HEX
Server: Apache
System: Linux server2.voipitup.com.au 4.18.0-553.104.1.lve.el8.x86_64 #1 SMP Tue Feb 10 20:07:30 UTC 2026 x86_64
User: posscale (1027)
PHP: 8.2.29
Disabled: exec,passthru,shell_exec,system
Upload Files
File: /home/posscale/subdomains/ecc/index_22-7-13.php
<?
	error_reporting(0);
	include("includes/php/config.php");
	include("includes/php/db.php");
	include("includes/php/debug.php");
	
	
	
	$uri = explode('/', $_GET['uri']);
	
	switch($uri[0])
	{


		case 'test':

		     echo "thae date is... --> ". "\n";
             echo date( "d/m/Y", time() );

		break;
		

		case 'checkinfo':
            $app_name = $_POST['app_name'];
	//		$fields = '*';
	//		$where =  '`id` = "53"';
	 		$mac = $_POST['mac'];
	        $cpu = $_POST['cpu'];
         	$motherboard = $_POST['motherboard'];
         	$date = $_POST['date'];

 //    Search for mac address
if ( $mac <>""){
	$sql = 'SELECT * FROM `users` WHERE `pcmac` = "'.$mac.'" AND `Name` = "'.$app_name.'"';
			$result = db_query($sql);
	$sql1 = 'SELECT * FROM `Software_Versions` WHERE `app_name` = "'.$app_name.'"';
           $sv_result = db_query($sql1);

     if ( $result['pcmac'][0] == $mac ) {
        $i=0;
		while($result['Id'][$i]<>"") {
			if ( $i > 0) {echo "|";}
            echo $result['Name'][$i]."~".$result['pbxver'][$i]."~".$result['pbxuid'][$i]."~".$result['pcmac'][$i]."~".$result['pcmb'][$i]."~".$result['pchdd'][$i]."~".$result['installed'][$i]."~".$result['regustered'][$i]."~".$result['regocode'][$i]."~".$sv_result['1xPrice'][0];
            $i++;
            }
        break;
     }}

//    Search for PC MAin Board address
if ( $motherboard <>""){
	$sql = 'SELECT * FROM `users` WHERE `pcmb` = "'.$motherboard.'" AND `Name` = "'.$app_name.'"';
			$result = db_query($sql);
    $sql1 = 'SELECT * FROM `Software_Versions` WHERE `app_name` = "'.$app_name.'"';
           $sv_result = db_query($sql1);
           
     if ( $result['pcmb'][0] == $motherboard ) {
        $i=0;
		while($result['Id'][$i]<>"") {
			if ( $i > 0) {echo "|";}
            echo $result['Name'][$i]."~".$result['pbxver'][$i]."~".$result['pbxuid'][$i]."~".$result['pcmac'][$i]."~".$result['pcmb'][$i]."~".$result['pchdd'][$i]."~".$result['installed'][$i]."~".$result['regustered'][$i]."~".$result['regocode'][$i]."~".$sv_result['1xPrice'][0];
            $i++;
            }
        break;
     }}

//    Search for PC CPU ID address
if ( $cpu <>""){
	$sql = 'SELECT * FROM `users` WHERE `pchdd` = "'.$cpu.'" AND `Name` = "'.$app_name.'"';
			$result = db_query($sql);
	$sql1 = 'SELECT * FROM `Software_Versions` WHERE `app_name` = "'.$app_name.'"';
           $sv_result = db_query($sql1);
           
       if ( $result['pchdd'][0] == $cpu ) {
        $i=0;
		while($result['Id'][$i]<>"") {
			if ( $i > 0) {echo "|";}
            echo $result['Name'][$i]."~".$result['pbxver'][$i]."~".$result['pbxuid'][$i]."~".$result['pcmac'][$i]."~".$result['pcmb'][$i]."~".$result['pchdd'][$i]."~".$result['installed'][$i]."~".$result['regustered'][$i]."~".$result['regocode'][$i]."~".$sv_result['1xPrice'][0];
            $i++;
            }
        break;

     } }
 if ( $date <>""){
    $sql = 'INSERT INTO `users` SET `name` = "'.$app_name.'",`pcmac` = "'.$mac.'",`pcmb` = "'.$motherboard.'",`pchdd` = "'.$cpu.'",`installed` = "'.date( "d/m/Y", time() ).'"';
			$result = db_query($sql);

//			echo "MYSQL QUERY ==> ".$result['mysql_query']."\n";
//			echo "MYSQL ERROR ==> ".$result['mysql_error']."\n";
     if ( $mac <>""){
	$sql = 'SELECT * FROM `users` WHERE `pcmac` = "'.$mac.'" AND `Name` = "'.$app_name.'"';
			$result = db_query($sql);
	$sql1 = 'SELECT * FROM `Software_Versions` WHERE `app_name` = "'.$app_name.'"';
           $sv_result = db_query($sql1);

     if ( $result['pcmac'][0] == $mac ) {
        $i=0;
		while($result['Id'][$i]<>"") {
			if ( $i > 0) {echo "|";}
            echo $result['Name'][$i]."~".$result['pbxver'][$i]."~".$result['pbxuid'][$i]."~".$result['pcmac'][$i]."~".$result['pcmb'][$i]."~".$result['pchdd'][$i]."~".$result['installed'][$i]."~".$result['regustered'][$i]."~".$result['regocode'][$i]."~".$sv_result['1xPrice'][0];
            $i++;
            }
        break;
     }} }
     // elseif( $result['pcmb'][0] == $motherboard) {
  //           echo $result['pbxuid'][0]."\n".$result['pcmac'][0]."\n".$result['pcmb'][0]."\n".$result['pchdd'][0]."\n".$result['installed'][0]."\n";
  //   } elseif( $result['pcmb'][0] == $motherboard) {
  //           echo $result['pbxuid'][0]."\n".$result['pcmac'][0]."\n".$result['pcmb'][0]."\n".$result['pchdd'][0]."\n".$result['installed'][0]."\n";
  //   } else {
  //
  //   }
      
         echo "No_Results";
      

      
      
        //    Echo "MYSQL QUERY ==> ".$SQL."\n";
	//		echo "MYSQL QUERY ==> ".$result['mysql_query']."\n";
	//		echo "MYSQL ERROR ==> ".$result['mysql_error']."\n";
	//		echo "REULTS ==> ";
	//		print_r($result)."\n";
	//		echo($result)."\n";
    //        echo "======================================================= \n";
     //       echo $result['pbxuid'][0]."\n".$result['pcmac'][0]."\n".$result['pcmb'][0]."\n".$result['pchdd'][0]."\n".$result['installed'][0]."\n";
    //        echo "======================================================= \n";
       break;

		case 'updateinfo':
			$app_name = $_POST['app_name'];
    		$mac = $_POST['mac'];
	//		$where =  '`id` = "53"';
	 		$company = $_POST['company'];
	        $name = $_POST['name'];
         	$email = $_POST['email'];
         	$number = $_POST['number'];


    //        $fields[] = '`'.$data_split[0].'` = "'.$data_split[1].'"';
	//		  $wheres[] = '`'.$where_split[0].'` = "'.$where_split[1].'"';

    //                             SET '.implode(', ', $fields).' WHERE '.implode(' AND ', $wheres);
            if ( $app_name == "" or $mac == ""){
                 echo "SQL_ERROR~" ;
                 break;
        }

           	$sql = 'UPDATE `users` SET `custbusiness` = "'.$company.'", `custfirst` = "'.$name.'", `custemail` = "'.$email.'", `custph` = "'.$number.'"'.
            ' WHERE `Name` = "'.$app_name.'" AND `pcmac` = "'.$mac.'"';

            $result = db_query($sql);

          //  Need to send a notification email to me.



        if ( $result['mysql_error'] <> "") {
           echo "SQL_ERROR~" ;
            break;
        }
          echo "SQL_OK~";

         $to = "registrations@voipitup.com.au";
         $subject = "Registration Request for ".$name." for ".$app_name;
         $body = "Hi me,\n\nPlease send an invoice to \n\n".$email."  \n\n".$company."  \n\n".$name."  \n\n".$number."  \n\n".$result['Id']."  \n\n";
         if (mail($to, $subject, $body)) {
           echo("Message_successfully_sent~");
            } else {
               echo("Message_failed~");
          }


	       $sql = 'SELECT * FROM `users` WHERE `pcmac` = "'.$mac.'" AND `Name` = "'.$app_name.'"';
			$result = db_query($sql);
           echo $result['Id'][0];

		break;

   //  ================================================================================================================================================
   //  ================================================================================================================================================
   //  ================================================================================================================================================
   
   
        		case 'checkrego':
            $app_name = $_POST['app_name'];
	 		$mac = $_POST['mac'];
	        $cpu = $_POST['cpu'];
         	$motherboard = $_POST['motherboard'];
         	$code = $_POST['code'];

 //    Search for mac address
       if ( $mac <>""){
	      $sql = 'SELECT * FROM `users` WHERE `pcmac` = "'.$mac.'" AND `Name` = "'.$app_name.'"';
		  $result = db_query($sql);

       if ( $result['pcmac'][0] == $mac ) {

           if ( $result['regustered'][0] == "1" and $result['regocode'][0] <> ""){
              //  Software was registered befor on this PC
               if ( $result['pcmac'][0] == $mac and $result['pcmb'][0] == $motherboard and $result['pchdd'][0] == $cpu){
                 echo "Prev_rego~".$result['regocode'][0];
               }}
           else {
                $sql = 'SELECT * FROM `Reg_Keys` WHERE `key` = "'.$code.'" AND `app_name` = "'.$app_name.'"';
		        $result2 = db_query($sql);
    //          print_r($result2)."\n";
   //           echo "SQL ROws -->".$result2['mysql_num_rows'];        custfirst
                if ( $result2['mysql_num_rows'] == "0"){
                   echo "Code_Error";
                   break;
                }

                if ( $result2['no_of_keys'][0] -  $result2['keys_used'][0] > "0"){
                   $keys = $result2['keys_used'][0] + "1";
                   $sql = 'UPDATE `Reg_Keys` SET `keys_used` = "'.$keys.'" WHERE `id` = "'.$result2['id'][0].'"';
                   $result3 = db_query($sql);
       //            print_r($result3)."\n";

                   $sql = 'UPDATE `users` SET `regocode` = "'.$code.'", `regustered` = "1" WHERE `Id` = "'.$result['Id'][0].'"';
                   $result3 = db_query($sql);
         //          print_r($result3)."\n";
                   echo "Code_OK~".$code;
                }
                else {
                      echo "Code_Limit~";
                       $codeid = $result['Id'][0] * 7 + 1473;
                       echo $codeid."~";
                      $to = "registrations@voipitup.com.au, ".$result['email'];
                      $subject = "Limit Exceeded...  Registration Request for ".$result['custfirst'][0]." for ".$app_name;
                      $body = "Registration Limit Exceeded,\n\nPlease Register for more Codes. \n\n".$email."  \n".$company."  \n".$name."  \n".$number."  \n".$codeid."  \n\n"
                      .' <html> <head>
                             <a href="http://ecc.posscales.com.au/Registration.php?name=PSS_QD&amp;id=1234">Register Here</a>
                      </html> </head> ';


                      if (mail($to, $subject, $body)) {
                          echo("Message_successfully_sent~");
            } else {
               echo("Message_failed~");
                           }
                }
            }
        break;
     }
       break;
    }




//		default:
//			$sql = "DESCRIBE `test_table`;";
//			$result = db_query($sql);
//
//			$sql = "SELECT * FROM `test_table`";
//			$data = db_query($sql);

?>

<?
	}
  //  <a href="Main.php" target="_tab">Quadro dial registration</a>
     // header('location: Main.php');
//  <?php
//  echo '<a href="Main.php?id=27463" target="_tab">VoIP It UP Quadro Dial Registration.</a>';


                         ;

	
?>