Water project

Please do note exceed $1500 per transaction. Fill out the form below to tell us how to apply your payment. You can return later and do another online payment if you still have a balance due.

* are required fields

<?php
$x_invoice_num="00002";
$acct1="1234567";
$acct1_pay="35.90";
$acct2="2345678";
$acct2_pay="99.87";
$acct3="3456789";
$acct3_pay="123.78";
$acct4="4567890";
$acct4_pay="123.898";
$first_name="jackson";
$last_name="brown";
$address="3456 teal str";
$city="dogtown";
$zip="90000";
$phone="970-555-5555";
?>
<HTML>
<HEAD>
<TITLE>:: NWCWD.org : North Weld County Water District ::</TITLE>
<meta http-equiv="Content-Type" content="text/html;">
<meta name="description" content="">
<meta name="keywords" content="">
<meta name="robots" content="index, follow">
<meta http-equiv="Content-Type" content="text/html; charset=iso-8859-1">
<link href="css.css" rel="stylesheet" type="text/css">
<script language="JavaScript" src="rollover.js"></script>
</HEAD>
<style>
td.right {text-align:right; }
</style>
<BODY background="images/bg.gif" bgcolor="#F2F7FA" LEFTMARGIN="0" TOPMARGIN="0" MARGINWIDTH="0" MARGINHEIGHT="0">
    <div align="center">
        <table cellpadding="0" cellspacing="0" border="0" width="825" height="100%">
            <tr>
                <td><img src="images/logo_top.gif" width="222" height="43" alt="" border="0"></td>
                <td><a href="index.html"><img src="images/home.gif" width="60" height="43" alt="" border="0"></a></td>
                <td><a href="about.html"><img src="images/about.gif" width="63" height="43" alt="" border="0"></a></td>
                <td><a href="protected_login.html"><img src="images/myaccount.gif" width="96" height="43" alt="" border="0"></a></td>
                <td><a href="tapinfo.html"><img src="images/tapinfo.gif" width="127" height="43" alt="" border="0"></a></td>
                <td><a href="currentinfo.html"><img src="images/currentinfo.gif" width="159" height="43" alt="" border="0"></a></td>
                <td><a href="contactus.html"><img src="images/contactus.gif" width="98" height="43" alt="" border="0"></a></td>
            </tr>
            <tr>
                <td><a href="about.html"><img src="images/logo_bottom_about.gif" width="222" height="196" alt="" border="0"></a></td>
                <td colspan="6"><img src="images/about_masthead.jpg" width="603" height="196" alt="" border="0"></td>
            </tr>
            <tr>
                <td colspan="7">
                    <table cellpadding="0" cellspacing="0" border="0" width="825" height="100%">
                        <tr>
                            <td valign="top">
                                <table cellpadding="0" cellspacing="0" border="0" width="223" height="100%">
                                    <tr>
                                        <td valign="top" height="100%"><img src="images/subbox_left.gif" width="11" height="100%" alt="" border="0"></td>
                                        <td width="10" height="100%" bgcolor="#ffffff"> </td>
                                        <td valign="top" bgcolor="#ffffff" width="203" height="100%">
                                            <table cellpadding="0" cellspacing="0" border="0" width="183" height="100%">
                                                <tr>
                                                    <td valign="top">
                                                    <br>
                                                       <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="board.html">Board of Directors / Elections</a><br>
  <br>
     <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="scfp.html">Soldier Canyon Filter Plant      Steering Committee</a><br>
  <br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="relatedlinks" border="0"> <a class="subnav" href="t_notice.html">Transparency Notice </a><br>
  <br>
        ——————————
    <br><br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="mrates.html">Monthly Rates and Fees</a><br>
  <br>
     <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="tapfeeschedule.html">Tap Fee Schedule </a><br>
  <br>    
     ——————————
    <br><br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="ccr.html">Annual Water Quality<br>
       Report</a><br>
  <br>
      <img src="images/arrow_bullet.gif" width="3" height="5" alt="relatedlinks" border="0"> <a class="subnav" href="scfp water quality.html">SCFP Water Quality </a><br>
  <br>
     <img src="images/arrow_bullet.gif" width="3" height="5" alt="relatedlinks" border="0"> <a class="subnav" href="con_plan.html">Conservation Plan </a><br>
  <br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="criticaluser.html">Critical User Information</a><br>
  <br>
     <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="currentinfo.html">Current District News</a><br>
<br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="newsletter.html">Newsletter</a><br>
    <br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="relatedlinks" border="0"> <a class="subnav" href="links.html">Links</a><br>
    <br>
       <img src="images/arrow_bullet.gif" width="3" height="5" alt="" border="0"> <a class="subnav" href="servicearea.html">Service Area</a><br><br>
  <br>
                                                    </td>
                                                </tr>
                                                <tr>
                                                    <td valign="bottom">                                                
                                                        <table cellpadding="10" cellspacing="0" border="0" width="192" bgcolor="#EBEFDE">
                                                            <tr>
                                                                <td valign="top" class="subbox">
                                                                <center>
                                                                <b>North Weld County<br>
                                                                Water District</b><br><br>
                                                                
                                                                32825 CR 39<br>
                                                                PO Box 56 Lucerne, CO 80646<br><br>
                                                                
                                                                Phone: 970.356.3020<br>
                                                                Fax: 970.395.0997<br>
                                                                E-mail: <a class="subboxlink" href="mailto:water@nwcwd.org">water@nwcwd.org</a>
                                                                Office Hours: Monday-Friday   7:00 A.M.-5:00 P.M.
                                                                </center>
                                                                </td>
                                                            </tr>
                                                        </table>                            
                                                    </td>
                                                </tr>
                                            </table>
                                        </td>
                                        <td width="10" bgcolor="#ffffff"> </td>
                                        <td valign="top"><img src="images/subbox_right2.gif" width="9" height="100%" alt="" border="0"></td>
                                    </tr>
                                    <tr>
                                        <td colspan="5"><img src="images/subbox_bottom.gif" width="223" height="43" alt="" border="0"></td>
                                    </tr>
                                </table>
                            </td>
                            <td valign="top">
                                <table bgcolor="#BFD7E5" cellpadding="0" cellspacing="0" border="0" width="602">
                                    <tr>
                                        <td colspan="2">
                                            <table bgcolor="#BFD7E5" cellpadding="8" cellspacing="0" border="0" width="602" height="500">
                                                <tr>
                                                  <td valign="top" class="home"><h1>The District now offers online payment…</h1>
<script>
function EnableDisableTextBox(account) {
        var accountNumber = document.getElementById(account+"_pay");
//         alert(accountNumber.value);
        if(document.getElementById(account).value.length>=7){
          accountNumber.disabled =false;
        }else{
          accountNumber.value="0";
          accountNumber.disabled =true;
        }
        if(document.getElementById(account).value.length>8){
           alert("Invalid Account Number");
        }
}
function balance(object1){
    if(document.getElementById(object1).value>1500){
      alert("Do not use values > $1500");
      document.getElementById(object1).focus();
   }
   var sub1=document.getElementById("acct1_pay").value;
   if(sub1==""){ sub1="0"; }
   var sub2=document.getElementById("acct2_pay").value;
   if(sub2==""){ sub2="0"; }
   var sub3=document.getElementById("acct3_pay").value;
   if(sub3==""){ sub3="0"; }
   var sub4=document.getElementById("acct4_pay").value;
   if(sub4==""){ sub4="0"; }
   var sum= parseFloat(sub1)+ parseFloat(sub2)+parseFloat(sub3)+parseFloat(sub4);
   if(sum>1500){
      var net=parseFloat(document.getElementById(object1).value)-parseFloat(sum-1500);
      document.getElementById(object1).value= net.toFixed(2);
   }
   //alert(sum);
}
</script>
<h3>Please do note exceed $1500 per transaction. Fill out the form below to tell us how to apply your payment. You can return later and do another online payment
if you still have a balance due. </h3>
<form action="payment2.php" method="post">
<input type='hidden' name='javascriptenabled' value="1"><input type='hidden' name='url1' value='/paymentswd.html'>
<input type="hidden" name="x_invoice_num" value="x_invoice_num">
<table>
<tr><td class="left"><label>*Account 1:</label></td><td class="right"><input type="text" name="acct1" id="acct1" value="<?php echo $acct1; ?>" size="20" maxlength=8 required onkeyup="EnableDisableTextBox('acct1');" onblur="EnableDisableTextBox('acct1');" class="inputclass" <?php echo $acct1_action; ?>>
$<input type="text" name="acct1_pay" id="acct1_pay" value="<?php echo $acct1_pay; ?>" size="10" maxlength="9" placeholder="0.00" onblur="balance('acct1_pay');" required disabled="true" class="inputclass" <?php echo $acct1_pay_action; ?>>
<tr><td class="right"><label> Account 2:</label></td><td class="left"><input type="text" name="acct2" id="acct2" value="<?php echo $acct2; ?>" size="20" maxlength="8" onkeyup="EnableDisableTextBox('acct2');" onblur="EnableDisableTextBox('acct2');" class="inputclass" <?php echo $acct2_action; ?>>
$<input type="text" name="acct2_pay" id="acct2_pay" value="<?php echo $acct2_pay; ?>" size="10" maxlength="9" placeholder="0.00" onblur="balance('acct2_pay');" disabled="true" class="inputclass" <?php echo $acct2_pay_action; ?>>
<tr><td class="right"><label> Account 3:</label></td><td class="left"><input type="text" name="acct3" id="acct3" value="<?php echo $acct3; ?>" size="20" maxlength="8" onkeyup="EnableDisableTextBox('acct3');" onblur="EnableDisableTextBox('acct3');" class="inputclass" <?php echo $acct3_action; ?>>
$<input type="text" name="acct3_pay" id="acct3_pay" value="<?php echo $acct3_pay; ?>" size="10" maxlength="9" placeholder="0.00" onblur="balance('acct3_pay');" disabled="true" class="inputclass" <?php echo $acct3_pay_action; ?>>
<tr><td class="right"><label> Account 4:</label></td><td class="left"><input type="text" name="acct4" id="acct4" value="<?php echo $acct4; ?>" size="20" maxlength="8" onkeyup="EnableDisableTextBox('acct4');" onblur="EnableDisableTextBox('acct4');" class="inputclass" <?php echo $acct4_action; ?>>
$<input type="text" name="acct4_pay" id="acct4_pay" value="<?php echo $acct4_pay; ?>" size="10" maxlength="9" placeholder="0.00" onblur="balance('acct4_pay');" disabled="true" class="inputclass" <?php echo $acct4_pay_action; ?>>
<tr><td class="left"><label>*First Name:</label></td><td class="left"><input type="text" name="first_name" id="first_name" value="<?php echo $first_name; ?>" size="30" maxlength="30" required class="inputclass" <?php echo $first_name_action; ?>>
<tr><td class="left"><label>*Last Name:</label></td><td class="left"><input type="text" name="last_name" id="last_name" value="<?php echo $last_name; ?>" size="30" maxlength="30" required class="inputclass" <?php echo $last_name_action; ?>>
<tr><td class="left"><label>*Address:</label></td><td class="left"><input type="text" name="address" id="address" value="<?php echo $address; ?>" size="30" maxlength="30" required class="inputclass" <?php echo $address_action; ?>>
<tr><td class="left"><label>*City:</label></td><td class="left"><input type="text" name="city" id="city" value="<?php echo $city; ?>" size="20" maxlength="20" required class="inputclass" <?php echo $city_action; ?>>
<tr><td class="left"><label>*Zip:</label></td><td class="left"><input type="text" name="zip" id="zip" value="<?php echo $zip; ?>" size="20" maxlength="20" required class="inputclass" <?php echo $zip_action; ?>>
<tr><td class="left"><label>*Phone:</label></td><td class="left"><input type="text" name="phone" id="phone" value="<?php echo $phone; ?>" size="20" maxlength="20" required class="inputclass" <?php echo $phone_action; ?>>
<tr><td><td><input type="submit" value="Pay Now"></table></form>
<p>* are required fields</p>

                                                    <!– div id="cp4ac054ff73" style="margin: 10px 0" onclick="document.getElementById('pay_now_form_89bdf3d920').submit()"><div>
                                      
                                      
<div class='r-bg '><span class='r-fg r-fg-3'></span> <span class='r-fg r-fg-2'></span> <span class='r-fg r-fg-1'></span> <span class='r-fg r-fg-0'></span> </div><form action="https://checkout.globalgatewaye4.firstdata.com/pay" id="pay_now_form_89bdf3d920" method="post"><input type="hidden" name="x_login" value="WSP-NO.WE-GyLRzQCCmg" /><input type="hidden" name="x_show_form" value="PAYMENT_FORM" /><input type="hidden" name="x_fp_sequence" value="14864887464037737971" /><input type="hidden" name="x_fp_hash" value="PNB-1.0-cb4b8fb7f4a98cb787085f465515fc32379cb626" /><input type="hidden" name="x_amount" /><input type="hidden" name="x_currency_code" value="USD" /><input type="hidden" name="x_test_request" value="FALSE" /><input type="hidden" name="x_relay_response" value="" /><input type="hidden" name="donation_prompt" /><input type="hidden" name="button_code" value="Pay Now North Weld County Water Dis" /><div class="cpwrap"><button type="button">Pay Now</button></div></form><div class='r-bg '><span class='r-fg r-fg-0'></span> <span class='r-fg r-fg-1'></span> <span class='r-fg r-fg-2'></span> <span class='r-fg r-fg-3'></span> </div></div></div><style type="text/css">div#cp4ac054ff73{width: 200px; background-color: #FF9900;}div#cp4ac054ff73:hover{cursor: pointer}div#cp4ac054ff73 * {background-color: #FFAA00;}div#cp4ac054ff73 form{margin:0; padding:0;text-align:center}div#cp4ac054ff73 div.cpwrap {width: 90%;border:0;margin:0 auto;padding: 0px; background-color: #FF9900}div#cp4ac054ff73 button{width: 95%;border:0;margin:0;padding: 3px 0; background-color: #FF9900;text-align: center; color: #FFFFFF; }div#cp4ac054ff73:hover button {text-decoration: underline}div#cp4ac054ff73 button:focus,div#cp4ac054ff73 button:visited,div#cp4ac054ff73 button:active{border:none;outline: none}div#cp4ac054ff73 button {font-size: 16px}div#cp4ac054ff73 div.cpwrap {border-left: 3px solid #FFAA00; border-right: 3px solid #FFAA00}div#cp4ac054ff73 .r-fg{background-color: #FFAA00; border-color: #FFAA00}div#cp4ac054ff73 .r-bg{background-color: white}div#cp4ac054ff73 .r-fg{border-style: solid; border-width: 0px 1px; overflow: hidden; display: block; height: 1px; font-size: 1px}div#cp4ac054ff73 .r-fg-0{margin-left: 1px; margin-right: 1px; border-width: 0px 1px !important; height: 1px !important}div#cp4ac054ff73 .r-fg-1{margin-left: 2px; margin-right: 2px}div#cp4ac054ff73 .r-fg-2{margin-left: 3px; margin-right: 3px}div#cp4ac054ff73 .r-fg-3{margin-left: 5px; margin-right: 5px}</style –>
</td>
                                                </tr>
                                            </table>
                                        </td>
                                    </tr>
                                    <tr>
                                        <td colspan="2">
                                            <table bgcolor="#ffffff" cellpadding="5" cellspacing="0" border="0" width="602" height="43">
                                                <tr>
                                                    <td align="left" class="footer">©2006-2017 North Weld County Water District | All Rights Reserved.</td>
                                                    <td align="right" class="footer">970.356.3020 | <a class="footerlink" href="mailto:water@nwcwd.org">water@nwcwd.org</a></td>
                                                </tr>
                                            </table>
                                        </td>
                                    </tr>
                                </table>
                            </td>
                        </tr>
                    </table>
                </td>
            </tr>
            <tr>
                <td colspan="7"><img src="images/footer.gif" width="825" height="31" alt="" border="0"></td>
            </tr>
        </table>
    </div>
</body>
</html>

backend

<?php
//compiled version: 1.2017.501.0325
$pageLevel=5;$bypass=true;
// `Startup Config` embed point
$appid="636254661703298340";$appidLast="";
include("mystuff.php");
include("functions.php");
$FORM=$_REQUEST['FORM'];$PID=$_GET['PID'];$INX=$_GET['INX'];$NUM=$_GET['NUM'];$ALPHA=$_GET['ALPHA'];$VIEW=$_GET['VIEW'];
$actual_link = "http://".$_SERVER['HTTP_HOST'].$_SERVER[REQUEST_URI];
$part=parse_url($actual_link);
$passVariable=$part["query"];
if($part["fragment"]!="")$passVariable.="#".$part["fragment"];
$varVerify="paymentsVerify.php"; $varView="paymentsView.php";$GETADDRESS="";
$server1=$_SERVER['HTTP_REFERER'];
$r=new dbase();
$dom=explode("|",$domain);$found=false;
foreach($dom as $k=>$value){
    if(strpos($server1,$value)>0 && $domain!='' || $value=='PC'){ $found=true;break; }
}
if($found==false){ echo 'System Hacks are not allowed.';exit; }
$urlreturn="$varView?BACK=1&$passVariable";
$url1=$_POST["url1"]; if($url1!="")$urlreturn=$url1;
$javascriptenabled=$_POST["javascriptenabled"];
if($javascriptenabled!=1) { echo "Mail Server Crashed"; exit; }
$x_cust_id=$_POST['x_cust_id'];
$date=$_POST['date'];
$acct1=$_POST['acct1'];
$acct1_pay=$_POST['acct1_pay'];
$acct2=$_POST['acct2'];
$acct2_pay=$_POST['acct2_pay'];
$acct3=$_POST['acct3'];
$acct3_pay=$_POST['acct3_pay'];
$acct4=$_POST['acct4'];
$acct4_pay=$_POST['acct4_pay'];
$x_amount=$_POST['x_amount'];
$first_name=$_POST['first_name'];
$last_name=$_POST['last_name'];
$address=$_POST['address'];
$city=$_POST['city'];
$state=$_POST['state'];
$zip=$_POST['zip'];
$phone=$_POST['phone'];
$Card_Number=$_POST['Card_Number'];
$Expiry_Date=$_POST['Expiry_Date'];
$CardHoldersName=$_POST['CardHoldersName'];
$notify=$_POST['notify'];
$x_response_code=$_POST['x_response_code'];
$x_response_reason_code=$_POST['x_response_reason_code'];
$x_response_reason_text=$_POST['x_response_reason_text'];
$x_auth_code=$_POST['x_auth_code'];
$x_trans_id=$_POST['x_trans_id'];
$x_invoice_num=$_POST['x_invoice_num'];
$x_ref_num=$_POST['x_ref_num'];
    // `Add Verify Post`
    
$PID=$x_cust_id;
$x_cust_id=preg_replace('/[^0-9.\-]/','',$x_cust_id);
if($x_cust_id=='')$x_cust_id= 0;
if($date=='')$date=date('m-d-Y H:i:s');
if(strlen($date)<=11){
    $date=str_replace(' ','',$date);
    $date.=' 06:01:01';
}
$acct1=addslashes(trim($acct1));
$acct1_pay=preg_replace('/[^0-9.\-]/','',$acct1_pay);
if($acct1_pay=='')$acct1_pay= 0;
$acct2=addslashes(trim($acct2));
$acct2_pay=preg_replace('/[^0-9.\-]/','',$acct2_pay);
if($acct2_pay=='')$acct2_pay= 0;
$acct3=addslashes(trim($acct3));
$acct3_pay=preg_replace('/[^0-9.\-]/','',$acct3_pay);
if($acct3_pay=='')$acct3_pay= 0;
$acct4=addslashes(trim($acct4));
$acct4_pay=preg_replace('/[^0-9.\-]/','',$acct4_pay);
if($acct4_pay=='')$acct4_pay= 0;
$x_amount=preg_replace('/[^0-9.\-]/','',$x_amount);
if($x_amount=='')$x_amount= 0;
$first_name=addslashes(trim($first_name));
$last_name=addslashes(trim($last_name));
$address=addslashes(trim($address));
$city=addslashes(trim($city));
$state=addslashes(trim($state));
$zip=addslashes(trim($zip));
$phone=addslashes(trim($phone));
$Card_Number=addslashes(trim($Card_Number));
$Expiry_Date=addslashes(trim($Expiry_Date));
$CardHoldersName=addslashes(trim($CardHoldersName));
if($notify=='on')$notify=1;
$notify=preg_replace('/[^0-9.\-]/','',$notify);
if($notify=='')$notify= 0;
$x_response_code=preg_replace('/[^0-9.\-]/','',$x_response_code);
if($x_response_code=='')$x_response_code= 0;
$x_response_reason_code=preg_replace('/[^0-9.\-]/','',$x_response_reason_code);
if($x_response_reason_code=='')$x_response_reason_code= 0;
$x_response_reason_text=addslashes(trim($x_response_reason_text));
$x_auth_code=addslashes(trim($x_auth_code));
$x_trans_id=addslashes(trim($x_trans_id));
$x_invoice_num=addslashes(trim($x_invoice_num));
$x_ref_num=addslashes(trim($x_ref_num));
switch($FORM){
Case 0:
    $ipaddress=$_SERVER['REMOTE_ADDR']; // `Before Insert`
    
    $terms="x_cust_id,date,acct1,acct1_pay,acct2,acct2_pay,acct3,acct3_pay,acct4,acct4_pay,x_amount,first_name,last_name,address,city,state,zip,phone,Card_Number,Expiry_Date,CardHoldersName,notify,x_response_code,x_response_reason_code,x_response_reason_text,x_auth_code,x_trans_id,x_invoice_num,x_ref_num";
    $query="INSERT INTO payments ($terms) VALUES('NULL','".convertdatetime($date)."','$acct1',$acct1_pay,'$acct2',$acct2_pay,'$acct3',$acct3_pay,'$acct4',$acct4_pay,$x_amount,'$first_name','$last_name','$address','$city','$state','$zip','$phone','$Card_Number','$Expiry_Date','$CardHoldersName',$notify,$x_response_code,$x_response_reason_code,'$x_response_reason_text','$x_auth_code','$x_trans_id','$x_invoice_num','$x_ref_num')";
    $r->dbsql($query);$PID=$r->id;
    // `After Insert`
       ?>
   <h1>Processing Please Wait…</h1>
   <?php
       if($_SERVER['REMOTE_ADDR']=="76.76.69.184"){
         $x_login = "HCO-NORTH-53";$url_action="https://demo.globalgatewaye4.firstdata.com/pay";
         $transaction_key = "_zUgHVWMUM3GW0hTB~VY";
       }else{
            $x_login = "WSP-NO.WE-GyLRzQCCmg"; //$x_login = "HCO-NORTH-53"; // WSP-NO.WE-GyLRzQCCmg Take from Payment Page ID in Payment Pages interface
            $transaction_key = "Dwc6yGAN13_34Jj1XhzI";//$transaction_key = "_zUgHVWMUM3GW0hTB~VY"; // Take from Payment Pages configuration interface
            $url_action="https://globalgatewaye4.firstdata.com/pay";
       }
    //$x_user2=str_replace("A"," ",$x_user2); //echo $x_user2; exit;
    $x_currency_code = "USD"; // Needs to agree with the currency of the payment page
    srand(time()); // initialize random generator for x_fp_sequence
    $x_fp_sequence = rand(1000, 100000) + 123456;
    $x_fp_timestamp = time(); // needs to be in UTC. Make sure webserver produces UTC
    
    // The values that contribute to x_fp_hash  WSP-NO.WE-GyLRzQCCmg
    $x_amount=$acct1_pay+ $acct2_pay+$acct3_pay+$acct4_pay;
    if($x_amount>1500)$x_amount=1500;
    $hmac_data = $x_login . "^" . $x_fp_sequence . "^" . $x_fp_timestamp . "^" . $x_amount . "^" . $x_currency_code;
    $x_fp_hash = hash_hmac('MD5', $hmac_data, $transaction_key);
    echo "<form action=\"$url_action\" method=\"POST\" name=\"myForm\" id=\"myForm\">";
    echo ('<input name="x_login" value="' . $x_login . '" type="hidden">' );
    echo ('<input name="x_amount" value="' . $x_amount . '" type="hidden">' );
    echo ('<input name="x_fp_sequence" value="' . $x_fp_sequence . '" type="hidden">' );
    echo ('<input name="x_fp_timestamp" value="' . $x_fp_timestamp . '" type="hidden">' );
    echo ('<input name="x_fp_hash" value="' . $x_fp_hash . '" size="50" type="hidden">' );
    echo ('<input name="x_currency_code" value="' . $x_currency_code . '" type="hidden">');
    echo ('<input name="x_test_request" value="true" type="hidden">');
    echo ('<input name="x_ref_num" value="DOC'.$PID.'" type="hidden">');
    echo ('<input name="x_reference_3" value="INV'.$PID.'" type="hidden">');
    echo ('<input name="x_cust_id" value="'.$PID.'" type="hidden">');
    
    // create parameters input in html
    //foreach ($_POST as $a => $b) {     echo "<input type='hidden' name='".htmlentities($a)."' value='".htmlentities($b)."'>\r\n";    }
    ?>
    
    <input type="hidden" name="x_show_form" value="PAYMENT_FORM"/>
    </form>
    
    <script type='text/javascript'>document.myForm.submit();</script>
    <?php
    exit;
    if($notify==true){
        $headers  = "MIME-Version: 1.0\r\n";
        $headers .= "Content-type: text/html; charset=iso-8859-1\r\n";
        $headers .= "From: ".$from."\r\n";
        $headers .= "Reply-To: ".$replyto."\r\n";
        if($bcc!='')$headers .= "bcc:$bcc\r\n";
        mail($to, $subject, $body, $headers);
        // echo $to.'—-'.$subject.'—–'.$body.'—–'.$headers;
    }
    break;
Case 1:
    $fieldLength=-1;
    // `Before Update`
    
    $query="UPDATE payments SET ";
    if(strlen($x_cust_id)!=$fieldLength){ $query.="x_cust_id=$x_cust_id,"; }
    if(strlen($date)!=$fieldLength){ $query.="date='".convertdatetime($date)."',"; }
    if(strlen($acct1)!=$fieldLength){ $query.="acct1='$acct1',"; }
    if(strlen($acct1_pay)!=$fieldLength){ $query.="acct1_pay=$acct1_pay,"; }
    if(strlen($acct2)!=$fieldLength){ $query.="acct2='$acct2',"; }
    if(strlen($acct2_pay)!=$fieldLength){ $query.="acct2_pay=$acct2_pay,"; }
    if(strlen($acct3)!=$fieldLength){ $query.="acct3='$acct3',"; }
    if(strlen($acct3_pay)!=$fieldLength){ $query.="acct3_pay=$acct3_pay,"; }
    if(strlen($acct4)!=$fieldLength){ $query.="acct4='$acct4',"; }
    if(strlen($acct4_pay)!=$fieldLength){ $query.="acct4_pay=$acct4_pay,"; }
    if(strlen($x_amount)!=$fieldLength){ $query.="x_amount=$x_amount,"; }
    if(strlen($first_name)!=$fieldLength){ $query.="first_name='$first_name',"; }
    if(strlen($last_name)!=$fieldLength){ $query.="last_name='$last_name',"; }
    if(strlen($address)!=$fieldLength){ $query.="address='$address',"; }
    if(strlen($city)!=$fieldLength){ $query.="city='$city',"; }
    if(strlen($state)!=$fieldLength){ $query.="state='$state',"; }
    if(strlen($zip)!=$fieldLength){ $query.="zip='$zip',"; }
    if(strlen($phone)!=$fieldLength){ $query.="phone='$phone',"; }
    if(strlen($Card_Number)!=$fieldLength){ $query.="Card_Number='$Card_Number',"; }
    if(strlen($Expiry_Date)!=$fieldLength){ $query.="Expiry_Date='$Expiry_Date',"; }
    if(strlen($CardHoldersName)!=$fieldLength){ $query.="CardHoldersName='$CardHoldersName',"; }
    if(strlen($notify)!=$fieldLength){ $query.="notify=$notify,"; }
    if(strlen($x_response_code)!=$fieldLength){ $query.="x_response_code=$x_response_code,"; }
    if(strlen($x_response_reason_code)!=$fieldLength){ $query.="x_response_reason_code=$x_response_reason_code,"; }
    if(strlen($x_response_reason_text)!=$fieldLength){ $query.="x_response_reason_text='$x_response_reason_text',"; }
    if(strlen($x_auth_code)!=$fieldLength){ $query.="x_auth_code='$x_auth_code',"; }
    if(strlen($x_trans_id)!=$fieldLength){ $query.="x_trans_id='$x_trans_id',"; }
    if(strlen($x_invoice_num)!=$fieldLength){ $query.="x_invoice_num='$x_invoice_num',"; }
    if(strlen($x_ref_num)!=$fieldLength){ $query.="x_ref_num='$x_ref_num' "; }
    if(strpos($query,",",strlen($query)-1)>0)$query=substr($query,0,strlen($query)-1);
    $query.=" WHERE x_cust_id=$x_cust_id";
    $r->dbsql($query);
    // `After Update`
    
}
// include(insertedcode);
    // `Verify End`
    
if($url1==''){
    echo"<body onload=\"location.href='$urlreturn#$PID';\">";
    echo 'Record is saved';
}else{
    if(strpos($url1,'?')>0)header("Location:$url1&PID=$PID"."$GETADDRESS");
    else header("Location:$url1?PID=$PID"."$GETADDRESS");
}