? GR0V Shell

GR0V shell

Linux www.koreapackagetour.com 2.6.32-042stab145.3 #1 SMP Thu Jun 11 14:05:04 MSK 2020 x86_64

Path : /home/admin/domains/happytokorea.com/public_html_bk/wordpress/
File Upload :
Current File : /home/admin/domains/happytokorea.com/public_html_bk/wordpress/ServicesSave.php

<?
@session_start();
ob_start();
$usermem = $_SESSION["usermem"];
require_once "include/connectdb.php";
require_once "include/connect.php";
require_once "include/tdate.php";
if(empty($usermem)) 
{
$showmember = "
<table width=100% border=0 align=center cellpadding=1 cellspacing=1>
  <form method=post action=SignIn.php><tr> 
    <td width=32% align=right>ชื่อสมาชิก :</td>
    <td width=68%><input name=usermem type=text size=15></td>
  </tr>
  <tr> 
    <td align=right>รหัสผ่าน :</td>
    <td><input name=passmem type=password size=15></td>
  </tr>
  <tr> 
    <td>&nbsp;</td>
    <td><input name=submit type=submit class=submit value=เข้าสู่ระบบ!></td>
  </tr>
  <tr>
    <td>&nbsp;</td>
    <td>! <a href=ForgetPass.php>ลืมรหัสผ่าน</a></td>
  </tr></form>
</table>
";
}else{
$sql="select * from member where usermem='$usermem'";
						  $db_query=mysql_db_query($db,$sql);
						  $result=mysql_fetch_array($db_query);
						  $idxx=$result[id];
						  $usename=$result[name];
						  $user_mem=$result[usermem];
						  $pass_mem=$result[passmem];
$showmember = "
<div align=center><img src=images/user.gif width=25 height=15>ยินดีต้อนรับ :$usename
<br>[ <a href=CheckMyOrder.php>ประวัติสั่งซื้อสินค้า</a> ] 
<br>[ <a href=ChangePass.php>เปลี่ยนรหัสผ่าน</a> ] 
<br>[ <a href=Profiles.php>ข้อมูลส่วนตัว</a> ] 
<br>[<a href=Logout.php>ออกจากระบบ</a>] 
</div>
";
$myorder = "<a href=CheckMyOrder.php><img src=images/myorder.gif border=0><a>";
}
mysql_query("INSERT INTO services (id, productstypecode,spid,topic,message,dateregist,status) values('', '$_POST[productstypecode]','$_POST[spid]','$_POST[topic]','$_POST[message]','$e_date $time','00000')") or die ("Cannot Add Database");
?>
<html>
<head>
<title><? echo "$headtxt_web"; ?></title>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
<link href="css/instyle.css" rel="stylesheet" type="text/css">
<link href="css/style1.css" rel="stylesheet" type="text/css">
<link href="css/style.css" rel="stylesheet" type="text/css">
	<link rel="stylesheet" href="css/lightbox.css" type="text/css" media="screen" />
	
	<script src="css/jquery-latest.pack.js" type="text/javascript"></script>
	<script src="css/jquery.lightbox.js" type="text/javascript"></script>
	<script>
		$(document).ready(function(){
			$(".lightbox").lightbox();
		});

	</script>
<LINK href="css/contentslider2.css" type=text/css rel=stylesheet>
<STYLE type=text/css>BODY {
	MARGIN-TOP: 0px; MARGIN-LEFT: 0px
}
</STYLE>
 
<SCRIPT src="js/contentslider.js" type=text/javascript> 
 
 
</SCRIPT>
<script language="JavaScript" type="text/JavaScript">
<!--
function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}

function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}
//-->
</script>
<style>
.jc{
position:relative;
}
</style>

<script language="JavaScript1.2">
var ns6=document.getElementById&&!document.all
var ie=document.all

var customcollect=new Array()
var i=0

function jiggleit(num){
if ((!document.all&&!document.getElementById)) return;
customcollect[num].style.left=(parseInt(customcollect[num].style.left)==-1)? customcollect[num].style.left=1 : customcollect[num].style.left=-1
}

function init(){
if (ie){
while (eval("document.all.jiggle"+i)!=null){
customcollect[i]= eval("document.all.jiggle"+i)
i++
} 
}
else if (ns6){
while (document.getElementById("jiggle"+i)!=null){
customcollect[i]= document.getElementById("jiggle"+i)
i++
}
}

if (customcollect.length==1)
setInterval("jiggleit(0)",80)
else if (customcollect.length>1)
for (y=0;y<customcollect.length;y++){
var tempvariable='setInterval("jiggleit('+y+')",'+'100)'
eval(tempvariable)
}
}
window.onload=init
</script>
</head>
<body bgcolor="#ffffff" background="images/bg.gif">
<table width="1000" border="0" align="center" cellpadding="0" cellspacing="0">
  <!-- fwtable fwsrc="Untitled" fwbase="home.jpg" fwstyle="Dreamweaver" fwdocid = "742308039" fwnested="0" -->
  <tr>
   <td><img src="images/spacer.gif" width="423" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="16" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="225" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="315" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="21" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="1" height="1" border="0" alt=""></td>
  </tr>

  <tr>
   <td colspan="5"><img name="home_r1_c1" src="images/home_r1_c1.jpg" width="1000" height="20" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="1" height="20" border="0" alt=""></td>
  </tr>
  <tr>
   <td><img name="home_r2_c1" src="images/home_r2_c1.jpg" width="423" height="133" border="0" alt=""></td>
   <td colspan="2"><img name="home_r2_c2" src="images/home_r2_c2.jpg" width="241" height="133" border="0" alt=""></td>
    <td background="images/home_r2_c4.jpg"><div align="center"> <? echo "$showmember"; ?></div></td>
   <td><img name="home_r2_c5" src="images/home_r2_c5.jpg" width="21" height="133" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="1" height="133" border="0" alt=""></td>
  </tr>
  <tr>
    <td colspan="2"><img src="images/home_r3_c1.jpg" alt="" name="home_r3_c1" width="439" height="62" border="0" usemap="#home_r3_c1Map"></td>
    <td colspan="3"><img src="images/home_r3_c3.jpg" alt="" name="home_r3_c3" width="561" height="62" border="0" usemap="#home_r3_c3Map"></td>
   <td><img src="images/spacer.gif" width="1" height="62" border="0" alt=""></td>
  </tr>
  <tr>
    <td colspan="5" bgcolor="#FFFFFF"><div align="center">
        <table width="100%" border="0" cellspacing="0" cellpadding="0">
          <tr valign="top"> 
            <td width="245"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                <tr> 
                  <td><img src="images/h_prdtype.jpg" width="187" height="32"></td>
                </tr>
                <tr> 
                  <td> 
                    <?
$page = $_GET['page'];
$select_type="select * from productstype  order by id asc";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);

if($num_rows<1){
echo "<br><br><center><b>ยังไม่มีการเพิ่มข้อมูลค่ะ</b></center>";
}else{
		$select="select * from productstype  order by id asc";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=20;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="Select * From productstype  order by id asc limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idx =$rows['id'];
$productstypecode  =$rows['productstypecode'];
$productstypename = $rows['productstypename'];
$bgcount=$bgcount+1;
$bgmod=$bgcount%2;
if($bgmod==0){
	$bgcolor="#E9E9E8";
}else{
	$bgcolor="#FFFFFF";
}

$s_num="select * from products where productstypecode = '$productstypecode'";
$query_select_num=mysql_query($s_num);
$snum=mysql_num_rows($query_select_num);
	?>
                    <table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr> 
                        <td height="23"> <div align="left"></div>
                          <div align="left"></div>
                          <div align="center"> </div>
                          <div align="left"><img src="images/opened.gif" width="17" height="17"> 
                            <? echo "<a href=ProductList.php?PRD=$productstypecode>$productstypename</a> ($snum)"; ?></div></td>
                      </tr>
                      <tr> 
                        <td height="5"><img src="images/inline.jpg" width="184" height="3"></td>
                      </tr>
                    </table>
                    <?
}
}
?>
                  </td>
                </tr>
                <tr> 
                  <td>&nbsp;</td>
                </tr>
                <tr> 
                  <td bgcolor="#EAE4C7"><strong>
                    สินค้าขายดี 10 อันดับ</strong></td>
                </tr>
                <tr> 
                  <td> 
                    <?
$pages = $_GET['pages'];
$select_types="select * from products  order by id asc";
$query_selects=mysql_query($select_types);
$num_rowss=mysql_num_rows($query_selects);

if($num_rowss<1){
echo "<br><br><center><b>ยังไม่มีการเพิ่มข้อมูลค่ะ</b></center>";
}else{
		$selects="select * from products order by id asc";
		$q_rys = mysql_query($selects);
	 	$num_rowss=mysql_num_rows($q_rys);
  		$pagesizes=10;
		$rts=$num_rowss%$pagesizes;
		if($rts!=0)
			{
				$totalpages=floor($num_rowss/$pagesizes)+1;
			}
		else
			{
				$totalpages=floor($num_rows/$pagesizes);
				$toppic_ids=1;
			}
		if(empty($pages))
			{
				$pages=1;
			}
		mysql_free_result($q_rys);
		$gotos=($pages-1)*$pagesizes;
$sql_select_mems="Select * From products  order by stats desc limit $gotos,$pagesizes";
		$fects=mysql_query($sql_select_mems);
		if(!$fects)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcounts=0;
	while($rowss=mysql_fetch_array($fects))
	{
$idxs =$rowss['id'];
$productsNameShow = $rowss['productsname'];
$stats = $rowss['stats'];
$bgcounts=$bgcounts+1;
$bgmods=$bgcounts%2;
if($bgmods==0){
	$bgcolors="#E9E9E8";
}else{
	$bgcolors="#FFFFFF";
}
	?>
                    <table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr> 
                        <td height="23"> <div align="left"></div>
                          <div align="left"></div>
                          <div align="center"> </div>
                          <div align="left"><img src="images/opened.gif" width="17" height="17"> 
                            <? echo "<a href=ShowProducts.php?PrdID=$idxs>$productsNameShow</a> ($stats เครื่อง)"; ?></div></td>
                      </tr>
                      <tr> 
                        <td height="5"><img src="images/inline.jpg" width="184" height="3"></td>
                      </tr>
                    </table>
                    <?
}
}
?>
                  </td>
                </tr>
                <tr> 
                  <td><div align="center"><a href="https://www.paysbuy.com/signup.aspx" target="_blank"><br>
                      </a></div></td>
                </tr>
                <tr> 
                  <td><div align="center"><a href="Admin/"><img src="images/img_admin.jpg" width="93" height="28" border="0"></a><br>
                      เข้าสู่ระบบจัดการร้าน <br>
                      <br>
                      จำนวนคนเข้าชมเว็บ<br>
                      <u> 
                      <?
					  $sqlc="select * from counter where id=1";
						  $db_query=mysql_db_query($db,$sqlc);
						  $resultc=mysql_fetch_array($db_query);
						  $count=$resultc[count];
						  echo "$count";
						  ?>
                      </u> คน <br>
                      <br>
                    </div></td>
                </tr>
              </table></td>
            <td width="488"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                <tr> 
                  <td><img src="images/h_sp.jpg" width="484" height="96"></td>
                </tr>
                <tr>
                  <td><div align="center"><br>
                      <img src="images/loading.gif" width="32" height="32"><br>
                      แจ้งรายการซ่อมไปยังผู้รับผิดชอบเรียบร้อยแล้ว<br>
                      ขอบคุณค่ะ </div></td>
                </tr>
              </table></td>
            <td width="267"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                <tr> 
                  <td><table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr>
                        <td><a href="Services.php"><img src="images/sp_icon.jpg" width="248" height="76" border="0"></a></td>
                      </tr>
                      <tr> 
                        <td><img src="images/hr1.jpg" width="197" height="23"></td>
                      </tr>
                      <tr> 
                        <td><table width="100%" border="0" cellspacing="1" cellpadding="1">
                            <tr> 
                              <td> <img src="images/arrow.gif" width="7" height="8"> 
                                <a href="ReviewProducts.php">สินค้าโปรโมชั่น</a> 
                                <img src="images/gif_new.gif" width="26" height="12"> 
                                </td>
                            </tr>
                            <tr> 
                              <td><img src="images/arrow.gif" width="7" height="8"> 
                                ค้นหาสินค้าที่ต้องการ 
                                </td>
                            </tr>
                            <tr> 
                              <td> <script language="JavaScript">
function checksearch()
{
      var s1 = document.webFormSearch.txtsearch.value;

  if( s1.length ==0)
           {
           alert("กรุณาใส่คำที่ค้นหาด้วยค่ะ");
           document.webFormSearch.txtsearch.focus();           
           return false;
           }
         else
           return true;
}
</script> <table width="100%" border="0" cellspacing="1" cellpadding="1">
                                  <form method="post" action="Search.php" name="webFormSearch" onSubmit="return checksearch()">
                                    <tr> 
                                      <td width="87%"> <div align="right"> 
                                          <input name="txtsearch" type="text" class="inputxx" id="txtsearch" onClick="this.value='';" value="ค้นหาสินค้า" maxlength="15" />
                                        </div></td>
                                      <td width="13%"><input name="image" type=image src="images/icon_search.jpg" width="23" height="23" scr=images/icon_search.jpg></td>
                                    </tr>
                                    <tr> 
                                      <td><div align="right">  
                                          <input name="typesearch" type="radio" value="productscode" checked>
                                          รหัสสินค้า 
                                          <input type="radio" name="typesearch" value="productsname">
                                          ชื่อสินค้า </div></td>
                                      <td>&nbsp;</td>
                                    </tr>
                                  </form>
                                </table></td>
                            </tr>
                            <tr> 
                              <td><img src="images/arrow.gif" width="7" height="8"> 
                                <a href="ConfirmPayment.php">แจ้งการชำระเงินได้ที่นี่</a></td>
                            </tr>
                          </table></td>
                      </tr>
                      <tr> 
                        <td><img src="images/hr2.jpg" width="197" height="23"></td>
                      </tr>
                      <tr> 
                        <td><img src="images/arrow4.gif" width="4" height="9"> 
                          ท่านสามารถตรวจสอบรายการสั่งซื้อได้ที่นี่</td>
                      </tr>
                      <tr> 
                        <td><script language="JavaScript">
function checkOrder()
{
      var o1 = document.webFormOrder.orderid.value;

  if( o1.length ==0)
           {
           alert("กรุณาใส่คำที่ค้นหาด้วยค่ะ");
           document.webFormOrder.orderid.focus();           
           return false;
           }
         else
           return true;
}
</script> <table width="100%" border="0" cellspacing="1" cellpadding="1">
                            <form method="post" action="CheckRefID.php" name="webFormOrder" onSubmit="return checkOrder()">
                              <tr> 
                                <td><div align="center"> 
                                    <input name="orderid" type="text" class="inputxx" id="orderid" onClick="this.value='';" value="เลขใบสั่งซื้อสินค้า" maxlength="15" />
                                  </div></td>
                              </tr>
                              <tr> 
                                <td><div align="center"> 
                                    <input name="image" type="image" src="images/checked.jpg">
                                  </div></td>
                              </tr>
                            </form>
                          </table></td>
                      </tr>
                    </table></td>
                </tr>
                <tr> 
                  <td bgcolor="#EAE4C7"><strong>
                    สินค้า 10 อันดับล่าสุด</strong></td>
                </tr>
                <tr> 
                  <td> 
                    <?
$page1 = $_GET['page1'];
$select_type1="select * from products  order by id asc";
$query_select1=mysql_query($select_type1);
$num_rows1=mysql_num_rows($query_select1);

if($num_rows1<1){
echo "<br><br><center><b>ยังไม่มีการเพิ่มข้อมูลค่ะ</b></center>";
}else{
		$select1="select * from products  order by id asc";
		$q_ry1 = mysql_query($select1);
	 	$num_rows1=mysql_num_rows($q_ry1);
  		$pagesize1=10;
		$rt1=$num_rows1%$pagesize1;
		if($rt1!=0)
			{
				$totalpage1=floor($num_rows1/$pagesize1)+1;
			}
		else
			{
				$totalpage1=floor($num_rows1/$pagesize1);
				$toppic_id1=1;
			}
		if(empty($page1))
			{
				$page1=1;
			}
		mysql_free_result($q_ry1);
		$goto1=($page1-1)*$pagesize1;
$sql_select_mem1="Select * From products  order by id desc limit $goto1,$pagesize1";
		$fect1=mysql_query($sql_select_mem1);
		if(!$fect1)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount1=0;
	while($rows1=mysql_fetch_array($fect1))
	{
$idxx =$rows1['id'];
$products_name = $rows1['productsname'];
$bgcount1=$bgcount1+1;
$bgmod1=$bgcount1%2;
if($bgmod1==0){
	$bgcolor1="#E9E9E8";
}else{
	$bgcolo1r="#FFFFFF";
}
	?>
                    <table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr> 
                        <td height="23"> <div align="left"></div>
                          <div align="left"></div>
                          <div align="center"> </div>
                          <div align="left"><img src="images/opened.gif" width="17" height="17"> 
                            <? echo "<a href=ShowProducts.php?PrdID=$idxx>$products_name</a>"; ?></div></td>
                      </tr>
                      <tr> 
                        <td height="5"><img src="images/inline.jpg" width="184" height="3"></td>
                      </tr>
                    </table>
                    <?
}
}
?>
                  </td>
                </tr>
                <tr> 
                  <td>&nbsp;</td>
                </tr>
              </table></td>
          </tr>
        </table>
      </div></td>
   <td><img src="images/spacer.gif" width="1" height="25" border="0" alt=""></td>
  </tr>
  <tr>
    <td colspan="2"><img src="images/home_r5_c1.jpg" alt="" name="home_r5_c1" width="439" height="39" border="0" usemap="#home_r5_c1Map"></td>
    <td colspan="3"><img src="images/home_r5_c3.jpg" alt="" name="home_r5_c3" width="561" height="39" border="0" usemap="#home_r5_c3Map"></td>
   <td><img src="images/spacer.gif" width="1" height="39" border="0" alt=""></td>
  </tr>
  <tr>
   <td><img name="home_r6_c1" src="images/home_r6_c1.jpg" width="423" height="71" border="0" alt=""></td>
    <td colspan="4" background="images/home_r6_c2.jpg"><? echo "$buttomtxt_web"; ?></td>
   <td><img src="images/spacer.gif" width="1" height="71" border="0" alt=""></td>
  </tr>
</table>
<map name="home_r3_c1Map">
  <area shape="rect" coords="13,20,79,50" href="index.php">
  <area shape="rect" coords="99,20,193,52" href="Member.php">
  <area shape="rect" coords="204,19,301,51" href="Products.php">
  <area shape="rect" coords="326,17,425,51" href="Cart.php">
</map>
<map name="home_r3_c3Map">
  <area shape="rect" coords="15,16,109,52" href="Payment.php">
  <area shape="rect" coords="125,16,237,53" href="ConfirmPayment.php">
  <area shape="rect" coords="257,16,373,53" href="CheckRef.php">
  <area shape="rect" coords="383,14,458,55" href="Webboard.php">
  <area shape="rect" coords="472,13,547,51" href="Contact.php">
</map>
<map name="home_r5_c1Map">
  <area shape="rect" coords="10,5,84,33" href="index.php">
  <area shape="rect" coords="98,2,189,49" href="Member.php">
  <area shape="rect" coords="208,2,303,42" href="Products.php">
  <area shape="rect" coords="324,2,423,44" href="Cart.php">
</map>
<map name="home_r5_c3Map">
  <area shape="rect" coords="12,-2,100,36" href="Payment.php">
  <area shape="rect" coords="127,-6,235,36" href="ConfirmPayment.php">
  <area shape="rect" coords="383,-1,453,37" href="Webboard.php">
  <area shape="rect" coords="477,-12,546,37" href="Contact.php">
  <area shape="rect" coords="256,1,365,57" href="CheckRef.php">
</map>
</body>
</html>

T1KUS90T
  root-grov@210.1.60.28:~$