Просмотр файла ilichat/addtofr.php

Размер файла: 5.13Kb
<?php
//POWERED by ILI
// ICQ : 197042
//site: ili.wab.ru
// ilichat v4.0
error_reporting(7);
require_once"./includes/functions/gzip.php";
include('start.php');
include("config.php");
include("./includes/".$ver."/banned");

list($msec, $sec) = explode(chr(32), microtime()); 
$headtime = $sec + $msec;

$ref = rand(1000, 9999);

switch($ver)
{
////////////////////////////////////////////////////////
//WML VERSION
////////////////////////////////////////////////////////
case 'wml':
header("Content-type: text/vnd.wap.wml; charset=utf-8");
header("Last-Modified: ".gmdate("D, d M Y H:i:s")." GMT");
header("Cache-Control: no-cache, must-revalidate");

//AUTH
$id = intval($_SESSION['id']);
$password = mysql_escape_string($_SESSION['password']);
$q = mysql_query("SELECT `friends` FROM `chat_users` WHERE `id` = '".$id."' AND `password` = '".md5($password)."';");
if(mysql_num_rows($q) == 0)
{
echo "<?xml version=\"1.0\" encoding=\"UTF-8\"?>\n";
echo "<!DOCTYPE wml PUBLIC \"-//WAPFORUM//DTD WML 1.3//EN\" \"http://www.wapforum.org/DTD/wml13.dtd\"><wml>\n";
echo "<card title=\"ERROR\" ontimer=\"index.php?ver=wml\"><timer value=\"15\"/><p align=\"left\">\n";
echo "<small>Ошибка авторизации!<br/>\n";
list($msec, $sec) = explode(chr(32), microtime());
echo "<br/>[".round(($sec+$msec)-$headtime,5)."] sec<br/>\n";
echo "</small>";
require_once "includes/functions/gzip_foot.php";
echo "</p></card></wml>";
ob_end_flush();
exit();
}
//END AUTH

//ONLINE
$online = time() + 60;
$update = mysql_query("UPDATE `chat_users` SET `time` = '".$online."', `place` = 0, `ip` = '".getenv('REMOTE_ADDR')."', `ua` = '".htmlspecialchars(getenv('HTTP_USER_AGENT'))."' WHERE `id` = '".$id."';");
//END ONLINE
$select = @mysql_query ('Select `nickname` from `chat_users` where id=\''.intval($_GET['nk']).'\'');
if (mysql_affected_rows() == 0) {
echo '<?xml version="1.0" encoding="UTF-8"?>';
echo '<!DOCTYPE wml PUBLIC "-//WAPFORUM//DTD WML 1.3//EN" "http://www.wapforum.org/DTD/wml13.dtd"><wml>';
echo '<card title="ERROR" ontimer="room.php?'.SID.'&amp;rid='.$_GET['rid'].'&amp;ver=wml"><timer value="15"/><p align="left">';
echo 'Нет такого юзера';
list($msec, $sec) = explode(chr(32), microtime());
echo "<br/><small>[".round(($sec+$msec)-$headtime,5)."] sec</small><br/>\n";
require_once "includes/functions/gzip_foot.php";
echo "</p></card></wml>";
exit;
}
$addus = intval($_GET['nk']);//id druga
$fr = mysql_result($q, 0);//Tvoi druz'ya
if (strpos($fr,$addus.'|')===false){
$fr = $fr.$addus.'|';          
mysql_query ('UPDATE chat_users SET friends = \''.$fr.'\' WHERE id = \''.$id.'\'');
 }

$nkd = mysql_result($select, 0);
echo '<?xml version="1.0" encoding="UTF-8"?>';
echo '<!DOCTYPE wml PUBLIC "-//WAPFORUM//DTD WML 1.2//EN" "http://www.wapforum.org/DTD/wml12.dtd">';
echo '<wml>';
echo '<head><meta http-equiv="Cache-Control" content="no-cache" forua="true"/></head>';
echo '<card id="addtofr" title="Ok" ontimer="room.php?'.SID.'&amp;rid='.intval($_GET['rid']).'"><timer value="10"/>';
echo '<p>'.$nkd.' добавлен в список Ваших друзей';
echo "<br/><a href=\"my.php?".SID."&amp;ver=wml\">Личный Кабинет</a>\n";

list($msec, $sec) = explode(chr(32), microtime());
echo "<br/><small>[".round(($sec+$msec)-$headtime,5)."] sec</small><br/>\n";
require_once "includes/functions/gzip_foot.php";
echo "</p></card></wml>";
ob_end_flush();
break;

////////////////////////////////////////////////////////
//HTML VERSION
////////////////////////////////////////////////////////
case 'html':
$my_title = "Игнор";
if(!isset($_COOKIE['theme'])) $_COOKIE['theme'] = 1;
include_once "themes/".intval($_COOKIE['theme'])."/index.php";

//AUTH
$id = intval($_SESSION['id']);
$password = mysql_escape_string($_SESSION['password']);
$q = mysql_query("SELECT `friends` FROM `chat_users` WHERE `id` = '".$id."' AND `password` = '".md5($password)."';");
if(mysql_num_rows($q) == 0)
{
echo "Ошибка авторизации!<br/>\n";
include_once "themes/".intval($_COOKIE['theme'])."/foot.php";
exit();
}
//END AUTH


//ONLINE
$online = time() + 60;
$update = mysql_query("UPDATE `chat_users` SET `time` = '".$online."', `place` = 0, `ip` = '".getenv('REMOTE_ADDR')."', `ua` = '".htmlspecialchars(getenv('HTTP_USER_AGENT'))."' WHERE `id` = '".$id."';");
//END ONLINE

$select = @mysql_query ('Select `nickname` from `chat_users` where id=\''.intval($_GET['nk']).'\'');
if (mysql_affected_rows() == 0) {
echo 'Нет такого юзера';
include_once "themes/".intval($_COOKIE['theme'])."/foot.php";
exit();
}

$addus = intval($_GET['nk']);//id druga
$fr = mysql_result($q, 0);//Tvoi druz'ya
if (strpos($fr,$addus.'|')===false){
$fr = $fr.$addus.'|';          
mysql_query ('UPDATE chat_users SET friends = \''.$fr.'\' WHERE id = \''.$id.'\'');
 }

$nkd = mysql_result($select, 0);
echo $nkd.' добавлен в список Ваших друзей';
echo '<br/><a href="room.php?'.SID.'&amp;rid='.intval($_GET['rid']).'&amp;ver=html">В чат<a/>';
echo "<br/><a href=\"my.php?".SID."&amp;ver=html\">Личный Кабинет</a>\n";
echo "<br/><a href=\"menu.php?".SID."&amp;ver=html\">Меню чата</a><br/>";
include_once "themes/".intval($_COOKIE['theme'])."/foot.php";
break;
}
?>