Файл: gamele.ru/includes/locations/faters/tavern.php
Строк: 94
<?php
$build = mysql_fetch_assoc(mysql_query("SELECT * FROM `locations` WHERE `id` = '".$pers['loc']."'"));
$VersJS = 'v1';
echo'<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<HTML>
<HEAD>
<META Http-Equiv="Content-Type" Content="text/html; charset=windows-1251">
<META Http-Equiv="Cache-Control" Content="No-Cache">
<META Http-Equiv="Pragma" Content="No-Cache">
<META Http-Equiv="Expires" Content="0">
<LINK href="/css/frame.css" rel="STYLESHEET" type="text/css">
<LINK href="/css/stl.css" rel="STYLESHEET" type="text/css">
<!--[if lt IE 7]>
<LINK href="/css/iepng.css" rel="STYLESHEET" type="text/css">
<![endif]-->
<SCRIPT src="/js/building_v03.js"></SCRIPT>
<SCRIPT src="/js/ajax.js"></SCRIPT>
<SCRIPT src="/js/signs.js"></SCRIPT>
<SCRIPT src="/js/hpmp.js"></SCRIPT>
<SCRIPT src="/js/t_v01.js"></SCRIPT>
<SCRIPT src="/js/basic.js"></SCRIPT>
<SCRIPT src="/js/taverna_v02.js"></SCRIPT>
<SCRIPT src="/js/items.js"></SCRIPT>
<SCRIPT src="/js/quest.js"></SCRIPT>
<SCRIPT src="/js/nl_tooltip.js"></SCRIPT>
</HEAD>
<BODY>
<SCRIPT language="JavaScript">
var inshp = ['.InsHP().'];
var vcode = [[1,"'.vCode().'"],[1,"'.vCode().'"],[1,"'.vCode().'"]];
var build = ["'.$pers['login'].'","'.$pers['level'].'",'.$pers['sklon'].',"'.$pers['clan_gif'].'","'.$pers['clan'].'","'.$pers['clan_d'].'",'.$build['but'].',"main","'.$build['disbut'].'","'.$build['textid'].'",0,0,""];
var taverna = ['.number_format($pers['nv'], 2, '.', '').',"'.vCode().'"];
view_taverna();
</SCRIPT>
</BODY>
</HTML>';
## new project D , made by china
function sklep($level,$count){
global $pers;
$fid=newbattle(2,$pers['loc'],1,time(),300,10,0,0,0,0,0,0,0,1);
if(!empty($levelmin)){
$Whesr = " AND level>='".$levelmin."' AND level<='".$levelmax."'";
}else{
$Whesr = '';
}
$tmp1 = explode("|",$level);
foreach ($tmp1 as $tmp) {
$e = explode("=",$tmp);
$bot[$i] = mysql_fetch_assoc(mysql_query("SELECT `id`,`hp_all`,`mp_all` FROM `user` WHERE `fight`='0' AND `id`='".$e[1]."'"));
mysql_query("INSERT INTO `fight_users` (`id`,`hp`,`mp`,`battle`) VALUES ('".$bot[$i]['id']."','".$bot[$i]['hp_all']."','".$bot[$i]['mp_all']."','".$fid."');");
}
save_hp_roun($pers);
db_query('UPDATE `user` SET battle='.AP.$fid.AP.',side="1",hp='.AP.$fid.AP.' WHERE login='.AP.$_SESSION['user']['login'].AP.'LIMIT 1;');
mysql_query("INSERT INTO `fight_users` (`id`,`hp`,`mp`,`battle`,`side`) VALUES ('".$pers['id']."','".$pers['hp']."','".$pers['mp']."','".$fid."','1');");
//Start Battle
$log=',[[0,"'.date("H:i").'"],"Бой между "';
$LeftTeam=mysql_query("SELECT `fight_users`.`side`,`fight_users`.`battle`,`user`.`level`,`user`.`sklon`,`user`.`clan_gif`,`user`.`login`,`user`.`invisible` FROM `fight_users`,`user` WHERE `fight_users`.`id` = `user`.`id` AND `fight_users`.`battle`='".$fid."' AND `fight_users`.`side` = '1'");
while ($val = mysql_fetch_assoc($LeftTeam)) {
if($val['side']=='1'){
if($val['invisible']<time()){
$log.=',[1,'.$val['side'].',"'.$val['login'].'",'.$val['level'].','.$val['sklon'].',"'.(($val['clan_gif']!='chaos.gif')?$val['clan_gif']:'').'"],","';
}else{
$log.=',[4,'.$val['side'].'],","';
}
}
}
$log=substr_replace($log, '', -3);
$log .= '" и "';
$RightTeam=mysql_query("SELECT `fight_users`.`side`,`fight_users`.`battle`,`user`.`level`,`user`.`sklon`,`user`.`clan_gif`,`user`.`login`,`user`.`invisible` FROM `fight_users`,`user` WHERE `fight_users`.`id` = `user`.`id` AND `fight_users`.`battle`='".$fid."' AND `fight_users`.`side` = '2'");
while ($val = mysql_fetch_assoc($RightTeam)) {
if($val['side']=='2'){
if($val['invisible']<time()){
$log.=',[1,'.$val['side'].',"'.$val['login'].'",'.$val['level'].','.$val['sklon'].',"'.(($val['clan_gif']!='chaos.gif')?$val['clan_gif']:'').'"],","';
}else{
$log.=',[4,'.$val['side'].'],","';
}
}
}
$log=substr_replace($log, '', -3);
$log.='" начался (нападение на чердаке)."]';
savelog($log,$fid);
db_query('UPDATE arena SET vis="0", t2='.AP.time().AP.' WHERE id_battle ='.AP.$fid.AP.'LIMIT 1;');
mysql_query("UPDATE `fight_users` SET `fight` = '2' WHERE `battle` = '".$fid."'");
db_query('UPDATE user SET fight="2" WHERE `battle`='.AP.$fid.AP);
save_hp_all($fid);
$_SESSION["idf"] = $fid;
}
## Считываем персонажа в инсте.
$prizes = mysql_fetch_array(mysql_query("SELECT `id`,`uid`,`login`,`level`,`time`,`type`,`ohr` FROM `instant` WHERE uid=".$pers["id"]." and type=1 LIMIT 1"));
## Если нет персонажа, добавляем ячеку.
if (!$prizes){
mysql_query("INSERT INTO `instant` (`id`,`uid`,`login`,`level`,`time`,`type`,`ohr`) VALUES (NULL,'".$pers["id"]."','".$pers["login"]."','0','0','1','0')");
echo "<script>location='main.php';</script>";
}
## Если время инстанта обновлено
if ($prizes["time"]>time()){
echo "Следующее посещение возможно: <b>".tp($prizes["time"]-time())."</b>";
}
## Если прошел последний ур.
if ($prizes["level"]>=5){
$time_in = time()+86400;
sql("UPDATE `instant` SET `level`='0',`time`='".$time_in."' WHERE `uid`='".$pers['id']."' and `type`=1");
echo "<script>location='main.php';</script>";
}
## attacked
if(@$_GET['acts'] == 'ok') {
echo "test";
if ($pers["level"]<=4 and $pers["level"]>=10 and $prizes["ohr"] == 0)
$secrets = ' Вход доступен для 5-9 ур.';
elseif ($pers["hp"]<$pers["hp_all"]*0.6)
$secrets = 'Вы слишком слабы, востановитесь.';
elseif ($prizes["time"]>time())
$secrets = 'Вход доступен раз в 6 часов.';
else{
## 6 botov
$bb0 = 'bot=650|bot=660|bot=650|bot=650|bot=660|bot=660|';
## 10 botov
$bb1 = 'bot=650|bot=660|bot=650|bot=650|bot=660|bot=660|bot=660|bot=660|bot=810|bot=810|';
## 12 botov
$bb2 = 'bot=811|bot=661|bot=650|bot=650|bot=660|bot=660|bot=810|bot=661|bot=650|bot=650|bot=810|bot=660|';
## 14 botov
$bb3 = 'bot=651|bot=811|bot=651|bot=650|bot=661|bot=660|bot=811|bot=661|bot=651|bot=650|bot=810|bot=660|bot=661|bot=810|';
$b_rand = rand(1,2);
if ($b_rand == 1) $boss = 'bot=656';
if ($b_rand == 1) $boss = 'bot=656';
switch($prizes['level']){
case 0: sklep($bb0,1); break;
case 1: sklep($bb1,1); break;
case 2: sklep($bb2,1); break;
case 3: sklep($bb3,1); break;
case 5: sklep($boss.'|'.$bb15,1); break;
default: echo'<script>alert('Вход запрещен..');</script>'; break;
}
echo "<script>location='main.php';</script>";
}
}
?>
<script type="text/javascript">
<? if (isset($secrets) && !empty($secrets)): ?>
message_window ('success','','<?=$secrets?>','ok','')
<? endif; ?>
</script>