// REQUIRE SUB-ROOT CONNECTION TO DATABASE
require_once('../../subfiles/connection.php');
include('../includes/accessLogger.php');
// ACQUIRE THE INFORMATION FOR THE READY MADE COMPANY THAT IS BEING VIEWED.
if(isset($_GET['id'])){
if(is_numeric($_GET['id'])){
$id = mysql_real_escape_string(stripslashes($_GET['id']));
// AFTER GETTING THE ID OF THE COMPANY, ACQUIRE ALL OF THE INFORMATION FOR IT.
$readysql = mysql_query("SELECT * FROM readymade WHERE id = '$id'");
if(mysql_num_rows($readysql) == 1){
$rassoc = mysql_fetch_assoc($readysql);
// NOW WE MUST ACQUIRE THE VARIABLES THAT WILL BE SHOWN TO THE CUSTOMER.
$state = mysql_real_escape_string(htmlentities($rassoc['state']));
$OriginalName = mysql_real_escape_string(htmlentities($rassoc['OriginalName']));
$OriginalName2 = mysql_real_escape_string(htmlentities($_POST['NameChange']));
$IncMonth = mysql_real_escape_string(htmlentities($rassoc['IncMonth']));
$IncDay = mysql_real_escape_string(htmlentities($rassoc['IncDay']));
$IncYear = mysql_real_escape_string(htmlentities($rassoc['IncYear']));
$stockAmount = mysql_real_escape_string(htmlentities($rassoc['stockAmount']));
$parValue = mysql_real_escape_string(htmlentities($rassoc['parValue']));
$cost = mysql_real_escape_string(htmlentities($rassoc['cost']));
// GET THE CORP TYPE OF THIS READY MADE IN ORDER TO DISPLAY CORRECT FIELDS.
$corptype = mysql_real_escape_string(htmlentities($rassoc['corptype']));
$CompanyTypeSql = mysql_query("SELECT * FROM corpprices WHERE id = '$corptype' AND state = '$state'");
if(mysql_num_rows($CompanyTypeSql) == 1){
$CompTypeA = mysql_fetch_assoc($CompanyTypeSql);
// GET THE VARIABLES FOR THE COMPANY TYPE.
$CType = mysql_real_escape_string(htmlentities($CompTypeA['type']));
$members = mysql_real_escape_string(htmlentities($CompTypeA['members']));
$managers = mysql_real_escape_string(htmlentities($CompTypeA['managers']));
$officers = mysql_real_escape_string(htmlentities($CompTypeA['officers']));
$directors = mysql_real_escape_string(htmlentities($CompTypeA['directors']));
$shareholders = mysql_real_escape_string(htmlentities($CompTypeA['shareholders']));
}
}
}
// START HANDLING THE SUBMITTED FORM
if($_POST['Submit']) {
$secret = "6LcXRCQUAAAAAHRu9j_eO-CKqFBAHcebae6o1rbj"; // SECRET GOOGLE RECAPTCHA KEY
$response = $_POST["g-recaptcha-response"]; // POSTED reCAPTCHA
$verify = file_get_contents("https://www.google.com/recaptcha/api/siteverify?secret={$secret}&response={$response}"); // MAKE CALL
$captcha_success = json_decode($verify); // FORMAT RESULT
if ($captcha_success->success == true) {
if (isset($_POST['referrer'])) {
$referrer = mysql_real_escape_string(stripslashes($_POST['referrer']));
}
// START PERSONAL CONTACT INFO
if (isset($_POST['pfirst'])) {
$pfirst = mysql_real_escape_string(stripslashes($_POST['pfirst']));
}
if (isset($_POST['pmiddle'])) {
$pmiddle = mysql_real_escape_string(stripslashes($_POST['pmiddle']));
}
if (isset($_POST['plast'])) {
$plast = mysql_real_escape_string(stripslashes($_POST['plast']));
}
if (isset($_POST['paddress'])) {
$paddress = mysql_real_escape_string(stripslashes($_POST['paddress']));
}
if (isset($_POST['pcity'])) {
$pcity = mysql_real_escape_string(stripslashes($_POST['pcity']));
}
if (isset($_POST['pstate'])) {
$pstate = mysql_real_escape_string(stripslashes($_POST['pstate']));
}
if (isset($_POST['pzip'])) {
$pzip = mysql_real_escape_string(stripslashes($_POST['pzip']));
}
if (isset($_POST['pcounty'])) {
$pcounty = mysql_real_escape_string(stripslashes($_POST['pcounty']));
}
if (isset($_POST['pnation'])) {
$pnation = mysql_real_escape_string(stripslashes($_POST['pnation']));
}
if (isset($_POST['ptelephone'])) {
$ptelephone = mysql_real_escape_string(stripslashes($_POST['ptelephone']));
}
if (isset($_POST['pfax'])) {
$pfax = mysql_real_escape_string(stripslashes($_POST['pfax']));
}
if (isset($_POST['pcell'])) {
$pcell = mysql_real_escape_string(stripslashes($_POST['pcell']));
}
if (isset($_POST['eaddress'])) {
$eaddress = filter_var($_POST['eaddress'], FILTER_SANITIZE_EMAIL);
if (filter_var($eaddress, FILTER_VALIDATE_EMAIL)) {
$eaddress = mysql_real_escape_string(stripslashes($eaddress));
} else $eaddress = 0;
}
// END PERSONAL CONTACT INFO
// BUSINESS ADDRESS
if ($_POST['addresscheck'] == 1) {
$businessaddress = $paddress;
$businesscity = $pcity;
$businessstate = $pstate;
$businesszip = $pzip;
$businesscounty = $pcounty;
$businessnation = $pnation;
$addresscheck = "Yes";
} else {
$businessaddress = mysql_real_escape_string(stripslashes($_POST['businessaddress']));
$businesscity = mysql_real_escape_string(stripslashes($_POST['businesscity']));
$businessstate = mysql_real_escape_string(stripslashes($_POST['businessstate']));
$businesszip = mysql_real_escape_string(stripslashes($_POST['businesszip']));
$businesscounty = mysql_real_escape_string(stripslashes($_POST['businesscounty']));
$businessnation = mysql_real_escape_string(stripslashes($_POST['businessnation']));
$addresscheck = "";
}
// END BUSINESS ADDRESS
// START OWNERSHIP
// OFFICERS
if (isset($_POST['pre'])) {
$pre = mysql_real_escape_string(stripslashes($_POST['pre']));
}
if (isset($_POST['tre'])) {
$tre = mysql_real_escape_string(stripslashes($_POST['tre']));
}
if (isset($_POST['vp'])) {
$vp = mysql_real_escape_string(stripslashes($_POST['vp']));
}
if (isset($_POST['sec'])) {
$sec = mysql_real_escape_string(stripslashes($_POST['sec']));
}
// DIRECTORS
if (isset($_POST['dir1'])) {
$dir1 = mysql_real_escape_string(stripslashes($_POST['dir1']));
$dir2 = mysql_real_escape_string(stripslashes($_POST['dir2']));
$dir3 = mysql_real_escape_string(stripslashes($_POST['dir3']));
$dir4 = mysql_real_escape_string(stripslashes($_POST['dir4']));
$dir5 = mysql_real_escape_string(stripslashes($_POST['dir5']));
$dir6 = mysql_real_escape_string(stripslashes($_POST['dir6']));
}
// SHAREHOLDERS
if (isset($_POST['sh1']) || isset($_POST['dir1'])) {
$sh1 = mysql_real_escape_string(stripslashes($_POST['sh1']));
$sh2 = mysql_real_escape_string(stripslashes($_POST['sh2']));
$sh3 = mysql_real_escape_string(stripslashes($_POST['sh3']));
$sh4 = mysql_real_escape_string(stripslashes($_POST['sh4']));
//PERCENT
$sh1percent = mysql_real_escape_string(stripslashes($_POST['sh1percent']));
$sh2percent = mysql_real_escape_string(stripslashes($_POST['sh2percent']));
$sh3percent = mysql_real_escape_string(stripslashes($_POST['sh3percent']));
$sh4percent = mysql_real_escape_string(stripslashes($_POST['sh4percent']));
}
// MORE INFORMATION ABOUT THE COMPANY.
if (isset($_POST['moreinfo'])) {
$moreinfo = mysql_real_escape_string(stripslashes($_POST['moreinfo']));
}
// GET THE SHIPPING SERVICE THAT HAS BEEN SELECTED.
$shippingservices = mysql_query("SELECT * FROM shippinginformation");
while ($shippingservices2 = mysql_fetch_assoc($shippingservices)) {
if (isset($_POST[$shippingservices2['cvsname']])) {
if (preg_match('/\`|\~|\!|\#|\%|\^|\&|\*|\=|\+|\{|\}|\||\[|\]|\\|\;|\'|\:|\"|\/|\<|\>|\?/', $_POST[$shippingservices2['cvsname']]) == 0) {
$shippingservicearray[$shippingservices2['cvsname']] = mysql_real_escape_string(htmlentities($_POST[$shippingservices2['cvsname']])); //Can be modified to a better status by removing the post variable
}
$shippingtempservice = "$" . $shippingservices2['cvsprice'] . " " . $shippingservicearray[$shippingservices2['cvsname']];
$shippingserviceuse = mysql_query("INSERT INTO dotorders (readyid, compname, serviceid, clientname) VALUES ('$id', '$OriginalName', '$shippingtempservice', '$pfirst')");
}
}
// GET THE SHIPPING ADDRESS
if (isset($_POST['shippingaddress'])) {
$shippingaddress = mysql_real_escape_string(stripslashes($_POST['shippingaddress']));
}
// INSERT THE NAME CHANGE TO THE DOT ORDERS DATABASE IF THE NAME WAS CHANGED.
if ($_POST['NAME'] == "$65.00 Company Name Change") {
$nameservice = mysql_real_escape_string(stripslashes($_POST['NAME']));
$insertservice = mysql_query("INSERT INTO dotorders (readyid, compname, serviceid, clientname) VALUES ('$id', '$OriginalName', '$nameservice', '$pfirst')");
}
//PROCESS CREDIT CARD INFORMATION
$ct = mysql_real_escape_string($_POST['ct']);
$cname = mysql_real_escape_string($_POST['cname']);
$cbstreet = mysql_real_escape_string($_POST['cbstreet']);
$ccsz = mysql_real_escape_string($_POST['ccsz']);
$exp = mysql_real_escape_string($_POST['exp']);
$cvv = mysql_real_escape_string($_POST['cvv']);
if (is_numeric($_POST['nonc2'])) $nonc2az4 = mysql_real_escape_string(stripslashes($_POST['nonc2']));
if (is_numeric($_POST['nonc4'])) $nonc4az4 = mysql_real_escape_string(stripslashes($_POST['nonc4']));
if (is_numeric($_POST['nonc7'])) $nonc7az4 = mysql_real_escape_string(stripslashes($_POST['nonc7']));
if (is_numeric($_POST['nonc9'])) $nonc9az4 = mysql_real_escape_string(stripslashes($_POST['nonc9']));
// CONCACT AND ENCRYPT THE CARD NUMBER.
$cconcact = $nonc2az4 . "-" . strrev($nonc7az4) . "-" . $nonc4az4 . "-" . $nonc9az4;
$cconcact = base64_encode($cconcact);
$cconcact = base64_encode($cconcact);
// GRAND TOTAL
$GrandTotal = mysql_real_escape_string($_POST['GrandTotal']);
//BEGIN INSERTING INTO FP QUESTIONAIRE.
$insertSql = mysql_query("
INSERT INTO fpquestionnaire (state, readymade, readyid, type, silreferrer, clfirst, clmiddle, cllast, claddress, clcity, clstate, clzip, clcounty, clphone, clfax, clemail, silnameofcomp, silsecondname, silcompaddress, silcompcity, silcompstate, silcompzipcode, silcounty, silpresident, silvicepresident, siltreasurer, silsecretary, sildirector1, sildirector2, sildirector3, sildirector4, sildirector5, sildirector6, silshare1, silshare1percent, silshare2, silshare2percent, silshare3, silshare3percent, silshare4, silshare4percent, extrainfo, silcardtype, silnameoncard, silcardnumber, silcardexpiration, silcvv, siltotal, new, cardad, cardcsz, dateordered, silsameaddress, silnation, shippingaddress)
VALUES ('$state', 1, '$id', '$CType', '$referrer', '$pfirst', '$pmiddle', '$plast', '$paddress', '$pcity', '$pstate', '$pzip', '$pcounty', '$ptelephone', '$pfax', '$eaddress', '$OriginalName', '$OriginalName2', '$businessaddress', '$businesscity', '$businessstate', '$businesszip', '$businesscounty', '$pre', '$vp', '$tre', '$sec', '$dir1', '$dir2', '$dir3', '$dir4', '$dir5', '$dir6', '$sh1', '$sh1percent', '$sh2', '$sh2percent', '$sh3', '$sh3percent', '$sh4', '$sh4percent', '$moreinfo', '$ct', '$cname', '$cconcact', '$exp', '$cvv', '$GrandTotal', 1, '$cbstreet', '$ccsz', NOW(), '$addresscheck', '$businessnation', '$shippingaddress')
");
//UPDATE COMPANY TO SOLD
$updatesold = mysql_query("UPDATE readymade SET sold = 1 WHERE id = '$id'");
// EMAIL CLIENT AND SITE OWNER STATING THAT IT HAS BEEN ACCEPTED.
if ($insertSql) {
//GOOD EMAIL - SEND CONFIRMATION AND LINK
$message = "A READY MADE $statestate COMPANY ORDER HAS BEEN RECEIVED $OriginalName -- Total cost for company is $GrandTotal.
$pfirst $pmiddle $plast.
CLICK HERE to see the new order.
You may contact this customer at: $eaddress";
$headers = 'MIME-Version: 1.0' . "\r\n";
$headers .= 'Content-type: text/html; charset=iso-8859-1' . "\r\n";
$headers .= 'From: ns@nickspradlin.com' . "\r\n";
$headers .= 'Reply-To: ns@nickspradlin.com' . "\r\n";
$headers .= 'X-Mailer: PHP/' . phpversion();
$cmessage = "
Thank you for your order. |
---|
This is an automated e-mail to confirm your order with The Law Offices of Nick Spradlin, PLLC . An attorney will be giving you a call shortly in regards to your ready made company. |
Click here to return to our main page | |||
Thank you. Your order has been securely submitted. |
|||
Please print or save this page for your records. If you submitted an e-mail address on the order form, you will receive a confirmation e-mail. An attorney will be calling you shortly to confirm the information on this form. If you notice any information is incorrect, you can correct it once this call is made. Your credit card will not be charged until after the attorney has given you a call. |
|||
FLORIDA COMPANY | |||
Referred by : | echo htmlentities($referrer); ?> | ||
CONTACT INFORMATION | |||
Full Name | echo htmlentities(stripslashes($pfirst)) . " " . htmlentities(stripslashes($pmiddle)) . " " . htmlentities(stripslashes($plast)); ?> | ||
Home Address | echo htmlentities(stripslashes($paddress)); ?> | ||
City | echo htmlentities(stripslashes($pcity)); ?> | ||
State | echo htmlentities(stripslashes($pstate)); ?> | ||
Zip | echo htmlentities(stripslashes($pzip)); ?> | ||
County | echo htmlentities(stripslashes($pcounty)); ?> | ||
Phone Number | echo htmlentities(stripslashes($ptelephone)); ?> | ||
Fax Number | echo htmlentities(stripslashes($pfax)); ?> | ||
echo htmlentities(stripslashes($eaddress)); ?> | |||
COMPANY INFORMATION | |||
Company Name | echo htmlentities(stripslashes($OriginalName)); ?> | ||
Name Changed to: | echo htmlentities(stripslashes($OriginalName2)); ?> | ||
COMPANY ADDRESS | |||
Same as personal | echo htmlentities($addresscheck); ?> | ||
Address | echo htmlentities(stripslashes($businessaddress)); ?> | ||
City | echo htmlentities(stripslashes($businesscity)); ?> | ||
State | echo htmlentities(stripslashes($businessstate)); ?> | ||
Zip | echo htmlentities(stripslashes($businesszip)); ?> | ||
County | echo htmlentities(stripslashes($businesscounty)); ?> | ||
OFFICERS | |||
President | echo htmlentities(stripslashes($pre)); ?> | ||
Vice President | echo htmlentities(stripslashes($vp)); ?> | ||
Secretary | echo htmlentities(stripslashes($sec)); ?> | ||
Treasurer | echo htmlentities(stripslashes($tre)); ?> | ||
MANAGERS | |||
Chief Executive Officer | echo htmlentities(stripslashes($pre)); ?> | ||
Vice Operating Manager | echo htmlentities(stripslashes($vp)); ?> | ||
Secretary | echo htmlentities(stripslashes($sec)); ?> | ||
Treasurer | echo htmlentities(stripslashes($tre)); ?> | ||
DIRECTORS | |||
Director 1 | echo htmlentities(stripslashes($dir1)); ?> | ||
Director 2 | echo htmlentities(stripslashes($dir2)); ?> | ||
Director 3 | echo htmlentities(stripslashes($dir3)); ?> | ||
Director 4 | echo htmlentities(stripslashes($dir4)); ?> | ||
Director 5 | echo htmlentities(stripslashes($dir5)); ?> | ||
Director 6 | echo htmlentities(stripslashes($dir6)); ?> | ||
MEMBERS | |||
Member 1 | echo htmlentities(stripslashes($dir1)); ?> | Capital | echo htmlentities(stripslashes($sh1percent)); ?> |
Member 2 | echo htmlentities(stripslashes($dir2)); ?> | Capital | echo htmlentities(stripslashes($sh2percent)); ?> |
Member 3 | echo htmlentities(stripslashes($dir3)); ?> | Capital | echo htmlentities(stripslashes($sh3percent)); ?> |
Member 4 | echo htmlentities(stripslashes($dir4)); ?> | Capital | echo htmlentities(stripslashes($sh4percent)); ?> |
NON PROFIT MEMBERS | |||
Member 1 | echo htmlentities(stripslashes($member1)); ?> | ||
Member 2 | echo htmlentities(stripslashes($member2)); ?> | ||
Member 3 | echo htmlentities(stripslashes($member3)); ?> | ||
Member 4 | echo htmlentities(stripslashes($member4)); ?> | ||
Member 5 | echo htmlentities(stripslashes($member5)); ?> | ||
Member 6 | echo htmlentities(stripslashes($member6)); ?> | ||
SHAREHOLDERS | |||
Shareholder 1 | echo htmlentities(stripslashes($sh1)); ?> | Percent | echo htmlentities(stripslashes($sh1percent)); ?> |
Shareholder 2 | echo htmlentities(stripslashes($sh2)); ?> | Percent | echo htmlentities(stripslashes($sh2percent)); ?> |
Shareholder 3 | echo htmlentities(stripslashes($sh3)); ?> | Percent | echo htmlentities(stripslashes($sh3percent)); ?> |
Shareholder 4 | echo htmlentities(stripslashes($sh4)); ?> | Percent | echo htmlentities(stripslashes($sh4percent)); ?> |
ADDITIONAL INFORMATION | |||
echo htmlentities(stripslashes($moreinfo)); ?> | |||
SHIPPING ADDRESS | |||
echo htmlentities(stripslashes($shippingaddress)); ?> | |||
ADDITIONAL SERVICES | |||
$selectservice = mysql_query("SELECT * FROM dotorders WHERE readyid = '$id'");
if($selectservice){
while($ss = mysql_fetch_assoc($selectservice)){
echo htmlentities($ss['serviceid']) . " "; } } else { echo "You did not select any services for your company."; } ?> |
|||
Total | echo htmlentities($GrandTotal); ?> | ||
Click here to return to our main page |
Your order has not been submitted. | |||
Please confirm you are not a robot at the bottom of the order form. |
|||
We know you're human, but our order form does not. Please hit back on your browser to return to the order form. At the bottom of the order form you will find a checkbox stating "I am not a robot". Click this checkbox to tell our form you are human. Simple as that! Your credit card will not be charged. |