Linux ns8.secondary29.go.th 2.6.32-754.28.1.el6.x86_64 #1 SMP Wed Mar 11 18:38:45 UTC 2020 x86_64
Apache/2.2.15 (CentOS)
: 122.154.134.11 | : 122.154.134.9
Cant Read [ /etc/named.conf ]
5.6.40
apache
www.github.com/MadExploits
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
UNLOCK SHELL
HASH IDENTIFIER
CPANEL RESET
CREATE WP USER
README
+ Create Folder
+ Create File
/
var /
www /
html /
amss /
modules /
book /
main /
[ HOME SHELL ]
Name
Size
Permission
Action
book_delay.php
14.43
KB
-rw-r--r--
bookdetail.php
13.23
KB
-rwxr-xr-x
bookdetail_group.php
20.9
KB
-rwxr-xr-x
bookdetail_khet_person.php
16.14
KB
-rwxr-xr-x
bookdetail_khet_total.php
11.85
KB
-rwxr-xr-x
bookdetail_khet_total_2.php
11.87
KB
-rw-r--r--
bookdetail_saraban.php
18.39
KB
-rwxr-xr-x
bookdetail_school_person.php
13.71
KB
-rwxr-xr-x
bookdetail_school_saraban.php
20.33
KB
-rwxr-xr-x
bookdetail_school_total.php
10.3
KB
-rwxr-xr-x
bookdetail_school_total_2.php
10.69
KB
-rw-r--r--
booksenddetail.php
9.98
KB
-rwxr-xr-x
booksenddetail_2.php
10.38
KB
-rw-r--r--
group.php
5.46
KB
-rwxr-xr-x
group_member.php
4.19
KB
-rwxr-xr-x
group_member_report.php
2.68
KB
-rwxr-xr-x
livesearch.php
742
B
-rwxr-xr-x
livesearch_2.php
744
B
-rwxr-xr-x
livesearch_3.php
681
B
-rwxr-xr-x
move_book.php
6.11
KB
-rw-r--r--
person_chk.php
859
B
-rwxr-xr-x
receive.php
27.38
KB
-rw-r--r--
receive.php-OLD
26.39
KB
-rwxr-xr-x
receive.php==1
25.38
KB
-rwxr-xr-x
receive00.php
25.8
KB
-rwxr-xr-x
receive11.php
26.13
KB
-rwxr-xr-x
receive_mobile.php
23.72
KB
-rwxr-xr-x
report_1.php
13.08
KB
-rw-r--r--
report_2.php
13.21
KB
-rw-r--r--
select_send.php
9.07
KB
-rwxr-xr-x
select_send_2.php
8.78
KB
-rwxr-xr-x
send.php
41.59
KB
-rw-r--r--
send.php--1
35.79
KB
-rwxr-xr-x
send.php-OLD
40.13
KB
-rwxr-xr-x
send.php.save
38.56
KB
-rwxr-xr-x
send.php_bkkk
38.48
KB
-rwxr-xr-x
send_2.php
15.54
KB
-rwxr-xr-x
send_mobile.php
33.85
KB
-rwxr-xr-x
send_sch_2.php
11.96
KB
-rwxr-xr-x
sendto_show.php
2.31
KB
-rwxr-xr-x
z.php
248
B
-rw-r--r--
Delete
Unzip
Zip
${this.title}
Close
Code Editor : report_1.php
<script type="text/javascript" src="./css/js/calendarDateInput2.js"></script> <?php /** ensure this file is being included by a parent file */ defined( '_VALID_' ) or die( 'Direct Access to this location is not allowed.' ); ///////// $user_db=$user; if(isset($amssplus_reserve)){ $amssplus_reserve=$amssplus_reserve; } else{ $amssplus_reserve="amssplus_reserve"; } $connect_reserve=@mysqli_connect($hostname,$user_db,$password,$amssplus_reserve); ///////// if($connect_reserve){ mysqli_query($connect_reserve,"SET NAMES utf8"); } else{ echo "<br />"; echo "<table width='70%' border='0' align='center'>"; echo "<tr align='center'><td><font color='#FE2E2E' size='2'>ยังไม่มีฐานข้อมูลสำรอง ระบบไม่สามารถดำเนินการได้</font></td></tr>"; echo "</table>"; exit(); } require_once "modules/book/time_inc.php"; $user=$_SESSION['login_user_id']; if(!(isset($_REQUEST['search_index']))){ $_REQUEST['search_index']=""; } if(!(isset($_REQUEST['field']))){ $_REQUEST['field']="subject"; } if(!(isset($_REQUEST['search']))){ $_REQUEST['search']=""; } //ส่วนหัว echo "<br />"; echo "<table width='100%' border='0' align='center'>"; echo "<tr align='center'><td><font color='#006666' size='3'><strong>หนังสือรับที่มีอายุเกิน 2 ปี</strong></font></td></tr>"; echo "</table>"; //ส่วนแสดงผล //ส่วนของการแยกหน้า if($_SESSION['login_status']<=5){ $sql="select book_main.ms_id from book_main, book_sendto_answer where book_main.ref_id=book_sendto_answer.ref_id and book_main.book_type='2' and book_sendto_answer.send_level='2' and $_REQUEST[field] like '%$_REQUEST[search]%' "; } if(($_SESSION['login_status']>10) and ($_SESSION['login_status']<=15)){ $sql="select book_main.ms_id from book_main, book_sendto_answer where book_main.ref_id=book_sendto_answer.ref_id and book_sendto_answer.send_to='$_SESSION[user_school]' and book_sendto_answer.school='' and $_REQUEST[field] like '%$_REQUEST[search]%' "; } $dbquery = mysqli_query($connect_reserve,$sql); $num_rows = mysqli_num_rows($dbquery ); $pagelen=20; // 1_กำหนดแถวต่อหน้า $url_link="option=book&task=main/report_1&field=$_REQUEST[field]&search=$_REQUEST[search]"; $totalpages=ceil($num_rows/$pagelen); if(!(isset($_REQUEST['page']))){ $_REQUEST['page']=""; } if(!(isset($_REQUEST['page']))){ $_REQUEST['page']==""; } if($_REQUEST['page']==""){ $page=$totalpages; if($page<2){ $page=1; } } else{ if($totalpages<$_REQUEST['page']){ $page=$totalpages; if($page<1){ $page=1; } } else{ $page=$_REQUEST['page']; } } $start=($page-1)*$pagelen; if(($totalpages>1) and ($totalpages<16)){ echo "<div align=center>"; echo "หน้า "; for($i=1; $i<=$totalpages; $i++) { if($i==$page){ echo "[<b><font size=+1 color=#990000>$i</font></b>]"; } else { echo "<a href=$PHP_SELF?$url_link&page=$i>[$i]</a>"; } } echo "</div>"; } if($totalpages>15){ if($page <=8){ $e_page=15; $s_page=1; } if($page>8){ if($totalpages-$page>=7){ $e_page=$page+7; $s_page=$page-7; } else{ $e_page=$totalpages; $s_page=$totalpages-15; } } echo "<div align=center>"; if($page!=1){ $f_page1=$page-1; echo "<<a href=$PHP_SELF?$url_link&page=1>หน้าแรก </a>"; echo "<<<a href=$PHP_SELF?$url_link&page=$f_page1>หน้าก่อน </a>"; } else { echo "หน้า "; } for($i=$s_page; $i<=$e_page; $i++){ if($i==$page){ echo "[<b><font size=+1 color=#990000>$i</font></b>]"; } else { echo "<a href=$PHP_SELF?$url_link&page=$i>[$i]</a>"; } } if($page<$totalpages) { $f_page2=$page+1; echo "<a href=$PHP_SELF?$url_link&page=$f_page2> หน้าถัดไป</a>>>"; echo "<a href=$PHP_SELF?$url_link&page=$totalpages> หน้าสุดท้าย</a>>"; } echo "</div>"; } //จบแยกหน้า ?> <table border="0" width="98%" id="table1" style="border-collapse: collapse" cellspacing="2" cellpadding="2" align="center"> <tr><td><FONT SIZE="2" COLOR="">ระดับความสำคัญ <IMG SRC="modules/book/images/level1.gif" WIDTH="20" HEIGHT="11" BORDER="0" ALT="ปกติ">ปกติ <IMG SRC="modules/book/images/level2.gif" WIDTH="20" HEIGHT="11" BORDER="0" ALT="ด่วน">ด่วน <IMG SRC="modules/book/images/level3.gif" WIDTH="20" HEIGHT="11" BORDER="0" ALT="ด่วนมาก">ด่วนมาก <IMG SRC="modules/book/images/level4.gif" WIDTH="20" HEIGHT="11" BORDER="0" ALT="ด่วนที่สุด">ด่วนที่สุด</FONT></td> <?php echo "<td>"; echo "</td>"; ?> <form method="POST" action="?option=book&task=main/report_1"> <td align="right"> <font size="2">ค้นหาหนังสือ จาก </font> <select size="1" name="field"> <?php if($_REQUEST['field']=='subject'){ echo "<option value='subject' selected>เรื่อง</option>"; } else{ echo "<option value='subject'>เรื่อง</option>"; } if($_REQUEST['field']=='bookno'){ echo "<option value='bookno' selected>เลขหนังสือ</option>"; } else{ echo "<option value='bookno'>เลขหนังสือ</option>"; } echo "</select>"; echo "<font size='2'> ด้วยคำว่า </font>"; echo "<input type='text' name='search' size='20' value='$_REQUEST[search]'>"; echo "<input type='hidden' name='search_index' value='1'>"; echo " <input type='submit' value='ค้นหา'>"; ?> </td> </form> </tr> </table> <table border="1" width="98%" id="table2" style="border-collapse: collapse" align="center"> <tr bgcolor=#99ccff> <td width="70" align="center"> <font size="2" face="Tahoma" color=#FFFFFF>ที่</font></td> <td align="center" width="200"> <font face="Tahoma" size="2" color=#FFFFFF>เลขหนังสือ</font></td> <td align="center"><font face="Tahoma" size="2" color=#FFFFFF>เรื่อง </font></td> <td align="center" width="50"> <font face="Tahoma" size="2" color=#FFFFFF>ราย<br />ละเอียด</font></td> <td align="center" width="120"> <font face="Tahoma" size="2" color=#FFFFFF>ลงวันที่</font></td> <td align="center" width="200"> <font face="Tahoma" size="2" color=#FFFFFF>จาก</font></td> <td align="center" width="160"> <font face="Tahoma" size="2" color=#FFFFFF>วันเวลาที่ส่ง</font></td> </tr> <?php if($_SESSION['login_status']<=5){ $sql="select book_main.ms_id, book_main.ref_id, book_main.bookno ,book_main.level, book_main.subject, book_main.signdate, book_main.office, book_main.send_date, book_sendto_answer.answer, book_sendto_answer.status, book_sendto_answer.forward_from, book_sendto_answer.rec_forward_date, book_sendto_answer.school, book_main.secret,book_main.bookregis_link,book_main.book_type from book_main, book_sendto_answer where book_main.ref_id=book_sendto_answer.ref_id and book_main.book_type='2' and book_sendto_answer.send_level='2' and $_REQUEST[field] like '%$_REQUEST[search]%' order by book_main.ms_id, book_sendto_answer.id limit $start,$pagelen "; } if(($_SESSION['login_status']>10) and ($_SESSION['login_status']<=15)){ $sql="select book_main.ms_id, book_main.ref_id, book_main.bookno, book_main.level, book_main.subject, book_main.signdate, book_main.office, book_main.send_date, book_sendto_answer.answer, book_sendto_answer.status, book_sendto_answer.forward_from, book_sendto_answer.rec_forward_date, book_sendto_answer.school, book_main.secret,book_main.bookregis_link,book_main.book_type from book_main, book_sendto_answer where book_main.ref_id=book_sendto_answer.ref_id and book_sendto_answer.send_to='$_SESSION[user_school]' and book_sendto_answer.school='' and $_REQUEST[field] like '%$_REQUEST[search]%' order by book_main.ms_id, book_sendto_answer.id limit $start,$pagelen"; } $dbquery = mysqli_query($connect_reserve,$sql); $N=(($page-1)*$pagelen)+1; //*เกี่ยวข้องกับการแยกหน้า $M=1; While ($result = mysqli_fetch_array($dbquery)){ $id = $result['ms_id']; $ref_id = $result['ref_id']; $level = $result['level']; $bookno = $result['bookno']; $signdate = $result['signdate']; $subject = $result['subject']; $status = $result['status']; $ref_id = $result['ref_id']; $rec_date = $result['send_date']; $school = $result['school']; if(($M%2) == 0) $color="#ffffff"; else $color="#E5E5FF"; $send_date=thai_date_4($rec_date); $signdate=thai_date_3($signdate); // ระดับความสำคัญ if ($level==1) { $img_level = "<IMG SRC=\"modules/book/images/level1.gif\" WIDTH=\"20\" HEIGHT=\"11\" BORDER=\"0\" ALT=\"ปกติ\">" ; }else if ($level==2) { $img_level = "<IMG SRC=\"modules/book/images/level2.gif\" WIDTH=\"20\" HEIGHT=\"11\" BORDER=\"0\" ALT=\"ด่วน\">" ; }else if ($level==3) { $img_level = "<IMG SRC=\"modules/book/images/level3.gif\" WIDTH=\"20\" HEIGHT=\"11\" BORDER=\"0\" ALT=\"ด่วนมาก\">" ; }else if ($level==4) { $img_level = "<IMG SRC=\"modules/book/images/level4.gif\" WIDTH=\"20\" HEIGHT=\"11\" BORDER=\"0\" ALT=\"ด่วนที่สุด\">" ; } // ตรวจสอบไฟล์แนบ if($result['bookregis_link']==0){ $file = mysqli_query($connect,"SELECT id FROM book_filebook WHERE ref_id='$ref_id' ") ; } else if($result['bookregis_link']==1 and $result['book_type']==1){ $file = mysqli_query($connect,"SELECT * FROM bookregister_send_filebook WHERE ref_id='$ref_id' ") ; } else if($result['bookregis_link']==1 and $result['book_type']==2){ $file = mysqli_query($connect,"SELECT * FROM bookregister_send_filebook_sch WHERE ref_id='$ref_id' ") ; } else if($result['bookregis_link']==5 and $result['book_type']==5){ $file = mysqli_query($connect,"SELECT * FROM bookregister_send_filebook WHERE ref_id='$ref_id' ") ; } else if($result['bookregis_link']==6 and $result['book_type']==6){ $file = mysqli_query($connect,"SELECT * FROM bookregister_receive_filebook WHERE ref_id='$ref_id' ") ; } $file_num = mysqli_num_rows($file) ; if ($file_num==0) { $file_img = "" ; }else{ $file_img = "<IMG SRC=\"modules/book/images/file1.gif\" WIDTH=\"13\" HEIGHT=\"10\" BORDER=\"0\" ALT=\"มีไฟล์แนบ\">" ; } // อาเรย์ชื่อหน่วยงาาน $office_name_ar['saraban']="สารบรรณกลาง"; $sql_work_group = mysqli_query($connect,"SELECT * FROM system_workgroup") ; while ($row_work_group= mysqli_fetch_array($sql_work_group)){ $office_name_ar[$row_work_group['workgroup']]=$row_work_group['workgroup_desc']; } $sql_sch = mysqli_query($connect,"SELECT * FROM system_school") ; while ($row_sch= mysqli_fetch_array($sql_sch)){ $office_name_ar[$row_sch['school_code']]=$row_sch['school_name']; } $sql_obec = mysqli_query($connect,"SELECT * FROM system_khet") ; while ($row_obec= mysqli_fetch_array($sql_obec)){ $office_name_ar[$row_obec['code2']]=$row_obec['precis']; } $office_name_ar['obec']="สพฐ/อื่นๆ"; if($_SESSION['login_status']<=5){ $saraban_text="bookdetail_khet_total_2.php"; } if(($_SESSION['login_status']>10) and ($_SESSION['login_status']<=15)){ $saraban_text="bookdetail_school_total_2.php"; } ?> <tr bgcolor="<?php echo $color;?>"> <td align="center"><?php echo $result['ms_id'];?></td> <td align="left"> <?php echo $bookno;?> <?php echo $img_level;?></td> <td align="left"><?php echo $subject;?> <?php echo $file_img;?> </td> <td align="center"><A HREF="javascript:void(0)" onclick="check('<?php echo $saraban_text; ?>','<?php echo $result['ms_id'];?>')"<span style="text-decoration: none">คลิก</span></A></td> <td align="left"><?php echo $signdate;?></td> <td ><?php if(isset($office_name_ar[$result['office']])){ echo $office_name_ar[$result['office']]; } else{ $sql_bookregister = "select * from bookregister_receive where ref_id='$ref_id' "; $dbquery_bookregister = mysqli_query($connect,$sql_bookregister); $result_bookregister = mysqli_fetch_array($dbquery_bookregister); if($result_bookregister){ echo $result_bookregister['book_from']; } else{ echo "อื่น ๆ"; } } ?></td> <td align="left"><?php echo $send_date;?></td> </tr> <?php $M++; $N++; //*เกี่ยวข้องกับการแยกหน้า } // end while echo "</table>"; if($connect_reserve){ mysqli_close($connect_reserve); } ?> <script> function check(text,val){ window.open('modules/book/main/'+text+'?b_id='+val, 'bookdetail','width=550,height=500,scrollbars'); } </script>
Close