Resimleri hosta indirmeyen ok.php isteyen arkadaşlar olmuş

<HTML>
<img src="/ok.png"/>
<br />
<h1>Vaybee Video Eklendi  :-)</h1>
<h2><a href="javascript:history.back()"><---Geldigin Sayfaya Git</a></h2>
</HTML>
<?




include_once('videosearch/classes/dbayar.php');
$baglan = mysql_connect($dbhost,$dbkullanici,$dbsifre); 
        mysql_select_db($dbadi,$baglan);
        mysql_query("SET NAMES 'UTF8'");
        mysql_query("SET CHARACTER SET UTF8");
        mysql_query("SET COLLATION_CONNECTION = 'utf8_general_ci'");
        

$siteadresi  = 'Wordpress SiteAdresi Buraya' ;



function tag5($url)
{
    $url = trim($url);
    $url = strtolower($url);
    $find = array('<b>', '</b>');
    $url = str_replace ($find, '', $url);
    $url = preg_replace('/<(\/{0,1})img(.*?)(\/{0,1})\>/', 'image', $url);
    $find = array(' ', '&quot;', '&amp;', '&', '\r\n', '\n', '/', '\\', '+', '<', '>');
    $url = str_replace ($find, '-', $url);
    $find = array('é', 'è', 'ë', 'ê', 'É', 'È', 'Ë', 'Ê');
    $url = str_replace ($find, 'e', $url);
    $find = array('í', 'ý', 'ì', 'î', 'ï', 'I', 'Ý', 'Í', 'Ì', 'Î', 'Ï');
    $url = str_replace ($find, 'i', $url);
    $find = array('ó', 'ö', 'Ö', 'ò', 'ô', 'Ó', 'Ò', 'Ô');
    $url = str_replace ($find, 'o', $url);
    $find = array('á', 'ä', 'â', 'à', 'â', 'Ä', 'Â', 'Á', 'À', 'Â');
    $url = str_replace ($find, 'a', $url);
    $find = array('ú', 'ü', 'Ü', 'ù', 'û', 'Ú', 'Ù', 'Û');
    $url = str_replace ($find, 'u', $url);
    $find = array('ç', 'Ç');
    $url = str_replace ($find, 'c', $url);
    $find = array('þ', 'Þ');
    $url = str_replace ($find, 's', $url);
    $find = array('ð', 'Ð');
    $url = str_replace ($find, 'g', $url);
    $find = array('/[^a-z0-9\-<>]/', '/[\-]+/', '/<[^>]*>/');
    $repl = array('', '-', '');
    $url = preg_replace ($find, $repl, $url);
    $url = str_replace ('--', '-', $url);
    return $url;
}

function permayap($deger) {
$turkce=array("þ","Þ","ý","(",")","'","ü","Ü","ö","Ö","ç","Ç"," ","/","*","?","þ","Þ","ý","ð","Ð","Ý","ö","Ö","Ç","ç","ü","Ü");
$duzgun=array("s","S","i","","","","u","U","o","O","c","C","-","-","-","","s","S","i","g","G","I","o","O","C","c","u","U");
$deger=str_replace($turkce,$duzgun,$deger);
$deger = preg_replace("@[^A-Za-z0-9\-_]+@i","",$deger);
return $deger;
}

$ix = $_POST['ix'];
if($ix == "1")
$title = $_POST['adi'];
$adi1 = $_POST['adi'];
$kategori = $_POST['kategori'];
$aciklama = $_POST['aciklama'];
$url1 = $_POST['resim'];
$kod = $_POST['kod'];
$url = $_POST['adi'];
$sef = tag5($url) ;
$konu = "$kod" ;
$siteadresi1 = '<img src="' ;
$siteadresi2 = ' width="0" height="0" />' ;
$siteadresi3 = '"' ;
$user = $_POST['user'];
$tags = $_POST['tago'];
$a = date("y-m-d");
$filename1 = $_POST['zaman'];
$filename2 = rand(10, 59);
$date_uploaded = $config["date_format"];
$channel = $_POST['channel'];
$sql="select * from wp_posts order by ID DESC LIMIT 1";
              $dogru=mysql_query($sql);
              $post_id=mysql_result($dogru,0,"ID");
			  $post_ids = $post_id+1 ;
			  $guid="$siteadresi/?p=$post_ids";



    $result = mysql_query("Insert Into wp_posts (guid,post_author,post_date,post_date_gmt,post_content,post_title,post_status,comment_status,ping_status,post_name,post_modified,post_modified_gmt,post_type) values ('$guid','$user',Now(),Now(),'$konu$siteadresi1$url1$siteadresi3$siteadresi2','$title','publish','open','open','$sef',Now(),Now(),'post')");
	$results = mysql_query("Insert Into wp_term_relationships (object_id,term_taxonomy_id) values ('$post_ids','$kategori')");
	

$tags = explode(",",$_POST[tago]);
			
			foreach($tags as $key => $etiket)
				{
				$etiket = trim($etiket);
				if(isset($etiket))
					{
					$q_terms = mysql_query("SELECT * FROM wp_terms WHERE name = '".$etiket."'");
					if(mysql_num_rows($q_terms) <= 0)
						{
						$add_term 	= mysql_query("INSERT INTO wp_terms (name,slug) VALUES ('".$etiket."','".$etiket."')");
						if($add_term)
						{		
//echo $etiket." etiketi eklendi...<br />";
							$q_lastterm = mysql_query("SELECT * FROM wp_terms WHERE name = '".$etiket."'");
							$term_id 	= mysql_result($q_lastterm,0,"term_id");
							$term_name 	= mysql_result($q_lastterm,0,"name");
							//echo "<br><br>..".$term_name."..<br><br>";
							$add_tag 	= mysql_query("INSERT INTO wp_term_taxonomy (term_id,taxonomy,count) VALUES ('".$term_id."','post_tag',0)");
							if($add_tag)
								{
								//echo $etiket." etiketi yazıya bağlandı...<br />";
								$q_term_tax = mysql_query("SELECT * FROM wp_term_taxonomy WHERE term_id = '".$term_id."'");
								$term_taxid = mysql_result($q_term_tax,0,"term_taxonomy_id");
								$add_trm_rl	= mysql_query("INSERT INTO wp_term_relationships (object_id,term_taxonomy_id) VALUES ('".$post_ids."','".$term_taxid."')");
								}
							else
								{
								echo $etiket." etiketi yazıya bağlanamadı!!!<br />"; 
								}
							}
						else
							{
							echo $etiket." etiketi eklenemedi!!!<br />";
							}
						}
					else
						{
						$term_id 	= mysql_result($q_terms,0,"term_id");
						$q_term_tax = mysql_query("SELECT * FROM wp_term_taxonomy WHERE term_id = '".$term_id."'");
						$term_taxid = mysql_result($q_term_tax,0,"term_taxonomy_id");
						//echo $etiket." veritabanında bulundu... ";
						$add_cat 	= mysql_query("INSERT INTO wp_term_relationships (object_id,term_taxonomy_id) VALUES ('".$post_ids."','".$term_taxid."')");
						}
					}
				}
?>