View file ignor.php

File size: 3.87Kb
<?php
error_reporting(0);

include("config.php");
include("./includes/".$ver."/banned");
$urls='ignor.php';
list($msec, $sec) = explode(chr(32), microtime()); 
$headtime = $sec + $msec;

$ref = rand(1000, 9999);

header("Content-type: text/html; charset=utf-8");
header("Last-Modified: ".gmdate("D, d M Y H:i:s")." GMT");
header("Cache-Control: no-cache, must-relative");
include("./template/head.php");
//AUTH
$q = mysql_query("SELECT `level` FROM `chat_users` WHERE `id` = '".$id."' AND `password` = '".$password."';");
if(mysql_num_rows($q) == 0)
{
include("./reginc.php");
include("./template/foot.php");
exit();
}
//END AUTH

$level = mysql_result($q, 0);

//ONLINE
$online = time() + 60;
$update = mysql_query("UPDATE `chat_users` SET `time` = '".$online."', `place` = 0, `ip` = '".getenv('REMOTE_ADDR')."', `ua` = '".htmlspecialchars(getenv('HTTP_USER_AGENT'))."' WHERE `id` = '".$id."';");
//END ONLINE


if(isset($_GET['mod']))
{
$mod = $_GET['mod'];
}
else
{
$mod = "";
}

switch($mod)
{
case 'add':
if(!isset($_POST['action']) && !isset($_GET['uid']))
{
echo "<div class=\"form\">\n";
echo "<form action=\"ignor.php?nocache=$nocache&amp;mod=add\" method=\"post\">\n";
echo "Никнейм:<br/>\n";
echo "<input type=\"text\" name=\"nick\" maxlength=\"15\" /><br/>\n";
echo "Транслитировать:\n";
echo "<input type=\"checkbox\" name=\"translit\" value=\"yes\" /><br/>\n";
echo "<input type=\"hidden\" name=\"action\" value=\"add\" />\n";
echo "<input type=\"submit\" value=\"Добавить\" /></form></div>\n";
}
else
{
	if(isset($_POST['nick']))
	{
	$sql = mysql_query("SELECT `id` FROM `chat_users` WHERE `nickname` = '".mysql_escape_string($_POST['nick'])."';");
	}
	else
	{
	$uid = intval($_GET['uid']);
	$sql = mysql_query("SELECT `nickname` FROM `chat_users` WHERE `id` = '".$uid."';");
	}

	if(mysql_num_rows($sql) == 0)
	{
	echo "Пользователь не найден в базе данных.<br/>\n";
	break;
	}

	if(isset($_POST['nick']))
	{
	$nick = $_POST['nick'];
	$uid = mysql_result($sql, 0);
	}
	else
	{
	$nick = mysql_result($sql, 0);
	}

$sql = mysql_query("SELECT * FROM `chat_ignor` WHERE `uid` = '".$uid."' AND `id` = '".$id."';");
	
	if(mysql_affected_rows() != 0)
	{
	echo "Этот пользователь уже занесен в игнор-лист!<br/>\n";
	break;
	}

mysql_query("INSERT INTO `chat_ignor` VALUES('".$id."', '".$uid."');");
echo "$nick успешно добавлен в игнор-лист!<br/>\n";
}
break;

case 'del':
$uid = intval($_GET['uid']);
mysql_query("DELETE FROM `chat_ignor` WHERE `uid` = '".$uid."' AND `id` = '".$id."';");
	if(mysql_affected_rows() == 0)
	{
	echo "Пользователь не найден в игнор-листе!<br/>\n";
	}
	else
	{
	echo "Пользователь успешно удален из Вашего игнор-листа!<br/>\n";	
	}
break;

case 'clear':
mysql_query("DELETE FROM `chat_ignor` WHERE `id` = '".$id."';");
	if(mysql_affected_rows() == 0)
	{
	echo "Не найдено ни одного ника для удаления из игнор-листа.<br/>\n";
	}
	else
	{
	echo "Ваш игнор-лист успешно очищен!<br/>\n";	
	}
break;

default:
$sql = mysql_query("SELECT `uid` FROM `chat_ignor` WHERE `id` = '".$id."';");

	if(mysql_num_rows($sql) == 0)
	{
	echo "Игнор-лист пуст.<br/>\n";
	}

$c = 0;
while($ignor = mysql_fetch_array($sql))
{
$c++;
$q = mysql_query("SELECT `nickname` FROM `chat_users` WHERE `id` = '".$ignor['uid']."';");
echo $c." ".mysql_result($q, 0)." <a href=\"ignor.php?mod=del&amp;uid=".$ignor['uid']."\">X</a><br/>";
}
if($c != 0) echo "<a href=\"ignor.php?mod=clear\">[Очистить]</a><br/>\n";
echo "<a href=\"ignor.php?mod=add\">[Добавить]</a><br/>\n";
break;
}

if(!empty($mod)) echo "<a href=\"ignor.php\">Игнор-лист</a><br/>\n";
echo "<br/><a href=\"index.php\">Меню чата</a><br/>";
include("./template/foot.php");
break;
?>