Файл: vxas.ru/chat/index.php
Строк: 134
<?
include_once '../sys/inc/start.php';
include_once '../sys/inc/compress.php';
include_once '../sys/inc/sess.php';
include_once '../sys/inc/home.php';
include_once '../sys/inc/settings.php';
include_once '../sys/inc/db_connect.php';
include_once '../sys/inc/ipua.php';
include_once '../sys/inc/fnc.php';
include_once '../sys/inc/user.php';
#########
$timeclear=mysql_real_escape_string(time()-10800);
$q=mysql_query("SELECT * FROM `chat_post` WHERE `time` < '".mysql_real_escape_string($timeclear)."'",$db);
while ($post=mysql_fetch_assoc($q))
{
mysql_query("DELETE FROM `chat_post` WHERE `id` = '".intval($post['id'])."' LIMIT 1");
}
########
if (isset($user))mysql_query("DELETE FROM `chat_who` WHERE `id_user` = '".mysql_real_escape_string($user[id])."'");
mysql_query("DELETE FROM `chat_who` WHERE `time` < '".mysql_real_escape_string($time-120)."'");
if (isset($user) && isset($_GET['id']) && mysql_result(mysql_query("SELECT COUNT(*) FROM `chat_rooms` WHERE `id` = '".intval($_GET['id'])."'"),0)==1
&& isset($_GET['msg']) && mysql_result(mysql_query("SELECT COUNT(*) FROM `user` WHERE `id` = '".intval($_GET['msg'])."'"),0)==1)
{
$room=mysql_fetch_assoc(mysql_query("SELECT * FROM `chat_rooms` WHERE `id` = '".intval($_GET['id'])."' LIMIT 1"));
$ank=mysql_fetch_assoc(mysql_query("SELECT * FROM `user` WHERE `id` = '".intval($_GET['msg'])."' LIMIT 1"));
if (isset($user))mysql_query("INSERT INTO `chat_who` (`id_user`, `time`, `room`) values('".mysql_real_escape_string($user[id])."', '".mysql_real_escape_string($time)."', '".mysql_real_escape_string($room[id])."')");
if ($set['time_chat']!=0)header("Refresh: $set[time_chat]; url=/chat/room/$room[id]/".rand(1000,9999).'/'); // автообновление
$set['title']='Чат - '.htmlspecialchars($room['name']).' ('.mysql_result(mysql_query("SELECT COUNT(*) FROM `chat_who` WHERE `room` = '".mysql_real_escape_string($room[id])."'"),0).')'; // заголовок страницы
include_once '../sys/inc/thead.php';
title();
echo "<div class='fyt'><a href='/info.php?id=$ank[id]'>Посмотреть анкету</a></div>n";
echo "<form method="post" action="/chat/room/$room[id]/".rand(1000,9999)."/">n";
echo "Сообщение:<br />n<textarea name="msg">$ank[nick], </textarea><br />n";
echo "<label><input type="checkbox" name="privat" value="$ank[id]" /> Приватно</label><br />n";
if ($user['set_translit']==1)echo "<label><input type="checkbox" name="translit" value="1" /> Транслит</label><br />n";
echo "<input value="Отправить" type="submit" />n";
echo "</form>n";
echo "<div class='fyt'>n";
echo "«<a href="/chat/room/$room[id]/".rand(1000,9999)."/">В комнату</a><br />n";
echo "«<a href="/chat/">Прихожая</a><br />n";
echo "</div>n";
include_once '../sys/inc/tfoot.php';
}
if (isset($_GET['id']) && mysql_result(mysql_query("SELECT COUNT(*) FROM `chat_rooms` WHERE `id` = '".intval($_GET['id'])."'"),0)==1)
{
$room=mysql_fetch_assoc(mysql_query("SELECT * FROM `chat_rooms` WHERE `id` = '".intval($_GET['id'])."' LIMIT 1"));
if (isset($user))mysql_query("INSERT INTO `chat_who` (`id_user`, `time`, `room`) values('".mysql_real_escape_string($user[id])."', '".mysql_real_escape_string($time)."', '".mysql_real_escape_string($room[id])."')");
if ($set['time_chat']!=0)header("Refresh: $set[time_chat]; url=/chat/room/$room[id]/".rand(1000,9999).'/'); // автообновление
$set['title']='Чат - '.htmlspecialchars($room['name']).' ('.mysql_result(mysql_query("SELECT COUNT(*) FROM `chat_who` WHERE `room` = '".mysql_real_escape_string($room[id])."'"),0).')'; // заголовок страницы
include_once '../sys/inc/thead.php';
title();
require 'inc/room.php';
echo "<div class='fyt'>n";
echo "«<a href='/chat/'>Прихожая</a><br />n";
echo "</div>n";
require '../sys/inc/tfoot.php';
}
$set['title']='Чат - прихожая'; // заголовок страницы
include_once '../sys/inc/thead.php';
title();
require 'inc/admin_act.php';
err();
######
echo "<div class='new_enk'><img src='/style/images/ret.png' alt='enk'> <a href='iq.php'>Рейтинг умников</a></div>";
echo "<div class='new_enk'><img src='/style/images/pt.png' alt='enk'> <a href='who.php'>Кто в чате?</a></div>";
######
$q=mysql_query("SELECT * FROM `chat_rooms` ORDER BY `pos` ASC");
if (mysql_num_rows($q)==0){
?>
<div class='noy'>Нет комнат</div>
<?
}
while ($room = mysql_fetch_assoc($q))
{
if($num==1){
echo "<div class='enk_div'>n";
$num=0;
}else{
echo "<div class='enk2_div'>n";
$num=1;}
echo "<img src='/style/chat/$room[id].gif' alt='enk' /> ";
echo "<a href='/chat/room/$room[id]/".rand(1000,9999)."/'>$room[name] (".mysql_result(mysql_query("SELECT COUNT(*) FROM `chat_who` WHERE `room` = '".mysql_real_escape_string($room[id])."'"),0).")</a>n";
if ($room['opis']!=NULL)echo esc(trim(br(bbcode(smiles(links(stripcslashes(htmlspecialchars($room['opis']))))))))."n";
if (user_access('chat_room'))echo "[<a href='?set=$room[id]'>П</a>]<br />n";
echo "</div>n";
}
require 'inc/admin_form.php';
include_once '../sys/inc/tfoot.php';
?>