$user = mysql_query("SELECT * FROM `users` WHERE `login`='".mysql_real_escape_string(nl2br(htmlspecialchars(trim($_COOKIE['login']))))."' AND `password`='".mysql_real_escape_string(nl2br(htmlspecialchars(trim($_COOKIE['password']))))."'"); >>> $user = mysql_query("SELECT * FROM `users` WHERE `login`='".mysql_real_escape_string($_COOKIE['login'])."' AND `password`='".mysql_real_escape_string($_COOKIE['password'])."'");