Các anh cho em hỏi cần phải config những file nào trong sever.
file gamelogin.php
Code:
<?php 
  include_once "configuration/config.inc.php";
   if(!$_POST['username'])
   exit("<script> location.href='quanly';</script>");
   
?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en" xml:lang="en"> 
    <head>
        <title></title>
        <meta name="google" value="notranslate" />         
        <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
        <style type="text/css" media="screen"> 
            html, body  { height:100%; }
            body { margin:0; padding:0; overflow:auto; text-align:center; 
                   background-color: #0; }   
            object:focus { outline:none; }
            #flashContent { display:none; }
        </style>
        <link rel="stylesheet" type="text/css" href="/css/history.css" />
        <script type="text/javascript" src="/js/history.js"></script>
        <script type="text/javascript" src="/js/swfobject.js"></script>
		<script>
			var search = window.location.search;

	
			function getValue(val)
			{
				var regExp = new RegExp(val+"=([^&?]*)", "ig");
				return (search.match(regExp)?search.match(regExp)[0].substring(val.length+1):null);
			}

			function GetQueryString(name) 
			{ 
			
 				if(name=="uid"){
                                                return "api_key=S1&cm_flag=n&server_id=999&user_id=<?php echo $_POST['username'];?>&sign=1A9110F972D7DE7AC43D6A7540D521DC";
				}else{
					return getValue(name);
				}

			}
			function myrefresh()
			{
				window.location.reload();
			}
			function savePage()

			{
   
			if (document.all)
   
			{
window.external.addFavorite('http://ws.3663.com','ws');
}
			else if (window.sidebar)

			{
window.sidebar.addPanel('ws', 'http://ws.3663.com', "");}
}

		window.onbeforeunload = function (e) {
			  var str=swfobject.getObjectById("main").quitGame();
				if(str==""||str==null){
                                  
				}
                                else
                                {
                                 return str;
                                }
		};
                
                function openLog()
                {
                     swfobject.getObjectById("main").log();
		}

                function qqBuy()
                {
                     //alert("QQ buy panel will be pop after runing qq platform");
                 }
                function pay()
                {
                     //alert("pay");
                 }
                 function fcm()
                {
                     //alert("fcm");
                      document.getElementById("main").fcm(1);
                 }
                  function invite(msg,img)
                {
                    // alert("invite");
		      window.console && console.info(msg);
                      window.console && console.info(img);
			var ids = ['08B8273CACFBE0D9F57CAB4E7D8BDBF0','9CE729C9927532BABBB57F6AB000925B'];
                      document.getElementById("main").invite(ids);
                 }
		function share(desc,summary,title,pics)
                {
                       // alert("share "+ desc +"  "+summary+"  "+title+"  "+pics);
                       document.getElementById("main").share();

                }

		function openVipGift(tokenid){
			window.console && console.info(tokenid);
			document.getElementById("main").log("openvipgift "+tokenid);
		}
		function addDesktopUrl() {
	var pf=getValue("pf");
	var url="http://10.1.101.8/cx/assets/favorite/pengyou/?????VIP?????.url";
	if (pf == 'qzone') {
		url= "http://app100659110.imgcache.qzoneapp.com/app100659110/main/favorite/qzone/?????VIP?????.url";
	} else if (pf == 'pengyou') {
		url= "http://app100659110.imgcache.qzoneapp.com/app100659110/main/favorite/pengyou/?????VIP?????.url";
	}
	var url="http://res.ws.3663.com/a/???.url";
	try {
		if (document.all) {
			var a = document.createElement("A");
			a.target = "_blank";
			a.href = url;
			document.body.appendChild(a);
			a.click();
			setTimeout(function() { a.parentNode.removeChild(a); }, 50);
		}
		else window.open(url, "_blank");
	} catch (e) {
		alert(e);
	}
	
}	

	 </script>

        <!-- END Browser History required section -->
        <script type="text/javascript">
            // For version detection, set to min. required Flash Player version, or 0 (or 0.0.0), for no version detection. 
            var swfVersionStr = "10.3.0";
            // To use express install, set to playerProductInstall.swf, otherwise the empty string. 
            var xiSwfUrlStr = "playerProductInstall.swf";
            var flashvars = {};
			var weburl="http://vankiemtinh.zapto.org/";
			flashvars.res = weburl;
			flashvars.version = Math.random()*100;
			flashvars.server="vankiemtinh.zapto.org";
			flashvars.port="7777";
                        flashvars.login="http://vankiemtinh.zapto.org/";
                        flashvars.vssign=Math.random()*100;
                        flashvars.charge="http://vankiemtinh.zapto.org";
                         flashvars.debug="true";
                   //flashvars.log="http://vankiemtinh.zapto.org/gamelog/";      
	    var params = {};
            params.quality = "high";
            params.bgcolor = "#0";
            params.allowscriptaccess = "always";
            params.allowfullscreen = "true";
            params.wmode="win";
            var attributes = {};
            attributes.id = "main";
            attributes.name = "Main";
            attributes.align = "middle";
            swfobject.embedSWF(
                weburl+"/MainLoader.swf", "flashContent", 
                "100%", "100%", 
                swfVersionStr, xiSwfUrlStr, 
                flashvars, params, attributes);
            // JavaScript enabled so display the flashContent div in case it is not replaced with a swf object.
            swfobject.createCSS("#flashContent", "display:block;text-align:left;");
        </script>
    </head>
    <body>
        <div id="flashContent">
            <p>
                To view this page ensure that Adobe Flash Player version 
                10.0.3 or greater is installed. 
            </p>
            <script type="text/javascript"> 
                var pageHost = ((document.location.protocol == "https:") ? "https://" : "http://"); 
                document.write("<a href='http://www.adobe.com/go/getflashplayer'><img src='./get_flash_player.gif' alt='Get Adobe Flash player' /></a>" ); 
            </script> 
        </div>
        
        <noscript>
            <object classid="clsid:D27CDB6E-AE6D-11cf-96B8-444553540000" width="1000" height="600" id="js">
                <param name="movie" value="MainLoader.swf" />
                <param name="quality" value="high" />
                <param name="bgcolor" value="#ffffff" />
                <param name="allowScriptAccess" value="sameDomain" />
                <param name="allowFullScreen" value="true" />
                <!--[if !IE]>-->
                <object type="application/x-shockwave-flash" data="MainLoader.swf" width="1000" height="600">
                    <param name="quality" value="high" />
                    <param name="bgcolor" value="#ffffff" />
                    <param name="allowScriptAccess" value="sameDomain" />
                    <param name="allowFullScreen" value="true" />
                <!--<![endif]-->
                <!--[if gte IE 6]>-->
                    <p> 
                        Either scripts and active content are not permitted to run or Adobe Flash Player version
                        10.2.0 or greater is not installed.
                    </p>
                <!--<![endif]-->
                    <a href="http://www.adobe.com/go/getflashplayer">
                        <img src="http://www.adobe.com/images/shared/download_buttons/get_flash_player.gif" alt="Get Adobe Flash Player" />
                    </a>
                <!--[if !IE]>-->
                </object>
                <!--<![endif]-->
            </object>
        </noscript>     
   </body>
</html>
File config.inc.php

Code:
<?php
$WebTitle='Thiên Long Truyền Kỳ Nguyễn Hiệp';
$weburl='http://vankiemtinh.zapto.org';   //推广地址
$tgyuanbao='10000';         //每个IP获得元宝数
$db_type='mysql';
$db_charset='utf8';
$db_host='localhost';
$db_username='root';
$db_password='11111111';
$database='caonima';
$database2='youxi';
$lv='20';   //推广到达等级
$kg='1';   //游戏是否开启,1:开启,0:没有开启
$maxnum="20";   //单个IP最大注册次数
$qq='QQ:,QQ群:'; //客服QQ、YY等
$chongzhi='http://localhost:8008/'; //服务端接收充值地址

//////////////////////////////////////////////////////////////////////////////////
session_start();
$tgurl="";
if(empty($tgurl)) $url_this = 'http://'.$_SERVER['SERVER_NAME'].$_SERVER["REQUEST_URI"];
else $url_this =$tgurl;
$conn = @mysql_connect("$db_host","$db_username","$db_password") or die ("Lỗi kết nối CSDL , vui lòng liên hệ NguyenHiep");
@mysql_select_db("$database",$conn) or die ("Bảng CSDL không tồn tại hoặc chưa kết nối.");
mysql_query("set names UTF8"); //使用文件编码,防止出错
function getIP()
{
if(!empty($_SERVER["HTTP_CLIENT_IP"]))
   $ip = $_SERVER["HTTP_CLIENT_IP"];
else if(!empty($_SERVER["HTTP_X_FORWARDED_FOR"]))
   $ip = $_SERVER["HTTP_X_FORWARDED_FOR"];
else if(!empty($_SERVER["REMOTE_ADDR"]))
   $ip = $_SERVER["REMOTE_ADDR"];
else
   $ip = "无法获取!";
return $ip;
}

function passport_encrypt($txt, $key) { 
srand((double)microtime() * 1000000); 
$encrypt_key = md5(rand(0, 32000)); 
$ctr = 0; 
$tmp = ''; 
for($i = 0;$i < strlen($txt); $i++) { 
$ctr = $ctr == strlen($encrypt_key) ? 0 : $ctr; 
$tmp .= $encrypt_key[$ctr].($txt[$i] ^ $encrypt_key[$ctr++]); 
} 
return base64_encode(passport_key($tmp, $key)); 
} 

function passport_decrypt($txt, $key) { 
$txt = passport_key(base64_decode($txt), $key); 
$tmp = ''; 
for($i = 0;$i < strlen($txt); $i++) { 
$md5 = $txt[$i]; 
$tmp .= $txt[++$i] ^ $md5; 
} 
return $tmp; 
} 

function passport_key($txt, $encrypt_key) { 
$encrypt_key = md5($encrypt_key); 
$ctr = 0; 
$tmp = ''; 
for($i = 0; $i < strlen($txt); $i++) { 
$ctr = $ctr == strlen($encrypt_key) ? 0 : $ctr; 
$tmp .= $txt[$i] ^ $encrypt_key[$ctr++]; 
} 
return $tmp; 
}

function sysmd5($str,$key='',$type='sha1'){
	$key =  $key ?  $key : '702042941817d99ec8625d4deea81043';
	//return $key;
	return hash ( $type, $str.$key );
} 
?>
File #config.php trong mục quản lí
Code:
<?php
session_start();
ini_set('display_errors','off');
#date_default_timezone_set("Asia/Ho_Chi_Minh");
define('IN_COMMON', true);

# Cấu hình website
$site_config = array(
	'title'			=> "Thiên Long Truyền Kỳ ",
	'keywords'		=> "vantieu,webgame,kiem hiep, 2013,khung nhat 2013,hay nhat 2013",
	'description'	=> "Vân Tiêu",
	'url'			=> "http://vankiemtinh.zapto.org/home",
	'forum'			=> "http://vankiemtinh.zapto.org/forum",
	'support'		=> "#",
	'pay'			=> "http://vankiemtinh.zapto.org/quanly",
	'salf'			=> "*(!@fn*!R",
);

# Cấu hình database
$config_database = array(
	'type' 		 => 'mysql', // Loại cơ sở dữ liệu mssql hoặc mysql
	'server' 	 => 'localhost', // Địa chỉ cơ sở dữ liệu. Localhost hoặc vankiemtinh.zapto.org
	'username'   => 'root', // Tên đăng nhập vào cơ sở dữ liệu
	'password'   => '11111111', // Mật khẩu vào cơ sở dữ liệu
	'database'   => 'vantieu', // Database sử dụng
	'hosting'	 => true // Nếu sử dụng hosting điền true , sử dụng server điền false
);
$config_game = array(
	'type' 		 => 'mysql', // Loại cơ sở dữ liệu mssql hoặc mysql
	'server' 	 => 'localhost', // Địa chỉ cơ sở dữ liệu. Localhost hoặc vankiemtinh.zapto.org
	'username'   => 'root', // Tên đăng nhập vào cơ sở dữ liệu
	'password'   => '11111111', // Mật khẩu vào cơ sở dữ liệu
	'database'   => 'acc_db', // Database sử dụng
	'hosting'	 => true // Nếu sử dụng hosting điền true , sử dụng server điền false
);


# Cấu hình nhận tiền
$config_addcoin = array(
	'20000'		=> 2400000, 
	'50000'		=> 6000000, 
	'100000'	=> 12000000,
	'200000'	=> 24000000,
	'300000'	=> 36000000,
	'500000'	=> 51000000,
	'1000000'	=> 120000000,
);


	mysql_connect($config_database["server"], $config_database["username"], $config_database["password"]);
	mysql_select_db($config_database["database"]);
	mysql_query("SET NAMES 'utf8'");
	
	@$Page					= mysql_escape_string($_GET['Page']);
	@$user					= mysql_escape_string($_GET['user']);
	@$passgame				= mysql_escape_string($_GET['passgame']);
	@$passweb2				= mysql_escape_string($_GET['passweb2']);
	@$email					= mysql_escape_string($_GET['email']);
	@$quest					= mysql_escape_string($_GET['quest']);
	@$answer				= mysql_escape_string($_GET['answer']);
	@$phone					= mysql_escape_string($_GET['phone']);
	@$security				= mysql_escape_string($_GET['security_code']);
	@$Register				= mysql_escape_string($_GET['Register']);
	@$login					= mysql_escape_string($_GET['login']);
	@$Card_Seri				= mysql_escape_string($_GET['Card_Seri']);
	@$Card_Code				= mysql_escape_string($_GET['Card_Code']);
	@$Card_Type				= mysql_escape_string($_GET['Card_Type']);
	@$Card_Amount			= mysql_escape_string($_GET['Card_Amount']);
	@$NapThe				= mysql_escape_string($_GET['NapThe']);
	@$UseType				= mysql_escape_string($_GET['UseType']);
	@$new_securityquestion	= mysql_escape_string($_GET['new_securityquestion']);
	@$new_securityanswer	= mysql_escape_string($_GET['new_securityanswer']);
	@$Change				= mysql_escape_string($_GET['Change']);
	@$new_email				= mysql_escape_string($_GET['new_email']);
	@$renew_email			= mysql_escape_string($_GET['renew_email']);
	@$securityquestion		= mysql_escape_string($_GET['securityquestion']);
	@$securityanswer		= mysql_escape_string($_GET['securityanswer']);
	@$new_passgame			= mysql_escape_string($_GET['new_passgame']);
	@$renew_passgame		= mysql_escape_string($_GET['renew_passgame']);
	@$new_passcap2			= mysql_escape_string($_GET['new_passcap2']);
	@$renew_passcap2		= mysql_escape_string($_GET['renew_passcap2']);
	@$new_passcap1			= mysql_escape_string($_GET['new_passcap1']);
	@$renew_passcap1		= mysql_escape_string($_GET['renew_passcap1']);
	@$username_lost			= mysql_escape_string($_GET['username_lost']);
	@$doitien				= mysql_escape_string($_GET['knb']);
	@$doiknb				= mysql_escape_string($_GET['DoiKnb']);
	

//****************************

	$offservice = 0;
	$ipallow = "14.161.18.12";
	$database = 'badao';
	$isPin = 1;
	$khoagt = 0;
	$khoadt = 0;
	$khoavtc = 0;
	$date	= date('Y-m-d H:i:s');
	$datedb	= date('Ymd');
	$time	= Time();
	$ngay	= date("d");
	$thang	= date("m");
	$phut	= date("i");
	$gio	= date("H");
	$Day	= date('d-m-Y');
	$km100	= array(10,11,12,13,14,15,16);
	$km50	= array();
	if(in_array($ngay , $km100)){$km = 2;}else
	if(in_array($ngay , $km50)){$km = 1.5;}else{$km = 1;}
	$ip		= $_SERVER['REMOTE_ADDR'];
	include("includes/#function.php");
	if(@$_COOKIE['login']){
		$check_session = mysql_num_rows(mysql_query("SELECT * FROM `session` WHERE `loginName` = '{$_COOKIE['login']}' AND `IP` = '{$ip}' AND `password_salf` = '{$_COOKIE['password_salf']}'"));
			if($check_session == 1){
				$data = mysql_fetch_object(mysql_query("SELECT * FROM `account` WHERE `loginName` = '{$_COOKIE['login']}'"));
			}else{
				Logout();
			}	
	}
	
 ?>
File config.php

Code:
<?
$db_type='mysql';
$db_charset='utf8';
$db_host='localhost';
$db_username='root';
$db_password='11111111';
$conn = @mysql_connect("$db_host","$db_username","$db_password") or die ("Không thể lấy dữ liệu từ máy chủ");


?>
em sửa như trên đã đúng chưa các anh và sai thì sửa những chỗ nào.
Mong các bác giúp em.