Advertisement
Guest User

Untitled

a guest
Aug 5th, 2017
62
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.35 KB | None | 0 0
  1. <?
  2. session_start();
  3. include 'includes/db_connect.php';
  4. include("function.php");
  5.  
  6.  
  7. if (!$_SESSION['username'] || !$_SESSION['email']){
  8. $username = $_POST['Username'];
  9. $password=sha1(PWENC_SALT.$_POST['Password']);
  10.  
  11. $pin = $_POST['Pin'];
  12. $ip = $_SERVER['REMOTE_ADDR'];
  13. $domain = $_SERVER['REMOTE_ADDR'];
  14.  
  15. $username=strtolower($username);
  16.  
  17.  
  18.  
  19. ///check INFO
  20. $sql = mysql_query("SELECT * FROM `users` WHERE `username`='$username' AND `password`='$password' AND `activated`='1' AND `pin`='$pin' LIMIT 1");
  21. $login_check = mysql_num_rows($sql);
  22.  
  23.  
  24. ///other
  25. if ($login_check == '1'){
  26.  
  27.  
  28.  
  29.  
  30.  
  31. ini_set(session.cookie_lifetime, "3600");
  32. session_register('username');
  33. $_SESSION['username'] = $username;
  34. session_register('email_address');
  35. $_SESSION['email_address'] = $email_address;
  36.  
  37.  
  38.  
  39.  
  40.  
  41.  
  42. $timestamp = time();
  43. $timeout = $timestamp-$timeoutseconds;
  44. $cool = gmdate('Y-m-d h:i:s');
  45. mysql_query("UPDATE users SET lastlogin='$cool' WHERE username='$username'");
  46. mysql_query("UPDATE users SET online='$timestamp' WHERE username='$username'");
  47.  
  48. mysql_query("UPDATE users SET ip='$domain' WHERE username='$username'");
  49.  
  50.  
  51.  
  52. ?>
  53. <meta http-equiv="Refresh" content=0;url=news.php>
  54. <?
  55.  
  56. } else {
  57. echo "wrong username/password/pin combination";"<br>"."<br>";
  58.  
  59. include 'index.php';
  60. }}
  61. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement