📄 cardok.php
字号:
<?php
//error_reporting(0);
include_once('global.php');
?>
<?php
if (isset($_POST['account']) && isset($_POST['pasword']) && isset($_POST['usersn'])) {
$au = new DB($db_host, $db_user, $db_pwd, $AU_db, $pconnect);
$itembuy = new DB($db_host, $db_user, $db_pwd, $AUitem_db, $pconnect);
unset($db_host, $db_user, $db_pwd, $AUlogin_db, $AU_db, $pconnect);
$account = $_POST['account'];
$pasword = $_POST['pasword'];
$usersn = $_POST['usersn'];
if (!(ValidData($account) && ValidData($pasword))) {
ErrorPurchase("帐号或密码不合法");
} else {
$query ="
SELECT UserSN, UserID, UserGender, Password
FROM audition.userinfo
WHERE UserID = '$account'
";
$check = $au->query($query);
$count = $au->num_rows($check);
if ($count != 1) {
ErrorPurchase("帐号或密码不合法");
} else {
$result = $au->fetch_array($check);
if ($account != $result['UserID'] || $pasword != $result['Password'] || $usersn != $result['UserSN']) {
ErrorPurchase("帐号或密码不合法");
} else {
/* 检查VIP房间卡有没到期情况 */
$query = "
SELECT RecvSN, ItemID, RecvDate
FROM present_list
WHERE RecvSN = '$usersn' and ItemID = '$upower' and date_add(RecvDate,INTERVAL 12 HOUR) > now() or RecvSN = '$usersn' and ItemID = '$upower' and RecvDate='0000-00-00 00:00:00'
";
$check = $itembuy->query($query);
$count = $itembuy->num_rows($check);
if ($count >= 1 && $upower=='3043') {
EndOfPage('对不起,您的VIP房间卡还没到期。<br />不可以重复购买,请过期了再来买吧<br />请选择其他功能道具!');
}
// 取得玩家所拥有的CASH
$query ="
SELECT UserSN, Cash
FROM itemdb.usercash
WHERE UserSN = '$result[UserSN]'
";
$check = $itembuy->query($query);
$count = $itembuy->num_rows($check);
$result = $itembuy->fetch_array($check);
$Cash = $result['Cash'];
$upower = $_POST['upower'];
$query ="
SELECT Cash
FROM avatarlist
WHERE ItemID = '$upower'
";
$check = $itembuy->query($query);
$count = $itembuy->num_rows($check);
$result = $itembuy->fetch_array($check);
if ($Cash < $result['Cash']) {
ErrorPurchase("您拥有的M币不够!您想蒙混过关呀!");
} else {
$Cash = $Cash - $result['Cash'];
$date = date('Y-m-d H:i:s');
$upower = $_POST['upower'];
$query ="
INSERT INTO `present_list`
(`SendSN`, `SendNick`, `RecvSN`, `RecvNick`, `ItemID`, `Period`, `UseCount`, `SendDate`)
SELECT DISTINCT uwc.UserSN, ui.UserNick, uwc.UserSN, ui.UserNick, '$upower', 365, 60, now()
FROM usercash uwc
LEFT JOIN audition.userinfo ui
ON ui.UserSN = uwc.UserSN
WHERE uwc.UserSN = '$usersn'
";
$result = $itembuy->query($query);
$PresentID = mysql_insert_id();
$query = "
INSERT INTO `arrive_stat`
(`UserSN`,`PresentID`,`Type`,`UpdateTime`)
VALUES
('$usersn', '".$PresentID."', 6, now())
";
$result = $itembuy->query($query);
$query ="
UPDATE usercash ui
SET ui.cash = '$Cash'
WHERE UserSN = '$usersn'
";
$result = $itembuy->query($query);
$query ="
SELECT UserSN, UserID, Password, UserNick, Exp, Level
FROM audition.userinfo
WHERE UserSN = '$usersn'
";
$check = $au->query($query);
$result = $au->fetch_array($check);
mysql_close();
echo '<table border="1" cellspacing="0" cellpadding="1">';
echo '<tr align="center"> <td width="center" colspan="4"><B>人物资料列表</B></td></tr>';
echo '<tr align="center">
<td width="15%"><font color="#000000"><B>玩家帐号</B></font></td>
<td width="15%"><B>'.$result['UserID'].'</B></td>
<td width="15%"><font color="#000000"><B>玩家经验</B></font></td>
<td width="15%"><B>'.$result['Exp'].'</B></td>
</tr>';
echo '<tr align="center">
<td width="15%"><font color="#000000"><B>玩家昵称</B></font></td>
<td width="15%"><B>'.$result['UserNick'].'</B></td>
<td width="15%"><font color="#000000"><B>玩家等级</B></font></td>
<td width="15%"><B>'.$result['Level'].'</B></td>
</tr>';
echo '<tr align="center"><td colspan="4"><BR><b>购买道具成功!请到游戏礼品盒接收!</b></td></tr>';
echo '<tr align="center"><td colspan="4"><a href="#" onclick="javascript:window.close()">关闭窗口</a></td></tr>';
echo '</table>';
}
}
}
}
}
function EndOfPage($ErrMsg)
{
ErrorPurchase($ErrMsg);
die(0);
}
?>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -