cloudflare
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09cae99eea9ae99eea96ba46591629a2ee1cbb56ea163e836bb
Found 23 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/pb_block_image /media/cache/pb_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads /uploads/media
Severity: low
Fingerprint: 5f32cf5d6962f09c9e04c3bc9e04c3bcc68b1780bf80d660e08e14da7f2276dc
Found 22 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/pb_block_image /media/cache/pb_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e079eb88ae29eb88ae29eb88ae29eb88ae29eb88ae2
Symfony profiler enabled: https://bwincasino-fr.com/_profiler/empty/search/results
Open service 188.114.97.3:443 · bwincasino-fr.com
2026-01-09 14:27
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 14:27:25 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=wl9MBbiuHWxq38RhHynbp4raK%2FkCE%2B3OVNhMMwoskw9CHSPAUHVy%2BR1r2g8fGL1cY%2F7qsva65Y7VdIPKx%2FX45cfJwb2Zf4S5k90OcC6Jhw4L"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 14:27:25 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=5,cfOrigin;dur=445
CF-RAY: 9bb49d7edc03175c-YYZ
Open service 2a06:98c1:3121::3:443 · bwincasino-fr.com
2026-01-09 03:04
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 03:04:53 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ggOeHV3iD0s1TlhcVAF1k23QK7Jl6wdHyYGcWtpODHHEnjh1xlUcF7iQ8xROkZL19ake%2F5A7tiHlNnm77QAdlyg0OJF6fdN0WdT9fzvuBAwbW%2FbpjpRaGW0br9PA"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 03:04:52 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=805
CF-RAY: 9bb0b5ae4f254b05-EWR
Open service 188.114.97.3:443 · bwincasino-fr.com
2026-01-02 15:09
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 15:09:09 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=CFGQIRUtOk4JOmR75k%2Fh25c7l%2BBpy8WqGGeXnqT4OjsJtpeP2JvhghzEMcsUfaaV8VWC6NaxoUnTQ6lYhsxd8LSzaW%2FmNjfCxUy%2Bb27qUfi9"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 15:09:09 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=797
CF-RAY: 9b7b2d036ae8266b-EWR
Open service 2a06:98c1:3121::3:443 · bwincasino-fr.com
2026-01-02 03:37
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 03:37:15 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=4pTMnf9t0f3GnsZPLB5u46%2FJD4wgbCLBNXdTWyBciX0nEJGT7eNVrueI2cfaHjpYH%2F85uTLeyXWFNY6TIYKO3Q0sv7xpn4%2FTM%2FvoLMvOn%2FyvMykD2LMUOQHb1dFv"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 03:37:15 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=1060
CF-RAY: 9b77377879bc926c-SIN
Open service 2a06:98c1:3121::3:443 · bwincasino-fr.com
2025-12-30 11:28
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 11:28:35 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=i0JfdcELMpOSkaWDR1dHG%2FxW26iJdUOmFZhSu3SZ0BC75ZUHjFRHMyW2r%2FHOUe40GutOoQ3jKWHc0oTT5xEvHVNyS7cr4byChM7R1OMFDUIYPF%2Ba4OxaCs%2Fv0mtF"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 11:28:35 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=5,cfOrigin;dur=427
CF-RAY: 9b6131cb7920e563-EWR
Open service 188.114.97.3:443 · bwincasino-fr.com
2025-12-23 06:01
HTTP/1.1 200 OK
Date: Tue, 23 Dec 2025 06:01:49 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=qdyWDR9Drd5JVLzfB8IFAUUEk%2FMLhseg%2BLskWjoyK40X6JAXJqVlfBuukCWK3J0AdloTruMSa%2Bjgw2uiMPQJyS93XvHPcN4E%2BSVQKQkmEw%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 23 Jan 2026 06:01:48 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=5,cfOrigin;dur=426
CF-RAY: 9b25a57def7136a0-YYZ
Open service 2a06:98c1:3121::3:443 · bwincasino-fr.com
2025-12-22 14:38
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 14:38:07 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=4d7upoQz3AErfxrVSkev7p3pKQ%2FjxTIRy2IHgPwLwQqfnVwmVt6AZ3e3T5kf6QRGRuWl9vZxbiwDssqOJYVTJ%2BVewS0QaucdmYMPSJK2lYOKNwtp1%2F6x03Q4%2BpVj"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 14:38:07 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b205c6cfdecd260-FRA
Open service 188.114.97.3:443 · bwincasino-fr.com
2025-12-21 03:38
HTTP/1.1 200 OK
Date: Sun, 21 Dec 2025 03:38:54 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=QsaLUJ83FbO8AQUkwfqlRj2wM7IkQRPASeGsE8hOYLtKdGyy5tnkgXjAfqeYcU9rex6aChHGXSISlb4vufESmtYMENCKpcnH5raBwpBxiRDh"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Wed, 21 Jan 2026 03:38:54 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b1459679e096608-AMS
Open service 2a06:98c1:3121::3:443 · bwincasino-fr.com
2025-12-20 17:14
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 17:14:43 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=jLjlY4PTog2XKeAYwBC5G2xCKfzKyXARXM0M3BPLSb9i5co9bQnTUe%2BTEqJwU0eQS1XuVOTnuOgnjGaZrnZe7HXW3NtwVhA7gVNs2m%2FD0FOjb0G7po3jJguPurpd"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 17:14:42 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=12,cfOrigin;dur=1101
CF-RAY: 9b10c70c0afcfd35-SIN
Open service 188.114.97.3:443 · bwincasino-fr.com
2025-12-19 05:07
HTTP/1.1 200 OK
Date: Fri, 19 Dec 2025 05:07:04 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=J9PjxUpd5TBinzxrEem5H0qE0%2B%2FDBagz0iJiG9yJP38iNdszjO3cyiRnWqev3gVsG8hfB8fDhxsPb7WI81aPrOe8tu3U6RxvStZR%2FeTxIt9f"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 19 Jan 2026 05:07:04 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b045fd07c6828aa-AMS