userbuyserver.asp
资源名称:qnmov30.rar [点击查看]
上传用户:qyswxdl
上传日期:2013-06-01
资源大小:1373k
文件大小:2k
源码类别:
家庭/个人应用
开发平台:
ASP/ASPX
- <!--#include file="../checkpost.asp"-->
- <!--#include file="articleconn.asp"-->
- <!--#include file="security.asp"-->
- <%
- if session("flag")>2 then
- response.write "<br><p align=center>您没有操作的权限</p>"
- response.end
- end if
- %>
- <%Response.Buffer=true%>
- <%
- money=Replace(request("money"), "'", "''")
- oklook=Replace(request("oklook"), "'", "''")
- add=Replace(request("add"), "'", "''")
- del=Replace(request("del"), "'", "''")
- %>
- <%
- if add<>"" then
- set rs=server.createobject("adodb.recordset")
- sql="select money,starlook,oklook,pay,baoyue from users where userid='"&Replace(request("userid"), "'", "''")&"'"
- rs.open sql,conn,1,3
- rs("pay")=1
- rs("starlook")=now()
- if rs("money")-now()<1 then
- rs("money")=now() + money
- rs("oklook")=oklook
- rs("baoyue")=1
- else
- rs("money")=rs("money") + money
- rs("oklook")=oklook
- rs("baoyue")=1
- end if
- rs.update
- set rs=server.createobject("adodb.recordset")
- sql="select * from buy where id="&clng(request("id"))
- rs.open sql,conn,1,3
- rs("pay")=1
- rs.update
- 'conn.execute"delete from buy where id="&clng(request("id"))
- if request("askmejoin")<>"" then
- set rs=server.createobject("adodb.recordset")
- sql="select getmoney,payno,oklook from users where userid='"&request("askmejoin")&"'"
- rs.open sql,conn,1,3
- if rs("oklook")=0 or rs("oklook")=1 then
- give=1
- elseif rs("oklook")=2 then
- give=2
- elseif rs("oklook")=3 then
- give=3
- elseif rs("oklook")=4 then
- give=4
- end if
- rs("getmoney")=cint(rs("getmoney"))+request("paymoney")/10*give
- rs("payno")=cint(rs("payno"))+1
- rs.update
- end if
- rs.close
- set rs=nothing
- conn.close
- set conn=nothing
- response.redirect"buyuser.asp"
- response.end
- end if
- if del<>"" then
- set rs2=server.createobject("adodb.recordset")
- sql2="select pay from users where userid='"&Replace(request("userid"), "'", "''")&"'"
- rs2.open sql2,conn,1,3
- rs2("pay")=""
- rs2.update
- rs2.close
- conn.execute"delete from buy where id="&clng(request("id"))
- conn.close
- set conn=nothing
- response.redirect"buyuser01.asp"
- response.end
- end if
- %>