<?if (MysteryPT!=1) exit;?>
<?
$connection = odbc_connect( $connection_string, $user, $pass );
if($_POST[acao]!="Alterar")
{
$user = $_GET['user'];
$trans = base64_decode($_GET['data']);
$query = "SELECT * FROM [sPTDB].[dbo].[ShopTransCreditos] WHERE [USER_TRANS] = '$user' AND [DT_TRANS]='$trans'";
$q = odbc_exec($connection, $query);
$dados = odbc_fetch_array($q);
$user_trans=$dados['USER_TRANS'];
$id_trans=$dados['ID_TRANS'];
$ct_trans=$dados['CT_TRANS'];
$st_trans=$dados['ST_TRANS'];
$dt_trans=$dados['DT_TRANS'];
$ip_trans=$dados['IP_TRANS'];
?>
<form method="post" action="">
<table background="imgs/fundo_textura1.gif" width="600" border="0" align="center" cellpadding="0" cellspacing="0">
<tr>
<td><table width="100%" border="0" align="center" cellpadding="4" cellspacing="2">
<tr>
<td colspan="2" align="center" bgcolor="#003399"><b><font color="#FFFFFF">Alterando Transações de Créditos do Shop</font></b></td>
</tr>
<tr>
<td width="35%" align="right"><strong><font color="#000000"> ID Player:</font></strong></td>
<td width="65%">
<?php echo $user_trans; ?><input name="user_trans" type="hidden" value="<?php echo $user_trans; ?>" />
</td>
</tr>
<tr>
<td align="right"><strong><font color="#000000">ID Trans:</font></strong></td>
<td><input name="id_trans" value="<?php echo $id_trans; ?>" type="text" id="id_trans" size="20" maxlength="60" /></td>
</tr>
<tr>
<td align="right"><strong><font color="#000000">Créditos:</font></strong></td>
<td>
<?php echo $ct_trans; ?><input name="ct_trans" type="hidden" value="<?php echo $ct_trans; ?>" />
</td>
</tr>
<tr>
<td align="right"><strong><font color="#000000">Status:</font></strong></td>
<td>
<select name="st_trans">
<option value="1" <? if($st_trans==1){ echo "selected"; }?>>Em espera</option>
<option value="2" <? if($st_trans==2){ echo "selected"; }?>>Negada</option>
<option value="3" <? if($st_trans==3){ echo "selected"; $block_alt="disabled";} ?>>Aprovada</option>
</select>
</td>
</tr>
<tr>
<td align="right"><strong><font color="#000000">Data:</font></strong></td>
<td>
<?php echo $dt_trans; ?><input name="dt_trans" type="hidden" value="<?php echo $dt_trans; ?>" />
</td>
</tr>
<tr>
<td align="right"><strong><font color="#000000">IP:</font></strong></td>
<td>
<?php echo $ip_trans; ?><input name="ip_trans" type="hidden" value="<?php echo $ip_trans; ?>" />
</td>
</tr>
<tr>
<td colspan="2" align="center"><input name="acao" type="submit" class="button" id="acao" value="Alterar" <?=$block_alt?>></td>
</tr>
</table></td>
</tr>
</table>
</form>
<?
}
if($_POST[acao]=="Alterar") {
$user_trans=$_POST['user_trans'];
$id_trans=trim($_POST['id_trans']);
$ct_trans=$_POST['ct_trans'];
$st_trans=$_POST['st_trans'];
$dt_trans=$_POST['dt_trans'];
$ip_trans=$_POST['ip_trans'];
if(!$user_trans OR !$id_trans OR !$ct_trans OR !$st_trans OR !$dt_trans OR !$ip_trans){
echo"<script>alert ('Preencha e informe todos os campos!')</script>";
echo"<script>history.go(-1);</script>";
} else {
if($user_trans==$id_trans){
echo"<script>alert ('Não é possível transferir créditos para uma mesma conta!')</script>";
echo"<script>history.go(-1);</script>";
}else{
$query_verids = "SELECT * FROM [accountdb].[dbo].[ALLPersonalMember] WHERE [userid]='$user_trans'";
$q_verids = odbc_exec($connection, $query_verids);
$dadosplayer = odbc_fetch_array($q_verids);
$creditos_user = $dadosplayer['Coins'];
if($creditos_user<$ct_trans && $st_trans==3){
echo"<script>alert ('O player não tem créditos suficientes para fazer esta transferência!')</script>";
echo"<script>history.go(-1);</script>";
} else {
$newcoin = $creditos_user-$ct_trans;
$atualizar = odbc_exec("UPDATE [accountdb].[dbo].[ALLPersonalMember] SET [Coins]='{$newcoin}' WHERE [UserID]='$user_trans'");
/*
$trans_dir=$creditos."$id_trans.arc"; //nova id para transferencia "techno"
$new_ct_user=$creditos_user-$ct_trans; //somando creditos para nova id 'techno'
$new_ct_trans=file_get_contents($trans_dir)+$ct_trans; //pegando creditos
if($st_trans==3){
file_put_contents($creditos."$user_trans.arc",$new_ct_user);
file_put_contents($trans_dir,$new_ct_trans);
*/
}
if(odbc_do($connection,"UPDATE [sPTDB].[dbo].[ShopTransCreditos] SET [ST_TRANS]='$st_trans' WHERE [USER_TRANS]='$user_trans' AND [DT_TRANS]='$dt_trans'")){
echo"<script>alert ('Transferência alterada com sucesso!')</script>";
echo"<script>history.go(-1);</script>";
}}}}
?>