Advertisement
Guest User

Untitled

a guest
Feb 14th, 2016
114
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 6.03 KB | None | 0 0
  1. <?php
  2. include('core.php');
  3. session_start();
  4.  
  5. if(!session_is_registered(username)){
  6.  
  7. if(isset($_POST['username']) && isset($_POST['password'])){
  8. $username = addslashes($_POST['username']);
  9. $sql = mysql_query("SELECT * FROM users WHERE username = '".$username."' LIMIT 1") or die(mysql_error());
  10. $row2s = mysql_fetch_array($sql);
  11. $password = HoloHash($_POST['password'], $row2s[username]);
  12. $remember_me = $_POST['_login_remember_me'];
  13.  
  14.  
  15. if(empty($username) || empty($password)){
  16. $login_error = "Per favore, non lasciare spazi bianchi.";
  17. } else {
  18. $sql = mysql_query("SELECT id FROM users WHERE username = '".$username."' AND password = '".$password."'") or die(mysql_error());
  19. $rows = mysql_num_rows($sql);
  20. if($rows < 1){
  21. $login_error = "I dati forniti sembrano essere errati";
  22. } else {
  23. $userdata = mysql_fetch_assoc($sql);
  24. $userid = $userdata['id'];
  25. $check = mysql_query("SELECT * FROM bans WHERE value = '".$username."'LIMIT 1") or die(mysql_error());
  26. $is_banned = mysql_num_rows($check);
  27. if($is_banned < 1){
  28. $_SESSION['username'] = $username;
  29. $_SESSION['password'] = $password;
  30. if($remember_me == "true"){
  31. setcookie("remember", "remember", time()+60*60*24*100, "/");
  32. setcookie("rusername", $_SESSION['username'], time()+60*60*24*100, "/");
  33. setcookie("rpassword", sha1("zomq".$_SESSION['password']), time()+60*60*24*100, "/");
  34. }
  35. $sql3 = mysql_query("UPDATE users SET lastvisit = now() WHERE username = '".$username."'") or die(mysql_error());
  36. header("location:security_check.php"); exit;
  37. } else {
  38. $bandata = mysql_fetch_assoc($check);
  39. $reason = $bandata['reason'];
  40. $expire = $bandata['expire'];
  41.  
  42.  
  43. if($stamp_now < $stamp_expire){
  44. $login_error = "Sei stato bannato! La ragione del ban &egrave; \"".$reason."\". Il tuo ban termina il ".$expire.".";
  45. } else { // ban expired
  46. //mysql_query("DELETE FROM users_bans WHERE userid = '".$userid."' OR ipaddress = '".$remote_ip."' LIMIT 1") or die(mysql_error());
  47. $_SESSION['username'] = $username;
  48. $_SESSION['password'] = $password;
  49. if($remember_me == "true"){
  50. setcookie("remember", "remember", time()+60*60*24*100, "/");
  51. setcookie("rusername", $_SESSION['username'], time()+60*60*24*100, "/");
  52. setcookie("rpassword", sha1("zomq".$_SESSION['password']), time()+60*60*24*100, "/");
  53. }
  54.  
  55. header("location:security_check.php"); exit;
  56. }
  57. }
  58. }
  59. }
  60. }
  61. if(isset($_GET['error'])){
  62. $errorno = $_GET['error'];
  63. if($errorno == 1){
  64. $login_error = "Password o nome utente invalidi.";
  65. } elseif($errorno == 2){
  66. $login_error = "Invalida Username o Password.";
  67. } elseif(isset($_GET['ageLimit']) && $_GET['ageLimit'] == "true"){
  68. $login_error = "Sei troppo giovane per Giocare Qui.";
  69. }
  70. }
  71. ?>
  72. <html lang="CO">
  73. <head>
  74. <title>HROB - Hotel</title>
  75. <meta charset="utf-8">
  76. <link rel="stylesheet" type="text/css" href="http://fonts.googleapis.com/css?family=Ubuntu:regular,bold&subset=Latin">
  77. <style type="text/css">
  78. body{
  79. font-family: Ubuntu, "times new roman", times, roman, serif;
  80. color: #7ecaee;
  81. }
  82. </style>
  83. <link rel="stylesheet" type="text/css" href="./habosos/plantillas/css/estilos.css">
  84. <script src="alert/dist/sweetalert-dev.js"></script>
  85. </head>
  86. <body>
  87. <header>
  88. <?php
  89. if(isset($_POST['username'])) {
  90. echo $login_error;
  91. }
  92. ?>
  93. <form action="" method="post">
  94. <div class="login" id="login">
  95. <table align="left" style="position: relative;left: 100px;">
  96.  
  97.  
  98. </table>
  99. <label><?php echo $lingua['user']; ?> <input type="text" name="username" placeholder="" <?php if(isset($error)) {?>id="error"<?php } ?>></label>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
  100. <?php echo $lingua['pass']; ?> <input type="password" name="password" placeholder="" <?php if(isset($error)) {?>id="error"<?php } ?>>
  101. <input type="submit" value="<?php echo$lingua['log-in']; ?>" class="btonlogin" name="entrar"><br>
  102.  
  103. </div>
  104. </form>
  105. </header>
  106. <div class="registrobx">
  107. <div class="txbt">
  108. <?php echo $lingua['y.welk']; ?><br><br>
  109. <a href="/quickregister/start.php"><button class="btonreg"><?php echo $lingua['registrati.g']; ?></button></a>
  110. </div>
  111. </div>
  112. <div class="ntc">
  113.  
  114. <div class="reloj"><a href="#un" class="txtnt"><?php echo $lingua['news']; ?></a></div>
  115. </div>
  116. <div class="contentc" style="height:600px;">
  117.  
  118. <div class="txtun"><?php echo $lingua['last.news']; ?></div><br>
  119. <?php
  120. if($countrycode == "IT") {
  121. $var = '"1"';
  122. }
  123. else {
  124. $var = '"2"';
  125. }
  126. $n = mysql_query("SELECT * FROM cms_news WHERE lang = ".$var." ORDER BY id DESC LIMIT 3") or die(mysql_error());
  127.  
  128. function my_htmlentities($var, $qs = ENT_COMPAT, $charset = 'ISO-8859-1')
  129. {
  130. $search = array('ì', 'è', 'é', 'ò', 'à', 'ù');
  131. $replace = array('&igrave;', '&egrave;', '&eacute;', '&ograve;', '&agrave;', '&ugrave;');
  132.  
  133. $var = str_replace($search, $replace, $var);
  134. $var = htmlentities($var, $qs, $charset, false);
  135.  
  136. return $var;
  137. }
  138. ?>
  139. <?php $i = 0; while($noticia = mysql_fetch_assoc($n)){ $i++; ?>
  140. <table align="left" id="un">
  141. <td>
  142. <div class="noticiaconte" align="center">
  143. <div class="promo" style="background-image: url('<?php echo $noticia['topstory']; ?>');"></div>
  144. <br><div class="ttlopro"><?php echo my_htmlentities($noticia['title']); ?></div>
  145. <div class="descpro"><?php echo my_htmlentities($noticia['short_story']); ?></div>
  146. <br>
  147. <div class="btonpro"><a href="/quickregister/start.php"><?php echo $lingua['reg.now']; ?></a></div>
  148. <br>
  149. <hr noshade="noshade" color="#0B6395" size="1">
  150. </div>
  151. </td>
  152. </table>
  153. <?php } ?>
  154. </div>
  155.  
  156. <?php } else {
  157. header("location:me.php");
  158. }
  159. ?>
  160. <!-- PopMyAds.com Popunder Code for hrob.me -->
  161.  
  162. <script type="text/javascript">
  163. var pmauid = '15075';
  164. var pmawid = '18481';
  165. var fq = '';
  166. </script>
  167. <script type="text/javascript" src="http://cdn.popmyads.com/pma.js"></script>
  168.  
  169. <!-- PopMyAds.com Popunder Code End -->
  170. </body>
  171. </html>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement