if ($user == '@admin') {
    $_SESSION['login_admin'] = $user;
    ?>
<script language="javascript">
    window.location.href = "backend/index-admin.php"
</script>
<?php 
} else {
    //
    if (isset($user) and isset($pass)) {
        $index = "index.php";
        $dbsms = new Database(DB_HOST_TK, DB_USER_TK, DB_PASS_TK, DB_NAME_TK);
        $dbsms->Query("select * from z42_sys_member where username='******' AND password='******' AND status='yes'");
        $dbarr = $dbsms->Fetch_array();
        $num_rows = $dbsms->Numrow();
        $row = $dbsms->Fetch_row();
        //$user_acc=$dbarr['ACCESS_BOX'];
        $user_id = $dbarr['id'];
        //$ubid=$dbarr['BOX_ID'];
        if ($num_rows == 1) {
            //insert log
            $dbsms->Query("insert into z42_log_login(user,date_time,date_login) \t\t value('{$user}','{$sdate}','{$sdate}')");
            //
            $dbsms->Query("update z42_sys_member set lastlogin='******' where id='" . $user_id . "'");
            //user status
            $_SESSION['login_true'] = $user_id;
            ?>
   <script langquage='javascript'>
window.location="index.php";
</script>
       <?php