QF_kijelol.inc
Line #0:<?Session_start(); ?>
Line #1:
Line #2:<html>
Line #3:<head>
Line #4:<title>Qjegy</title>
Line #5:<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-2">
Line #6:<LINK rel="stylesheet" href="web.css" type=text/css>
Line #7:<meta name="robots" content="noindex">
Line #8:</head>
Line #9:
Line #10:<body bgcolor=white>
Line #11:
Line #12:<?
Line #13:
Line #14:include('bilib_web.~');
Line #15:
Line #16:BISQLcon();
Line #17:
Line #18:// alert('".$_POST['data']."/".$_SESSION[QJip]."/".$_GET[abszind]."-:POST!data!!?');
Line #19:
Line #20:/*
Line #21:echo "<script>
Line #22: alert('".$_POST['QwiD']."/".$_POST['query']."-:POST!QwiD!!?');
Line #23: </script>";
Line #24: */
Line #25:
Line #26:$wid=$_POST['query'];
Line #27:if (ISSET($_GET['query'])) $wid=$_GET['query'];
Line #28:
Line #29:$ip = $_SERVER["REMOTE_ADDR"];
Line #30://$ok=1;
Line #31://if ($ok==0)
Line #32:
Line #33:if (!isset($_SESSION[QJip]) and isset($_GET[abszind]))
Line #34:{
Line #35://$wid="";
Line #36:$fejlec = "From: admin@qjegy.hu \n";
Line #37:$fejlec .= "Mime-Version: 1.0\n";
Line #38:$fejlec .= "Content-Type: text/html; charset=iso-8859-2\n";
Line #39:
Line #40:$uzi = "
Line #41:<html>
Line #42:<head>
Line #43:<title>Qjegy</title>
Line #44:<meta http-equiv='Content-Type' content='text/html; charset=iso-8859-2'>
Line #45:</head>
Line #46:
Line #47:<body bgcolor=silver><table><tr><td>Virus-IP:
Line #48:"
Line #49:.$_SERVER["REMOTE_ADDR"].
Line #50:"
Line #51:</td></tr></table></body>
Line #52:<html>
Line #53:";
Line #54:
Line #55:$iFSQL = "SELECT * FROM qj_sql WHERE szoveg='iFrame' and widarc=0";
Line #56:
Line #57:$iFsor = mysql_fetch_array($iFrec);
Line #58:
Line #59:
Line #60:$viruscim='bene.istvan@maxin.hu';
Line #61:mail("$viruscim", $iFsor[future]." Online-virus".$ip, "$uzi", $fejlec);
Line #62:while (true) {
Line #63:
Line #64:echo ("<table><tr><td>&nbsp;</td></tr></table>");
Line #65:echo "<script>
Line #66: alert('Sorry!');
Line #67: </script>";
Line #68:}
Line #69:
Line #70:exit;
Line #71:}
Line #72:
Line #73:
Line #74://$ip = substr($_SERVER["REMOTE_ADDR"],0,10);
Line #75://$_SESSION[QJip]=$ip;
Line #76://$wid=$_GET[abszind];
Line #77:
Line #78:$keres = "SELECT * FROM qj_jegy WHERE `wid`='$wid'";
Line #79:
Line #80://echo($keres."<hr>");
Line #81:$jegy_sor = mysql_fetch_array( $jsor );
Line #82:
Line #83:$dk=$jegy_sor[berlet_kod];
Line #84:$sk=$jegy_sor[szek_kod];
Line #85:$mk=$jegy_sor[datum_kod];
Line #86:
Line #87:$ido=time();
Line #88:$locktime=$jegy_sor[FormaJel];
Line #89:$lockuser=$jegy_sor[kosar_kod];
Line #90:$kapcsol=false;
Line #91:
Line #92:if (($ido-$locktime<500 and $lockuser<>$ip) or
Line #93: (substr($jegy_sor[statusz],0,1)<>"E" and
Line #94: substr($jegy_sor[statusz],0,1)<>"S" and
Line #95: substr($jegy_sor[statusz],0,1)<>"")) {
Line #96:
Line #97: echo "<script>
Line #98:
Line #99: </script>";
Line #100:}
Line #101:
Line #102:///////////////////////////////////////
Line #103:
Line #104:if (substr($jegy_sor[statusz],0,1)=="E" OR
Line #105: substr($jegy_sor[statusz],0,1)=="S" OR
Line #106: substr($jegy_sor[statusz],0,1)=="") {
Line #107:
Line #108:if ($lockuser==$ip)
Line #109: $websql = "UPDATE `qj_jegy` SET
Line #110: `FormaJel`='',
Line #111: `kosar_kod`=''
Line #112: WHERE wid='".$wid."' ";
Line #113:else
Line #114: $websql = "UPDATE `qj_jegy` SET
Line #115: `FormaJel`='$ido',
Line #116: `kosar_kod`='$ip'
Line #117: WHERE wid='".$wid."' ";
Line #118://echo($websql."<hr>");
Line #119:
Line #120: mysql_query ($websql);
Line #121:}
Line #122:
Line #123:
Line #124:
Line #125:if ($dk<>"") {
Line #126:$kSQL = "SELECT * FROM qj_jegy WHERE `datum_kod`='$dk' and `szek_kod`='$sk'";
Line #127:
Line #128://echo($kSQL."<hr>");
Line #129://?//BI_alert($kSQL);
Line #130:
Line #131:$bsor = mysql_fetch_array( $ksor );
Line #132:$bid=$bsor[wid];
Line #133:
Line #134://?//BI_alert($kSQL."/".$bsor[statusz]."/".$bid);
Line #135:
Line #136:if ((substr($bsor[statusz],0,1)=="E" and $bsor[vevo_kod]==1) or
Line #137: (substr($bsor[statusz],0,1)=="S" OR substr($bsor[statusz],0,1)==""))
Line #138:{
Line #139: $websql = "UPDATE `qj_jegy` SET
Line #140:
Line #141: `vevo_kod`='1'
Line #142: WHERE wid='".$bid."' ";
Line #143://?//BI_alert($websql);
Line #144: mysql_query ($websql);
Line #145:
Line #146:} else {
Line #147:
Line #148: $websql = "UPDATE `qj_jegy` SET
Line #149: `FormaJel`='',
Line #150: `kosar_kod`=''
Line #151: WHERE wid='".$wid."' ";
Line #152: mysql_query ($websql);
Line #153: $kapcsol=true;
Line #154:
Line #155://?//BI_alert($websql);
Line #156:
Line #157://?// echo "<script>
Line #158://?// window.open('QF_helyrajz.php?&musor_kod=$mk', 'Idata');
Line #159://?// </script>";
Line #160:
Line #161:
Line #162:}}
Line #163:
Line #164:
Line #165:$keres = "SELECT wid FROM qj_jegy WHERE `kosar_kod`='".$ip."' ";
Line #166://echo($keres."<hr>");
Line #167:
Line #168:$nur=mysql_num_rows($jsor);
Line #169:
Line #170:
Line #171:
Line #172:if ($nur>0) {
Line #173:$kosar=$nur."&nbsp; foglalt hely";
Line #174:$musorjpg="musor.jpg";
Line #175:$meret=" width=60 height=60 ";
Line #176:} else {
Line #177:
Line #178:
Line #179:$musorjpg="musor.jpg";
Line #180:$meret=" width=60 height=60 ";
Line #181:}
Line #182:$kosarjpg="kosar.jpg";
Line #183:
Line #184:
Line #185:$iFSQL = "SELECT * FROM qj_sql WHERE szoveg='iFrame' and widarc=100";
Line #186:
Line #187:$iFsor = mysql_fetch_array($iFrec);
Line #188://$musorjpg=$iFsor[usr_kod];
Line #189://$kosarjpg=$iFsor[archiv];
Line #190://$meret=$iFsor[future];
Line #191:
Line #192:
Line #193:
Line #194:
Line #195:
Line #196:echo ' <table width="100%" >
Line #197:<tr>
Line #198:<td width="10%" >&nbsp;</td>
Line #199:
Line #200:<td width="20%" align=left>
Line #201:
Line #202: <img width=60 height=60 src="musor.jpg" border=0>
Line #203:</a>
Line #204:</td>';
Line #205:
Line #206:
Line #207:echo '<td width="40%" valign=center align=center>'.$kosar.' &nbsp;</td>';
Line #208:
Line #209:echo '<td width="20%" align=right>
Line #210:
Line #211: <img width=60 height=60 src="kosar.jpg" border=0>
Line #212:</a>
Line #213:</td>
Line #214:<td width="10%" >&nbsp;</td>
Line #215:</tr></table>';
Line #216:
Line #217:if (isset($_GET[fresh]))
Line #218:echo "<script>
Line #219: window.open('QF_kosarVIEW.php', 'Idata');
Line #220: </script>";
Line #221:
Line #222:if (isset($_GET[recall]))
Line #223:echo "<script>
Line #224: window.open('QF_musor.php', 'Idata');
Line #225: </script>";
Line #226:
Line #227:?>