<?php
$action = $_GET['action'];
if($action == "addurl" && $_POST['url']) {
$urls = substr($_POST['url'], 0, 4);
if($urls != "http") {
$url = "http://".$_POST['url'];
} else {
$url = $_POST['url'];
}
$url = str_replace("www.","", $url);
$url = parse_url($url);
$url = $url[host];
$comments = $_POST['comments'];
mysql_query("INSERT INTO blacklist (url, comment) values ('".$url."', '".$comments."')");
print "<p class=\"erok\">URL <u>".$url."</u> добавлен в чёрный список!</p>";
$headers = "From: ".$adminmail."\n";
$headers .= "Reply-to: ".$adminmail."\n";
$headers .= "X-Sender: < http://".$cfgURL." >\n";
$headers .= "Content-Type: text/html; charset=utf-8\n";
$subject = "URL для базы черного списка";
$msg = "URL: ".$url." - Причина: ".$comments;
mail("support@adminstation.ru", $subject, $msg, $headers);
} elseif($action == "del") {
$id = $_GET['id'];
mysql_query("DELETE FROM blacklist WHERE id = ".$id." LIMIT 1");
print "<p class=\"erok\">URL убран с чёрного списка!</p>";
}
?>
<script language="javascript" type="text/javascript" src="files/alt.js"></script>
<form action="?a=blacklist&action=addurl" method="post">
<LEGEND><b>Добавить URL в чёрный список:</b></LEGEND>
<table width="100%" border="0">
<tr>
<td width="90"><strong>http://www.</strong></td>
<td><input class="inp" style="background-color: #ffffff; width: 580px;" type="text" name="url" size="90" /></td>
<td rowspan="2" valign="bottom"><input class="input dfs3" type="image" src="images/save.gif" border="0" value="Сохранить" title="Сохранить!"></td>
<td rowspan="2" valign="bottom" class="y13w"><a href="?a=server&action=serverurl" title="Синхронизировать с базой сервера!">Синхронизировать</a></td>
</tr>
<tr>
<td><strong>Причина:</strong></td>
<td><input class="inp" style="background-color: #ffffff; width: 580px;" type="text" name="comments" size="90" /></td>
</tr>
</table>
</form>
<hr size="2" />
<table border="0" align="center" width="100%" cellpadding="1" cellspacing="1">
<?php
$result = mysql_query("SELECT id, url, comment FROM blacklist GROUP BY id order by id DESC");
while($row = mysql_fetch_array($result)) {
$id = $row['id'];
$url = $row['url'];
print "
<tr>
<td><a href=\"http://".$url."\" target=\"_blank\"><b>http://".$url."</b></a><br /><small>".$row['comment']."</small></td>
<td width=\"20\"><a style=\"cursor:hand;\" onclick=\"if(confirm('Вы действительно хотите удалить данный URL с чёрного списка?')) top.location.href='?a=blacklist&id=".$id."&action=del';\"><img src=\"images/delite.gif\" width=\"20\" height=\"20\" border=\"0\" alt=\"Удалить\" /></a></td>
</tr>
<tr>
<td colspan=\"4\" height=\"1\" bgcolor=\"#cccccc\"></td>
</tr>";
}
?>
</table>
<hr size="3">
<?php
$action = $_GET['action'];
if($action == "addip" && $_POST['ip']) {
$ip = $_POST['ip'];
$comments = $_POST['comments'];
mysql_query("INSERT INTO blacklist_ip (ip, comment) values ('".$ip."', '".$comments."')");
print "<p class=\"erok\">IP <u>".$ip."</u> добавлен в чёрный список!</p>";
$headers = "From: ".$adminmail."\n";
$headers .= "Reply-to: ".$adminmail."\n";
$headers .= "X-Sender: < http://".$cfgURL." >\n";
$headers .= "Content-Type: text/html; charset=windows-1251\n";
$subject = "IP для базы черного списка";
$msg = "IP: ".$ip." - Причина: ".$comments;
mail("support@adminstation.ru", $subject, $msg, $headers);
} elseif($action == "delip") {
$id = $_GET['id'];
mysql_query("DELETE FROM blacklist_ip WHERE id = ".$id." LIMIT 1");
print "<p class=\"erok\">IP убран с чёрного списка!</p>";
}
?>
<form action="?a=blacklist&action=addip" method="post">
<LEGEND><b>Добавить IP в чёрный список:</b></LEGEND>
<table width="100%" border="0">
<tr>
<td width="90"><strong>IP:</strong></td>
<td><input class="inp" style="background-color: #ffffff; width: 580px;" type="text" name="ip" size="90" /></td>
<td rowspan="2" valign="bottom"><input class="input dfs3" type="image" src="images/save.gif" border="0" value="Сохранить" title="Сохранить!"></td>
<td rowspan="2" valign="bottom" class="y13w"><a href="?a=server&action=serverurl" title="Синхронизировать с базой сервера!">Синхронизировать</a></td>
</tr>
<tr>
<td><strong>Причина:</strong></td>
<td><input class="inp" style="background-color: #ffffff; width: 580px;" type="text" name="comments" size="90" /></td>
</tr>
</table>
</form>
<hr size="2" />
<table border="0" align="center" width="100%" cellpadding="1" cellspacing="1">
<?php
$result = mysql_query("SELECT id, ip, comment FROM blacklist_ip GROUP BY id order by id DESC");
while($row = mysql_fetch_array($result)) {
$id = $row['id'];
$ip = $row['ip'];
print "
<tr>
<td><b>".$ip."</b><br /><small>".$row['comment']."</small></td>
<td width=\"20\"><a style=\"cursor:hand;\" onclick=\"if(confirm('Вы действительно хотите удалить данный IP с чёрного списка?')) top.location.href='?a=blacklist&id=".$id."&action=delip';\"><img src=\"images/delite.gif\" width=\"20\" height=\"20\" border=\"0\" alt=\"Удалить\" /></a></td>
</tr>
<tr>
<td colspan=\"4\" height=\"1\" bgcolor=\"#cccccc\"></td>
</tr>";
}
?>
</table>