$last_name_start = preg_replace( '/\W/', '', $_REQUEST[ 'last_name_start' ] ); // Better, it removes non numbers
$username = "artist_db";
$password = "deco_wars";
$database = "illustrationcom";
$server = "216.117.144.36";
mysql_connect( $server, $username, $password );
@mysql_select_db( $database ) or die( "Unable to select database" );
$query = "SELECT art_info.artist_id, art_info.first_name, art_info.last_name, art_info.email, art_info.bio, art_info.website_url, art_info.phone_number, art_info.company, art_info.street, art_info.city, art_info.state, art_info.zip, art_info.country, art_info.rate, art_im.image_url FROM artist_personal_info AS art_info LEFT JOIN artist_images AS art_im ON art_info.artist_id = art_im.artist_id AND art_im.image_type = 'Account' WHERE art_info.rate IS NOT null ORDER BY art_info.last_name;";
if ( $last_name_start )
{
$query = "SELECT art_info.artist_id, art_info.first_name, art_info.last_name, art_info.email, art_info.bio, art_info.website_url, art_info.phone_number, art_info.company, art_info.street, art_info.city, art_info.state, art_info.zip, art_info.country, art_info.rate, art_im.image_url FROM artist_personal_info AS art_info LEFT JOIN artist_images AS art_im ON art_info.artist_id = art_im.artist_id AND art_im.image_type = 'Account' WHERE art_info.rate IS NOT null AND art_info.last_name LIKE '$last_name_start%' ORDER BY art_info.last_name;";
}
$result=mysql_query( $query );
mysql_close();
for ($j = 0; $j