OSDN Git Service

Small bug fixes. SQL query fixes and wordfilter fix.
[idb/iDB.git.git] / inc / members.php
1 <?php
2 /*
3     This program is free software; you can redistribute it and/or modify
4     it under the terms of the Revised BSD License.
5
6     This program is distributed in the hope that it will be useful,
7     but WITHOUT ANY WARRANTY; without even the implied warranty of
8     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
9     Revised BSD License for more details.
10
11     Copyright 2004-2008 Cool Dude 2k - http://idb.berlios.de/
12     Copyright 2004-2008 Game Maker 2k - http://intdb.sourceforge.net/
13
14     $FileInfo: members.php - Last Update: 10/10/2008 SVN 173 - Author: cooldude2k $
15 */
16 $File3Name = basename($_SERVER['SCRIPT_NAME']);
17 if ($File3Name=="members.php"||$File3Name=="/members.php") {
18         require('index.php');
19         exit(); }
20 if(!is_numeric($_GET['id'])) { $_GET['id'] = null; }
21 if(!is_numeric($_GET['page'])) { $_GET['page'] = null; }
22 if($_GET['act']=="list") {
23 $orderlist = null;
24 $orderlist = "order by `ID` asc";
25 if(!isset($_GET['orderby'])) { $_GET['orderby'] = null; }
26 if(!isset($_GET['sorttype'])) { $_GET['sorttype'] = null; }
27 if(!isset($_GET['ordertype'])) { $_GET['ordertype'] = null; }
28 if(!isset($_GET['orderby'])) { $_GET['orderby'] = null; }
29 if(!isset($_GET['sortby'])) { $_GET['sortby'] = null; }
30 if(!isset($_GET['gid'])) { $_GET['gid'] = null; }
31 if(!isset($_GET['groupid'])) { $_GET['groupid'] = null; }
32 if($_GET['orderby']==null) { 
33         if($_GET['sortby']!=null) { 
34                 $_GET['orderby'] = $_GET['sortby']; } }
35 if($_GET['orderby']==null) { $_GET['orderby'] = "joined"; }
36 if($_GET['orderby']!=null) {
37 if($_GET['orderby']=="id") { $orderlist = "order by `ID`"; }
38 if($_GET['orderby']=="name") { $orderlist = "order by `Name`"; }
39 if($_GET['orderby']=="joined") { $orderlist = "order by `Joined`"; }
40 if($_GET['orderby']=="active") { $orderlist = "order by `LastActive`"; }
41 if($_GET['orderby']=="posts") { $orderlist = "order by `PostCount`"; }
42 if($_GET['orderby']=="offset") { $orderlist = "order by `TimeZone`"; } }
43 if($_GET['ordertype']==null) { 
44         if($_GET['sorttype']!=null) { 
45                 $_GET['ordertype'] = $_GET['sorttype']; } }
46 if($_GET['ordertype']==null) { $_GET['ordertype'] = "asc"; }
47 if($_GET['ordertype']!=null) {
48 if($_GET['ordertype']=="ascending") { $orderlist .= " asc"; }
49 if($_GET['ordertype']=="descending") { $orderlist .= " desc"; }
50 if($_GET['ordertype']=="asc") { $orderlist .= " asc"; }
51 if($_GET['ordertype']=="desc") { $orderlist .= " desc"; } }
52 if(!is_numeric($_GET['gid'])) { $_GET['gid'] = null; }
53 if($_GET['gid']!=null&&$_GET['groupid']==null) { $_GET['groupid'] = $_GET['gid']; }
54 if(!is_numeric($_GET['groupid'])) { $_GET['groupid'] = null; }
55 $ggquery = query("SELECT * FROM `".$Settings['sqltable']."groups` WHERE `Name`='%s' LIMIT 1", array($Settings['GuestGroup']));
56 $ggresult=mysql_query($ggquery);
57 $GGroup=mysql_result($ggresult,0,"id");
58 @mysql_free_result($ggresult);
59 //Get SQL LIMIT Number
60 $nums = $_GET['page'] * $Settings['max_memlist'];
61 $PageLimit = $nums - $Settings['max_memlist'];
62 if($PageLimit<0) { $PageLimit = 0; }
63 $i=0;
64 if($_GET['groupid']==null) {
65 $query = query("SELECT SQL_CALC_FOUND_ROWS * FROM `".$Settings['sqltable']."members` WHERE `GroupID`<>%i ".$orderlist." LIMIT %i,%i", array($GGroup,$PageLimit,$Settings['max_memlist'])); }
66 if($_GET['groupid']!=null) {
67 $query = query("SELECT SQL_CALC_FOUND_ROWS * FROM `".$Settings['sqltable']."members` WHERE `GroupID`=%i AND `GroupID`<>%i ".$orderlist." LIMIT %i,%i", array($_GET['groupid'],$GGroup,$PageLimit,$Settings['max_memlist'])); }
68 $rnquery = query("SELECT FOUND_ROWS();", array(null));
69 $result=mysql_query($query);
70 $rnresult=mysql_query($rnquery);
71 $NumberMembers = mysql_result($rnresult,0);
72 @mysql_free_result($rnresult);
73 if($NumberMembers==null) { 
74         $NumberMembers = 0; }
75 $num = $NumberMembers;
76 //Start MemberList Page Code
77 if(!isset($Settings['max_memlist'])) { $Settings['max_memlist'] = 10; }
78 if($_GET['page']==null) { $_GET['page'] = 1; } 
79 if($_GET['page']<=0) { $_GET['page'] = 1; }
80 $nums = $_GET['page'] * $Settings['max_memlist'];
81 if($nums>$num) { $nums = $num; }
82 $numz = $nums - $Settings['max_memlist'];
83 if($numz<=0) { $numz = 0; }
84 //$i=$numz;
85 if($nums<$num) { $nextpage = $_GET['page'] + 1; }
86 if($nums>=$num) { $nextpage = $_GET['page']; }
87 if($numz>=$Settings['max_memlist']) { $backpage = $_GET['page'] - 1; }
88 if($_GET['page']<=1) { $backpage = 1; }
89 $pnum = $num; $l = 1; $Pages = null;
90 while ($pnum>0) {
91 if($pnum>=$Settings['max_memlist']) { 
92         $pnum = $pnum - $Settings['max_memlist']; 
93         $Pages[$l] = $l; ++$l; }
94 if($pnum<$Settings['max_memlist']&&$pnum>0) { 
95         $pnum = $pnum - $pnum; 
96         $Pages[$l] = $l; ++$l; } }
97 $nums = $_GET['page'] * $Settings['max_memlist'];
98 //End MemberList Page Code
99 $num=mysql_num_rows($result);
100 //List Page Number Code Start
101 $pagenum=count($Pages);
102 if($_GET['page']>$pagenum) {
103         $_GET['page'] = $pagenum; }
104 $pagei=0; $pstring = "<div class=\"PageList\">Pages: ";
105 if($_GET['page']<4) { $Pagez[0] = null; }
106 if($_GET['page']>=4) { $Pagez[0] = "First"; }
107 if($_GET['page']>=3) {
108 $Pagez[1] = $_GET['page'] - 2; }
109 if($_GET['page']<3) {
110 $Pagez[1] = null; }
111 if($_GET['page']>=2) {
112 $Pagez[2] = $_GET['page'] - 1; }
113 if($_GET['page']<2) {
114 $Pagez[2] = null; }
115 $Pagez[3] = $_GET['page'];
116 if($_GET['page']<$pagenum) {
117 $Pagez[4] = $_GET['page'] + 1; }
118 if($_GET['page']>=$pagenum) {
119 $Pagez[4] = null; }
120 $pagenext = $_GET['page'] + 1;
121 if($pagenext<$pagenum) {
122 $Pagez[5] = $_GET['page'] + 2; }
123 if($pagenext>=$pagenum) {
124 $Pagez[5] = null; }
125 if($_GET['page']<$pagenum) { $Pagez[6] = "Last"; }
126 if($_GET['page']>=$pagenum) { $Pagez[6] = null; }
127 $pagenumi=count($Pagez);
128 if($NumberMembers==0) {
129 $pagenumi = 0;
130 $pstring = $pstring."<a href=\"".url_maker($exfile['member'],$Settings['file_ext'],"act=list&orderby=".$_GET['orderby']."&ordertype=".$_GET['ordertype']."&page=1",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'])."\">1</a> "; }
131 while ($pagei < $pagenumi) {
132 if($Pagez[$pagei]!=null&&
133    $Pagez[$pagei]!="First"&&
134    $Pagez[$pagei]!="Last") {
135 $pstring = $pstring."<a href=\"".url_maker($exfile['member'],$Settings['file_ext'],"act=list&orderby=".$_GET['orderby']."&ordertype=".$_GET['ordertype']."&page=".$Pagez[$pagei],$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'])."\">".$Pagez[$pagei]."</a> "; }
136 if($Pagez[$pagei]=="First") {
137 $pstring = $pstring."<a href=\"".url_maker($exfile['member'],$Settings['file_ext'],"act=list&orderby=".$_GET['orderby']."&ordertype=".$_GET['ordertype']."&page=1",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'])."\">&lt; First</a> ... "; }
138 if($Pagez[$pagei]=="Last") {
139 $pstring = $pstring."... <a href=\"".url_maker($exfile['member'],$Settings['file_ext'],"act=list&orderby=".$_GET['orderby']."&ordertype=".$_GET['ordertype']."&page=".$pagenum,$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'])."\">Last &gt;</a> "; }
140         ++$pagei; } $pstring = $pstring."</div>";
141 echo $pstring;
142 //List Page Number Code end
143 ?>
144 <div class="Table1Border">
145 <table class="Table1">
146 <tr class="TableRow1">
147 <td class="TableRow1" colspan="7"><span style="float: left;">
148 <?php echo $ThemeSet['TitleIcon'] ?><a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=list&orderby=".$_GET['orderby']."&ordertype=".$_GET['ordertype']."&page=".$_GET['page'],$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">Member List</a>
149 </span><span style="float: right;">&nbsp;</span></td>
150 </tr>
151 <tr id="Member" class="TableRow2">
152 <th class="TableRow2" style="width: 5%;">ID</th>
153 <th class="TableRow2" style="width: 28%;">Name</th>
154 <th class="TableRow2" style="width: 10%;">Group</th>
155 <th class="TableRow2" style="width: 10%;">Posts</th>
156 <th class="TableRow2" style="width: 20%;">Joined</th>
157 <th class="TableRow2" style="width: 20%;">Last Active</th>
158 <th class="TableRow2" style="width: 7%;">Website</th>
159 </tr>
160 <?php
161 while ($i < $num) {
162 $MemList['ID']=mysql_result($result,$i,"id");
163 $MemList['Name']=mysql_result($result,$i,"Name");
164 $MemList['Email']=mysql_result($result,$i,"Email");
165 $MemList['GroupID']=mysql_result($result,$i,"GroupID");
166 $MemList['WarnLevel']=mysql_result($result,$i,"WarnLevel");
167 $MemList['Interests']=mysql_result($result,$i,"Interests");
168 $MemList['Title']=mysql_result($result,$i,"Title");
169 $MemList['Joined']=mysql_result($result,$i,"Joined");
170 $MemList['Joined']=GMTimeChange("F j Y, g:i a",$MemList['Joined'],$_SESSION['UserTimeZone'],0,$_SESSION['UserDST']);
171 $MemList['LastActive']=mysql_result($result,$i,"LastActive");
172 $MemList['LastActive']=GMTimeChange("F j Y, g:i a",$MemList['LastActive'],$_SESSION['UserTimeZone'],0,$_SESSION['UserDST']);
173 $MemList['Website']=mysql_result($result,$i,"Website");
174 $MemList['Gender']=mysql_result($result,$i,"Gender");
175 $MemList['PostCount']=mysql_result($result,$i,"PostCount");
176 $MemList['TimeZone']=mysql_result($result,$i,"TimeZone");
177 $MemList['DST']=mysql_result($result,$i,"DST");
178 $MemList['IP']=mysql_result($result,$i,"IP");
179 $gquery = query("SELECT * FROM `".$Settings['sqltable']."groups` WHERE `id`=%i LIMIT 1", array($MemList['GroupID']));
180 $gresult=mysql_query($gquery);
181 $MemList['Group']=mysql_result($gresult,0,"Name");
182 @mysql_free_result($gresult);
183 $membertitle = " ".$ThemeSet['TitleDivider']." Member List";
184 if($MemList['Group']!=$Settings['GuestGroup']) {
185 ?>
186 <tr class="TableRow3" id="Member<?php echo $MemList['ID']; ?>">
187 <td class="TableRow3" style="text-align: center;"><?php echo $MemList['ID']; ?></td>
188 <td class="TableRow3">&nbsp;<a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=view&id=".$MemList['ID'],$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>"><?php echo $MemList['Name']; ?></a></td>
189 <td class="TableRow3" style="text-align: center;"><a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=list&gid=".$MemList['GroupID']."&page=".$_GET['page'],$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>"><?php echo $MemList['Group']; ?></a></td>
190 <td class="TableRow3" style="text-align: center;"><?php echo $MemList['PostCount']; ?></td>
191 <td class="TableRow3" style="text-align: center;"><?php echo $MemList['Joined']; ?></td>
192 <td class="TableRow3" style="text-align: center;"><?php echo $MemList['LastActive']; ?></td>
193 <td class="TableRow3" style="text-align: center;"><a href="<?php echo $MemList['Website']; ?>" onclick="window.open(this.href);return false;">Website</a></td>
194 </tr>
195 <?php }
196 ++$i; } @mysql_free_result($result);
197 ?>
198 <tr id="MemEnd" class="TableRow4">
199 <td class="TableRow4" colspan="7">&nbsp;</td>
200 </tr>
201 </table></div>
202 <?php }
203 if($_GET['act']=="view") { 
204 $query = query("SELECT * FROM `".$Settings['sqltable']."members` WHERE `id`=%i LIMIT 1", array($_GET['id']));
205 $result=mysql_query($query);
206 $num=mysql_num_rows($result);
207 $i=0;
208 if($num==0||$_GET['id']=="-1") { redirect("location",$basedir.url_maker($exfile['index'],$Settings['file_ext'],"act=view",$Settings['qstr'],$Settings['qsep'],$prexqstr['index'],$exqstr['index'],false));
209 ob_clean(); @header("Content-Type: text/plain; charset=".$Settings['charset']);
210 gzip_page($Settings['use_gzip'],$GZipEncode['Type']); @mysql_close(); die(); }
211 $ViewMem['ID']=mysql_result($result,$i,"id");
212 $ViewMem['Name']=mysql_result($result,$i,"Name");
213 $ViewMem['Signature']=mysql_result($result,$i,"Signature");
214 $ViewMem['Avatar']=mysql_result($result,$i,"Avatar");
215 $ViewMem['AvatarSize']=mysql_result($result,$i,"AvatarSize");
216 $ViewMem['Email']=mysql_result($result,$i,"Email");
217 $ViewMem['GroupID']=mysql_result($result,$i,"GroupID");
218 $ViewMem['WarnLevel']=mysql_result($result,$i,"WarnLevel");
219 $ViewMem['Interests']=mysql_result($result,$i,"Interests");
220 $ViewMem['Title']=mysql_result($result,$i,"Title");
221 $ViewMem['Joined']=mysql_result($result,$i,"Joined");
222 $ViewMem['Joined']=GMTimeChange("M j Y, g:i a",$ViewMem['Joined'],$_SESSION['UserTimeZone'],0,$_SESSION['UserDST']);
223 $ViewMem['LastActive']=mysql_result($result,$i,"LastActive");
224 $ViewMem['LastActive']=GMTimeChange("M j Y, g:i a",$ViewMem['LastActive'],$_SESSION['UserTimeZone'],0,$_SESSION['UserDST']);
225 $ViewMem['Website']=mysql_result($result,$i,"Website");
226 $ViewMem['Gender']=mysql_result($result,$i,"Gender");
227 $ViewMem['PostCount']=mysql_result($result,$i,"PostCount");
228 $ViewMem['TimeZone']=mysql_result($result,$i,"TimeZone");
229 $ViewMem['DST']=mysql_result($result,$i,"DST");
230 $ViewMem['IP']=mysql_result($result,$i,"IP");
231 $gquery = query("SELECT * FROM `".$Settings['sqltable']."groups` WHERE `id`=%i LIMIT 1", array($ViewMem['GroupID']));
232 $gresult=mysql_query($gquery);
233 $ViewMem['Group']=mysql_result($gresult,0,"Name");
234 @mysql_free_result($gresult);
235 $membertitle = " ".$ThemeSet['TitleDivider']." ".$ViewMem['Name'];      
236 if ($ViewMem['Avatar']=="http://"||$ViewMem['Avatar']==null||
237         strtolower($ViewMem['Avatar'])=="noavatar") {
238 $ViewMem['Avatar']=$ThemeSet['NoAvatar'];
239 $ViewMem['AvatarSize']=$ThemeSet['NoAvatarSize']; }
240 $AvatarSize1=explode("x", $ViewMem['AvatarSize']);
241 $AvatarSize1W=$AvatarSize1[0]; $AvatarSize1H=$AvatarSize1[1];
242 $ViewMem['Signature'] = text2icons($ViewMem['Signature'],$Settings['sqltable']);
243 if($_GET['view']==null) { $_GET['view'] = "profile"; }
244 if($_GET['view']!="profile"&&$_GET['view']!="avatar"&&
245         $_GET['view']!="website"&&$_GET['view']!="homepage") { $_GET['view'] = "profile"; }
246 if($_GET['view']=="avatar") { 
247         @session_write_close();
248         @header("Location: ".$ViewMem['Avatar']); }
249 if($_GET['view']=="website"||$_GET['view']=="homepage") { 
250         if ($ViewMem['Website']!="http://"&&$ViewMem['Website']!=null) {
251         @session_write_close();
252         @header("Location: ".$ViewMem['Website']); }
253         if ($ViewMem['Website']=="http://"||$ViewMem['Website']==null||
254         strtolower($ViewMem['Avatar'])=="noavatar") {
255         @session_write_close();
256         @header("Location: ".$BoardURL."index.php?act=view"); } }
257 ?>
258 <div class="Table1Border">
259 <table class="Table1">
260 <tr class="TableRow1">
261 <td class="TableRow1" colspan="2"><span style="float: left;">
262 <?php echo $ThemeSet['TitleIcon'] ?><a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=view&id=".$_GET['id'],$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">Viewing Profile</a>
263 </span><span style="float: right;">&nbsp;</span></td>
264 </tr>
265 <tr id="Member" class="TableRow2">
266 <th class="TableRow2" style="width: 50%;">Avatar</th>
267 <th class="TableRow2" style="width: 50%;">User Info</th>
268 </tr>
269 <tr class="TableRow3" id="MemberProfile">
270 <td class="TableRow3">
271 <?php  /* Avatar Table Thanks For SeanJ's Help at http://seanj.jcink.com/ */  ?>
272  <table class="AvatarTable" style="width: 100%; height: 100px; text-align: center;">
273         <tr class="AvatarRow" style="width: 100px; height: 100px;">
274                 <td class="AvatarRow" style="width: 100%; height: 100%; text-align: center; vertical-align: middle;">
275                 <img src="<?php echo $ViewMem['Avatar']; ?>" alt="<?php echo $ViewMem['Name']; ?>'s Avatar" title="<?php echo $ViewMem['Name']; ?>'s Avatar" style="border: 0px; width: <?php echo $AvatarSize1W; ?>px; height: <?php echo $AvatarSize1H; ?>px;" />
276                 </td>
277         </tr>
278  </table>
279 <div style="text-align: center;">
280 Name: <?php echo $ViewMem['Name']; ?><br />
281 Title: <?php echo $ViewMem['Title']; ?></div>
282 </td>
283 <td class="TableRow3">
284 &nbsp;User Name: <?php echo $ViewMem['Name']; ?><br />
285 &nbsp;User Title: <?php echo $ViewMem['Title']; ?><br />
286 &nbsp;User Group: <?php echo $ViewMem['Group']; ?><br />
287 &nbsp;User Joined: <?php echo $ViewMem['Joined']; ?><br />
288 &nbsp;Last Active: <?php echo $ViewMem['LastActive']; ?><br />
289 &nbsp;User Time: <?php echo GMTimeGet("M j Y, g:i a",$ViewMem['TimeZone'],0,$ViewMem['DST']); ?><br />
290 &nbsp;User Website: <a href="<?php echo $ViewMem['Website']; ?>" onclick="window.open(this.href);return false;">Website</a><br />
291 &nbsp;Post Count: <?php echo $ViewMem['PostCount']; ?><br />
292 &nbsp;Interests: <?php echo $ViewMem['Interests']; ?><br />
293 </td>
294 </tr>
295 <tr class="TableRow4">
296 <td class="TableRow4" colspan="2">&nbsp;</td>
297 </tr>
298 </table></div>
299 <?php } @mysql_free_result($result);
300 if($_GET['act']=="logout") {
301 @session_unset();
302 if($cookieDomain==null) {
303 @setcookie("MemberName", null, GMTimeStamp() - 3600, $cbasedir);
304 @setcookie("UserID", null, GMTimeStamp() - 3600, $cbasedir);
305 @setcookie("SessPass", null, GMTimeStamp() - 3600, $cbasedir);
306 @setcookie(session_name(), "", GMTimeStamp() - 3600, $cbasedir); }
307 if($cookieDomain!=null) {
308 if($cookieSecure===true) {
309 @setcookie("MemberName", null, GMTimeStamp() - 3600, $cbasedir, $cookieDomain, 1);
310 @setcookie("UserID", null, GMTimeStamp() - 3600, $cbasedir, $cookieDomain, 1);
311 @setcookie("SessPass", null, GMTimeStamp() - 3600, $cbasedir, $cookieDomain, 1);
312 @setcookie(session_name(), "", GMTimeStamp() - 3600, $cbasedir, $cookieDomain, 1); }
313 if($cookieSecure===false) {
314 @setcookie("MemberName", null, GMTimeStamp() - 3600, $cbasedir, $cookieDomain);
315 @setcookie("UserID", null, GMTimeStamp() - 3600, $cbasedir, $cookieDomain);
316 @setcookie("SessPass", null, GMTimeStamp() - 3600, $cbasedir, $cookieDomain);
317 @setcookie(session_name(), "", GMTimeStamp() - 3600, $cbasedir, $cookieDomain); } }
318 unset($_COOKIE[session_name()]);
319 $_SESSION = array();
320 @session_unset();
321 @session_destroy();
322 @redirect("location",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=login",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],false));
323 ob_clean(); @header("Content-Type: text/plain; charset=".$Settings['charset']);
324 gzip_page($Settings['use_gzip'],$GZipEncode['Type']); @mysql_close(); die(); }
325 if($_GET['act']=="login") {
326 if($_SESSION['UserID']!=0&&$_SESSION['UserID']!=null) { 
327 redirect("location",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=logout",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],false));
328 ob_clean(); @header("Content-Type: text/plain; charset=".$Settings['charset']);
329 gzip_page($Settings['use_gzip'],$GZipEncode['Type']); @mysql_close(); die(); }
330 if($_SESSION['UserID']==0||$_SESSION['UserID']==null) {
331 $membertitle = " ".$ThemeSet['TitleDivider']." Login";
332 ?>
333 <div class="Table1Border">
334 <table class="Table1">
335 <tr class="TableRow1">
336 <td class="TableRow1"><span style="float: left;">
337 <?php echo $ThemeSet['TitleIcon'] ?><a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=login",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">Log in</a>
338 </span><span style="float: right;">&nbsp;</span></td>
339 </tr>
340 <tr class="TableRow2">
341 <th class="TableRow2" style="width: 100%; text-align: left;">&nbsp;Inert your login info: </th>
342 </tr>
343 <tr class="TableRow3">
344 <td class="TableRow3">
345 <form style="display: inline;" method="post" action="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=login_now",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">
346 <table style="text-align: left;">
347 <tr style="text-align: left;">
348         <td style="width: 30%;"><label class="TextBoxLabel" for="username">Enter UserName: </label></td>
349         <td style="width: 70%;"><input maxlength="24" class="TextBox" id="username" type="text" name="username" /></td>
350 </tr><tr style="text-align: left;">
351         <td style="width: 30%;"><label class="TextBoxLabel" for="userpass">Enter Password: </label></td>
352         <td style="width: 70%;"><input maxlength="30" class="TextBox" id="userpass" type="password" name="userpass" /></td>
353 </tr><tr style="text-align: left;">
354         <td style="width: 30%;"><label class="TextBoxLabel" title="Store userinfo as a cookie so you dont need to login again." for="storecookie">Store as cookie?</label></td>
355         <td style="width: 70%;"><select id="storecookie" name="storecookie" class="TextBox">
356 <option value="true">Yes</option>
357 <option value="false">No</option>
358 </select></td>
359 </tr></table>
360 <table style="text-align: left;">
361 <tr style="text-align: left;">
362 <td style="width: 100%;">
363 <input type="hidden" name="act" value="loginmember" style="display: none;" />
364 <input class="Button" type="submit" value="Log in" />
365 </td></tr></table>
366 </form>
367 </td>
368 </tr>
369 <tr class="TableRow4">
370 <td class="TableRow4">&nbsp;</td>
371 </tr>
372 </table></div>
373 <?php } } if($_POST['act']=="loginmember"&&$_GET['act']=="login_now") {
374 if($_SESSION['UserID']!=0&&$_SESSION['UserID']!=null) { 
375 redirect("location",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=logout",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],false));
376 ob_clean(); @header("Content-Type: text/plain; charset=".$Settings['charset']);
377 gzip_page($Settings['use_gzip'],$GZipEncode['Type']); @mysql_close(); die(); }
378 if($_SESSION['UserID']==0||$_SESSION['UserID']==null) {
379 $membertitle = " ".$ThemeSet['TitleDivider']." Login";
380 $REFERERurl = parse_url($_SERVER['HTTP_REFERER']);
381 $URL['REFERER'] = $REFERERurl['host'];
382 $URL['HOST'] = $_SERVER["SERVER_NAME"];
383 $REFERERurl = null;
384 ?>
385 <div class="Table1Border">
386 <table class="Table1">
387 <tr class="TableRow1">
388 <td class="TableRow1">
389 <span style="float: left;">&nbsp;<a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=login",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">Log in</a></span>
390 <span style="float: right;">&nbsp;</span></td>
391 </tr>
392 <tr class="TableRow2">
393 <th class="TableRow2" style="width: 100%; text-align: left;">&nbsp;Login Message: </th>
394 </tr>
395 <tr class="TableRow3">
396 <td class="TableRow3">
397 <table style="width: 100%; height: 25%; text-align: center;">
398 <?php
399 if (pre_strlen($_POST['userpass'])>="30") { $Error="Yes";  ?>
400 <tr>
401         <td><span class="TableMessage">
402         <br />Your password is too big.<br />
403         </span>&nbsp;</td>
404 </tr>
405 <?php } if (pre_strlen($_POST['username'])>="24") { $Error="Yes";  ?>
406 <tr>
407         <td><span class="TableMessage">
408         <br />Your user name is too big.<br />
409         </span>&nbsp;</td>
410 </tr>
411 <?php } if ($Settings['TestReferer']===true) {
412         if ($URL['HOST']!=$URL['REFERER']) { $Error="Yes";  ?>
413 <tr>
414         <td><span class="TableMessage">
415         <br />Sorry the referering url dose not match our host name.<br />
416         </span>&nbsp;</td>
417 </tr>
418 <?php } } $BanError = null;
419 if ($Error=="Yes") {
420 @redirect("refresh",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=login",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],false),"4"); }
421 if($Error!="Yes"){
422 $YourName = stripcslashes(htmlspecialchars($_POST['username'], ENT_QUOTES, $Settings['charset']));
423 //$YourName = preg_replace("/&amp;#(x[a-f0-9]+|[0-9]+);/i", "&#$1;", $YourName);
424 $YourName = @remove_spaces($YourName);
425 $passtype="ODFH";
426 $querylog = query("SELECT * FROM `".$Settings['sqltable']."members` WHERE `Name`='%s' LIMIT 1", array($YourName));
427 $resultlog=mysql_query($querylog);
428 $numlog=mysql_num_rows($resultlog);
429 if($numlog>=1) {
430 $i=0;
431 $YourPassTry=mysql_result($resultlog,$i,"Password");
432 $HashType=mysql_result($resultlog,$i,"HashType");
433 $JoinedPass=mysql_result($resultlog,$i,"Joined");
434 $HashSalt=mysql_result($resultlog,$i,"Salt");
435 $UpdateHash = false;
436 if($HashType=="ODFH") { $YourPassword = sha1(md5($_POST['userpass'])); }
437 if($HashType=="DF4H") { $YourPassword = b64e_hmac($_POST['userpass'],$JoinedPass,$HashSalt,"sha1"); }
438 if($HashType=="iDBH"||$UpdateHash!==true) { $YourPassword = b64e_hmac($_POST['userpass'],$JoinedPass,$HashSalt,"sha1"); }
439 if($YourPassword!=$YourPassTry) { $passright = false; } 
440 if($YourPassword==$YourPassTry) { $passright = true;
441 $YourIDM=mysql_result($resultlog,$i,"id");
442 $YourNameM=mysql_result($resultlog,$i,"Name");
443 $YourPassM=mysql_result($resultlog,$i,"Password");
444 $PostCount=mysql_result($resultlog,$i,"PostCount");
445 $YourGroupM=mysql_result($resultlog,$i,"GroupID");
446 $YourBanTime=mysql_result($resultlog,$i,"BanTime");
447 $CGMTime = GMTimeStamp();
448 if($YourBanTime!=0&&$YourBanTime!=null) {
449 if($YourBanTime>=$CGMTime) { $BanError = "yes"; } }
450 $gquery = query("SELECT * FROM `".$Settings['sqltable']."groups` WHERE `id`=%i LIMIT 1", array($YourGroupM));
451 $gresult=mysql_query($gquery);
452 $YourGroupM=mysql_result($gresult,0,"Name");
453 @mysql_free_result($gresult);
454 $YourTimeZoneM=mysql_result($resultlog,$i,"TimeZone");
455 $YourDSTM=mysql_result($resultlog,$i,"DST");
456 $JoinedDate=mysql_result($resultlog,$i,"Joined");
457 $UseTheme=mysql_result($resultlog,$i,"UseTheme");
458 $NewHashSalt = salt_hmac();
459 $NewPassword = b64e_hmac($_POST['userpass'],$JoinedPass,$NewHashSalt,"sha1");
460 $NewDay=GMTimeStamp();
461 $NewIP=$_SERVER['REMOTE_ADDR'];
462 if($BanError!="yes") {
463 $queryup = query("UPDATE `".$Settings['sqltable']."members` SET `Password`='%s',`HashType`='iDBH',`LastActive`=%i,`IP`='%s',`Salt`='%s' WHERE `id`=%i", array($NewPassword,$NewDay,$NewIP,$NewHashSalt,$YourIDM));
464 mysql_query($queryup);
465 @mysql_free_result($resultlog); @mysql_free_result($queryup);
466 //session_regenerate_id();
467 $_SESSION['Theme']=$UseTheme;
468 $_SESSION['MemberName']=$YourNameM;
469 $_SESSION['UserID']=$YourIDM;
470 $_SESSION['UserTimeZone']=$YourTimeZoneM;
471 $_SESSION['UserGroup']=$YourGroupM;
472 $_SESSION['UserDST']=$YourDSTM;
473 $_SESSION['UserPass']=$NewPassword;
474 $_SESSION['DBName']=$Settings['sqldb'];
475 if($_POST['storecookie']===true) {
476 if($cookieDomain==null) {
477 @setcookie("MemberName", $YourNameM, time() + (7 * 86400), $cbasedir);
478 @setcookie("UserID", $YourIDM, time() + (7 * 86400), $cbasedir);
479 @setcookie("SessPass", $NewPassword, time() + (7 * 86400), $cbasedir); }
480 if($cookieDomain!=null) {
481 if($cookieSecure===true) {
482 @setcookie("MemberName", $YourNameM, time() + (7 * 86400), $cbasedir, $cookieDomain, 1);
483 @setcookie("UserID", $YourIDM, time() + (7 * 86400), $cbasedir, $cookieDomain, 1);
484 @setcookie("SessPass", $NewPassword, time() + (7 * 86400), $cbasedir, $cookieDomain, 1); }
485 if($cookieSecure===false) {
486 @setcookie("MemberName", $YourNameM, time() + (7 * 86400), $cbasedir, $cookieDomain);
487 @setcookie("UserID", $YourIDM, time() + (7 * 86400), $cbasedir, $cookieDomain);
488 @setcookie("SessPass", $NewPassword, time() + (7 * 86400), $cbasedir, $cookieDomain); } } } }
489 } } if($numlog<=0) {
490 //echo "Password was not right or user not found!! <_< ";
491 } ?>
492 <?php if($passright===true&&$BanError!="yes") {
493 @redirect("refresh",$basedir.url_maker($exfile['index'],$Settings['file_ext'],"act=view",$Settings['qstr'],$Settings['qsep'],$prexqstr['index'],$exqstr['index'],false),"3"); ?>
494 <tr>
495         <td><span class="TableMessage">
496         <br />Welcome to the Board <?php echo $_SESSION['MemberName']; ?>. ^_^<br />
497         Click <a href="<?php echo url_maker($exfile['index'],$Settings['file_ext'],"act=view",$Settings['qstr'],$Settings['qsep'],$prexqstr['index'],$exqstr['index']); ?>">here</a> to continue to board.<br />&nbsp;
498         </span><br /></td>
499 </tr>
500 <?php } if($passright===false||$BanError=="yes") { ?>
501 <tr>
502         <td><span class="TableMessage">
503         <br />Password was not right or user not found or user is banned!! &lt;_&lt;<br />
504         Click <a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=login",$Settings['qstr'],$Settings['qsep'],$exqstr['member'],$prexqstr['member']); ?>">here</a> to try again.<br />&nbsp;
505         </span><br /></td>
506 </tr>
507 <?php } } ?>
508 </table>
509 </td></tr>
510 <tr class="TableRow4">
511 <td class="TableRow4">&nbsp;</td>
512 </tr>
513 </table></div>
514 <?php } } if($_GET['act']=="signup") { 
515 $membertitle = " ".$ThemeSet['TitleDivider']." Signing up"; 
516 if($_SESSION['UserID']!=0&&$_SESSION['UserID']!=null) { 
517 redirect("location",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=logout",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],false));
518 ob_clean(); @header("Content-Type: text/plain; charset=".$Settings['charset']);
519 gzip_page($Settings['use_gzip'],$GZipEncode['Type']); @mysql_close(); die(); }
520 if($_SESSION['UserID']==0||$_SESSION['UserID']==null) {
521 ?>
522 <div class="Table1Border">
523 <table class="Table1">
524 <tr class="TableRow1">
525 <td class="TableRow1"><span style="float: left;">
526 <?php echo $ThemeSet['TitleIcon'] ?><a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=signup",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">Register</a>
527 </span><span style="float: right;">&nbsp;</span></td>
528 </tr>
529 <tr class="TableRow2">
530 <th class="TableRow2" style="width: 100%; text-align: left;">&nbsp;Inert your user info: </th>
531 </tr>
532 <tr class="TableRow3">
533 <td class="TableRow3">
534 <form style="display: inline;" method="post" action="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=makemember",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member']); ?>">
535 <table style="text-align: left;">
536 <tr style="text-align: left;">
537         <td style="width: 30%;"><label class="TextBoxLabel" for="Name">Insert a UserName:</label></td>
538         <td style="width: 70%;"><input maxlength="24" type="text" class="TextBox" name="Name" size="20" id="Name" /></td>
539 </tr><tr>
540         <td style="width: 30%;"><label class="TextBoxLabel" for="Password">Insert a Password:</label></td>
541         <td style="width: 70%;"><input maxlength="30" type="password" class="TextBox" name="Password" size="20" id="Password" /></td>
542 </tr><tr>
543         <td style="width: 30%;"><label class="TextBoxLabel" for="RePassword">ReInsert a Password:</label></td>
544         <td style="width: 70%;"><input maxlength="30" type="password" class="TextBox" name="RePassword" size="20" id="RePassword" /></td>
545 </tr><tr>
546         <td style="width: 30%;"><label class="TextBoxLabel" for="Email">Insert Your Email:</label></td>
547         <td style="width: 70%;"><input type="text" class="TextBox" name="Email" size="20" id="Email" /></td>
548 </tr><tr>
549         <td style="width: 30%;"><label class="TextBoxLabel" for="YourOffSet">Your TimeZone:</label></td>
550         <td style="width: 70%;"><select id="YourOffSet" name="YourOffSet" class="TextBox"><?php
551 $tsa_mem = explode(":",$Settings['DefaultTimeZone']);
552 $TimeZoneArray = array("offset" => $Settings['DefaultTimeZone'], "hour" => $tsa_mem[0], "minute" => $tsa_mem[1]);
553 $plusi = 1; $minusi = 12;
554 $plusnum = 13; $minusnum = 0;
555 while ($minusi > $minusnum) {
556 if($TimeZoneArray['hour']==-$minusi) {
557 echo "<option selected=\"selected\" value=\"-".$minusi."\">GMT - ".$minusi.":00 hours</option>\n"; }
558 if($TimeZoneArray['hour']!=-$minusi) {
559 echo "<option value=\"-".$minusi."\">GMT - ".$minusi.":00 hours</option>\n"; }
560 --$minusi; }
561 if($TimeZoneArray['hour']==0) { ?>
562 <option selected="selected" value="0">GMT +/- 0:00 hours</option>
563 <?php } if($TimeZoneArray['hour']!=0) { ?>
564 <option value="0">GMT +/- 0:00 hours</option>
565 <?php }
566 while ($plusi < $plusnum) {
567 if($TimeZoneArray['hour']==$plusi) {
568 echo "<option selected=\"selected\" value=\"".$plusi."\">GMT + ".$plusi.":00 hours</option>\n"; }
569 if($TimeZoneArray['hour']!=$plusi) {
570 echo "<option value=\"".$plusi."\">GMT + ".$plusi.":00 hours</option>\n"; }
571 ++$plusi; }
572 ?></select></td>
573 </tr><tr>
574         <td style="width: 50%;"><label class="TextBoxLabel" for="MinOffSet">Minute OffSet:</label></td>
575         <td style="width: 50%;"><select id="MinOffSet" name="MinOffSet" class="TextBox"><?php
576 $mini = 0; $minnum = 60;
577 while ($mini < $minnum) {
578 if(pre_strlen($mini)==2) { $showmin = $mini; }
579 if(pre_strlen($mini)==1) { $showmin = "0".$mini; }
580 if($mini==$TimeZoneArray['minute']) {
581 echo "\n<option selected=\"selected\" value=\"".$showmin."\">0:".$showmin." minutes</option>\n"; }
582 if($mini!=$TimeZoneArray['minute']) {
583 echo "<option value=\"".$showmin."\">0:".$showmin." minutes</option>\n"; }
584 ++$mini; }
585 ?></select></td>
586 </tr><tr>
587         <td style="width: 30%;"><label class="TextBoxLabel" for="DST">Is <span title="Daylight Savings Time">DST</span> / <span title="Summer Time">ST</span> on or off:</label></td>
588         <td style="width: 70%;"><select id="DST" name="DST" class="TextBox"><?php echo "\n" ?>
589 <?php if($Settings['DefaultDST']=="off"||$Settings['DefaultDST']!="on") { ?>
590 <option selected="selected" value="off">off</option><?php echo "\n" ?><option value="on">on</option>
591 <?php } if($Settings['DefaultDST']=="on") { ?>
592 <option selected="selected" value="on">on</option><?php echo "\n" ?><option value="off">off</option>
593 <?php } echo "\n" ?></select></td>
594 </tr><tr>
595         <td style="width: 30%;"><label class="TextBoxLabel" for="YourGender">Your Gender:</label></td>
596         <td style="width: 70%;"><select id="YourGender" name="YourGender" class="TextBox">
597 <option value="Male">Male</option>
598 <option value="Female">Female</option>
599 <option value="Unknow">Unknow</option>
600 </select></td>
601 </tr><tr>
602         <td style="width: 30%;"><label class="TextBoxLabel" for="Website">Insert your Website:</label></td>
603         <td style="width: 70%;"><input type="text" class="TextBox" name="Website" size="20" value="http://" id="Website" /></td>
604 </tr><tr>
605         <td style="width: 30%;"><label class="TextBoxLabel" for="Avatar">Insert a URL for Avatar:</label></td>
606         <td style="width: 70%;"><input type="text" class="TextBox" name="Avatar" size="20" value="http://" id="Avatar" /></td>
607 </tr><tr>
608         <td style="width: 30%;"><label class="TextBoxLabel" title="Store userinfo as a cookie so you dont need to login again." for="storecookie">Store as cookie?</label></td>
609         <td style="width: 70%;"><select id="storecookie" name="storecookie" class="TextBox">
610 <option value="true">Yes</option>
611 <option value="false">No</option>
612 </select></td>
613 </tr>
614 </table>
615 <table style="text-align: left;">
616 <tr style="text-align: left;">
617 <td style="width: 100%;">
618 <label class="TextBoxLabel" for="TOSBox">TOS - Please read fully and check 'I agree' box ONLY if you agree to terms</label><br />
619 <textarea rows="10" cols="58" id="TOSBox" name="TOSBox" class="TextBox" readonly="readonly" accesskey="T"><?php 
620         echo file_get_contents("TOS");  ?></textarea><br />
621 <input type="checkbox" class="TextBox" name="TOS" value="Agree" id="TOS" /><label class="TextBoxLabel" for="TOS">I Agree</label>
622 <?php if($Settings['use_captcha']!="on") { ?><br />
623 <?php } if($Settings['use_captcha']=="on") { ?>
624 </td></tr>
625 <tr style="text-align: left;">
626 <td style="width: 100%;">
627 <label class="TextBoxLabel" for="signcode"><img src="index.php?act=MkCaptcha" alt="CAPTCHA Code" title="CAPTCHA Code" /></label><br />
628 <input maxlength="25" type="text" class="TextBox" name="signcode" size="20" id="signcode" value="Enter SignCode" /><br /><?php } ?>
629 <input type="hidden" style="display: none;" name="act" value="makemembers" />
630 <input type="submit" class="Button" value="Sign UP" />
631 </td></tr>
632 </table>
633 </form>
634 </td>
635 </tr>
636 <tr class="TableRow4">
637 <td class="TableRow4">&nbsp;</td>
638 </tr>
639 </table></div>
640 <?php } } if($_GET['act']=="makemember") {
641         if($_POST['act']=="makemembers") {
642 if($_SESSION['UserID']!=0&&$_SESSION['UserID']!=null) { 
643 redirect("location",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=logout",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],false));
644 ob_clean(); @header("Content-Type: text/plain; charset=".$Settings['charset']);
645 gzip_page($Settings['use_gzip'],$GZipEncode['Type']); @mysql_close(); die(); }
646 if($_SESSION['UserID']==0||$_SESSION['UserID']==null) {
647 $membertitle = " ".$ThemeSet['TitleDivider']." Signing up";
648 $REFERERurl = parse_url($_SERVER['HTTP_REFERER']);
649 $URL['REFERER'] = $REFERERurl['host'];
650 $URL['HOST'] = $_SERVER["SERVER_NAME"];
651 $REFERERurl = null;
652 if(!isset($_POST['username'])) { $_POST['username'] = null; }
653 if(!isset($_POST['TOS'])) { $_POST['TOS'] = null; }
654  if($Settings['use_captcha']=="on") {
655 require($SettDir['inc']."captcha.php"); }
656 ?>
657 <div class="Table1Border">
658 <table class="Table1">
659 <tr class="TableRow1">
660 <td class="TableRow1"><span style="float: right;">&nbsp;</span>
661 &nbsp;<a href="<?php echo url_maker($exfile['messenger'],$Settings['file_ext'],"act=signup",$Settings['qstr'],$Settings['qsep'],$prexqstr['messenger'],$exqstr['messenger']); ?>">Register</a></td>
662 </tr>
663 <tr class="TableRow2">
664 <th class="TableRow2" style="width: 100%; text-align: left;">&nbsp;Signup Message: </th>
665 </tr>
666 <tr class="TableRow3">
667 <td class="TableRow3">
668 <table style="width: 100%; height: 25%; text-align: center;">
669 <?php if (pre_strlen($_POST['Password'])>="30") { $Error="Yes";  ?>
670 <tr>
671         <td><span class="TableMessage">
672         <br />Your password is too big.<br />
673         </span>&nbsp;</td>
674 </tr>
675 <?php } if (pre_strlen($_POST['username'])>="24") { $Error="Yes";  ?>
676 <tr>
677         <td><span class="TableMessage">
678         <br />Your user name is too big.<br />
679         </span>&nbsp;</td>
680 </tr>
681 <?php } if ($_POST['Password']!=$_POST['RePassword']) { $Error="Yes";  ?>
682 <tr>
683         <td><span class="TableMessage">
684         <br />Your passwords did not match.<br />
685         </span>&nbsp;</td>
686 </tr>
687 <?php } if($Settings['use_captcha']=="on") {
688 if (PhpCaptcha::Validate($_POST['signcode'])) {
689 //echo 'Valid code entered';
690 } else { $Error="Yes"; ?>
691 <tr>
692         <td><span class="TableMessage">
693         <br />Invalid code entered<br />
694         </span>&nbsp;</td>
695 </tr>
696 <?php } } if ($Settings['TestReferer']===true) {
697         if ($URL['HOST']!=$URL['REFERER']) { $Error="Yes";  ?>
698 <tr>
699         <td><span class="TableMessage">
700         <br />Sorry the referering url dose not match our host name.<br />
701         </span>&nbsp;</td>
702 </tr>
703 <?php } }
704 $Name = stripcslashes(htmlspecialchars($_POST['Name'], ENT_QUOTES, $Settings['charset']));
705 //$Name = preg_replace("/&amp;#(x[a-f0-9]+|[0-9]+);/i", "&#$1;", $Name);
706 $Name = @remove_spaces($Name);
707 $lonewolfqy=query("SELECT * FROM `".$Settings['sqltable']."restrictedwords` WHERE `RestrictedUserName`='yes'", array(null));
708 $lonewolfrt=mysql_query($lonewolfqy);
709 $lonewolfnm=mysql_num_rows($lonewolfrt);
710 $lonewolfs=0; $RMatches = null;
711 while ($lonewolfs < $lonewolfnm) {
712 $RWord=mysql_result($lonewolfrt,$lonewolfs,"Word");
713 $RCaseInsensitive=mysql_result($lonewolfrt,$lonewolfs,"CaseInsensitive");
714 if($RCaseInsensitive=="on") { $RCaseInsensitive = "yes"; }
715 if($RCaseInsensitive=="off") { $RCaseInsensitive = "no"; }
716 if($RCaseInsensitive!="yes"||$RCaseInsensitive!="no") { $RCaseInsensitive = "no"; }
717 $RWholeWord=mysql_result($lonewolfrt,$lonewolfs,"WholeWord");
718 if($RWholeWord=="on") { $RWholeWord = "yes"; }
719 if($RWholeWord=="off") { $RWholeWord = "no"; }
720 if($RWholeWord!="yes"||$RWholeWord!="no") { $RWholeWord = "no"; }
721 $RWord = preg_quote($RWord, "/");
722 if($RCaseInsensitive!="yes"&&$RWholeWord=="yes") {
723 $RMatches = preg_match("/\b(".$RWord.")\b/", $Name);
724         if($RMatches==true) { break 1; } }
725 if($RCaseInsensitive=="yes"&&$RWholeWord=="yes") {
726 $RMatches = preg_match("/\b(".$RWord.")\b/i", $Name);
727         if($RMatches==true) { break 1; } }
728 if($RCaseInsensitive!="yes"&&$RWholeWord!="yes") {
729 $RMatches = preg_match("/".$RWord."/", $Name);
730         if($RMatches==true) { break 1; } }
731 if($RCaseInsensitive=="yes"&&$RWholeWord!="yes") {
732 $RMatches = preg_match("/".$RWord."/i", $Name);
733         if($RMatches==true) { break 1; } }
734 ++$lonewolfs; } @mysql_free_result($lonewolfrt);
735 $sql_email_check = mysql_query(query("SELECT `Email` FROM `".$Settings['sqltable']."members` WHERE `Email`='%s'", array($_POST['Email'])));
736 $sql_username_check = mysql_query(query("SELECT `Name` FROM `".$Settings['sqltable']."members` WHERE `Name`='%s'", array($Name)));
737 $email_check = mysql_num_rows($sql_email_check); 
738 $username_check = mysql_num_rows($sql_username_check);
739 @mysql_free_result($sql_email_check); @mysql_free_result($sql_username_check);
740 if ($_POST['TOS']!="Agree") { $Error="Yes";  ?>
741 <tr>
742         <td><span class="TableMessage">
743         <br />You need to  agree to the tos.<br />
744         </span>&nbsp;</td>
745 </tr>
746 <?php } if ($_POST['Name']==null) { $Error="Yes"; ?>
747 <tr>
748         <td><span class="TableMessage">
749         <br />You need to enter a name.<br />
750         </span>&nbsp;</td>
751 </tr>
752 <?php } if ($_POST['Name']=="ShowMe") { $Error="Yes"; ?>
753 <tr>
754         <td><span class="TableMessage">
755         <br />You need to enter a name.<br />
756         </span>&nbsp;</td>
757 </tr>
758 <?php } if ($_POST['Password']==null) { $Error="Yes"; ?>
759 <tr>
760         <td><span class="TableMessage">
761         <br />You need to enter a password.<br />
762         </span>&nbsp;</td>
763 </tr>
764 <?php } if ($_POST['Email']==null) { $Error="Yes"; ?>
765 <tr>
766         <td><span class="TableMessage">
767         <br />You need to enter a email.<br />
768         </span>&nbsp;</td>
769 </tr>
770 <?php } if($email_check > 0) { $Error="Yes"; ?>
771 <tr>
772         <td><span class="TableMessage">
773         <br />Email address is already used.<br />
774         </span>&nbsp;</td>
775 </tr>
776 <?php } if($username_check > 0) { $Error="Yes"; ?>
777 <tr>
778         <td><span class="TableMessage">
779         <br />User Name is already used.<br />
780         </span>&nbsp;</td>
781 </tr>
782 <?php } if($RMatches==true) { $Error="Yes"; ?>
783 <tr>
784         <td><span class="TableMessage">
785         <br />This User Name is restricted to use.<br />
786         </span>&nbsp;</td>
787 </tr>
788 <?php } if ($Error=="Yes") {
789 @redirect("refresh",$basedir.url_maker($exfile['member'],$Settings['file_ext'],"act=signup",$Settings['qstr'],$Settings['qsep'],$prexqstr['member'],$exqstr['member'],FALSE),"4"); ?>
790 <tr>
791         <td><span class="TableMessage">
792         <br />Click <a href="<?php echo url_maker($exfile['member'],$Settings['file_ext'],"act=signup",$Settings['qstr'],$Settings['qsep'],$exqstr['member'],$prexqstr['member']); ?>">here</a> to try again.<br />&nbsp;
793         </span><br /></td>
794 </tr>
795 <?php } if ($Error!="Yes") {
796 $_POST['UserIP'] = $_SERVER['REMOTE_ADDR'];
797 $_POST['Group'] = $Settings['MemberGroup'];
798 $_POST['Joined'] = GMTimeStamp(); $_POST['LastActive'] = GMTimeStamp();
799 $_POST['Signature'] = ""; $_POST['Interests'] = "";
800 $_POST['Title'] = ""; $_POST['PostCount'] = "0";
801 if($Settings['AdminValidate']===true||$Settings['AdminValidate']!==false)
802 { $ValidateStats="no"; $yourgroup=$Settings['ValidateGroup']; }
803 if($Settings['AdminValidate']===false)
804 { $ValidateStats="yes"; $yourgroup=$Settings['MemberGroup']; }
805 $HashSalt = salt_hmac(); 
806 $NewPassword = b64e_hmac($_POST['Password'],$_POST['Joined'],$HashSalt,"sha1");
807 $_GET['YourPost'] = $_POST['Signature'];
808 //require( './'.$SettDir['misc'].'HTMLTags.php');
809 $_GET['YourPost'] = htmlspecialchars($_GET['YourPost'], ENT_QUOTES, $Settings['charset']);
810 //$_GET['YourPost'] = preg_replace("/&amp;#(x[a-f0-9]+|[0-9]+);/i", "&#$1;", $_GET['YourPost']);
811 $NewSignature = $_GET['YourPost'];
812 $_GET['YourPost'] = preg_replace("/\t+/"," ",$_GET['YourPost']);
813 $_GET['YourPost'] = preg_replace("/\s\s+/"," ",$_GET['YourPost']);
814 $_GET['YourPost'] = remove_bad_entities($_GET['YourPost']);
815 $Avatar = stripcslashes(htmlspecialchars($_POST['Avatar'], ENT_QUOTES, $Settings['charset']));
816 //$Avatar = preg_replace("/&amp;#(x[a-f0-9]+|[0-9]+);/i", "&#$1;", $Avatar);
817 $Avatar = @remove_spaces($Avatar);
818 $Website = stripcslashes(htmlspecialchars($_POST['Website'], ENT_QUOTES, $Settings['charset']));
819 //$Website = preg_replace("/&amp;#(x[a-f0-9]+|[0-9]+);/i", "&#$1;", $Website);
820 $Website = @remove_spaces($Website);
821 $gquerys = query("SELECT * FROM `".$Settings['sqltable']."groups` WHERE `Name`='%s' LIMIT 1", array($yourgroup));
822 $gresults=mysql_query($gquerys);
823 $yourgroup=mysql_result($gresults,0,"id");
824 @mysql_free_result($gresults);
825 $yourid = getnextid($Settings['sqltable'],"members");
826 $_POST['Interests'] = @remove_spaces($_POST['Interests']);
827 $_POST['Title'] = @remove_spaces($_POST['Title']);
828 $_POST['Email'] = @remove_spaces($_POST['Email']);
829 if(!is_numeric($_POST['YourOffSet'])) { $_POST['YourOffSet'] = "0"; }
830 if($_POST['YourOffSet']>12) { $_POST['YourOffSet'] = "12"; }
831 if($_POST['YourOffSet']<-12) { $_POST['YourOffSet'] = "-12"; }
832 if(!is_numeric($_POST['MinOffSet'])) { $_POST['MinOffSet'] = "00"; }
833 if($_POST['MinOffSet']>59) { $_POST['MinOffSet'] = "59"; }
834 if($_POST['MinOffSet']<0) { $_POST['MinOffSet'] = "00"; }
835 $_POST['YourOffSet'] = $_POST['YourOffSet'].":".$_POST['MinOffSet'];
836 $query = query("INSERT INTO `".$Settings['sqltable']."members` VALUES (".$yourid.",'%s','%s','%s','%s','%s','%s',%i,'%s','%s',%i,%i,'0','0','0','0','%s','%s','%s','%s','%s','%s',%i,'%s','%s','%s','%s','%s')", array($Name,$NewPassword,"iDBH",$_POST['Email'],$yourgroup,$ValidateStats,"0",$_POST['Interests'],$_POST['Title'],$_POST['Joined'],$_POST['LastActive'],$NewSignature,'Your Notes',$Avatar,"100x100",$Website,$_POST['YourGender'],$_POST['PostCount'],$_POST['YourOffSet'],$_POST['DST'],$Settings['DefaultTheme'],$_POST['UserIP'],$HashSalt));
837 mysql_query($query);
838 $querylogr = query("SELECT * FROM `".$Settings['sqltable']."members` WHERE `Name`='%s' AND `Password`='%s' LIMIT 1", array($Name,$NewPassword));
839 $resultlogr=mysql_query($querylogr);
840 $numlogr=mysql_num_rows($resultlogr);
841 if($numlogr>=1) {
842 $ir=0;
843 $YourIDMr=mysql_result($resultlogr,$ir,"id");
844 $YourNameMr=mysql_result($resultlogr,$ir,"Name");
845 $YourGroupMr=mysql_result($resultlogr,$ir,"GroupID");
846 $gquery = query("SELECT * FROM `".$Settings['sqltable']."groups` WHERE `id`=%i LIMIT 1", array($YourGroupMr));
847 $gresult=mysql_query($gquery);
848 $YourGroupMr=mysql_result($gresult,0,"Name");
849 @mysql_free_result($gresult);
850 $YourTimeZoneMr=mysql_result($resultlogr,$ir,"TimeZone");
851 $YourDSTMr=mysql_result($resultlogr,$ir,"DST"); }
852 @mysql_free_result($resultlogr);
853 @session_regenerate_id(true);
854 $_SESSION['Loggedin']=true;
855 $_SESSION['MemberName']=$YourNameMr;
856 $_SESSION['UserID']=$YourIDMr;
857 $_SESSION['UserTimeZone']=$YourTimeZoneMr;
858 $_SESSION['UserDST']=$YourDSTMr;
859 $_SESSION['UserGroup']=$YourGroupMr;
860 $_SESSION['UserPass']=$NewPassword;
861 $_SESSION['DBName']=$Settings['sqldb'];
862 if($_POST['storecookie']===true) {
863 if($cookieDomain==null) {
864 @setcookie("MemberName", $YourNameM, time() + (7 * 86400), $cbasedir);
865 @setcookie("UserID", $YourIDM, time() + (7 * 86400), $cbasedir);
866 @setcookie("SessPass", $NewPassword, time() + (7 * 86400), $cbasedir); }
867 if($cookieDomain!=null) {
868 if($cookieSecure===true) {
869 @setcookie("MemberName", $YourNameM, time() + (7 * 86400), $cbasedir, $cookieDomain, 1);
870 @setcookie("UserID", $YourIDM, time() + (7 * 86400), $cbasedir, $cookieDomain, 1);
871 @setcookie("SessPass", $NewPassword, time() + (7 * 86400), $cbasedir, $cookieDomain, 1); }
872 if($cookieSecure===false) {
873 @setcookie("MemberName", $YourNameM, time() + (7 * 86400), $cbasedir, $cookieDomain);
874 @setcookie("UserID", $YourIDM, time() + (7 * 86400), $cbasedir, $cookieDomain);
875 @setcookie("SessPass", $NewPassword, time() + (7 * 86400), $cbasedir, $cookieDomain); } } }
876 /*
877 $SendPMtoID=$_SESSION['UserID'];
878 $YourPMID = 1;
879 $PMTitle = "Welcome ".$Name.".";
880 $YourMessage = "Hello ".$Name.". Welcome to ".$Settings['board_name'].". I hope you enjoy your stay here. ^_^ ";
881 $_POST['YourDate'] = $_POST['Joined'];
882 $query = query("INSERT INTO `".$Settings['sqltable']."messenger` VALUES (null,%i,%i,'%s','%s','%s','%s',0)", array($YourPMID,$SendPMtoID,'',$PMTitle,$YourMessage,$_POST['YourDate']));
883 //mysql_query($query);
884 @redirect("refresh",$basedir.url_maker($exfile['index'],$Settings['file_ext'],"act=view",$Settings['qstr'],$Settings['qsep'],$prexqstr['index'],$exqstr['index'],FALSE),"3");
885 */
886 ?>
887 <tr>
888         <td><span class="TableMessage">
889         <br />Welcome to the Board <?php echo $_SESSION['MemberName']; ?>. ^_^<br />
890         Click <a href="<?php echo url_maker($exfile['index'],$Settings['file_ext'],"act=view",$Settings['qstr'],$Settings['qsep'],$prexqstr['index'],$exqstr['index']); ?>">here</a> to continue to board.<?php echo "\n"; 
891         if($Settings['AdminValidate']===true||$Settings['AdminValidate']!==false) {
892         echo "<br />The admin has to validate your account befoure you can post.\n";
893         echo "<br />The admin has been notified of your registration.\n"; } ?>
894         <br />&nbsp;
895         </span><br /></td>
896 </tr>
897 <?php } ?>
898 </table>
899 </td></tr>
900 <tr class="TableRow4">
901 <td class="TableRow4">&nbsp;</td>
902 </tr>
903 </table></div>
904 <?php } } } ?>
905 <div>&nbsp;</div>