Файл: test.masteram.us/chat/inc/room.php
Строк: 102
<?
if (isset($_POST['msg']) && isset($user))
{
$msg=$_POST['msg'];
if (isset($_POST['translit']) && $_POST['translit']==1)$msg=translit($msg);
if (strlen2($msg)>512){$err='Сообщение слишком длинное';}
elseif (strlen2($msg)<2){$err='Короткое сообщение';}
elseif (mysql_result(mysql_query("SELECT COUNT(*) FROM `chat_post` WHERE `id_user` = '$user[id]' AND `msg` = '".mysql_escape_string($msg)."' AND `time` > '".($time-300)."' LIMIT 1"),0)!=0){$err='Ваше сообщение повторяет предыдущее';}
else{
$msg=mysql_escape_string($msg);
if(isset($_POST['privat']))
{
$priv=abs(intval($_POST['privat']));
}else{
$priv=0;
}
mysql_query("INSERT INTO `chat_post` (`id_user`, `time`, `msg`, `room`, `privat`) values('$user[id]', '$time', '$msg', '$room[id]', '$priv')");
mysql_query("UPDATE `user` SET `lafes` = '".($user['lafes']+1)."' WHERE `id` = '$user[id]' LIMIT 1");
mysql_query("UPDATE `user` SET `balls` = '".($user['balls']+3)."', `akt_rating` = '".($user['akt_rating']+0.0005)."' WHERE `id` = '$user[id]' LIMIT 1");
msg('Сообщение в эфире + 3 монеты');
}
}
if ($room['umnik']=='1')include 'inc/umnik.php';
if ($room['shutnik']=='1')include 'inc/shutnik.php';
if ($room['anagrama']=='1')include 'inc/anagrama.php';
err();
echo '<div class="textmes">';
echo "<a href='/smiles/index.php'><font color='black'>Смайлы</font></a> | n";
echo "<a href='/chat/room/$room[id]/".rand(1000,9999)."/'><font color='black'>Обновить</font></a> |n";
echo "<a href='/chat/online.php'><font color='black'>Кто Где?</font></a>n";
if (isset($user))
{
echo "<form method="post" name='message' action="/chat/room/$room[id]/".rand(1000,9999)."/"></textarea> n";
if ($set['web'] && is_file(H.'style/themes/'.$set['set_them'].'/altername_post_form.php'))
include_once H.'style/themes/'.$set['set_them'].'/altername_post_form.php';
else
echo "<input name="msg" type="text" maxlength='200' value='' />n";
echo "<input value="Сказать" type="submit" /><br/>n";
echo "</form>n";
echo '</div>';
}
$set['p_str'] = 15;
$k_post=mysql_result(mysql_query("SELECT COUNT(`id`) FROM `chat_post` WHERE `room` = '$room[id]'"),0);
$k_page=k_page($k_post,$set['p_str']);
$page=page($k_page);
$start=$set['p_str']*$page-$set['p_str'];
if ($k_post==0)
{;
echo "Нет сообщенийn";
}
$q=mysql_query("SELECT * FROM `chat_post` WHERE `room` = '$room[id]' AND (`privat`='0' OR (`privat`='".$user['id']."' OR `id_user`='".$user['id']."')) ORDER BY id DESC LIMIT $start, $set[p_str]");
while ($post = mysql_fetch_array($q))
{
if ($post['umnik_st']==0 && $post['shutnik']==0)
$ank=get_user($post['id_user']);
if ($user['zebra_chat']==0) echo ($i % 2) ? '<div class="linechat">' : '<div class="linechat">';
if ($user['zebra_chat']==1) echo ($i % 2) ? '<div class="tmn">' : '<div class="zebra_ch">';
if($post['privat'])
{
$Te6e_cyka='<font color="darkred">[!п]</font>';
$privat = '?priv=1';
}else{
$Te6e_cyka='';
$privat = '';
}
if (user_access('chat_clear'))
{
echo "[<a href='/chat/delete.php?id=$post[id]'>X</a>]n";
}
if ($post['anagrama_st']==0 && $post['umnik_st']==0 && $post['shutnik']==0)
echo "<a href='/chat/room/$room[id]/".rand(1000,9999)."/$ank[id]/'><span style="color:$ank[ncolor]">$ank[nick]</span> $Te6e_cyka </a>(".vremja($post['time']).")</a>n";
elseif ($post['umnik_st']!=0)
echo "<font color='red'>$set[chat_umnik]</font> (".vremja($post['time']).")n";
elseif ($post['anagrama_st']!=0)
echo "<font color='red'>Анаграмма</font> (".vremja($post['time']).")n";
elseif ($post['shutnik']==1)
echo "<font color='green'>$set[chat_shutnik]</font> (".vremja($post['time']).")n";
echo output_text($post['msg'])."n";
echo "</div>n";
++$i;
}
if ($k_page>1)str("/chat/room/$room[id]/".rand(1000,9999)."/?",$k_page,$page); // Вывод страниц
echo "<div class='tmn'>";
echo "В комнате";
$sql = mysql_query("SELECT `id_user` FROM `chat_who` WHERE `room` = '$room[id]'");
if ($sql==0){echo "Никого нетn";}
while($us = mysql_fetch_assoc($sql))
{
$login=mysql_fetch_array(mysql_query("select `nick`,`pol`,`ncolor` from `user` where `id`='".$us['id_user']."' limit 1;"));
echo ":<span style="color:$login[ncolor]"> $login[nick]</a> </span> ";
}
echo'</div>';
?>