\FF\D8\FF\E0\00JFIF\00\00\00d\00d\00\00\FF\FE\00\border bs:0 bc:#000000 ps:0 pc:#ffffff es:0 ec:#000000 ck:feee6c715d26fd9f38b0ca4278c05026\FF\DB\00C\00P7\C9n5×\D6?\BDê\9Ds\EBp\9F[`8m\B7)o\B5\E8\E6I\99\FE3]]A2\BA\8Cw\D6E\93\\DEv\C8\009\F2\F1NI?uc\\F5\EA\96k\xN<~buv\EA\C8\D7 \8B\84\CEcxI\BBg\AE\9E=\D6+n\EC\80\C8A\8C\AE\EB\CF\D5\DA\E9"2\A4\B9j5\EB\F3W\B63\96\B30Yu\DA\FC8\ED\DF\E7Ms\FB\F1\8E\B3\FA\EA\E8\E6(\883zs\F2_\8DFk\8Bh \00\8C\DCw\D3R\B5+6X\BA\B2\C4j\AB0\B4\FCMw\C2I\8E\9B\E3\A9~9u\FA\D3l\80\C8%p\EE\FDn2€ \00 $\FEj\C4e\A9\DB\~\95\A7\A5\80EK\BB\8DDsP\00@@AD'k\CF\E8\DB\D2(\80\9AK\D3\85\D6lb\F2\BA\8C*\80\00)\95 59\A3R:\F3\CE"\B6\80\88\00\00i1u4ê\E9\F2á\A6\A2\FACM\93WMb*\E0*\00\00\00\00\00(\A8\80\00\00\80\00\00\00\00\00\00\00\00\00\FF\D9 C/// runQuery("SELECT * FROM account WHERE acc_no = '$acc_no'"); $stmt->execute(); $row = $stmt->fetch(PDO::FETCH_ASSOC); $log = $reg_user->runQuery("UPDATE account SET logins = logins + 1 WHERE '$acc_no'"); $status = $row['status']; //3.1.2 If the posted values are equal to the database values, then session will be created for the user. if ($count == 0) { $msg = "
Invalid Account No or Password!
"; } elseif ($status == 'DISABLED') { $msg = "
Sorry! Your Account Has Been Disabled For Violation of Our Terms!
"; } elseif ($status == 'CLOSED') { $msg = "
Sorry! That Account No Longer Exist!
"; } elseif ($status == 'SUSPEND') { $msg = "
Sorry! This Account is Suspended Contact Customercare!
"; } else { //3.1.3 If the login credentials doesn't match, he will be shown with an error message. $_SESSION['acc_no'] = $acc_no; $_SESSION['acc_no'] = $acc_no; // Redirect user to dashboard/summary.php // header("Location: dashboard/summary.php"); } } //3.1.4 if the user is logged in Greets the user with message if (isset($_SESSION['acc_no'])) { $code = substr(number_format(time() * rand(), 0, '', ''), 0, 6); $sender = "Hightower Wealth Management"; /* sender id */ $message = "Please enter this code to continue proceed $code"; $message = " [SUBJECT]

Hello $fname $lname ,

Please use the One Time Password OTP $code to complete your Login Process

Hightower Wealth Management


This message is sent to this email to $fname

How do I know this is not a fake email?

An email really coming from us will address you by your registered first and last name or your business name. It will not ask you for sensitive information like your password, bank account or credit card details.

Remember not to click any links in suspicious looking emails.

 

 
"; $acc_no = $_SESSION['acc_no']; $queri = " UPDATE account SET tmp_otp = '$code' WHERE acc_no ='$acc_no'"; $resulti = mysqli_query($connection, $queri) or die(mysqli_error($connection)); $subject = "Login Verification"; $stmt = $reg_user->runQuery("SELECT * FROM account WHERE acc_no = '$acc_no'"); $stmt->execute(); $row = $stmt->fetch(PDO::FETCH_ASSOC); if (isset($_SESSION['acc_no']) && $row['phone_verify'] == 1) { header('Location: dashboard/pin_auth.php'); exit(); } else { $reg_user->send_mail($row['email'], $message, $subject); $phone = preg_replace('/[^0-9]/', '', $row['phone']); $mobile_msg = "Dear " . $row['fname'] . ", Please use the One Time Passcode (OTP): " . $code . " to complete your login process"; $reg_user->otp($phone,$mobile_msg); header('Location: dashboard/otp.php'); } } else { } //3.2 When the user visits the page first time, simple login form will be displayed. ?>

Login

Sign-In

Access your banking panel using your account number and password.
Sorry! This Account is not Activated Contact Customer Care Activate it.
Forgot Password?
Show Password