Mr.Fn4ticHz Shell
Server IP : 162.240.98.243  /  Your IP : 3.146.176.145
Web Server : Apache
System : Linux server.bti.yaw.mybluehostin.me 3.10.0-1160.119.1.el7.x86_64 #1 SMP Tue Jun 4 14:43:51 UTC 2024 x86_64
User : btiyawmy ( 1003)
PHP Version : 7.2.34
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /home/btiyawmy/public_html/login.easenup.in/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME ]     

Current File : /home/btiyawmy/public_html/login.easenup.in//hr_verify.php
<?php
include("header.php");
include("dbconnection.php");
$username = "ventexint@gmail.com";
    $apikey = "eebcced9-0ca1-4a6f-940b-c616276e2ec9";
    $sendername = "EASnUP";
$connect = new PDO("mysql:host=localhost;dbname=btiyawmy_software", "btiyawmy_software", "@#admin@#");
$error_user_otp = '';
$user_activation_code = '';
$message = '';
if(isset($_GET["code"]))
{
	$user_activation_code = $_GET["code"];
	if(isset($_POST["submit"]))
	{
		if(empty($_POST["user_otp"]))
		{
			$error_user_otp = 'Enter OTP Number';
		}
		else
		{
			$query = "
			SELECT * FROM hr
			WHERE user_activation_code = '".$user_activation_code."' 
			AND user_otp = '".trim($_POST["user_otp"])."'
			";

			$statement = $connect->prepare($query);

			$statement->execute();

			$total_row = $statement->rowCount();

			if($total_row > 0)
			{
				$query = "
				UPDATE hr
				SET numbers_status = 'verified' 
				WHERE user_activation_code = '".$user_activation_code."'
				";

				$statement = $connect->prepare($query);

				if($statement->execute())
		{
					include("dbconnection.php");
$username = "ventexint@gmail.com";
    $apikey = "eebcced9-0ca1-4a6f-940b-c616276e2ec9";
    $sendername = "EASnUP";
$sql ="SELECT * FROM hr WHERE user_activation_code='$_GET[code]'";
		$qsql = mysqli_query($con,$sql);
		if($rd = mysqli_fetch_array($qsql))
	{
	    $sql1 ="SELECT * FROM site_users WHERE userno='$rd[hrid]'";
		$qsql1 = mysqli_query($con,$sql1);
		while($rd1 = mysqli_fetch_array($qsql1))
	{
            $user_otp=$rd['user_otp'];
	    	$name=$rd1['name'];
	    	$uname=$rd1['uname'];
	    	$numbers=$rd['numbers'];
	    	$password=$rd1['password'];
	    	
	     $to = $rd1['uname'];
$subject = "Login Password";
// Compose a simple HTML email message
$message = '';
$message .= 'Hi '.$rd1['name']."\r\n\r\n";
$message .= 'To Login in Ease-n-up '.$rd1['usertype'].' Console, Email-Id is '.$rd1['uname'].'. and Password is '.$rd1['password'].''."\r\n\r\n";
$message .= 'Thanks'."\r\n\r\n";
$message .= 'Team Ease-n-up'."\r\n\r\n";
$from = 'noreply@easenup.in';
 
// Sending email
mail($to, $subject, $message);		
	    	
		$message="Hello $name, Your user ID is $uname and Password is $password Regards, HAND Corp";
	$message=urlencode($message);
$sms ="http://login.aquasms.com/sendSMS?username=ventexint@gmail.com&message=$message&sendername=EASnUP&smstype=TRANS&numbers=$numbers&apikey=eebcced9-0ca1-4a6f-940b-c616276e2ec9";
	//$sms=urlencode($sms);
	$result=file_get_contents($sms);
 if(mysqli_query($con, $sql)){
	header('location:playerset.php');
 }
	}
 }
					
				}
			}
			else
			{
				$message = '<label class="text-danger">Invalid OTP Number</label>';
			}
		}
	}
}
else
{
	$message = '<label class="text-danger">Invalid Url</label>';
}


?>



<?php
session_start();

if(isset($_POST["otp"]))

{ 
$sql ="SELECT * FROM hr WHERE user_activation_code='$_GET[code]'";
		$qsql = mysqli_query($con,$sql);
		if($rd = mysqli_fetch_array($qsql))
	{
            $user_otp=$rd['user_otp'];
	    	$Name=$rd['Name'];
	    	$numbers=$rd['numbers'];
	    	$password=$rd['password'];
		$message="Hello $Name, $user_otp is the OTP to complete your Registration with Ease’n’ Up.";
	$message=urlencode($message);
	$sms ="http://login.aquasms.com/sendSMS?username=ventexint@gmail.com&message=$message&sendername=EASnUP&smstype=TRANS&numbers=$numbers&apikey=eebcced9-0ca1-4a6f-940b-c616276e2ec9";
	//$sms=urlencode($sms);
	$result=file_get_contents($sms);
 if(mysqli_query($con, $sql)){
 echo 'OTP sent Successfully';
 }
	}
}
?>



<!DOCTYPE html>
<html lang="en">
  <meta charset="UTF-8">
  <meta content='yes' name='apple-mobile-web-app-capable'/>
<meta content='yes' name='mobile-web-app-capable'/>
  <meta name="viewport" content="width=device-width, initial-scale=1.0">
  <meta http-equiv="X-UA-Compatible" content="ie=edge">
  <link rel="stylesheet" href="./styles.css">
  <link rel="manifest" href="./manifest.webmanifest">
    <link rel="assetlinks" href="assetlinks.json">
 <script src='https://code.jquery.com/jquery-2.1.3.min.js'></script>

    <title>OTP Verify</title>
    <link href="assets/css/bootstrap.css" rel="stylesheet">
    <link href="assets/font-awesome/css/font-awesome.css" rel="stylesheet" />
    <link href="assets/css/style.css" rel="stylesheet">
    <link href="assets/css/style-responsive.css" rel="stylesheet">
  </head>

  <body>
	  <div id="login-page">
	  	<div class="container">
      
	  	
		    <form method="post" action="" name="frmadminlogin" onSubmit="return validateform()">
		        <h2 class="form-login-heading">OTP Verify</h2>
                  <p style="color:#F00; padding-top:20px;" align="center">
                    <?php echo $_SESSION['action1'];?><?php echo $_SESSION['action1']="";?></p>
		        <div class="login-wrap">
		           
		            <br>
		            <input type="text" name="user_otp" id="user_otp" class="form-control" placeholder="Enter Your Six Digit OTP"><br >
		            <input  name="submit" id="submit" value="Verify" class="btn btn-theme btn-block" type="submit">
		         
		      <a href="playerset.php" class="btn btn-theme btn-block" >Skip</a>
		      </form>	  	
	  	   <br>
	  	   <form name="otp" method='post'>	 
	  	   <button name="otp" class="btn btn-theme btn-block" type="submit" style="width:150px;">Resend OTP</button>
	  	   </form>
	  </div>
	  	</div>
	  </div>
    <script src="assets/js/jquery.js"></script>
    <script src="assets/js/bootstrap.min.js"></script>
    <script type="text/javascript" src="assets/js/jquery.backstretch.min.js"></script>
    <script>
        $.backstretch("assets/img/login-bg.jpg", {speed: 500});
    </script>

<script src="./index.js" type="module"></script>
  </body>
</html>

Anon7 - 2022
AnonSec Team