[php] what does mysql_real_escape_string() really do?