% smtpserver = "66.102.130.5" '-----------------------sends ASP EMAIL --------------------------' sub sendaspemail(fromadd, fromname, toadd, subtxt, bodytxt) Set Mail = Server.CreateObject("Persits.MailSender") Mail.Host = smtpserver ' Specify a valid SMTP server Mail.From = fromadd ' Specify sender's address Mail.FromName = fromname ' Specify sender's name Mail.AddAddress toadd Mail.Subject = subtxt Mail.Body = bodytxt Mail.ishtml = false On Error Resume Next 'Mail.SendToQueue Mail.Send end sub function checkSQL(inputString) dim resultString resultString = inputString resultString= replace(resultString,"--"," ") resultString= replace(resultString,"=="," ") resultString= replace(resultString,";", " ") resultString= replace(resultString,"'","''") checkSQL = trim(resultString) end function if request.form("submitvalue") = "signed" then dbpath = server.mappath("db/guestbook.mdb") connString="Provider=Microsoft.Jet.OLEDB.4.0;Data Source=" + dbpath set oConn = server.createobject("adodb.connection") oconn.Open connString varname = checksql(request.form("varname")) varEmail = checksql(request.form("varEmail")) varcomment = checksql(request.form("varcomment")) vardate = now() sql = "insert into guestbookTBL(name, email, comment, signdate) values('" & varname & "', '" & varemail & "', '" & varcomment & "', #" & vardate & "#)" oconn.execute(sql) oConn.close set oConn = nothing fromAddress = "siteOperator@henryandjenny.com" fromName = "GuestBook operator" toAddress = "huh28@who.net" subject = "you have a new comment in your guestbook at " & now() bodyText = varname & " left this comment:" & varcomment sendaspemail fromAddress, fromName, toAddress, subject , bodyText response.redirect "guestbook.asp" end if %>