/\/www.yuque.com\/yuhui.net\/network\/qud7m1cb79wpzn3e\">https:\/\/www.yuque.com\/yuhui.net\/network\/qud7m1cb79wpzn3e<\/a><\/p>\n<\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>\u8d44\u4ea7\u6536\u96c6 \u6982\u8ff0 \u4fe1\u606f\u6536\u96c6\u662f\u6e17\u900f\u6d4b\u8bd5\u7684\u524d\u671f\u5de5\u4f5c\uff0c\u6536\u96c6\u8db3\u591f\u591a\u7684\u4fe1\u606f\u624d\u80fd\u65b9\u4fbf\u63a5\u4e0b\u6765\u7684\u6d4b\u8bd5\uff0c\u4e3b\u8981\u662f\u6536\u96c6\u7f51\u7ad9\u7684\u57df\u540d\u3001\u5b50\u57df\u540d\u3001\u76ee\u6807\u7f51\u7ad9\u3001\u76ee\u6807\u7f51\u7ad9\u771f\u5b9eIP\u3001\u654f\u611f\/\u76ee\u5f55\u6587\u4ef6\u3001\u5f00\u653e\u7aef\u53e3\u548c\u4e2d\u95f4\u4ef6\u4fe1\u606f\u7b49\u7b49\u3002\u901a\u8fc7\u5404\u79cd\u6e20\u9053\u548c\u624b\u6bb5\u5c3d\u53ef\u80fd\u6536\u96c6\u5230\u591a\u7684\u5173\u4e8e\u8fd9\u4e2a\u7ad9\u70b9\u7684\u4fe1\u606f\uff0c\u6709\u52a9\u4e8e\u6211\u4eec\u66f4\u591a\u7684\u53bb\u627e\u5230\u6e17\u900f\u70b9\uff0c\u7a81\u7834\u53e3\u3002 \u5206\u7c7b 1\u3001\u670d\u52a1\u5668\u7684\u4fe1\u606f\uff08\u771f\u5b9eIP\u3001\u7cfb\u7edf\u7c7b\u578b\u3001\u7248\u672c\u3001\u5f00\u653e\u7aef\u53e3\u3001WAF\uff09 2\u3001\u7f51\u7ad9\u6307\u7eb9\u8bc6\u522b\uff08cms\u3001cdn\u3001\u8bc1\u4e66\u7b49\uff09dns\u8bb0\u5f55 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[119,2,122],"tags":[12,17,29,32,43],"class_list":["post-796","post","type-post","status-publish","format-standard","hentry","category-shentouceshijichu-network_sec","category-network_sec","category-zichanshouji","tag-12","tag-github","tag-java","tag-install","tag-43"],"_links":{"self":[{"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/posts\/796","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/comments?post=796"}],"version-history":[{"count":0,"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/posts\/796\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/media?parent=796"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/categories?post=796"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.youvii.site\/index.php\/wp-json\/wp\/v2\/tags?post=796"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}