View file wapirate/wml/admproc.php

File size: 54.24Kb
<?



session_start();



//--------------------------

// user definable variables:

//--------------------------



// maximum number of seconds user can remain idle without having to re-login:

// use a value of zero for no timeout

$max_session_time = 0;



// type of alert to give on incorrect password:

// eg:

// $alert = "joe@foo.com";- sends email to joe@foo.com

// $alert = "blah";- appends to file named 'blah'

// $alert = "";- no alerts

$alert = "./.ht_badlogins";



// acceptable passwords:

$cmp_pass = Array();

$cmp_pass[] = md5("admin");

$cmp_pass[] = md5("admin2");

// add as many as you like



// maximum number of bad logins before user locked out

// use a value of zero for no hammering protection

$max_attempts = 3;



//-----------------------------

// end user definable variables

//-----------------------------





// save session expiry time for later comparision

$session_expires = $_SESSION['mpass_session_expires'];



// have to do this otherwise max_attempts is actually one less than what you specify.

$max_attempts++;



if(!empty($_POST['mpass_pass']))

{

// store md5'ed password

$_SESSION['mpass_pass'] = md5($_POST['mpass_pass']);

}



if(empty($_SESSION['mpass_attempts']))

{

$_SESSION['mpass_attempts'] = 0;

}



// if the session has expired, or the password is incorrect, show login page:

if(($max_session_time>0 && !empty($session_expires) && mktime()>$session_expires) || empty($_SESSION['mpass_pass']) || !in_array($_SESSION['mpass_pass'],$cmp_pass))

{

if(!empty($alert) && !in_array($_SESSION['mpass_pass'],$cmp_pass))

{

// user has submitted incorrect password

// generate alert:



$_SESSION['mpass_attempts']++;



$alert_str = $_SERVER['REMOTE_ADDR']." entered ".htmlspecialchars($_POST['mpass_pass'])." on page ".$_SERVER['PHP_SELF']." on ".date("l dS of F Y h:i:s A")."\r\n";



if(stristr($alert,"@")!==false)

{

// email alert

@mail($alert,"Bad Login on ".$_SERVER['PHP_SELF'],$alert_str,"From: ".$alert);

} else {

// textfile alert

$handle = @fopen($alert,'a');

if($handle)

{

fwrite($handle,$alert_str);

fclose($handle);

}

}

}

// if hammering protection is enabled, lock user out if they've reached the maximum

if($max_attempts>1 && $_SESSION['mpass_attempts']>=$max_attempts)

{

exit("Too many login failures.");

}





// clear session expiry time

$_SESSION['mpass_session_expires'] = "";



?>

<html>

<head>

<title>Enter Password</title>

</head>

<body>

<form action="<?=$_SERVER['REQUEST_URI']?>" method="post">

<h4>Password Protected</h4>

<input type="password" name="mpass_pass">

<input type="submit" value="login">

</form>

</body>

</html>

<?



// and exit

exit();

}



// if they've got this far, they've entered the correct password:



// reset attempts

$_SESSION['mpass_attempts'] = 0;



// update session expiry time

$_SESSION['mpass_session_expires'] = mktime()+$max_session_time;



// end password protection code

?>

<?php

include("head.php");

$sta = getstatusname($uid);

if(!isstatus10(getuid_sid($sid))){

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "You are not an $status10<br/>";

echo "<br/>";

echo "<a href=\"index.php\">Home</a>";

echo "</p>";

echo "</card>";

echo "</wml>";

exit();

}

///////////////////////////////////////////////////////////////////

addonline(getuid_sid($sid),"Main Page","");

if($action=="general"){

$xtm = $_POST["sesp"];

$fmsg = $_POST["fmsg"];

$areg = $_POST["areg"];

$pmaf = $_POST["pmaf"];

$fvw = $_POST["fvw"];

if($areg=="d"){

$arv = 0;

}else{

$arv = 1;

}

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE ibwf_settings SET value='".$fmsg."' WHERE name='4ummsg'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum Message  updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Updating Forum message<br/>";

}

$res = mysql_query("UPDATE ibwf_settings SET value='".$xtm."' WHERE name='sesxp'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Session Period updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Updating Session Period<br/>";

}

$res = mysql_query("UPDATE ibwf_settings SET value='".$pmaf."' WHERE name='pmaf'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>PM antiflood is $pmaf seconds<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Updating PM antiflood value<br/>";

}

$res = mysql_query("UPDATE ibwf_settings SET value='".$arv."' WHERE name='reg'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Registration updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Updating Registration<br/>";

}

$res = mysql_query("UPDATE ibwf_settings SET value='".$fvw."' WHERE name='fview'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forums View updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Updating Forums View<br/>";

}

echo "<br/>";

echo "<a href=\"admincp.php?action=general\">";

echo "Edit general settings</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////////////////////Add moderating



else if($action=="addfmod"){

$mid = $_POST["mid"];

$fid = $_POST["fid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("INSERT INTO ibwf_modr SET name='".$mid."', forum='".$fid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Moderating Privileges Added<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error<br/>";

}

echo "<br/><br/><a href=\"admincp.php?action=manmods\">";

echo "Manage Moderators</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delclub"){

$clid = $_GET["clid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = deleteClub($clid);

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Club Deleted<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error<br/>";

}

echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="gccp"){

$clid = $_GET["clid"];

$plss = $_POST["plss"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$nop = mysql_fetch_array(mysql_query("SELECT plusses FROM ibwf_clubs WHERE id='".$clid."'"));

$newpl = $nop[0] + $plss;

$res = mysql_query("UPDATE ibwf_clubs SET plusses='".$newpl."' WHERE id='".$clid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Club plusses updated<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error<br/>";

}



echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="delfmod"){

$mid = $_POST["mid"];

$fid = $_POST["fid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("DELETE FROM ibwf_modr WHERE name='".$mid."' AND forum='".$fid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Moderating Privileges Deleted<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error<br/>";

}

echo "<br/><br/><a href=\"admincp.php?action=manmods\">";

echo "Manage Moderators</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

///////////////////////////////////////



else if($action=="addcat"){

$fcname = $_POST["fcname"];

$fcpos = $_POST["fcpos"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $fcname;

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_fcats SET name='".$fcname."', position='".$fcpos."'");



if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum Category added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Forum Category";

}



echo "<br/><br/><a href=\"admincp.php?action=fcats\">";

echo "Forum Categories</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="addfrm"){

$frname = $_POST["frname"];

$frpos = $_POST["frpos"];

$fcid = $_POST["fcid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $frname;

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_forums SET name='".$frname."', position='".$frpos."', cid='".$fcid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Forum ";

}



echo "<br/><br/><a href=\"admincp.php?action=forums\">";

echo "Forums</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

////////////////////////////////add scramble

else if($action=="addscramble"){

$word = $_POST["word"];

echo "<card id=\"main\" title=\"wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO scramble SET word='".$word."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Scramble Word added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Scramble Word ";

}

echo "<br/><br/><a href=\"admincp.php?action=addscramble\">";

echo "Add Another Scramble Word?</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addsml"){

$smlcde = $_POST["smlcde"];

$smlsrc = $_POST["smlsrc"];

$hide = $_POST["hide"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_smilies SET scode='".$smlcde."', imgsrc='/smilies/".$smlsrc.".gif', hidden='".$hide."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Smilie  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Smiley ";

}

echo "<br/><br/><a href=\"admincp.php?action=addsml\">";

echo "Add Another Smiley</a><br/>";

echo "<a href=\"lists.php?action=smilies&amp;ice=$hide\">";

echo "Smileys List</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addani"){

$smlcde = $_POST["smlcde"];

$smlsrc = $_POST["smlsrc"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_animations SET scode='".$smlcde."', imgsrc='".$smlsrc."', hidden='0'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Animation  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Animation ";

}

echo "<br/><br/><a href=\"admincp.php?action=addani\">";

echo "Add Another Animation</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

///////////////////////////////////spam block

else if($action=="addspam"){

$smlcde = $_POST["smlcde"];

$smlsrc = $_POST["smlsrc"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_spam SET scode='".$smlcde."', imgsrc='".$smlsrc."', hidden='0'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Spam Block added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Spam Block ";

}

echo "<br/><br/><a href=\"admincp.php?action=addspam\">";

echo "Add Another Spam Block</a><br/>";

echo "<a href=\"lists.php?action=spam\">Spam Block List</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addavt"){

$avtsrc = $_POST["avtsrc"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_avatars SET avlink='".$avtsrc."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Avatar  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Avatar ";

}

echo "<br/><br/><a href=\"admincp.php?action=addavt\">";

echo "Add Another Avatar</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addjdg"){

$who = $_GET["who"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_judges SET uid='".$who."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Judge  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Judge ";

}

echo "<br/><br/><a href=\"admincp.php?action=chuinfo\">";

echo "Users Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="deljdg"){

$who = $_GET["who"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_judges WHERE uid='".$who."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Judge  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting Judge ";

}

echo "<br/><br/><a href=\"admincp.php?action=chuinfo\">";

echo "Users Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="delsm"){

$smid = $_GET["smid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_smilies WHERE id='".$smid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Smiley  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting smiley ";

}

echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "<a href=\"admincp.php?action=addsml\">";

echo "Add Smiley?</a><br/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

////////////////////////////////////delete scramble

else if($action=="delscramble"){

$smid = $_GET["smid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM scramble WHERE id='".$smid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Scramble word  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting Scramble word ";

}

echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="delani"){

$smid = $_GET["smid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_animations WHERE id='".$smid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Animation  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting Animation ";

}

echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

//////////////////////////////////////delete spam block

else if($action=="delspam"){

$smid = $_GET["smid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_spam WHERE id='".$smid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Spam Block deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting Spam Block ";

}

echo "<br/><a href=\"lists.php?action=spam\">Spam Block List</a><br/>";

echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addrss"){

$rssnm = $_POST["rssnm"];

$rsslnk = $_POST["rsslnk"];

$rssimg = $_POST["rssimg"];

$rssdsc = $_POST["rssdsc"];

$fid = $_POST["fid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $rssnm;

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_rss SET title='".$rssnm."', link='".$rsslnk."', imgsrc='".$rssimg."', dscr='".$rssdsc."', fid='".$fid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Source added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding RSS Source";

}

echo "<br/><br/><a href=\"admincp.php?action=manrss\">";

echo "Manage RSS</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addchr"){

$chrnm = $_POST["chrnm"];

$chrage = $_POST["chrage"];

$chrpst = $_POST["chrpst"];

$chrprm = $_POST["chrprm"];

$chrcns = $_POST["chrcns"];

$chrfun = $_POST["chrfun"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $chrnm;

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_rooms SET name='".$chrnm."', static='1', pass='', mage='".$chrage."', chposts='".$chrpst."', perms='".$chrprm."', censord='".$chrcns."' , freaky='".$chrfun."'");

echo mysql_error();

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Chatroom added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Chatroom";

}

echo "<br/><br/><a href=\"admincp.php?action=chrooms\">";

echo "Chatrooms</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="edtrss"){

$rssnm = $_POST["rssnm"];

$rsslnk = $_POST["rsslnk"];

$rssimg = $_POST["rssimg"];

$rssdsc = $_POST["rssdsc"];

$fid = $_POST["fid"];

$rssid = $_POST["rssid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $rssnm;

echo "<br/>";

$res = mysql_query("UPDATE ibwf_rss SET title='".$rssnm."', link='".$rsslnk."', imgsrc='".$rssimg."', dscr='".$rssdsc."', fid='".$fid."' WHERE id='".$rssid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Source updated successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error updating RSS Source";

}

echo "<br/><br/><a href=\"admincp.php?action=manrss\">";

echo "Manage RSS</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="addperm"){

$fid = $_POST["fid"];

$gid = $_POST["gid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_acc SET fid='".$fid."', gid='".$gid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Permission  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding permission ";

}

echo "<br/><br/><a href=\"admincp.php?action=addperm\">";

echo "Add Permission</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////////////////////////////////////Update profile



else if($action=="uprof"){

$who = $_GET["who"];

$unick = $_POST["unick"];

$perm = $_POST["perm"];

$modx = $_POST["modx"];

$vip = $_POST["vip"];

$noob = $_POST["noob"];

$savat = $_POST["savat"];

$semail = $_POST["semail"];

$status = $_POST["status"];

$usite = $_POST["usite"];

$ubday = $_POST["ubday"];

$uloc = $_POST["uloc"];

$usig = $_POST["usig"];

$usex = $_POST["usex"];

$flag = $_POST["flag"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE ibwf_users SET avatar='".$savat."', email='".$semail."', status='".$status."', site='".$usite."', birthday='".$ubday."', location='".$uloc."', signature='".$usig."', sex='".$usex."', name='".$unick."', flag='".$flag."', hidemyperm='".$perm."', modx='".$modx."', vip='".$vip."', noob='".$noob."' WHERE id='".$who."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>$unick's profile was updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error updating $unick's profile<br/>";

}

echo "<br/><a href=\"admincp.php?action=chuinfo\">";

echo "Users Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

//////////////////////////////////////////Update points

else if($action=="upoints"){

$who = $_GET["who"];

$lpr = $_POST["lpr"];

$gold = $_POST["gold"];

$plusses = $_POST["plusses"];

$gplus = $_POST["gplus"];

$battlep = $_POST["battlep"];

$unick = getnick_uid($who);

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE ibwf_users SET lastpnreas='".$lpr."', gold='".$gold."', plusses='".$plusses."', gplus='".$gplus."', battlep='".$battlep."' WHERE id='".$who."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>$unick's points was updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error updating $unick's points<br/>";

}

echo "<br/><a href=\"admincp.php?action=chuinfo\">";

echo "Users Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



/////////////user password

else if($action=="upwd"){

$npwd = $_POST["npwd"];

$who = $_GET["who"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

if((strlen($npwd)<4) || (strlen($npwd)>15)){

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Password should be between 4 and 15 letters only<br/>";

}else{

$pwd = md5($npwd);

$res = mysql_query("UPDATE ibwf_users SET pass='".$pwd."' WHERE id='".$who."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>Password was updated successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error updating password<br/>";

}

}

echo "<br/><a href=\"admincp.php?action=chuinfo\">";

echo "Users Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

///////////////add group

else if($action=="addgrp"){

$frname = $_POST["ugname"];

$ugaa = $_POST["ugaa"];

$allus = $_POST["allus"];

$mage = $_POST["mage"];

$mpst = $_POST["mpst"];

$mpls = $_POST["mpls"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $ugname;

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_groups SET name='".$ugname."', autoass='".$ugaa."', userst='".$allus."', mage='".$mage."', posts='".$mpst."', plusses='".$mpls."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>User group  added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding User group";

}

echo "<br/><br/><a href=\"admincp.php?action=ugroups\">";

echo "UGroups</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="edtfrm"){

$fid = $_POST["fid"];

$frname = $_POST["frname"];

$frpos = $_POST["frpos"];

$fcid = $_POST["fcid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $frname;

echo "<br/>";

$res = mysql_query("UPDATE ibwf_forums SET name='".$frname."', position='".$frpos."', cid='".$fcid."' WHERE id='".$fid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum  updated successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error updating Forum ";

}

echo "<br/><br/><a href=\"admincp.php?action=forums\">";

echo "Forums</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="edtcat"){

$fcid = $_POST["fcid"];

$fcname = $_POST["fcname"];

$fcpos = $_POST["fcpos"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $fcname;

echo "<br/>";

$res = mysql_query("UPDATE ibwf_fcats SET name='".$fcname."', position='".$fcpos."' WHERE id='".$fcid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum Category updated successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error updating Forum Category";

}

echo "<br/><br/><a href=\"admincp.php?action=fcats\">";

echo "Forum Categories</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delfrm"){

$fid = $_POST["fid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_forums WHERE id='".$fid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting Forum ";

}

echo "<br/><br/><a href=\"admincp.php?action=forums\">";

echo "Forums</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delpms"){

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_private WHERE reported!='1' AND starred='0' AND unread='0' AND fid='0'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>All PMS except starred, reported, and unread were deleted";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error!";

}

echo "<br/><br/><a href=\"admincp.php?action=clrdta\">";

echo "Clear Data</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="clrmlog"){

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_mlog");

echo mysql_error();

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>ModLog Cleared Successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error!";

}

echo "<br/><br/><a href=\"admincp.php?action=clrdta\">";

echo "Clear Data</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delsht"){

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$altm = time()-(5*24*60*60);

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_shouts WHERE shtime<'".$altm."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Shouts Older Than 5 days were deleted";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error!";

}

echo "<br/><br/><a href=\"admincp.php?action=clrdta\">";

echo "Clear Data</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delgrp"){

$ugid = $_POST["ugid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_groups WHERE id='".$ugid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>UGroup  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting UGroup";

}

echo "<br/><br/><a href=\"admincp.php?action=ugroups\">";

echo "UGroups</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delrss"){

$rssid = $_POST["rssid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_rss WHERE id='".$rssid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Source  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error";

}

echo "<br/><br/><a href=\"admincp.php?action=manrss\">";

echo "Manage RSS</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delchr"){

$chrid = $_POST["chrid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_rooms WHERE id='".$chrid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Room  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error";

}

echo "<br/><br/><a href=\"admincp.php?action=chrooms\">";

echo "Chatrooms</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="delu"){

$who = $_GET["who"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_buddies WHERE tid='".$who."' OR uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_gbook WHERE gbowner='".$who."' OR gbsigner='".$who."'");

$res = mysql_query("DELETE FROM ibwf_ignore WHERE name='".$who."' OR target='".$who."'");

$res = mysql_query("DELETE FROM ibwf_mangr WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_modr WHERE name='".$who."'");

$res = mysql_query("DELETE FROM ibwf_penalties WHERE uid='".$who."' OR exid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_posts WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_private WHERE byuid='".$who."' OR touid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_shouts WHERE shouter='".$who."'");

$res = mysql_query("DELETE FROM ibwf_topics WHERE authorid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_brate WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_games WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_presults WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_vault WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_blogs WHERE bowner='".$who."'");

$res = mysql_query("DELETE FROM ibwf_chat WHERE chatter='".$who."'");

$res = mysql_query("DELETE FROM ibwf_chat WHERE who='".$who."'");

$res = mysql_query("DELETE FROM ibwf_chonline WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_online WHERE userid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_ses WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_xinfo WHERE uid='".$who."'");

deleteMClubs($who);

$res = mysql_query("DELETE FROM ibwf_users WHERE id='".$who."'");

$res = mysql_query("DELETE FROM inbox_folders WHERE uid='".$who."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>User  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting UGroup";

}



echo "<br/><br/><a href=\"admincp.php?action=chuinfo\">";

echo "User Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////// Delete users posts

else if($action=="delxp"){

$who = $_GET["who"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_posts WHERE uid='".$who."'");

$res = mysql_query("DELETE FROM ibwf_topics WHERE authorid='".$who."'");

if($res){

mysql_query("UPDATE ibwf_users SET plusses='0' where id='".$who."'");

echo "<img src=\"images/ok.gif\" alt=\"O\"/>User Posts deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting UPosts";

}

echo "<br/><br/><a href=\"admincp.php?action=chuinfo\">";

echo "User Info</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="delcat"){

$fcid = $_POST["fcid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $fcname;

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_fcats WHERE id='".$fcid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Forum Category deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting Forum Category";

}

echo "<br/><br/><a href=\"admincp.php?action=fcats\">";

echo "Forum Categories</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="deloldpm"){

$who = $_GET["who"];

$pmid = $_GET["pmid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $fcname;

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_private WHERE id='".$pmid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>PM Deleted Successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Deleting Pm";

}

echo "<br/><br/><a href=\"lists2.php?action=inb&amp;who=$who\">";

echo "Back to PMs</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="boot")

{

  $who = $_GET["who"];

  $user = getnick_uid($who);

  echo "<card id=\"main\" title=\"Boot User\">";

  echo "<p align=\"center\">";

  $uid = getuid_sid($sid);

  $perm = mysql_fetch_array(mysql_query("SELECT hidemyperm FROM ibwf_users WHERE id='".$uid."'"));

  $trgtperm = mysql_fetch_array(mysql_query("SELECT hidemyperm FROM ibwf_users WHERE name='".$user."'"));

  if($trgtperm>$perm){ 

  echo "<b><img src=\"../images/notok.gif\" alt=\"x\"/><br/>Error!!!<br/>Permission Denied...</b><br/>";

  echo "<br/>U Cannot Boot $user<br/>";

  echo "<a href=\"index.php?action=main\"><img src=\"../images/home.gif\" alt=\"\"/>Home</a>";

  echo "</p>";

  }else{

  echo "<br/>";

  $res = mysql_query("DELETE FROM ibwf_ses WHERE uid='".$who."'");

 $res =  mysql_query("DELETE FROM ibwf_online WHERE userid='".$who."'");

  if($res)

  {

  mysql_query("INSERT INTO ibwf_mlog SET action='boot', details='<b>".getnick_uid(getuid_sid($sid))."</b> booted $user', actdt='".time()."'");

  echo "<img src=\"../images/ok.gif\" alt=\"O\"/>$user Booted successfully";

  }else{

  echo "<img src=\"../images/notok.gif\" alt=\"X\"/>Error booting $user";

  }

  echo "<br/><br/><a href=\"index.php?action=viewuser&amp;who=$who\">$user's Profile</a><br/>";

  echo "<a href=\"admincp.php?action=admincp\"><img src=\"../images/admn.gif\" alt=\"\"/>$sta Tools</a><br/>";

  echo "<a href=\"index.php?action=main\"><img src=\"../images/home.gif\" alt=\"\"/>Home</a>";

  echo "</p>";

  }

  echo "</card>";

}



//////////////////////////////////////////invisable



else if($action=="hide")

{

    addonline(getuid_sid($sid),"Main Page","");

  echo "<card id=\"main\" title=\"Invisabality\">";

  echo "<p align=\"center\">";

  

  

    $hide = 1;

    $res = mysql_query("UPDATE ibwf_users SET hide='".$hide."' WHERE id='".$uid."'");

    if($res)

  {

    echo "<img src=\"images/ok.gif\" alt=\"o\"/>Your Now Invisable<br/>";

  }else{

    echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error Updating Invisability<br/>";

  }

  

  echo "<br/><a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

  echo "</p></card>";

}



//////////////////////////////////////////no invisable



else if($action=="nohide")

{

    addonline(getuid_sid($sid),"Main Page","");

  echo "<card id=\"main\" title=\"Invisabality\">";

  echo "<p align=\"center\">";

  

  $hide = 0;

    

    $res = mysql_query("UPDATE ibwf_users SET hide='".$hide."' WHERE id='".$uid."'");

    if($res)

  {

    echo "<img src=\"images/ok.gif\" alt=\"o\"/>Invisability Off<br/>";

  }else{

    echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error Updating Invisability<br/>";

  }

  

  echo "<br/><a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

  echo "</p></card>";

}



////////////////////////add Quiz room



else if($action=="addquizroom"){

$chrnm = $_POST["chrnm"];

$chrage = $_POST["chrage"];

$chrpst = $_POST["chrpst"];

$chrprm = $_POST["chrprm"];

$chrcns = $_POST["chrcns"];

$chrfun = $_POST["chrfun"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo $chrnm;

echo "<br/>";

$res = mysql_query("INSERT INTO quiz_rooms SET name='".$chrnm."', static='1', pass='', mage='".$chrage."', chposts='".$chrpst."', perms='".$chrprm."', censord='".$chrcns."' , freaky='".$chrfun."'");

echo mysql_error();

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Chatroom added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Chatroom";

}

echo "<br/><br/><a href=\"admincp.php?action=quizrooms\">";

echo "Quizrooms</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

//////////////////////////////////delete quiz room

else if($action=="delquizroom"){

$chrid = $_POST["chrid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM quiz_rooms WHERE id='".$chrid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Quiz Room  deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Database Error";

}

echo "<br/><br/><a href=\"admincp.php?action=quizrooms\">";

echo "Quizrooms</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



///////////////////////////////////quiz words

else if($action=="addquiz"){

$question = $_POST["question"];

$answer = $_POST["answer"];

$points = $_POST["points"];

$qnick = getnick_sid($sid);

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO quiz SET question='".$question."', answer='".$answer."', points='".$points."', who='".$qnick."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Quiz Question added successfully";

$quid = mysql_fetch_array(mysql_query("SELECT id FROM ibwf_users WHERE name='".$qnick."'"));

$ugpl = mysql_fetch_array(mysql_query("SELECT gplus FROM ibwf_users WHERE id='".$quid[0]."'"));

$ugpl = $ugpl[0] + 2;

mysql_query("UPDATE ibwf_users SET gplus='".$ugpl."' WHERE id='".$quid[0]."'");

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Quiz Question ";

}

echo "<br/><br/><a href=\"admincp.php?action=addquiz\">";

echo "Add Another Quiz Question?</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

//////////////////////////////////////////Edit Quiz



else if($action=="editquiz"){

$smid = $_GET["smid"];

$question = $_POST["question"];

$answer = $_POST["answer"];

$points = $_POST["points"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE quiz SET question='".$question."', answer='".$answer."', points='".$points."' WHERE id='".$smid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>Question Edited successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error Editing Question<br/>";

}

echo "<br/><a href=\"lists.php?action=quiz\">";

echo "Quiz Questions</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////////////////////////////////////Edit Scramble



else if($action=="editscramble"){

$smid = $_GET["smid"];

$word = $_POST["word"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE scramble SET word='".$word."' WHERE id='".$smid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>Scramble Word Edited successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error Editing Scramble Word<br/>";

}

echo "<br/><a href=\"lists.php?action=scramble\">";

echo "Scramble words</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}





else if($action=="addnews"){

$news = $_POST["news"];

$title = $_POST["title"];

$date = "".date("D d M y ")."";

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_news SET news='".$news."', date='".$date."', scode='".$title."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>News added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding News ";

}

echo "<br/><br/><a href=\"admincp.php?action=addnews\">";

echo "Add More News</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

else if($action=="delnews"){

$newsid = $_GET["newsid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_news WHERE id='".$newsid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>News deleted successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error deleting News ";

}



echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////////////////////////////////////Edit news

else if($action=="editnews"){

$newsid = $_GET["newsid"];

$title = $_POST["title"];

$news = $_POST["news"];

$date = $_POST["date"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE ibwf_news SET scode='".$title."', news='".$news."', date='".$date."' WHERE id='".$newsid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>News Edited successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error Editing News<br/>";

}

echo "<br/><a href=\"lists2.php?action=news\">";

echo "News</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

//////////////////////////////front page link

else if($action=="front"){

$title = $_POST["title"];

$link = $_POST["link"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO front SET title='".$title."', link='".$link."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Link added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Link";

}

echo "<br/><br/><a href=\"admincp.php?action=front\">";

echo "Add Another Link?</a><br/>";

echo "<a href=\"lists2.php?action=front\">";

echo "Front Page Links</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

//////////////////////////////////////////front page link

else if($action=="editfront"){

$lid = $_GET["lid"];

$title = $_POST["title"];

$link = $_POST["link"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

$res = mysql_query("UPDATE front SET title='".$title."', link='".$link."' WHERE id='".$lid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"o\"/>Link Edited successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"x\"/>Error Editing Link<br/>";

}

echo "<br/><a href=\"lists2.php?action=front\">";

echo "front page links</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



///////////////////////////////////ban browser

else if($action=="idiots"){

$browser = $_POST["browser"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_idiots SET browser='".$browser."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>$browser Banned Successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Banning Browser<br/>";

}

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}

///////////////////////////////////ban browser 2

else if($action=="idiots2"){

$who = $_GET["who"];

$browser = mysql_fetch_array(mysql_query("SELECT browserm FROM ibwf_users WHERE id='".$who."'"));

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO ibwf_idiots SET browser='".$browser[0]."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>$browser[0] Banned Successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Banning Browser<br/>";

}

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



else if($action=="delbrowser"){

$bid = $_GET["bid"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("DELETE FROM ibwf_idiots WHERE id='".$bid."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Browser Unbanned Successfully<br/>";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error Unbanning Browser<br/>";

}



echo "<br/><br/><a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////////////////////////Add Flag

else if($action=="addflag"){

$ip1 = $_POST["ip1"];

$ip2 = $_POST["ip2"];

$country = $_POST["country"];

$isp = $_POST["isp"];

echo "<card id=\"main\" title=\"Wapirate\">";

echo "<p align=\"center\">";

echo "<br/>";

$res = mysql_query("INSERT INTO netwrk SET subone='".$ip1."', subtwo='".$ip2."', country='".$country."', isp='".$isp."'");

if($res){

echo "<img src=\"images/ok.gif\" alt=\"O\"/>Flag added successfully";

}else{

echo "<img src=\"images/notok.gif\" alt=\"X\"/>Error adding Flag";

}

echo "<br/><br/><a href=\"admincp.php?action=front\">";

echo "Add Another Link?</a><br/>";

echo "<a href=\"admincp.php?action=admincp\"><img src=\"images/admn.gif\" alt=\"*\"/>";

echo "$sta CP</a><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

echo "</p></card>";

}



//////////////////////////////////////////bump

else if($action=="bump")

{

  $tid = $_GET["tid"];

  $fid = getfid($tid);

  $fname = getfname($fid);

  $crdate = time(); 

  addonline(getuid_sid($sid),"Main Page","");

  echo "<card id=\"main\" title=\"$sitename\">";

  echo "<p align=\"center\">";



    $res = mysql_query("UPDATE ibwf_topics SET lastpost='".$crdate."' WHERE id='".$tid."'");

    if($res)

        {

          echo "<img src=\"../images/ok.gif\" alt=\"o\"/>Topic Bumped Successfully<br/>";

        }else{

          echo "<img src=\"../images/notok.gif\" alt=\"x\"/>Database Error!<br/>";

        }

 

   echo "<br/><br/><a href=\"index.php?action=viewtpc&amp;tid=$tid&amp;go=last\">View Topic</a>";

   echo "<br/><br/><a href=\"index.php?action=viewfrm&amp;fid=$fid\">$fname</a><br/>";

   echo "<a href=\"index.php?action=main\"><img src=\"../images/home.gif\" alt=\"*\"/>Home</a>";

   echo "</p></card>";

}



else{

echo "<card id=\"main\" title=\"wapirate\">";

echo "<p align=\"center\">";

echo "I don't know how you got in here, but there's nothing to show<br/><br/>";

echo "<a href=\"index.php?action=main\"><img src=\"images/home.gif\" alt=\"*\"/>";

echo "Home</a>";

mysql_query("INSERT INTO ibwf_mlog SET action='hacks', details='<b>".getnick_uid(getuid_sid($sid))."</b> Attempted To Hack Adminproc', actdt='".time()."'");

echo "</p></card>";

}

?>

</wml>