<?
  include 'inc_hyipguyz/config.inc.php';
  $dbconn = db_open ();
  if (!$dbconn)
  {
    print 'Cannot connect mysql';
    exit ();
  }

$ALTERNATE_PHRASE_HASH = $settings['perfectmoney_md5alt'];

$hash = strtoupper (md5 ($frm['PAYMENT_ID'].':'.$frm['PAYEE_ACCOUNT'].':'.$frm['PAYMENT_AMOUNT'].':'.$frm['PAYMENT_UNITS'].':'.$frm['PAYMENT_BATCH_NUM'].':'.$frm['PAYER_ACCOUNT'].':'.$ALTERNATE_PHRASE_HASH.':'.$frm['TIMESTAMPGMT']));

  if ($hash == strtoupper ($frm['V2_HASH']) && $frm['PAYEE_ACCOUNT'] == $settings['perfectmoney_acc'] && $frm['PAYMENT_UNITS'] == 'USD')
  {
    $email = $frm['email'];
    $amount = $frm['PAYMENT_AMOUNT'];
    $batch = $frm['PAYMENT_BATCH_NUM'];
    $account = $frm['PAYER_ACCOUNT'];
    $ouracc = $frm['PAYER_ACCOUNT'];


   if ($frm['action'] == 'upgrade')
    {
      $lid = $frm['lid'];
      $support_banner =  quote($frm['support_banner']);
      $ps =   intval ($frm['ps']);
      $q = 'select * from hl_listings where id='.$lid;
      $sth = mysql_query ($q);      
      $row = mysql_fetch_array ($sth);
      $email = $row['email'];
      $sitename = $row['name'];
      $paidsticky_date = $row['paidsticky_date'];
      $paidsticky = $row['paidsticky'];
      $s_banner = $row['support_banners'];
      if ($support_banner) $s_banner = $support_banner;
      if ($ps)
       {
           if ((!$paidsticky_date) || ($paidsticky_date='0000-00-00'))
            {
               $p_date = date("Y-m-d",strtotime('31 days'));
            }
            else
            {
             $dt = strtotime(date('Y-m-d'));
             $dp = strtotime($paidsticky_date);
             $df = ($dp-$dt)/3600/24;
                if ($df >0)
                 {
                 $ds = 31 + $df;
                 }
                else
                 {
                  $ds = 31;
                 }
             $ds = $ds . ' days';
             $p_date = date("Y-m-d",strtotime($ds));
            }
       }
       else
       {
       $ps = $paidsticky;
       $p_date =  $paidsticky_date;
       }
        
   $q = 'update hl_listings set support_banner="'.$s_banner.'",paidsticky='.$ps.',paidsticky_date="'.$p_date.'" where id=' .$lid;
   mysql_query ($q);

   $subject =  'You have Successful Paid to BUY4PHP.COM!';
   $message  = 'Congratulations!'."\r";
   $message .= 'You have successfully upgrade Listing '.$sitename ."\r";
   $message .= 'Thank you very much for availing our services.'."\r";
   @mail ($email, $subject, $message, 'From: '.$settings['admin_email']);

   $subject2 =  $sitename . ' have upgraded!';
   $message2  = 'Congratulations!'."\r";
   $message2 .= $sitename . ' have upgraded!'."\r";
   @mail ($settings['admin_email'], $subject2, $message2, 'From: '.$settings['admin_email']);

    }


    if ($frm['action'] == 'checkstatus')
    {

      $type = $frm['type'];
      $support_banner =   $frm['support_banner'];
      $email = $frm['email'];
      $ps =   intval ($frm['ps']);


    $srcstr="abcdefghijklmnopqrstuvwxyz0123456789"; 
    mt_srand(); 
    $paymentcode =''; 
    for($i=0;$i<40;$i++){ 
    $paymentcode.=$srcstr[mt_rand(0,35)]; 
    }
    session_register("paymentcode"); 
    $_SESSION['paymentcode'] = ($paymentcode);

    $q = 'insert into hl_batch set used=0,ps="'.$ps.'",email="'.$email.'",support_banner="'.$support_banner.'",batchid ="' . $paymentcode.'",type='.$type;

    mysql_query ($q);
 
   $subject =  'You have Successful Paid to BUY4PHP.COM!';

   $message  = 'Congratulations!'."\r";
   $message .= 'You have successfully Paid For Listing.'."\r";
   $message .= 'The Payment Code is <b>'.$paymentcode.'</b>'."\r";
   $message .= 'Please copy this code then go to '."\r";
   $message .= 'http://hlspremium.buy4php.com/submit_site.html'."\r";
   $message .= 'to proceed with <b> Step 2 - Add & Submit </b>'."\r";
   $message .= 'Thank you very much for availing our services.'."\r";
   @mail ($email, $subject, $message, 'From: '.$settings['admin_email']);


    }

    else if ($frm['action'] == 'ad_payment')
    {
	$ad_type = $frm['ad_type'];
	$ad_duration = $frm['ad_duration'];
	$ad_website_url = $frm['ad_website_url'];
	$ad_banner_url = $frm['ad_banner_url'];
	$ad_alt_text = $frm['ad_alt_text'];
	$ad_text = $frm['ad_text'];

  $subject =  $settings['site_name'] . ' AD Request Paid Successful!';
    
  $text = 'Congratulations! 
  You have successfully transfered $'.$amount.' from PerfectMoney Account '.$account.' to our PerfectMoney account which batch is #'.$batch.'!
  
  Below is the Details:
  
  Type: '.$ad_type.'
  Duration: '.$ad_duration.'
  URL: '.$ad_banner_url.'
  Banner: '.$ad_banner_url.'
  Alt Text: '.$ad_alt_text.'
  Text: '.$ad_text.'
  
  Thanks!
  '.$settings['site_name'];  
  
  
  $text2 = 'Congratulations!
   Someone just paid $'.$amount.' from PerfectMoney account '.$account.' to our PerfectMoney Account which batch is #'.$batch.'!
   
   
  Below is the Details:
  
  Type: '.$ad_type.'
  Duration: '.$ad_duration.'
  URL: '.$ad_banner_url.'
  Banner: '.$ad_banner_url.'
  Alt Text: '.$ad_alt_text.'
  Text: '.$ad_text.'
  
  SO COOL!
   ';
    
@mail ($settings['admin_email'], 'AD Fee paid successful', $text2, 'From: '.$settings['system_email']);
@mail ($email, $subject, $text, 'From: '.$settings['admin_email']);
    }

  }

  db_close ($dbconn);
  print 'done';
  exit ();
?>

