Find this useful? Enter your email to receive occasional updates for securing PHP code.

Signing you up...

Thank you for signing up!

PHP Decode

<?php /* This file is protected by copyright law and provided under license. Reverse engin..

Decoded Output download


session_start();
include("./includes/connection.php");
if (isset($_GET['Registration_ID']) &&isset($_GET['Patient_Payment_ID'])) {
$Registration_ID = $_GET['Registration_ID'];
$qr = "select * from tbl_patient_payments pp
                        where pp.Patient_Payment_ID = ".$_GET['Patient_Payment_ID'] ."
                        and pp.registration_id = '$Registration_ID'";
$sql_Select_Current_Patient = mysqli_query($conn,$qr);
$row = mysqli_fetch_array($sql_Select_Current_Patient);
$Patient_Payment_ID = $row['Patient_Payment_ID'];
$Payment_Date_And_Time = $row['Payment_Date_And_Time'];
$Folio_Number = $row['Folio_Number'];
$Claim_Form_Number = $row['Claim_Form_Number'];
$Billing_Type = $row['Billing_Type'];
}else {
$Patient_Payment_ID = '';
$Payment_Date_And_Time = '';
$Folio_Number = '';
$Claim_Form_Number = '';
$Billing_Type = '';
}
$reason = $_GET['reason'];
$reason_id = $_GET['reason_id'];
$inserted = TRUE;
$bill_type = $_GET['bill_type'];
$action = $_GET['action'];
$Employee_ID = $_SESSION['userinfo']['Employee_ID'];
$Registration_ID = $_GET['Registration_ID'];
$consultation_id = $_GET['consultation_id'];
$Guarantor_Name = $_GET['Guarantor_Name'];
$Sponsor_ID = $_GET['Sponsor_ID'];
$branch_id = $_SESSION['userinfo']['Branch_ID'];
$Item_ID = $_GET['Item_ID'];
$Consultation_Type = $_GET['Consultation_Type'];
$Check_In_Type = $Consultation_Type;
$Payment_Date_And_Time = '(SELECT NOW())';
$Receipt_Date = Date('Y-m-d');
$Transaction_status = 'pending';
$Transaction_type = 'indirect cash';
$Sponsor_Name = $Guarantor_Name;
if ($_GET['bill_type'] == 'Cash') {
$Billing_Type = 'Outpatient Cash';
}else if ($_GET['bill_type'] == 'Credit') {
$Billing_Type = 'Outpatient Credit';
}
$sql_select_payment_method_result=mysqli_query($conn,"SELECT payment_method FROM tbl_sponsor WHERE Sponsor_ID='$Sponsor_ID'") or die(mysqli_error($conn));
if(mysqli_num_rows($sql_select_payment_method_result)>0){
$payment_method=mysqli_fetch_assoc($sql_select_payment_method_result)['payment_method'];
if (strtolower($payment_method) == 'cash') {
$Billing_Type = 'Outpatient Cash';
$bill_type="Cash";
}else if ($_GET['bill_type'] == 'Credit') {
$Billing_Type = 'Outpatient Credit';
$bill_type="Credit";
}
}
$payment_cache_ID = 0;
$select_payment_cache_ID = "SELECT payment_cache_ID FROM tbl_payment_cache WHERE consultation_id = $consultation_id AND Billing_Type='$Billing_Type' ORDER BY Payment_Cache_ID DESC LIMIT 1";
$cache_result = mysqli_query($conn,$select_payment_cache_ID);
if (mysqli_num_rows($cache_result) >0) {
$payment_cache_ID = mysqli_fetch_assoc($cache_result)['payment_cache_ID'];
}else{
}
if(isset($_GET['External_Payment_Cache_ID'])&&$_GET['External_Payment_Cache_ID']!=""){
$payment_cache_ID=$_GET['External_Payment_Cache_ID'];
}
if ($action == 'ADD') {
if ($payment_cache_ID >0) {
}else {
$insert_query = "INSERT INTO tbl_payment_cache(Registration_ID, Employee_ID, consultation_id, Payment_Date_And_Time,
        Folio_Number, Sponsor_ID, Sponsor_Name, Billing_Type, Receipt_Date, Transaction_status, Transaction_type, branch_id)
        VALUES ('$Registration_ID', '$Employee_ID', $consultation_id, $Payment_Date_And_Time,
        '$Folio_Number', '$Sponsor_ID', '$Sponsor_Name', '$Billing_Type', '$Receipt_Date',
        '$Transaction_status', '$Transaction_type','$branch_id')";
if (!mysqli_query($conn,$insert_query)) {
die(mysqli_error($conn));
exit;
$inserted = FALSE;
}
$payment_cache_ID = mysqli_insert_id($conn);
}
$Price = '';
if ($inserted) {
$Select_Price = "select Items_Price as price from tbl_item_price ip
                                    where ip.Item_ID = '$Item_ID' AND ip.Sponsor_ID = '$Sponsor_ID'";
$itemSpecResult = mysqli_query($conn,$Select_Price) or die(mysqli_error($conn));
if (mysqli_num_rows($itemSpecResult) >0) {
$row = mysqli_fetch_assoc($itemSpecResult);
$Price = $row['price'];
$sqlcheck2 = "SELECT sponsor_id,item_ID FROM tbl_sponsor_allow_zero_items WHERE sponsor_id = '$Sponsor_ID' AND item_ID=".$Item_ID ."";
$check_if_covered2 = mysqli_query($conn,$sqlcheck2) or die(mysqli_error($conn));
if (mysqli_num_rows($check_if_covered2) >0) {
}else {
if ($Price == 0) {
$Select_Price = "select Items_Price as price from tbl_general_item_price ig
                                    where ig.Item_ID = '$Item_ID'";
$itemGenResult = mysqli_query($conn,$Select_Price) or die(mysqli_error($conn));
if (mysqli_num_rows($itemGenResult) >0) {
$row = mysqli_fetch_assoc($itemGenResult);
$Price = $row['price'];
}else {
$Price = 0;
}
}
}
}else {
$Select_Price = "select Items_Price as price from tbl_general_item_price ig
                                    where ig.Item_ID = '$Item_ID'";
$itemGenResult = mysqli_query($conn,$Select_Price) or die(mysqli_error($conn));
if (mysqli_num_rows($itemGenResult) >0) {
$row = mysqli_fetch_assoc($itemGenResult);
$Price = $row['price'];
}else {
$Price = 0;
}
}
$Sub_Department_ID = $_GET['Sub_Department_ID'];
if ($Sub_Department_ID == 'undefined') {
$Sub_Department_ID = 'NULL';
}
$Quantity = $_GET['quantity'];
$Patient_Direction = "others";
$Consultant = $_SESSION['userinfo']['Employee_Name'];
$Consultant=mysqli_real_escape_string($conn,$Consultant);
$Consultant_ID = $_SESSION['userinfo']['Employee_ID'];
$Status = 'active';
$Transaction_Date_And_Time = '(SELECT NOW())';
$Process_Status = 'inactive';
$Doctor_Comment =mysqli_real_escape_string($conn,$_GET['comments']);
$Transaction_Type = $bill_type;
$Service_Date_And_Time = $_GET['Service_Date_And_Time'];
$Priority = $_GET['Priority'];
$Discount = $_GET['Discount'];
$Procedure_Location = $_GET['Procedure_Location'];
$service_hour = (isset($_GET['service_hour'])) ?$_GET['service_hour'] : null;
$service_min = (isset($_GET['service_min'])) ?$_GET['service_min'] : null;
$doctors_selected_clinic=$_SESSION['doctors_selected_clinic'];
$finance_department_id=$_SESSION['finance_department_id'];
$insert_query2 = "INSERT INTO tbl_item_list_cache(Check_In_Type, Item_ID,Discount, Price, Quantity, Patient_Direction, Consultant, Consultant_ID, Status,
            Payment_Cache_ID, Transaction_Date_And_Time, Process_Status, Doctor_Comment,Sub_Department_ID,Transaction_Type,Service_Date_And_Time,Priority,Surgery_hour,Surgery_min,Procedure_Location,Clinic_ID,finance_department_id,reason_id,reason)
            VALUES ('$Check_In_Type', '$Item_ID', $Discount, $Price, '$Quantity', '$Patient_Direction', '$Consultant', '$Consultant_ID',
            '$Status','$payment_cache_ID', $Transaction_Date_And_Time,
            '$Process_Status', '$Doctor_Comment',$Sub_Department_ID,'$Transaction_Type','$Service_Date_And_Time','$Priority','$service_hour','$service_min','$Procedure_Location','$doctors_selected_clinic','$finance_department_id','$reason_id','$reason')";
if (!mysqli_query($conn,$insert_query2)) {
die(mysqli_error($conn));
exit;
}else {
echo "added";
}
}else {
die("Not inserted");
}
}else {
$Consultant_ID = $_SESSION['userinfo']['Employee_ID'];
$delete_qr = "DELETE FROM tbl_item_list_cache WHERE Item_ID = $Item_ID AND Consultant_ID=$Consultant_ID AND payment_cache_ID=$payment_cache_ID";
if (!mysqli_query($conn,$delete_qr)) {
die(mysqli_error($conn));
exit;
}else {
echo "removed";
}
};

Did this file decode correctly?

Original Code

<?php /* This file is protected by copyright law and provided under license. Reverse engineering of this file is strictly prohibited. */$OOO000000=urldecode('%66%67%36%73%62%65%68%70%72%61%34%63%6f%5f%74%6e%64');$GLOBALS['OOO0000O0']=$OOO000000{4}.$OOO000000{9}.$OOO000000{3}.$OOO000000{5}.$OOO000000{2}.$OOO000000{10}.$OOO000000{13}.$OOO000000{16};$GLOBALS['OOO0000O0'].=$GLOBALS['OOO0000O0']{3}.$OOO000000{11}.$OOO000000{12}.$GLOBALS['OOO0000O0']{7}.$OOO000000{5};$GLOBALS['OOO000O00']=$OOO000000{0}.$OOO000000{12}.$OOO000000{7}.$OOO000000{5}.$OOO000000{15};$GLOBALS['O0O000O00']=$OOO000000{0}.$OOO000000{1}.$OOO000000{5}.$OOO000000{14};$GLOBALS['O0O000O00']=$O0O000O00.$OOO000000{3};$GLOBALS['O0O00OO00']=$OOO000000{0}.$OOO000000{8}.$OOO000000{5}.$OOO000000{9}.$OOO000000{16};$GLOBALS['OOO00000O']=$OOO000000{3}.$OOO000000{14}.$OOO000000{8}.$OOO000000{14}.$OOO000000{8};$OOO0O0O00=__FILE__;$OO00O0000=0x2540;eval($GLOBALS['OOO0000O0']('JE8wMDBPME8wMD0kR0xPQkFMU1snT09PMDAwTzAwJ10oJE9PTzBPME8wMCwncmInKTskR0xPQkFMU1snTzBPMDBPTzAwJ10oJE8wMDBPME8wMCwweDU4Yik7JE9PMDBPMDBPMD0kR0xPQkFMU1snT09PMDAwME8wJ10oJEdMT0JBTFNbJ09PTzAwMDAwTyddKCRHTE9CQUxTWydPME8wME9PMDAnXSgkTzAwME8wTzAwLDB4MWE4KSwnRW50ZXJ5b3V3a2hSSFlLTldPVVRBYUJiQ2NEZEZmR2dJaUpqTGxNbVBwUXFTc1Z2WHhaejAxMjM0NTY3ODkrLz0nLCdBQkNERUZHSElKS0xNTk9QUVJTVFVWV1hZWmFiY2RlZmdoaWprbG1ub3BxcnN0dXZ3eHl6MDEyMzQ1Njc4OSsvJykpO2V2YWwoJE9PMDBPMDBPMCk7'));return;?>krMWUykjZm{murgkr9NHenNHenNHe1zfukgFMaXdoyjcUImb19oUAxyb18mRtwmwJ4LT09NHr8XTzEXRJwmwJXLO0xNWLyHA1SmT09NHeEXHr8Xk10PkrfHT0knTyYdk09NTzEXHeEXTZffhtOuTr9tWAxTBZfNHr8XHr9NHeEmbUILTzEXHr8XTzEXRtONTzEXTzEXHeEpRtfydmOlFmlvfbfqDykwBAsKa09aaryiWMkeC0OLOMcuc0lpUMpHdr1sAunOFaYzamcCGyp6HerZHzW1YjF4KUSvNUFSk0ytW0OyOLfwUApRTr1KT1nOAlYAaacbBylDCBkjcoaMc2ipDMsSdB5vFuyZF3O1fmf4GbPXHTwzYeA2YzI5hZ8mhULpK2cjdo9zcUILTzEXHr8XTzEXhTslfMyShtONTzEXTzEXTzEpKX==vrt|ocK}ZTa}SAVlVF

Function Calls

fopen 1
fread 3
strtr 2
fclose 1
urldecode 1
str_replace 1
base64_decode 3

Variables

$O000O0O00 True
$O0O000O00 fgets
$O0O00OO00 fread
$OO00O0000 9536
$OO00O00O0 session_start(); include("./includes/connection.php"); if (..
$OOO000000 fg6sbehpra4co_tnd
$OOO00000O strtr
$OOO0000O0 base64_decode
$OOO000O00 fopen
$OOO0O0O00 index.php

Stats

MD5 33976a91fc4089aa4a87bc6a6e44f71a
Eval Count 3
Decode Time 112 ms