Файл: friend.php
Строк: 198
<?php
include("includes/config.php");
ob_start();
header("Cache-Control: no-store, no-cache, must-revalidate");
echo "<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE html PUBLIC "-//WAPFORUM//DTD XHTML Mobile 1.0//EN" "http://www.wapforum.org/DTD/xhtml-mobile10.dtd">
<html xmlns="http://www.w3.org/1999/xhtml"><head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8"/>
<meta http-equiv="Content-Style-Type" content="text/css"/>";
if($diz_id==1){
include("includes/style.php");
}
if($diz_id==2){
include("includes/style1.php");
}
else
{
include("includes/style.php");
}
echo "<title>$PAGE_NAME_TITLE</title>
<link rel="shortcut icon" type="image/ico" href="img/ico.png"/>
</head><body>
<div class="in">
<div class="block">
<img src="img/logo.png" alt="*"/>
</div>";
$dm = is_logged();
if($dm) {
juosta();
}
if($id == "") {
if($dm == true && $useris == $ADMIN) {
echo "<div class="meniu center">
<a href="news.php?id=write">Опубликовать новость</a>
</div>";
}
mysql_select_db("xwar");
$nuskaitoma = mysql_query("SELECT * FROM news");
$viso = mysql_num_rows($nuskaitoma);
$nuskaitymas1 = mysql_query("SELECT * FROM vartotojai WHERE nick='".$useris."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$id_otpr= $stulpeliai1['id'];
$nuskaitoma = mysql_query("SELECT * FROM friends WHERE kto='".$id_otpr."'");
$viso = mysql_num_rows($nuskaitoma);
$nuskaitoma15 = mysql_query("SELECT * FROM friends_z WHERE komu='".$id_otpr."' and assec=1");
$viso1 = mysql_num_rows($nuskaitoma15);
echo "<div class="meniu center">
<b> Друзья</b> </br>
<img src="img/ic.png" alt="*"/> <a href="friend.php?id=now">Мой друзья</a> [$viso]</br>
<img src="img/ic.png" alt="*"/> <a href="friend.php?id=new">Заявки</a> [$viso1] </br>
";
echo "</br>-----------</br><a href="index.php?"><i>В игру</i></a> | <a href="index.php?"><i>главная</i></a></div>";
echo "<div class="block">";
echo "<a href="index.php" class="cc">Главная</a>";
echo "<br/>";
echo "$PAGE_SLOGAN";
echo "</div></div>";
}
elseif($id == "add") {
$k = ereg_replace("[^0-9]","",$_GET['k']);
$nuskaitymas1 = mysql_query("SELECT * FROM vartotojai WHERE nick='".$useris."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$id_otpr= $stulpeliai1['id'];
if($k!=0 and $k!=$id_otpr){
mysql_query("INSERT INTO friends_z (id,kto,komu,assec) VALUES('','$id_otpr','$k','1')");
header("Location: friend.php");
}
else{header("Location: friend.php");}
}
elseif($id == "now") {
$nuskaitymas1 = mysql_query("SELECT * FROM vartotojai WHERE nick='".$useris."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$id_otpr= $stulpeliai1['id'];
$nuskaitoma = mysql_query("SELECT * FROM friends WHERE kto='".$id_otpr."'");
$viso = mysql_num_rows($nuskaitoma);
$nuskaitymas = mysql_query("SELECT * FROM friends ORDER BY id DESC");
echo "$zinute";
if($viso == false) {
echo "<div class="meniu center">
Нет друзей.
</div>";}
else
{$nuskaitymas = mysql_query("SELECT * FROM friends WHERE kto='".$id_otpr."' ORDER BY id DESC");
echo "<div class="meniu">
<b>Мои друзья:</b></br></br>
<ul>";
while($stulpeliai = mysql_fetch_array($nuskaitymas)) {
$kto_us=$stulpeliai['friend'];
$nuskaitymas1 = mysql_query("SELECT * FROM vartotojai WHERE id='".$kto_us."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$nick_fr= $stulpeliai1['nick'];
$nacij= $stulpeliai1['gentis'];
$nuskaitymas13 = mysql_query("SELECT * FROM online WHERE nick='".$nick_fr."'");
$stulpeliai13 = mysql_fetch_array($nuskaitymas13);
$on_or_off= $stulpeliai13['laikas'];
if($on_or_off==false){$onlines= "<img src="img/online.gif" alt="*"/>";}
else{$onlines= "<img src="img/offline.gif" alt="*"/>";}
if($nacij==1){$nacii= "Римлян";} if($nacij==2){$nacii= "Галл";} if($nacij==3){$nacii= "Германец";}
echo "$onlines<b>
<a href="index.php?id=info&k=$kto_us">$nick_fr</a>
</b>($nacii)
<a href="inbox.php?id=write&gavejas=$kto_us"><i>написать</i></a> </br>
</li>";
}
echo "</br>-----------</br><a href="friend.php?"><i>назад</i></a> | <a href="index.php?"><i>главная</i></a>";
}
echo "<div class="block">";
echo "<a href="index.php" class="cc">Главная</a>";
echo "<br/>";
echo "$PAGE_SLOGAN";
echo "</div></div>";
}
elseif($id == "new") {
$nuskaitymas1234 = mysql_query("SELECT * FROM vartotojai WHERE nick='".$useris."'");
$stulpeliai1234 = mysql_fetch_array($nuskaitymas1234);
$id_otpr= $stulpeliai1234['id'];
$nuskaitoma = mysql_query("SELECT * FROM friends_z WHERE komu='".$id_otpr."' and assec=1");
$viso = mysql_num_rows($nuskaitoma);
$nuskaitymas = mysql_query("SELECT * FROM friends ORDER BY id DESC");
if($viso == false) {
echo "<div class="meniu center">
Новых заявок нет.
";
echo "</br>-----------</br><a href="friend.php?"><i>назад</i></a> | <a href="index.php?"><i>главная</i></a></div>";}
else {
$nuskaitymas = mysql_query("SELECT * FROM friends_z WHERE komu='".$id_otpr."' and assec=1 ORDER BY id DESC");
echo "<div class="meniu">
<b>Новые заявки в друзья:</b></br></br>
<ul>";
while($stulpeliai = mysql_fetch_array($nuskaitymas)) {
$kto_us=$stulpeliai['kto'];
$id_fr= $stulpeliai['id'];
$nuskaitymas1 = mysql_query("SELECT * FROM vartotojai WHERE id='".$kto_us."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$nick_fr= $stulpeliai1['nick'];
$nuskaitymas1 = mysql_query("SELECT * FROM friends_z WHERE komu='".$id_otpr."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$id_kto= $stulpeliai1['kto'];
$gag = mysql_query("SELECT * FROM vartotojai WHERE id='".$id_kto."'");
$gag1 = mysql_fetch_array($gag);
$nik_kto= $gag1['nick'];
$yes="<a href="friend.php?id=yes&k=$id_fr"><img src="img/yes.gif" alt="*" title="Принять"/></a>";
$no= "<a href="friend.php?id=no&k=$id_fr"><img src="img/no.gif" alt="*" title="Отказать"/></a>";
echo " [»]<b>
<a href="index.php?id=info&k=$id_kto">$nick_fr</a> </b>
$yes | $no
</br>
</li>";
echo "</br>-----------</br><a href="friend.php?"><i>назад</i></a> | <a href="index.php?"><i>главная</i></a>";
}
}echo "<div class="block">";
echo "<a href="index.php" class="cc">Главная</a>";
echo "<br/>";
echo "$PAGE_SLOGAN";
echo "</div></div>";}
elseif($id == "yes") {
$k = ereg_replace("[^0-9]","",$_GET['k']);
if($k== ''){
header("Location: friend.php");
}
else{
$nuskaitymas1 = mysql_query("SELECT * FROM friends_z WHERE id='".$k."'");
$stulpeliai1 = mysql_fetch_array($nuskaitymas1);
$id_kto= $stulpeliai1['kto'];
$id_friend= $stulpeliai1['komu'];
mysql_query("INSERT INTO friends(id,kto,friend) VALUES('','$id_friend','$id_kto')");
$query = "UPDATE friends_z SET assec='0' WHERE id='".$k."'";
mysql_query ( $query );
header("Location: friend.php?id=now");
}
}
elseif($id == "del") {
$k = ereg_replace("[^0-9]","",$_GET['k']);
if($k == false) {
header("Location: friend.php");
exit();
}
$nuskaitymas1234 = mysql_query("SELECT * FROM vartotojai WHERE nick='".$useris."'");
$stulpeliai1234 = mysql_fetch_array($nuskaitymas1234);
$id_otpr= $stulpeliai1234['id'];
$nuskaitymas10 = mysql_query("SELECT * FROM friends WHERE id='".$k."'");
$stulpeliai10 = mysql_fetch_array($nuskaitymas10);
$id_friend10= $stulpeliai10['kto'];
$id_fr10= $stulpeliai10['friend'];
if($id_friend10==$id_otpr or $id_fr10==$id_otpr)
{
$strSQL = "DELETE FROM friends WHERE id ='".$k."'";
mysql_query($strSQL);
header("Location: friend.php?id=now");
}
else{
header("Location: friend.php");
}
}
mysql_close($connect);
ob_end_flush();
?>
</body></html>