GIF89a;
| Direktori : /home/serb/public_html/ |
| Current File : /home/serb/public_html/payment_handler.php |
<?php
session_start();
include("lib/globals.php");
include("lib/common.php");
include("lib/functions.php");
$SITE_URL = "http://".$_SERVER['HTTP_HOST']."/";
if(isset($_REQUEST['payment_success_token']) && $_REQUEST['payment_success_token'] != "")
{
$_POST = sh_get_array_from_token($_REQUEST['payment_success_token']);
if(isset($_POST["__PAYMENT_STATUS__"]) && $_POST["__PAYMENT_STATUS__"] == "SUCCESS")
{
if(isset($_POST['__RECORD_ID__']) && $_POST['__RECORD_ID__'] != "")
{
$RECORD_ID = sh_decrypt($_POST['__RECORD_ID__']);
if($RECORD_ID == $_SESSION['SH_ESCORT_ID'])
{
/*-------*/
$date=date('Y-m-d');
$sql_rtvdata="select * from temp_postad where id='".$_SESSION['SH_ESCORT_ID']."'";
$res_rtvdata=execute_query($sql_rtvdata);
$row_rtvdata=mysql_fetch_array($res_rtvdata);
$desc=addslashes($row_rtvdata['description']);
$srcc=addslashes($row_rtvdata['source']);
$slogan=addslashes($row_rtvdata['slogan']);
$higt=$row_rtvdata['height'];
//$daay=$row_rtvdata['ft_ad_day'];
//$adprice1=$featured_ad_day_price_array[$row_rtvdata['ft_ad_day']];
$ftno_ofweek=$row_rtvdata['ft_ad_day'];
$sql_adprice1="SELECT * FROM featured_ad_price WHERE no_of_weeks='$ftno_ofweek'";
$res_adprice1=execute_query($sql_adprice1);
$row_adprice1=mysql_fetch_array($res_adprice1);
$adprice1=$row_adprice1['ad_price'];
$ftadstatus='Yes';
$no_ofday=explode(' ',$ftno_ofweek);
$daay=$no_ofday[0] * 7;
$expiry = date("Y-m-d", time() + $daay*24*60*60 );
//$expiry = date("Y-m-d", time() + $daay*24*60*60 );
$ipp=@$_SERVER['REMOTE_ADDR'];
$ins="INSERT INTO user_info(userid,username,password,email,user_type,user_country,status,ipaddress,dob,dob_month) VALUES('','".$_SESSION['reg_username']."','".$_SESSION['reg_pass']."','".$_SESSION['reg_email']."','".$_SESSION['reg_acctype']."','".$_SESSION['countryname']."','u','$ipp','".$row_rtvdata['dob']."','".$row_rtvdata['dob_month']."')";
execute_query($ins);
$id=mysql_insert_id();
$act_id=base64_encode($id);
$to=$_SESSION['reg_email'];
$subject="Your account has been successfully created for escortservice.org";
/*$body="Thank you for register with escortservice.org.\r\n Your account has been successfully created.\r\nBelow You will find your account details to login:\r\n\r\nUsername:".$_SESSION['reg_username']."\r\nPassword:".$_SESSION['reg_pass']."\r\n\r\nTo active your account please click the link below:http://escortservice.org/active.php?id=".$id;
$headers = 'From:escortservice<support@escortservice.org>' . "\r\n" .
'Reply-To: support@escortservice.org' . "\r\n" .
'X-Mailer: PHP/' . phpversion();
mail($to, $subject, $body, $headers);*/
$body="<html>
<head>
<title>Thank you for register with Escortservice.org</title>
</head>
<body>
<table style='padding:10px; color:#000;'>
<tr><th>Thank you for register with Escortservice.org</th></tr>
<tr><td><br/></td></tr>
<tr>
<td>Your account has been successfully created.</td>
</tr>
<tr>
<td>Below You will find your account details to login:</td>
</tr>
<tr>
<td>Username:".$_SESSION['reg_username']."</td>
</tr>
<tr>
<td>Password:".$_SESSION['reg_pass']."</td>
</tr>
<tr>
<td>To active your account please click the link below:<a href='http://escortservice.org/active.php?id=$id' style='color:#AD0066;'>Click Here</a></td>
</tr>
</table>
</body>
</html>";
// To send HTML mail, the Content-type header must be set
// $headers = 'MIME-Version: 1.0' . "\r\n";
// $headers .= 'Content-type: text/html; charset=iso-8859-1' . "\r\n";
// Additional headers
// $headers .= 'From: escortservice <support@escortservice.org>' . "\r\n";
sendEmail($to, $subject, $body);
// mail($to, $subject, $body, $headers);
$sql_ind_escort="insert into escort_details (id,user_id,escort_type,nickname,slogan,website,
skype,
email,
update_email,
address,
escort_state,
escort_city,country_name,
gender,
travel,
couples,
age,
ethencity,
orientation,
duos,
nationality,
shaved,
language,
height,
weight,
tits,
pussy,
eye_color,
hair_color,
meeting_men,
meeting_wm,
meeting_cup,
meeting_trans,
meeting_gays,
meeting_two,
tel_national,tel_inter,
update_tele,smstext,whatsapps,instruction,
hidden_phone,
pornstar,
pornstar_name,
bdms,
partner,
incall,
outcall,
massage,
description,
creation_date,
status,updatedate,ft_ad_day,ft_ad_price,ft_ad_expair,ft_ad_status,travel_area,dob,dob_month,image1,image2,image3,image4,source,receive_email,desktop,vid_you2,ad_total_amount,is_flash,ad_type) VALUES ('','$id','".$_SESSION['reg_acctype']."',
'".$row_rtvdata['nickname']."','$slogan','".$row_rtvdata['website']."',
'".$row_rtvdata['skype']."',
'".$row_rtvdata['email']."',
'".$row_rtvdata['update_email']."','',
'".$row_rtvdata['escort_state']."',
'".$row_rtvdata['escort_city']."',
'".$row_rtvdata['country_name']."',
'".$row_rtvdata['gender']."',
'".$row_rtvdata['travel']."','".$row_rtvdata['couples']."',
'".$row_rtvdata['age']."',
'".$row_rtvdata['ethencity']."',
'".$row_rtvdata['orientation']."',
'".$row_rtvdata['duos']."',
'".$row_rtvdata['nationality']."',
'".$row_rtvdata['shaved']."',
'".$row_rtvdata['language']."',
'$higt',
'".$row_rtvdata['weight']."',
'".$row_rtvdata['tits']."',
'".$row_rtvdata['pussy']."',
'".$row_rtvdata['eye_color']."',
'".$row_rtvdata['hair_color']."',
'".$row_rtvdata['meeting_men']."',
'".$row_rtvdata['meeting_wm']."',
'".$row_rtvdata['meeting_cup']."',
'".$row_rtvdata['meeting_trans']."',
'".$row_rtvdata['meeting_gays']."',
'".$row_rtvdata['meeting_two']."',
'".$row_rtvdata['tel_national']."',
'".$row_rtvdata['tel_inter']."',
'".$row_rtvdata['update_tele']."',
'".$row_rtvdata['smstext']."',
'".$row_rtvdata['whatsapps']."',
'".$row_rtvdata['instruction']."',
'".$row_rtvdata['hidden_phone']."',
'".$row_rtvdata['pornstar']."',
'".$row_rtvdata['pornstar_name']."',
'".$row_rtvdata['bdms']."',
'".$row_rtvdata['partner']."',
'".$row_rtvdata['incall']."',
'".$row_rtvdata['outcall']."',
'".$row_rtvdata['massage']."',
'$desc',
now(),
'a','','".$row_rtvdata['ft_ad_day']."','$adprice1','$expiry','Yes','".$row_rtvdata['travel_area']."','".$row_rtvdata['dob']."','".$row_rtvdata['dob_month']."','".$row_rtvdata['image1']."','".$row_rtvdata['image2']."','".$row_rtvdata['image3']."','".$row_rtvdata['image4']."','$srcc','".$row_rtvdata['receive_email']."','D','".$row_rtvdata['vid_you2']."','".$row_rtvdata['ad_total_amount']."','".$row_rtvdata['is_flash']."','".$row_rtvdata['ad_type']."')";
$ind_res=execute_query($sql_ind_escort);
$pid=mysql_insert_id();
$sql_q="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image1']."')";
execute_query($sql_q);
$sql_q2="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image2']."')";
execute_query($sql_q2);
$sql_q3="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image3']."')";
execute_query($sql_q3);
$sql_q4="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image4']."')";
execute_query($sql_q4);
if (strlen($desc) > 40) // if len is more than 10
{ // shorten it and add trailing dots.
$description=substr($desc, 0, 40) . "...";
}
else // len is less than 10, use original description.
{
$description = $desc;
}
$sql_tweet="INSERT INTO tweet(id,postid,userid,tweetcontain,city,gender)Values('','$pid','$id','$description','".$row_rtvdata['escort_city']."','".$row_rtvdata['gender']."')";
execute_query($sql_tweet);
$_SESSION['reg_username']="";
$_SESSION['reg_email']="";
$_SESSION['reg_pass']="";
$_SESSION['reg_acctype']="";
$_SESSION['DOB']="";
$_SESSION['dob_month']="";
//$sql_email="SELECT * FROM user_info WHERE userid='".$row_rtvdata['user_id']."'";
//$res_email=execute_query($sql_email);
//$row_email=mysql_fetch_array($res_email);
$totalammount=$adprice1;
$inser_pyment="INSERT into payment_dtls(id,post_id,fname,email,exp_date,amount,status)Values('','$pid','".$row_rtvdata['nickname']."','".$row_rtvdata['email']."','$expiry','$totalammount','a')";
execute_query($inser_pyment);
if($row_rtvdata['is_flash'] == 1 || $row_rtvdata['is_flash'] == 2)
{
$is_featured = 0;
if($row_rtvdata['is_flash'] == 2)
{
$is_featured = 1;
$flash_total_days = $fflash_total_days;
}
$daay = $flash_total_days;
$expiry1 = date("Y-m-d", time() + $daay*24*60*60 );
$cur_time = time();
$secret_key = md5($escort_detail_row['id']);
$other_city = '';
$insert_flash_query2 = "insert into flash_post_ads(location,email,body,file_name,display_days,posted_time,secret_key,other_city,site_ad_no,user_id,ad_status,expiry_date,is_featured) values('".$row_rtvdata['escort_city']."', '".$row_rtvdata['email']."', '".$desc."', '".$row_rtvdata['image1']."', $flash_total_days, '$cur_time','$secret_key','$other_city','".$pid."','".$id."','1','".$expiry1."','".$is_featured."')";
execute_query($insert_flash_query2) or die(mysql_error());
}
$sql_delete="DELETE from temp_postad where id='".$_SESSION['SH_ESCORT_ID']."'";
execute_query($sql_delete);
/*-------*/
unset($_SESSION['SH_ESCORT_ID']);
header("Location: ".$_POST['__REDIRECT_URL__']);
exit;
}
}
}
}
function sh_decrypt($id)
{
$id = base64_decode($id);
$id = base64_decode($id);
$id = gzinflate($id);
$id = base64_decode($id);
return $id;
}
function sh_get_array_from_token($token)
{
$decoded_data = base64_decode(base64_decode($token));
$decrypted_data = gzinflate($decoded_data);
$decoded_data = base64_decode($decrypted_data);
return json_decode($decoded_data,1);
}