app.php 11 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268
  1. <?php
  2. namespace app\index;
  3. class app extends Base
  4. {
  5. protected $template_note;
  6. function index($info = '', $module = '')
  7. {
  8. $ssid = SafeRequest('ssid', 'get');
  9. $authcode = SafeRequest('authcode', 'get');
  10. $authcode && setcookie('downcode', $authcode);
  11. //微信
  12. if (strpos($_SERVER['HTTP_USER_AGENT'], 'MicroMessenger') !== false || (strpos($_SERVER['HTTP_USER_AGENT'], 'QQ') !== false && strpos($_SERVER['HTTP_USER_AGENT'], '_SQ_') !== false)) {
  13. //include 'source/template/weixin.php';
  14. //exit;
  15. }
  16. $domain = $_SERVER['HTTP_HOST'];
  17. if (IN_TZDOMAIN && IN_SJDOMAIN && $domain == IN_TZDOMAIN) {
  18. $sjdomain = explode(',', IN_SJDOMAIN);
  19. for ($i = 0; $i < count($sjdomain); $i++) {
  20. $sjdomain[$i];
  21. }
  22. $rsl = max(intval(IN_DOMAIN_RANDOMSTR_LEN), 1);
  23. $out = rand(0, count($sjdomain) - 1);
  24. $ssl= is_ssl()?'https://':'http://';
  25. $sjurl = $ssl . str_replace('*', Randomstr($rsl), $sjdomain[$out]) . $_SERVER['PATH_INFO'] . ($ssid ? '?ssid=' . $ssid . '&' : '?') . 't=' . time();
  26. redirect($sjurl);
  27. }
  28. //链接有效期
  29. if (IN_APPDOWNPAGETIME && is_numeric(IN_APPDOWNPAGETIME)) {
  30. if (!isset($_GET['t'])) {
  31. $ssl= is_ssl()?'https://':'http://';
  32. $sjurl = $ssl . $domain . $_SERVER['PATH_INFO'] . ($ssid ? '?ssid=' . $ssid . '&' : '?') . 't=' . time();
  33. redirect($sjurl);
  34. }
  35. $timestr = $_GET['t'];
  36. if (!$ssid && !isset($_GET['authcode']) && !isset($_GET['password']) && $timestr < strtotime('-' . IN_APPDOWNPAGETIME . ' minute')) {
  37. exit('<html><head><meta charset="utf-8"><meta name="viewport" content="width=device-width,initial-scale=1.0, minimum-scale=1.0, maximum-scale=1.0, user-scalable=no" /><meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1" /><title>友情提示</title></head><body bgcolor="#FFFFFF"><center><br><br><br><br><br><br><br><font size="5" color="red">链接已过期,请重新下载!</font></center></body></html>');
  38. }
  39. }
  40. if ($info == 's') {
  41. return redirect("/$module/$info");
  42. }
  43. $link = trim($info);
  44. $id = auth_codes($info, 'de');
  45. if (is_numeric($id)) {
  46. $row = db('appid')->where('in_id', $id)->find();
  47. } else {
  48. $row = db('appid')->where('in_link', $link)->find();
  49. }
  50. $this->template_note = getTemplateData(isset($row['template_language']) ? $row['template_language'] : 'zh');
  51. if (!$row || $row['in_sign_type'] == 2 && (!$row['in_super'] || !IN_SUPER) || $row['in_sign_type'] == 1 && !IN_DIST_ON) {
  52. $this->reError('APP_EXPIRED');
  53. }
  54. if (is_mobile() && $row['in_captcha'] && (!$_SESSION['captcha' . $row['in_id']] || $_SESSION['captcha' . $row['in_id']] != $_SESSION['code'])) {
  55. $this->captcha($row);
  56. exit();
  57. }
  58. if ($row['in_applock']) {
  59. //非法操作
  60. $this->reError([-2 => 'APP_EXPIRED', -1 => 'APP_CHECKING', 1 => 'APP_ILLEGAL'][$row['in_applock']]);
  61. }
  62. $password = SafeRequest("password", "get");
  63. if (!empty($password) && $password != $row['in_apppwd']) {
  64. //密码错误
  65. $this->reError('APP_PASSWORD_ERROR');
  66. }
  67. $user = db('user')->where('in_userid', $row['in_uid'])->find();
  68. if (!$user || $user['in_islock'] || $user['in_release']) {
  69. //非法操作
  70. $this->reError('APP_EXPIRED');
  71. }
  72. if ($user['in_verify'] != 1 && IN_VERIFY > 0) {
  73. //未实名认证
  74. $this->reError('REALNAME_LAYER_TITLE');
  75. }
  76. if ($user['in_points'] <= $row['in_deduct'] && !$row['in_super'] or $row['in_applimit'] <= $row['in_downloads'] && $row['in_applimit'] != 0) {
  77. //分发次数耗尽
  78. $this->reError('APP_DOWNLOAD_TIMES_OVER');
  79. }
  80. if (dstrpos($_SERVER['HTTP_USER_AGENT'], ['iphone', 'ipad', 'ipod', 'mac', 'ios', 'playbook'])) {
  81. if ($row['in_form'] == 'Android') {
  82. if ($row['in_kid']) {
  83. redirect(getlink($row['in_kid'], $module == 's'));
  84. }
  85. }
  86. } else if (dstrpos($_SERVER['HTTP_USER_AGENT'], ['android'])) {
  87. if ($row['in_form'] == 'iOS') {
  88. if ($row['in_kid']) {
  89. redirect(getlink($row['in_kid']));
  90. }
  91. }
  92. }
  93. if (!empty($row['in_appstore'])) {
  94. //跳转应用商店
  95. redirect($row['in_appstore']);
  96. }
  97. //超级签名
  98. if ($row['in_sign_type'] == 2 && $row['in_super'] && IN_SUPER) {
  99. if ($ssid) {
  100. $super_sign = db('super_sign')->where('id', $ssid)->find();
  101. if (!$super_sign) {
  102. redirect(getlink($row['in_id']));
  103. }
  104. $udid = $super_sign['udid'];
  105. if ($udid) {
  106. setcookie('udid', $udid, time() + 999999999);
  107. }
  108. if ($super_sign['status'] != 5) {
  109. db('super_sign')->where('id', $ssid)->update(['status' => '1', 'sign_time' => time()]);
  110. }
  111. $has_ssid = db('ios_device')->where('udid', $udid)->value('cert_iss');
  112. if (!$has_ssid && $user['device_num'] < 1 && $user['prv_device_num'] < 1) {
  113. //超级签名,设备耗尽
  114. $this->reError('APP_DOWNLOAD_TIMES_OVER');
  115. }
  116. }
  117. }
  118. $did = db('downhistory')->where('appid', $row['in_id'])->whereTime('addtime', 'today')->value('id');
  119. if (empty($did)) {
  120. $setarr = array(
  121. 'appid' => $row['in_id'],
  122. 'uid' => $row['in_uid'],
  123. 'appname' => $row['in_name'],
  124. 'appversion' => $row['in_bsvs'],
  125. 'appsize' => $row['in_size'],
  126. 'liulan' => 1,
  127. 'down' => 0,
  128. 'addtime' => date('Y-m-d H:i:s')
  129. );
  130. db('downhistory')->insert($setarr);
  131. } else {
  132. db('downhistory')->where('appid', $row['in_id'])->whereTime('addtime', 'today')->inc('liulan')->update();
  133. }
  134. if ($row['in_sign_type'] == 0) {
  135. @$this->steal($row);
  136. }
  137. if ($row['template'] == 7) {
  138. include 'source/template/7.php';
  139. } else {
  140. include 'source/template/app.php';
  141. }
  142. }
  143. function reError($msg)
  144. {
  145. $ERROR_MESSAGE = isset($this->template_note[$msg]) ? $this->template_note[$msg] : $msg;
  146. (new \app\error\error())->message($ERROR_MESSAGE, $this->template_note['BACK_HOME']);
  147. exit;
  148. }
  149. function captcha($row)
  150. {
  151. ?>
  152. <!DOCTYPE html>
  153. <html lang="">
  154. <head>
  155. <title><?php echo $row['in_name'] ?></title>
  156. <meta charset="utf-8"/>
  157. <meta name="viewport"
  158. content="width=device-width,initial-scale=1.0, minimum-scale=1.0, maximum-scale=1.0, user-scalable=no"/>
  159. <meta http-equiv="X-UA-Compatible" content="IE=edge,chrome=1"/>
  160. <meta name="renderer" content="webkit"/>
  161. <meta name="keywords" content="<?php echo IN_KEYWORDS ?>"/>
  162. <meta property="og:url" content="https://<?php echo $_SERVER['HTTP_HOST'] ?>/"/>
  163. <meta property="og:title" content="<?php echo IN_NAME ?>"/>
  164. <meta name="description" content="<?php echo IN_DESCRIPTION ?>"/>
  165. <?php $this->static_() ?>
  166. <script src="/static/index/js/clipboard.min.js"></script>
  167. <script>
  168. function update_seccode() {
  169. document.getElementById('img_seccode').src = '<?php echo IN_PATH ?>index/seccode?' + Math.random();
  170. }
  171. </script>
  172. <style>
  173. .tit {
  174. display: table;
  175. width: 100%;
  176. }
  177. .tit a {
  178. line-height: 35px;
  179. font-size: 15px;
  180. display: table-cell;
  181. width: 48%;
  182. text-align: center;
  183. border-bottom: 2px solid beige;
  184. }
  185. .tit a.active {
  186. font-size: 18px;
  187. color: #333;
  188. border-bottom: 2px solid #157df1;
  189. }
  190. .index1 {
  191. display: none;
  192. }
  193. </style>
  194. </head>
  195. <body>
  196. <div class="login-common">
  197. <div style="margin: 5px auto;overflow: hidden;border-radius: 9px;width: 90px;height: 90px;">
  198. <img src="<?php echo geticon($row['in_icon']) ?>" style="width: 100%;height: 100%;"/>
  199. </div>
  200. <div style="text-align: center;line-height: 30px;margin-bottom: 25px;">
  201. <?php echo $row['in_name'] ?>
  202. </div>
  203. <form action="" method="post">
  204. <div class="form-container">
  205. <div class="form-inner">
  206. <div class="form-group">
  207. <label class="iconfont icon-dunpai"></label>
  208. <div class="clearfix verification-code">
  209. <input class="form-control input-lg fl" placeholder="请输入图形验证码" type="text" name="captcha" maxlength="4">
  210. <img id="img_seccode" onclick="update_seccode()" style="float:right" src="/index/seccode" height="46" width="27%">
  211. </div>
  212. </div>
  213. <div id="errorMsg" style="line-height: 35px;color: orangered;display: none;">请输入验证码</div>
  214. </div>
  215. </div>
  216. <button type="button" id="submitButton" class="ms-btn ms-btn-primary input-lg mt20">确认</button>
  217. </form>
  218. </div>
  219. <script>
  220. $("#submitButton").click(function () {
  221. var captcha = $("input[name=captcha]").val();
  222. if (!captcha) {
  223. return $('#errorMsg').show();
  224. }
  225. $.post("/index/app/captcha_check", {captcha, in_id:<?php echo $row['in_id']?>}, function (ret) {
  226. ret.msg && alert(ret.msg);
  227. if (ret.code) {
  228. location.reload();
  229. }
  230. }, 'json');
  231. });
  232. </script>
  233. </body>
  234. </html>
  235. <?php }
  236. function captcha_check()
  237. {
  238. $captcha = SafeRequest('captcha');
  239. $in_id = SafeRequest('in_id');
  240. $res = intval($captcha == $_SESSION['code']);
  241. $res && $_SESSION['captcha' . $in_id] = $captcha;
  242. reJSON($res ? '' : '验证码错误', $res);
  243. }
  244. }