
JAAScois AntiWebInjection
Este programa es muy sencillo de usar, primero lo descargamos de QUI o de su web oficial. Nos saca todas las webs y archivos que tiene un sitio web, y en ellos busca contraseñas o fallos, es super rapido y muy útil si quieres ver el contenido total de un sitio web.
Una vez instalado, simplemente lo ejecutamos y ponemos el sitio web a ‘investigar’, empezamos el escaneo y al finalizar nos sacará un report en un documento de texto como este (QUI):
Pages:
Protocollo HTTP://www.XXXXXX.com/portal/default.aspx
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx
Protocollo HTTP://www.XXXXXX.com/portal/portal.css
Protocollo HTTP://www.XXXXXX.com/portal/admin/cambiarClave.aspx
Protocollo HTTP://www.XXXXXX.com/portal
Protocollo HTTP://www.XXXXXX.com/portal/Docs/Docs.htm
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=1&tabid=42
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=2&tabid=37
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=3&tabid=68
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=4&tabid=39
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=5&tabid=41
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=6&tabid=46
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/webContactarForm.aspx?itemid=4&ModuleID=94
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/webContactarForm.aspx?itemid=5&ModuleID=94
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/SolucionRPS/Campaña
Protocollo HTTP://www.XXXXXX.com/portal/
Protocollo HTTP://www.XXXXXX.com/portal/Docs/style.css
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/WebRecordarContrasenna.aspx
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=1&tabid=42&HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=0&tabid=9
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/Clientes/VirreyExito.pdf
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/Clientes/Casos
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=2&tabid=37&HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=3&tabid=68&HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=4&tabid=39&HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=5&tabid=41&HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=6&tabid=46&HacerLogin=1
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=0&tabid=9&HacerLogin=1
=>=>=>=>
Exploits:
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?HacerLogin=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=1&tabid=42<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=2&tabid=37<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=3&tabid=68<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=4&tabid=39<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=5&tabid=41<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=6&tabid=46<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/webContactarForm.aspx?itemid=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/webContactarForm.aspx?itemid=4&ModuleID=94<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/webContactarForm.aspx?itemid=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/RPSModules/webContactarForm.aspx?itemid=5&ModuleID=94<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
may be upload page
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/SolucionRPS/Campaña
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=1&tabid=42&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=0&tabid=9<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
may be upload page
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/Clientes/VirreyExito.pdf
More Info: Protocollo HTTP://www.jaascois.com
may be upload page
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/Clientes/Casos
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=2&tabid=37&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=3&tabid=68&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=4&tabid=39&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=5&tabid=41&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=6&tabid=46&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
Error 404 page not found
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/SolucionRPS/Campaña
More Info: Protocollo HTTP://www.jaascois.com
Error 404 page not found
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/Docs/style.css
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
SQL Injection Exploit
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/DesktopDefault.aspx?tabindex=0&tabid=9&HacerLogin=1<copione>Vigile(‘hacking%20xss’)</copione>
More Info: Protocollo HTTP://www.jaascois.com
Error 404 page not found
Req: OTTIENI
Protocollo HTTP://www.XXXXXX.com/portal/Uploads/Clientes/Casos
More Info: Protocollo HTTP://www.jaascois.com