PageRenderTime 43ms CodeModel.GetById 10ms RepoModel.GetById 0ms app.codeStats 0ms

/source/include/spacecp/spacecp_pm.php

https://github.com/kuaileshike/upload
PHP | 536 lines | 456 code | 74 blank | 6 comment | 154 complexity | c5ffdbf530d5bd71c6b3bcefff96f2d3 MD5 | raw file
  1. <?php
  2. /**
  3. * [Discuz!] (C)2001-2099 Comsenz Inc.
  4. * This is NOT a freeware, use is subject to license terms
  5. *
  6. * $Id: spacecp_pm.php 31737 2012-09-26 02:53:17Z zhangjie $
  7. */
  8. if(!defined('IN_DISCUZ')) {
  9. exit('Access Denied');
  10. }
  11. $pmid = empty($_GET['pmid'])?0:floatval($_GET['pmid']);
  12. $uid = empty($_GET['uid'])?0:intval($_GET['uid']);
  13. $plid = empty($_GET['plid'])?0:intval($_GET['plid']);
  14. $opactives['pm'] = 'class="a"';
  15. if($uid) {
  16. $touid = $uid;
  17. } else {
  18. $touid = empty($_GET['touid'])?0:intval($_GET['touid']);
  19. }
  20. $daterange = empty($_GET['daterange'])?1:intval($_GET['daterange']);
  21. loaducenter();
  22. if($_GET['op'] == 'checknewpm') {
  23. header('Content-Type: text/javascript');
  24. if($_G['uid'] && !getstatus($_G['member']['newpm'], 1)) {
  25. $ucnewpm = intval(uc_pm_checknew($_G['uid']));
  26. $newpm = setstatus(1, $ucnewpm ? 1 : 0, $_G['member']['newpm']);
  27. if($_G['member']['newpm'] != $newpm) {
  28. C::t('common_member')->update($_G['uid'], array('newpm' => $newpm));
  29. }
  30. }
  31. dsetcookie('checkpm', 1, 30);
  32. exit();
  33. } elseif($_GET['op'] == 'getpmuser') {
  34. $otherpm = $json = array();
  35. $result = uc_pm_list($_G['uid'], 1, 30, 'inbox', 'privatepm');
  36. foreach($result['data'] as $key => $value) {
  37. $value['lastauthor'] = daddslashes($value['lastauthor']);
  38. $value['avatar'] = avatar($value['lastauthorid'], 'small', true);
  39. if($value['isnew']) {
  40. $json[$value['lastauthorid']] = "$value[lastauthorid]:{'uid':$value[lastauthorid], 'username':'$value[lastauthor]', 'avatar':'$value[avatar]', 'plid':$value[plid], 'isnew':$value[isnew], 'daterange':$value[daterange]}";
  41. } else {
  42. $otherpm[$value['lastauthorid']] = "$value[lastauthorid]:{'uid':$value[lastauthorid], 'username':'$value[lastauthor]', 'avatar':'$value[avatar]', 'plid':$value[plid], 'isnew':$value[isnew], 'daterange':$value[daterange]}";
  43. }
  44. }
  45. if(!empty($otherpm)) {
  46. $json = array_merge($json, $otherpm);
  47. }
  48. $jsstr = "{'userdata':{".implode(',', $json)."}}";
  49. } elseif($_GET['op'] == 'showmsg') {
  50. $msgonly = empty($_GET['msgonly']) ? 0 : intval($_GET['msgonly']);
  51. $touid = empty($_GET['touid']) ? 0: intval($_GET['touid']);
  52. $daterange = empty($_GET['daterange']) ? 1 : intval($_GET['daterange']);
  53. $result = uc_pm_view($_G['uid'], 0, $touid, $daterange, 0, 0, 0, 0);
  54. $msglist = array();
  55. $msguser = $messageappend = '';
  56. $online = 0;
  57. foreach($result as $key => $value) {
  58. if($value['authorid'] != $_G['uid']) {
  59. $msguser = $value['author'];
  60. }
  61. $daykey = dgmdate($value['dateline'], 'Y-m-d');
  62. $msglist[$daykey][$key] = $value;
  63. }
  64. if($touid && empty($msguser)) {
  65. $member = getuserbyuid($touid);
  66. $msguser = $member['username'];
  67. }
  68. if(!$msgonly) {
  69. $online = C::app()->session->fetch_by_uid($touid) !== false ? 1 : 0;
  70. if($_G['member']['newpm']) {
  71. $newpm = setstatus(1, 0, $_G['member']['newpm']);
  72. C::t('common_member')->update($_G['uid'], array('newpm' => $newpm));
  73. uc_pm_ignore($_G['uid']);
  74. }
  75. }
  76. if(!empty($_GET['tradeid'])) {
  77. $trade = C::t('forum_trade')->fetch_goods(0, $_GET['tradeid']);
  78. if($trade) {
  79. $messageappend = dhtmlspecialchars('[url='.$_G['siteurl'].'forum.php?mod=viewthread&tid='.$trade['tid'].'&do=tradeinfo&pid='.$trade['pid'].'][b]'.$trade['subject'].'[/b][/url]');
  80. }
  81. } elseif(!empty($_GET['commentid'])) {
  82. $comment = C::t('forum_postcomment')->fetch($_GET['commentid']);
  83. if($comment) {
  84. $comment['comment'] = str_replace(array('[b]', '[/b]', '[/color]'), array(''), preg_replace("/\[color=([#\w]+?)\]/i", '', strip_tags($comment['comment'])));
  85. $messageappend = dhtmlspecialchars('[url='.$_G['siteurl'].'forum.php?mod=redirect&goto=findpost&pid='.$comment['pid'].'&ptid='.$comment['tid'].'][b]'.lang('spacecp', 'pm_comment').'[/b][/url][quote]'.$comment['comment'].'[/quote]');
  86. }
  87. } elseif(!empty($_GET['tid']) && !empty($_GET['pid'])) {
  88. $thread = C::t('forum_thread')->fetch($_GET['tid']);
  89. if($thread) {
  90. $messageappend = dhtmlspecialchars('[url='.$_G['siteurl'].'forum.php?mod=redirect&goto=findpost&pid='.intval($_GET['pid']).'&ptid='.$thread['tid'].'][b]'.lang('spacecp', 'pm_thread_about', array('subject' => $thread['subject'])).'[/b][/url]');
  91. }
  92. }
  93. } elseif($_GET['op'] == 'showchatmsg') {
  94. $perpage = 50;
  95. $perpage = mob_perpage($perpage);
  96. $page = empty($_GET['page']) ? ceil($count/$perpage) : intval($_GET['page']);
  97. $list = uc_pm_view($_G['uid'], 0, $plid, 5, ceil($count/$perpage)-$page+1, $perpage, 1, 1);
  98. } elseif($_GET['op'] == 'delete') {
  99. $gpmid = is_array($_GET['deletepm_gpmid']) ? $_GET['deletepm_gpmid'] : 0;
  100. $deluid = is_array($_GET['deletepm_deluid']) ? $_GET['deletepm_deluid'] : 0;
  101. $delpmid = is_array($_GET['deletepm_pmid']) ? $_GET['deletepm_pmid'] : 0;
  102. $delplid = is_array($_GET['deletepm_delplid']) ? $_GET['deletepm_delplid'] : 0;
  103. $quitplid = is_array($_GET['deletepm_quitplid']) ? $_GET['deletepm_quitplid'] : 0;
  104. if(empty($gpmid) && empty($deluid) && empty($delpmid) && empty($delplid) && empty($quitplid)) {
  105. showmessage('delete_pm_error_option');
  106. }
  107. if(submitcheck('deletesubmit', 1)) {
  108. $flag = true;
  109. if(!empty($gpmid)) {
  110. $return = C::t('common_member_grouppm')->update($_G['uid'], $gpmid, array('status' => -1));
  111. $returnurl = 'home.php?mod=space&do=pm&filter=announcepm';
  112. if(!$return) {
  113. $flag = false;
  114. }
  115. }
  116. if(!empty($deluid)) {
  117. $return = uc_pm_deleteuser($_G['uid'], $deluid);
  118. $returnurl = 'home.php?mod=space&do=pm&filter=privatepm';
  119. if($return <= 0) {
  120. $flag = false;
  121. }
  122. }
  123. if(!empty($delpmid)) {
  124. $return = uc_pm_delete($_G['uid'], 'inbox', $delpmid[0]);
  125. $returnurl = 'home.php?mod=space&do=pm&subop=view&touid='.$touid;
  126. if($return <= 0) {
  127. $flag = false;
  128. }
  129. }
  130. if(!empty($delplid)) {
  131. $return = uc_pm_deletechat($_G['uid'], $delplid, 1);
  132. $returnurl = 'home.php?mod=space&do=pm&filter=privatepm';
  133. if(!$return) {
  134. $flag = false;
  135. }
  136. }
  137. if(!empty($quitplid)) {
  138. $return = uc_pm_deletechat($_G['uid'], $quitplid);
  139. $returnurl = 'home.php?mod=space&do=pm&filter=privatepm';
  140. if(!$return) {
  141. $flag = false;
  142. }
  143. }
  144. if($flag) {
  145. showmessage('delete_pm_success', $returnurl);
  146. } else {
  147. showmessage('this_message_could_note_be_option');
  148. }
  149. }
  150. } elseif($_GET['op'] == 'send') {
  151. $waittime = interval_check('post');
  152. if($waittime > 0) {
  153. showmessage('message_can_not_send_2', '', array(), array('return' => true));
  154. }
  155. cknewuser();
  156. if(!checkperm('allowsendpm')) {
  157. showmessage('no_privilege_sendpm', '', array(), array('return' => true));
  158. }
  159. if($touid) {
  160. if(isblacklist($touid)) {
  161. showmessage('is_blacklist', '', array(), array('return' => true));
  162. }
  163. }
  164. if(submitcheck('pmsubmit')) {
  165. if(!empty($_POST['username'])) {
  166. $_POST['users'][] = $_POST['username'];
  167. }
  168. $users = empty($_POST['users']) ? array() : $_POST['users'];
  169. $type = intval($_POST['type']);
  170. $coef = 1;
  171. if(!empty($users)) {
  172. $coef = count($users);
  173. }
  174. !($_G['group']['exempt'] & 1) && checklowerlimit('sendpm', 0, $coef);
  175. $message = (!empty($_POST['messageappend']) ? $_POST['messageappend']."\n" : '').trim($_POST['message']);
  176. if(empty($message)) {
  177. showmessage('unable_to_send_air_news', '', array(), array('return' => true));
  178. }
  179. $message = censor($message);
  180. loadcache(array('smilies', 'smileytypes'));
  181. foreach($_G['cache']['smilies']['replacearray'] AS $key => $smiley) {
  182. $_G['cache']['smilies']['replacearray'][$key] = '[img]'.$_G['siteurl'].'static/image/smiley/'.$_G['cache']['smileytypes'][$_G['cache']['smilies']['typearray'][$key]]['directory'].'/'.$smiley.'[/img]';
  183. }
  184. $message = preg_replace($_G['cache']['smilies']['searcharray'], $_G['cache']['smilies']['replacearray'], $message);
  185. $subject = '';
  186. if($type == 1) {
  187. $subject = dhtmlspecialchars(trim($_POST['subject']));
  188. }
  189. include_once libfile('function/friend');
  190. $return = 0;
  191. if($touid || $pmid) {
  192. if($touid) {
  193. if(($value = getuserbyuid($touid))) {
  194. $value['onlyacceptfriendpm'] = $value['onlyacceptfriendpm'] ? $value['onlyacceptfriendpm'] : ($_G['setting']['onlyacceptfriendpm'] ? 1 : 2);
  195. if($_G['group']['allowsendallpm'] || $value['onlyacceptfriendpm'] == 2 || ($value['onlyacceptfriendpm'] == 1 && friend_check($touid))) {
  196. $return = sendpm($touid, $subject, $message, '', 0, 0, $type);
  197. } else {
  198. showmessage('message_can_not_send_onlyfriend', '', array(), array('return' => true));
  199. }
  200. } else {
  201. showmessage('message_bad_touid', '', array(), array('return' => true));
  202. }
  203. } else {
  204. $topmuid = intval($_GET['topmuid']);
  205. $return = sendpm($topmuid, $subject, $message, '', $pmid, 0);
  206. }
  207. } elseif($users) {
  208. $newusers = $uidsarr = $membersarr = array();
  209. if($users) {
  210. $membersarr = C::t('common_member')->fetch_all_by_username($users);
  211. foreach($membersarr as $aUsername=>$aUser) {
  212. $uidsarr[] = $aUser['uid'];
  213. }
  214. }
  215. if(empty($membersarr)) {
  216. showmessage('message_bad_touser', '', array(), array('return' => true));
  217. }
  218. if(isset($membersarr[$_G['uid']])) {
  219. showmessage('message_can_not_send_to_self', '', array(), array('return' => true));
  220. }
  221. friend_check($uidsarr);
  222. foreach($membersarr as $key => $value) {
  223. $value['onlyacceptfriendpm'] = $value['onlyacceptfriendpm'] ? $value['onlyacceptfriendpm'] : ($_G['setting']['onlyacceptfriendpm'] ? 1 : 2);
  224. if($_G['group']['allowsendallpm'] || $value['onlyacceptfriendpm'] == 2 || ($value['onlyacceptfriendpm'] == 1 && $_G['home_friend_'.$value['uid'].'_'.$_G['uid']])) {
  225. $newusers[$value['uid']] = $value['username'];
  226. unset($users[array_search($value['username'], $users)]);
  227. }
  228. }
  229. if(empty($newusers)) {
  230. showmessage('message_can_not_send_onlyfriend', '', array(), array('return' => true));
  231. }
  232. foreach($newusers as $key=>$value) {
  233. if(isblacklist($key)) {
  234. showmessage('is_blacklist', '', array(), array('return' => true));
  235. }
  236. }
  237. $coef = count($newusers);
  238. $return = sendpm(implode(',', $newusers), $subject, $message, '', 0, 1, $type);
  239. } else {
  240. showmessage('message_can_not_send_9', '', array(), array('return' => true));
  241. }
  242. if($return > 0) {
  243. include_once libfile('function/stat');
  244. updatestat('sendpm', 0, $coef);
  245. C::t('common_member_status')->update($_G['uid'], array('lastpost' => TIMESTAMP));
  246. !($_G['group']['exempt'] & 1) && updatecreditbyaction('sendpm', 0, array(), '', $coef);
  247. if(!empty($newusers)) {
  248. if($type == 1) {
  249. $returnurl = 'home.php?mod=space&do=pm&filter=privatepm';
  250. } else {
  251. $returnurl = 'home.php?mod=space&do=pm';
  252. }
  253. showmessage(count($users) ? 'message_send_result' : 'do_success', $returnurl, array('users' => implode(',', $users), 'succeed' => count($newusers)));
  254. } else {
  255. if(!defined('IN_MOBILE')) {
  256. showmessage('do_success', 'home.php?mod=space&do=pm&subop=view&touid='.$touid, array('pmid' => $return), $_G['inajax'] ? array('msgtype' => 3, 'showmsg' => false) : array());
  257. } else {
  258. showmessage('do_success', 'home.php?mod=space&do=pm&subop=view'.(intval($_POST['touid']) ? '&touid='.intval($_POST['touid']) : ( intval($_POST['plid']) ? '&plid='.intval($_POST['plid']).'&daterange=1&type=1' : '' )));
  259. }
  260. }
  261. } else {
  262. if(in_array($return, range(-16, -1))) {
  263. showmessage('message_can_not_send_'.abs($return));
  264. } else {
  265. showmessage('message_can_not_send', '', array(), array('return' => true));
  266. }
  267. }
  268. }
  269. } elseif($_GET['op'] == 'ignore') {
  270. if(submitcheck('ignoresubmit')) {
  271. $single = intval($_GET['single']);
  272. if($single) {
  273. uc_pm_blackls_add($_G['uid'], $_POST['ignoreuser']);
  274. showmessage('do_success', dreferer(), array(), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true));
  275. } else {
  276. uc_pm_blackls_set($_G['uid'], $_POST['ignorelist']);
  277. showmessage('do_success', 'home.php?mod=space&do=pm&view=ignore', array(), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true));
  278. }
  279. }
  280. } elseif($_GET['op'] == 'setting') {
  281. if(submitcheck('settingsubmit')) {
  282. if(!(intval($_GET['onlyacceptfriendpm']) && intval($_GET['onlyacceptfriendpm']) == $_GET['onlyacceptfriendpm'])) {
  283. showmessage('pm_onlyacceptfriend_error', 'home.php?mod=space&do=pm&subop=setting');
  284. }
  285. uc_pm_blackls_set($_G['uid'], $_POST['ignorelist']);
  286. $setarr['onlyacceptfriendpm'] = $_GET['onlyacceptfriendpm'];
  287. C::t('common_member')->update($_G['uid'], $setarr);
  288. showmessage('do_success_pm', 'home.php?mod=space&do=pm&subop=setting');
  289. }
  290. } elseif($_GET['op'] == 'pm_report') {
  291. $waittime = interval_check('post');
  292. if($waittime > 0) {
  293. showmessage('operating_too_fast', '', array('waittime' => $waittime), array('return' => true));
  294. }
  295. if(!$pmid) {
  296. showmessage('pm_report_error_nopm');
  297. }
  298. if($pmid && submitcheck('pmreportsubmit', 1)) {
  299. $pms = uc_pm_view($_G['uid'], $pmid);
  300. $pm = $pms[0];
  301. if(empty($pm)) {
  302. showmessage('pm_report_error_nopm');
  303. }
  304. if($pm['authorid'] == $_G['uid'] || !$pm['authorid']) {
  305. showmessage('pm_report_error_nome');
  306. }
  307. $pmreportuser = explode(',', $_G['setting']['pmreportuser']);
  308. if(empty($pmreportuser)) {
  309. showmessage('pm_report_error_nopmreportuser');
  310. }
  311. $pmreportcontent = lang('spacecp', 'pm_report_content', array('reporterid' => $_G['uid'], 'reportername' => $_G['username'], 'uid' => $pm['authorid'], 'username' => $pm['author'], 'message' => $pm['message']));
  312. foreach($pmreportuser as $key => $value) {
  313. notification_add($value, 'pmreport', 'pmreportcontent', array('pmreportcontent' => $pmreportcontent), 0);
  314. }
  315. showmessage('do_success', dreferer(), array(), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true));
  316. }
  317. } elseif($_GET['op'] == 'pm_ignore') {
  318. $waittime = interval_check('post');
  319. if($waittime > 0) {
  320. showmessage('operating_too_fast', '', array('waittime' => $waittime), array('return' => true));
  321. }
  322. $username = $_GET['username'];
  323. if(!$username) {
  324. showmessage('pm_ignore_error_nopm');
  325. }
  326. if(submitcheck('pmignoresubmit')) {
  327. uc_pm_blackls_add($_G['uid'], addslashes($username));
  328. showmessage('do_success', dreferer(), array(), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true));
  329. }
  330. } elseif($_GET['op'] == 'kickmember') {
  331. $memberuid = intval($_GET['memberuid']);
  332. if(!$memberuid) {
  333. showmessage('pm_kickmember_error_nopm');
  334. }
  335. if(submitcheck('pmkickmembersubmit')) {
  336. uc_pm_kickchatpm($plid, $_G['uid'], $memberuid);
  337. showmessage('do_success', dreferer(), array(), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true, 'locationtime' => 3));
  338. }
  339. } elseif($_GET['op'] == 'appendmember') {
  340. $memberusername = trim($_GET['memberusername']);
  341. $members = array();
  342. if($memberusername) {
  343. $members = C::t('common_member')->fetch_all_by_username(explode(',', $memberusername));
  344. }
  345. if(empty($members)) {
  346. showmessage('pm_appendkmember_error_nopm');
  347. }
  348. if(submitcheck('pmappendmembersubmit')) {
  349. include_once libfile('function/friend');
  350. $returns = array();
  351. foreach($members as $member) {
  352. $member['onlyacceptfriendpm'] = $member['onlyacceptfriendpm'] ? $member['onlyacceptfriendpm'] : ($_G['setting']['onlyacceptfriendpm'] ? 1 : 2);
  353. if($_G['group']['allowsendallpm'] || $member['onlyacceptfriendpm'] == 2 || ($member['onlyacceptfriendpm'] == 1 && friend_check($member['uid']))) {
  354. $return = uc_pm_appendchatpm($plid, $_G['uid'], $member['uid']);
  355. $returns[] = array('uid' => $member['uid'], 'username' => $member['username'], 'return' => $return);
  356. } else {
  357. $returns[] = array('uid' => $member['uid'], 'username' => $member['username'], 'return' => 0);
  358. }
  359. }
  360. $cannotappend = array();
  361. foreach($returns as $value) {
  362. if($value['return'] < 0) {
  363. $cannotappend[] = $value['username'].'('.lang('spacecp', 'message_can_not_send_'.abs($value['return'])).')';
  364. } elseif($value['return'] == 0) {
  365. $cannotappend[] = $value['username'].'('.lang('spacecp', 'message_can_not_send_onlyfriend').')';
  366. }
  367. }
  368. if(empty($cannotappend)) {
  369. showmessage('do_success', dreferer(), array(), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true, 'locationtime' => 3));
  370. } else {
  371. showmessage('message_can_not_append_reason', dreferer(), array('cannotappend' => implode('<br />', $cannotappend)), array('showdialog'=>1, 'showmsg' => true, 'closetime' => true, 'locationtime' => 5));
  372. }
  373. }
  374. } elseif($_GET['op'] == 'setpmstatus') {
  375. $gpmids = trim($_GET['gpmids']);
  376. $plids = trim($_GET['plids']);
  377. if($gpmids) {
  378. $gpmidarr = explode(',', $gpmids);
  379. C::t('common_member_grouppm')->update_to_read_by_unread($_G['uid'], $gpmidarr);
  380. }
  381. if($plids) {
  382. $plidarr = explode(',', $plids);
  383. uc_pm_readstatus($_G['uid'], array(), $plidarr, 0);
  384. }
  385. showmessage('do_success', '', array(), array('msgtype' => 3));
  386. } elseif($_GET['op'] == 'viewpmid') {
  387. $list = uc_pm_view($_G['uid'], $_GET['pmid']);
  388. $value = $list[0];
  389. include template('common/header_ajax');
  390. include template('home/space_pm_node');
  391. include template('common/footer_ajax');
  392. exit;
  393. } elseif($_GET['op'] == 'export') {
  394. if(!$touid && !$plid) {
  395. showmessage('pm_export_touser_not_exists');
  396. }
  397. if($touid) {
  398. $list = uc_pm_view($_G['uid'], 0, $touid, 5, 0, 0, 0, 0);
  399. } else {
  400. $list = uc_pm_view($_G['uid'], 0, $plid, 5, 0, 0, 1, 1);
  401. $subject = $list[0]['subject'];
  402. }
  403. if(count($list) == 0) {
  404. showmessage('pm_emport_banned_export');
  405. }
  406. $filename = lang('space', 'export_pm').'.html';
  407. if($touid) {
  408. if($touser = uc_get_user($touid, 1)) {
  409. $tousername = $touser[1];
  410. $filename = $touser[1].'.html';
  411. }
  412. }
  413. $contents = '<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">';
  414. $contents .= '<html xmlns="http://www.w3.org/1999/xhtml">';
  415. $contents .= '<head><meta http-equiv="Content-Type" content="text/html; charset='.CHARSET.'" /><title>'.lang('space', 'pm_export_header').'</title></head>';
  416. $contents .= '<body>';
  417. $contents .= lang('space', 'pm_export_header');
  418. $contents .= "\r\n\r\n================================================================\r\n";
  419. if($touser) {
  420. $contents .= lang('space', 'pm_export_touser', array('touser' => '<a href="'.$_G['siteurl'].'home.php?mod=space&uid='.$touser[0].'">'.$touser[1].'</a>'));
  421. $contents .= "\r\n================================================================\r\n";
  422. } elseif($subject) {
  423. $contents .= lang('space', 'pm_export_subject', array('subject' => $subject));
  424. $contents .= "\r\n================================================================\r\n";
  425. }
  426. $contents .= "\r\n";
  427. foreach($list as $key => $val) {
  428. $contents .= $val['author']."\t".dgmdate($val['dateline'])."\r\n";
  429. $contents .= str_replace(array('<br>', '<br />', '&nbsp;'), array("\r\n", "\r\n", ' '), $val['message'])."\r\n\r\n";
  430. }
  431. $contents .= '</body></html>';
  432. $contents = nl2br($contents);
  433. $filesize = strlen($contents);
  434. $filename = '"'.(strtolower(CHARSET) == 'utf-8' && strexists($_SERVER['HTTP_USER_AGENT'], 'MSIE') ? urlencode($filename) : $filename).'"';
  435. dheader('Date: '.gmdate('D, d M Y H:i:s', $val['dateline']).' GMT');
  436. dheader('Last-Modified: '.gmdate('D, d M Y H:i:s', $val['dateline']).' GMT');
  437. dheader('Content-Encoding: none');
  438. dheader('Content-Disposition: attachment; filename='.$filename);
  439. dheader('Content-Type: application/octet-stream');
  440. dheader('Content-Length: '.$filesize);
  441. echo $contents;
  442. die;
  443. } else {
  444. cknewuser();
  445. if(!checkperm('allowsendpm')) {
  446. showmessage('no_privilege_sendpm');
  447. }
  448. $friends = array();
  449. if($space['friendnum']) {
  450. $query = C::t('home_friend')->fetch_all_by_uid($_G['uid'], 0, 100, true);
  451. foreach($query as $value) {
  452. $value['uid'] = $value['fuid'];
  453. $value['username'] = daddslashes($value['fusername']);
  454. $friends[] = $value;
  455. }
  456. }
  457. require_once libfile('function/friend');
  458. $friendgrouplist = friend_group_list();
  459. $type = intval($_GET['type']);
  460. }
  461. include_once template("home/spacecp_pm");
  462. ?>