GIF89a;
Direktori : /home/serb/www/ |
Current File : /home/serb/www/payment_handler.php |
<?php session_start(); include("lib/globals.php"); include("lib/common.php"); include("lib/functions.php"); $SITE_URL = "http://".$_SERVER['HTTP_HOST']."/"; if(isset($_REQUEST['payment_success_token']) && $_REQUEST['payment_success_token'] != "") { $_POST = sh_get_array_from_token($_REQUEST['payment_success_token']); if(isset($_POST["__PAYMENT_STATUS__"]) && $_POST["__PAYMENT_STATUS__"] == "SUCCESS") { if(isset($_POST['__RECORD_ID__']) && $_POST['__RECORD_ID__'] != "") { $RECORD_ID = sh_decrypt($_POST['__RECORD_ID__']); if($RECORD_ID == $_SESSION['SH_ESCORT_ID']) { /*-------*/ $date=date('Y-m-d'); $sql_rtvdata="select * from temp_postad where id='".$_SESSION['SH_ESCORT_ID']."'"; $res_rtvdata=execute_query($sql_rtvdata); $row_rtvdata=mysql_fetch_array($res_rtvdata); $desc=addslashes($row_rtvdata['description']); $srcc=addslashes($row_rtvdata['source']); $slogan=addslashes($row_rtvdata['slogan']); $higt=$row_rtvdata['height']; //$daay=$row_rtvdata['ft_ad_day']; //$adprice1=$featured_ad_day_price_array[$row_rtvdata['ft_ad_day']]; $ftno_ofweek=$row_rtvdata['ft_ad_day']; $sql_adprice1="SELECT * FROM featured_ad_price WHERE no_of_weeks='$ftno_ofweek'"; $res_adprice1=execute_query($sql_adprice1); $row_adprice1=mysql_fetch_array($res_adprice1); $adprice1=$row_adprice1['ad_price']; $ftadstatus='Yes'; $no_ofday=explode(' ',$ftno_ofweek); $daay=$no_ofday[0] * 7; $expiry = date("Y-m-d", time() + $daay*24*60*60 ); //$expiry = date("Y-m-d", time() + $daay*24*60*60 ); $ipp=@$_SERVER['REMOTE_ADDR']; $ins="INSERT INTO user_info(userid,username,password,email,user_type,user_country,status,ipaddress,dob,dob_month) VALUES('','".$_SESSION['reg_username']."','".$_SESSION['reg_pass']."','".$_SESSION['reg_email']."','".$_SESSION['reg_acctype']."','".$_SESSION['countryname']."','u','$ipp','".$row_rtvdata['dob']."','".$row_rtvdata['dob_month']."')"; execute_query($ins); $id=mysql_insert_id(); $act_id=base64_encode($id); $to=$_SESSION['reg_email']; $subject="Your account has been successfully created for escortservice.org"; /*$body="Thank you for register with escortservice.org.\r\n Your account has been successfully created.\r\nBelow You will find your account details to login:\r\n\r\nUsername:".$_SESSION['reg_username']."\r\nPassword:".$_SESSION['reg_pass']."\r\n\r\nTo active your account please click the link below:http://escortservice.org/active.php?id=".$id; $headers = 'From:escortservice<support@escortservice.org>' . "\r\n" . 'Reply-To: support@escortservice.org' . "\r\n" . 'X-Mailer: PHP/' . phpversion(); mail($to, $subject, $body, $headers);*/ $body="<html> <head> <title>Thank you for register with Escortservice.org</title> </head> <body> <table style='padding:10px; color:#000;'> <tr><th>Thank you for register with Escortservice.org</th></tr> <tr><td><br/></td></tr> <tr> <td>Your account has been successfully created.</td> </tr> <tr> <td>Below You will find your account details to login:</td> </tr> <tr> <td>Username:".$_SESSION['reg_username']."</td> </tr> <tr> <td>Password:".$_SESSION['reg_pass']."</td> </tr> <tr> <td>To active your account please click the link below:<a href='http://escortservice.org/active.php?id=$id' style='color:#AD0066;'>Click Here</a></td> </tr> </table> </body> </html>"; // To send HTML mail, the Content-type header must be set // $headers = 'MIME-Version: 1.0' . "\r\n"; // $headers .= 'Content-type: text/html; charset=iso-8859-1' . "\r\n"; // Additional headers // $headers .= 'From: escortservice <support@escortservice.org>' . "\r\n"; sendEmail($to, $subject, $body); // mail($to, $subject, $body, $headers); $sql_ind_escort="insert into escort_details (id,user_id,escort_type,nickname,slogan,website, skype, email, update_email, address, escort_state, escort_city,country_name, gender, travel, couples, age, ethencity, orientation, duos, nationality, shaved, language, height, weight, tits, pussy, eye_color, hair_color, meeting_men, meeting_wm, meeting_cup, meeting_trans, meeting_gays, meeting_two, tel_national,tel_inter, update_tele,smstext,whatsapps,instruction, hidden_phone, pornstar, pornstar_name, bdms, partner, incall, outcall, massage, description, creation_date, status,updatedate,ft_ad_day,ft_ad_price,ft_ad_expair,ft_ad_status,travel_area,dob,dob_month,image1,image2,image3,image4,source,receive_email,desktop,vid_you2,ad_total_amount,is_flash,ad_type) VALUES ('','$id','".$_SESSION['reg_acctype']."', '".$row_rtvdata['nickname']."','$slogan','".$row_rtvdata['website']."', '".$row_rtvdata['skype']."', '".$row_rtvdata['email']."', '".$row_rtvdata['update_email']."','', '".$row_rtvdata['escort_state']."', '".$row_rtvdata['escort_city']."', '".$row_rtvdata['country_name']."', '".$row_rtvdata['gender']."', '".$row_rtvdata['travel']."','".$row_rtvdata['couples']."', '".$row_rtvdata['age']."', '".$row_rtvdata['ethencity']."', '".$row_rtvdata['orientation']."', '".$row_rtvdata['duos']."', '".$row_rtvdata['nationality']."', '".$row_rtvdata['shaved']."', '".$row_rtvdata['language']."', '$higt', '".$row_rtvdata['weight']."', '".$row_rtvdata['tits']."', '".$row_rtvdata['pussy']."', '".$row_rtvdata['eye_color']."', '".$row_rtvdata['hair_color']."', '".$row_rtvdata['meeting_men']."', '".$row_rtvdata['meeting_wm']."', '".$row_rtvdata['meeting_cup']."', '".$row_rtvdata['meeting_trans']."', '".$row_rtvdata['meeting_gays']."', '".$row_rtvdata['meeting_two']."', '".$row_rtvdata['tel_national']."', '".$row_rtvdata['tel_inter']."', '".$row_rtvdata['update_tele']."', '".$row_rtvdata['smstext']."', '".$row_rtvdata['whatsapps']."', '".$row_rtvdata['instruction']."', '".$row_rtvdata['hidden_phone']."', '".$row_rtvdata['pornstar']."', '".$row_rtvdata['pornstar_name']."', '".$row_rtvdata['bdms']."', '".$row_rtvdata['partner']."', '".$row_rtvdata['incall']."', '".$row_rtvdata['outcall']."', '".$row_rtvdata['massage']."', '$desc', now(), 'a','','".$row_rtvdata['ft_ad_day']."','$adprice1','$expiry','Yes','".$row_rtvdata['travel_area']."','".$row_rtvdata['dob']."','".$row_rtvdata['dob_month']."','".$row_rtvdata['image1']."','".$row_rtvdata['image2']."','".$row_rtvdata['image3']."','".$row_rtvdata['image4']."','$srcc','".$row_rtvdata['receive_email']."','D','".$row_rtvdata['vid_you2']."','".$row_rtvdata['ad_total_amount']."','".$row_rtvdata['is_flash']."','".$row_rtvdata['ad_type']."')"; $ind_res=execute_query($sql_ind_escort); $pid=mysql_insert_id(); $sql_q="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image1']."')"; execute_query($sql_q); $sql_q2="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image2']."')"; execute_query($sql_q2); $sql_q3="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image3']."')"; execute_query($sql_q3); $sql_q4="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image4']."')"; execute_query($sql_q4); if (strlen($desc) > 40) // if len is more than 10 { // shorten it and add trailing dots. $description=substr($desc, 0, 40) . "..."; } else // len is less than 10, use original description. { $description = $desc; } $sql_tweet="INSERT INTO tweet(id,postid,userid,tweetcontain,city,gender)Values('','$pid','$id','$description','".$row_rtvdata['escort_city']."','".$row_rtvdata['gender']."')"; execute_query($sql_tweet); $_SESSION['reg_username']=""; $_SESSION['reg_email']=""; $_SESSION['reg_pass']=""; $_SESSION['reg_acctype']=""; $_SESSION['DOB']=""; $_SESSION['dob_month']=""; //$sql_email="SELECT * FROM user_info WHERE userid='".$row_rtvdata['user_id']."'"; //$res_email=execute_query($sql_email); //$row_email=mysql_fetch_array($res_email); $totalammount=$adprice1; $inser_pyment="INSERT into payment_dtls(id,post_id,fname,email,exp_date,amount,status)Values('','$pid','".$row_rtvdata['nickname']."','".$row_rtvdata['email']."','$expiry','$totalammount','a')"; execute_query($inser_pyment); if($row_rtvdata['is_flash'] == 1 || $row_rtvdata['is_flash'] == 2) { $is_featured = 0; if($row_rtvdata['is_flash'] == 2) { $is_featured = 1; $flash_total_days = $fflash_total_days; } $daay = $flash_total_days; $expiry1 = date("Y-m-d", time() + $daay*24*60*60 ); $cur_time = time(); $secret_key = md5($escort_detail_row['id']); $other_city = ''; $insert_flash_query2 = "insert into flash_post_ads(location,email,body,file_name,display_days,posted_time,secret_key,other_city,site_ad_no,user_id,ad_status,expiry_date,is_featured) values('".$row_rtvdata['escort_city']."', '".$row_rtvdata['email']."', '".$desc."', '".$row_rtvdata['image1']."', $flash_total_days, '$cur_time','$secret_key','$other_city','".$pid."','".$id."','1','".$expiry1."','".$is_featured."')"; execute_query($insert_flash_query2) or die(mysql_error()); } $sql_delete="DELETE from temp_postad where id='".$_SESSION['SH_ESCORT_ID']."'"; execute_query($sql_delete); /*-------*/ unset($_SESSION['SH_ESCORT_ID']); header("Location: ".$_POST['__REDIRECT_URL__']); exit; } } } } function sh_decrypt($id) { $id = base64_decode($id); $id = base64_decode($id); $id = gzinflate($id); $id = base64_decode($id); return $id; } function sh_get_array_from_token($token) { $decoded_data = base64_decode(base64_decode($token)); $decrypted_data = gzinflate($decoded_data); $decoded_data = base64_decode($decrypted_data); return json_decode($decoded_data,1); }