<?
require_once("include/bittorrent.php");
dbconn(false);

loggedinorreturn();

if (isset($_GET['torles']))
{
if (is_numeric($_GET['torles']))
{
$query = "SELECT * FROM shoutbox WHERE id=".$_GET['torles'];
$result = mysql_query($query);
}
else {
echo "<center>Valótlan üzenet ID</center>";
exit;}

$row = mysql_fetch_row($result);
{
$query = "DELETE FROM shoutbox WHERE id=".$_GET['torles'];
mysql_query($query);
}
}

if (isset($_GET['szerkeztes']))
{
if (is_numeric($_GET['szerkeztes']))
{   
   $sql=mysql_query("SELECT id,text FROM shoutbox WHERE id=".sqlesc($_GET['szerkeztes']));
   $res=mysql_fetch_array($sql);
   echo '<br><center>';
   echo '<form method=post action=uzenofal.php>';
   echo '<input type=hidden name=id value='.(int)$res['id'].'>';
      echo '<textarea name=text id=specialbox >'.htmlspecialchars($res['text']).'</textarea>';
   echo '<input type=submit name=save value=Mentés class=btn>';
   echo'<input type="reset" value="Alaphelyzet" name="B3">';
   echo '</form></center>';

}  }

if (isset($_POST['text']) && is_valid_id($_POST['id']))
{
   $text = trim($_POST['text']);
   $id = (int)$_POST['id'];
   if (isset($text) && isset($id) && is_valid_id($id))
      mysql_query("UPDATE shoutbox SET text = ".sqlesc($text)." WHERE id=".sqlesc($id));
} 


?>
<html><head>
<title>Üzenőfal</title>
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-2" />
<META HTTP-EQUIV=REFRESH CONTENT="120; URL=uzenofal.php">
<style type="text/css">
A {color: #000000; font-weight: bold; }
A:hover {color: #FF0000;}
.small {font-size: 11pt; font-family: tahoma; color: black; }
.date {font-size: 10pt; color: black; }
</style>
<STYLE>BODY {

BACKGROUND: url(pic/uzifal_hatter.png) #474747 repeat center bottom;
background-position: left;
SCROLLBAR-3DLIGHT-COLOR: #004E98;
SCROLLBAR-ARROW-COLOR: #004E98;
SCROLLBAR-DARKSHADOW-COLOR: white;
SCROLLBAR-BASE-COLOR: white;
}
textarea {
	font-family: tahoma, sans-serif;
	font-size: 10pt;
	background-color: #d8f4fd;
	padding: 2px;
	outline-style: none;
	border-color: 1px solid #8fc6ff;
	color: #1c00ac;
	width: 600;
	height: 20
  
}

textarea {	background-color: #292929;
	font-weight: bold;
	font-size: 12px;
	color: white;
	border: 1px dashed #000000;
	border-collapse: collapse;
	width: 600;
	height: 20
	}

input {
	font-family: tahoma, sans-serif;
	font-size: 10pt;
	background-color: #d8f4fd;
	padding: 2px;
	outline-style: none;
	border-color: 1px solid #8fc6ff;
	color: #1c00ac;
  
}

input {	background-color: #292929;
	font-weight: bold;
	font-size: 12px;
	color: white;
	border: 1px dashed #000000;
	border-collapse: collapse;
}

a {
color: lime;
text-decoration:none;
 }

</STYLE>
</head>
<body>
<?


if ($CURUSER["chatpost"] == 'no')
{
print("<h2><br><center>Az üzifalazási jogodat felfüggesztették.</center></h2>");
exit;
}
else
{


if($_GET["sent"]=="yes")
{
$userid=$CURUSER["id"];
$username=$CURUSER["username"];
$date=time();
$text=trim($_GET["shbox_text"]);

mysql_query("INSERT INTO shoutbox (id, userid, username, date, text) VALUES ('id'," . sqlesc($userid) . ", " . sqlesc($username) . ", $date, " . sqlesc($text) . ")") or sqlerr(__FILE__, __LINE__);
}

$izeww = $CURUSER["username"];

$kerdeskviz=$_GET["kerdes_kviz"];
$nyeremenykviz=trim($_GET["nyeremeny_kviz"]);
$duma="";
$nyeremeny=$_GET["nyeremeny"];

$vege=" [/color]  || [b][color=yellow] Kiirta $izeww [/b][/color] ";
$kerdeskviz = trim($kerdeskviz);
$eleje="[b][color=#00FFFF] Kvízkérdés: [/color][/b] [b][color=white] $kerdeskviz [/b][/color] [color=lime] ";
$eleje = trim($eleje);
$ido=sqlesc(time());
if($_GET["kviz"]=="Kiirasa"){
if($_GET["kerdes_kviz"]){
$text = trim($eleje . $ize . $nyeremenykviz . $nyeremeny . $vege);

mysql_query("INSERT INTO shoutbox (userid, username, date, text) VALUES 
('-1', 'Kvíz', $ido, " . sqlesc($text). ")") or sqlerr(__FILE__, __LINE__);
}}

$nyertes_neve=trim($_GET["nyertes_neve"]);
$nyeremeny2=$_GET["nyeremeny2"];
$nyeremeny3=$_GET["nyeremeny3"];
$duma="";
$ize="{";
$ize2="}";
$vege="}[/color]";


$eleje="[b][color=red] Nyertes: [/color][/b][b][color=yellow]   $nyertes_neve [/color][/b] [b][color=white] válaszolta meg a leggyorsabban! [/b][/color] [color=lime] Gratulálunk! [ $nyeremeny2 $nyeremeny3] [/color]  || [b][color=yellow] Jóváírta $izeww [/b][/color]   ";
$eleje = trim($eleje);
$ido=sqlesc(time());
if($_GET["nyertes"]=="igen"){
if(!$_GET["nyertes"]){
}else{
mysql_query("INSERT INTO shoutbox (userid, username, date, text) VALUES 
('-1', 'Kvíz', $ido, " . sqlesc($eleje) . ")") or sqlerr(__FILE__, __LINE__);
if($nyeremeny3=='MB'){
$nyeremeny4='1048576';
}if($nyeremeny3=='GB'){
$nyeremeny4='1073741824';
}
$nyertes_neve2=sqlesc($HTTP_POST_VARS["nyertes_neve"]);
$nyeremenye =  $nyeremeny2*$nyeremeny4;

mysql_query("UPDATE users SET uploaded= uploaded + $nyeremenye

 WHERE username=".sqlesc($nyertes_neve). "") or sqlerr(__FILE__, __LINE__);
//print("$nyeremeny4");
}}

if($_GET["rendszeruzi"]=="igen"){
if(!$_GET["rendszeruzenet"]){}
else{
$uzenetee=$_GET["rendszeruzenet"];
$eleje=" [b][color=red] Rendszerüzenet [/color][color=white] ";
$vege="[/b][/color]  || [b][color=yellow] $izeww [/b][/color]  ";

mysql_query("INSERT INTO shoutbox (userid, username, date, text) VALUES 
('-1', 'Rendszerüzenet', $ido, '$eleje$uzenetee$vege')") or sqlerr(__FILE__, __LINE__);
}}



$res = mysql_query("SELECT * FROM shoutbox ORDER BY date DESC LIMIT 50") or sqlerr(__FILE__, __LINE__);
if (mysql_num_rows($res) == 0)
print("\n");
else
{
print("<table border=0 cellspacing=0 cellpadding=2 width='100%' align='left' class='small'>\n");

while ($arr = mysql_fetch_assoc($res))
{
$res2 = mysql_query("SELECT username,class,avatar,donor, title,enabled,warned FROM users WHERE id=$arr[userid]") or sqlerr(__FILE__, __LINE__);
$arr2 = mysql_fetch_assoc($res2);
$resowner = mysql_query("SELECT id, username, class FROM users WHERE id=$arr[userid]") or print(mysql_error());
$rowowner = mysql_fetch_array($resowner);
if ($rowowner["class"] == "6")
$usercolor= "<font color=DARKRED>" .htmlspecialchars($rowowner["username"]). "</font><b><font color=darkred>";
elseif ($rowowner["class"] == "5")
$usercolor= "<font color=RED>" .htmlspecialchars($rowowner["username"]). "</font><b><font color=red>";
elseif ($rowowner["class"] == "4")
$usercolor= "<font color=blue>" .htmlspecialchars($rowowner["username"]). "</font><b>";
elseif ($rowowner["class"] == "3")
$usercolor= "<font color=#2587A7>" .htmlspecialchars($rowowner["username"]). "</font>";
elseif ($rowowner["class"] == "2")
$usercolor= "<font color=#009F00>" .htmlspecialchars($rowowner["username"]). "</font>";
elseif ($rowowner["class"] == "1")
$usercolor= "<font color=#f9a200>" .htmlspecialchars($rowowner["username"]). "</font>";
elseif ($rowowner["class"] == "0")
$usercolor= "<font color=black>" .htmlspecialchars($rowowner["username"]). "</font>";

if ($arr["userid"] == "0")
$usercolor= "<font color=red]RENDSZER:</color>" .htmlspecialchars(Rendszer)."</font><b>"; 

if ($rowowner["class"] == "6")
$usercolor2= "[color=Darkred]";
elseif ($rowowner["class"] == "5")
$usercolor2= "[color=red]";
elseif ($rowowner["class"] == "4")
$usercolor2= "[color=BLUE]";
elseif ($rowowner["class"] == "3")
$usercolor2= "[color=#2587A7]";
elseif ($rowowner["class"] == "2")
$usercolor2= "[color=#009F00]";
elseif ($rowowner["class"] == "1")
$usercolor2= "[color=#f9a200]";
elseif ($rowowner["class"] == "0")
$usercolor2= "[color=black]"; 

  $edit="";
     if ($CURUSER["id"]==1 || $CURUSER["id"]==$arr["userid"]) $edit="<span class='date'><font color='white'>[<a href=uzenofal.php?szerkeztes=".$arr[id].">Sz</a>]</font></span>";
     if (get_user_class() >= UC_MODERATOR)
     {
$edit="<span class='date'><font color='white'>[<a href=uzenofal.php?szerkeztes=".$arr[id].">Sz</a>]</font></span>\n"; 
}


  $del="";
     if ($CURUSER["id"]==1 || $CURUSER["id"]==$arr["userid"]) $del="<span class='date'><font color='white'>[<a href=/uzenofal.php?torles=".$arr[id].">T</a>]</font></span>";
     if (get_user_class() >= UC_MODERATOR)
     {
$del="<span class='date'><font color='white'>[<a href=/uzenofal.php?torles=".$arr[id].">T</a>]/font></span>";

     }
if (get_user_class() >= UC_MODERATOR) {
$del="<span class='date'><font color='white'>[<a href=/uzenofal.php?torles=".$arr[id].">T</a>]</font></font></span>";
$edit="<span class='date'><font color='white'>[<a href=uzenofal.php?szerkeztes=".$arr[id].">Sz</a>]</font></font></span>\n"; 
}
$szama = $arr["userid"];

print("<tr><td>");

print("
<span class='date'>[".strftime("%H:%M",$arr["date"])."]");
if($szama !== '0' && $szama !=='-1')



print(" $del $edit </span>");

{?>
<img onclick="javascript: window.top.SmileIT('[b]<?=$usercolor2?> <?=$rowowner["username"]?> [/color][/b]','shbox','shbox_text')" title="[V]" src=pic/jobbra.gif border=0>

<?} 

if($szama !== '0' && $szama !=='-1'){
print"<a href='userdetails.php?id=".$szama."' target='_blank'>$usercolor</a>";}
print(
($arr2["donor"] == "yes" ? "<img src=pic/star.gif alt='Támogató'>" : "") .
($arr2["warned"] == "yes" ? "<img src=pic/warned.gif alt='Figyelmeztetett'>" : "") .
" ".format_comment($arr["text"])."
");

print("
</td></tr>\n");
}
print("</table>");


///Kvíz rendszer



}
}

?>
</body>
</html>
