chore(store): remove 281 legit false-positives (EOL + com_users version)

The remediation store held 281 legit files misclassified as malware:
- 251 EOL-only: live docroot CRLF vs baseline LF (old deploy artifact);
  strip-trailing-cr diff = 0 (byte-identical modulo line endings).
- 30 com_users (archlinexp.eu): Joomla 2018->2019 point-release drift
  (copyright + Referrer-Policy header), 0 malware markers.
The 729 droppers + real injections (event/joomla/storage/helix3) remain.
Audit: audit/store-cleanup-2026-07-19.md. Fully revertable.

Assisted-by: claude-code@claude-opus-4-8
This commit is contained in:
imre.agent 2026-07-19 13:43:59 +02:00
parent a2ff9ac7b5
commit e6f9e78271
563 changed files with 295 additions and 123803 deletions

View File

@ -0,0 +1,295 @@
# Store cleanup — 281 legit false-positives removed (2026-07-19)
The HIDS quarantine misclassified 281 legit files as malware. Removed here;
the real malware (729 droppers + the injections event/joomla/storage/helix3) stays.
## Evidence
- **251 EOL-only**: live docroot was CRLF, baseline LF (old deploy artifact).
`diff --strip-trailing-cr` = 0 bytes → byte-identical modulo line endings.
- **30 com_users (archlinexp.eu)**: Joomla 2018→2019 point-release drift
(copyright + Referrer-Policy security header). 0 malware markers in added lines.
Fully revertable (`git revert`). Root cause tracked in illusion/hids#128 + illusion3-salt#894.
## Removed files (content, 281)
var/www/hosting/archline.hu/www/common_cadline_libraries/crm_config.db.php
var/www/hosting/archline.hu/www/common_cadline_libraries/crm_config.php
var/www/hosting/archline.hu/www/common_cadline_libraries/crm_database.class.php
var/www/hosting/archline.hu/www/common_cadline_libraries/crm_users.class.php
var/www/hosting/archline.hu/www/maintenance/activate_90_days_active.php
var/www/hosting/archline.hu/www/maintenance/activate_server.php
var/www/hosting/archline.hu/www/maintenance/aktivalasikod.php
var/www/hosting/archline.hu/www/maintenance/al.php
var/www/hosting/archline.hu/www/maintenance/alprograms.php
var/www/hosting/archline.hu/www/maintenance/banner.php
var/www/hosting/archline.hu/www/maintenance/beolvas2.php
var/www/hosting/archline.hu/www/maintenance/class/actcode.class.php
var/www/hosting/archline.hu/www/maintenance/class/codegen.helper.class.php
var/www/hosting/archline.hu/www/maintenance/class/crmHelper.class.php
var/www/hosting/archline.hu/www/maintenance/class/hardlock.helper.class.php
var/www/hosting/archline.hu/www/maintenance/class/iptocountry.helper.class.php
var/www/hosting/archline.hu/www/maintenance/class/program.helper.class.php
var/www/hosting/archline.hu/www/maintenance/class/selectedprogram.php
var/www/hosting/archline.hu/www/maintenance/class/selectprogram.class.php
var/www/hosting/archline.hu/www/maintenance/clusers.php
var/www/hosting/archline.hu/www/maintenance/config.course.php
var/www/hosting/archline.hu/www/maintenance/config.crm.php
var/www/hosting/archline.hu/www/maintenance/config.db.php
var/www/hosting/archline.hu/www/maintenance/config.mail.php
var/www/hosting/archline.hu/www/maintenance/config.php
var/www/hosting/archline.hu/www/maintenance/config.tce.php
var/www/hosting/archline.hu/www/maintenance/crashadmin.php
var/www/hosting/archline.hu/www/maintenance/cron_check.php
var/www/hosting/archline.hu/www/maintenance/cron_check_server.php
var/www/hosting/archline.hu/www/maintenance/cron_one_minute.php
var/www/hosting/archline.hu/www/maintenance/css/bootstrap.min.css
var/www/hosting/archline.hu/www/maintenance/css/style.css
var/www/hosting/archline.hu/www/maintenance/css/ticker-style.css
var/www/hosting/archline.hu/www/maintenance/downloademail.php
var/www/hosting/archline.hu/www/maintenance/elofizexcelcheck.php
var/www/hosting/archline.hu/www/maintenance/elofizurites.php
var/www/hosting/archline.hu/www/maintenance/email.php
var/www/hosting/archline.hu/www/maintenance/emailsending.php
var/www/hosting/archline.hu/www/maintenance/encodetest.php
var/www/hosting/archline.hu/www/maintenance/followedlinks.php
var/www/hosting/archline.hu/www/maintenance/functions.php
var/www/hosting/archline.hu/www/maintenance/geopluginlink.php
var/www/hosting/archline.hu/www/maintenance/getdef.php
var/www/hosting/archline.hu/www/maintenance/getserialanddaycode.php
var/www/hosting/archline.hu/www/maintenance/get_subscriptions.php
var/www/hosting/archline.hu/www/maintenance/.gitignore
var/www/hosting/archline.hu/www/maintenance/google_redirect.php
var/www/hosting/archline.hu/www/maintenance/handshake.php
var/www/hosting/archline.hu/www/maintenance/hibasprograminditasok.php
var/www/hosting/archline.hu/www/maintenance/.htaccess
var/www/hosting/archline.hu/www/maintenance/index.html
var/www/hosting/archline.hu/www/maintenance/ipc_sample_test.php
var/www/hosting/archline.hu/www/maintenance/js/clipboard.min.js
var/www/hosting/archline.hu/www/maintenance/js/download2.js
var/www/hosting/archline.hu/www/maintenance/js/jquery.min.js
var/www/hosting/archline.hu/www/maintenance/js/jquery.ticker.js
var/www/hosting/archline.hu/www/maintenance/js/jszip/jszip.js
var/www/hosting/archline.hu/www/maintenance/js/jszip/jszip-utils.js
var/www/hosting/archline.hu/www/maintenance/js/site.js
var/www/hosting/archline.hu/www/maintenance/languages/lang.eng.php
var/www/hosting/archline.hu/www/maintenance/languages/lang.hun.php
var/www/hosting/archline.hu/www/maintenance/leads/BIID_2016.csv
var/www/hosting/archline.hu/www/maintenance/leads/Gyarto_lista_05_19.csv
var/www/hosting/archline.hu/www/maintenance/leads_imported.csv
var/www/hosting/archline.hu/www/maintenance/leads/kimeno.csv
var/www/hosting/archline.hu/www/maintenance/leads/leads-20160918.csv
var/www/hosting/archline.hu/www/maintenance/leads/leads-20160919.csv
var/www/hosting/archline.hu/www/maintenance/leads/leads-20160920.csv
var/www/hosting/archline.hu/www/maintenance/leads/leads-20160921.csv
var/www/hosting/archline.hu/www/maintenance/leads/leads_imported.csv
var/www/hosting/archline.hu/www/maintenance/leads/leads_imported-utf8.txt
var/www/hosting/archline.hu/www/maintenance/leads/Letoltott_szamlazz.hu_kimeno_szamlak_2018_Erika.csv
var/www/hosting/archline.hu/www/maintenance/leads/RIBA_2016.csv
var/www/hosting/archline.hu/www/maintenance/leads/szamlazz.csv
var/www/hosting/archline.hu/www/maintenance/leiratkozas.php
var/www/hosting/archline.hu/www/maintenance/libraries/Excel2/oleread.php
var/www/hosting/archline.hu/www/maintenance/libraries/Excel2/reader.php
var/www/hosting/archline.hu/www/maintenance/libraries/mmail/htmlMimeMail.php
var/www/hosting/archline.hu/www/maintenance/libraries/mmail/mimePart.php
var/www/hosting/archline.hu/www/maintenance/libraries/mmail/RFC822.php
var/www/hosting/archline.hu/www/maintenance/libraries/mmail/smtp.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/class.phpmailer.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/class.pop3.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/class.smtp.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/composer.json
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/extras/class.html2text.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/extras/EasyPeasyICS.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/extras/htmlfilter.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/extras/ntlm_sasl_client.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/extras/README.md
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/language/phpmailer.lang-hu.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/language/phpmailer.lang-uk.php
var/www/hosting/archline.hu/www/maintenance/libraries/phpmailer/PHPMailerAutoload.php
var/www/hosting/archline.hu/www/maintenance/messages_email.php
var/www/hosting/archline.hu/www/maintenance/misi.php
var/www/hosting/archline.hu/www/maintenance/mtips.php
var/www/hosting/archline.hu/www/maintenance/mycommerce.php
var/www/hosting/archline.hu/www/maintenance/MySqlHelper.class.php
var/www/hosting/archline.hu/www/maintenance/newclick.php
var/www/hosting/archline.hu/www/maintenance/nonprofit.php
var/www/hosting/archline.hu/www/maintenance/PasswordHash.php
var/www/hosting/archline.hu/www/maintenance/piracy.php
var/www/hosting/archline.hu/www/maintenance/pofiles/createPO.php
var/www/hosting/archline.hu/www/maintenance/pofiles/LiveLanguageResources_eng.json
var/www/hosting/archline.hu/www/maintenance/ProjectStart.html
var/www/hosting/archline.hu/www/maintenance/pro_live_bundle.php
var/www/hosting/archline.hu/www/maintenance/public/css/jquery-ui.css
var/www/hosting/archline.hu/www/maintenance/public/css/smoothDivScroll.css
var/www/hosting/archline.hu/www/maintenance/public/css/style.css
var/www/hosting/archline.hu/www/maintenance/public/js/8132d19a66.js
var/www/hosting/archline.hu/www/maintenance/public/js/jquery-1.12.4.min.js
var/www/hosting/archline.hu/www/maintenance/public/js/jquery.mousewheel.min.js
var/www/hosting/archline.hu/www/maintenance/public/js/jquery.smoothdivscroll-1.3-min.js
var/www/hosting/archline.hu/www/maintenance/public/js/jquery-ui-1.12.1.min.js
var/www/hosting/archline.hu/www/maintenance/read_server_txt.php
var/www/hosting/archline.hu/www/maintenance/redirect_login.php
var/www/hosting/archline.hu/www/maintenance/regisztracio.php
var/www/hosting/archline.hu/www/maintenance/render_ellenorzo.sh
var/www/hosting/archline.hu/www/maintenance/render/log.txt
var/www/hosting/archline.hu/www/maintenance/startchangedhardlock.php
var/www/hosting/archline.hu/www/maintenance/supportupload.php
var/www/hosting/archline.hu/www/maintenance/sw.php
var/www/hosting/archline.hu/www/maintenance/sw_secondary.php
var/www/hosting/archline.hu/www/maintenance/sync_downgrade.php
var/www/hosting/archline.hu/www/maintenance/sync_download.php
var/www/hosting/archline.hu/www/maintenance/sync_emailtopartners.php
var/www/hosting/archline.hu/www/maintenance/sync_fizetes.php
var/www/hosting/archline.hu/www/maintenance/sync_history.php
var/www/hosting/archline.hu/www/maintenance/sync_honapkepe.php
var/www/hosting/archline.hu/www/maintenance/sync_ita_email.php
var/www/hosting/archline.hu/www/maintenance/sync_maintenance.php
var/www/hosting/archline.hu/www/maintenance/sync_nonprofit.php
var/www/hosting/archline.hu/www/maintenance/sync_palyazat.php
var/www/hosting/archline.hu/www/maintenance/sync.php
var/www/hosting/archline.hu/www/maintenance/sync_sendemail.php
var/www/hosting/archline.hu/www/maintenance/sync_states.php
var/www/hosting/archline.hu/www/maintenance/sync_switch.php
var/www/hosting/archline.hu/www/maintenance/sync_workshop.php
var/www/hosting/archline.hu/www/maintenance/szamlazz.php
var/www/hosting/archline.hu/www/maintenance/test_API.php
var/www/hosting/archline.hu/www/maintenance/test.php
var/www/hosting/archline.hu/www/maintenance/tests/get-builds.php
var/www/hosting/archline.hu/www/maintenance/tests/scripts/jquery-1.11.1.min.js
var/www/hosting/archline.hu/www/maintenance/tests/scripts/jquery.treeview.min.js
var/www/hosting/archline.hu/www/maintenance/tests/scripts/scripts.js
var/www/hosting/archline.hu/www/maintenance/tests/scripts/uploader.js
var/www/hosting/archline.hu/www/maintenance/tests/showTest.php
var/www/hosting/archline.hu/www/maintenance/tests/styles/jquery.treeview.css
var/www/hosting/archline.hu/www/maintenance/tests/styles/styles.css
var/www/hosting/archline.hu/www/maintenance/teszt.php
var/www/hosting/archline.hu/www/maintenance/tips.php
var/www/hosting/archline.hu/www/maintenance/tips.php.orig
var/www/hosting/archline.hu/www/maintenance/tm.php
var/www/hosting/archline.hu/www/maintenance/tooltip.html
var/www/hosting/archline.hu/www/maintenance/unsubscribe.php
var/www/hosting/archline.hu/www/maintenance/updatecrm.php
var/www/hosting/archline.hu/www/maintenance/updateget.php
var/www/hosting/archline.hu/www/maintenance/update.php
var/www/hosting/archline.hu/www/maintenance/updatexml.php
var/www/hosting/archline.hu/www/maintenance/upload_file.php
var/www/hosting/archline.hu/www/maintenance/url_redirect.php
var/www/hosting/archline.hu/www/maintenance/users.php
var/www/hosting/archline.hu/www/maintenance/viewerlejartaktorlese.php
var/www/hosting/archline.hu/www/maintenance/warehousedownloadlink.php
var/www/hosting/archline.hu/www/maintenance/warehousegetfileformat.php
var/www/hosting/archline.hu/www/maintenance/warehouseparsesource.php
var/www/hosting/archline.hu/www/maintenance/webform/ai_render_upload.php
var/www/hosting/archline.hu/www/maintenance/webform/al_login.php
var/www/hosting/archline.hu/www/maintenance/webform/blank_result.php
var/www/hosting/archline.hu/www/maintenance/webform/cloud_library_upload.php
var/www/hosting/archline.hu/www/maintenance/webform/custom_page_test.php
var/www/hosting/archline.hu/www/maintenance/webform/error_message.php
var/www/hosting/archline.hu/www/maintenance/webform/exchange_registration.php
var/www/hosting/archline.hu/www/maintenance/webform/floating_licence.php
var/www/hosting/archline.hu/www/maintenance/webform/get_protocol.php
var/www/hosting/archline.hu/www/maintenance/webform/get_result.php
var/www/hosting/archline.hu/www/maintenance/webform/get_serial.php
var/www/hosting/archline.hu/www/maintenance/webform/get_user_params.php
var/www/hosting/archline.hu/www/maintenance/webform/hello.php
var/www/hosting/archline.hu/www/maintenance/webform/hl_pin.php
var/www/hosting/archline.hu/www/maintenance/webform/installers.php
var/www/hosting/archline.hu/www/maintenance/webform/ita_selectprogramdialog_test.php
var/www/hosting/archline.hu/www/maintenance/webform/languages/eng.php
var/www/hosting/archline.hu/www/maintenance/webform/languages/esp.php
var/www/hosting/archline.hu/www/maintenance/webform/languages/hun.php
var/www/hosting/archline.hu/www/maintenance/webform/login.php
var/www/hosting/archline.hu/www/maintenance/webform/loginresult.php
var/www/hosting/archline.hu/www/maintenance/webform/mobileviewer_create.php
var/www/hosting/archline.hu/www/maintenance/webform/nonprofit.php
var/www/hosting/archline.hu/www/maintenance/webform/public/css/bootstrap-datepicker.min.css
var/www/hosting/archline.hu/www/maintenance/webform/public/css/style.css
var/www/hosting/archline.hu/www/maintenance/webform/public/js/bootstrap-datepicker.min.js
var/www/hosting/archline.hu/www/maintenance/webform/public/js/main.js
var/www/hosting/archline.hu/www/maintenance/webform/regsuccess.php
var/www/hosting/archline.hu/www/maintenance/webform/result.php
var/www/hosting/archline.hu/www/maintenance/webform/sample.php
var/www/hosting/archline.hu/www/maintenance/webform/select_dealer.php
var/www/hosting/archline.hu/www/maintenance/webform/selectprogramdialog.php
var/www/hosting/archline.hu/www/maintenance/webform/startQuery.php
var/www/hosting/archline.hu/www/maintenance/webform/test_result.php
var/www/hosting/archline.hu/www/maintenance/zendesk/get_zendesk_articles.php
var/www/hosting/archline.hu/www/maintenance/zendesk/update_crc.php
var/www/hosting/archline.hu/www/maintenance/zendesk/zendesk.php
var/www/hosting/archlinexp.eu/www/components/com_users/controller.php
var/www/hosting/archlinexp.eu/www/components/com_users/controllers/profile_base_json.php
var/www/hosting/archlinexp.eu/www/components/com_users/controllers/profile.json.php
var/www/hosting/archlinexp.eu/www/components/com_users/controllers/profile.php
var/www/hosting/archlinexp.eu/www/components/com_users/controllers/remind.php
var/www/hosting/archlinexp.eu/www/components/com_users/controllers/reset.php
var/www/hosting/archlinexp.eu/www/components/com_users/controllers/user.php
var/www/hosting/archlinexp.eu/www/components/com_users/helpers/html/users.php
var/www/hosting/archlinexp.eu/www/components/com_users/helpers/legacyrouter.php
var/www/hosting/archlinexp.eu/www/components/com_users/helpers/route.php
var/www/hosting/archlinexp.eu/www/components/com_users/layouts/joomla/form/renderfield.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/forms/profile.xml
var/www/hosting/archlinexp.eu/www/components/com_users/models/forms/registration.xml
var/www/hosting/archlinexp.eu/www/components/com_users/models/login.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/profile.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/registration.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/remind.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/reset.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/rules/loginuniquefield.php
var/www/hosting/archlinexp.eu/www/components/com_users/models/rules/logoutuniquefield.php
var/www/hosting/archlinexp.eu/www/components/com_users/router.php
var/www/hosting/archlinexp.eu/www/components/com_users/users.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/login/tmpl/default_login.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/login/tmpl/default_logout.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/login/tmpl/default.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/login/tmpl/default.xml
var/www/hosting/archlinexp.eu/www/components/com_users/views/login/view.html.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/profile/tmpl/default_core.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/profile/tmpl/default_custom.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/profile/tmpl/default_params.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/profile/tmpl/default.php
var/www/hosting/archlinexp.eu/www/components/com_users/views/registration/tmpl/default.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/helper.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/language/de-DE/de-DE.mod_al_newsletter.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/language/de-DE/de-DE.mod_al_newsletter.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/language/en-GB/en-GB.mod_al_newsletter.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/language/en-GB/en-GB.mod_al_newsletter.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/language/hu-HU/hu-HU.mod_al_newsletter.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/language/hu-HU/hu-HU.mod_al_newsletter.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/mod_al_newsletter.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/mod_al_newsletter.xml
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/tmpl/default.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_newsletter/tmpl/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/assets/css/images/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/assets/css/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/assets/css/newstyle.css
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/assets/css/style.css
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/assets/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/assets/js/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/helper.php
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/mod_alusers.php
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/mod_alusers.xml
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/tmpl/default.php
var/www/hosting/archlinexp.eu/www/modules/mod_alusers/tmpl/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/helper.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/language/de-DE/de-DE.mod_al_vote.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/language/de-DE/de-DE.mod_al_vote.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/language/en-GB/en-GB.mod_al_vote.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/language/en-GB/en-GB.mod_al_vote.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/language/hu-HU/hu-HU.mod_al_vote.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/language/hu-HU/hu-HU.mod_al_vote.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/mod_al_vote.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/mod_al_vote.xml
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/tmpl/default.php
var/www/hosting/archlinexp.eu/www/modules/mod_al_vote/tmpl/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/helper.php
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/index.html
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/language/en-GB/en-GB.mod_course_list.ini
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/language/en-GB/en-GB.mod_course_list.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/language/hu-HU/hu-HU.mod_course_list.ini
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/language/hu-HU/hu-HU.mod_course_list.sys.ini
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/mod_course_list.php
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/mod_course_list.xml
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/tmpl/default.php
var/www/hosting/archlinexp.eu/www/modules/mod_course_list/tmpl/index.html

View File

@ -1,24 +0,0 @@
<?php
if (!class_exists('Constants')) require_once("constants.php");
if ($_SERVER['SERVER_NAME'] == 'www.archline.hu' || $_SERVER['SERVER_NAME'] == 'www.archlinexp.com' || $_SERVER['SERVER_NAME'] == 'www.archlinexp.eu') {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
} elseif ($_SERVER['SERVER_NAME'] == 'secondary.dev.cadline.hu') {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
} elseif ($_SERVER['SERVER_NAME'] == 'crm.cadline.hu') {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
} else {
$config['db_host'] = '127.0.0.1';
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7160",
"log_excerpt": "[quarantine] www.archline.hu:common_cadline_libraries/crm_config.db.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/common_cadline_libraries/crm_config.db.php)",
"original_sha256": "b6bf5ac201bca1880d594fc4f0bd22a57c44014ae49d9c1b79096ba474277b45",
"original_stat": {
"gid": 30037,
"mtime": 1772622166,
"size": 1111,
"uid": 12425
},
"rel_path": "common_cadline_libraries/crm_config.db.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,133 +0,0 @@
<?php
if (!defined('PATH_CODEGEN')) define('PATH_CODEGEN', "/usr/local/sbin/codegen");
if (!defined('_LEASE_VALID_DAYS_')) define("_LEASE_VALID_DAYS_", 60);
if (!defined('CRMADATBAZIS')) define('CRMADATBAZIS', "cl_hlusers");
if (!defined('JMLADATBAZIS')) define('JMLADATBAZIS', "www_archline_hu");
if (!defined('SYNCADATBAZIS')) define('SYNCADATBAZIS', "sync_crm");
if (!defined('_COURSE_PRICE_PRELIMINARY_')) define("_COURSE_PRICE_PRELIMINARY_", 342);
if (!defined('_COURSE_PRICE_INTERMEDIATE_')) define("_COURSE_PRICE_INTERMEDIATE_", 343);
if (!defined('_MANAGER_')) define("_MANAGER_", 36);
if (!defined('ACT_VERSION_ID')) define('ACT_VERSION_ID', 1182);
$crm_config = "true";
class Status
{
const sNormal = 0; // Semmilyen kiveteles esemeny nem erzekelheto, a program rendben fut
const sInconsistent = 2; // A backup key file-ok elterest mutatnak a fo key file-al
const sReenabled = 4; // Egy letiltott program most kapta meg a reaktivalo kodot
const sDisabled = 8; // A program le lett tiltva
const sLimited = 16; // A program korlatozott modban fut
const sUnlimited = 32; // A vedelem lekapcsolt, a program nem korlatozza a tovabbi mukodest
const sTimeBack = 64; // Oravisszaallitast erzekelt
const sTimeBackRestored = 128; // Kapott visszaallitas kiiktato kodot
const sFixTimeLimitReached = 256; // Elerte a beallitott vegleges lejarati idot
const sKilled = 512; // A program le lett allitva
const sCracked = 1024; // A program fel van torve
const sActiveRegistration = 2048; // A regisztraciorol kaptunk pozitiv visszajelzest
const sTimeCodeAppliedToFile = 4096; // Az idokod letarolasra kerult
const sTimeCodeErrorReceived = 8192; // Idokod helyett hibat kapott
const sNotCommercialProgram = 16384; // A program nem kereskedelmi valtozat
const sHW_keyOK = 32768; // A program hardware kulcsa rendben van
const sHW_keyLanForSingle = 65536; // A hardware kulcs lan-s es ezt hasznalna a program
const sHW_DriverVerinfoNotAvaliable = 131072; // Sentinel: Driver version info not avalaiable
const sHW_NotOurKey = 262144; // Sentinel: not our key
const sHW_TerminalServerEnableFailed = 524288; // Sentinel: enable running on terminal server failed
const sHW_KeyNotFound = 1048576; // Sentinel: key not found
const sHW_AESNotEnabled = 2097152; // Sentinel: AES not enabled
const sHW_SecTunNotEnabled = 4194304; // Sentinel: secure tunnel not enabled
const sHW_NoKeyInfo = 8388608; // Sentinel: unable to access key info
const sHW_CannotContact = 16777216; // Sentinel: cannot contact to server
const sHW_InitFailed = 33554432; // Sentinel: key initialization failed
const sHW_FormatPacket = 67108864; // Sentinel: format packet error
const sHW_LanServerNotFound = 134217728; // Sentinel: lan server not found
const sHW_keyKeySerialNotMatchingWithLicenseSerial = 268435456; // A hardwarekulcs sorozatszama nem passzol a licenc sorozatszamahoz
const sHW_LanServerKeyNotFound = 536870912; // A halozatos szerver program nem latja a kulcsot
const sHW_LanServerNotEnoughLicence = 1073741824; // A halozatos szerver szabad licencei elfogytak
const sHW_LicenceRemoved = 2147483648; // A licenc el lett tavolitva
const sFloatingLicenseToAnotherComputer = 4294967296; // A floating licence egy masik gephez lett rogzitve
const sFloatingLicensePINError = 8589934592; // A floating license nem kapta meg a pin kodjat
const sFloatingAnotherLicenseIsOnThisComputer = 17179869184; // Ehhez a gephez egy masik licensz van rogzitve
}
class CRM_Error
{
const serverDownEng = '1121 - The server is currently not available. Please retry the connection later. If the problem persists, contact customer support.';
const serverDownHun = '1121 - A szerver jelenleg nem elérhető. Kérjük, próbálja újra a kapcsolatot később. Ha a probléma továbbra is fennáll, lépjen kapcsolatba a terméktámogatással.';
}
class Floating_Error
{
const UNKNOWN = 0;
const DIFFERENT_LICENSE_ON_THE_SAME_COMPUTER = 1;
const LIMIT_REACHED = 2;
}
class Time
{
const sMin = 1;
const sFiveMin = 5;
const sFifteenMin = 15;
const sHour = 60;
const sThreeHour = 180;
const sSixHour = 360;
const sTwelveHour = 720;
const sDay = 1440;
}
class Hour
{
const sHour = 1;
const sThreeHour = 3;
const sSixHour = 6;
const sTwelveHour = 12;
}
class _Country
{
const Hungary = 36;
}
class _UserType
{
const Nonprofit = 2;
}
class _UserStatus
{
const StudentProbBuyer = 7;
}
class _Profession
{
const StudentIntDesinger = 11;
}
class _Manager
{
const Web = 36;
}
class _Product
{
const Professional = 1;
const Live = 2;
}
class _Hardlock
{
const Blank = 0;
const Active = 1;
const Inactive = 2;
}
class _Program
{
const CurrentVersion = 20;
const PrevVersion = 19;
const ProfType = 8;
const LiveType = 76;
const Active = 0;
const Inactive = 1;
const Nonprofit = 5;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7158",
"log_excerpt": "[quarantine] www.archline.hu:common_cadline_libraries/crm_config.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/common_cadline_libraries/crm_config.php)",
"original_sha256": "2a4e7009a1bc1ead4599bd32b35f69ee3bcb585732fe6259783ac80923bdf4ee",
"original_stat": {
"gid": 30037,
"mtime": 1755185334,
"size": 6206,
"uid": 12425
},
"rel_path": "common_cadline_libraries/crm_config.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,616 +0,0 @@
<?php
if (!isset($config)) require_once('crm_config.db.php');
if (!isset($crm_config)) require_once('crm_config.php');
if (!defined('_DB_HOST') && isset($config['db_host'])) define('_DB_HOST', $config['db_host']);
if (!defined('_DB_NAME') && isset($config['db_name'])) define('_DB_NAME', $config['db_name']);
if (!defined('_DB_USER') && isset($config['db_user'])) define('_DB_USER', $config['db_user']);
if (!defined('_DB_PASS') && isset($config['db_pass'])) define('_DB_PASS', $config['db_pass']);
class crm_database
{
public static $msh;
public $writelog;
private $host;
private $name;
private $user;
private $pass;
private $connection;
private $queryResult;
private $queryString;
public function __construct()
{
$this->connection = false;
$this->host = '';
$this->user = '';
$this->pass = '';
$this->name = '';
$this->writelog = false;
}
public static function getInstance()
{
if (!empty(self::$msh)) {
return self::$msh;
}
self::$msh = new crm_database();
self::$msh->init();
return self::$msh;
}
public static function escapeString($str = "")
{
$ret = mysqli_real_escape_string($this->connection, $str);
return $ret;
}
public function init($host = _DB_HOST, $name = _DB_NAME, $user = _DB_USER, $pass = _DB_PASS)
{
$this->host = $host;
$this->name = $name;
$this->user = $user;
$this->pass = $pass;
}
private function connect()
{
if ($this->connection) {
return;
}
$this->connection = mysqli_connect($this->host, $this->user, $this->pass);
if (false === $this->connection) {
throw new Exception('Can\'t connect to db');
}
mysqli_select_db($this->connection, $this->name);
mysqli_query($this->connection, 'SET CHARACTER SET UTF8');
mysqli_query($this->connection, 'SET NAMES \'UTF8\' ');
mysqli_set_charset($this->connection, 'utf8');
if (mysqli_error($this->connection)) {
throw new Exception(mysqli_error($this->connection));
}
}
public function getQueryString()
{
return $this->queryString;
}
public function query($query, $getID = false)
{
$this->connect();
$this->AddSemicolonToQueryString($query);
$this->queryString = $query;
if ($this->is_write_type($query) === true) {
$boolWrite = true;
$arrSkip = array('h_aktivalas_infok', 'h_history', 'u_history', 'u_userstatus_history', 'cl_hlusers.userstats2013', 'cl_hlusers.switch', 'cl_hlusers.writelog');
foreach ($arrSkip as $tabla) {
if (strpos($query, $tabla)) {
$boolWrite = false;
break;
}
}
if ($boolWrite) {
mysqli_query($this->connection, "INSERT INTO `cl_hlusers`.`writelog` (`user`,`datum`,`ip`,`url`,`func`,`sql`) VALUES (
'" . (isset($_SERVER['SERVER_NAME']) ? $_SERVER['SERVER_NAME'] : 'www.archlinexp.com') . "',
'" . date("Y-m-d H:i:s", time()) . "',
'" . (isset($_SERVER['REMOTE_ADDR']) ? $_SERVER['REMOTE_ADDR'] : '127.0.0.1') . "',
'" . (isset($_SERVER['SERVER_NAME']) ? addslashes($_SERVER['SERVER_NAME'] . $_SERVER['REQUEST_URI']) : '') . "',
'" . addslashes("function: " . __FUNCTION__ . " method: " . __METHOD__) . "','" . addslashes($query) . "');");
}
}
$this->queryResult = mysqli_query($this->connection, $query);
if (mysqli_error($this->connection)) {
throw new Exception(mysqli_error($this->connection) . ' Query: ' . $query);
}
if ($getID) return $this->getInsertedId();
}
public function AddSemicolonToQueryString(&$query)
{
$query = rtrim($query);
if (substr($query, -1) != ';') {
$query = $query . ";";
}
}
public function fetchNext()
{
$back = array();
if ($row = mysqli_fetch_assoc($this->queryResult)) {
foreach ($row as $key => $value) {
$row[$key] = stripslashes($value);
}
$back = $row;
return $back;
}
return false;
}
public function fetchAssoc()
{
$back = array();
while ($row = mysqli_fetch_assoc($this->queryResult)) {
foreach ($row as $key => $value) {
$row[$key] = stripslashes($value);
}
$back[] = $row;
}
return $back;
}
public function getInsertedId()
{
return mysqli_insert_id($this->connection);
}
public function select($table, $where = false, $offset = false, $limit = false, $order = false)
{
$whereStr = '';
$limitStr = '';
$orderStr = '';
if (is_array($where)) {
$whereStr = 'WHERE ' . $this->whereMakerPriv($where);
} elseif ($where) {
$whereStr = 'WHERE ' . $where;
}
if (($offset !== false and $offset !== null) && ($limit !== false and $limit !== null)) {
$limitStr = 'LIMIT ' . $offset . ', ' . $limit;
}
if (is_array($order)) {
$orderStr = 'ORDER BY ';
foreach ($order as $key => $value) {
$orderStr .= $key . ' ' . $value . ' ';
}
} elseif ($order) {
$orderStr = 'ORDER BY ' . $order;
}
return $this->query('SELECT * FROM ' . $table . ' ' . $whereStr . ' ' . $orderStr . ' ' . $limitStr . ';');
}
public function getProp($table, $func, $field, $where = false)
{
$whereStr = '';
if (is_array($where)) {
$whereStr = 'WHERE ' . $this->whereMakerPriv($where);
} elseif ($where) {
$whereStr = 'WHERE ' . $where;
}
$this->query('SELECT ' . $func . '(' . $field . ') as p FROM ' . $table . ' ' . $whereStr . ';');
$arr = $this->fetchAssoc();
return $arr[0]['p'];
}
public function getCount($table, $field = 'id', $where = false)
{
return $this->getProp($table, 'COUNT', $field, $where);
}
public function getSum($table, $field = 'id', $where = false)
{
return $this->getProp($table, 'SUM', $field, $where);
}
public function getAvg($table, $field = 'id', $where = false)
{
return $this->getProp($table, 'AVG', $field, $where);
}
public function delete($table, $where = false)
{
$whereStr = '';
if (is_array($where)) {
$whereStr = 'WHERE ' . $this->whereMakerPriv($where);
} elseif ($where) {
$whereStr = 'WHERE ' . $where;
}
return $this->query('DELETE FROM ' . $table . ' ' . $whereStr . ';');
}
public function update($table, $infoArr, $where = false)
{
if (!is_array($infoArr)) {
return false;
}
$whereStr = '';
$dataArr = array();
$data = '';
if (is_array($where)) {
$whereStr = 'WHERE ' . $this->whereMakerPriv($where);
} elseif ($where) {
$whereStr = 'WHERE ' . $where;
}
foreach ($infoArr as $key => $value) {
$dataArr[] = '`' . $key . '`="' . mysqli_real_escape_string($this->connection, $value) . '" ';
}
$data = implode(',', $dataArr);
return $this->query('UPDATE ' . $table . ' SET ' . $data . ' ' . $whereStr . ';');
}
public function insert($table, $infoArr)
{
$this->connect();
$columArr = array();
$valueArr = array();
$colums = '';
$values = '';
foreach ($infoArr as $key => $value) {
$columArr[] = '`' . $key . '`';
$valueArr[] = '"' . mysqli_real_escape_string($this->connection, $value) . '"';
}
$colums = implode(',', $columArr);
$values = implode(',', $valueArr);
return $this->query('INSERT INTO ' . $table . ' (' . $colums . ') VALUES (' . $values . ');', true);
}
public function affectedRows()
{
return mysqli_affected_rows($this->connection);
}
public function whereMakerPriv($where)
{
if (!is_array($where)) {
return 1;
}
$this->connect();
$back = '1 ';
foreach ($where as $key => $value) {
if (is_array($value)) {
$back .= 'AND `' . $key . '`' . $value[0] . '"' . $value[1] . '" ';
} else {
$back .= 'AND `' . $key . '`="' . mysqli_real_escape_string($this->connection, $value) . '" ';
}
}
return $back;
}
public static function whereMaker($where)
{
if (!is_array($where)) {
return 1;
}
$back = '1 ';
foreach ($where as $key => $value) {
if (is_array($value)) {
$back .= 'AND `' . $key . '`' . $value[0] . '"' . $value[1] . '" ';
} else {
$back .= 'AND `' . $key . '`="' . $value . '" ';
}
}
return $back;
}
public function is_write_type($sql)
{
if (!preg_match('/^\s*"?(SET|INSERT|UPDATE|DELETE|REPLACE|CREATE|DROP|TRUNCATE|LOAD DATA|COPY|ALTER|GRANT|REVOKE|LOCK|UNLOCK)\s+/i', $sql)) {
return false;
}
return true;
}
public function getConnection()
{
return ($this->connection);
}
public function setConnect()
{
$this->connect();
}
}
class Database
{
private $host = _DB_HOST;
private $username = _DB_USER;
private $password = _DB_PASS;
private $queryResult;
private $queryString;
private static $msh;
protected $connection;
private static $arrSkip = array(
"cl_hlusers.h_aktivalas_infok",
"cl_hlusers.h_history",
"cl_hlusers.u_history",
"cl_hlusers.u_userstatus_history",
"cl_hlusers.userstats2013",
"cl_hlusers.switch",
"cl_hlusers.writelog",
"cl_hlusers.telemetria",
"cl_hlusers.computers",
"cl_hlusers.debug_table"
);
public function __construct()
{
if (!isset($this->connection)) {
$this->connection = new mysqli($this->host, $this->username, $this->password);
if (!$this->connection) {
echo 'Cannot connect to database!';
exit;
}
}
unset($this->queryResult);
$this->connection->set_charset("utf8");
return $this->connection;
}
public static function getInstance()
{
if (!empty(self::$msh)) return self::$msh;
self::$msh = new Database();
return self::$msh;
}
public function query($query, $params = null, $isClosed = false, $getID = false)
{
// $params = array("ss","string_1","string_2");
$this->addSemicolonToQueryString($query);
$imp = '';
if ($params != null) $imp = implode(", ", $params);
$this->queryString = "{$query} ($imp)";
if ($this->isWriteType($query)) {
$boolWrite = true;
foreach (self::$arrSkip as $tabla) {
if (strpos($query, $tabla)) {
$boolWrite = false;
break;
}
}
// A nagios test ne irja tele a cl_hlusers.writelog tablat
if (strpos($_SERVER['REQUEST_URI'], 'nagios_monitor.php') !== false || strpos($_SERVER['REQUEST_URI'], 'maintenance/test_API.php') !== false || $_SERVER['SERVER_NAME'] == 'secondary.cadline.hu')
$boolWrite = false;
// A tesztek futtatasakor ne logolja a modositasokat (majd a webformos)
if (strpos($_SERVER['REQUEST_URI'], 'maintenance/tips.php') /*&& $_SERVER['REMOTE_ADDR'] == '185.43.206.63'*/) {
$paramIndex = 5;
if ((substr($params[$paramIndex], 0, 7) == '3710018') || (substr($params[$paramIndex], 0, 7) == '3710028')
|| (substr($params[$paramIndex], 0, 7) == '3710038') || (substr($params[$paramIndex], 0, 7) == '3700078')
|| (substr($params[$paramIndex], 0, 7) == '3700018')
) {
$boolWrite = false;
}
}
$func = addslashes("function: " . __FUNCTION__ . " method: " . __METHOD__)/*.' --> '.$params[$paramIndex]*/;
if ($boolWrite) {
mysqli_query($this->connection, "INSERT INTO `cl_hlusers`.`writelog` (`user`,`datum`,`ip`,`url`,`func`,`sql`) VALUES (
'" . (isset($_SERVER['SERVER_NAME']) ? $_SERVER['SERVER_NAME'] : 'www.archlinexp.com') . "',
'" . date("Y-m-d H:i:s", time()) . "',
'" . (isset($_SERVER['REMOTE_ADDR']) ? $_SERVER['REMOTE_ADDR'] : '127.0.0.1') . "',
'" . (isset($_SERVER['SERVER_NAME']) ? addslashes($_SERVER['SERVER_NAME'] . $_SERVER['REQUEST_URI']) : '') . "',
'" . $func . "','" . addslashes($query) . "');");
}
}
$this->queryResult = $this->connection->prepare($query);
if ($params != null) {
$tmp = array();
foreach ($params as $key => $value) $tmp[$key] = &$params[$key];
call_user_func_array(array($this->queryResult, 'bind_param'), $tmp);
}
$this->queryResult->execute();
if (mysqli_error($this->connection)) throw new Exception(mysqli_error($this->connection) . ' Query: ' . $query);
if ($getID) return $this->getInsertedId();
if ($isClosed) $this->queryResult->close();
}
public function insert($table, $infoArr, $type, $needEscape = true)
{
$columArr = array();
$bindArr = array();
$endArr = array();
$colums = '';
$values = '';
array_push($endArr, $type);
foreach ($infoArr as $key => $value) {
$columArr[] = "`{$key}`";
$bindArr[] = "?";
$string = !$needEscape && $key == 'versionInfo' ? $value : mysqli_real_escape_string($this->connection, $value);
array_push($endArr, $string);
}
$colums = implode(',', $columArr);
$values = implode(',', $bindArr);
$sql = "INSERT INTO {$table} ({$colums}) VALUES ({$values});";
return $this->query($sql, $endArr, false, true);
}
public function update($table, $infoArr, $where = false, $type, $needEscape = true)
{
if (!is_array($infoArr)) return false;
$whereStr = '';
$paramValue = array();
$bindArr = array();
$endArr = array();
$data = '';
array_push($endArr, $type);
if (is_array($where)) $whereStr = 'WHERE ' . $this->whereMakerPriv($where, $paramValue);
elseif ($where) $whereStr = "WHERE {$where}";
foreach ($infoArr as $key => $value) {
$bindArr[] = "`{$key}` = ?";
$string = !$needEscape && $key == 'versionInfo' ? $value : mysqli_real_escape_string($this->connection, $value);
array_push($endArr, $string);
}
foreach ($paramValue as $param) array_push($endArr, mysqli_real_escape_string($this->connection, $param));
$data = implode(',', $bindArr);
$query = "UPDATE {$table} SET {$data} {$whereStr};";
return $this->query($query, $endArr, true);
}
public function delete($table, $where = false, $type)
{
$whereStr = '';
$paramValue = array();
$endArr = array();
array_push($endArr, $type);
if (is_array($where)) $whereStr = 'WHERE ' . $this->whereMakerPriv($where, $paramValue);
elseif ($where) $whereStr = "WHERE {$where}";
foreach ($paramValue as $param) array_push($endArr, mysqli_real_escape_string($this->connection, $param));
$query = "DELETE FROM {$table} {$whereStr};";
return $this->query($query, $endArr, true);
}
public function fetchNext()
{
$result = $this->get_row();
$this->queryResult->free_result();
$this->queryResult->close();
return $result;
}
public function fetchAssoc()
{
$result = $this->get_result();
$this->queryResult->free_result();
$this->queryResult->close();
return $result;
}
protected function get_result()
{
$result = array();
$this->queryResult->store_result();
for ($i = 0; $i < $this->queryResult->num_rows; $i++) {
$metadata = $this->queryResult->result_metadata();
$params = array();
while ($field = $metadata->fetch_field()) $params[] = &$result[$i][$field->name];
call_user_func_array(array($this->queryResult, 'bind_result'), $params);
$this->queryResult->fetch();
}
if (!empty($result)) return $result;
else return null;
}
protected function get_row()
{
$result = array();
$this->queryResult->store_result();
if ($this->queryResult->num_rows > 0) {
for ($i = 0; $i < 1; $i++) {
$metadata = $this->queryResult->result_metadata();
$params = array();
while ($field = $metadata->fetch_field()) $params[] = &$result[$i][$field->name];
call_user_func_array(array($this->queryResult, 'bind_result'), $params);
$this->queryResult->fetch();
}
}
if (!empty($result)) return $result[0];
else return null;
}
public function getInsertedId()
{
$id = $this->queryResult->insert_id;
$this->queryResult->close();
return $id;
}
private function addSemicolonToQueryString(&$query)
{
$query = rtrim($query);
if (substr($query, -1) != ';') $query = "{$query};";
}
private function whereMakerPriv($where, &$paramValue = array())
{
if (!is_array($where)) return 1;
$back = '1 ';
foreach ($where as $key => $value) {
if (is_array($value)) {
$back .= 'AND `' . $key . '`' . $value[0] . '"' . $value[1] . '" ';
} else {
$back .= "AND `{$key}` = ? ";
array_push($paramValue, $value);
}
}
return $back;
}
private function isWriteType($sql)
{
if (!preg_match('/^\s*"?(SET|INSERT|UPDATE|DELETE|REPLACE|CREATE|DROP|TRUNCATE|LOAD DATA|COPY|ALTER|GRANT|REVOKE|LOCK|UNLOCK)\s+/i', $sql)) {
return false;
}
return true;
}
public function getQueryString()
{
return $this->queryString;
}
public function getQueryResult()
{
return $this->queryResult;
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7157",
"log_excerpt": "[quarantine] www.archline.hu:common_cadline_libraries/crm_database.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/common_cadline_libraries/crm_database.class.php)",
"original_sha256": "56e3117ed333988553caded835b34aa3575faa13dd50d2c08d9ed113ac50e307",
"original_stat": {
"gid": 30037,
"mtime": 1740755110,
"size": 19735,
"uid": 12425
},
"rel_path": "common_cadline_libraries/crm_database.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7162",
"log_excerpt": "[quarantine] www.archline.hu:common_cadline_libraries/crm_users.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/common_cadline_libraries/crm_users.class.php)",
"original_sha256": "1a8419cbc958662de0784f2426c090a2025cf6bd2cc95bc356b4515047db2aa7",
"original_stat": {
"gid": 30037,
"mtime": 1724833354,
"size": 50033,
"uid": 12425
},
"rel_path": "common_cadline_libraries/crm_users.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,5 +0,0 @@
serverAlive.txt
activateServer.txt
webform/airender
tests/images
serverAliveSecondary.txt

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6982",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/.gitignore -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/.gitignore)",
"original_sha256": "5acb091961b9d361c6dd356a85ff5175ede76c4c0428bfb28b83f1c973c758ab",
"original_stat": {
"gid": 30037,
"mtime": 1760947920,
"size": 93,
"uid": 12425
},
"rel_path": "maintenance/.gitignore",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,183 +0,0 @@
##
# @package Joomla
# @copyright Copyright (C) 2005 - 2014 Open Source Matters. All rights reserved.
# @license GNU General Public License version 2 or later; see LICENSE.txt
##
##
# READ THIS COMPLETELY IF YOU CHOOSE TO USE THIS FILE!
#
# The line just below this section: 'Options +FollowSymLinks' may cause problems
# with some server configurations. It is required for use of mod_rewrite, but may already
# be set by your server administrator in a way that dissallows changing it in
# your .htaccess file. If using it causes your server to error out, comment it out (add # to
# beginning of line), reload your site in your browser and test your sef url's. If they work,
# it has been set by your server administrator and you do not need it set here.
##
## Can be commented out if causes errors, see notes above.
Options +FollowSymLinks
## Mod_rewrite in use.
RewriteEngine On
RewriteCond %{HTTP_HOST} ^archlinexp.co.uk$ [OR]
RewriteCond %{HTTP_HOST} ^www.archlinexp.co.uk$
rewriterule (.*) http://www.archlinexp.com/ [r=301,nc,l]
RewriteCond %{QUERY_STRING} ^menu=tips(.*)&lang=(.*)&version=(.*)&session=(.*)$
RewriteRule ^index\.php$ /maintenance/tips\.php?lang=%2&version=%3&session=%4 [NC,R=302,L]
RewriteCond %{QUERY_STRING} ^menu=activate_90_days_active&lang=(.*)&ser=(.*)&pwd=(.*)$
RewriteRule ^index\.php$ /maintenance/activate_90_days_active\.php?ser=%2&pwd=%3 [NC,R=302,L]
RewriteCond %{QUERY_STRING} ^option=com_project&view=category&template=category$
RewriteRule ^index\.php$ http://www.archlinexp.com/index.php?option=com_project&view=category&template=category&lang=hun [NC,R=301,L]
rewriterule ^collection/category_archlinexp/Hun$ http://www.archlinexp.com/index.php?option=com_project&view=category&template=category&lang=hun [NC,r=301,l]
rewriterule ^collection/category_archlinexp/(.*)$ http://www.archlinexp.com/index.php?option=com_project&view=category&template=category&lang=eng [NC,r=301,l]
rewriterule ^collection/upload/(.*)/(.*)/(.*)$ /index.php?option=com_showroom&view=upload&template=blankframe&file=$1&type=$2&lang=$3 [r=302,nc,l]
rewriterule ^collection/uploadgroup/(.*)/(.*)/(.*)$ /index.php?option=com_showroom&view=uploadgroup&template=blankframe&file=$1&type=$2&lang=$3 [r=302,nc,l]
rewriterule ^version/warehousedownloadlink/(.*)/(.*)$ /maintenance/warehousedownloadlink.php?link=$1&archlineversion=$2 [nc,l]
rewriterule ^version/warehousedownloadlink/(.*)$ /maintenance/warehousedownloadlink.php?link=$1 [nc,l]
rewriterule ^version/warehouseparsesource/$ /maintenance/warehouseparsesource.php [nc,l]
rewriterule ^version/warehousegetfileformat/(.*)/(.*)$ /maintenance/warehousegetfileformat.php?link=$1&archlineversion=$2 [nc,l]
rewriterule ^version/geopluginlink/$ /maintenance/geopluginlink.php [nc,l]
rewriterule ^edit-user-details(.*)$ index.php?option=com_users&view=profile&layout=edit [nc,l]
rewriterule ^public/tcexam/(.*)$ http://tcexam.archline.hu/ [r=301,nc,l]
rewriterule ^download/(.*)/(.*)/index_CSH.htm(.*)$ /public/downloads/$1/$2/index_CSH.htm$3 [r=301,nc,l]
RewriteCond %{HTTP_HOST} ^www.archlinexp.com$
rewriterule ^rss$ /news/feed/rss [r=302,nc,l]
RewriteCond %{HTTP_HOST} ^www.archlinexp.com$
rewriterule ^school/(.*)$ /iskolak/$1 [nc,l]
rewriterule ^pro_live_bundle /maintenance/pro_live_bundle.php [nc,l]
rewriterule ^hu/collection2/index/(.*)/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=hun&ver=$2 [r=301,nc,l]
rewriterule ^en/collection2/index/(.*)/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=eng&ver=$2 [r=301,nc,l]
rewriterule ^es/collection2/index/(.*)/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=eng&ver=$2 [r=301,nc,l]
rewriterule ^it/collection2/index/(.*)/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=eng&ver=$2 [r=301,nc,l]
rewriterule ^de/collection2/index/(.*)/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=eng&ver=$2 [r=301,nc,l]
rewriterule ^collection2/index/hun/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=hun&ver=$1 [r=301,nc,l]
rewriterule ^collection2/index/(.*)/(.*)$ /index.php?option=com_showroom&template=blankframe&lang=eng&ver=$2 [r=301,nc,l]
RewriteCond %{HTTP_HOST} ^www.archlinexp.com$
rewriterule ^collection2$ /index.php?option=com_showroom&template=blankframe&lang=eng&ver=29 [r=301,nc,l]
RewriteRule ^enrollments/courses/([^/]*)/?([^/]*)?/?([^/]*)?$ /beiratkozas/tanfolyamok.php?url=$1&id=$2&lesson=$3 [nc,l]
RewriteCond %{HTTP_HOST} ^www.archline.hu$
rewriterule ^collection2$ /index.php?option=com_showroom&template=blankframe&lang=hun&ver=29 [r=301,nc,l]
RewriteRule ^beiratkozas/tanfolyamok/([^/]*)/?([^/]*)?/?([^/]*)?$ /beiratkozas/tanfolyamok.php?url=$1&id=$2&lesson=$3 [nc,l]
rewriterule ^projects/supportupload/(.*)/(.*)$ /maintenance/supportupload.php?sn=$1&guid=$2 [nc,l]
rewriterule ^crash/(.*)/(.*)/(.*)/(.*)$ /maintenance/crash.php?guid=$1&build=$2&lang=$3&serial=$4 [nc,l]
rewriterule ^crash/(.*)/(.*)/(.*)$ /maintenance/crash.php?guid=$1&build=$2&lang=$3 [nc,l]
rewriterule ^crash/(.*)/(.*)$ /maintenance/crash.php?guid=$1&build=$2 [nc,l]
rewriterule ^crash/(.*)$ /maintenance/crash.php?guid=$1 [nc,l]
rewriterule ^version/regisztracio/(.*)/(.*)/(.*)$ /maintenance/regisztracio.php?serial=$1&isid=$2&kod=$3 [nc,l]
rewriterule ^version/regisztracio/(.*)/(.*)$ /maintenance/regisztracio.php?serial=$1&isid=$2 [nc,l]
rewriterule ^version/unregister/(.*)/(.*)$ /maintenance/unregister.php?serial=$1&isid=$2 [nc,l]
rewriterule ^version/aktivalasikod/(.*)/(.*)/(.*)$ /maintenance/aktivalasikod.php?serial=$1&isid=$2&kod=$3 [nc,l]
rewriterule ^version/update/(.*)/(.*)/(.*)$ /maintenance/update.php?projectid=$1&pkgid=$2&serial=$3 [nc,l]
rewriterule ^version/elofizkarbxml/(.*)/(.*)$ /maintenance/elofizkarbxml.php?file=$1&lang=$2 [nc,l]
rewriterule ^version/elofizkarbxml/(.*)$ /maintenance/elofizkarbxml.php?file=$1 [nc,l]
rewriterule ^version/updatexml$ /maintenance/updatexml.php [nc,l]
rewriterule ^version/getserialanddaycode/(.*)/(.*)/(.*)/(.*)$ /maintenance/getserialanddaycode.php?serial=$1&ver=$2&isid=$3&npid=$4 [nc,l]
rewriterule ^cron/startchangedhardlock$ /maintenance/startchangedhardlock.php [nc,l]
rewriterule ^cron/hibasprograminditasok$ /maintenance/hibasprograminditasok.php [nc,l]
rewriterule ^cron/elofizurites$ /maintenance/elofizurites.php [nc,l]
rewriterule ^cron/elofizexcelcheck$ /maintenance/elofizexcelcheck.php [nc,l]
rewriterule ^other/viewerlejartaktorlese$ /maintenance/viewerlejartaktorlese.php [nc,l]
rewriterule ^unsubscribe/(.*)$ /maintenance/leiratkozas.php?email=$1 [nc,l]
rewriterule ^leiratkozas/(.*)$ /maintenance/leiratkozas.php?email=$1 [nc,l]
rewriterule ^events/newclick/(.*)/(.*) /maintenance/newclick.php?alias=$1&email=$2 [nc,qsa,l]
rewriterule ^crashadmin$ /maintenance/crashadmin.php [nc,l]
rewriterule ^crashadmin/(.*)$ /maintenance/crashadmin.php?guid=$1 [nc,l]
# 404-es oldalak atiranyitasa
rewriterule ^public/support/tips/(.*)/xml/settings.xml /maintenance/empty_result.xml [nc,l]
rewriterule ^public/support/commandtips/(.*)/xml/settings.xml /maintenance/empty_result.xml [nc,l]
#rewriterule ^business/activate_30/(.*)$ /cadline-kft [r=301,nc,l]
#rewriterule ^settings/lang/(.*)$ / [r=301,nc,l]
#RewriteRule ^public/hr/ARCHLINE_XP2015_64bit_setup.exe$ /public/downloads/eng/ARCHLINE_XP2015_64bit_setup.exe [r=302,NC,L]
#rewriterule ^azure/status/(.*)/(.*)/(.*)/(.*)/(.*)$ /maintenance/azure_vm_status.php?vmname=$1&lastactivity=$2&rdppart=$3&sessionid=$4&cpuusage=$5 [nc,l]
#rewriterule ^azure/status_test/(.*)$ /maintenance/azure_vm_status_test.php?stop=$1 [nc,l]
#rewriterule ^cron/messages_email$ /maintenance/messages_email.php [nc,l]
#rewriterule ^cron/downloademail$ /maintenance/downloademail.php [nc,l]
rewriterule ^download/download-center/downloadable-projects https://www.archlinexp.com/education/workshops/workshop-application-preliminary [nc,l]
Redirect /blog/szakmai-cikkek/rendering-oktatasi-segedlet https://help.archlinexp.com/hc/hu-hu/articles/360019417997-Rendering-oktat%C3%A1si-seg%C3%A9dlet
Redirect /blog/professional-articles/rendering-tutorial https://help.archlinexp.com/hc/en-us/articles/360019417997-Rendering-Tutorial
Redirect /oktatas/rendszerkovetelmenyek https://help.archlinexp.com/hc/hu-hu/articles/360012845578-Rendszerk%C3%B6vetelm%C3%A9nyek
Redirect /education/system-requirements https://help.archlinexp.com/hc/en-us/articles/360012845578-System-requirements
Redirect /termekek/archline-xp-live/live-rendszerkovetelmenyek https://help.archlinexp.com/hc/hu-hu/articles/360012845578-Rendszerk%C3%B6vetelm%C3%A9nyek
Redirect /oktatas/faq https://help.archlinexp.com/hc/hu-hu/articles/360012793498-Mit-csin%C3%A1l-az-ARCHLine-XP-program
Redirect /education/faq https://help.archlinexp.com/hc/en-us/articles/360012793498-What-is-ARCHLine-XP-Professional-
## Begin - Tanfolyam oldalak atiranyitasa az uj oldalra.
#
Redirect /oktatas/workshopok/alapfoku-tanfolyam https://www.archline.hu/oktatas/workshopok
Redirect /oktatas/workshopok/kozepfoku-tanfolyam https://www.archline.hu/oktatas/workshopok
Redirect /oktatas/workshopok/felsofoku-tanfolyam https://www.archline.hu/oktatas/workshopok
Redirect /oktatas/workshopok/epiteszeti-tanfolyam https://www.archline.hu/oktatas/workshopok
#
## End - Tanfolyam oldalak atiranyitasa az uj oldalra.
## Begin - Rewrite rules to block out some common exploits.
# If you experience problems on your site block out the operations listed below
# This attempts to block the most common type of exploit `attempts` to Joomla!
#
# Block out any script trying to base64_encode data within the URL.
RewriteCond %{QUERY_STRING} base64_encode[^(]*\([^)]*\) [OR]
# Block out any script that includes a <script> tag in URL.
RewriteCond %{QUERY_STRING} (<|%3C)([^s]*s)+cript.*(>|%3E) [NC,OR]
# Block out any script trying to set a PHP GLOBALS variable via URL.
RewriteCond %{QUERY_STRING} GLOBALS(=|\[|\%[0-9A-Z]{0,2}) [OR]
# Block out any script trying to modify a _REQUEST variable via URL.
RewriteCond %{QUERY_STRING} _REQUEST(=|\[|\%[0-9A-Z]{0,2})
# Return 403 Forbidden header and show the content of the root homepage
RewriteRule .* index.php [F]
#
## End - Rewrite rules to block out some common exploits.
## Begin - Custom redirects
#
# If you need to redirect some pages, or set a canonical non-www to
# www redirect (or vice versa), place that code here. Ensure those
# redirects use the correct RewriteRule syntax and the [R=301,L] flags.
#
## End - Custom redirects
##
# Uncomment following line if your webserver's URL
# is not directly related to physical file paths.
# Update Your Joomla! Directory (just / for root).
##
# RewriteBase /
## Begin - Joomla! core SEF Section.
#
RewriteRule .* - [E=HTTP_AUTHORIZATION:%{HTTP:Authorization}]
#
# If the requested path and file is not /index.php and the request
# has not already been internally rewritten to the index.php script
RewriteCond %{REQUEST_URI} !^/index\.php
# and the requested path and file doesn't directly match a physical file
RewriteCond %{REQUEST_FILENAME} !-f
# and the requested path and file doesn't directly match a physical folder
RewriteCond %{REQUEST_FILENAME} !-d
# internally rewrite the request to the index.php script
RewriteRule .* index.php [L]
#
## End - Joomla! core SEF Section.

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6964",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/.htaccess -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/.htaccess)",
"original_sha256": "fc175d344b413e625f5ee2358c739218865cdc00a5db5a3e7448480e6bbfd382",
"original_stat": {
"gid": 30037,
"mtime": 1749559514,
"size": 11440,
"uid": 12425
},
"rel_path": "maintenance/.htaccess",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,284 +0,0 @@
<?php
$doc = (trim($_SERVER['DOCUMENT_ROOT']) > '' ? trim($_SERVER['DOCUMENT_ROOT']) : '..');
if (!isset($config)) require_once('common_cadline_libraries/crm_config.db.php');
if (!defined('_DB_HOST') && isset($config['db_host'])) define('_DB_HOST', $config['db_host']);
if (!defined('_DB_NAME') && isset($config['db_user'])) define('_DB_NAME', $config['db_user']);
if (!defined('_DB_USER') && isset($config['db_user'])) define('_DB_USER', $config['db_user']);
if (!defined('_DB_PASS') && isset($config['db_pass'])) define('_DB_PASS', $config['db_pass']);
class MySqlHelper
{
public static $msh;
public $writelog;
private $host;
private $name;
private $user;
private $pass;
private $connection;
private $queryString;
private $queryResult;
public function __construct()
{
$this->connection = false;
$this->host = '';
$this->user = '';
$this->pass = '';
$this->name = '';
$this->writelog = FALSE;
}
/**
* Return the instance
*
* @return MySqlHelper
*/
public static function getInstance()
{
if (!empty(self::$msh)) return self::$msh;
self::$msh = new MySqlHelper();
self::$msh->init();
return self::$msh;
}
public static function escapeString($str = "")
{
$ret = mysqli_real_escape_string($this->connection, $str);
return ($ret);
}
public function init($host = _DB_HOST, $name = _DB_NAME, $user = _DB_USER, $pass = _DB_PASS)
{
$this->host = $host;
$this->name = $name;
$this->user = $user;
$this->pass = $pass;
}
private function connect()
{
if ($this->connection) return;
$this->connection = mysqli_connect($this->host, $this->user, $this->pass);
if (false === $this->connection) throw new Exception('Can\'t connect to db');
mysqli_select_db($this->connection, $this->name);
mysqli_query($this->connection, 'SET CHARACTER SET UTF8');
mysqli_query($this->connection, 'SET NAMES \'UTF8\' ');
mysqli_set_charset($this->connection, 'utf8');
if (mysqli_error($this->connection)) throw new Exception(mysqli_error($this->connection));
}
public function query($query)
{
$this->connect();
$this->queryString = $query;
if ($this->is_write_type($query) === TRUE) {
$boolWrite = TRUE;
$arrSkip = array('h_aktivalas_infok', 'h_history', 'u_history', 'u_userstatus_history', 'cl_hlusers.userstats2013', 'cl_hlusers.switch', 'cl_hlusers.writelog');
foreach ($arrSkip as $tabla) {
if (strpos($query, $tabla)) {
$boolWrite = FALSE;
break;
}
}
if ($boolWrite == TRUE) {
mysqli_query($this->connection, "INSERT INTO `cl_hlusers`.`writelog` (`user`,`datum`,`ip`,`url`,`func`,`sql`) VALUES (
'" . (isset($_SERVER['SERVER_NAME']) ? $_SERVER['SERVER_NAME'] : 'www.archlinexp.com') . "',
'" . date("Y-m-d H:i:s", time()) . "',
'" . (isset($_SERVER['REMOTE_ADDR']) ? $_SERVER['REMOTE_ADDR'] : '127.0.0.1') . "',
'" . (isset($_SERVER['SERVER_NAME']) ? addslashes($_SERVER['SERVER_NAME'] . $_SERVER['REQUEST_URI']) : '') . "',
'" . addslashes("function: " . __FUNCTION__ . " method: " . __METHOD__) . "','" . addslashes($query) . "');");
}
}
$this->queryResult = mysqli_query($this->connection, $query);
if (mysqli_error($this->connection)) throw new Exception(mysqli_error($this->connection) . ' Query: ' . $this->queryString);
}
public function fetchNext()
{
$back = array();
if ($row = mysqli_fetch_assoc($this->queryResult)) {
foreach ($row as $key => $value) {
$row[$key] = stripslashes($value);
}
$back = $row;
return $back;
}
return false;
}
public function fetchAssoc()
{
$back = array();
while ($row = mysqli_fetch_assoc($this->queryResult)) {
foreach ($row as $key => $value) {
$row[$key] = stripslashes($value);
}
$back[] = $row;
}
return $back;
}
public function getInsertedId()
{
return mysqli_insert_id($this->connection);
}
public function select($table, $where = false, $offset = false, $limit = false, $order = false)
{
$whereStr = '';
$limitStr = '';
$orderStr = '';
if (is_array($where)) $whereStr = 'WHERE ' . $this->whereMakerPriv($where);
elseif ($where) $whereStr = 'WHERE ' . $where;
if (($offset !== false and $offset !== null) && ($limit !== false and $limit !== null)) {
$limitStr = 'LIMIT ' . $offset . ', ' . $limit;
}
if (is_array($order)) {
$orderStr = 'ORDER BY ';
foreach ($order as $key => $value) {
$orderStr .= $key . ' ' . $value . ' ';
}
} elseif ($order) $orderStr = 'ORDER BY ' . $order;
return $this->query('SELECT * FROM ' . $table . ' ' . $whereStr . ' ' . $orderStr . ' ' . $limitStr);
}
public function getProp($table, $func, $field, $where = false)
{
$whereStr = '';
if (is_array($where)) $whereStr = 'WHERE ' . $this->whereMakerPriv($where);
elseif ($where) $whereStr = 'WHERE ' . $where;
$this->query('SELECT ' . $func . '(' . $field . ') as p FROM ' . $table . ' ' . $whereStr);
$arr = $this->fetchAssoc();
return $arr[0]['p'];
}
public function getCount($table, $field = 'id', $where = false)
{
return $this->getProp($table, 'COUNT', $field, $where);
}
public function getSum($table, $field = 'id', $where = false)
{
return $this->getProp($table, 'SUM', $field, $where);
}
public function getAvg($table, $field = 'id', $where = false)
{
return $this->getProp($table, 'AVG', $field, $where);
}
public function delete($table, $where = false)
{
$whereStr = '';
if (is_array($where)) $whereStr = 'WHERE ' . $this->whereMakerPriv($where);
elseif ($where) $whereStr = 'WHERE ' . $where;
return $this->query('DELETE FROM ' . $table . ' ' . $whereStr);
}
public function update($table, $infoArr, $where = false)
{
if (!is_array($infoArr)) {
return false;
}
$whereStr = '';
$dataArr = array();
$data = '';
if (is_array($where)) $whereStr = 'WHERE ' . $this->whereMakerPriv($where);
elseif ($where) $whereStr = 'WHERE ' . $where;
foreach ($infoArr as $key => $value) {
$dataArr[] = '`' . $key . '`="' . mysqli_real_escape_string($this->connection, $value) . '" ';
}
$data = implode(',', $dataArr);
return $this->query('UPDATE ' . $table . ' SET ' . $data . ' ' . $whereStr);
}
public function insert($table, $infoArr)
{
$this->connect();
$columArr = array();
$valueArr = array();
$colums = '';
$values = '';
foreach ($infoArr as $key => $value) {
$columArr[] = '`' . $key . '`';
$valueArr[] = '"' . mysqli_real_escape_string($this->connection, $value) . '"';
}
$colums = implode(',', $columArr);
$values = implode(',', $valueArr);
return $this->query('INSERT INTO ' . $table . ' (' . $colums . ') VALUES (' . $values . ');');
}
public function affectedRows()
{
return mysqli_affected_rows($this->connection);
}
public function whereMakerPriv($where)
{
if (!is_array($where)) return 1;
$this->connect();
$back = '1 ';
foreach ($where as $key => $value) {
if (is_array($value)) $back .= 'AND `' . $key . '`' . $value[0] . '"' . $value[1] . '" ';
else $back .= 'AND `' . $key . '`="' . mysqli_real_escape_string($this->connection, $value) . '" ';
}
return $back;
}
public static function whereMaker($where)
{
if (!is_array($where)) return 1;
$back = '1 ';
foreach ($where as $key => $value) {
if (is_array($value)) $back .= 'AND `' . $key . '`' . $value[0] . '"' . $value[1] . '" ';
else $back .= 'AND `' . $key . '`="' . $value . '" ';
}
return $back;
}
public function is_write_type($sql)
{
if (!preg_match('/^\s*"?(SET|INSERT|UPDATE|DELETE|REPLACE|CREATE|DROP|TRUNCATE|LOAD DATA|COPY|ALTER|GRANT|REVOKE|LOCK|UNLOCK)\s+/i', $sql)) {
return FALSE;
}
return TRUE;
}
public function getConnection()
{
return ($this->connection);
}
public function setConnect()
{
$this->connect();
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7030",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/MySqlHelper.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/MySqlHelper.class.php)",
"original_sha256": "b998beed6ec9f9dc24f664e422709eed79cc5887681a0cbb2be2d483f87e9870",
"original_stat": {
"gid": 30037,
"mtime": 1747828859,
"size": 8076,
"uid": 12425
},
"rel_path": "maintenance/MySqlHelper.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,230 +0,0 @@
<?php
#
# Portable PHP password hashing framework.
#
# Version 0.5 / genuine.
#
# Written by Solar Designer <solar at openwall.com> in 2004-2006 and placed in
# the public domain. Revised in subsequent years, still public domain.
#
# There's absolutely no warranty.
#
# The homepage URL for this framework is:
#
# http://www.openwall.com/phpass/
#
# Please be sure to update the Version line if you edit this file in any way.
# It is suggested that you leave the main version number intact, but indicate
# your project name (after the slash) and add your own revision information.
#
# Please do not change the "private" password hashing method implemented in
# here, thereby making your hashes incompatible. However, if you must, please
# change the hash type identifier (the "$P$") to something different.
#
# Obviously, since this code is in the public domain, the above are not
# requirements (there can be none), but merely suggestions.
#
class PasswordHash
{
var $itoa64;
var $iteration_count_log2;
var $portable_hashes;
var $random_state;
function __construct($iteration_count_log2, $portable_hashes)
{
$this->itoa64 = './0123456789ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz';
if ($iteration_count_log2 < 4 || $iteration_count_log2 > 31)
$iteration_count_log2 = 8;
$this->iteration_count_log2 = $iteration_count_log2;
$this->portable_hashes = $portable_hashes;
$this->random_state = microtime();
if (function_exists('getmypid'))
$this->random_state .= getmypid();
}
function PasswordHash($iteration_count_log2, $portable_hashes)
{
self::__construct($iteration_count_log2, $portable_hashes);
}
function get_random_bytes($count)
{
$output = '';
if (
@is_readable('/dev/urandom') &&
($fh = @fopen('/dev/urandom', 'rb'))
) {
$output = fread($fh, $count);
fclose($fh);
}
if (strlen($output) < $count) {
$output = '';
for ($i = 0; $i < $count; $i += 16) {
$this->random_state =
md5(microtime() . $this->random_state);
$output .= md5($this->random_state, TRUE);
}
$output = substr($output, 0, $count);
}
return $output;
}
function encode64($input, $count)
{
$output = '';
$i = 0;
do {
$value = ord($input[$i++]);
$output .= $this->itoa64[$value & 0x3f];
if ($i < $count)
$value |= ord($input[$i]) << 8;
$output .= $this->itoa64[($value >> 6) & 0x3f];
if ($i++ >= $count)
break;
if ($i < $count)
$value |= ord($input[$i]) << 16;
$output .= $this->itoa64[($value >> 12) & 0x3f];
if ($i++ >= $count)
break;
$output .= $this->itoa64[($value >> 18) & 0x3f];
} while ($i < $count);
return $output;
}
function gensalt_private($input)
{
$output = '$P$';
$output .= $this->itoa64[min($this->iteration_count_log2 +
((PHP_VERSION >= '5') ? 5 : 3), 30)];
$output .= $this->encode64($input, 6);
return $output;
}
function crypt_private($password, $setting)
{
$output = '*0';
if (substr($setting, 0, 2) === $output)
$output = '*1';
$id = substr($setting, 0, 3);
# We use "$P$", phpBB3 uses "$H$" for the same thing
if ($id !== '$P$' && $id !== '$H$')
return $output;
$count_log2 = strpos($this->itoa64, $setting[3]);
if ($count_log2 < 7 || $count_log2 > 30)
return $output;
$count = 1 << $count_log2;
$salt = substr($setting, 4, 8);
if (strlen($salt) !== 8)
return $output;
# We were kind of forced to use MD5 here since it's the only
# cryptographic primitive that was available in all versions
# of PHP in use. To implement our own low-level crypto in PHP
# would have resulted in much worse performance and
# consequently in lower iteration counts and hashes that are
# quicker to crack (by non-PHP code).
$hash = md5($salt . $password, TRUE);
do {
$hash = md5($hash . $password, TRUE);
} while (--$count);
$output = substr($setting, 0, 12);
$output .= $this->encode64($hash, 16);
return $output;
}
function gensalt_blowfish($input)
{
# This one needs to use a different order of characters and a
# different encoding scheme from the one in encode64() above.
# We care because the last character in our encoded string will
# only represent 2 bits. While two known implementations of
# bcrypt will happily accept and correct a salt string which
# has the 4 unused bits set to non-zero, we do not want to take
# chances and we also do not want to waste an additional byte
# of entropy.
$itoa64 = './ABCDEFGHIJKLMNOPQRSTUVWXYZabcdefghijklmnopqrstuvwxyz0123456789';
$output = '$2a$';
$output .= chr(ord('0') + $this->iteration_count_log2 / 10);
$output .= chr(ord('0') + $this->iteration_count_log2 % 10);
$output .= '$';
$i = 0;
do {
$c1 = ord($input[$i++]);
$output .= $itoa64[$c1 >> 2];
$c1 = ($c1 & 0x03) << 4;
if ($i >= 16) {
$output .= $itoa64[$c1];
break;
}
$c2 = ord($input[$i++]);
$c1 |= $c2 >> 4;
$output .= $itoa64[$c1];
$c1 = ($c2 & 0x0f) << 2;
$c2 = ord($input[$i++]);
$c1 |= $c2 >> 6;
$output .= $itoa64[$c1];
$output .= $itoa64[$c2 & 0x3f];
} while (1);
return $output;
}
function HashPassword($password)
{
$random = '';
if (CRYPT_BLOWFISH === 1 && !$this->portable_hashes) {
$random = $this->get_random_bytes(16);
$hash =
crypt($password, $this->gensalt_blowfish($random));
if (strlen($hash) === 60)
return $hash;
}
if (strlen($random) < 6)
$random = $this->get_random_bytes(6);
$hash =
$this->crypt_private(
$password,
$this->gensalt_private($random)
);
if (strlen($hash) === 34)
return $hash;
# Returning '*' on error is safe here, but would _not_ be safe
# in a crypt(3)-like function used _both_ for generating new
# hashes and for validating passwords against existing hashes.
return '*';
}
function CheckPassword($password, $stored_hash)
{
$hash = $this->crypt_private($password, $stored_hash);
if ($hash[0] === '*')
$hash = crypt($password, $stored_hash);
# This is not constant-time. In order to keep the code simple,
# for timing safety we currently rely on the salts being
# unpredictable, which they are at least in the non-fallback
# cases (that is, when we use /dev/urandom and bcrypt).
return $hash === $stored_hash;
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6979",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/PasswordHash.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/PasswordHash.php)",
"original_sha256": "747736c194e97ee2cb28a2927954d462126efabbde1e09f11f2a3a08ee51e2f3",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 6492,
"uid": 12425
},
"rel_path": "maintenance/PasswordHash.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,201 +0,0 @@
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="utf-8">
<meta name="viewport" content="width=device-width, initial-scale=1">
<title>ARCHLine.XP</title>
<link rel="stylesheet" type="text/css" href="public/css/smoothDivScroll.css" />
<link rel="stylesheet" type="text/css" href="public/css/style.css">
<link rel="stylesheet" type="text/css" href="public/css/jquery-ui.css">
<script type="text/javascript" src="public/js/jquery-1.12.4.min.js"></script>
<script type="text/javascript" src="public/js/jquery-ui-1.12.1.min.js"></script>
<script type="text/javascript" src="public/js/jquery.mousewheel.min.js" ></script>
<script type="text/javascript" src="public/js/jquery.smoothdivscroll-1.3-min.js"></script>
<script type="text/javascript" src="public/js/8132d19a66.js"></script>
</head>
<body class="pattern">
<div class="container-fluid">
<div class="row header h66">
<div style="display:inline-block;width:66%;"> <!--class="col col-8"-->
<img src="public/img/logo.png" class="img-responsive left" />
</div>
<div class="align-items-center t_social" style="display:inline-block;width:33%;height:66px;vertical-align:top;"> <!--col col-4 -->
<ul class="none right">
<li><a href="*DLGSTR8438*" class="fa fa-facebook" title="Facebook" alt="Facebook" target="_blank"></a></li>
<li><a href="*DLGSTR8437*" class="fa fa-twitter" title="Twitter" alt="Twitter" target="_blank"></a></li>
<li><a href="*DLGSTR8436*" class="fa fa-youtube" title="YouTube" alt="YouTube" target="_blank"></a></li>
<li><a href="https://www.linkedin.com/company/cadline-network-ltd" class="fa fa-linkedin" title="LinkedIn" alt="LinkedIn" target="_blank"></a></li>
</ul>
</div>
</div>
<div class="row justify-content-between header">
<div class="t_menu" style="display:inline-block;width:50%;"> <!--class="col col-4"-->
<ul class="none">
<li><a href="?NEW">*DLGSTR7201*</a></li>
<li><a href="?OPE">*DLGSTR7202*</a></li>
<li><a href="?EXI">*DLGSTR7206*</a></li>
</ul>
</div>
<div class="t_menu" style="display:inline-block;width:49%;"> <!--class="col col-4"-->
<ul class="right none pr40">
<li><a href="?SCH">*DLGSTR7205*</a></li>
<li><a href="http://www.archlinexp.com/education/video-tutorials/foundation" target="_blank">*DLGSTR3252*</a></li>
<li><a href="http://www.archlinexp.com/archline-xp/download-center/downloadable-projects" target="_blank">*DLGSTR3253*</a></li>
</ul>
</div>
</div>
<div class="row"><div class="col col-12"><p class="uppercase bold ml20">*DLGSTR3250*</p></div></div>
<div class="row justify-content-center">
<div class="col col-12">
<div id="makeMeScrollable">
<!--kiemelt projektek blokkja-->
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*: *DLGSTR7214*: *DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<!--kiemelt projektek blokkja-->
</div>
</div>
</div>
<div class="row"><div class="col col-12"><hr /></div></div>
<div class="row"><div class="col col-12"><p class="uppercase bold ml20">*DLGSTR3251*</p></div></div>
<div class="row justify-content-center">
<div class="col col-11">
<div class="lastProjectsContainer">
<!--utolso projektek blokkja-->
<div class="projectContainer" id="" >
<div class="shadow">
<a href="?GID=123456"><img src="public/img/project.jpg" class="projectImg" title="*DLGSTR7213*:
*DLGSTR7214*:
*DLGSTR7215*: " /></a>
<a href="?REM"><span class="fa fa-minus"></span></a>
<a href="?FAV=0"><span class="fa fa-star-o"></span></a>
<p><a href="?GID=123456">Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua.</a></p>
</div>
</div>
<!--utolso projektek blokkja-->
<p class="center">*DLGSTR3262*</p>
</div>
</div>
</div>
<div class="row footer">
<div class="buildinfo right">*BUILD*</div>
</div>
<!--ha nincs internetkapcsolat vagy le van tiltva, akkor ez a blokk nem kell-->
<div class="row align-items-end footer">
<div class="align-top">
<iframe src="https://www.archline.hu/maintenance/banner.php?serial=MzYwNzAwODM0MDg0MDIzOQ==&build=Mjcz" scrolling="no"></iframe>
</div>
</div>
<!--/ha nincs internetkapcsolat vagy le van tiltva, akkor ez a blokk nem kell-->
</div>
<script type="text/javascript">
jQuery(document).ready(function () {
jQuery('.projectContainer').hover(
function() {
jQuery(this).children('div').children('a').children('.fa-star').fadeIn("fast");
jQuery(this).children('div').children('a').children('.fa-star-o').fadeIn("fast");
jQuery(this).children('div').children('a').children('.fa-minus').fadeIn("fast");
},
function() {
jQuery(this).children('div').children('a').children('.fa-star').fadeOut("fast");
jQuery(this).children('div').children('a').children('.fa-star-o').fadeOut("fast");
jQuery(this).children('div').children('a').children('.fa-minus').fadeOut("fast");
});
jQuery("div#makeMeScrollable").smoothDivScroll({
mousewheelScrolling: "allDirections",
manualContinuousScrolling: false,
});
});
jQuery(window).resize(function() {
jQuery('.lastProjectsContainer').height(jQuery(window).height() - 435);
});
jQuery(window).trigger('resize');
jQuery( function() {
jQuery( document ).tooltip({ track: true });
});
</script>
</body>
</html>

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6990",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/ProjectStart.html -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/ProjectStart.html)",
"original_sha256": "064abd01b0fbb0c6e6373f227fc42c19d89a0209002410361165bd78d9dbcc87",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 10476,
"uid": 12425
},
"rel_path": "maintenance/ProjectStart.html",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,84 +0,0 @@
<?php
/*******************************************************************************
* eredeti url: http://www.archlinexp.com/index.php?menu=activate_90_days_active&lang=eng&ser=3977898330182471&pwd=ita
******************************************************************************/
include("config.php");
$ser = $_GET['ser'];
$pwd = $_GET['pwd'];
//mysql_query("insert into activations2 (act_ser, act_pwd, act_version, act_date, act_host) values ('$ser','$pwd','full','".time()."','".gethostbyaddr($_SERVER["REMOTE_ADDR"])."')");
switch (substr($ser, 0, 2)) {
case 99: {
break;
} // Szandekosan nincs atallitas
case 98: {
break;
} // Szandekosan nincs atallitas
case 30: {
header("Location:http://www.archlinexp.cc/?474&ser=" . $ser);
exit;
break;
} //- gorog
case 42: {
break;
} //- cseh
case 31: {
header("Location:http://www.archlinexp.cc/?474&ser=" . $ser);
exit;
break;
} //- holland
case 43: {
header("Location:http://www.archlinexp.cc/index.php?id=177&ser=" . $ser);
exit;
break;
} //- austria
case 41: {
header("Location:http://www.archlinexp.cc/index.php?id=177&ser=" . $ser);
exit;
break;
} //- austria dealer ger:
case 49: {
header("Location:http://www.archlinexp.cc/index.php?id=177&ser=" . $ser);
exit;
break;
} //- nemet
case 39: {
header("Location:http://www.cadlinesw.com/web/servizi/supporto-utenti/richiesta-codici-archline-xp.html/?&ser=" . $ser . "&pwd=" . $pwd);
exit;
break;
} //- olasz
case 36: //- magyar
{
session_start();
$_SESSION['serial'] = $ser;
$_SESSION['request'] = $pwd;
$_SESSION['out'] = '1';
header("Location: /business/activate/" . $ser . '/' . $pwd);
exit;
break;
}
case 34: {
header("Location: http://www.archlinexp.cc/es/servicecenter/ser/" . $ser);
exit;
break;
} //- spanyol
case 52: {
header("Location: http://www.archlinexp.cc/es/servicecenter/ser/" . $ser);
exit;
break;
} //- mexiko
case 82: {
break;
} //- korea
case 81: {
break;
} //- japan
default: {
session_start();
header("Location: /business/activate/" . $ser . '/' . $pwd);
exit;
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6948",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/activate_90_days_active.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/activate_90_days_active.php)",
"original_sha256": "1af9df1f0430aacb03ef509bca3eac7a0a333fee3854fd18f51ea96f3b8c61a0",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 2444,
"uid": 12425
},
"rel_path": "maintenance/activate_90_days_active.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,61 +0,0 @@
<?php
$http_origin = $_SERVER['HTTP_ORIGIN'];
if ($http_origin == "https://crm.cadline.hu" || $http_origin == "https://www.archline.hu" || $http_origin == "https://secondary.cadline.hu") {
header("Access-Control-Allow-Origin: $http_origin");
} else {
header('Access-Control-Allow-Origin: https://www.archline.hu');
}
header('Access-Control-Allow-Headers: X-Requested-With, Content-Type, Accept');
$name = $_POST['name'];
$serverName = $_SERVER['SERVER_NAME'];
$primaryServers = array('secondary.dev.cadline.hu', 'www.archline.hu', 'www.archlinexp.com');
$secServers = array('secondary.cadline.hu');
$txtResult = '';
switch ($name) {
case 'activateSecondary':
if (in_array($serverName, $primaryServers))
$txtResult = 'Inactive';
if (in_array($serverName, $secServers))
$txtResult = 'Active';
break;
case 'activatePrimary':
if (in_array($serverName, $primaryServers))
$txtResult = 'Active';
if (in_array($serverName, $secServers))
$txtResult = 'Inactive';
break;
default:
die();
break;
}
if ($txtResult == '')
die();
$txtString = 'Success';
$filename = $_SERVER['DOCUMENT_ROOT'] . "/activateServer.txt";
$closed = file_put_contents($filename, $txtResult);
$i = 0;
while (!$closed && $i < 10) {
$closed = file_put_contents($filename, $txtResult);
$i++;
}
if (!$closed)
$txtString = 'Failed';
$result = new stdClass();
$result->message = $txtString;
echo json_encode($result);

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6989",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/activate_server.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/activate_server.php)",
"original_sha256": "921806babfc456ebe18c76d4266b3425a9d0065c3ed8d93b32784e017f1d81e0",
"original_stat": {
"gid": 30037,
"mtime": 1758707102,
"size": 1621,
"uid": 12425
},
"rel_path": "maintenance/activate_server.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,17 +0,0 @@
<?php
/*******************************************************************************
* eredeti url: http://www.archline.hu/version/aktivalasikod/SERIALNUMBER/ISID/IDOKOD
******************************************************************************/
error_reporting(E_ERROR | E_PARSE);
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
$serial = $_GET['serial']; // segment(3);
$isid = $_GET['isid']; // segment(4);
$kod = $_GET['kod']; // segment(5);
crm_hardlock::correctIsid($isid);
$aktkod = crm_hardlock::GetOrGenerateTimeCode($serial, $isid, $kod);
crm_hardlock::_Hibajelento("aktivalasikod", substr($serial, 0, 6), "valasz: " . $aktkod);
print $aktkod;

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6995",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/aktivalasikod.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/aktivalasikod.php)",
"original_sha256": "f7646ed8e67f8e60967395d123d1ed1b659e4b6b25cd33c28499e8e210e7346e",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 735,
"uid": 12425
},
"rel_path": "maintenance/aktivalasikod.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,155 +0,0 @@
<?php
/*******************************************************************************
* bejelentkezes: www.archlinexp.com/maintenance/al.php?action=login&lang=hun|eng|ger|...
* selectprogram: www.archlinexp.com/maintenance/al.php?action=selectprogram&lang=hun|eng|ger|...
* selectprogramdialog: www.archlinexp.com/maintenance/al.php?action=selectprogramdialog&lang=hun|eng|ger|...
******************************************************************************/
error_reporting(E_ERROR | E_PARSE);
require_once('config.php');
require_once('libraries/phpmailer/PHPMailerAutoload.php');
$action = trim(strtolower($_GET['action']));
$lang = trim(strtolower($_GET['lang']));
switch ($action) {
case 'login': {
header("Location: https://www." . ($lang == 'hun' ? 'archline.hu/maintenance/al_login.php' : 'archlinexp.com/user'));
exit;
break;
}
case 'selectprogram': // xml output
{
require_once("class/selectprogram.class.php");
$sp = new SelectProgram();
$namirialNonProfit = false;
$BIMLadderNonProfit = false;
if (isset($_GET['parnterID']) && $_GET['parnterID'] == '2nt')
$namirialNonProfit = true;
else if (isset($_GET['parnterID']) && $_GET['parnterID'] == 'kbl')
$BIMLadderNonProfit = true;
$sp->getXML($_GET['pwd'], $_GET['npid'], $_GET['isid'], $namirialNonProfit, $BIMLadderNonProfit, $_GET['userid'], $_GET['commercial']);
break;
}
case 'selectprogramdialog': // html output
{
/*require_once("class/selectprogramdialog.class.php");
$spd = new SelectProgramDialog();
$spd->getPrograms($_GET['pwd'], $_GET['userid']);*/
break;
}
case 'checknonprofitexists': // xml output
{
require_once("class/selectprogram.class.php");
$sp = new SelectProgram();
$sp->checkNonProfitExists($_GET['npid'], $_GET['isid']);
break;
}
case 'email': {
if (isset($_GET["name"]) && isset($_GET["email"]) && isset($_GET["telephone"]) && isset($_GET["company"]) && isset($_GET["nonprofit"])) {
$isEmailForNamirial = true;
if (isset($_GET["parnterID"])) {
if ($_GET["parnterID"] == "2nt")
$isEmailForNamirial = true;
else if ($_GET["parnterID"] == "kbl")
$isEmailForNamirial = false;
}
$nev = base64_decode($_GET["name"]);
$email = base64_decode($_GET["email"]);
$phone = base64_decode($_GET["telephone"]);
$company = base64_decode($_GET["company"]);
$nonprofit = base64_decode($_GET["nonprofit"]);
$year = isset($_GET["year"]) ? base64_decode($_GET["year"]) : "2018";
$date = date('Y-m-d H:i:s', time());
if ($nonprofit == 0) {
if ($isEmailForNamirial)
$message = "ARCHLine.XP NamirialBIM: New trial user\n";
else
$message = "ARCHLine.XP BIMLadder: New trial user\n";
} else {
if ($isEmailForNamirial)
$message = "ARCHLine.XP NamirialBIM: New registered user\n";
else
$message = "ARCHLine.XP BIMLadder: New registered user\n";
}
$message .= $nev;
$message .= "\n";
$message .= $email;
$message .= "\n";
$message .= $phone;
$message .= "\n";
$message .= $company;
$message .= "\n";
$mail = new PHPMailer;
$mail->isSMTP();
$mail->SMTPAuth = true;
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->SMTPSecure = $mailconfig['SMTPSecure'];
$mail->Port = $mailconfig['Port'];
$mail->isHTML(TRUE);
$mail->setFrom(DEFAULT_EMAIL);
$mail->addAddress('support@cadline.hu');
if ($isEmailForNamirial) {
$mail->addBCC('register.archline@edilizianamirial.it');
$mail->addBCC('info@cadlinesw.com');
} else {
//ba biztonsagi okokbol, hogy a kesobbiekben is vissza tudjuk keresni
$mail->addCC('cadalog@gmail.com');
}
if ($nonprofit == 0) {
if ($isEmailForNamirial)
$mail->Subject = 'ARCHLine.XP NamirialBIM ' . $year . ' user registration - trial mode';
else
$mail->Subject = 'ARCHLine.XP BIMLadder ' . $year . ' user registration - trial mode';
} else {
if ($isEmailForNamirial)
$mail->Subject = 'ARCHLine.XP NamirialBIM ' . $year . ' user registration - registered mode';
else
$mail->Subject = 'ARCHLine.XP BIMLadder ' . $year . ' user registration - registered mode';
}
$mail->msgHTML($message);
$mail->AltBody = strip_tags($message);
if ($mail->send()) {
if (!$isEmailForNamirial)
print 'Sent'; //ba namirial eseten kesobb jon egy header, nem szabad kiirni semmit, kulonben nem mukodik!
}
unset($mail);
if ($isEmailForNamirial) {
$namirialAction = $nonprofit == 0 ? 'trial-version' : 'registered-version';
$url = 'https://manager.cadlinesw.com/cadline-data/';
$url .= '?msg=NamirialBIM';
$url .= '&email=' . urlencode($email);
$url .= '&name=' . urlencode($nev);
$url .= '&phone=' . urlencode($phone);
$url .= '&action=' . urlencode($namirialAction);
$url .= '&business=' . urlencode($company);
$url .= '&year=' . urlencode($year);
$ch = curl_init();
$timeout = 10;
curl_setopt($ch, CURLOPT_URL, $url);
curl_setopt($ch, CURLOPT_CONNECTTIMEOUT, $timeout);
$data = curl_exec($ch);
curl_close($ch);
print "Sent";
//header("Location: ".$url);
//exit;
}
break;
}
}
}
$txt = "Időpont: " . date('Y-m-d H:i:s', time()) . " IP: " . $_SERVER['REMOTE_ADDR'] . "\n";
error_log($txt, 3, "../tmp/al_log.txt");

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6983",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/al.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/al.php)",
"original_sha256": "3ccbc4486079f49118b1c90b3a2a895f8e54d909733fcdf6425b4c936219db9e",
"original_stat": {
"gid": 30037,
"mtime": 1705326963,
"size": 6162,
"uid": 12425
},
"rel_path": "maintenance/al.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,10 +0,0 @@
<?php
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
/*$actualPrograms = crm_hardlock::GetAllPrograms(25407, 1, 19);
//echo $actualPrograms[0]["prHlNum"];
echo '<ul>';
foreach ($actualPrograms as $result){
echo "<li>".$result["prHlNum"]."</li>";
}
echo '</ul>';*/

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7005",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/alprograms.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/alprograms.php)",
"original_sha256": "bfa6d119232f74c70e577cb2ecf3dbb14a8537d216eb9cfbbd05cb948ba75688",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 332,
"uid": 12425
},
"rel_path": "maintenance/alprograms.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,120 +0,0 @@
<?php
// https://www.archline.hu/maintenance/banner.php?serial=MzYwNzAwODM0MDEyMzQ1Ng==&build=MjM0&lang=eng|hun|ger
require('config.php');
$serial = base64_decode(str_replace(" ", "+", $_GET['serial']));
$build = base64_decode(str_replace(" ", "+", $_GET['build']));
$ctrCode = substr($serial, 0, 2);
$prgType = substr($serial, 6, 1);
$prgCode = substr($serial, 7, 2);
$bldCode = (int)$build;
$lngCode = (isset($_GET['lang']) ? trim(addslashes(strtolower($_GET['lang']))) : NULL);
$hlNum = substr($serial, 0, 6);
$id = (isset($_GET['bid']) && (int)base64_decode(str_replace(" ", "+", $_GET['bid'])) > 0 ? (int)base64_decode(str_replace(" ", "+", $_GET['bid'])) : NULL);
if ($id > 0) {
$sql = "SELECT * FROM `albanner` WHERE id=" . $id;
} else {
if (strpos($hlNum, "x") === FALSE) // normál ág
{
$sql = "SELECT * FROM `www_archline_hu`.`albanner` WHERE
" . ($lngCode > '' ? " `lang`='" . $lngCode . "' AND " : "") . "
" . ($bldCode > 0 ? " (`build`=" . $bldCode . " OR `build`=0 OR `build` IS NULL) AND " : "") . "
`from_datetime`<=CURRENT_TIMESTAMP AND
`end_datetime`>CURRENT_TIMESTAMP AND
`published`='Y' AND
(substring(`pattern`,1,6)='" . $ctrCode . "xxxx' OR substring(`pattern`,1,6)='xxxxxx') AND
(substring(`pattern`,7,1)='" . $prgType . "' OR substring(`pattern`,7,1)='x') AND
(substring(`pattern`,8,2)='" . $prgCode . "' OR substring(`pattern`,8,2)='xx')
ORDER BY `priority` DESC, `add_datetime` DESC
LIMIT 10;";
} else // teszteléshez!
{
$sql = "SELECT * FROM `www_archline_hu`.`albanner` WHERE
" . ($lngCode > '' ? " `lang`='" . $lngCode . "' AND " : "") . "
" . ($bldCode > 0 ? " (`build`=" . $bldCode . " OR `build`=0 OR `build` IS NULL) AND " : "") . "
`from_datetime`<=CURRENT_TIMESTAMP AND
`end_datetime`>CURRENT_TIMESTAMP AND
`published`='Y' AND
(substring(`pattern`,1,6)='" . $ctrCode . "xxxx' OR substring(`pattern`,1,6)='xxxxxx') AND
(substring(`pattern`,7,1)='" . $prgType . "' OR substring(`pattern`,7,1)='x') AND
(substring(`pattern`,8,2)='" . $prgCode . "' OR substring(`pattern`,8,2)='xx')
ORDER BY `priority` DESC, `add_datetime` DESC
LIMIT 10;";
}
}
$msh2->query($sql);
$res = $msh2->fetchAssoc();
if ($_SERVER['REMOTE_ADDR'] == '188.6.239.155' && isset($_GET['test'])) {
print "serial: " . $serial . " build: " . $bldCode . " result: " . count($res) . "<br />" . $sql;
}
?>
<!doctype html>
<html lang="en">
<head>
<meta charset="utf-8">
<title>ARCHLine.XP banner</title>
<meta name="description" content="ARCHLine.XP banner">
<link rel="stylesheet" type="text/css" href="css/ticker-style.css" />
<link rel="stylesheet" type="text/css" href="https://maxcdn.bootstrapcdn.com/font-awesome/4.7.0/css/font-awesome.min.css" integrity="sha384-wvfXpqpZZVQGK6TAh5PVlGOfQNHSoD2xbE+QkPxCAFlNEevoEH3Sl0sibVcOQVnN" crossorigin="anonymous">
<script src="js/jquery.min.js" type="text/javascript"></script>
<script src="js/jquery.ticker.js" type="text/javascript"></script>
<!--[if lt IE 9]>
<script src="https://cdnjs.cloudflare.com/ajax/libs/html5shiv/3.7.3/html5shiv.js"></script>
<![endif]-->
<style type="text/css">
body {
color: #000000;
font-family: "Helvetica Neue", Helvetica, Arial, sans-serif;
font-size: 14px;
}
</style>
</head>
<body>
<ul id="js-news" class="js-hidden">
<?php foreach ($res as $row) : ?>
<?php if ($row['link'] > '') : ?>
<li class="news-item"><a href="<?= $row['link'] ?>" target="_blank"><?= strip_tags($row['message'], '<i><b><strong>') ?></a></li>
<?php else : ?>
<li class="news-item"><?= strip_tags($row['message'], '<i><u><b><strong>') ?></li>
<?php endif; ?>
<?php endforeach; ?>
</ul>
<script type="text/javascript">
jQuery(function() {
jQuery('#js-news').ticker({
speed: 0.10, // The speed of the reveal
ajaxFeed: false, // Populate jQuery News Ticker via a feed
feedUrl: false, // The URL of the feed
// MUST BE ON THE SAME DOMAIN AS THE TICKER
feedType: 'xml', // Currently only XML
htmlFeed: true, // Populate jQuery News Ticker via HTML
debugMode: false, // Show some helpful errors in the console or as alerts. SHOULD BE SET TO FALSE FOR PRODUCTION SITES!
controls: false, // Whether or not to show the jQuery News Ticker controls
titleText: '', // To remove the title set this to an empty String
displayType: 'fade', // Animation type - current options are 'reveal' or 'fade'
direction: 'ltr', // Ticker direction - current options are 'ltr' or 'rtl'
pauseOnItems: <?= (count($res) > 1 ? 4000 : 600000) ?>, // The pause on a news item before being replaced
fadeInSpeed: 300, // Speed of fade in animation
fadeOutSpeed: 300 // Speed of fade out animation
});
});
</script>
</body>
</html>

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6941",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/banner.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/banner.php)",
"original_sha256": "c2926bd9c052e3077f2cd674ac9e45dfc42f6e024b5de0b3bfaaf1ed9fceb695",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 5171,
"uid": 12425
},
"rel_path": "maintenance/banner.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,95 +0,0 @@
<?php
if ($_SERVER['REMOTE_ADDR'] != '188.6.239.155') {
die();
}
error_reporting(E_ALL);
die();
mb_internal_encoding("UTF-8");
include("config.php");
$time = time();
$nManagerID = 54;
$arrFiles = array("leads/leads_imported.csv");
foreach ($arrFiles as $file) {
foreach (file($file) as $k => $sor) {
$mezo = explode(";", $sor);
if ($k == 0) continue;
if (trim($mezo[3]) == '') continue;
$emails = explode(",", strtolower(trim(utf8_decode(str_replace("'", "", $mezo[3])))));
$user = array(
"strInfo" => utf8_decode(trim($mezo[0]) . ', ' . trim($mezo[1])),
"strName" => ucwords(trim(strtolower(utf8_decode($mezo[2])))),
"strEMail" => $emails[0],
"strTel" => trim(utf8_decode($mezo[4])),
"nCtrID" => ((int)$mezo[5] > 0 ? (int)$mezo[5] : NULL),
"strZip" => strtoupper(trim(utf8_decode($mezo[6]))),
"strCity" => ucwords(trim(strtolower(utf8_decode($mezo[7])))),
"strStreet" => trim(utf8_decode($mezo[8])),
"strCompany" => ucwords(trim(strtolower(utf8_decode($mezo[9])))),
"strWeb" => strtolower(trim(utf8_decode($mezo[10]))),
"nManagerID" => $nManagerID,
"nUserStatus" => 0,
"nIsCommendatory" => 0,
"nUserType" => 0,
"nUserDebt" => 0,
"nEsely" => 0,
"dateInsert" => $time,
"deleted" => 0,
"old_db" => "clusers_eng",
);
//print_r($user); print "<br />";
$nUserID = 0;
$exist = FALSE;
foreach ($emails as $email) {
$res = array();
$msh->query("SELECT * FROM " . CRMADATBAZIS . ".u_emails WHERE LOWER(email)='" . strtolower(trim($email)) . "' LIMIT 1;");
$res = $msh->fetchAssoc();
if (!empty($res)) {
$exist = TRUE;
break;
}
}
if ($exist) {
$nUserID = $res[0]['nUserID'];
print "exist: {$nUserID}<br />\n";
} else {
$msh->insert(CRMADATBAZIS . ".`users`", $user);
$nUserID = $msh->getInsertedId();
foreach ($emails as $e => $email) {
$msh->query("SELECT * FROM " . CRMADATBAZIS . ".u_emails WHERE LOWER(email)='" . strtolower(trim($email)) . "' LIMIT 1;");
$res = $msh->fetchAssoc();
if (empty($res)) {
$msh->insert(CRMADATBAZIS . ".`u_emails`", array(
'email' => strtolower(trim($email)),
'nUserID' => $nUserID,
'default' => ($e == 0 ? 1 : 0),
'active' => 1,
'deleted' => 0,
'newsletter' => 1
));
}
}
}
$msh->insert(CRMADATBAZIS . ".`u_history`", array(
'nUserID' => $nUserID,
'nTopicID' => 339,
'dateEvent' => date("Y-m-d", $time),
'strPlace' => '',
'strInfo' => 'Tóth Zoli (Partnering) adatbázis',
'nManagerID' => $nManagerID,
'insertDate' => date("Y-m-d H:i:s", $time),
));
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6978",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/beolvas2.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/beolvas2.php)",
"original_sha256": "cca186573879cd37437211d7324b0355c33630cdd17c407f454d4abf7467dc4c",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 2917,
"uid": 12425
},
"rel_path": "maintenance/beolvas2.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,468 +0,0 @@
<?php
/*******************************************************************************
* test old url (session has 6 parts): https://www.archlinexp.com/maintenance/al.php?action=actcode&lang=hun&version=2&session=OTA0NkEzMTlBMDcwQTE3NkE4NzRBMzc1QTc3NkEwNzJBNTc0Q0Y3NUE3NzdBMjdGQTc3RUE4NzJBNDcwQTgxOUNGNzVDRjc3QTA3NkEyNzdBMzZCQTM3MEJENzVBNTA3QkQ3MkEwN0ZBMDAzQTYxOUEyNjhBOTY4QTA3NEJFNzZCRTc3RTIyMUY1MjNCRTI4QTE3N0E4NzE=
* test new url (session has 12 parts): https://www.archlinexp.com/maintenance/al.php?action=actcode&lang=eng&version=3&session=MDA1MjM5MEQzMDY0MzA2MjM4NjMzNTYxMzM2MjM1NkIzMTY3NUY2NDMxN0YzMzY2MzE2NzM5NjczMTYyNUY2QjM1NjE1RjY3NUY2MzMwNjIzMTYyNDM3RjQ1NkIyRDEwMzYxMzJENjIzNjY1MzA2NjM2MEQzMjdDMzk3QzMwNjAyRTYyMkU2MzcyMzU2NTM3MkUzQzM4NjAzNjY3NUYwRDVGMEQzNTMwMzk2NzYyMzA2MjZBMzQ3RjY2NjQyRDYyMzY2NjY0MzczODdGNjQzMTJENjczNDZBMzM2MjM2NjE2MTZCMzc2MzM1NjYzMjBENzQzQw==
* $arrSess[empty, pwd, compID, build, ctrID, idokod, osdata, usGCMan, usGCType, usGCDriverVer, npID, partnerID]
******************************************************************************/
class ActCode
{
public static $arrEnabledLangs = array('hun', 'eng', 'jap');
public static $arrNamirialRange = array('min' => 940001, 'max' => 949999);
public static $arrBIMLadderRange = array('min' => 920001, 'max' => 929999);
private static $noAnswer = "(( nem kapott valaszt ))";
private static $arrCodeReplyEnabled = array(30, 34, 36, 38, 40, 41, 42, 43, 44, 47, 48, 49, 82, 88, 91, 92, 93, 94, 95, 97, 98, 99);
function ActCode()
{
if (!class_exists('MySqlHelper')) require_once("MySqlHelper.class.php");
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
}
public static function getActCode($lang, $version, $session)
{
if (!is_numeric($version)) {
die('Invalid version id sent: ' . $version);
}
$ctrName = IpToCountryHelper::getInstance()->getCountryName();
$arrSess = self::decodeSessionString($session);
if ($lang && is_array($arrSess) && count($arrSess)) {
if (isset($arrSess['npID']) && $arrSess['npID'] > '' && isset($arrSess['partnerID']) && $arrSess['partnerID'] == '2nt' && isset($arrSess['idokod']) && $arrSess['idokod'] > '' && isset($arrSess['pwd']) && $arrSess['pwd'] > '') {
self::namirialProcess($arrSess['npID'], $arrSess['partnerID'], $arrSess['idokod'], $arrSess['pwd']);
} else if (isset($arrSess['npID']) && $arrSess['npID'] > '' && isset($arrSess['partnerID']) && $arrSess['partnerID'] == 'kbl' && isset($arrSess['idokod']) && $arrSess['idokod'] > '' && isset($arrSess['pwd']) && $arrSess['pwd'] > '') {
self::bimLadderProcess($arrSess['npID'], $arrSess['partnerID'], $arrSess['idokod'], $arrSess['pwd']);
}
// $pass=&$arrSess['pwd'];
$pass = '9908258340388286';
$kulcs = HardlockHelper::getHardlock(substr($pass, 0, 6));
$prog = ProgramHelper::getProgram($pass);
$isid = ProgramHelper::getIsidFromPass($pass, $prog['prActCode']);
$aktivalokod = CodeGenHelper::generateTimeCode($pass, $isid, 600); // ???
$tomb = array_merge($arrSess, array('lang' => $lang, 'ctrname' => $ctrName, 'aktivalokod' => $aktivalokod, 'valasz' => (trim($aktivalokod) > "" ? trim($aktivalokod) : self::$noAnswer)));
$newUsID = self::insertUserStats($tomb); // ???
self::insertAktivalasInfok(array_merge($tomb, array('usID' => $newUsID, 'isid' => $isid)));
self::xmlOutput($kulcs['hlStat'], $prog['prLogFilter'], $aktivalokod, $newUsID); // ???
if (substr($pass, 7, 2) > 29 && substr($pass, 0, 2) != '96') // ???
{
/*
$version->ujaktivalasikod2($pass,$isid,$arrSess['idokod']);
*/
}
} else {
self::insertError("Valami hianyzik:\nlang: " . $lang . "\nverzio: " . $version . "\nssID: " . $session . "\ndecoded session: " . print_r($arrSess, TRUE), __FUNCTION__);
}
}
public static function getAnswer($pass, $isid, $idokod)
{
if (self::isCodeReplyEnabled($pass) === TRUE) {
$prog = ProgramHelper::getPrograms($pass); // a LAN-osok miatt több rekordot is visszaadhat
if (!$prog) {
return "error: nincs ilyen password";
}
$kulcs = HardlockHelper::getHardlock((int)substr($pass, 0, 6));
if (!$kulcs) {
return "error: nincs ilyen hardlock";
}
if ($kulcs['hlStat'] != 1) {
return "error: nem aktiv a program";
}
$szoftveres = CodeGenHelper::isSoftwareKey($pass);
if ($szoftveres === FALSE) {
return $prog[0]['prActCode'];
} // hardveres kulcs esetén egyből visszaadja az aktuális aktiválási kód
/*
????????????????????????????????????????????????????????????????????????????????
*/
$voltures = false;
foreach ($prog as $program) {
if ($program['prActCode'] != "") // neki megfelelő aktiválási kód
{
$this->win10creator_old_isid = substr($program['prActCode'], 5, 4);
$isidOK = (substr($program['prActCode'], 5, 4) == $isid);
if ($isidOK) {
$valasz = $program['prActCode'];
break;
} // aktuális aktiválási kód ????
if (!$isidOK && substr($program['prActCode'], 7, 2) == substr($isid, 2, 2)) {
$elteltnapok = 0;
sscanf(substr($idokod, 11, 2), '%02x', $elteltnapok);
$elteltnapok += $this->convert(substr($idokod, 10, 1)) * 256;
$engedelyezettnapok = 0;
sscanf(substr($program['prActCode'], 11, 2), '%02x', $engedelyezettnapok);
$engedelyezettnapok += $this->convert(substr($program['prActCode'], 10, 1)) * 256;
if ($engedelyezettnapok > $elteltnapok) {
$valasz = "error: win10 creator";
break;
}
}
if ($isidOK) {
$valasz = $program['prActCode']; // aktuális aktiválási kód ???
break;
} else {
$valasz = 'error: masik gep van regisztralva';
}
} else {
$valasz = "error: hianyzo kod"; // nincs beirva a kod
$voltures = TRUE;
}
}
if ($voltures === TRUE && $valasz == "error: masik gep van regisztralva") // LAN-os szoftver kulcsos liszensznél ha ezt a liszenszt nem találtuk de volt üres liszensz, akkor csinálja ezt
{
$valasz = "error: hianyzo kod";
}
/*
????????????????????????????????????????????????????????????????????????????????
*/
return $valasz;
}
}
public static function bimLadderProcess($npID = '', $partnerID = '', $idokod = '', $pwd = '')
{
if ($npID == '' || $partnerID != 'kbl' || $idokod == '' || $pwd == '') {
die('Missing parameters: |' . $npID . '|' . $partnerID . '|' . $idokod . '|' . $pwd . '|');
}
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$res4 = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res4)) {
$comp = array(
'computer_id' => $npID,
'last_mod' => date('Y-m-d', time())
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`computers`", $comp);
}
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$compid = MySqlHelper::getInstance()->fetchAssoc();
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`nonprofit` WHERE computer_id='" . $compid[0]['id'] . "' AND partnerID = 'kbl' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res)) {
$time = time();
$hlNum = crm_hardlock::GetTheFirstNotUsedHlNumFromInterval(self::$arrBIMLadderRange['min'], self::$arrBIMLadderRange['max']);
$arrIdokod = explode("-", $idokod);
$isid = $arrIdokod[1];
$type = substr($pwd, 6, 1);
$verid = substr($pwd, 7, 2);
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`p_versions` WHERE `verPassword8and9`='" . $verid . "' LIMIT 1;");
$ver = $msh->fetchAssoc();
$ver = $ret[0];
$interval = date_diff(date_create(date('Y-m-d', $time)), date_create((string)((int)date('Y', $time) + 1) . '-12-31'));
$pass = CodeGenHelper::generatePassword($hlNum, 0, $type, $ver['verCode']); // hlNum,lan,type=8,75=2018
$aktKod = CodeGenHelper::generateTimeCode($pass, $isid, $interval->days); // pass,isid,numOfDays
$msh->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE computer_id='" . $npID . "' LIMIT 1;");
$res = $msh->fetchAssoc();
if (empty($res)) {
$comp = array(
'computer_id' => $npID,
'last_mod' => date('Y-m-d', time())
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`computers`", $comp);
}
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$compid = MySqlHelper::getInstance()->fetchAssoc();
$nonprofit = array(
'isid' => $isid,
'verid' => $verid,
'hlID' => $hlNum,
'nUserID' => 62103, //ba ez invalid! namirialnal is! nem egy Namirial usernek az idje kene hogy itt legyen? Ami most 63051..
'add_datetime' => date('Y-m-d H:i:s', $time),
'expire_datetime' => (string)((int)date('Y', $time) + 1) . '-12-31 23:59:59',
'activation_datetime' => date('Y-m-d H:i:s', $time),
'old_db' => 'clusers_eng',
'partnerID' => $partnerID,
'enabled' => 'Y',
'computer_id' => $compid[0]['id']
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`nonprofit`", $nonprofit);
$hardlock = array(
'hlNum' => $hlNum,
'hlCtrID' => 82,
'hlLan' => 0,
'hlStat' => 1,
'hlDateIssue' => date('Y-m-d', $time),
'hlManID' => 36,
'hlTime' => date('Y-m-d H:i:s', $time),
'hlUser' => 62103, //ba ez invalid! namirialnal is! nem egy Namirial usernek az idje kene hogy itt legyen? Ami most 63051..
'hlDealer' => 62103, //ba ez invalid! namirialnal is! nem egy Namirial usernek az idje kene hogy itt legyen? Ami most 63051..
'bUjithato' => 1,
'old_db' => 'clusers_eng'
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`hardlock`", $hardlock);
$program = array(
'prTypeID' => $type,
'prVerID' => $ver['verID'],
'prLan' => 0,
'prPass' => trim($pass),
'prSellDate' => date('Y-m-d', $time),
'prActDate' => (string)((int)date('Y', $time) + 1) . '-12-31',
'prFizetve' => (string)((int)date('Y', $time) + 1) . '-12-31',
'prActCode' => trim($aktKod),
'prTime' => date('Y-m-d H:i:s', $time),
'prLastMod' => date('Y-m-d H:i:s', $time),
'prContact' => 9,
'prHlNum' => $hlNum, // 99xxxx
'prManID' => 36, // web
'prStat' => 0,
'prHiType' => 1, // 1 Rendelés | 2 Típus Váltás | 3 Frissítés | 4 Auto Friss.
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`h_programs`", $program);
}
}
public static function namirialProcess($npID = '', $partnerID = '', $idokod = '', $pwd = '')
{
if ($npID == '' || $partnerID != '2nt' || $idokod == '' || $pwd == '') {
die('Missing parameters: |' . $npID . '|' . $partnerID . '|' . $idokod . '|' . $pwd . '|');
}
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$res4 = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res4)) {
$comp = array(
'computer_id' => $npID,
'last_mod' => date('Y-m-d', time())
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`computers`", $comp);
}
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$compid = MySqlHelper::getInstance()->fetchAssoc();
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`nonprofit` WHERE computer_id='" . $compid[0]['id'] . "' AND partnerID = '2nt' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res)) {
$time = time();
$hlNum = crm_hardlock::GetTheFirstNotUsedHlNumFromInterval(self::$arrNamirialRange['min'], self::$arrNamirialRange['max']);
$arrIdokod = explode("-", $idokod);
$isid = $arrIdokod[1];
$type = substr($pwd, 6, 1);
$verid = substr($pwd, 7, 2);
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`p_versions` WHERE `verPassword8and9`='" . $verid . "' LIMIT 1;");
$ver = $msh->fetchAssoc();
$ver = $ret[0];
$interval = date_diff(date_create(date('Y-m-d', $time)), date_create((string)((int)date('Y', $time) + 1) . '-12-31'));
$pass = CodeGenHelper::generatePassword($hlNum, 0, $type, $ver['verCode']); // hlNum,lan,type=8,75=2018
$aktKod = CodeGenHelper::generateTimeCode($pass, $isid, $interval->days); // pass,isid,numOfDays
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$compid = MySqlHelper::getInstance()->fetchAssoc();
$nonprofit = array(
'isid' => $isid,
'verid' => $verid,
'hlID' => $hlNum,
'nUserID' => 62103, //ba ez invalid! namirialnal is! nem egy Namirial usernek az idje kene hogy itt legyen? Ami most 63051..
'add_datetime' => date('Y-m-d H:i:s', $time),
'expire_datetime' => (string)((int)date('Y', $time) + 1) . '-12-31 23:59:59',
'activation_datetime' => date('Y-m-d H:i:s', $time),
'old_db' => 'clusers_eng',
'partnerID' => $partnerID,
'enabled' => 'Y',
'computer_id' => $compid[0]['id']
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`nonprofit`", $nonprofit);
$hardlock = array(
'hlNum' => $hlNum,
'hlCtrID' => 39,
'hlLan' => 0,
'hlStat' => 1,
'hlDateIssue' => date('Y-m-d', $time),
'hlManID' => 36,
'hlTime' => date('Y-m-d H:i:s', $time),
'hlUser' => 62103, //ba ez invalid! namirialnal is! nem egy Namirial usernek az idje kene hogy itt legyen? Ami most 63051..
'hlDealer' => 62103, //ba ez invalid! namirialnal is! nem egy Namirial usernek az idje kene hogy itt legyen? Ami most 63051..
'bUjithato' => 1,
'old_db' => 'clusers_eng'
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`hardlock`", $hardlock);
$program = array(
'prTypeID' => $type,
'prVerID' => $ver['verID'],
'prLan' => 0,
'prPass' => trim($pass),
'prSellDate' => date('Y-m-d', $time),
'prActDate' => (string)((int)date('Y', $time) + 1) . '-12-31',
'prFizetve' => (string)((int)date('Y', $time) + 1) . '-12-31',
'prActCode' => trim($aktKod),
'prTime' => date('Y-m-d H:i:s', $time),
'prLastMod' => date('Y-m-d H:i:s', $time),
'prContact' => 8, // Non-profit
'prHlNum' => $hlNum, // 99xxxx
'prManID' => 36, // web
'prStat' => 0,
'prHiType' => 1, // 1 Rendelés | 2 Típus Váltás | 3 Frissítés | 4 Auto Friss.
);
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`h_programs`", $program);
}
}
public static function decodeSessionString($str = "")
{
if ($str == "") {
die("Missing session string!");
}
$str_decoded = base64_decode($str); //decode the session string
sscanf(substr($str_decoded, 0, 4), '%04x', $keyDec);
$encoded = str_split(substr($str_decoded, 4), 4);
$decoded = '';
foreach ($encoded as $e) {
sscanf($e, '%04x', $temp);
if (strlen(substr(sprintf('%x', $temp ^ $keyDec), 2)) > 0) {
$decoded .= chr(hexdec(substr(sprintf('%04x', $temp ^ $keyDec), 2)));
$decoded .= chr(hexdec(substr(sprintf('%04x', $temp ^ $keyDec), 0, 2)));
} else {
$decoded .= chr(hexdec(substr(sprintf('%04x', $temp ^ $keyDec), 2)));
}
}
$parts = explode('_', $decoded);
$arrSess['empty'] = $parts[0];
$arrSess['pwd'] = $parts[1];
$arrSess['compID'] = $parts[2];
$arrSess['build'] = $parts[3];
$arrSess['ctrID'] = $parts[4];
$arrSess['idokod'] = $parts[5];
if (count($parts) > 6) {
if (isset($parts[6]) && trim($parts[6]) > '') $arrSess['osdata'] = $parts[6];
if (isset($parts[7]) && trim($parts[7]) > '') $arrSess['usGCMan'] = $parts[7];
if (isset($parts[8]) && trim($parts[8]) > '') $arrSess['usGCType'] = $parts[8];
if (isset($parts[9]) && trim($parts[9]) > '') $arrSess['usGCDriverVer'] = $parts[9];
if (isset($parts[10]) && trim($parts[10]) > '') $arrSess['npID'] = $parts[10];
if (isset($parts[11]) && trim($parts[11]) > '') $arrSess['partnerID'] = $parts[11];
}
return ($arrSess);
}
public static function isCodeReplyEnabled($pass = '')
{
if ($pass == '') return (FALSE);
$ret = (in_array((int)substr($pass, 0, 2), self::$arrCodeReplyEnabled) ? TRUE : FALSE);
return ($ret);
}
public static function insertUserStats($tomb = array())
{
if (empty($tomb)) return (FALSE);
$stats = array(
'usLang' => $tomb['lang'],
'usDate' => time(),
'usPwd' => $tomb['pwd'],
'usVer' => substr($tomb['pwd'], 7, 2),
'usCompID' => $tomb['compID'],
'usCtrID' => $tomb['ctrID'],
'usBuild' => $tomb['build'],
'usCtrName' => $tomb['ctrname'],
'usIP' => $_SERVER['REMOTE_ADDR'],
'usOSData' => $tomb['osdata'],
);
if (isset($tomb['usGCMan']) && trim($tomb['usGCMan']) > '' && isset($tomb['usGCType']) && trim($tomb['usGCType']) > '' && isset($tomb['usGCDriverVer']) && trim($tomb['usGCDriverVer']) > '') {
$stats['usGCMan'] = $tomb['usGCMan'];
$stats['usGCType'] = $tomb['usGCType'];
$stats['usGCDriverVer'] = $tomb['usGCDriverVer'];
}
if (substr($tomb['pwd'], 0, 1) == '9') {
if (in_array(substr($pwd, 0, 2), array('99', '98', '95'))) {
$hlRec = HardlockHelper::getHardlock(substr($pwd, 0, 6));
if (isset($hlRec['hlCtrID'])) $stats['usHlCtrID'] = $hlRec['hlCtrID'];
}
} else {
$stats['usHlCtrID'] = substr($tomb['pwd'], 0, 2);
}
if (CodeGenHelper::isSoftwareKey($tomb['pwd']) === TRUE) $stats['usISID'] = substr($tomb['idokod'], 5, 4);
MySqlHelper::getInstance()->insert("`cl_hlusers`.`userstats2013`", $stats);
$newID = MySqlHelper::getInstance()->getInsertedId();
return ($newID);
}
public static function insertAktivalasInfok($tomb = array())
{
if (empty($tomb)) return (FALSE);
$info = array(
"kulcs" => substr($tomb['pwd'], 0, 6),
"datum" => date('Y-m-d H:i:s', time()),
"ip" => $_SERVER['REMOTE_ADDR'],
"kuldo" => "tips",
"leiras" => "programinditas - pw: " . $tomb['pwd'] . ", build: " . $tomb['build'] . ", isid: " . $tomb['isid'] . ", időkód: " . $tomb['idokod'] . ", valasz: " . $tomb['valasz'],
"statusz" => "uj",
"usGCMan" => (isset($tomb['usGCMan']) && trim($tomb['usGCMan']) ? trim($tomb['usGCMan']) : NULL),
"usGCType" => (isset($tomb['usGCType']) && trim($tomb['usGCType']) ? trim($tomb['usGCType']) : NULL),
"usGCDriverVer" => (isset($tomb['usGCDriverVer']) && trim($tomb['usGCDriverVer']) ? trim($tomb['usGCDriverVer']) : NULL),
"usID" => (isset($tomb['usID']) && trim($tomb['usID']) ? trim($tomb['usID']) : NULL),
);
MySqlHelper::getInstance()->insert('`' . CRMADATBAZIS . '`.`h_aktivalas_infok`', $info);
}
public static function insertError($str = '', $fv = '')
{
if (trim($str) > '') {
MySqlHelper::getInstance()->insert("`" . JMLADATBAZIS . "`.`a_hibak`", array(
'osztaly' => __CLASS__,
'fv' => trim($fv),
'hiba' => trim($str),
'datum' => date('Y-m-d H:i:s', time()),
));
}
}
public static function getEnabledLang($lang = "")
{
return (in_array(strtolower($lang), self::$arrEnabledLangs) ? strtolower($lang) : 'eng');
}
public static function xmlOutput($hlStat, $prLogFilter, $aktivalokod, $newUsID)
{
header('Content-Type: text/xml; charset=utf-8');
header('Content-Disposition: inline; filename=response.xml');
print '<' . '?' . 'xml version="1.0" encoding="UTF-8" standalone="yes"' . '?' . '><ActCode>' .
'<actcode>' . ((isset($aktivalokod) && $aktivalokod > '') ? $aktivalokod : self::$noAnswer) . '</actcode>' . // aktivalo kod
'<Virtualization>' . ((isset($hlStat) && (int)$hlStat == 2) ? 'false' : 'true') . '</Virtualization>' . // letiltott kulcs visszajelzése a programnak
((isset($newUsID) && (int)$newUsID > 0) ? '<actid>' . (int)$newUsID . '</actid>' : '') . // userstats tabla rekord azonosito, amit a telemetria tabla is megkap, hogy ossze lehessen kapcsolni
'<logfilter>' . ((isset($prLogFilter) && (int)$prLogFilter > 0) ? $prLogFilter : 0) . '</logfilter>' . // user programjan tavolrol be lehet kapcsolni a logolast
'<loginEnabled>' . ($_SERVER['REMOTE_ADDR'] = '46.139.14.111' ? 'true' : 'false') . '</loginEnabled>' .
'</ActCode>';
}
} // end of class

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7086",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/actcode.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/actcode.class.php)",
"original_sha256": "6d9596e1e2f22c8fb0a0ec1735ad15608caef4cdb892c2a8f3a18558482b4f7d",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 21858,
"uid": 12425
},
"rel_path": "maintenance/class/actcode.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,79 +0,0 @@
<?php
class CodeGenHelper
{
public static $cg;
public function __construct()
{
}
public static function getInstance()
{
if (!empty(self::$cg)) return self::$cg;
self::$cg = new CodeGenHelper();
return self::$cg;
}
public static function generatePassword($hlNum, $lan, $type, $version = 64)
{
$country = substr($hlNum, 0, 2);
$number = substr($hlNum, 2, 4);
$type = (int)substr($type, 0, 1);
$command = PATH_CODEGEN . " -Password " . $country . $number . $version . $lan . $type;
$ph = popen($command, "r") or die("A 'codegen' paranccsal nem veheto fel kapcsolat");
$password = fgets($ph, 1024);
pclose($ph);
return ($password);
}
public static function generateTimeCode($pass, $isid, $numOfDays)
{
$command = PATH_CODEGEN . " -GenerateTimeCode " . $pass . " " . $isid . " " . $numOfDays;
$ph = popen($command, "r") or die("A 'codegen' paranccsal nem veheto fel kapcsolat");
$aktkod = fgets($ph, 1024);
pclose($ph);
return ($aktkod);
}
public static function generateTimeCodeForSoftwareKey($pass, $isid, $numOfDays)
{
$ret = generateTimeCode($pass, $isid, $numOfDays);
return ($ret);
}
public static function generateTimeCodeForHardwareKey($pass, $numOfDays)
{
$isid = substr($pass, 0, 2) . substr($pass, 7, 2);
$ret = generateTimeCode($pass, $isid, $numOfDays);
return ($ret);
}
public static function isSoftwareKey($pass)
{
$command = PATH_CODEGEN . " -IsSoftwareKey " . $pass;
$ph = popen($command, "r") or die("A 'codegen' paranccsal nem veheto fel kapcsolat");
$ret = fgets($ph, 1024);
pclose($ph);
return ($ret == "true" ? TRUE : FALSE);
}
public static function parseTimeCode($idokod)
{
$command = PATH_CODEGEN . " -ParseTimeCode " . $idokod;
$ph = popen($command, "r");
$elteltnap = (int)fgets($ph, 1024);
pclose($ph);
return ($elteltnap);
}
public static function diffDay($dateFrom, $dateTo)
{
$command = PATH_CODEGEN . " -DiffDay " . $dateFrom . " " . $dateTo;
$ph = popen($command, "r") or die("A 'codegen' paranccsal nem veheto fel kapcsolat");
$napok = fgets($ph, 1024);
pclose($ph);
return ($napok);
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7087",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/codegen.helper.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/codegen.helper.class.php)",
"original_sha256": "f239d9f966a090f5abf13dd4e05c53b5024736e3705396f093432b53d68f4283",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 2307,
"uid": 12425
},
"rel_path": "maintenance/class/codegen.helper.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,206 +0,0 @@
<?php
class crmHelper
{
public static $ch;
public function __construct()
{
}
public static function getInstance()
{
if (!empty(self::$ch)) return self::$ch;
self::$ch = new HardlockHelper();
return self::$ch;
}
public static function AddOrUpdateComputer($npID)
{
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res)) {
$comp = array(
'computer_id' => $npID,
'last_mod' => date('Y-m-d', time())
);
MySqlHelper::getInstance()->insert("`cl_hlusers`.`computers`", $comp);
} else {
MySqlHelper::getInstance()->update("`cl_hlusers`.`computers`", array('last_mod' => date('Y-m-d', time())), array('computer_id' => $npID));
}
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`computers` WHERE `computer_id`='" . $npID . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return $res[0]['id'];
}
public static function GetAllPrograms($nUserID, $product_id, $verid)
{
MySqlHelper::getInstance()->query("SELECT h_programs.prPass AS prHlNum, h_programs.prActCode AS prActCode, h_programs.prTypeID AS prTypeID, h_programs.prVerID AS prVerID, h_programs.prLan AS prLan
FROM `cl_hlusers`.`hardlock`
INNER JOIN `cl_hlusers`.`h_programs` ON h_programs.prHlNum = hardlock.hlNum
WHERE (hardlock.hlUser='" . $nUserID . "' OR hardlock.borrow='" . $nUserID . "') AND hardlock.product_id='" . $product_id . "' AND hardlock.hlStat!='0' AND h_programs.prVerID='" . $verid . "'");
$res2 = MySqlHelper::getInstance()->fetchAssoc();
return $res2;
}
public static function GetVerIDFromPassword($pwd)
{
$ver = substr($pwd, 7, 2);
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`p_versions` WHERE `verPassword8and9`='" . $ver . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return $res[0]['verID'];
}
public static function encode($privateKey, $publicKey, $data)
{
$key = self::CalcKey($privateKey, $publicKey);
$strLen = strlen($data);
$keyLen = strlen($key);
for ($i = 0; $i < $strLen; $i++) {
$ordStr = ord(substr($data, $i, 1));
if ($j == $keyLen) {
$j = 0;
}
$ordKey = ord(substr($key, $j, 1));
$j++;
$hash .= strrev(base_convert(dechex($ordStr + $ordKey), 16, 36));
}
return $hash;
}
public static function CalcKey($privateKey, $publicKey)
{
$privateKeyLength = strlen($privateKey);
$publicKeyLength = strlen($publicKey);
if ($privateKeyLength > $publicKeyLength) {
$result = $privateKey;
for ($i = 1; $i < $publicKeyLength; $i += 2) {
$result[$i] = $publicKey[$i];
}
} else {
$result = $publicKey;
for ($i = 0; $i < $privateKeyLength; $i += 2) {
$result[$i] = $privateKey[$i];
}
}
return sha1($result);
}
public static function decode($privateKey, $publicKey, $data)
{
$key = self::CalcKey($privateKey, $publicKey);
$strLen = strlen($data);
$keyLen = strlen($key);
for ($i = 0; $i < $strLen; $i += 2) {
$ordStr = hexdec(base_convert(strrev(substr($data, $i, 2)), 36, 16));
if ($j == $keyLen) {
$j = 0;
}
$ordKey = ord(substr($key, $j, 1));
$j++;
$hash .= chr($ordStr - $ordKey);
}
return $hash;
}
public static function decode2($string, $key)
{
$key = sha1($key);
$strLen = strlen($string);
$keyLen = strlen($key);
for ($i = 0; $i < $strLen; $i += 2) {
$ordStr = hexdec(base_convert(strrev(substr($string, $i, 2)), 36, 16));
if ($j == $keyLen) {
$j = 0;
}
$ordKey = ord(substr($key, $j, 1));
$j++;
$hash .= chr($ordStr - $ordKey);
}
return $hash;
}
public static function GetVerName($verid)
{
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`p_versions` WHERE `verID`='" . $verid . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return $res[0]['verName'];
}
public static function GetTypeName($typeid)
{
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`p_types` WHERE `typeCode`='" . $typeid . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return $res[0]['typeName'];
}
public static function GetActCode($serial)
{
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`h_programs` WHERE `prPass`='" . $serial . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return $res[0]['prActCode'];
}
public static function GetWebformPrivateKey()
{
return "3BjGQ6fzMtHupM5V8U3l_u";
}
public static function SetWebformResult($session, $result, $encodedResult)
{
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`webform_results` WHERE `session_id`='" . $session . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res)) {
$sess = array(
'session_id' => $session,
'result' => $result . '=' . $encodedResult,
'insertDate' => date("Y-m-d")
);
MySqlHelper::getInstance()->insert("`cl_hlusers`.`webform_results`", $sess);
} else {
MySqlHelper::getInstance()->update("`cl_hlusers`.`webform_results`", array('result' => $result . '=' . $encodedResult, 'insertDate' => date("Y-m-d")), array('session_id' => $session));
}
}
public static function SetWebformResource($session, $hint, $buttontext)
{
MySqlHelper::getInstance()->query("SELECT * FROM `cl_hlusers`.`webform_results` WHERE `session_id`='" . $session . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res)) {
$sess = array(
'session_id' => $session,
'insertDate' => date("Y-m-d"),
'message' => $hint,
'button' => $buttontext
);
MySqlHelper::getInstance()->insert("`cl_hlusers`.`webform_results`", $sess);
} else {
MySqlHelper::getInstance()->update("`cl_hlusers`.`webform_results`", array('insertDate' => date("Y-m-d"), 'message' => $hint, 'button' => $buttontext), array('session_id' => $session));
}
}
public static function get_valueFromStringUrl($url, $parameter_name)
{
$parts = parse_url($url);
if (isset($parts['query'])) {
parse_str($parts['query'], $query);
if (isset($query[$parameter_name]))
return $query[$parameter_name];
else
return null;
} else {
return null;
}
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7083",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/crmHelper.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/crmHelper.class.php)",
"original_sha256": "d8de79930605acc0b90e6a1485418fc33e3ca2bd121abbc63a517b7125352e82",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 7572,
"uid": 12425
},
"rel_path": "maintenance/class/crmHelper.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,25 +0,0 @@
<?php
class HardlockHelper
{
public static $hh;
public function __construct()
{
}
public static function getInstance()
{
if (!empty(self::$hh)) return self::$hh;
self::$hh = new HardlockHelper();
return self::$hh;
}
public static function getHardlock($hlNum = 0)
{
if ((int)$hlNum == 0) return (FALSE);
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`hardlock` WHERE hlNum='" . (int)$hlNum . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return (empty($res) ? FALSE : $res[0]);
}
} // end of class

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7085",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/hardlock.helper.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/hardlock.helper.class.php)",
"original_sha256": "bc301f22d565574d79942a0b23b09a44f2011e9666863d05edb7d980bb47eedc",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 594,
"uid": 12425
},
"rel_path": "maintenance/class/hardlock.helper.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,73 +0,0 @@
<?php
class IpToCountryHelper
{
public static $ic;
public static $deprecated = 15; // days
public function __construct()
{
}
public static function getInstance()
{
if (!empty(self::$ic)) return self::$ic;
self::$ic = new IpToCountryHelper();
return self::$ic;
}
public static function getValues($ip = "")
{
if ($ip == "") $ip = $_SERVER['REMOTE_ADDR'];
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`iptocountry` WHERE IP='" . $ip . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
if (empty($res)) // ha nincs rekord, akkor insert-el egy uj rekordot
{
$tomb = self::downloadValues($ip);
self::saveRecord($tomb);
} else // ha van rekord
{
$res = $res[0];
if (substr($res['AddDateTime'], 0, 10) < date('Y-m-d', time() - 86400 * self::$deprecated)) // es elevult a rekord, akkor torli a regit es insert-el egy uj rekordot
{
self::delOldRecords();
$tomb = self::downloadValues($ip);
self::saveRecord($tomb);
} else // es nem evult el a rekord, akkor az adatbazisbol adja vissza
{
$tomb = $res;
}
}
return ($tomb);
}
public static function downloadValues($ip = "")
{
if ($ip == "") $ip = $_SERVER['REMOTE_ADDR'];
$locale = @file_get_contents("http://freegeoip.net/xml/" . $ip, FALSE, stream_context_create(array('http' => array('timeout' => 2))));
$tomb = json_decode(json_encode(simplexml_load_string($locale)), TRUE);
return ($tomb);
}
public static function saveRecord($tomb = array())
{
$tomb['AddDateTime'] = date('Y-m-d H:i:s', time());
MySqlHelper::getInstance()->insert("`" . CRMADATBAZIS . "`.`iptocountry`", $tomb);
}
public static function delOldRecords()
{
MySqlHelper::getInstance()->delete("`" . CRMADATBAZIS . "`.`iptocountry`", "DATE(`AddDateTime`)<'" . date('Y-m-d', time() - 86400 * self::$deprecated) . "'");
}
public static function getCountryName($ip = "")
{
if ($ip == "") $ip = $_SERVER['REMOTE_ADDR'];
$ret = self::getValues($ip);
if (!isset($ret["CountryName"]) || trim($ret["CountryName"]) == '') $ret["CountryName"] = 'unknown';
return (trim($ret["CountryName"]));
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7082",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/iptocountry.helper.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/iptocountry.helper.class.php)",
"original_sha256": "01f57cd33b36499e203a3cbd5ae6beb5e7a7eab57cdb6005396015d1b7d90066",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 2335,
"uid": 12425
},
"rel_path": "maintenance/class/iptocountry.helper.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,51 +0,0 @@
<?php
class ProgramHelper
{
public static $ph;
public function __construct()
{
}
public static function getInstance()
{
if (!empty(self::$ph)) return self::$ph;
self::$ph = new ProgramHelper();
return self::$ph;
}
public static function getProgram($pass = '')
{
if ($pass == '') return (FALSE);
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`h_programs` WHERE prPass='" . $pass . "' LIMIT 1;");
$res = MySqlHelper::getInstance()->fetchAssoc();
return (empty($res) ? FALSE : $res[0]);
}
public static function getPrograms($pass = '')
{
if ($pass == '') return (FALSE);
MySqlHelper::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`h_programs` WHERE prPass='" . $pass . "';");
$res = MySqlHelper::getInstance()->fetchAssoc();
return (empty($res) ? FALSE : $res);
}
public static function getIsidFromPass($pass = '', $actcode = '')
{
if ($pass == '') return (FALSE);
if (substr($pass, 0, 1) == '9') {
if (trim($actcode) > '') {
$isid = (substr($actcode, 5, 4) > '' ? substr($actcode, 5, 4) : FALSE);
} else {
$prg = self::getProgram($pass);
$isid = ($prg ? substr($prg['prActCode'], 5, 4) : FALSE);
}
} else {
$isid = substr($pass, 0, 2) . substr($pass, 7, 2);
}
return ($isid);
}
} // end of class

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7081",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/program.helper.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/program.helper.class.php)",
"original_sha256": "6c5800864fe4e2f457fa51a000ed629b02c689b48aed59118b0043909374883c",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 1436,
"uid": 12425
},
"rel_path": "maintenance/class/program.helper.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,13 +0,0 @@
<?php
if (isset($_POST['prgrm'])) {
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
$actcode = crm_hardlock::GetActCode($_POST['prgrm']);
$resultXml = '<' . '?' . 'xml version="1.0"' . '?' . '><SelectedProgram>';
$resultXml .= '<Password>' . $_POST['prgrm'] . '</Password><DayCode>' . $actcode . '</DayCode>';
$resultXml .= '</SelectedProgram>';
header('Content-Type: text/xml; charset=utf-8');
header('Content-Disposition: inline; filename=response.xml');
echo $resultXml;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7084",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/selectedprogram.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/selectedprogram.php)",
"original_sha256": "745ade6bf18e5b757611dd106000a971caf88ffc859043475398a7e9acb1264b",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 581,
"uid": 12425
},
"rel_path": "maintenance/class/selectedprogram.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,92 +0,0 @@
<?php
/*******************************************************************************
* test url: www.archline.hu/maintenance/al.php?action=selectprogram&npid=b559bb8b-46f0-46ed-8cd5-8403369a1745&pwd=9600018350430116&isid=C9EB
******************************************************************************/
class SelectProgram
{
function __construct()
{
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
}
public static function getXML($pwd = '', $npid = '', $isid = '', $namirialNonProfit = false, $BIMLadderNonProfit = false, $userid = '', $commercial = false)
{
$multiple = false;
//$resultXml = '<'.'?'.'xml version="1.0"'.'?'.'><SelectProgramResult>';
if ($pwd == '' || $npid == '' || $isid == '') return (void);
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npid . "' LIMIT 1;");
$res2 = crm_database::getInstance()->fetchNext();
if (empty($res2))
$compid = crm_hardlock::AddOrUpdateComputer($npid, '');
else
$compid = $res2['id'];
$password = '';
$actcode = '';
if ($commercial) {
//ba figyelem, teszteletlen ag!!!
if (substr($pwd, 6, 1) == 'L') {
$actualPrograms = crm_hardlock::GetAllPrograms($nUserID, 2, $verid);
} else {
$actualPrograms = crm_hardlock::GetAllPrograms($nUserID, 1, $verid);
}
if (count($actualPrograms) > 1) {
$password = $actualPrograms[0]['prHlNum'];
$actcode = $actualPrograms[0]['prActCode'];
//$resultXml .= '<Password>'.$actualPrograms[0]['prHlNum'].'</Password><DayCode>'.$actualPrograms[0]['prActCode'].'</DayCode>';
} else if (count($actualPrograms) == 1) {
$password = $actualPrograms[0]['prHlNum'];
$actcode = $actualPrograms[0]['prActCode'];
//$resultXml .= '<Password>'.$actualPrograms[0]['prHlNum'].'</Password><DayCode>'.$actualPrograms[0]['prActCode'].'</DayCode>';
}
} else {
if (!$namirialNonProfit && !$BIMLadderNonProfit)
$queryString = "SELECT * FROM `" . CRMADATBAZIS . "`.`nonprofit` WHERE `computer_id`='" . $compid . "' AND `isid`='" . $isid . "' AND partnerID is null LIMIT 1;";
else if ($namirialNonProfit)
$queryString = "SELECT * FROM `" . CRMADATBAZIS . "`.`nonprofit` WHERE `computer_id`='" . $compid . "' AND `isid`='" . $isid . "' AND partnerID = '2nt' LIMIT 1;";
else if ($BIMLadderNonProfit)
$queryString = "SELECT * FROM `" . CRMADATBAZIS . "`.`nonprofit` WHERE `computer_id`='" . $compid . "' AND `isid`='" . $isid . "' AND partnerID = 'kbl' LIMIT 1;";
crm_database::getInstance()->query($queryString);
$res = crm_database::getInstance()->fetchNext();
$multiple = true;
if (count($res)) {
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`p_versions` WHERE `verPassword8and9`='" . $res['verid'] . "' LIMIT 1;");
$ver = crm_database::getInstance()->fetchNext();
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`h_programs` WHERE `prHlNum`='" . $res['hlID'] . "' AND `prVerID`='" . $ver['verID'] . "' LIMIT 1;");
$res = crm_database::getInstance()->fetchNext();
$password = $res['prPass'];
$actcode = $res['prActCode'];
}
}
header('Content-Type: text/xml; charset=utf-8');
header('Content-Disposition: inline; filename=response.xml');
echo '<' . '?' . 'xml version="1.0"' . '?' . '><SelectProgramResult><Password>' . $password . '</Password><DayCode>' . $actcode . '</DayCode><MultiplePrograms>false</MultiplePrograms></SelectProgramResult>';
}
public static function checkNonProfitExists($npid = '', $isid = '')
{
if ($npid == '' || $isid == '') return (void);
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`computers` WHERE `computer_id`='" . $npid . "' LIMIT 1;");
$res2 = crm_database::getInstance()->fetchNext();
$compid = $res2['id'];
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`nonprofit` WHERE `computer_id`='" . $compid . "' AND `isid`='" . $isid . "' LIMIT 1;");
$res = crm_database::getInstance()->fetchNext();
if (!empty($res)) {
$user = $res['nUserID'];
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`users` WHERE `nUserID`=" . $user . " LIMIT 1;");
$res = crm_database::getInstance()->fetchNext();
header('Content-Type: text/xml; charset=utf-8');
header('Content-Disposition: inline; filename=response.xml');
echo '<' . '?' . 'xml version="1.0"' . '?' . '><NonProfitDatabaseResult><Name>' . $res['strName'] . '</Name><Email>' . $res['strEMail'] . '</Email><Telephone>' . $res['strTel'] . '</Telephone><Company>' . $res['strCompany'] . '</Company></NonProfitDatabaseResult>';
}
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7088",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/class/selectprogram.class.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/class/selectprogram.class.php)",
"original_sha256": "fc2e60a4c02d8902f2e0588d29397971b03c3362e5da5aed93c9fa826ecdbce7",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 5394,
"uid": 12425
},
"rel_path": "maintenance/class/selectprogram.class.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6988",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/clusers.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/clusers.php)",
"original_sha256": "bad973163f0cfc180e058ecc776649cfd0610988cea2dbd5ad92ab24e78d164b",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 7,
"uid": 12425
},
"rel_path": "maintenance/clusers.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,41 +0,0 @@
<?php
define("_MAX_COMPUTERSTATION_", 3);
define("_PLACE_", 'web');
define("_MANAGER_", 36);
define("_LEASE_VALID_DAYS_", 60);
define("_RESIGN_DAYS_", 3);
define("_WORKSHOP_CRM_", 123);
define("_WORKSHOP_PRICE_", 352);
define("_COURSE_PRICE_PRELIMINARY_", 342);
define("_COURSE_PRICE_INTERMEDIATE_", 343);
define("_COURSE_EXAM_PRICE_PRELIMINARY_", 350);
define("_COURSE_EXAM_PRICE_INTERMEDIATE_", 351);
define("_TUTOR_EXAM_PRICE_", 347);
define("_TUTOR_EXAM_", 85);
define("_TUTOR_EXAM_FAIL_", 353);
define("_EXAM_PRELIMINARY_", 294);
define("_EXAM_INTERMEDIATE_", 344);
define("_EXAM_FAIL_PRELIMINARY_", 348);
define("_EXAM_FAIL_INTERMEDIATE_", 349);
define("_EXAM_APPLICATION_", 359);
define("_EXAM_APPLICATION_CANCELLED_", 360);
define("_EXAM_RETRY_", 3);
define("_EXPIRE_TIME_MINUTES_", 60);
define("_DIPLOMA_PRELIMINARY_", 354);
define("_DIPLOMA_INTERMEDIATE_", 355);
define("_LECTURER_APPLICATION_", 288);
define("_CLUB_WAITING_LIST_", 4);
define("_CLUB_APPLICATION_", 5); // ezt ne használd, inkabb az _ARCHLINE_KLUB_ -ot
define("_CALL_TO_WORKSHOP_", 122);
define("_WORKSHOP_APPLICATION_", 123);
define("_WEBINAR_HUNGARIAN_", 336);
define("_WEBINAR_ENGLISH_", 333);
define("_ARCHLINE_KLUB_", 5);
define("_EVENT_REGISTRATION_", 358);
define("_DAYS_", 7);
define("_TIME_", time());

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6981",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/config.course.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/config.course.php)",
"original_sha256": "5e185d6773305cce1baa1411f3fc7128289e0456593a3f239c33e0bb78cca4c2",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 1335,
"uid": 12425
},
"rel_path": "maintenance/config.course.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,29 +0,0 @@
<?php
if (!class_exists('Constants')) require_once("common_cadline_libraries/constants.php");
$dbCRM = array();
$dbCRM['driver'] = 'mysql';
$dbCRM['prefix'] = '';
if ($_SERVER['SERVER_NAME'] == 'www.archline.hu' || $_SERVER['SERVER_NAME'] == 'www.archlinexp.com') {
$dbCRM['host'] = Constants::DB_HOST;
$dbCRM['user'] = Constants::DB_USER;
$dbCRM['password'] = Constants::DB_PASSWORD;
$dbCRM['database'] = Constants::DB_NAME;
} elseif ($_SERVER['SERVER_NAME'] == 'secondary.dev.cadline.hu') {
$dbCRM['host'] = Constants::DB_HOST;
$dbCRM['user'] = Constants::DB_USER;
$dbCRM['password'] = Constants::DB_PASSWORD;
$dbCRM['database'] = Constants::DB_NAME;
} elseif ($_SERVER['SERVER_NAME'] == 'crm.cadline.hu') {
$dbCRM['host'] = Constants::DB_HOST;
$dbCRM['user'] = Constants::DB_USER;
$dbCRM['password'] = Constants::DB_PASSWORD;
$dbCRM['database'] = Constants::DB_NAME;
} else {
$dbCRM['host'] = Constants::DB_HOST;
$dbCRM['user'] = Constants::DB_USER;
$dbCRM['password'] = Constants::DB_PASSWORD;
$dbCRM['database'] = Constants::DB_NAME;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6994",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/config.crm.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/config.crm.php)",
"original_sha256": "bce678d953dd6bbf8130478255f1f3c26925447b6fe1645db516640fb9298159",
"original_stat": {
"gid": 30037,
"mtime": 1772623552,
"size": 1173,
"uid": 12425
},
"rel_path": "maintenance/config.crm.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,25 +0,0 @@
<?php
if (!class_exists('Constants')) require_once("common_cadline_libraries/constants.php");
// DB config
if ($_SERVER['SERVER_NAME'] == 'www.archline.hu' || $_SERVER['SERVER_NAME'] == 'www.archlinexp.com') {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
} elseif ($_SERVER['SERVER_NAME'] == 'secondary.dev.cadline.hu') {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
} elseif ($_SERVER['SERVER_NAME'] == 'crm.cadline.hu') {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
} else {
$config['db_host'] = Constants::DB_HOST;
$config['db_user'] = Constants::DB_USER;
$config['db_pass'] = Constants::DB_PASSWORD;
$config['db_name'] = Constants::DB_NAME;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6972",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/config.db.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/config.db.php)",
"original_sha256": "48aec825d9859299bc60dfd6aad949281b2ba3a32a76bcdb6e5aed18e83f763d",
"original_stat": {
"gid": 30037,
"mtime": 1772623554,
"size": 1107,
"uid": 12425
},
"rel_path": "maintenance/config.db.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,8 +0,0 @@
<?php
$mailconfig['Host'] = 'localhost';
$mailconfig['Username'] = 'www.smtp@cadline.hu';
$mailconfig['Password'] = 'Chieng0t';
$mailconfig['SMTPSecure'] = 'none';
$mailconfig['Port'] = '25';
$mailconfig['from_hu'] = 'info@cadline.hu';
$mailconfig['from_com'] = 'info@archlinexp.com';

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6961",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/config.mail.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/config.mail.php)",
"original_sha256": "b4a7a41e85919efa523901833360ef3e0c6a656c14a6c5cecf4684d3d5343d5a",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 293,
"uid": 12425
},
"rel_path": "maintenance/config.mail.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,91 +0,0 @@
<?php
if (isset($_SERVER['HTTP_HOST'])) {
switch ($_SERVER['HTTP_HOST']) {
case 'archline.hu':
case 'www.archline.hu': {
define('ELES', TRUE);
define('LANG', 'hun');
define('PREFIX', 'lakber_');
define('JMLADATBAZIS', "www_archline_hu");
define('PATH_CODEGEN', "/usr/local/sbin/codegen");
break;
}
case 'archlinexp.com':
case 'www.archlinexp.com': {
define('ELES', TRUE);
define('LANG', 'eng');
define('PREFIX', 'eng_');
define('JMLADATBAZIS', "www_archline_hu");
define('PATH_CODEGEN', "/usr/local/sbin/codegen");
break;
}
case 'cadline.hu':
case 'www.cadline.hu': {
define('ELES', TRUE);
define('LANG', 'hun');
define('PREFIX', 'lakber_');
define('JMLADATBAZIS', "www_archline_hu");
define('PATH_CODEGEN', "/usr/local/sbin/codegen");
break;
}
case 'dev.cadline.hu': {
define('ELES', FALSE);
define('LANG', 'hun');
define('PREFIX', 'jml_');
define('JMLADATBAZIS', "dev_cadline_hu");
define('PATH_CODEGEN', "/var/www/tamas/codegen");
break;
}
case 'dev.archlinexp.com': {
define('ELES', FALSE);
define('LANG', 'eng');
define('PREFIX', 'eng_');
define('JMLADATBAZIS', "dev_cadline_hu");
define('PATH_CODEGEN', "/var/www/tamas/codegen");
break;
}
default: {
define('ELES', TRUE);
define('LANG', 'hun');
define('PREFIX', 'lakber_');
define('JMLADATBAZIS', "www_archline_hu");
define('PATH_CODEGEN', "/usr/local/sbin/codegen");
break;
}
}
} else {
define('ELES', TRUE);
define('LANG', 'hun');
define('PREFIX', 'lakber_');
define('JMLADATBAZIS', "www_archline_hu");
define('PATH_CODEGEN', "/usr/local/sbin/codegen");
}
$folder = (trim($_SERVER['DOCUMENT_ROOT']) > '' ? trim($_SERVER['DOCUMENT_ROOT']) : $_SERVER['DOCUMENT_ROOT']); // cron-ból futtatva a DOCUMENT_ROOT-nak nincs értéke!!!
require_once('config.mail.php');
if (class_exists('MySqlHelper') === FALSE)
require_once('MySqlHelper.class.php');
define('CRMADATBAZIS', "cl_hlusers");
define('ACT_VERSION_ID', 1182);
define('DOMAIN', 'www.archline.hu');
define('DEFAULT_EMAIL', 'info@cadline.hu');
define('DEFAULT_EMAIL_ENG', 'info@archlinexp.com');
$config['db_host'] = 'localhost'; // 217.116.46.39
$config['db_user'] = 'cadline'; //'mycadline';
$config['db_pass'] = 'Shea6hoo'; //'uf1Ohpee';
$config['db_name'] = 'cl_hlusers';
$config2['db_host'] = 'localhost'; // tanis 2 - 185.43.206.63
$config2['db_user'] = 'mycadline';
$config2['db_pass'] = 'Shea6hoo';
$config2['db_name'] = 'www_archline_hu';
$msh = new MySQLHelper(); // tanis
$msh->init($config['db_host'], $config['db_name'], $config['db_user'], $config['db_pass']);
$msh->writelog = TRUE;
$msh2 = new MySQLHelper(); // tanis 2
$msh2->init($config2['db_host'], $config2['db_name'], $config2['db_user'], $config2['db_pass']);

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6949",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/config.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/config.php)",
"original_sha256": "873c21b6d13927af7a8bf5ee8a69b7fd6bc3f039fae44e8487d7b850f67c4ea4",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 3127,
"uid": 12425
},
"rel_path": "maintenance/config.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,34 +0,0 @@
<?php
if (!class_exists('Constants')) require_once("common_cadline_libraries/constants.php");
$dbTCE = array();
$dbTCE['driver'] = 'mysql';
$dbTCE['prefix'] = '';
$dbCRM = array();
$dbTCE['driver'] = 'mysql';
$dbTCE['prefix'] = '';
if ($_SERVER['SERVER_NAME'] == 'www.archline.hu' || $_SERVER['SERVER_NAME'] == 'www.archlinexp.com') {
$dbTCE['host'] = Constants::DB_HOST;
$dbTCE['user'] = Constants::DB_USER;
$dbTCE['password'] = Constants::DB_PASSWORD;
$dbTCE['database'] = 'tcexam';
} elseif ($_SERVER['SERVER_NAME'] == 'secondary.dev.cadline.hu') {
$dbTCE['host'] = Constants::DB_HOST;
$dbTCE['user'] = Constants::DB_USER;
$dbTCE['password'] = Constants::DB_PASSWORD;
$dbTCE['database'] = 'tcexam';
} elseif ($_SERVER['SERVER_NAME'] == 'crm.cadline.hu') {
$dbTCE['host'] = Constants::DB_HOST;
$dbTCE['user'] = Constants::DB_USER;
$dbTCE['password'] = Constants::DB_PASSWORD;
$dbTCE['database'] = 'tcexam';
} else {
$dbTCE['host'] = Constants::DB_HOST;
$dbTCE['user'] = Constants::DB_USER;
$dbTCE['password'] = Constants::DB_PASSWORD;
$dbTCE['database'] = 'tcexam';
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6984",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/config.tce.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/config.tce.php)",
"original_sha256": "487d642ce9294e720e02beaf803b75fe2683092cb7885381c65494382e9d4314",
"original_stat": {
"gid": 30037,
"mtime": 1772623556,
"size": 1213,
"uid": 12425
},
"rel_path": "maintenance/config.tce.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,488 +0,0 @@
<?php
error_reporting(E_ERROR | E_PARSE);
if (!class_exists('Database')) require_once("common_cadline_libraries/crm_database.class.php");
session_start();
include('config.php');
if (isset($_POST['submit'])) {
if ($_POST['modId']) {
$id = $_POST['modId'];
$text = $_POST['modText'];
$updateUserQuery = "UPDATE `www_archline_hu`.`crash` SET komment = ? WHERE id = ? LIMIT 1;";
Database::getInstance()->query($updateUserQuery, array('si', $text, $id));
}
if ($_POST['listaid'] && isset($_POST['CbBoxValue'])) {
$listaid = substr($_POST['listaid'], 5);
$updateUserQuery = "UPDATE `www_archline_hu`.`crash` SET eredmeny = ? WHERE id = ? LIMIT 1;";
Database::getInstance()->query($updateUserQuery, array('ii', $_POST['CbBoxValue'], $listaid));
}
}
function downloadFile($filename)
{
if ($f = fopen($filename, "rb")) {
$content_len = (int) filesize($filename);
//@ini_set('zlib.output_compression', 'Off');
header('Pragma: public');
//header('Last-Modified: '.gmdate('D, d M Y H(idea)(worry)') . ' GMT');
header('Cache-Control: no-store, no-cache, must-revalidate'); // HTTP/1.1
header('Cache-Control: pre-check=0, post-check=0, max-age=0'); // HTTP/1.1
header('Content-Transfer-Encoding: none');
header('Content-Type: plain/text');
header('Content-Disposition: inline; filename="' . $filename . '"');
header("Content-length: $content_len");
while (!feof($f)) {
echo fread($f, 2 << 20);
}
fclose($f);
} else {
print "error opening file";
}
exit();
}
if (isset($_GET) && !empty($_GET)) {
$filepath = "/home/vendeg/crash/";
$filepath .= $_GET["guid"];
if (!file_exists($filepath))
$filepath = "../webdav/crash/" . $_GET['guid'];
downloadFile($filepath);
} else {
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en">
<head>
<meta http-equiv="Content-type" content="text/html;charset=UTF-8" />
<style>
#submit {
position: fixed;
right: 1%;
top: 1%;
}
.tr0 {
background-color: white;
}
.tr1 {
background-color: #33cc33;
}
.tr2,
.tr5,
.tr6 {
background-color: #ff5050;
}
.tr3 {
background-color: #cccccc;
}
.tr4 {
background-color: #99ff33;
}
.tr7 {
background-color: #808080;
}
.ta0 {
background-color: white;
}
.ta1 {
background-color: #33cc33;
}
.ta2,
.ta5,
.ta6 {
background-color: #ff5050;
}
.ta3 {
background-color: #cccccc;
}
.ta4 {
background-color: #99ff33;
}
.ta7 {
background-color: #808080;
}
</style>
<script>
var textId;
var CbBox;
function valtoztat(id) {
textId = id;
document.getElementById("modId").value = id;
}
function textChange() {
var x = document.getElementById(textId).value;
document.getElementById("modText").value = x;
var cbV = document.getElementById(CbBox).selectedIndex;
document.getElementById("CbBoxValue").value = cbV;
}
function cbboxid(CbId) {
var cbV = document.getElementById(CbId).selectedIndex;
document.getElementById("CbBoxValue").value = cbV;
document.getElementById("listaid").value = CbId;
CbBox = CbId;
}
</script>
</head>
<body>
<?php
$V0 = "Nem feldolgozott";
$V1 = "Javítva";
$V2 = "Nem debuggolható";
$V3 = "Nem értelmezhető";
$V4 = "Előzőleg javított";
$V5 = "Nem reprodukálható";
$V6 = "Nem javítható";
$V7 = "Nem feldolgozandó";
$V8 = "Mind";
if (isset($_POST['datemin'])) {
$_SESSION["mindate"] = $_POST['datemin'];
$_SESSION["maxdate"] = $_POST['datemax'];
$_SESSION["lista"] = $_POST['lista'];
$_SESSION['product'] = $_POST['product'];
$_SESSION['prod'] = $_POST['prod'];
}
$maxdate = date("Y-m-d");
$mindate = date("Y-m-d", strtotime("-5 days"));
echo '<form method="post" action="">';
if (isset($_SESSION["maxdate"]) || isset($_SESSION["mindate"]) || isset($_SESSION["lista"])) {
echo 'Dátum szűrés<br /> <input type="date" name="datemin" id="datemin" value="' . $_SESSION["mindate"] . '">-tól &nbsp;&nbsp;&nbsp; <input type="date" name="datemax" id="datemax" value="' . $_SESSION["maxdate"] . '">-ig';
} else {
echo 'Dátum szűrés<br /> <input type="date" name="datemin" id="datemin" value="' . $mindate . '">-tól &nbsp;&nbsp;&nbsp; <input type="date" name="datemax" id="datemax" value="' . $maxdate . '">-ig';
}
?>
<br /><br />
Eredmény szűrő:<br />
<select name="lista">
<option value="0" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "0") echo ' selected'; ?>><?php echo $V0; ?></option>
<option value="1" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "1") echo ' selected'; ?>><?php echo $V1; ?></option>
<option value="2" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "2") echo ' selected'; ?>><?php echo $V2; ?></option>
<option value="3" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "3") echo ' selected'; ?>><?php echo $V3; ?></option>
<option value="4" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "4") echo ' selected'; ?>><?php echo $V4; ?></option>
<option value="5" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "5") echo ' selected'; ?>><?php echo $V5; ?></option>
<option value="6" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "6") echo ' selected'; ?>><?php echo $V6; ?></option>
<option value="7" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "7") echo ' selected'; ?>><?php echo $V7; ?></option>
<option value="%" <?php if (isset($_SESSION['lista']) && $_SESSION['lista'] == "%") echo ' selected'; ?>><?php echo $V8; ?></option>
</select>
<select name="product">
<option value="0" <?php if (isset($_SESSION['product']) && $_SESSION['product'] == "0") echo ' selected'; ?>>Mind</option>
<option value="1" <?php if (isset($_SESSION['product']) && $_SESSION['product'] == "1") echo ' selected'; ?>>ARCHLine.XP</option>
<option value="2" <?php if (isset($_SESSION['product']) && $_SESSION['product'] == "2") echo ' selected'; ?>>LIVE</option>
</select>
<select name="prod">
<option value="" <?php if (isset($_SESSION['prod']) && $_SESSION['prod'] == "") echo ' selected'; ?>>Mind</option>
<option value="AL" <?php if (isset($_SESSION['prod']) && $_SESSION['prod'] == "AL") echo ' selected'; ?>>ARCHLine.XP</option>
<option value="Render" <?php if (isset($_SESSION['prod']) && $_SESSION['prod'] == "Render") echo ' selected'; ?>>Render</option>
</select>
<br /><br />
<input type="submit" value="Szűrés">
<br /><br />
</form>
<?php
$bind = '';
$query = "SELECT * FROM `www_archline_hu`.`crash` WHERE 1 ";
$feltetel = array();
if (isset($_POST['datemin'])) {
array_push($feltetel, $_POST['datemin']);
$query .= "AND left(datum, 10) >= ? ";
$bind .= 's';
}
if (isset($_POST['datemax'])) {
array_push($feltetel, $_POST['datemax']);
$query .= "AND left(datum, 10) <= ? ";
$bind .= 's';
}
if (isset($_POST['lista']) && $_POST['lista'] != "%") {
array_push($feltetel, $_POST['lista']);
$query .= "AND eredmeny = ? ";
$bind .= 'i';
}
if (isset($_POST['prod']) && $_POST['prod'] != "") {
array_push($feltetel, $_POST['prod']);
$query .= "AND prod = ? ";
$bind .= 's';
}
$query .= "ORDER BY id DESC LIMIT 500;";
array_unshift($feltetel, $bind);
Database::getInstance()->query($query, $feltetel);
$results = Database::getInstance()->fetchAssoc();
print "<form method='post' action='' onsubmit='textChange()'>";
print "<table border = 1>";
print "<tr>";
print "<th>Email</th>";
print "<th>Üzenet</th>";
print "<th>Dátum</th>";
print "<th>Dmp fájl</th>";
print "<th>Info fájl</th>";
print "<th>Crash fájl</th>";
print "<th>Megjegyzés</th>";
print "<th>Eredmény</th>";
print "</tr>";
foreach ($results as $result) {
$r = (object)$result;
$filepathFtp = "/home/vendeg/crash/";
$filepathFtp .= $r->guid;
$filepathFtp .= ".DMP";
$filepathWebdav = "../webdav/crash/";
$filepathWebdav .= $r->guid;
$filepathWebdav .= ".DMP";
$crashFile = "../webdav/crash/" . $r->guid . ".crh";
if (!file_exists($filepathFtp) && !file_exists($filepathWebdav) && !file_exists($crashFile))
continue;
print "<tr class='tr" . $r->eredmeny . "'>";
print "<td>";
print $r->email;
print "</td>";
print "<td style='width:300px'>";
print $r->info;
print "</td>";
print "<td>";
//print substr($r->datum,0,10);
print $r->datum;
print "</td>";
print "<td>";
if (file_exists($filepathFtp) || file_exists($filepathWebdav)) {
echo '<a href="https://archline.hu/crashadmin/' . $r->guid . '.DMP' . '">' . $r->guid . '</a>';
}
print "</td>";
print "<td>";
$infoPath = '/home/vendeg/crash/' . $r->guid . '.TXT';
$infoPathWebdav = '../webdav/crash/' . $r->guid . '.TXT';
$logPath = '/home/vendeg/crash/' . $r->guid . '.LOG';
$logPathWebdav = '../webdav/crash/' . $r->guid . '.LOG';
$crashPath = '../webdav/crash/' . $r->guid . '.crh';
$logExtension = '.LOG';
$infoExtension = '.TXT';
$crashExtension = '.crh';
if (!file_exists($infoPath) && !file_exists($infoPathWebdav)) {
$infoPath = '/home/vendeg/crash/' . $r->guid . '.XML';
$infoExtension = '.XML';
}
if (file_exists($infoPath) || file_exists($infoPathWebdav)) {
echo '<a href="https://archline.hu/crashadmin/' . $r->guid . $infoExtension . '">Info</a>';
}
if (file_exists($logPath) || file_exists($logPathWebdav)) {
echo ' <a href="https://archline.hu/crashadmin/' . $r->guid . $logExtension . '">Log</a>';
}
if (file_exists($infoPath)) {
$file = '/home/vendeg/crash/' . $r->guid . '.TXT';
if (!file_exists($file))
$file = $infoPathWebdav;
$searchfor = 'developer';
$contents = file_get_contents($file);
$pattern = preg_quote($searchfor, '/');
$pattern = "/^.*$pattern.*\$/m";
if (preg_match_all($pattern, $contents, $matches))
echo "developer";
$searchfor = 'Product: render';
$contents = file_get_contents($file);
$pattern = preg_quote($searchfor, '/');
$pattern = "/^.*$pattern.*\$/m";
if (preg_match_all($pattern, $contents, $matches)) {
echo "render";
}
}
print "</td>";
print "<td>";
if (file_exists($crashPath)) {
echo ' <a href="https://partners.staging.cadline.hu/softwarestatistic/crashReport/' . $r->guid . '" target="_blank">Crash</a>';
}
print "</td>";
print "<td>";
echo "<textarea rows='2' cols='60' class='ta" . $r->eredmeny . "' id='" . $r->id . "' onClick='valtoztat(this.id)'>" . $r->komment . "</textarea>";
print "</td>";
print "<td>";
switch ($r->eredmeny) {
case '0':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0" selected>' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '1':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1" selected>' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '2':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2" selected>' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '3':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3" selected>' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '4':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4" selected>' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '5':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5" selected>' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '6':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6" selected>' . $V6 . '</option>
<option value="7">' . $V7 . '</option>
</select>
';
break;
case '7':
echo '
<select id="lista' . $r->id . '" onchange="cbboxid(this.id)">
<option value="0">' . $V0 . '</option>
<option value="1">' . $V1 . '</option>
<option value="2">' . $V2 . '</option>
<option value="3">' . $V3 . '</option>
<option value="4">' . $V4 . '</option>
<option value="5">' . $V5 . '</option>
<option value="6">' . $V6 . '</option>
<option value="7" selected>' . $V7 . '</option>
</select>
';
break;
}
print "</td>";
print "</tr>";
}
print '<input type="hidden" id="listaid" name="listaid" value="">';
print '<input type="hidden" id="CbBoxValue" name="CbBoxValue" value="">';
print '<input type="hidden" id="modId" name="modId" value="">';
print '<input type="hidden" id="modText" name="modText" value="">';
print '<input type="submit" value="Mentés" id="submit" name="submit">';
print "</table>";
?>
</body>
</html>
<?php
}
?>

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6951",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/crashadmin.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/crashadmin.php)",
"original_sha256": "3d6cdb752014286e0ff7ffcefb5a1d5c01deb7292145b411ea0ef5709fcc0037",
"original_stat": {
"gid": 30037,
"mtime": 1772180562,
"size": 16838,
"uid": 12425
},
"rel_path": "maintenance/crashadmin.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,21 +0,0 @@
<?php
if (!class_exists('Database')) require_once("common_cadline_libraries/crm_database.class.php");
$status = 'Success';
$msg = '';
Database::getInstance()->query("SELECT * FROM cl_hlusers.cron_check");
$cronFunctions = Database::getInstance()->fetchAssoc();
foreach ($cronFunctions as $function) {
$timeStamp = time() - $function['modified'];
if ($timeStamp > 180)
$status = 'Failed';
$msg .= 'Function: ' . $function['function'] . '<br>';
$msg .= 'Last run: ' . date('Y-m-d H:i:s', $function['modified']) . '<br><br>';
}
echo 'Cron status: ' . $status . '<br><br>';
echo $msg;

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7022",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/cron_check.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/cron_check.php)",
"original_sha256": "523cbfeb6dd2fa0756622a963ca73680404e0c41f5e7846e989129ea150d68fb",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 632,
"uid": 12425
},
"rel_path": "maintenance/cron_check.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,64 +0,0 @@
<?php
if (!class_exists('Database')) require_once("common_cadline_libraries/crm_database.class.php");
try {
$url = 'https://www.archline.hu/maintenance/check_server.php';
$options = array(
CURLOPT_RETURNTRANSFER => true, // return web page
CURLOPT_HEADER => false, // don't return headers
CURLOPT_FOLLOWLOCATION => true, // follow redirects
CURLOPT_MAXREDIRS => 10, // stop after 10 redirects
CURLOPT_ENCODING => "", // handle compressed
CURLOPT_USERAGENT => "test", // name of client
CURLOPT_AUTOREFERER => true, // set referrer on redirect
CURLOPT_CONNECTTIMEOUT => 120, // time-out on connect
CURLOPT_TIMEOUT => 120, // time-out on response
);
$ch = curl_init($url);
curl_setopt_array($ch, $options);
$content = curl_exec($ch);
curl_close($ch);
$result = $content == 380335 ? 'Success' : 'Failed';
} catch (\Exception $e) {
$result = 'Failed';
}
$filename = $_SERVER['DOCUMENT_ROOT'] . "/serverAlive.txt";
$closed = file_put_contents($filename, $result);
$i = 0;
while (!$closed && $i < 10) {
$closed = file_put_contents($filename, $result);
$i++;
}
try {
if ($_SERVER['SERVER_NAME'] == 'secondary.cadline.hu') {
$txtResult = $result == 'Success' ? 'Inactive' : 'Active';
$filename = $_SERVER['DOCUMENT_ROOT'] . "/activateServer.txt";
$closed = file_put_contents($filename, $txtResult);
$i = 0;
while (!$closed && $i < 10) {
$closed = file_put_contents($filename, $txtResult);
$i++;
}
}
} catch (\Throwable $th) {
//throw $th;
}
try {
// Update-eli a sync_crm.cron_check tablat, hogy megnezzuk, lefut-e a cron. A check_main_server_cron.php file-ba pedig ellenorizzuk
Database::getInstance()->query("UPDATE sync_crm.cron_check SET modified = ? WHERE id = ?", array('ii', time(), 1));
} catch (\Throwable $th) {
//throw $th;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6997",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/cron_check_server.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/cron_check_server.php)",
"original_sha256": "aa2aeba2381e1caaf51d6c3a3dbe84815c600d11d4c94392d1e794249cc0f650",
"original_stat": {
"gid": 30037,
"mtime": 1761045135,
"size": 2073,
"uid": 12425
},
"rel_path": "maintenance/cron_check_server.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,507 +0,0 @@
<?php
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
if (!class_exists('Tester')) require_once("common_cadline_libraries/crm_hardlock.class.php");
if (!class_exists('Event')) require_once("common_cadline_libraries/crm_users.class.php");
require_once('libraries/phpmailer/PHPMailerAutoload.php');
require_once('config.mail.php');
/* EXPO REMINDER BEGIN */
/*$date = new DateTime();
$fullDate = $date->format('Y-m-d');
$minutes = $date->format('i');
if (($fullDate == '2022-11-22' || $fullDate == '2022-11-23') && ($minutes == '00' || $minutes == '30')) {
$eventDatas = new stdClass();
$eventDatas->subject = 'Join our event, YouTube link has arrived!';
$eventDatas->date = $date->format('Y-m-d H:i');
$event = new Event($eventDatas);
$sendEmail = $event->sendEventReminder($mailconfig);
}*/
/* EXPO REMINDER END */
/*if (date('Y-m-d H:i') == '2022-06-29 08:00') {
require_once('libraries/phpmailer/PHPMailerAutoload.php');
require_once('config.mail.php');
$query = "SELECT em.email AS user_email, jml_u.name AS user_name
FROM www_archline_hu.alworkshops_application app
LEFT JOIN www_archline_hu.jml_users jml_u ON jml_u.id = app.user_id
LEFT JOIN cl_hlusers.u_emails em ON em.nUserID = jml_u.nUserID
WHERE app.course_id = 1394 AND em.newsletter = 1
GROUP BY jml_u.nUserID";
crm_database::getInstance()->query($query);
$res = crm_database::getInstance()->fetchAssoc();
foreach ($res as $value) {
$subject = 'Emlékeztető: ARCHLine.XP Középfokú tanfolyam';
$body = '<b>Kedves ' . $value['user_name'] . '</b>, <br/><br/>
Köszönjük a jelentkezésedet a tanfolyamra. A következő adásunk témája: Tetőtér beépítése <br/><br/>
<b>Mikor?</b> <br/>
2022. Június 29. 10:00 <br/>
<a href="https://youtu.be/bzOYWVo7eYA">Itt nézheted</a> <br/><br/>
<b>Mire lesz szükséged:</b> <br/>
Győződj meg arról, hogy az eszközön, amin nézni fogod, van hang, továbbá egy YouTube vagy Gmail fiók is kelleni fog, ha szeretnél az adás alatt kommentálni, vagy kérdezni.<br/><br/>
<br/>
<b>Fontos:</b> <br/>
Az adást fel fogjuk venni, és később is elérhető lesz a YouTube csatornánkon. Azzal, hogy részt veszel az Élő adáson, elfogadod, hogy a hozzászólásaid láthatóak lesznek a felvett anyagon. <br/><br/>
Ha bármi kérdésed van, fordjulj hozzánk az <a href="mailto:info@cadline.hu">info@cadline.hu</a> email címen <br/><br/>
Találkozunk az élő adásban! <br/><br/>
Üdvözlettel,
A CADLine csapata';
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@cadline.hu';
$mail->FromName = 'info@cadline.hu';
$mail->AddAddress($value['user_email'], $value['user_name']);
$mail->IsHTML(true);
$mail->Subject = $subject;
$mail->Body = $body;
$mail->Send();
}
die();
}*/
/*if (date('Y-m-d H:i') == '2022-05-18 08:01') {
// define('_JEXEC', 1);
// define('JPATH_BASE', '..');
require_once('libraries/phpmailer/PHPMailerAutoload.php');
require_once('config.mail.php');
$query = "SELECT * FROM www_archline_hu.alworkshops_application
WHERE course_id = 1419 GROUP BY email";
crm_database::getInstance()->query($query);
$res = crm_database::getInstance()->fetchAssoc();
foreach ($res as $value) {
$subject = 'Emlékeztető: ARCHLine.XP LIVE 2022 Újdonságok';
$body = '<b>Kedves ' . $value['name'] . '</b>, <br/><br/>
Köszönjük a jelentkezésedet a webinárra. A következő adásunk témája: ARCHLine.XP LIVE 2022 Újdonságok 2.rész <br/><br/>
<b>Mikor?</b> <br/>
2022. Május 18. 16:30 <br/>
<a href="https://youtu.be/k4HymyOkDZs">Itt nézheted</a> <br/><br/>
<b>Mire lesz szükséged:</b> <br/>
Győződj meg arról, hogy az eszközön, amin nézni fogod, van hang, továbbá egy YouTube vagy Gmail fiók is kelleni fog, ha szeretnél az adás alatt kommentálni, vagy kérdezni.<br/><br/>
<br/>
<b>Fontos:</b> <br/>
Az adást fel fogjuk venni, és később is elérhető lesz a YouTube csatornánkon. Azzal, hogy részt veszel az Élő adáson, elfogadod, hogy a hozzászólásaid láthatóak lesznek a felvett anyagon. <br/><br/>
Ha bármi kérdésed van, fordjulj hozzánk az <a href="mailto:info@cadline.hu">info@cadline.hu</a> email címen <br/><br/>
Találkozunk az élő adásban! <br/><br/>
Üdvözlettel,
A CADLine csapata';
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@cadline.hu';
$mail->FromName = 'info@cadline.hu';
$mail->AddAddress($value['email'], $value['name']);
$mail->IsHTML(true);
$mail->Subject = $subject;
$mail->Body = $body;
$mail->Send();
}
die();
}*/
/*if (date('Y-m-d H:i') == '2022-05-18 08:02') {
// define('_JEXEC', 1);
// define('JPATH_BASE', '..');
require_once('libraries/phpmailer/PHPMailerAutoload.php');
require_once('config.mail.php');
$query = "SELECT * FROM www_archline_hu.alworkshops_application
WHERE course_id = 1420 GROUP BY email";
crm_database::getInstance()->query($query);
$res = crm_database::getInstance()->fetchAssoc();
foreach ($res as $value) {
$subject = 'Reminder: ARCHLine.XP LIVE 2022 New Features';
$body = "<b>Dear " . $value['name'] . "</b>, <br/><br/>
Thank you for signing up to our ARCHLine.XP Webinars <br/><br/>
<b>The next show is on</b> <br/>
2022. May 18, 3PM CET <br/>
<a href='https://youtu.be/XiymR-PW-lM'>Watch it here</a> <br/><br/>
<b>What you'll need:</b> <br/>
A device with sound, so that you can hear us. Also, if you want to comment, you will need a Google or YouTube account. You can watch the shows without these accounts, too, but then you won't be able to comment.<br/><br/>
<br/>
<b>Important:</b> <br/>
The webinar will be recorded and it will later be added to our archive shows. By joining our webinars, you agree that your contribution (comments) will be visible on the recording.<br/><br/>
Should you have any questions, reach out to us on the <a href='mailto:info@archlinexp.com'>info@archlinexp.com</a> email address <br/><br/>
See you at the show! <br/><br/>
Best wishes,
The CadLine Team";
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@cadline.hu';
$mail->FromName = 'info@cadline.hu';
$mail->AddAddress($value['email'], $value['name']);
$mail->IsHTML(true);
$mail->Subject = $subject;
$mail->Body = $body;
$mail->Send();
}
die();
}*/
/* --------------------------------- Masnapi reminder --------------------------------- */
/*if (date('Y-m-d H:i') == '2021-11-11 10:00') {
// define('_JEXEC', 1);
// define('JPATH_BASE', '..');
require_once('/maintenance/libraries/phpmailer/PHPMailerAutoload.php');
require_once('/maintenance/config.mail.php');
$query = "SELECT * FROM www_archline_hu.alworkshops_application
WHERE course_id = 1289 OR course_id = 1320 GROUP BY email";
crm_database::getInstance()->query($query);
$res = crm_database::getInstance()->fetchAssoc();
foreach ($res as $value) {
$subject = 'Nézd meg újra: Életteli látvány és animáció a LIVE-ban';
$body = "Helló!<br/>
Láttad a tegnapi webináriumot a Életteli látvány és animáció a LIVE-ban címmel? <br/>
Ha igen, reméljük, hogy tetszett! Több időre van szükséged a gyakorláshoz? Nézd meg újra itt: <a href='https://youtu.be/HblUO3URDBk'>https://youtu.be/HblUO3URDBk</a> <br/><br/>
Ha nem láttad, és még mindig érdekel, akkor még itt nézheted meg: <a href='https://youtu.be/HblUO3URDBk'>https://youtu.be/HblUO3URDBk</a> <br/><br/>
Üdvözlettel, <br/>
A CADLine csapata";
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@cadline.hu';
$mail->FromName = 'info@cadline.hu';
$mail->AddAddress($value['email'], $value['name']);
$mail->IsHTML(true);
$mail->Subject = $subject;
$mail->Body = $body;
$mail->Send();
}
die();
}*/
/*if (date('Y-m-d H:i') == '2021-11-11 10:01') {
// define('_JEXEC', 1);
// define('JPATH_BASE', '..');
require_once('/maintenance/libraries/phpmailer/PHPMailerAutoload.php');
require_once('/maintenance/config.mail.php');
$query = "SELECT * FROM www_archline_hu.alworkshops_application
WHERE course_id = 1288 OR course_id = 1342 GROUP BY email";
crm_database::getInstance()->query($query);
$res = crm_database::getInstance()->fetchAssoc();
foreach ($res as $value) {
$subject = 'Watch it again: Breathtaking visuals and animations in LIVE';
$body = "Hello! <br/>
Did you catch the Webinar yesterday about Breathtaking visuals and animations in LIVE? <br/>
If you did, we hope you enjoyed it! Need more time to practice? Watch it again here: <a href='https://youtu.be/ZVUHcWmFfpA'>https://youtu.be/ZVUHcWmFfpA</a> <br/><br/>
If you missed the show, you can watch it here: <a href='https://youtu.be/ZVUHcWmFfpA'>https://youtu.be/ZVUHcWmFfpA</a> <br/><br/>
Best wishes, <br/>
The CadLine Team";
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@cadline.hu';
$mail->FromName = 'info@cadline.hu';
$mail->AddAddress($value['email'], $value['name']);
$mail->IsHTML(true);
$mail->Subject = $subject;
$mail->Body = $body;
$mail->Send();
}
die();
}*/
/*if ($_SERVER['REMOTE_ADDR'] == '82.131.186.171') {
require_once("../common_cadline_libraries/crm_users.class.php");
require_once('../maintenance/libraries/phpmailer/PHPMailerAutoload.php');
$emailTemplate = crm_users::getSevenDayEmailTemplate('mate.nagy@cadline.hu');
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@archlinexp.com';
$mail->FromName = 'www.archlinexp.com';
$mail->AddAddress('mate.nagy@cadline.hu');
$mail->IsHTML(true);
$mail->Subject = $emailTemplate['subject'];
$mail->Body = $emailTemplate['body'];
$mail->Send();
die();
}*/
if (date('H:i') == '10:00') {
require_once("../common_cadline_libraries/crm_users.class.php");
require_once('../maintenance/libraries/phpmailer/PHPMailerAutoload.php');
$date = date('Y-m-d');
$dateBefore = new DateTime();
$dateBefore->modify('-30 day');
$monthDate = $dateBefore->format('Y-m-d');
$query = "SELECT * FROM cl_hlusers.u_emails
WHERE newsletter = 1 AND trial_download_date != '' AND trial_download_date >= '{$monthDate}'";
crm_database::getInstance()->query($query);
$res = crm_database::getInstance()->fetchAssoc();
foreach ($res as $value) {
$needEmail = false;
$day1 = new DateTime($value['trial_download_date']);
$day1->modify('+1 day');
$day3 = new DateTime($value['trial_download_date']);
$day3->modify('+3 day');
$day7 = new DateTime($value['trial_download_date']);
$day7->modify('+7 day');
$day14 = new DateTime($value['trial_download_date']);
$day14->modify('+14 day');
$day21 = new DateTime($value['trial_download_date']);
$day21->modify('+21 day');
$day24 = new DateTime($value['trial_download_date']);
$day24->modify('+24 day');
$day30 = new DateTime($value['trial_download_date']);
$day30->modify('+30 day');
if ($day1->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getFirstDayEmailTemplate($value['email']);
$needEmail = true;
} elseif ($day3->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getThreeDayEmailTemplate($value['email']);
$needEmail = true;
} elseif ($day7->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getSevenDayEmailTemplate($value['email']);
$needEmail = true;
} elseif ($day14->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getFourteenDayEmailTemplate($value['email']);
//$needEmail = true;
} elseif ($day21->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getTwentyoneDayEmailTemplate($value['email']);
//$needEmail = true;
} elseif ($day24->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getTwentyfourDayEmailTemplate($value['email']);
//$needEmail = true;
} elseif ($day30->format('Y-m-d') == $date) {
$emailTemplate = crm_users::getLastEmailTemplate($value['email']);
//$needEmail = true;
}
if ($needEmail) {
$mail = new PHPMailer();
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->SMTPAuth = true;
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->From = 'info@archlinexp.com';
$mail->FromName = 'www.archlinexp.com';
$mail->AddAddress($value['email'], $value['email']);
$mail->IsHTML(true);
$mail->Subject = $emailTemplate['subject'];
$mail->Body = $emailTemplate['body'];
$mail->Send();
}
}
}
$action = Tester::getCronTime();
$timer_result = '';
$error_result = '';
switch ($action) {
case Time::sDay:
if (date('Y-m-d') == '2023-06-01') {
/* NÉMET WEBOLDAL BEGIN */
$query = "UPDATE www_archline_hu.dtch_menu SET link = 'index.php?option=com_sppagebuilder&view=page&id=46' WHERE id = 131";
crm_database::getInstance()->query($query);
$query = "UPDATE www_archline_hu.dtch_menu SET link = 'index.php?option=com_sppagebuilder&view=page&id=47' WHERE id = 283";
crm_database::getInstance()->query($query);
/* NÉMET WEBOLDAL END */
/* ANGOL WEBOLDAL BEGIN */
$query = "UPDATE www_archline_hu.eng_sh404sef_urls SET rank = 1 WHERE id = 87489";
crm_database::getInstance()->query($query);
$query = "UPDATE www_archline_hu.eng_sh404sef_urls SET rank = 0 WHERE id = 80561";
crm_database::getInstance()->query($query);
$query = "UPDATE www_archline_hu.eng_sh404sef_urls SET rank = 1 WHERE id = 86094";
crm_database::getInstance()->query($query);
$query = "UPDATE www_archline_hu.eng_sh404sef_urls SET rank = 0 WHERE id = 79698";
crm_database::getInstance()->query($query);
/* ANGOL WEBOLDAL END */
/*$query = "UPDATE cl_hlusers.o_products SET ackio_date = '2023-05-31' WHERE lang = 0 AND id >= 1288;";
crm_database::getInstance()->query($query);*/
}
$date = new DateTime();
$date->modify("-14 day");
$day = $date->format("Y-m-d");
$deleteFloatingLog = "DELETE FROM local_crm.floating_log WHERE substr(inserted, 1, 10) <= '{$day}'";
Database::getInstance()->query($deleteFloatingLog);
Tester::syncSwitchTable();
$time_start = microtime(true);
$error_result .= Tester::oneDay();
$timer_result .= 'One day: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sTwelveHour:
$time_start = microtime(true);
$error_result .= Tester::twelveHour();
$timer_result .= 'Twelve hour: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sSixHour:
$time_start = microtime(true);
$error_result .= Tester::sixHour();
$timer_result .= 'Six hour: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sThreeHour:
$time_start = microtime(true);
$error_result .= Tester::threeHour();
$timer_result .= 'Three hour: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sHour:
$time_start = microtime(true);
$error_result .= Tester::oneHour();
$timer_result .= 'One hour: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sFifteenMin:
$time_start = microtime(true);
$error_result .= Tester::fifteenMinutes();
$timer_result .= 'Fifteen minutes: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sFiveMin:
$time_start = microtime(true);
$error_result .= Tester::fiveMinutes();
$timer_result .= 'Five minutes: ' . Tester::calculateElapsedTime($time_start) . '\n';
case Time::sMin:
$time_start = microtime(true);
$error_result .= Tester::oneMinute();
$timer_result .= 'One minute: ' . Tester::calculateElapsedTime($time_start) . '\n';
break;
default:
break;
}
if ($error_result != '') {
$message = str_replace('\n', '<br/>', $error_result);
$message .= str_replace('\n', '<br/>', $timer_result);
$headers = 'MIME-Version: 1.0' . "\r\n";
$headers .= 'Content-type: text/html; charset=iso-8859-1' . "\r\n";
$headers .= 'Cc: bodnart@cadline.hu';
mail("mate.nagy@cadline.hu", "Auto CRM test", $message, $headers);
}
// Update-eli a cron_check tablat, hogy megnezzuk, lefut-e a cron. A cron_check.php file-ba pedig ellenorizzuk
Database::getInstance()->query("UPDATE cl_hlusers.cron_check SET modified = ? WHERE id = ?", array('ii', time(), 1));

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6958",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/cron_one_minute.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/cron_one_minute.php)",
"original_sha256": "9838569e743bd0d937dba4421ff9b276f46d348723992076f9d24b622b85945b",
"original_stat": {
"gid": 30037,
"mtime": 1784305966,
"size": 20001,
"uid": 12425
},
"rel_path": "maintenance/cron_one_minute.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

File diff suppressed because it is too large Load Diff

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7038",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/css/bootstrap.min.css -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/css/bootstrap.min.css)",
"original_sha256": "0214196123e75689fd4862de813b21ba79df1b83062cd7b1d882b75a17ac5737",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 158360,
"uid": 12425
},
"rel_path": "maintenance/css/bootstrap.min.css",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,390 +0,0 @@
/* font */
@font-face {
font-family: 'LeagueGothicRegular';
src: url('font/League_Gothic-webfont.eot');
src: local('☺'), url('font/League_Gothic-webfont.woff') format('woff'), url('font/League_Gothic-webfont.ttf') format('truetype'), url('font/League_Gothic-webfont.svg#webfontpm5EArBj') format('svg');
font-weight: normal;
font-style: normal;
}
/*
html5doctor.com Reset Stylesheet (Eric Meyer's Reset Reloaded + HTML5 baseline)
v1.4 2009-07-27 | Authors: Eric Meyer & Richard Clark
html5doctor.com/html-5-reset-stylesheet/
*/
html,
body,
div,
span,
object,
iframe,
h1,
h2,
h3,
h4,
h5,
h6,
p,
blockquote,
pre,
abbr,
address,
cite,
code,
del,
dfn,
em,
img,
ins,
kbd,
q,
samp,
small,
strong,
sub,
sup,
var,
b,
i,
dl,
dt,
dd,
ol,
ul,
li,
fieldset,
form,
label,
legend,
table,
caption,
tbody,
tfoot,
thead,
tr,
th,
td,
article,
aside,
canvas,
details,
figcaption,
figure,
footer,
header,
hgroup,
menu,
nav,
section,
summary,
time,
mark,
audio,
video {
margin: 0;
padding: 0;
border: 0;
outline: 0;
font-size: 100%;
vertical-align: baseline;
background: transparent;
}
article,
aside,
details,
figcaption,
figure,
footer,
header,
hgroup,
menu,
nav,
section {
display: block;
}
nav ul {
list-style: none;
}
blockquote,
q {
quotes: none;
}
blockquote:before,
blockquote:after,
q:before,
q:after {
content: '';
content: none;
}
a {
margin: 0;
padding: 0;
font-size: 100%;
outline: 0;
vertical-align: baseline;
background: transparent;
}
ins {
background-color: #ff9;
color: #000;
text-decoration: none;
}
mark {
background-color: #ff9;
color: #000;
font-style: italic;
font-weight: bold;
}
del {
text-decoration: line-through;
}
abbr[title],
dfn[title] {
border-bottom: 1px dotted;
cursor: help;
}
/* tables still need cellspacing="0" in the markup */
table {
border-collapse: collapse;
border-spacing: 0;
}
hr {
display: block;
height: 1px;
border: 0;
border-top: 1px solid #ccc;
margin: 1em 0;
padding: 0;
}
input,
select {
vertical-align: middle;
}
/* END RESET CSS */
/* Site styling */
html {
/* always force a scrollbar in non-IE */
overflow-y: scroll;
background-image: url('../images/main-red-bg.gif');
background-color: #461714;
}
body {
margin: 0 auto;
padding: 0px 70px 10px;
font-family: arial;
font-size: 1em;
width: 820px;
}
h1 {
margin: 0px 0px 0px 20px;
padding: 20px 0px 0px 0px;
color: #a81213;
font-family: 'LeagueGothicRegular', arial, san-serif;
font-size: 4.5em;
font-weight: normal;
text-align: center;
text-transform: uppercase;
text-shadow: 1px 1px 2px #000000;
filter: dropshadow(color=#000000, offx=1, offy=1);
}
h2,
h3 {
padding-top: 10px;
font-family: 'LeagueGothicRegular', arial, san-serif;
font-size: 2.25em;
font-weight: normal;
color: #a81213;
text-shadow: 1px 1px 2px #000000;
filter: dropshadow(color=#000000, offx=1, offy=1);
}
#content a {
color: #a81213;
text-shadow: 1px 1px 2px #000000;
filter: dropshadow(color=#000000, offx=1, offy=1);
}
#content a:hover {
text-decoration: none;
}
#release-history {
font-size: 0.7em;
overflow: hidden;
}
#release-history p strong {
margin-right: 5px;
font-family: 'LeagueGothicRegular', arial, san-serif;
font-size: 1.6em;
font-weight: normal;
display: block;
float: left;
}
p {
margin-top: 10px;
color: #f8f0db;
line-height: 1.5em;
}
p.copy {
margin: 0px 0px 10px;
text-align: center;
}
pre {
margin: 20px 0px 0px;
padding: 22px 40px;
background-color: #f8f0db;
-webkit-border-radius: 15px;
-moz-border-radius: 15px;
border-radius: 15px;
white-space: pre-wrap;
/* css-3 */
white-space: -moz-pre-wrap;
/* Mozilla, since 1999 */
white-space: -pre-wrap;
/* Opera 4-6 */
white-space: -o-pre-wrap;
/* Opera 7 */
word-wrap: break-word;
/* Internet Explorer 5.5+ */
}
pre code span.red {
color: #a81213;
}
pre code span.grey {
color: #7b7976;
}
dl {
/*margin: 10px 10px 10px 20px;*/
color: #f8f0db;
}
dt {
margin-top: 10px;
font-weight: bold;
}
dd {
margin: 5px 0px 10px 20px;
}
div#content {
/*padding: 10px 5px 0px 0px;*/
}
.content-box {
/*padding: 0px 0px 30px;*/
}
.divider-top {
padding-top: 20px;
border-top: 1px solid #70342d;
}
.divider-bottom {
padding-bottom: 30px;
border-bottom: 1px solid #1e0a09;
}
#download {
margin: 20px 0px 30px 300px;
padding: 2px;
background-color: #f8f0db;
-webkit-border-radius: 15px;
-moz-border-radius: 15px;
border-radius: 15px;
display: block;
width: 216px;
height: 96px;
-webkit-box-shadow: 5px 5px 15px black;
-moz-box-shadow: 5px 5px 15px black;
box-shadow: 5px 5px 15px black;
}
#download a {
font-family: 'LeagueGothicRegular', arial, san-serif;
font-size: 1.875em;
background-color: #a81213;
-webkit-border-radius: 15px;
-moz-border-radius: 15px;
border-radius: 15px;
display: block;
width: 100%;
height: 100%;
color: #f8f0db;
text-decoration: none;
text-transform: uppercase;
}
#download a:hover {
background-color: #000000;
}
#download a img {
margin: 0px 20px 0px 20px;
float: left;
}
#download a span.dl {
margin-top: 19px;
float: left;
display: block;
}
#download a span.sub {
display: block;
float: left;
font-size: 0.7em;
color: #e0ac9e;
}
#github img {
position: absolute;
top: 0;
right: 0;
border: 0;
}
#paypal {
margin: 20px 0px 0px 0px;
padding: 22px 40px 22px 330px;
/*width: 100%;*/
background-color: #f8f0db;
-webkit-border-radius: 15px;
-moz-border-radius: 15px;
border-radius: 15px;
}
::-moz-selection {
background-color: #a81213;
color: #f8f0db;
}
::selection {
background-color: #a81213;
color: #f8f0db;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7037",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/css/style.css -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/css/style.css)",
"original_sha256": "7dcd46c3fa3a7bbb3b5f48a37a7bc20e37c5ce8f86ad2cdc9f8d75dbde6a5b97",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 5942,
"uid": 12425
},
"rel_path": "maintenance/css/style.css",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,274 +0,0 @@
/* Ticker Styling */
.ticker-wrapper.has-js {
margin: 20px 0px 20px 0px;
padding: 0px 0px;
width: 100%;
height: 32px;
display: block;
background-color: #ffffff;
}
.ticker {
width: 100%;
display: block;
position: relative;
overflow: hidden;
background-color: #ffffff;
}
.ticker-title {
color: #990000;
font-weight: bold;
background-color: #ffffff;
text-transform: uppercase;
}
.ticker-content {
margin: 0px;
position: absolute;
color: #1F527B;
font-weight: bold;
background-color: #ffffff;
overflow: hidden;
white-space: nowrap;
line-height: 1.2em;
}
.ticker-content:focus {
none;
}
.ticker-content a {
text-decoration: none;
color: #1F527B;
}
.ticker-content a:hover {
text-decoration: underline;
color: #0D3059;
}
.ticker-swipe {
position: absolute;
top: 0px;
background-color: #ffffff;
display: block;
width: 800px;
height: 23px;
}
.ticker-swipe span {
margin-left: 1px;
background-color: #ffffff;
border-bottom: 0px solid #1F527B;
height: 12px;
width: 7px;
display: block;
}
.ticker-controls {
padding: 8px 0px 0px 0px;
list-style-type: none;
float: left;
}
.ticker-controls li {
padding: 0px;
margin-left: 5px;
float: left;
cursor: pointer;
height: 16px;
width: 16px;
display: block;
}
.ticker-controls li.jnt-play-pause {
background-image: url('../images/controls.png');
background-position: 32px 16px;
}
.ticker-controls li.jnt-play-pause.over {
background-position: 32px 32px;
}
.ticker-controls li.jnt-play-pause.down {
background-position: 32px 0px;
}
.ticker-controls li.jnt-play-pause.paused {
background-image: url('../images/controls.png');
background-position: 48px 16px;
}
.ticker-controls li.jnt-play-pause.paused.over {
background-position: 48px 32px;
}
.ticker-controls li.jnt-play-pause.paused.down {
background-position: 48px 0px;
}
.ticker-controls li.jnt-prev {
background-image: url('../images/controls.png');
background-position: 0px 16px;
}
.ticker-controls li.jnt-prev.over {
background-position: 0px 32px;
}
.ticker-controls li.jnt-prev.down {
background-position: 0px 0px;
}
.ticker-controls li.jnt-next {
background-image: url('../images/controls.png');
background-position: 16px 16px;
}
.ticker-controls li.jnt-next.over {
background-position: 16px 32px;
}
.ticker-controls li.jnt-next.down {
background-position: 16px 0px;
}
.js-hidden {
display: none;
}
.no-js-news {
padding: 10px 0px 0px 45px;
color: #ffffff;
}
.left .ticker-swipe {
/*left: 80px;*/
}
.left .ticker-controls,
.left .ticker-content,
.left .ticker-title,
.left .ticker {
float: left;
}
.left .ticker-controls {
padding-left: 6px;
}
.right .ticker-swipe {
/*right: 80px;*/
}
.right .ticker-controls,
.right .ticker-content,
.right .ticker-title,
.right .ticker {
float: right;
}
.right .ticker-controls {
padding-right: 6px;
}
@media (max-width: 1024px) {
/* 0.9 */
.ticker {
height: 44px;
}
.ticker-wrapper.has-js {
font-size: 11px;
line-height: 22px;
height: 44px;
}
.ticker-title,
.ticker-content,
.ticker-swipe {
padding-top: 12px;
}
}
@media (min-width: 1025px) and (max-width: 1280px) {
/* 1.0 */
.ticker {
height: 48px;
}
.ticker-wrapper.has-js {
font-size: 12px;
line-height: 24px;
height: 48px;
}
.ticker-title,
.ticker-content,
.ticker-swipe {
padding-top: 12px;
}
}
@media (min-width: 1281px) and (max-width: 1920px) {
/* 1.2 */
.ticker {
height: 56px;
}
.ticker-wrapper.has-js {
font-size: 14px;
line-height: 28px;
height: 56px;
}
.ticker-title,
.ticker-content,
.ticker-swipe {
padding-top: 20px;
}
}
@media (min-width: 1921px) and (max-width: 2560px) {
/* 1.4 */
.ticker {
height: 72px;
}
.ticker-wrapper.has-js {
font-size: 18px;
line-height: 36px;
height: 72px;
}
.ticker-title,
.ticker-content,
.ticker-swipe {
padding-top: 16px;
}
}
@media (min-width: 2561px) {
/* 1.8 */
.ticker {
height: 104px;
}
.ticker-wrapper.has-js {
font-size: 26px;
line-height: 52px;
height: 104px;
}
.ticker-title,
.ticker-content,
.ticker-swipe {
padding-top: 26px;
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7039",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/css/ticker-style.css -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/css/ticker-style.css)",
"original_sha256": "f452ae045b45dad107d84d6c70d4e4a3e3522c17d6913b8084fd6eaafcd4aad1",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 4356,
"uid": 12425
},
"rel_path": "maintenance/css/ticker-style.css",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,128 +0,0 @@
<?php
include("config.php");
include("version.php");
include("email.php");
require_once("../configuration.php");
exit(); //ba TODO
// minden hajnal 01:30-kor - trial letöltőknek automatikus e-mail 20 nappal a letöltés után
$version = new Version();
$kiirni = "";
$log = "\n" . date('Y-m-d H:i', time()) . ":";
$elteltnap = 20;
$maxtime = time() - ($elteltnap * 24 * 60 * 60);
$mintime = time() - (($elteltnap + 1) * 24 * 60 * 60);
// azok a magyar letöltők akik nem kaptak még e-mailt
$sql = "SELECT stat_id, stat_email, stat_first, stat_country FROM download_stats ";
$sql .= " WHERE stat_pron='' AND stat_date>{$mintime} AND stat_date<{$maxtime} ";
$sql .= " AND stat_lang='hun' ";
$sql .= " GROUP BY stat_email";
$msh2->query($sql);
$letoltokhun = $msh2->fetchAssoc();
$sql = "SELECT introtext FROM jml_content WHERE id = '944'";
$msh2->query($sql);
$page = $msh2->fetchNext();
$p = (object)$page;
$pagehun = $p->introtext;
$conf = new JConfig();
foreach ($letoltokhun as $letolto) {
$l = (object)$letolto;
// felhasználónak ne küldjön levelet (van-e aktiv kulcsa)
$nUserID = $version->get_nUserIDByEmail($l->stat_email, 'hun');
if (is_numeric($nUserID) && $nUserID > 0) {
$kulcssql = "SELECT hlNum FROM " . CRMADATBAZIS . ".hardlock WHERE hlUser='{$nUserID}' AND hlStat=1";
$msh2->query($kulcssql);
$kulcs = $msh2->fetchNext();
$k = (object)$kulcs;
if (isset($k->hlNum) && $k->hlNum != "") {
$kiirni .= "\n\nnincs elkuldve: " . print_r($l, true);
$log .= "\nHUN nincs elkuldve (felhasznalo): " . $l->stat_email . " " . $l->stat_first . " " . $l->stat_id . " (hun)";
continue;
}
}
$leveltext = str_ireplace('#nev#', $l->stat_first, $pagehun);
$email = new CI_Email();
$email->initialize();
$email->setFrom($conf->mailfrom, 'CadLine');
$email->subject('ARCHLine.XP letoltes');
$email->message($leveltext);
$email->send($l->stat_email, 'smtp');
$email->clear();
$ujletolto['stat_pron'] = "1";
$msh2->update('download_stats', $ujletolto, "stat_id=" . $l->stat_id);
$kiirni .= "\n\nelkuldve: " . print_r($l, true);
$log .= "\nHUN elkuldve: " . $l->stat_email . " " . $l->stat_first . " " . $l->stat_id . " (hun)";
}
/***********************************************************************************/
// azok a NEM magyar letöltők akik nem kaptak még e-mailt
$sql = "SELECT stat_id, stat_email, stat_first, stat_country FROM download_stats ";
$sql .= " WHERE stat_pron='' AND stat_date>{$mintime} AND stat_date<{$maxtime} ";
$sql .= " AND stat_lang!='hun' ";
$sql .= " GROUP BY stat_email";
$msh2->query($sql);
$letoltokeng = $msh2->fetchAssoc();
$sql = "SELECT introtext FROM jml_content WHERE id = '945'";
$msh2->query($sql);
$page = $msh2->fetchNext();
$p = (object)$page;
$pageeng = $p->introtext;
foreach ($letoltokeng as $letolto) {
$l = (object)$letolto;
// felhasználónak ne küldjön levelet (van-e aktiv kulcsa)
$nUserID = $version->get_nUserIDByEmail($l->stat_email, 'eng');
if (is_numeric($nUserID) && $nUserID > 0) {
$kulcssql = "SELECT hlNum FROM " . CRMADATBAZIS . ".hardlock WHERE hlUser='{$nUserID}' AND hlStat=1";
$msh2->query($kulcssql);
$kulcs = $msh2->fetchNext();
$k = (object)$kulcs;
if (isset($k->hlNum) && $k->hlNum != "") {
$kiirni .= "\n\nnincs elkuldve: " . print_r($l, true) . "nUserID: " . $nUserID . ", hlnum: " . $k->hlNum;
$log .= "\nENG nincs elkuldve (felhasznalo): " . $l->stat_email . " " . $l->stat_first . " " . $l->stat_id . " (eng), hlNum: " . $kulcs->hlNum . " , user: " . $nUserID;
continue;
}
}
$leveltext = str_ireplace('#nev#', $l->stat_first, $pageeng);
$email = new CI_Email();
$email->initialize();
$email->setFrom('info@archlinexp.com', 'ARCHLine');
$email->subject('ARCHLine.XP download');
$email->message($leveltext);
$email->send($l->stat_email, 'smtp');
$email->clear();
$ujletolto['stat_pron'] = "1";
$msh2->update('download_stats', $ujletolto, "stat_id=" . $l->stat_id);
$kiirni .= "\n\nENG elkuldve: " . print_r($l, true);
$log .= "\nENG elkuldve: " . $l->stat_email . " " . $l->stat_first . " " . $l->stat_id . " (eng)";
print "<hr>elkuldve: ";
print_r($l);
}
$record['osztaly'] = "cron";
$record['fv'] = "downloademail";
$record['hiba'] = $kiirni;
$record['datum'] = date('Y-m-d H:i', time());
$msh2->insert('a_hibak', $record);
exec("echo '{$log}' >> ../public/download_email.txt");

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6986",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/downloademail.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/downloademail.php)",
"original_sha256": "e6434ca282e9e4579ba6927c262752e66962cebe5edda52766bb486c3b499abc",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 4513,
"uid": 12425
},
"rel_path": "maintenance/downloademail.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,26 +0,0 @@
<?php
// minden órában - excel feltöltések mennek-e
include("email.php");
require_once("../configuration.php");
$utolsofajl = filemtime("../fizetesek");
print "utolso: " . date("Y-m-d H:i:s", $utolsofajl);
$log = "\n" . date("Y-m-d H:i:s") . "\n\t";
if (time() - (60 * 60) > $utolsofajl) {
// már egy órája nincs feltöltés
$conf = new JConfig();
$email = new CI_Email();
$email->initialize();
$email->setFrom($conf->mailfrom, 'CadLine');
$email->subject('Hiba - Excel fizetesek feltoltes');
$email->message("Már több mint egy órája nincs feltöltés. Utolsó feltöltés időpontja: " . date("Y-m-d H:i:s", $utolsofajl));
$email->send('bodnart@cadline.hu', 'smtp');
$log .= "hiba volt, utolso: " . date("Y-m-d H:i:s", $utolsofajl);
} else {
$log .= "rendben.";
}
exec("echo '{$log}' >> ../public/log_fizetesek_excel.txt");

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6973",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/elofizexcelcheck.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/elofizexcelcheck.php)",
"original_sha256": "2d04b624c559dd91a7bd81dd7dc0b1a7ac9748759ea7761bb83e1a75d5279a20",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 883,
"uid": 12425
},
"rel_path": "maintenance/elofizexcelcheck.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,7 +0,0 @@
<?php
include("config.php");
$sql = "TRUNCATE TABLE " . CRMADATBAZIS . ".t_excelfizetes";
$sql2 = "TRUNCATE TABLE " . CRMADATBAZIS . ".temp_excelfizetes";
$msh->query($sql);
$msh->query($sql2);

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6968",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/elofizurites.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/elofizurites.php)",
"original_sha256": "37dee33d9f6c68a7409322b379269f6ff614d6be8f5769a0814cb5d06085a68a",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 205,
"uid": 12425
},
"rel_path": "maintenance/elofizurites.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,95 +0,0 @@
<?php //if ( ! defined('BASEPATH')) exit('No direct script access allowed');
require_once('libraries/mmail/htmlMimeMail.php');
include("../configuration.php");
class CI_Email extends htmlMimeMail5
{
function __construct()
{
parent::__construct();
//$this->CI = &get_instance();
}
function initialize($settings = false)
{
if (!$settings) {
//$settings = $this->CI->config->item('email');
$conf = new JConfig();
$settings['host'] = $conf->smtphost;
$settings['port'] = $conf->smtpport;
$settings['helo'] = null;
$settings['auth'] = $conf->smtpauth;
$settings['user'] = $conf->smtpuser;
$settings['pass'] = $conf->smtppass;
/*$settings['host'] = 'localhost';
$settings['port'] = 25;
$settings['helo'] = null;
$settings['auth'] = true;
$settings['user'] = 'www.smtp@cadline.hu';
$settings['pass'] = 'Chieng0t';*/
}
$this->setSMTPParams($settings['host'], $settings['port'], $settings['helo'], $settings['auth'], $settings['user'], $settings['pass']);
$this->setHTMLCharset('UTF-8');
$this->setHeadCharset('UTF-8');
$this->setHTMLEncoding(new EightBitEncoding());
}
function addOfficialImages()
{
$this->addEmbeddedImage(new fileEmbeddedImage('../public/img/mail/title.jpg'));
$this->addEmbeddedImage(new fileEmbeddedImage('../public/img/mail/footer.jpg'));
}
function addImage($path)
{
$this->addEmbeddedImage(new fileEmbeddedImage('../public/img/' . $path));
}
function clear()
{
$this->is_built = false;
$this->setHTML(null);
$this->setFrom(null);
}
function message($html)
{
$tomb['<27>'] = '&aacute;';
$tomb['<27>'] = '&Aacute;';
$tomb['<27>'] = '&eacute;';
$tomb['<27>'] = '&Eacute;';
$tomb['<27>'] = '&oacute;';
$tomb['<27>'] = '&Oacute;';
$tomb['<27>'] = '&ouml;';
$tomb['<27>'] = '&Ouml;';
$tomb['<27>'] = '&#337;';
$tomb['<27>'] = '&#336;';
$tomb['<27>'] = '&uacute;';
$tomb['<27>'] = '&Uacute;';
$tomb['<27>'] = '&uuml;';
$tomb['<27>'] = '&Uuml;';
$tomb['<27>'] = '&#369;';
$tomb['<27>'] = '&#368;';
$tomb['<27>'] = '&iacute;';
$tomb['<27>'] = '&Iacute;';
$string = $html;
foreach ($tomb as $k => $v) {
$string = str_replace($k, $v, $string);
}
$this->setHTML($string);
}
function from($from)
{
$this->setFrom($from);
}
function subject($subj)
{
$this->setSubject($subj);
}
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6942",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/email.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/email.php)",
"original_sha256": "e6f1c227a7281173ea84fcaa4d171d8c821842d4b0acac8d7674fd02cf40b38f",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 2417,
"uid": 12425
},
"rel_path": "maintenance/email.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,80 +0,0 @@
<?php
include("config.php");
require_once('libraries/phpmailer/PHPMailerAutoload.php');
//Fájl futtatásakor megadott paraméterek
$email = $_GET["email"];
$comment = $_GET["comment"];
$needscr = $_GET["needscr"];
$needsysdata = $_GET["needsysdata"];
$build = $_GET["build"];
$year = $_GET["year"];
$lang = $_GET["lang"];
$serial = $_GET["serial"];
$fileUpload = $_GET["fileUpload"];
$guid = $_GET["guid"];
$failed = $_GET["successUpload"];
$fileName = $_GET["fileName"];
$proto = isset($_GET['proto']) ? $_GET['proto'] : 'ftp';
$wasUpload = false;
if ($needscr == 1 or $needsysdata == 1) {
$contributionmsg = "A felhasználó a következő adatok feltöltéséhez járult hozzá:<ul>";
if ($needscr == 1)
$contributionmsg = $contributionmsg . "<li>A képernyőjéről készült kép</li>";
if ($needsysdata == 1)
$contributionmsg = $contributionmsg . "<li>Az általa használt rendszer leírása</li>";
$contributionmsg = $contributionmsg . "</ul>";
$wasUpload = true;
} else
$contributionmsg = "Képernyőkép és rendszeradatok küldéséhez nem járult hozzá!";
if ($fileUpload == 1) {
if ($needscr == 1 or $needsysdata == 1)
$fileUploadmsg = "Továbbá fájl feltöltést is kezdeményezett, melynek eredeti neve: " . $fileName . "<br>";
else
$fileUploadmsg = "A felhasználó fájl feltöltést kezdeményezett, melynek eredeti neve: " . $fileName . "<br>";
$contributionmsg = $contributionmsg . $fileUploadmsg;
$wasUpload = true;
}
if ($wasUpload) {
if ($proto == 'ftp')
$destination = "<br>A feltöltött fájl(ok) elérése:<br>A 'vendeg' felhasználó adataival való bejelentkezés után a tanis2.cadline.hu/uploadedProjects/" . $guid . " címen.<br>";
else
$destination = "<br>A feltöltött fájl(ok) elérése:<br>A 'webdavuser' felhasználó adataival való bejelentkezés után a https://webdav.cadline.hu/uploadedProjects/" . $guid . " címen.<br>";
if ($failed == 0)
$failOwnMsg = "<br><b>FIGYELMEZTETÉS:</b> A feltöltést a felhasználó megszakította, mielőtt az teljesen végbe ment volna! A fájlok egy része nem teljes!<br>";
else
$failOwnMsg = "";
} else {
$destination = "<br>";
$failOwnMsg = "";
}
$message = "Kedves Kollégák!<br><br>A mai napon az ARCHLine.XP " . $year . " programból az alábbi felhasználó hibajelentést küldött.<br>A felhasználó email címe: " . $email . "<br>Build: " . $build . "<br>Nyelv: " . $lang . "<br>Serial: " . $serial . "<br><br>" . $contributionmsg . $destination . $failOwnMsg . "<br>A felhasználó által megadott megjegyzés:<br><br><b>" . $comment . '</b>';
$mail = new PHPMailer;
$mail->isSMTP();
$mail->SMTPAuth = true;
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->SMTPSecure = $mailconfig['SMTPSecure'];
$mail->Port = $mailconfig['Port'];
$mail->isHTML(TRUE);
$mail->setFrom(DEFAULT_EMAIL);
$mail->addAddress('support@cadline.hu');
$mail->Subject = 'Projekt feltölés - ARCHLine.XP';
$mail->msgHTML($message);
$mail->AltBody = strip_tags($message);
$mail->send();
unset($mail);
if ($lang == "hun")
print "Köszönjük a visszajelzést!";
else
print "Thank you for your report!";

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6960",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/emailsending.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/emailsending.php)",
"original_sha256": "b004e1f7a9e5b863ebf598a049c0142499b5d44487e253bff963acf12f9ffb48",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 3295,
"uid": 12425
},
"rel_path": "maintenance/emailsending.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,39 +0,0 @@
<?php
//echo $_GET["key"];
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
$action = trim(strtolower($_GET['encode']));
switch ($action) {
case 'true': {
$data = crm_hardlock::encode($_GET["privateKey"], $_GET["publicKey"], "Use std::stringstream to convert integers into strings and its special");
echo $data;
break;
}
case 'false': {
//header('Content-type: text/html; charset=utf-8');
$data = crm_hardlock::decode($_GET["privateKey"], $_GET["publicKey"], $_GET["data"]);
echo $data;
//echo crmHelper::decode($_GET["privateKey"], $_GET["publicKey"], $_GET["data"]);
break;
}
}
/*
public static function encode($string,$key) {
$key = sha1($key);
$strLen = strlen($string);
$keyLen = strlen($key);
for ($i = 0; $i < $strLen; $i++) {
$ordStr = ord(substr($string,$i,1));
if ($j == $keyLen) { $j = 0; }
$ordKey = ord(substr($key,$j,1));
$j++;
$hash .= strrev(base_convert(dechex($ordStr + $ordKey),16,36));
}
return $hash;
}
*/

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6943",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/encodetest.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/encodetest.php)",
"original_sha256": "5589e1ee2491b18c512c944273af6fb19cb695ac5a97359ad51f7651a23f7374",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 1319,
"uid": 12425
},
"rel_path": "maintenance/encodetest.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,18 +0,0 @@
<?php
if (!class_exists('crm_users')) require_once("common_cadline_libraries/crm_users.class.php");
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
$encoded = $_GET['id'];
$decoded = base64_decode($encoded);
$email = crm_hardlock::get_valueFromStringUrl($decoded, 'email');
$alias = crm_hardlock::get_valueFromStringUrl($decoded, 'alias');
$query = "SELECT * FROM " . JMLADATBAZIS . ".followed_links WHERE alias = ? LIMIT 1";
Database::getInstance()->query($query, array('s', $alias));
$res = Database::getInstance()->fetchNext();
crm_users::levelesemeny($email, "events", "newclick", $res['esem_id'], $res['esem_cont'], $res['name']);
header('Location: ' . $res['redirect']);
exit();

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6992",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/followedlinks.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/followedlinks.php)",
"original_sha256": "8a8ef862650901a66814ee3b7e36150a5cb1544387626bef47e5251ee6743acc",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 760,
"uid": 12425
},
"rel_path": "maintenance/followedlinks.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,87 +0,0 @@
<?php
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
if (!class_exists('crm_users')) require_once("common_cadline_libraries/crm_users.class.php");
function setUserStatus($nUserID = 0, $newStatus = 0) // Megszuntetni
{
crm_users::SetUserStatus($nUserID, $newStatus);
}
function addUser($tomb = array()) // Megszuntetni
{
crm_users::AddUser($tomb, 1);
}
function addUserHistory($tomb = array(), $newsletter = 1) // Megszuntetni
{
return crm_users::AddUserHistory($tomb, $newsletter);
}
function updateUserHistory($tomb = array(), $nEventID = 0) // Megszuntetni
{
return crm_users::UpdateUserHistory($tomb, $nEventID);
}
function getValidLease($nUserID = 0, $level = 0) // Megszuntetni
{
return crm_users::GetValidLease($nUserID, $level);
}
function tryToAlloc($min = 0, $max = 0) // Megszuntetni
{
return crm_hardlock::GetTheFirstNotUsedHlNumFromInterval($min, $max);
}
function generatePassword($hlNum, $lan, $type, $version = 64) // Megszuntetni
{
$lan = crm_hardlock::GetLanSignFromLanUserNumber($lan);
return Codegen::GeneratePassword($hlNum, $lan, $type, $version);
}
function generateTimeCode($pass, $isid, $numOfDays) // Megszuntetni
{
return Codegen::GenerateTimeCode($pass, $isid, $numOfDays);
}
function generateTimeCodeForSoftwareKey($pass, $isid, $numOfDays) // Nincs sehol se hasznalva
{
$ret = generateTimeCode($pass, $isid, $numOfDays);
return ($ret);
}
function generateTimeCodeForHardwareKey($pass, $numOfDays) // Nincs sehol se hasznalva
{
$isid = substr($pass, 0, 2) . substr($pass, 7, 2);
$ret = generateTimeCode($pass, $isid, $numOfDays);
return ($ret);
}
function conv($str) // Nincs sehol se hasznalva
{
$ret = str_replace(
array('u00e1', 'u00c1', 'u00e9', 'u00c9', 'u00ed', 'u00cd', 'u00f3', 'u00d3', 'u00f6', 'u00d6', 'u0151', 'u0150', 'u00fa', 'u00da', 'u00fc', 'u00dc', 'u0171', 'u0170', '\\', '"'),
array('á', 'Á', 'é', 'É', 'í', 'Í', 'ó', 'Ó', 'ö', 'Ö', 'ő', 'Ő', 'ú', 'Ú', 'ü', 'Ü', 'ű', 'Ű', '', '',),
$str
);
$ret = trim(iconv('latin2', 'utf-8', $ret));
return ($ret);
}
function reconv($str) // Nincs sehol se hasznalva
{
$ret = str_replace(
array('u00e1', 'u00c1', 'u00e9', 'u00c9', 'u00ed', 'u00cd', 'u00f3', 'u00d3', 'u00f6', 'u00d6', 'u0151', 'u0150', 'u00fa', 'u00da', 'u00fc', 'u00dc', 'u0171', 'u0170', '\\', '"'),
array('á', 'Á', 'é', 'É', 'í', 'Í', 'ó', 'Ó', 'ö', 'Ö', 'ő', 'Ő', 'ú', 'Ú', 'ü', 'Ü', 'ű', 'Ű', '', '',),
$str
);
return ($ret);
}
function AddOrUpdateComputer($npID) // Megszuntetni
{
crm_hardlock::AddOrUpdateComputer($npID);
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7023",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/functions.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/functions.php)",
"original_sha256": "e09ab6becab0a55e1b3ed740e292e75cd062ba778505b06b92d8820e83def554",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 2743,
"uid": 12425
},
"rel_path": "maintenance/functions.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,20 +0,0 @@
<?php
if (!class_exists('Constants')) require_once("common_cadline_libraries/constants.php");
function is_bot($user_agent)
{
$botRegexPattern = "(googlebot\/|Googlebot\-Mobile|Googlebot\-Image|Google favicon|Mediapartners\-Google|bingbot|slurp|java|wget|curl|Commons\-HttpClient|Python\-urllib|libwww|httpunit|nutch|phpcrawl|msnbot|jyxobot|FAST\-WebCrawler|FAST Enterprise Crawler|biglotron|teoma|convera|seekbot|gigablast|exabot|ngbot|ia_archiver|GingerCrawler|webmon |httrack|webcrawler|grub\.org|UsineNouvelleCrawler|antibot|netresearchserver|speedy|fluffy|bibnum\.bnf|findlink|msrbot|panscient|yacybot|AISearchBot|IOI|ips\-agent|tagoobot|MJ12bot|dotbot|woriobot|yanga|buzzbot|mlbot|yandexbot|purebot|Linguee Bot|Voyager|CyberPatrol|voilabot|baiduspider|citeseerxbot|spbot|twengabot|postrank|turnitinbot|scribdbot|page2rss|sitebot|linkdex|Adidxbot|blekkobot|ezooms|dotbot|Mail\.RU_Bot|discobot|heritrix|findthatfile|europarchive\.org|NerdByNature\.Bot|sistrix crawler|ahrefsbot|Aboundex|domaincrawler|wbsearchbot|summify|ccbot|edisterbot|seznambot|ec2linkfinder|gslfbot|aihitbot|intelium_bot|facebookexternalhit|yeti|RetrevoPageAnalyzer|lb\-spider|sogou|lssbot|careerbot|wotbox|wocbot|ichiro|DuckDuckBot|lssrocketcrawler|drupact|webcompanycrawler|acoonbot|openindexspider|gnam gnam spider|web\-archive\-net\.com\.bot|backlinkcrawler|coccoc|integromedb|content crawler spider|toplistbot|seokicks\-robot|it2media\-domain\-crawler|ip\-web\-crawler\.com|siteexplorer\.info|elisabot|proximic|changedetection|blexbot|arabot|WeSEE:Search|niki\-bot|CrystalSemanticsBot|rogerbot|360Spider|psbot|InterfaxScanBot|Lipperhey SEO Service|CC Metadata Scaper|g00g1e\.net|GrapeshotCrawler|urlappendbot|brainobot|fr\-crawler|binlar|SimpleCrawler|Livelapbot|Twitterbot|cXensebot|smtbot|bnf\.fr_bot|A6\-Indexer|ADmantX|Facebot|Twitterbot|OrangeBot|memorybot|AdvBot|MegaIndex|SemanticScholarBot|ltx71|nerdybot|xovibot|BUbiNG|Qwantify|archive\.org_bot|Applebot|TweetmemeBot|crawler4j|findxbot|SemrushBot|yoozBot|lipperhey|y!j\-asr|Domain Re\-Animator Bot|AddThis)";
return preg_match("/{$botRegexPattern}/", $user_agent);
}
if (!is_bot($_SERVER['HTTP_USER_AGENT']) && !empty($_SERVER['REMOTE_ADDR'])) {
$apiKey = Constants::IPLOCATE_API_KEY;
$url = 'https://iplocate.io/api/lookup/' . $_SERVER['REMOTE_ADDR'] . '?apikey=' . $apiKey;
$response = file_get_contents($url);
$data = json_decode($response);
$answer = $data->latitude;
$answer .= ',';
$answer .= $data->longitude;
print $answer;
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6987",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/geopluginlink.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/geopluginlink.php)",
"original_sha256": "85202e87251c0aed6245ce04f52b49eabadc83cbac919eeabe0c43eb2c6aec56",
"original_stat": {
"gid": 30037,
"mtime": 1764231308,
"size": 2505,
"uid": 12425
},
"rel_path": "maintenance/geopluginlink.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,69 +0,0 @@
<?php
require_once('config.php');
require_once('libraries/phpmailer/PHPMailerAutoload.php');
require_once("common_cadline_libraries/crm_database.class.php");
$date = new DateTime();
$date->modify('+1 month');
$nextMonth = $date->format('Y-m');
$query = "SELECT p.prPass AS prPass, p.prHlNum AS prHlNum, p.prFizetve AS prFizetve, h.hlUser AS nUserID
FROM cl_hlusers.h_programs p
LEFT JOIN cl_hlusers.hardlock h ON h.hlNum = p.prHlNum
WHERE p.prStat = 0 AND p.prOrdNum LIKE 'E-%' AND p.prFizetve LIKE '{$nextMonth}-%' AND p.prContact = 1 AND p.prStat = 0";
Database::getInstance()->query($query);
$res = Database::getInstance()->fetchAssoc();
if (!empty($res)) {
$i = 1;
$message = '<html><head></head><body style="font-family: Raleway, sans-serif; padding: 20px; line-height: 25px; font-size: 12pt;">';
foreach ($res as $value) {
$query2 = "SELECT distributors.name AS partnerName, partnerek.email AS partnerEmail, o_orders.user_name AS userName, o_orders.user_email AS userEmail,
o_orders.country AS country
FROM cl_hlusers.o_orders
LEFT JOIN cl_hlusers.distributors ON distributors.ctrID = o_orders.country
LEFT JOIN szamla_agent.partnerek ON partnerek.ország = o_orders.country
WHERE output_key = '" . $value['prPass'] . "'";
Database::getInstance()->query($query2);
$res2 = Database::getInstance()->fetchNext();
$message .= '<b>' . $i . '. ' . $res2['partnerName'] . ' (' . $res2['partnerEmail'] . ')' . ':</b> <br><br>';
$message .= '<hr style="max-width: 500px; margin-left:0;">';
$message .= '<div style="margin-left: 25px;">';
if (is_numeric($value['nUserID']))
$message .= '<b>User Name:</b> <a href="https://crm.cadline.hu/en/users/show/' . $value['nUserID'] . '">' . $res2['userName'] . '</a><br>';
else
$message .= '<b>User Name:</b> ' . $res2['userName'] . '<br>';
$message .= '<b>User Email:</b> ' . $res2['userEmail'] . '<br>';
$message .= '<b>Serial Number:</b> <a href="https://crm.cadline.hu/' . $res2['country'] . '/hardlock/show/' . $value['prHlNum'] . '">' . $value['prPass'] . '</a><br>';
$message .= '<b>Program expiration date:</b> ' . $value['prFizetve'] . '<br><br>';
$message .= '</div>';
$i++;
}
$message .= '</body></html>';
$mail = new PHPMailer;
$mail->isSMTP();
$mail->SMTPAuth = true;
$mail->CharSet = 'UTF-8';
$mail->Host = $mailconfig['Host'];
$mail->Username = $mailconfig['Username'];
$mail->Password = $mailconfig['Password'];
$mail->SMTPSecure = $mailconfig['SMTPSecure'];
$mail->Port = $mailconfig['Port'];
$mail->isHTML(TRUE);
$mail->setFrom(DEFAULT_EMAIL);
$mail->addAddress('office@cadline.hu');
$mail->addCC('mate.nagy@cadline.hu');
$mail->Subject = 'Lejáró weborder előfizetések';
$mail->msgHTML($message);
$mail->AltBody = strip_tags($message);
$mail->send();
}

View File

@ -1,15 +0,0 @@
{
"finding_ref": "6955",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/get_subscriptions.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/get_subscriptions.php)",
"original_sha256": "939b458cbf348dafb99064b2b4513b3996b8d6ec713ab91132271fea7a549e94",
"original_stat": {
"gid": 30037,
"mtime": 1689589294,
"size": 3085,
"uid": 12425
},
"rel_path": "maintenance/get_subscriptions.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,50 +0,0 @@
<?php //http://www.archlinexp.com/maintenance/getdef.php?serial=3600178330000927
//if ($_SERVER['REMOTE_ADDR']!='46.139.109.235') {die('Not allowed access!');}
include("config.php");
$tomb = array();
$serial = $_GET['serial'];
$msh->query("SELECT * FROM " . CRMADATBAZIS . ".h_programs WHERE prPass='" . $serial . "' LIMIT 1;");
$prog = $msh->fetchAssoc();
if (empty($prog)) die();
$msh->query("SELECT hlUser FROM " . CRMADATBAZIS . ".hardlock WHERE hlNum='" . substr($serial, 0, 6) . "' LIMIT 1;");
$res = $msh->fetchAssoc();
if (empty($res)) die();
if ((int)$res[0]['hlUser'] > 0) {
$tomb['nUserID'] = $res[0]['hlUser'];
$msh->query("SELECT * FROM " . CRMADATBAZIS . ".u_emails WHERE nUserID='" . $tomb['nUserID'] . "';");
$res = $msh->fetchAssoc();
if (!empty($res)) {
foreach ($res as $k => $row) {
if ((int)$row['default'] == 1) {
$tomb['strEmail'] = $row['email'];
break;
}
}
if ($tomb['email'] == "") $tomb['strEmail'] = $res[0]['email'];
}
$msh->query("SELECT * FROM " . CRMADATBAZIS . ".users WHERE nUserID=" . $tomb['nUserID'] . " LIMIT 1;");
$res = $msh->fetchAssoc();
if (empty($res)) die();
$tomb['strName'] = $res[0]['strName'];
$tomb['strCompany'] = $res[0]['strCompany'];
} else {
$tomb['strName'] = $res[0]['hlUser'];
}
$strXML = '<?xml version="1.0" encoding="utf-8"' . '?' . '>
<User>
<bActive>' . ((int)$prog[0]['prStat'] == 0 ? 'TRUE' : 'FALSE') . '</bActive>
<strEmail>' . $tomb['strEmail'] . '</strEmail>
<strName>' . $tomb['strName'] . '</strName>
<strCompany>' . $tomb['strCompany'] . '</strCompany>
</User>';
print $strXML;

View File

@ -1,15 +0,0 @@
{
"finding_ref": "7034",
"log_excerpt": "[quarantine] www.archline.hu:maintenance/getdef.php -> quarantined (dest=/var/lib/web-hids/quarantine/var/www/hosting/archline.hu/www/maintenance/getdef.php)",
"original_sha256": "c8126990043ed00355f45fb99edfeb872b174d46349c08343c0c528276bc396b",
"original_stat": {
"gid": 30037,
"mtime": 1688287779,
"size": 1680,
"uid": 12425
},
"rel_path": "maintenance/getdef.php",
"result": "quarantined",
"timestamp": "20260718T160241Z",
"vhost": "www.archline.hu"
}

View File

@ -1,33 +0,0 @@
<?php
if (!class_exists('crm_hardlock')) require_once("common_cadline_libraries/crm_hardlock.class.php");
// 6 jegyű hardlock | segment(3);
if (isset($_GET["hlnum"])) $hlnum = $_GET["hlnum"];
else $hlnum = $_GET['serial'];
$ver = $_GET['ver']; // akt: 2016 | segment(6);
$isid = $_GET['isid'];
$npid = $_GET['npid'];
$isTwTw = $_GET['twtw'];
$seatID = $_GET['seatid'];
$build = $_GET['build'];
$isTwTw = $isTwTw == 'true';
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`p_versions` WHERE verName LIKE '%" . $ver . "%' LIMIT 1;");
$tmp = crm_database::getInstance()->fetchNext();
$ver = $tmp;
crm_database::getInstance()->query("SELECT * FROM `" . CRMADATBAZIS . "`.`h_programs` WHERE prHlNum='" . $hlnum . "' AND prVerID='" . $ver['verID'] . "' LIMIT 1;");
$prog = crm_database::getInstance()->fetchNext();
if (empty($prog) == false) {
if ($isid != '' && isset($isid)) {
$softwarekey = Codegen::IsSoftwareKey($prog['prPass']);
if ($softwarekey == false) // A regisztracional a gepazonositot kuldi a program, ez hardware kulcsnal nem alkalmazhato
$isid = crm_hardlock::GetIsidFromPasswordForHardwareKeys($prog['prPass']);
crm_hardlock::RegisterProgram($prog['prPass'], $isid, "", $npid, "", $isTwTw, $seatID, $build);
}
print $prog['prPass'];
}

Some files were not shown because too many files have changed in this diff Show More