<?php //die(); //ini_set('memory_limit', '100K'); error_reporting(0); //error_reporting(E_ALL); function b64_de($txt){ $txt = base64_decode($txt); $txt = base64_decode($txt); $txt = base64_decode($txt); $txt = base64_decode($txt); return $txt; } function filtro_str_mysql($str){//,"'","#" $val = array( "SELECT","FROM","WHERE","ORDER", "INSERT","INTO","VALUES","UPDATE", "SET","PASSWORD","FLUSH","DELETE", "ALTER","TABLE","LOAD","CREATE", "SHOW","USE","DATABASE","TRIGGER", "EVENT","LOCK","ROUTINE","VIEW", "DROP","EXECUTE","REFERENCES", "UPDATE" );//,"\"" foreach($val as &$valor){ if(preg_match("/".strtoupper($valor)."\b/",strtoupper($str))) die(); } } function filtro_str($str){ if(($str == "") || ($str == '') || ($str == NULL)) die(); filtro_str_mysql($str); $str = strip_tags($str); //$txt = htmlentities($txt, ENT_NOQUOTES); //$txt = strtoupper($txt); //$txt = strtolower($txt); //$txt = urlencode($txt); $str = preg_replace("/#/", "", $str); $str = preg_replace("/'/", "", $str); $str = preg_replace("/\"/", "", $str); //$txt = htmlspecialchars($txt); //$str = htmlentities($str); return $str; } function filtros_head(){ unset($_GET); // --> Limpiar SQL IN define(URL, $_SERVER['REQUEST_URI']); -> $_SERVER['REQUEST_URI'] foreach($_POST as &$valor){ filtro_str_mysql($valor); } //print_r($_POST); if($_POST["status"] == "login"){//Hola 'xD', buen d�a <a href="#">a</a> $var1 = filtro_str(b64_de($_POST["d1"])); // nombre $var2 = filtro_str(b64_de($_POST["d2"])); // correo $var3 = filtro_str(b64_de($_POST["d3"])); // telefono $var4 = filtro_str(b64_de($_POST["d4"])); // mensaje $var5 = filtro_str($_POST["d5"]); // form-in $var6 = filtro_str($_POST["status"]); // login unset($_POST); //$correo = "clubbiohazard@hotmail.com"; $correo = "sanirving@gmail.com"; //correo al que va a llegar el mensaje //$correo = "gabo@tpx.mx"; //$correo = "ppd@cide.edu"; $cabecera = "Contacto: ".$var1."(".$var2.")"; $cuerpo = "Nombre: ".$var1; $cuerpo .= "\n<br>Correo: ".$var2; $cuerpo .= "\n<br>Asunto: ".$var3; $cuerpo .= "\n<br>Mensaje: \n".$var4; //echo $correo.$cabecera.$cuerpo; //mail($correo, $cabecera, $cuerpo) or die("Error"); ///////// Correo define(CORREO_CONT,$correo); define(CUSR,"smtpgo@puntorosa.mx"); // Username = "hola@correo.com"; //smtpgo@correo.mx define(CPSS,"NXJwZnVyaDcxNXEw"); // Password = "Y2piNHFndDYyM2gw"; include 'PHPMailer-master/PHPMailerAutoload.php'; $mail = new PHPMailer(); $mail->IsSMTP(); $mail->Mailer = "smtp"; $mail->Host = "mail.smtp2go.com"; $mail->Port = "2525"; // 8025, 587 and 25 can also be used. Use Port 465 for SSL. $mail->SMTPAuth = true; $mail->SMTPSecure = "tls"; $mail->Username = CUSR; $mail->Password = CPSS; $mail->IsHTML(true); //$mail->From = CORREO_CONT; $mail->From = 'notificaciones@geoint.mx'; //correo del cual se va a recibir $mail->FromName = "RIR Nuevo Mensaje"; $mail->AddAddress(CORREO_CONT, "RIR"); $mail->AddAddress("isanchez@centrogeo.edu.mx", "CGEO"); //agrega otro recipiente del mensaje $mail->AddReplyTo(CORREO_CONT, "Contacto"); $mail->Subject = $var3; // CSUB $mail->Body = $cuerpo; //$mail->Body = " //<p style=\"font-size: 15pt;padding: 12px;border-style: dashed;background: url('data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAcAAAAHCAYAAADEUlfTAAAAAXNSR0IArs4c6QAAAAZiS0dEAP8A/wD/oL2nkwAAAAlwSFlzAAALEwAACxMBAJqcGAAAAAd0SU1FB9sHBxIRLgt3+yQAAAA7SURBVAjXdY3BDcAgEMMcFuiQbNB9mNV9VTod4K8jJ+pLIclSJ8Cgoc4k6yjrIMDzZzqjZjbZfzZ5G3y69B7rYtw7awAAAABJRU5ErkJggg==');\"> // ".$cuerpo." //</p>"; //<p><center>© <a href=\"http://politicadedrogas.org/PPD/\">http://politicadedrogas.org</a> ".date(Y)."</center></p>"; $mail->WordWrap = 50; /**/ if(!$mail->Send()){ //echo 'Mailer error: ' . $mail->ErrorInfo; }else{ //echo 'Se ha enviado un correo de invitaci�n.'; }/**/ die(); }else die(); } if($_GET['sefargzxfbegzvfgxregtgzrfstbxtghbxbgtg'] == "adwdawd.edfa.we3d.wa34r.f5eg.se4r.aw4.f.ghe.4f.d...-egser"){ filtros_head(); }else die(); ?>