Quote:
<?php
include("config.php");
$serverid= $_POST['serverid'];
$Login = $_POST['UserName'];
$Pass = $_POST['PassWord'];
$Repass = $_POST['PassWord2'];
$Email = $_POST['EMail'];
$Prompt= $_POST['Prompt'];
$answer= $_POST['answer'];
$QQ= $_POST['QQ'];
if($serverid==100){
echo "<script>alert('ÇëÑ¡Ôñ·þÎñÆ÷')</script>";
echo "<script>document.location.href='index.htm'</script>";
}
else
{if($serverid==1){$Link = MySQL_Connect($DBHost, $DBUser, $DBPassword) or die ("²»ÄÜÁ¬½Óµ½ MySql");
MySQL_Select_Db($DBName1, $Link) or die ("Database ".$DBName." do not exists.");
}elseif($serverid==2){$Link = MySQL_Connect($DBHost, $DBUser, $DBPassword) or die ("²»ÄÜÁ¬½Óµ½ MySql");
MySQL_Select_Db($DBName2, $Link) or die ("Database ".$DBName." do not exists.");
}elseif($serverid==3){$Link = MySQL_Connect($DBHost, $DBUser, $DBPassword) or die ("²»ÄÜÁ¬½Óµ½ MySql");
MySQL_Select_Db($DBName3, $Link) or die ("Database ".$DBName." do not exists.");
}
//$Login = StrToLower(Trim($UserName));
//$Pass = StrToLower(Trim($PassWord));
//$Repass = StrToLower(Trim($PassWord2));
//$Email = Trim($Email);
//echo "$serverid";
//echo "$Login";
//echo "$Pass";
//echo "$Repass";
//echo "$Email";
//echo "$Prompt";
//echo "$answer";
//echo "$QQ";
//if (empty($Login) || empty($Pass) || empty($Repass) || empty($Email))
//{
// echo "All fields is empty.";
//}
//else
if (preg_match("[^0-9a-zA-Z_-]", $Login, $Txt))
{
echo "<script>alert('Óû§ÃûÊäÈë´íÎó')</script>";
echo "<script>document.location.href='index.htm'</script>";
}
elseif (preg_match("[^0-9a-zA-Z_-]", $Pass, $Txt))
{
echo "<script>alert('ÃÜÂëÊäÈë´íÎó')</script>";
echo "<script>document.location.href='index.htm'</script>";
}
elseif (preg_match("[^0-9a-zA-Z_-]", $Repass, $Txt))
{
echo "<script>alert('ÃÜÂëÊäÈë´íÎó')</script>";
echo "<script>document.location.href='index.htm'</script>";
}
else
{
$Result = MySQL_Query("SELECT name FROM users WHERE name='$Login'") or ("Can't execute query.");
if (MySQL_Num_Rows($Result))
{
echo "<script>alert('Óû§Ãû".$Login."ÒÑ´æÔÚ')</script>";
echo "<script>document.location.href='index.htm'</script>";
}
elseif ((StrLen($Login) < 4) or (StrLen($Login) > 10))
{
echo "<script>alert('Óû§Ãû±ØÐë´óÓÚ4λСÓÚ10룬ÇëÖØÐÂÊäÈë')</script> ";
echo "<script>document.location.href='index.htm'</script>";
}
elseif ((StrLen($Pass) < 4) or (StrLen($Pass) > 10))
{
echo "<script>alert('ÃÜÂë±ØÐë´óÓÚ4λСÓÚ10룬ÇëÖØÐÂÊäÈë')</script> ";
echo "<script>document.location.href='index.htm'</script>";
}
elseif ((StrLen($Email) < 4) or (StrLen($Email) > 25))
{
echo "<script>alert('µç×ÓÓÊÏä´óÓÚ4λСÓÚ25룬ÇëÖØÐÂÊäÈë')</script> ";
echo "<script>document.location.href='index.htm'</script>";
}
elseif ($Pass != $Repass)
{
echo "<script>alert('2´ÎÃÜÂëÊäÈë²»Ò»Ñù£¬ÇëÖØÐÂÊäÈë')</script> ";
echo "<script>document.location.href='index.htm'</script>";
}
else
{
$Salt = $Login.$Pass;
$Salt = md5($Salt);
$Salt = "0x".$Salt;
$date=date('Y-m-j');
MySQL_Query("call adduser('$Login', $Salt, '$Prompt', '$answer', '0', '0', '$Email', '0', '0', '0', '0', '0', '0', '0', '$date', '$QQ', $Salt)") or die ("Can't execute query.");
$sql="select ID from users where `name`='$Login'";
$res=mysql_query($sql);
$row=mysql_fetch_row($res);
mysql_free_result($res);
$id = implode($row);
$date=date("Y-m-d H:i:s");
$sql = "insert into usecashnow(userid, zoneid, sn, aid, point, cash,status, creatime) values ('$id',
'1', '0', '1', '0', '$point', '1', '$date')";
mysql_query($sql);
mysql_close();
echo "<script>alert('Óû§ ".$Login."×¢²á³É¹¦.ÔùËÍ".$point."Ôª±¦ ')</script> ";
echo "<script>document.location.href='index.htm'</script>";
}
}
}
?>