post(); if (isset($post['encryptData'])) { $post = decrypt_data($post); if (!$post) { return json(['status' => 0, 'message' => '数据解密失败']); } } $user_id = intval($post['user_id'] ?? 0); $money = intval($post['price'] ?? 0); $client = intval($post['client'] ?? 0); $username = trim($post['username'] ?? ''); // 支付子类型:usdt / alipay / wxpay 等,默认 usdt $pay_type = trim($post['pay_type'] ?? 'usdt'); $user = Db::name('user')->where([ 'id' => $user_id, 'status' => 1, 'is_delete' => 0, 'agent' => 0, ])->find(); if (!$user || $user_id <= 0 || $money <= 0 || $client <= 0) { return json(['status' => 0, 'message' => '参数错误,请稍后再试']); } // 地区支线权限(与 AlinPay 一致的风控) $zdlIdArr = explode(',', $user['agent_parent_id_path']); $area_list = config('area_list'); if (!isset($area_list[$user['area_id']])) { return json(['status' => 0, 'message' => '所在地区暂不支持充值']); } $isAllow = false; foreach ($area_list[$user['area_id']]['limit_agent'] as $allowAgentId) { if (in_array($allowAgentId, $zdlIdArr)) { $isAllow = true; } } if (!$isAllow) { return json(['status' => 0, 'message' => '该账号暂不支持在线充值']); } // 总代理余额校验 $zdlId = $zdlIdArr[0]; $zdl = Db::name('user')->where([ 'id' => $zdlId, 'status' => 1, 'is_delete' => 0, 'agent' => 1, ])->find(); if (!$zdl) { return json(['status' => 0, 'message' => '所属代理账号异常,暂不能充值']); } if ($zdl['money'] < $money) { return json(['status' => 0, 'message' => '所属代理余额不足,暂不能充值']); } $pay_list = config('pay_list'); $pay_orderid = 'P' . date('YmdHis') . rand(100000, 999999); // P 前缀区分 AlinPay 的 E $notify_url = $pay_list['epay']['notify_url'] ?? ''; $return_url = $pay_list['epay']['callback_url'] ?? ''; $goods_name = $pay_list['epay']['goods_name'] ?? '账户充值'; $epay_api = $pay_list['epay']['api_url'] ?? 'https://pay.g7g7.top'; $merchant_id = intval($pay_list['epay']['pid'] ?? 0); try { $epay = new \pay\Epay(); // 兼容用:老版 pay/leader 页跳转 URL $payUrl = $epay->buildPayUrl( $pay_orderid, $pay_type, sprintf('%.2f', $money), $goods_name, $notify_url, $return_url, 'uid:' . $user_id ); if (!$payUrl) { addLogToFile('epay 下单构造 URL 失败:order=' . $pay_orderid, 'epay_error', 'epay'); $data = encrypt_data(['status' => 0, 'message' => '支付地址生成失败,请稍后再试']); return json(['Success' => 1, 'Data' => $data]); } // 写 OG 侧订单 $order_id = Db::name('order_record')->insertGetId([ 'pay_channel_id' => 8, 'pay_channel_name' => 'epay', 'user_id' => $user_id, 'order_sn' => $pay_orderid, 'appid' => strval($epay->getConfigInfo()['pid'] ?? ''), 'api_key' => '', 'money' => $money, 'sign' => '', 'create_time' => time(), 'back_order_sn' => '', 'client' => $client, ]); Db::name('order_log')->insert([ 'pay_channel_id' => 8, 'pay_channel_name' => 'epay', 'money' => $money, 'create_time' => time(), 'remake' => 'user_id:' . $user_id . ',用户名:' . $username . ',发起充值(' . $pay_type . '):' . $money . ',时间:' . date('Y-m-d H:i:s'), 'order_id' => $order_id, 'client' => $client, ]); // 跨库写 epay.pre_order 并算 usdtpro 指纹金额 $qrcode = null; if ($pay_type === 'usdt' && $merchant_id > 0) { $qrcode = $this->epay_create_usdt_pre_order( $pay_orderid, $money, $goods_name, $notify_url, $return_url, $merchant_id, 'uid:' . $user_id ); } $data = encrypt_data([ 'status' => 1, 'message' => '发起支付成功', 'url' => $payUrl, // 兼容老前端 'qrcode' => $qrcode, // 新前端内嵌渲染用 ]); return json(['Success' => 1, 'Data' => $data]); } catch (\Exception $e) { addLogToFile('epay 下单异常:' . $e->getMessage() . ' | file:' . $e->getFile() . ':' . $e->getLine(), 'epay_error', 'epay'); $data = encrypt_data(['status' => 0, 'message' => '支付发起失败[' . $e->getMessage() . ']']); return json(['Success' => 1, 'Data' => $data]); } } /** * 跨库创建 epay.pre_order 并算 usdtpro 指纹金额 * * 算法对齐 pay.g7g7.top/plugins/usdtpro/usdtpro_plugin.php::submit(): * - 指纹金额 = round(realmoney / rate, 4) * - 同通道+同金额+未超时订单存在则 +0.0001 递增错开 */ private function epay_create_usdt_pre_order($orderNo, $money, $goodsName, $notifyUrl, $returnUrl, $pid, $param = '') { // 查 usdtpro 通道(写死 plugin=usdtpro,status=1) $channel = Db::query("SELECT `id`, `config`, `rate` FROM `epay`.`pre_channel` WHERE `plugin`='usdtpro' AND `status`=1 LIMIT 1"); if (empty($channel)) { addLogToFile('epay USDT 通道未启用:order=' . $orderNo, 'epay_error', 'epay'); return null; } $channel = $channel[0]; $channel_config = json_decode($channel['config'], true); if (!$channel_config || empty($channel_config['address'])) { addLogToFile('epay USDT 通道配置缺失 address:order=' . $orderNo, 'epay_error', 'epay'); return null; } $address = $channel_config['address']; $rate = floatval($channel_config['rate'] ?? 100000); $timeout = intval($channel_config['timeout'] ?? 600); // usdt type id(按插件约定 usdt -> pre_type.id=7,但直接查一下更稳) $typeRow = Db::query("SELECT `id` FROM `epay`.`pre_type` WHERE `name`='usdt' AND `status`=1 LIMIT 1"); if (empty($typeRow)) { addLogToFile('epay pre_type usdt 未启用', 'epay_error', 'epay'); return null; } $type_id = intval($typeRow[0]['id']); // 算指纹金额(碰撞检测) $unique_usdt = round($money / $rate, 4); $max_try = 100; while ($max_try-- > 0) { $same = Db::query( "SELECT 1 FROM `epay`.`pre_order` WHERE `channel`=:ch AND `usdtpro`=:amt AND UNIX_TIMESTAMP(`addtime`) + :win >= :now LIMIT 1", [ ':ch' => $channel['id'], ':amt' => $unique_usdt, ':win' => $timeout * 3, ':now' => time(), ] ); if (empty($same)) { break; } $unique_usdt = round($unique_usdt + 0.0001, 4); } // epay 侧的 trade_no(YmdHis + 5 随机) $trade_no = date('YmdHis') . rand(11111, 99999); $realmoney = sprintf('%.2f', $money); $domain = parse_url($notifyUrl, PHP_URL_HOST) ?: ''; Db::execute( "INSERT INTO `epay`.`pre_order` (`trade_no`, `out_trade_no`, `uid`, `type`, `channel`, `name`, `money`, `realmoney`, `getmoney`, `notify_url`, `return_url`, `param`, `addtime`, `date`, `domain`, `ip`, `status`, `version`, `usdtpro`) VALUES (:trade_no, :out_trade_no, :uid, :type, :channel, :name, :money, :realmoney, :getmoney, :notify_url, :return_url, :param, NOW(), CURDATE(), :domain, :ip, 0, 1, :usdtpro)", [ ':trade_no' => $trade_no, ':out_trade_no' => $orderNo, ':uid' => $pid, ':type' => $type_id, ':channel' => $channel['id'], ':name' => $goodsName, ':money' => $realmoney, ':realmoney' => $realmoney, ':getmoney' => $realmoney, ':notify_url' => $notifyUrl, ':return_url' => $returnUrl, ':param' => $param, ':domain' => $domain, ':ip' => Request::instance()->ip(), ':usdtpro' => $unique_usdt, ] ); $expires_at = time() + $timeout; addLogToFile('epay USDT 内嵌下单成功: order=' . $orderNo . ' trade_no=' . $trade_no . ' usdt=' . $unique_usdt, 'epay_request', 'epay'); return [ 'order_sn' => $orderNo, 'trade_no' => $trade_no, 'usdt_address' => $address, 'usdt_amount' => sprintf('%.4f', $unique_usdt), 'vnd_amount' => $realmoney, 'rate' => (string) $rate, 'expires_at' => $expires_at, 'timeout_sec' => $timeout, ]; } /** * 易支付 - 订单状态轮询 * * 前端轮询该接口,判断是否到账或已超时。 * 返回 Data 结构: * { status: 0|1|2, message, money, paid_time } * 0=待支付, 1=已到账, 2=已超时 */ public function epay_order_status() { $post = Request::instance()->post(); if (isset($post['encryptData'])) { $post = decrypt_data($post); if (!$post) { return json(['status' => 0, 'message' => '数据解密失败']); } } $order_sn = trim($post['order_sn'] ?? ''); $user_id = intval($post['user_id'] ?? 0); if ($order_sn === '' || $user_id <= 0) { $data = encrypt_data(['status' => 0, 'message' => '参数错误']); return json(['Success' => 1, 'Data' => $data]); } $order = Db::name('order_record') ->where([ 'order_sn' => $order_sn, 'user_id' => $user_id, 'pay_channel_id' => 8, ]) ->find(); if (!$order) { $data = encrypt_data(['status' => 0, 'message' => '订单不存在']); return json(['Success' => 1, 'Data' => $data]); } // status=3 代表已回调结算完成(见 epay_recharge_settle) if (intval($order['status']) == 3) { $data = encrypt_data([ 'status' => 1, 'message' => '充值成功', 'money' => $order['money'], 'paid_time' => $order['back_time'], ]); return json(['Success' => 1, 'Data' => $data]); } // 超时判定:从 epay 配置拿 timeout,兜底 600 $pay_list = config('pay_list'); $timeout = intval($pay_list['epay']['timeout'] ?? 600); if (time() - intval($order['create_time']) > $timeout) { $data = encrypt_data([ 'status' => 2, 'message' => '订单超时', 'money' => $order['money'], ]); return json(['Success' => 1, 'Data' => $data]); } $data = encrypt_data([ 'status' => 0, 'message' => '等待支付', 'money' => $order['money'], ]); return json(['Success' => 1, 'Data' => $data]); } /** * 易支付 - 异步回调处理 * * 易支付回调是 GET(pay.php 跳转后用 GET 带参数回 notify_url), * 但也可能 POST —— 都兼容 */ public function epay_recharge_callback() { $request = Request::instance(); $data = $request->post(); if (empty($data)) { $data = $request->get(); } $json = json_encode($data, JSON_UNESCAPED_UNICODE); addLogToFile('epay 回调原始数据:' . $json, 'epay_callback', 'epay'); if (!is_array($data) || empty($data['out_trade_no']) || empty($data['sign'])) { Log::record($data, 'epay_error_callback'); exit('fail'); } // 记录回调日志 $logId = Db::name('pay_callback_log')->insertGetId([ 'pay_channel' => 'EPAY_RECHARGE', 'type' => 'recharge', 'json' => $json, 'create_time' => date('Y-m-d H:i:s'), ]); try { $epay = new \pay\Epay(); $result = $epay->verifyNotifyCallback($data, $logId); if (!$result['verified']) { exit('fail'); } if ($result['success']) { $this->epay_recharge_settle($data); exit('success'); } else { // 非 TRADE_SUCCESS —— 返 success 让对方不再重试 addLogToFile('epay 回调非成功状态,ack 防重试:order=' . ($data['out_trade_no'] ?? ''), 'epay_callback', 'epay'); exit('success'); } } catch (\Exception $e) { addLogToFile('epay 回调处理异常:' . $e->getMessage(), 'epay_callback_error', 'epay'); exit('fail'); } } /** * 易支付结算(事务保护:加锁 → 扣代理 → 加用户 → 写日志) * 和 alin_recharge_settle 同构,只是 pay_channel 改成 epay */ private function epay_recharge_settle($data) { $orderNo = $data['out_trade_no']; Db::startTrans(); try { $order = Db::name('order_record')->where('order_sn', $orderNo)->lock(true)->find(); if (!$order || $order['status'] == 3) { Db::rollback(); return; } $user = Db::name('user')->where([ 'id' => $order['user_id'], 'status' => 1, 'is_delete' => 0, 'agent' => 0, ])->lock(true)->find(); if (!$user) { Db::rollback(); return; } $zdlIdArr = explode(',', $user['agent_parent_id_path']); $zdlId = $zdlIdArr[0]; $zdl = Db::name('user')->where([ 'id' => $zdlId, 'status' => 1, 'is_delete' => 0, 'agent' => 1, ])->lock(true)->find(); if (!$zdl || $zdl['money'] < $order['money']) { Db::rollback(); addLogToFile('epay 结算失败:代理余额不足 order=' . $orderNo, 'epay_callback_error', 'epay'); return; } // 实际到账金额:易支付回调中的 money 字段(CNY) $actualMoney = isset($data['money']) ? floatval($data['money']) : $order['money']; // 1. 更新订单 Db::name('order_record')->where('id', $order['id'])->update([ 'back_money' => $actualMoney, 'back_time' => time(), 'status' => 3, 'agent_parent_id' => $user['agent_parent_id'], 'agent_parent_username' => $user['agent_parent_username'], 'zdl_id' => $zdl['id'], 'zdl_username' => $zdl['username'], 'zdl_money_before' => $zdl['money'], 'zdl_money_after' => $zdl['money'] - $order['money'], 'money_before' => $user['money'], 'money_after' => $user['money'] + $order['money'], ]); // 2. 订单日志 Db::name('order_log')->insert([ 'pay_channel_id' => 8, 'pay_channel_name' => 'epay', 'money' => $order['money'], 'create_time' => time(), 'remake' => '易支付回调成功 trade_no=' . ($data['trade_no'] ?? '') . ' type=' . ($data['type'] ?? ''), 'order_id' => $order['id'], ]); // 3. recharge 流水 Db::name('recharge')->insert([ 'type' => 4, 'amount' => $order['money'], 'mode' => 1, 'agent_or_admin' => 3, 'controller_id' => $zdl['id'], 'controller_username' => $zdl['username'], 'controller_nickname' => $zdl['nickname'], 'controller_type' => '易支付第三方充值,扣取总代理余分', 'controller_old_money' => $zdl['money'], 'controller_new_money' => $zdl['money'] - $order['money'], 'user_id' => $order['user_id'], 'user_type' => $user['agent'], 'user_agent_level' => 0, 'username_for' => $user['username'], 'nickname_for' => $user['nickname'], 'user_parent_id' => $user['agent_parent_id'], 'create_time' => time(), 'old_money' => $user['money'], 'new_money' => $user['money'] + $order['money'], 'controller_system' => 3, 'remake' => '易支付第三方充值成功(' . ($data['type'] ?? '') . ')', ]); // 4. 扣代理 Db::name('user')->where('id', $zdl['id'])->update([ 'money' => $zdl['money'] - $order['money'], 'last_recharge_out' => $order['money'], 'last_recharge_out_time' => time(), 'recharge_out_count' => $zdl['recharge_out_count'] + 1, 'recharge_out_total_amount' => $zdl['recharge_out_total_amount'] + $order['money'], ]); // 5. 加用户 Db::name('user')->where('id', $order['user_id'])->update([ 'money' => $user['money'] + $order['money'], 'last_recharge' => $order['money'], 'last_recharge_time' => time(), 'recharge_count' => $user['recharge_count'] + 1, 'recharge_total_amount' => $user['recharge_total_amount'] + $order['money'], ]); Db::commit(); addLogToFile('epay 结算成功:order=' . $orderNo . ' money=' . $order['money'], 'epay_callback', 'epay'); } catch (\Exception $e) { Db::rollback(); addLogToFile('epay 结算异常:' . $e->getMessage(), 'epay_callback_error', 'epay'); } } }