Deal_user.asp
Upload User: pengwei803
Upload Date: 2021-02-10
Package Size: 3311k
Code Size: 25k
Development Platform:

HTML/CSS

  1. <!--#include file="Ku_inc/Ku_sql.asp"-->
  2. <!--#include file="ku_inc/Ku_config.asp"-->
  3. <!--#include file="Ku_conn.asp"-->
  4. <!--#include file="Ku_inc/Ku_md5.asp"-->
  5. <!--#include file="ku_inc/Ku_function.asp"-->
  6. <!--#include file="ku_inc/inc.asp"-->
  7. <%
  8. if request.querystring("Action")="editheadpic" then
  9. server_v1=Cstr(Request.ServerVariables("HTTP_REFERER"))
  10. server_v2=Cstr(Request.ServerVariables("SERVER_NAME"))
  11. if  mid(server_v1,8,len(server_v2))<>server_v2  then
  12. Response.Write "<script>alert(""禁止外部提交,请停止你的非法行为!"");location.href=""javascript:history.back()"";</script>"
  13. else
  14.     userid=request.querystring("userid")
  15.     UserPhoto=request.form("UserPhoto")
  16.     pic=request.form("pic1")
  17.     hpic=request.form("hpic")
  18.   
  19.     if hpic<>"" and pic="" then 
  20.     Response.Write "<script>alert(""自定义头像图片请先上传!"");location.href=""javascript:history.back()"";</script>"
  21.     Response.end()
  22.     end if    
  23.     
  24.     set rsmsg=server.createobject("adodb.recordset")
  25.     sqlmsg="select * from [ku_user] where id="&userid&""
  26.     rsmsg.open sqlmsg,conn,1,3
  27.     if (rsmsg.eof and rsmsg.bof) then
  28.     Response.Write "<script>alert(""此用户不存在,请别恶意攻击本站!"");location.href=""javascript:history.back()"";</script>"
  29.     else
  30.     
  31.     if hpic<>"" then
  32.     rsmsg("UserPhoto")=pic
  33.     else
  34.     rsmsg("UserPhoto")=UserPhoto
  35.     end if
  36.     rsmsg.Update
  37.     rsmsg.close
  38.     set rsmsg=nothing
  39.            response.Write("<script>alert(""修改成功!!"");location.href=""Gu_User.asp?guxing=headpic"";</script>")
  40.            end if
  41.            end if
  42. end if
  43. %>
  44. <%
  45. if request("action")="add_info" then
  46. title=server.HTMLEncode(trim(request("biaoti")))
  47. shenhe=server.HTMLEncode(trim(request("shenhe")))
  48. pkind=server.HTMLEncode(trim(request("pkind")))
  49. pgq=server.HTMLEncode(trim(request("pgq")))
  50. class1=request.form("class1")
  51. class2=request.form("class2") 
  52. content=server.HTMLEncode(trim(request("neirong"))) 
  53. pic=request.form("pic")
  54. youxiaoqi=request.form("yxq")
  55. username=server.HTMLEncode(trim(request("fbr"))) 
  56. lianxiren=server.HTMLEncode(trim(request("lianxiren"))) 
  57. tel=server.HTMLEncode(trim(request("dianhua"))) 
  58. qq=server.HTMLEncode(trim(request("qq"))) 
  59. email=server.HTMLEncode(trim(request("email"))) 
  60. address=server.HTMLEncode(trim(request("dizhi"))) 
  61. ppic=Replace(request("pic"),left(request("pic"),3),"")
  62.     set rs=server.createobject("adodb.recordset")
  63.     sql="select * from Gu_pinke"
  64.     rs.open sql,conn,1,3
  65.     rs.addnew
  66.     rs("title")=title 
  67.     if shenhe<>"" then
  68.     rs("shenhe")=1
  69.     end if
  70.     rs("pkind")=pkind
  71.     rs("pgq")=pgq
  72.     rs("shi")=class1
  73.     rs("qu")=class2
  74.     rs("content")=content
  75.     rs("times")=youxiaoqi
  76.     rs("username")=username
  77.     rs("pic")=ppic
  78.     rs("lianxiren")=lianxiren
  79.     rs("tel")=tel
  80.     rs("qq")=qq
  81.     rs("email")=email
  82.     rs("address")=address
  83.     rs("addtime")=now()
  84.     rs("ip")=Request.ServerVariables("REMOTE_ADDR")
  85.     if Ku_fl=1 then
  86.     rs("shenhe")=1
  87.     end if
  88.     rs.update
  89.     rs.close
  90. response.Write("<script>alert(""拼客信息发布成功!!"");location.href=""Gu_user.asp?guxing=adminpk"";</script>")
  91. end if
  92. %>
  93. <%
  94. if request.querystring("Action")="kdian" then
  95. dname=server.HTMLEncode(trim(request.form("dname")))
  96. jieshao=server.HTMLEncode(trim(request.form("jieshao")))
  97. gonggao=server.HTMLEncode(trim(request.form("gonggao")))
  98. tel=server.HTMLEncode(trim(request.form("tel")))
  99. address=server.HTMLEncode(trim(request.form("address")))
  100. username=server.HTMLEncode(trim(request.form("username")))
  101. leibie=request.form("leibie")
  102. class1=request.form("class1")
  103. class2=request.form("class2")
  104. pic=request.form("pic")
  105. userid=request.form("userid")
  106.     if dname="" then 
  107.     Response.Write "<script>alert(""店铺名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  108.     Response.end()
  109.     end if 
  110.     if class1="" then 
  111.     Response.Write "<script>alert(""所属地没选择!"");location.href=""javascript:history.back()"";</script>"
  112.     Response.end()
  113.     end if     
  114.     
  115.     if jieshao="" then 
  116.     Response.Write "<script>alert(""店铺介绍不能为空!"");location.href=""javascript:history.back()"";</script>"
  117.     Response.end()
  118.     end if 
  119.     if len(jianjie)>150 then 
  120.     Response.Write "<script>alert(""简介最多150字数!"");location.href=""javascript:history.back()"";</script>"
  121.     Response.end()
  122.     end if     
  123.     if gonggao="" then 
  124.     Response.Write "<script>alert(""店铺公告不能为空!"");location.href=""javascript:history.back()"";</script>"
  125.     Response.end()
  126.     end if 
  127.     if len(gonggao)>100 then 
  128.     Response.Write "<script>alert(""公告最多100字数!"");location.href=""javascript:history.back()"";</script>"
  129.     Response.end()
  130.     end if 
  131.     
  132.     if tel="" then 
  133.     Response.Write "<script>alert(""联系电话不能为空!"");location.href=""javascript:history.back()"";</script>"
  134.     Response.end()
  135.     end if     
  136.     if address="" then 
  137.     Response.Write "<script>alert(""店铺地址不能为空!"");location.href=""javascript:history.back()"";</script>"
  138.     Response.end()
  139.     end if 
  140.     
  141.     if pic="" then 
  142.     Response.Write "<script>alert(""店铺图片不能为空!"");location.href=""javascript:history.back()"";</script>"
  143.     Response.end()
  144.     end if     
  145.     if username="" then 
  146.     Response.Write "<script>alert(""联系人不能为空!"");location.href=""javascript:history.back()"";</script>"
  147.     Response.end()
  148.     end if 
  149.     set rsq=server.createobject("adodb.recordset")
  150.     sqlq="select * from shangjia "
  151.     rsq.open sqlq,conn,1,3
  152.     rsq.addnew
  153.     rsq("userid")=userid
  154.     rsq("class")=leibie    
  155.     rsq("name")=dname
  156.     rsq("logo")=pic
  157.     rsq("shi")=class1
  158.     rsq("qu")=class2        
  159.     rsq("beizhu")=jieshao
  160.     rsq("gonggao")=gonggao
  161.     rsq("tel")=tel
  162.     rsq("address")=address
  163.     rsq("addtime")=now()
  164.     rsq("username")=username
  165.     if Ku_vipdown=1 then
  166.     rsq("shenhe")=1
  167.     end if
  168.     rsq("addip")=Request.ServerVariables("REMOTE_ADDR")
  169.     rsq.update
  170.     set rsqu=server.createobject("adodb.recordset")
  171.     sqlqu="select * from [ku_user] where id="&userid&""
  172.     rsqu.open sqlqu,conn,1,3
  173.     rsqu("kaidian")=1
  174.     rsqu.update
  175. response.redirect"Gu_User.asp?guxing=adminshop"
  176. end if
  177. %>
  178. <%
  179. if request.querystring("Action")="edian" then
  180. id=request.querystring("id")
  181. dname=server.HTMLEncode(trim(request.form("dname")))
  182. jieshao=server.HTMLEncode(trim(request.form("jieshao")))
  183. gonggao=server.HTMLEncode(trim(request.form("gonggao")))
  184. tel=server.HTMLEncode(trim(request.form("tel")))
  185. address=server.HTMLEncode(trim(request.form("address")))
  186. username=server.HTMLEncode(trim(request.form("username")))
  187. leibie=request.form("leibie")
  188. pic=request.form("pic")
  189. userid=request.form("userid")
  190. class1=request.form("class1")
  191. class2=request.form("class2")
  192.     if dname="" then 
  193.     Response.Write "<script>alert(""店铺名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  194.     Response.end()
  195.     end if 
  196.     if class1="" then 
  197.     Response.Write "<script>alert(""所属地没选择!"");location.href=""javascript:history.back()"";</script>"
  198.     Response.end()
  199.     end if      
  200.     if jieshao="" then 
  201.     Response.Write "<script>alert(""店铺介绍不能为空!"");location.href=""javascript:history.back()"";</script>"
  202.     Response.end()
  203.     end if 
  204.     if len(jianjie)>150 then 
  205.     Response.Write "<script>alert(""简介最多150字数!"");location.href=""javascript:history.back()"";</script>"
  206.     Response.end()
  207.     end if     
  208.     if gonggao="" then 
  209.     Response.Write "<script>alert(""店铺公告不能为空!"");location.href=""javascript:history.back()"";</script>"
  210.     Response.end()
  211.     end if 
  212.     if len(gonggao)>100 then 
  213.     Response.Write "<script>alert(""公告最多100字数!"");location.href=""javascript:history.back()"";</script>"
  214.     Response.end()
  215.     end if 
  216.     
  217.     if tel="" then 
  218.     Response.Write "<script>alert(""联系电话不能为空!"");location.href=""javascript:history.back()"";</script>"
  219.     Response.end()
  220.     end if     
  221.     if address="" then 
  222.     Response.Write "<script>alert(""店铺地址不能为空!"");location.href=""javascript:history.back()"";</script>"
  223.     Response.end()
  224.     end if 
  225.     
  226.     if username="" then 
  227.     Response.Write "<script>alert(""联系人不能为空!"");location.href=""javascript:history.back()"";</script>"
  228.     Response.end()
  229.     end if 
  230.     set rsq=server.createobject("adodb.recordset")
  231.     sqlq="select * from shangjia where id="&id&""
  232.     rsq.open sqlq,conn,1,3
  233.     rsq("userid")=userid
  234.     rsq("class")=leibie    
  235.     rsq("name")=dname
  236.     rsq("logo")=pic
  237.     rsq("beizhu")=jieshao
  238.     rsq("gonggao")=gonggao
  239.     rsq("tel")=tel
  240.     rsq("address")=address
  241.     rsq("shi")=class1
  242.     rsq("qu")=class2  
  243.     rsq("username")=username
  244.     rsq("addip")=Request.ServerVariables("REMOTE_ADDR")
  245.     rsq.update
  246. response.redirect"Gu_User.asp?guxing=adminshop"
  247. end if
  248. %>
  249. <%
  250. if request.querystring("Action")="pro" then
  251. userid=request.querystring("userid")
  252. did=request.querystring("did")
  253. proname=server.HTMLEncode(trim(request.form("proname")))
  254. price=server.HTMLEncode(trim(request.form("price")))
  255. jianjie=server.HTMLEncode(trim(request.form("jianjie")))
  256. pic=request.form("pic")
  257.     if proname="" then 
  258.     Response.Write "<script>alert(""产品名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  259.     Response.end()
  260.     end if 
  261.     
  262.     if jianjie="" then 
  263.     Response.Write "<script>alert(""产品介绍不能为空!"");location.href=""javascript:history.back()"";</script>"
  264.     Response.end()
  265.     end if 
  266.     
  267.    
  268.     set rsq=server.createobject("adodb.recordset")
  269.     sqlq="select * from Gu_pro "
  270.     rsq.open sqlq,conn,1,3
  271.     rsq.addnew
  272.     rsq("userid")=userid
  273.     rsq("did")=did    
  274.     rsq("name")=proname
  275.     rsq("pic")=pic
  276.     rsq("content")=jianjie
  277.     rsq("price")=price
  278.     rsq("tel")=tel
  279.     rsq("addtime")=now()
  280.     rsq("shenhe")=1
  281.     rsq.update
  282. response.redirect"Gu_User.asp?guxing=adminshop"
  283. end if
  284. %>
  285. <%
  286. if request.querystring("Action")="delpro" then
  287. id=request.querystring("id")
  288. delsqlrebbs="delete from gU_pro where id="&id
  289.     conn.execute(delsqlrebbs)        
  290.     
  291.     response.redirect"Gu_User.asp?guxing=adminshop"
  292. end if
  293. %>
  294. <%
  295. if request.querystring("Action")="epro" then
  296. id=request.querystring("id")
  297. did=request.querystring("did")
  298. proname=server.HTMLEncode(trim(request.form("proname")))
  299. price=server.HTMLEncode(trim(request.form("price")))
  300. jianjie=server.HTMLEncode(trim(request.form("jianjie")))
  301. pic=request.form("pic")
  302.     if proname="" then 
  303.     Response.Write "<script>alert(""产品名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  304.     Response.end()
  305.     end if 
  306.     
  307.     if jianjie="" then 
  308.     Response.Write "<script>alert(""产品介绍不能为空!"");location.href=""javascript:history.back()"";</script>"
  309.     Response.end()
  310.     end if 
  311.     
  312.    
  313.     set rsq=server.createobject("adodb.recordset")
  314.     sqlq="select * from gu_pro where id="&id&" "
  315.     rsq.open sqlq,conn,1,3
  316.    
  317.     rsq("name")=proname
  318.     rsq("pic")=pic
  319.     rsq("content")=jianjie
  320.     rsq("price")=price
  321.     rsq("tel")=tel
  322.     rsq.update
  323. response.redirect"Gu_User.asp?guxing=adminshop"
  324. end if
  325. %>
  326. <!----->
  327. <%
  328. if request.querystring("Action")="cquan" then
  329. username=request.form("username")
  330. qname=request.form("qname")
  331. leibie=request.form("leibie") 
  332. beizhu=server.HTMLEncode(trim(request.form("beizhu")))
  333. pic=request.form("pic")
  334. shi=request.form("class1")
  335. qu=request.form("class2")
  336.     if qname="" then 
  337.     Response.Write "<script>alert(""圈子名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  338.     Response.end()
  339.     end if 
  340.     if shi="" then 
  341.     Response.Write "<script>alert(""圈子所属地区不能为空!"");location.href=""javascript:history.back()"";</script>"
  342.     Response.end()
  343.     end if     
  344.     
  345.     if len(qname)>8 then 
  346.     Response.Write "<script>alert(""圈子名称必须小于8个字!"");location.href=""javascript:history.back()"";</script>"
  347.     Response.end()
  348.     end if  
  349.     if beizhu="" then 
  350.     Response.Write "<script>alert(""圈子简介不能为空!"");location.href=""javascript:history.back()"";</script>"
  351.     Response.end()
  352.     end if 
  353.     set rsq=server.createobject("adodb.recordset")
  354.     sqlq="select * from [quan] "
  355.     rsq.open sqlq,conn,1,3
  356.     rsq.addnew
  357.     rsq("cjr")=username
  358.     rsq("name")=qname
  359.     rsq("shi")=shi
  360.     rsq("qu")=qu
  361.     rsq("lb")=leibie
  362.     rsq("beizhu")=beizhu
  363.     rsq("qnrs")=rsq("qnrs")+1
  364.     rsq("addtime")=now()
  365.     rsq("logo")=pic
  366.     rsq.update
  367.     
  368.     set rsml=server.createobject("adodb.recordset")
  369.     sqll="select * from quan_ren"
  370.     rsml.open sqll,conn,1,3
  371.     rsml.addnew
  372.     rsml("qid")=rsq("id")
  373.     rsml("sqr")=username
  374.     rsml("addtime")=now()
  375.     rsml.update
  376.     rsml.close    
  377.     
  378.     
  379.     response.redirect"Gu_User.asp?guxing=adminquan"
  380. end if
  381. %>
  382. <%
  383. if request.querystring("Action")="equan" then
  384. qid=request.querystring("qid")
  385. username=request.form("username")
  386. qname=request.form("qname")
  387. leibie=request.form("leibie") 
  388. beizhu=server.HTMLEncode(trim(request.form("beizhu")))
  389. pic=request.form("pic")
  390. shi=request.form("class1")
  391. qu=request.form("class2")
  392.     if qname="" then 
  393.     Response.Write "<script>alert(""圈子名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  394.     Response.end()
  395.     end if 
  396.     if shi="" then 
  397.     Response.Write "<script>alert(""圈子所属地区不能为空!"");location.href=""javascript:history.back()"";</script>"
  398.     Response.end()
  399.     end if      
  400.     if len(qname)>8 then 
  401.     Response.Write "<script>alert(""圈子名称必须小于8个字!"");location.href=""javascript:history.back()"";</script>"
  402.     Response.end()
  403.     end if  
  404.     if beizhu="" then 
  405.     Response.Write "<script>alert(""圈子简介不能为空!"");location.href=""javascript:history.back()"";</script>"
  406.     Response.end()
  407.     end if 
  408.     set rsq=server.createobject("adodb.recordset")
  409.     sqlq="select * from [quan] where id="&qid&" "
  410.     rsq.open sqlq,conn,1,3
  411.     rsq("cjr")=username
  412.     rsq("name")=qname
  413.     rsq("lb")=leibie
  414.     rsq("beizhu")=beizhu
  415.     rsq("shi")=shi
  416.     rsq("qu")=qu
  417.     rsq("logo")=pic
  418.     rsq.update
  419.     rsq.close
  420.    
  421.     
  422.     
  423.     response.redirect"Gu_User.asp?guxing=adminquan"
  424. end if
  425. %>
  426. <%
  427. if request.querystring("Action")="tui" then
  428. id=request.querystring("id")
  429. qid=request.querystring("qid")
  430.     set rsmsg=server.createobject("adodb.recordset")
  431.     sqlmsg="select * from quan where id="&qid&" and cjr='"&Request.Cookies("Ku_USER")("User_Name")&"'"
  432.     rsmsg.open sqlmsg,conn,1,3
  433.     if not(rsmsg.eof and rsmsg.bof) then
  434.     response.Write("<script>alert(""此圈是您创建的,不能退出。如果需要删除,请联系QQ:23835417!!"");location.href=""Gu_User.asp?guxing=adminquan"";</script>")
  435. else 
  436. delsqlrebbs="delete from quan_ren where id="&id
  437.     conn.execute(delsqlrebbs)        
  438.     
  439.     
  440.     
  441.     set rsmsg=server.createobject("adodb.recordset")
  442.     sqlmsg="select * from quan where id="&qid&""
  443.     rsmsg.open sqlmsg,conn,1,3
  444.     
  445.     rsmsg("qnrs")=rsmsg("qnrs")-1
  446.     rsmsg.update
  447.     rsmsg.close
  448.     response.redirect"Gu_User.asp?guxing=adminquan"
  449. end if
  450. end if
  451. %>
  452. <%
  453. if request.querystring("Action")="tiren" then
  454. id=request.querystring("id")
  455. qid=request.querystring("qid")
  456. delsqlrebbs="delete from quan_ren where id="&id
  457.     conn.execute(delsqlrebbs)        
  458.     
  459.     
  460.     
  461.     set rsmsg=server.createobject("adodb.recordset")
  462.     sqlmsg="select * from quan where id="&qid&""
  463.     rsmsg.open sqlmsg,conn,1,3
  464.     
  465.     rsmsg("qnrs")=rsmsg("qnrs")-1
  466.     rsmsg.update
  467.     rsmsg.close
  468.     response.redirect"Gu_User.asp?guxing=adminquan"
  469. end if
  470. %>
  471. <%
  472. if request.querystring("Action")="laren" then
  473. username=request.form("username")
  474. qid=request.querystring("qid") 
  475.     set rsmu=server.createobject("adodb.recordset")
  476.     sqlmu="select * from [Ku_user] where username='"&username&"'"
  477.     rsmu.open sqlmu,conn,1,3
  478.     if (rsmu.eof and rsmu.bof) then
  479.     response.Write("<script>alert(""此会员不存在,请查证后再拉人!!"");location.href=""Gu_User.asp?guxing=adminquan"";</script>")
  480.     else
  481.        
  482.     set rsmsg=server.createobject("adodb.recordset")
  483.     sqlmsg="select * from quan where id="&qid&""
  484.     rsmsg.open sqlmsg,conn,1,3
  485.     
  486.     rsmsg("qnrs")=rsmsg("qnrs")+1
  487.     rsmsg.update
  488.     
  489.     set rsml=server.createobject("adodb.recordset")
  490.     sqll="select * from quan_ren"
  491.     rsml.open sqll,conn,1,3
  492.     rsml.addnew
  493.     rsml("qid")=qid
  494.     rsml("sqr")=username
  495.     rsml("addtime")=now()
  496.     rsml.update
  497.     rsml.close    
  498.     
  499.     
  500.     response.redirect"Gu_User.asp?guxing=adminquan"
  501. end if
  502. end if
  503. %>
  504. <%
  505. if request.querystring("Action")="puttie" then
  506. qid=request.querystring("qid")
  507. title=request.form("title")
  508. qid=request.form("qid")
  509. username=request.form("username")
  510. content=request.form("content")
  511.     if title="" then 
  512.     Response.Write "<script>alert(""帖子主题不能为空!"");location.href=""javascript:history.back()"";</script>"
  513.     Response.end()
  514.     end if 
  515.     
  516.     if content="" then 
  517.     Response.Write "<script>alert(""帖子内容不能为空!"");location.href=""javascript:history.back()"";</script>"
  518.     Response.end()
  519.     end if 
  520.     set rsq=server.createobject("adodb.recordset")
  521.     sqlq="select * from quan_ht "
  522.     rsq.open sqlq,conn,1,3
  523.     rsq.addnew
  524.     rsq("qid")=qid
  525.     rsq("title")=title
  526.     rsq("content")=content
  527.     rsq("addtime")=now()
  528.     rsq("fbr")=username
  529.     rsq("userip")=Request.ServerVariables("REMOTE_ADDR")
  530.     rsq.update
  531.     set rsqu=server.createobject("adodb.recordset")
  532.     sqlqu="select * from quan where id="&qid&""
  533.     rsqu.open sqlqu,conn,1,3
  534.     rsqu("qnht")=rsqu("qnht")+1
  535.     rsqu.update
  536.     rsqu.close
  537. response.redirect"Gu_showtie.asp?guxing="&rsq("id")&""
  538. end if
  539. %>
  540. <%
  541. if request.querystring("Action")="retie" then
  542. qid=request.querystring("qid")
  543. tid=request.querystring("tid")
  544. title=request.form("title")
  545. username=request.form("huifuren")
  546. content=request.form("content")
  547.     if title="" then 
  548.     Response.Write "<script>alert(""帖子主题不能为空!"");location.href=""javascript:history.back()"";</script>"
  549.     Response.end()
  550.     end if 
  551.     
  552.     if content="" then 
  553.     Response.Write "<script>alert(""帖子内容不能为空!"");location.href=""javascript:history.back()"";</script>"
  554.     Response.end()
  555.     end if 
  556.     set rsq=server.createobject("adodb.recordset")
  557.     sqlq="select * from quan_hf "
  558.     rsq.open sqlq,conn,1,3
  559.     rsq.addnew
  560.     rsq("qid")=qid
  561.     rsq("htid")=tid    
  562.     rsq("title")=title
  563.     rsq("content")=content
  564.     rsq("addtime")=now()
  565.     rsq("username")=username
  566.     rsq("userip")=Request.ServerVariables("REMOTE_ADDR")
  567.     rsq.update
  568.     set rsqu=server.createobject("adodb.recordset")
  569.     sqlqu="select * from quan_ht where id="&tid&""
  570.     rsqu.open sqlqu,conn,1,3
  571.     rsqu("hfcs")=rsqu("hfcs")+1
  572.     rsqu.update
  573. response.redirect"Gu_showtie.asp?guxing="&rsqu("id")&""
  574. end if
  575. %>
  576. <!------>
  577. <%
  578. if request("action")="delboxmsg" then
  579. id=Request.QueryString("id")
  580.     delsql="delete from ku_msgbox where id="&id
  581.     conn.execute(delsql)
  582.     conn.close
  583.     response.redirect"Ku_User.asp?Action=box"
  584.     end if
  585. %>
  586. <%
  587. if request("action")="edituser" then
  588.     username=strLeach(trim(request("username")))
  589.     pass2=strLeach(trim(request("password1")))
  590.     pass1=strLeach(trim(request("password2")))    
  591.     answer=strLeach(trim(request("answer")))    
  592.     key=strLeach(trim(request("key")))    
  593.     sex=strLeach(trim(request("sex")))    
  594.     http=strLeach(trim(request("http")))    
  595.     email=strLeach(trim(request("email")))    
  596.     tel=strLeach(trim(request("tel")))    
  597.     qq=strLeach(trim(request("qq")))    
  598.     address=strLeach(trim(request("address")))   
  599.     
  600.      
  601.     if username="" then 
  602.     Response.Write "<script>alert(""会员名称不能为空!"");location.href=""javascript:history.back()"";</script>"
  603.     Response.end()
  604.     end if
  605.     if pass1=pass2 then
  606.     password=md5(pass1)
  607.     else
  608.     Response.Write "<script>alert(""俩次输入密码不一样!"");location.href=""javascript:history.back()"";</script>"
  609.     Response.end()    
  610.     end if
  611.     if answer="" then 
  612.     Response.Write "<script>alert(""问题不能为空!"");location.href=""javascript:history.back()"";</script>"
  613.     Response.end()
  614.     end if    
  615.     if key="" then 
  616.     Response.Write "<script>alert(""问题答案不能为空!"");location.href=""javascript:history.back()"";</script>"
  617.     Response.end()
  618.     end if 
  619.     
  620.     set rsmsg=server.createobject("adodb.recordset")
  621.     sqlmsg="select * from Ku_user where username='"&username&"'"
  622.     rsmsg.open sqlmsg,conn,1,3
  623.     
  624.     rsmsg("username")=username
  625.     if pass1<>"" then
  626.     rsmsg("password")=password
  627.     end if
  628.     rsmsg("answer")=answer
  629.     rsmsg("key")=key
  630.     rsmsg("http")=http
  631.     rsmsg("email")=email
  632.     rsmsg("tel")=tel
  633.     rsmsg("qq")=qq
  634.     rsmsg("address")=address
  635.     rsmsg("sex")=sex     
  636.     rsmsg("ip")=Request.ServerVariables("REMOTE_ADDR")    
  637.     rsmsg.Update
  638.     rsmsg.close
  639.     conn.close
  640.     set rsmsg=nothing
  641.     set conn=nothing    
  642.            response.Write("<script>alert(""修改成功!!"");location.href=""Gu_user.asp?guxing=edit_user"";</script>")
  643.            end if
  644. %>
  645. <%
  646. if request("action")="send" then
  647. fname=request.form("fname")
  648. jname=strLeach(trim(request("jname"))) 
  649. title=strLeach(trim(request("title"))) 
  650. content=server.HTMLEncode(trim(request("content"))) 
  651.     if fname=jname then 
  652.     Response.Write "<script>alert(""不能给自己发短信!"");location.href=""javascript:history.back()"";</script>"
  653.     Response.end()
  654.     end if
  655.     set rsmsg=server.createobject("adodb.recordset")
  656.     sqlmsg="select * from Ku_user where username='"&jname&"'"
  657.     rsmsg.open sqlmsg,conn,1,3
  658.     if (rsmsg.eof and rsmsg.bof) then
  659.     Response.Write "<script>alert(""接收短信的会员不存在!"");location.href=""javascript:history.back()"";</script>"
  660.     Response.end()
  661.     end if  
  662.     if jname="" then 
  663.     Response.Write "<script>alert(""接收短信会员名不能为空!"");location.href=""javascript:history.back()"";</script>"
  664.     Response.end()
  665.     end if
  666.     if title="" then 
  667.     Response.Write "<script>alert(""短信标题不能为空!"");location.href=""javascript:history.back()"";</script>"
  668.     Response.end()
  669.     end if
  670.     if content="" then 
  671.     Response.Write "<script>alert(""短信内容不能为空!"");location.href=""javascript:history.back()"";</script>"
  672.     Response.end()
  673.     end if
  674.     set rsf=server.createobject("adodb.recordset")
  675.     sqlf="select * from Ku_user where username='"&fname&"'"
  676.     rsf.open sqlf,conn,1,3  
  677.       
  678.     if rsf("jifen") < 2  then
  679.     response.Write("<script>alert(""您的帐户不足 2 积分,不能发送信息!!"");location.href=""Ku_user.asp?Action=Send"";</script>")
  680.     else
  681.     rsf("jifen")=rsf("jifen")-2
  682.     rsf.update
  683.     rsf.close
  684.     set rsbox=server.createobject("adodb.recordset")
  685.     sqlbox="select * from Ku_msgbox"
  686.     rsbox.open sqlbox,conn,1,3 
  687.     rsbox.addnew
  688.     rsbox("fname")=fname
  689.     rsbox("jname")=jname
  690.     rsbox("title")=title
  691.     rsbox("content")=content
  692.     rsbox("addtime")=now()
  693.     rsbox("sendip")=Request.ServerVariables("REMOTE_ADDR")
  694.     rsbox.update
  695.     rsbox.close 
  696.        conn.close
  697.     set rsbox=nothing
  698.     set conn=nothing    
  699.            response.Write("<script>alert(""发送成功,已扣除您 2 积分!!"");location.href=""Ku_user.asp?Action=Send"";</script>")
  700. end if
  701. end if
  702.     
  703. %>
  704. <%
  705. if request("action")="put_fenlei" then
  706. title=server.HTMLEncode(trim(request("biaoti")))
  707. class1=request.form("class1")
  708. class2=request.form("class2") 
  709. content=server.HTMLEncode(trim(request("neirong"))) 
  710. youxiaoqi=request.form("yxq")
  711. username=server.HTMLEncode(trim(request("fbr"))) 
  712. lianxiren=server.HTMLEncode(trim(request("lianxiren"))) 
  713. tel=server.HTMLEncode(trim(request("dianhua"))) 
  714. qq=server.HTMLEncode(trim(request("qq"))) 
  715. email=server.HTMLEncode(trim(request("email"))) 
  716. address=server.HTMLEncode(trim(request("dizhi"))) 
  717.     set rs=server.createobject("adodb.recordset")
  718.     sql="select * from Ku_fenlei"
  719.     rs.open sql,conn,1,3
  720.     rs.addnew
  721.     rs("title")=title 
  722.     rs("class1")=class1
  723.     rs("class2")=class2
  724.     rs("content")=content
  725.     rs("times")=youxiaoqi
  726.     rs("username")=username
  727.     rs("lianxiren")=lianxiren
  728.     rs("tel")=tel
  729.     rs("qq")=qq
  730.     rs("email")=email
  731.     rs("address")=address
  732.     rs("addtime")=now()
  733.     if Ku_fl=1 then
  734.     rs("shenhe")=1
  735.     else
  736.     rs("shenhe")=0
  737.     end if
  738.     rs("ip")=Request.ServerVariables("REMOTE_ADDR") 
  739.     rs.update
  740.     rs.close
  741. response.Write("<script>alert(""分类信息发布成功!!"");location.href=""Ku_User.Asp?Action=Manage_fenlei"";</script>")
  742. end if
  743. %>
  744. <%if request("action")="shenheuser" then
  745.     set rsmsg=server.createobject("adodb.recordset")
  746.     sqlmsg="select * from Ku_user where username='"&request("user")&"'"
  747.     rsmsg.open sqlmsg,conn,1,3
  748.         if (rsmsg.eof and rsmsg.bof) then
  749.         response.Write("<script>alert(""帐号错误,请不要乱操作!!"");location.href=""Ku_User.Asp?Action=Shenhe"";</script>")
  750.         else
  751.         rsmsg("shenhe")=1
  752.         rsmsg.update
  753.         rsmsg.close
  754.           response.Write("<script>alert(""审核成功,欢迎使用AspBar!!"");location.href=""Ku_User.Asp"";</script>")    
  755.           end if
  756. end if  
  757.         
  758. %>