cloudflare
tcp/443 tcp/80 tcp/8443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa382c5929d2d249dff7102974984b771fd67223c30
GraphQL introspection enabled at /graphql Types: 406 (by kind: ENUM: 24, INPUT_OBJECT: 92, INTERFACE: 19, OBJECT: 266, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa382c5929d2d249dff7102974984b771fd807c7e6d
GraphQL introspection enabled at /graphql Types: 406 (by kind: ENUM: 24, INPUT_OBJECT: 92, INTERFACE: 19, OBJECT: 266, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490dbf8cbe7e2097be36ade52f4daca5b0060ab0f8d32dd9a08a2
GraphQL introspection enabled at /graphql/api Types: 406 (by kind: ENUM: 24, INPUT_OBJECT: 92, INTERFACE: 19, OBJECT: 266, SCALAR: 5) Operations: - Query: Query | fields: availableStores, blogAuthor, blogCategories, blogCategory, blogComments - Mutation: Mutation | fields: addBundleProductsToCart, addCommentToPost, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart Directives: deprecated, include, skip (total: 3)
Open service 172.67.73.160:80 · 1fitauto.com
2026-01-10 14:24
HTTP/1.1 301 Moved Permanently
Date: Sat, 10 Jan 2026 14:24:56 GMT
Content-Length: 0
Connection: close
Location: https://1fitauto.com/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ldV8zxD7exP57HWxHfjK49d9UIwassoTk0oNzzwvciIQLpCZiTvUunDkxvytDlO6L10DMlZlke%2FZBYxIm1tVKUtO%2Fa6mbV8Iwq%2Fr"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server: cloudflare
CF-RAY: 9bbcd73ec82ed9de-FRA
alt-svc: h3=":443"; ma=86400
Open service 64.202.116.121:443 · mail.1fitauto.com
2026-01-10 07:10
HTTP/1.1 200 OK
Connection: close
x-powered-by: PHP/7.4.33
content-type: text/html; charset=UTF-8
content-length: 1368
date: Sat, 10 Jan 2026 07:11:00 GMT
alt-svc: h3=":443"; ma=2592000, h3-29=":443"; ma=2592000, h3-Q050=":443"; ma=2592000, h3-Q046=":443"; ma=2592000, h3-Q043=":443"; ma=2592000, quic=":443"; ma=2592000; v="43,46"
Page title: Index of /
<!DOCTYPE html><html><head><meta http-equiv="Content-type" content="text/html; charset=UTF-8" /><meta name="viewport" content="width=device-width, initial-scale=1.0" /><link rel="stylesheet" href="/_autoindex/assets/css/autoindex.css" /><script src="/_autoindex/assets/js/tablesort.js"></script><script src="/_autoindex/assets/js/tablesort.number.js"></script><title>Index of /</title><style>@media (prefers-color-scheme:dark){body{background-color:#000!important}}</style></head><body><div class="content"><h1 style="color: #555;">Index of /</h1>
<div id="table-list"><table id="table-content"><thead class="t-header"><tr><th class="colname" aria-sort="ascending"><a class="name" href="?ND" onclick="return false"">Name</a></th><th class="colname" data-sort-method="number"><a href="?MA" onclick="return false"">Last Modified</a></th><th class="colname" data-sort-method="number"><a href="?SA" onclick="return false"">Size</a></th></tr></thead>
<tr><td data-sort="*cgi-bin"><a href="/cgi-bin/"><img class="icon" src="/_autoindex/assets/icons/folder-fill.svg" alt="Directory">cgi-bin</a></td><td data-sort="68718280">2022-02-22 08:24</td><td data-sort="-1">-</td></tr>
</table></div>
<address>Proudly Served by LiteSpeed Web Server at mail.1fitauto.com Port 443</address></div><script>new Tablesort(document.getElementById("table-content"));</script></body></html>
Open service 104.26.7.90:443 · 1fitauto.com
2026-01-09 22:18
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 22:18:31 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
vary: Accept-Encoding
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=%2FGxgv%2FJiD7uJrMnBEEU6yfWntHd%2FT4V%2Bz6IxTiV%2BVcfY%2BTGpnsl%2FGlljM78sM0%2FTQbHL4MuN9LZBWa9tAGpWRH1VgIaVXBdd0egx"}]}
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Set-Cookie: ngx-uid=rB8FhWlhfrcVkwFSBXgSAg==; expires=Sun, 08-Feb-26 22:18:31 GMT; path=/
cf-cache-status: DYNAMIC
CF-RAY: 9bb74f977f813356-EWR
alt-svc: h3=":443"; ma=86400
Open service 172.67.73.160:8443 · www.1fitauto.com
2026-01-09 19:09
HTTP/1.1 522 <none> Date: Fri, 09 Jan 2026 19:10:00 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bb63afc1a71a067-FRA alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 172.67.73.160:8443 · 1fitauto.com
2026-01-09 18:27
HTTP/1.1 522 <none> Date: Fri, 09 Jan 2026 18:27:47 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bb5fd256c331c28-FRA alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 104.26.7.90:443 · 1fitauto.com
2025-12-30 12:57
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 12:57:37 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
vary: Accept-Encoding
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Ix9eKLy6S6ClIm0A6BRNwQZcxeJjb331VTwjuGWunpOukfscLY1WaWBWs%2B0uIKuaO3aXl3HVSnrwChTKZ%2BcKDOcLxxhV16YXn%2Bs1"}]}
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Set-Cookie: ngx-uid=rB8FhWlTzEC0NEu3SAnIAg==; expires=Thu, 29-Jan-26 12:57:36 GMT; path=/
cf-cache-status: DYNAMIC
CF-RAY: 9b61b4344ef4fbfb-EWR
alt-svc: h3=":443"; ma=86400
Open service 172.67.73.160:8443 · 1fitauto.com
2025-12-23 08:16
HTTP/1.1 522 <none> Date: Tue, 23 Dec 2025 08:17:04 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9b266b2cbcf1b9d7-BLR alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 172.67.73.160:8443 · www.1fitauto.com
2025-12-23 03:31
HTTP/1.1 522 <none> Date: Tue, 23 Dec 2025 03:31:30 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9b24c8d7fd9466b4-AMS alt-svc: h3=":8443"; ma=86400 error code: 522
Open service 104.26.7.90:80 · 1fitauto.com
2025-12-22 18:30
HTTP/1.1 301 Moved Permanently
Date: Mon, 22 Dec 2025 18:30:45 GMT
Content-Length: 0
Connection: close
Location: https://1fitauto.com/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ec%2Ff4o6INUB%2BgKf8q4rC1G6JBsRvtcT2RP61jG7g1NuPabLOpdIp8CUnWvQ8cBnQ3jZ2FWuDLEkBjd8h1DaocAP0vTnPnK4L8g%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server: cloudflare
CF-RAY: 9b21b1375c269b49-FRA
alt-svc: h3=":443"; ma=86400
Open service 104.26.7.90:443 · 1fitauto.com
2025-12-22 10:53
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 10:53:27 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
vary: Accept-Encoding
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=7dBSY4y17GHl7bdx9V0nEYjZngDHoRQJ7ENIvFEPA1zfCbglRRzg5Zm5OelACYVVQBOC5TMmhcKnGCwdMtj3I%2BXFfHj8dkm912II"}]}
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Set-Cookie: ngx-uid=rB8FhWlJIye0NEu3OM5RAg==; expires=Wed, 21-Jan-26 10:53:27 GMT; path=/
cf-cache-status: DYNAMIC
CF-RAY: 9b1f1356d8f1ac7c-YYZ
alt-svc: h3=":443"; ma=86400
Open service 104.26.7.90:443 · 1fitauto.com
2025-12-21 10:48
HTTP/1.1 200 OK
Date: Sun, 21 Dec 2025 10:48:09 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
vary: Accept-Encoding
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=inH1z1mtSW0QcDXGLRYb43qZPYVAcf3XzXcF2S4og7FDIUwfm4gB0BC0WCir%2FYXxcJUTn4uIGvxnKIzyzDWD4h7myoXUzQYDV5Qq"}]}
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Set-Cookie: ngx-uid=rB8FhWlH0Gm0NEu3Nw1VAg==; expires=Tue, 20-Jan-26 10:48:09 GMT; path=/
cf-cache-status: DYNAMIC
CF-RAY: 9b16ce35793c97f0-SJC
alt-svc: h3=":443"; ma=86400
Open service 104.26.7.90:443 · 1fitauto.com
2025-12-19 08:46
HTTP/1.1 200 OK
Date: Fri, 19 Dec 2025 08:46:34 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
vary: Accept-Encoding
x-content-type-options: nosniff
x-xss-protection: 1; mode=block
x-frame-options: SAMEORIGIN
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Na9zE1aq6iWiTgGl%2FfrK5ezmMsZM3oHgdOGEmAa6FiZZNi1Kq%2BekDDK2wUqz6zCnMiLOTSv9GT2CnI8shhYDgJj1jcfFw2m552H8"}]}
pragma: no-cache
expires: -1
Cache-Control: no-store, no-cache, must-revalidate, max-age=0
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Set-Cookie: ngx-uid=rB8FhWlFEOm0NEu3M2CDAg==; expires=Sun, 18-Jan-26 08:46:33 GMT; path=/
cf-cache-status: DYNAMIC
CF-RAY: 9b05a1533ab8d354-FRA
alt-svc: h3=":443"; ma=86400