11-13-2012, 04:36 PM
Hi, I wrote the wrong password, I try to make a site but please please do not throw off a ready script
Take
<?php
$ip = "localhost";
$sqluser = "root";
$sqlpw = "";
$userdb = "newproject_db_auth";
//Save PW in plain text? yes = on, no = off
$plain = "no";
$salt = "phoohie1yaihooyaequae7PuiWoeNgahjieth3ru3yeeghaepahb7aeYaipe2we6zii6mai6uweig8siasheinoungeoyeiLohShi2xoh2xi8ooxee9ahpiehahc9Phe";
function clean_str($str) {
$str = @trim($str);
if(get_magic_quotes_gpc()) {
$str = stripslashes($str);
}
$str = mysql_real_escape_string($str);
$str = preg_replace("/[^a-zA-Z0-9@.]/" , "" , $str);
return $str;
}
If (isset($_POST['username']))
{
if (empty($_POST['username']) OR empty($_POST['password']) OR empty($_POST['password2']) OR empty($_POST['email']))
{
echo "Þшøñúð! Þôýþ øûø ýõÑÂúþûьúþ ÿþûõù ÿуÑÂты. Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ";
?>
<a href="register.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
<?php
die;
}
$user = htmlspecialchars(clean_str($_POST['username']));
$pass = htmlspecialchars(clean_str($_POST['password']));
$pass2 = htmlspecialchars(clean_str($_POST['password2']));
$email = htmlspecialchars(clean_str($_POST['email']));
If ($pass != $pass2)
{
echo "Þшøñúð! ßðрþûь 1 ø ÿðрþûь 2 ýõ øôõýтøчýы. Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ";
?>
<a href="register.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
<?php
die;
}
$conn = new mysqli($ip,$sqluser,$sqlpw,$userdb);
if (mysqli_connect_errno() == 0)
{
$qusr = "SELECT * FROM bg_user WHERE user_id = '".$user."';";
$resusr = $conn->query($qusr);
If ($resusr->num_rows > 0)
{
echo "Þшøñúð! ØüѠÿþûь÷þòðтõûѠ÷ðýÑÂтþ. Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ";
?>
<a href="register.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
<?php
die;
}
$qmail = "SELECT * FROM bg_user WHERE email = '$email'";
$mailres = $conn->query($qmail);
if ($mailres->num_rows > 0)
{
echo "Þшøñúð! E-mail ðôрõѠуöõ ÷ðýÑÂÑ‚. Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ ";
?>
<a href="register.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
<?php
die;
}
$realpass = hash("sha256",$user.$salt.$pass);
If ($plain == "no")
{
$insertusr = "INSERT INTO bg_user (user_id, passwd, email) VALUES (?, ?, ?)";
$qInsert = $conn->prepare ($insertusr);
$qInsert->bind_param("sss",$user,$realpass,$email);
$qInsert->execute();
if ($qInsert->affected_rows == 1)
{
echo "Òðш ðúúðуýт уÑÂÿõшýþ ÷ðрõóøÑÂтрøрþòðý ÿрøÑÂтýþù øóры. Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ ";
?>
<a href="index.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
<?php
die;
}
Else;
{
echo "Þшøñúð! ßþöðûуùÑÂтð, ÑÂòÑÂöøтõÑÂÑŒ ѠðôüøýøÑÂтрðтþрþü! Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ";
die;
?>
<a href="index.php">ÿõрõхþô.</a>
<?php
}
}
ElseIf ($plain == "yes");
{
$insertusr = "INSERT INTO bg_user (user_id, truepasswd, passwd, email) VALUES (?, ?, ?, ?)";
$qInsert = $conn->prepare ($insertusr);
$qInsert->bind_param("ssss",$user,$pass,$realpass,$email);
$qInsert->execute();
if ($qInsert->affected_rows == 1)
{
echo "Òðш ðúúðуýт уÑÂÿõшýþ ÷ðрõóøÑÂтрøрþòðý ÿрøÑÂтýþù øóры. Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ ";
?>
<a href="index.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
<?php
die;
}
Else;
{
echo "Þшøñúð! ßþöðûуùÑÂтð, ÑÂòÑÂöøтõÑÂÑŒ ѠðôüøýøÑÂтрðтþрþü! Ã’Ñ‹ ñуôõтõ ÿõрõýðÿрðòûõýы ò 5 ÑÂõúуýô ... Øûø ýðöüøтõ ";
?>
<a href="index.php">ÿõрõхþô.</a>
<script type="text/javascript">
setTimeout("location.href='register.php'",5000);
</script>
die;
<?php
}
}
}
}
Else;
{
echo '<form method="post" action="register.php">
<table cellpadding="0" cellspacing="0" border="0" class="ltab">
<tbody><tr>
<td class="gap">Ûþóøý:</td>
<td><input type="text" class="input" maxlength="30" name="username"</input></td>
</tr>
<tr><td class="gap">ßðрþûь:</td><td><input type="password" class="input" maxlength="30" name="password"></td></tr><br>
<tr><td class="gap">ßþòтþрøтõ ÿðрþûь:</td><td><input type="password" class="input" maxlength="30" name="password2"></td></tr><br>
<tr><td class="gap">E-mail:</td><td><input type="text" class="input" maxlength="40" name="email"></td></tr><br><br>
<tr><td class="gap"><input name="pravila" type="checkbox" value="ok" /> ï ÑÂþóûðÑÂõý(ýð) Ñ <a href="pravila.php">ÿрðòøûðüø</a>.</td>
<tr>
<td colspan="2" class="tright">
<input type="submit" name="go_account" value="àõóøÑÂтрðцøÑÂ" class="button">
<input type="reset" value="áñрþÑÂøть" class="button">
</td>
</tbody></table>
</form>';
}
?>

