nginx
tcp/443 tcp/80
sw-cp-server
tcp/8443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c8c9af8b78c9af8b73f74c96a26b9ae12951ce53c6b608a95
Found 128 files trough .DS_Store spidering: /.htaccess /app /app/controllers /app/controllers/Account.php /app/controllers/AccountDelete.php /app/controllers/AccountLogs.php /app/controllers/AccountPayments.php /app/controllers/AccountPlan.php /app/controllers/ActivateUser.php /app/controllers/admin /app/controllers/admin-api /app/controllers/api /app/controllers/Cron.php /app/controllers/Dashboard.php /app/controllers/Domains.php /app/controllers/Index.php /app/controllers/Invoice.php /app/controllers/l /app/controllers/Link.php /app/controllers/LinkAjax.php /app/controllers/Links.php /app/controllers/Login.php /app/controllers/Logout.php /app/controllers/LostPassword.php /app/controllers/NotFound.php /app/controllers/Page.php /app/controllers/Pages.php /app/controllers/Pay.php /app/controllers/PayThankYou.php /app/controllers/Plan.php /app/controllers/Projects.php /app/controllers/Register.php /app/controllers/ResendActivation.php /app/controllers/ResetPassword.php /app/controllers/Sitemap.php /app/controllers/WebhookPaypal.php /app/controllers/WebhookStripe.php /app/core /app/helpers /app/helpers/payment-gateways /app/helpers/qr-codes /app/includes /app/init.php /app/languages /app/languages/admin /app/models /app/traits /config.php /index.php /install /plugins /plugins/affiliate /plugins/aix /plugins/email-signatures /plugins/image-optimizer /plugins/offload /plugins/offload/aws /plugins/offload/aws/GuzzleHttp /plugins/offload/aws/GuzzleHttp/Cookie /plugins/offload/aws/GuzzleHttp/Exception /plugins/offload/aws/GuzzleHttp/Handler /plugins/offload/aws/GuzzleHttp/Promise /plugins/offload/aws/GuzzleHttp/Psr7 /plugins/payment-blocks /plugins/payment-blocks/views /plugins/pro-blocks /plugins/pro-blocks/init.php /plugins/push-notifications /plugins/push-notifications/aws /plugins/pwa /plugins/teams /plugins/ultimate-blocks /plugins/ultimate-blocks/views /plugins/ultimate-blocks/views/l /plugins/ultimate-blocks/views/l/biolink_blocks /themes /themes/altum /themes/altum/assets /themes/altum/assets/css /themes/altum/assets/css/custom-bootstrap /themes/altum/assets/css/libraries /themes/altum/assets/images /themes/altum/assets/images/browsers /themes/altum/assets/images/countries /themes/altum/assets/images/email /themes/altum/assets/images/index /themes/altum/assets/images/os /themes/altum/assets/js /themes/altum/assets/js/functions.js /themes/altum/assets/js/libraries /themes/altum/assets/js/libraries/fontawesome-brands.min.js /themes/altum/assets/js/libraries/fontawesome-brands.modified.js /themes/altum/assets/js/main.js /themes/altum/assets/scss /themes/altum/assets/scss/admin-bootstrap-dark.scss /themes/altum/assets/scss/admin-bootstrap.scss /themes/altum/assets/scss/bootstrap /themes/altum/assets/scss/bootstrap/_alert.scss /themes/altum/assets/scss/bootstrap/_badge.scss /themes/altum/assets/scss/bootstrap/_breadcrumb.scss /themes/altum/assets/scss/bootstrap/_button-group.scss /themes/altum/assets/scss/bootstrap/_buttons.scss /themes/altum/assets/scss/bootstrap/_card.scss /themes/altum/assets/scss/bootstrap/_carousel.scss /themes/altum/assets/scss/bootstrap/_close.scss /themes/altum/assets/scss/bootstrap/_code.scss /themes/altum/assets/scss/bootstrap/_custom-forms.scss /themes/altum/assets/scss/bootstrap/_dropdown.scss /themes/altum/assets/scss/bootstrap/_forms.scss /themes/altum/assets/scss/bootstrap/_functions.scss /themes/altum/assets/scss/bootstrap/_grid.scss /themes/altum/assets/scss/bootstrap/_images.scss /themes/altum/assets/scss/bootstrap/_input-group.scss /themes/altum/assets/scss/bootstrap/_jumbotron.scss /themes/altum/assets/scss/bootstrap/_list-group.scss /themes/altum/assets/scss/bootstrap/_media.scss /themes/altum/assets/scss/bootstrap/_mixins.scss /themes/altum/assets/scss/bootstrap/_modal.scss /themes/altum/assets/scss/bootstrap/_nav.scss /themes/altum/assets/scss/bootstrap/_navbar.scss /themes/altum/assets/scss/bootstrap/_pagination.scss /themes/altum/assets/scss/bootstrap/_popover.scss /themes/altum/assets/scss/bootstrap/_print.scss /themes/altum/assets/scss/bootstrap/_progress.scss /themes/altum/assets/scss/bootstrap/_reboot.scss /themes/altum/assets/scss/bootstrap/_root.scss /themes/altum/assets/scss/bootstrap/_spinners.scss /themes/altum/assets/scss/bootstrap/_tables.scss
Severity: medium
Fingerprint: 5f32cf5d6962f09c910c508a910c508a6aa6122bae1629d3b567f631095038fd
Found 55 files trough .DS_Store spidering: /.htaccess /app /app/controllers /app/controllers/Account.php /app/controllers/AccountDelete.php /app/controllers/AccountLogs.php /app/controllers/AccountPayments.php /app/controllers/AccountPlan.php /app/controllers/ActivateUser.php /app/controllers/admin /app/controllers/admin-api /app/controllers/api /app/controllers/Cron.php /app/controllers/Dashboard.php /app/controllers/Domains.php /app/controllers/Index.php /app/controllers/Invoice.php /app/controllers/l /app/controllers/Link.php /app/controllers/LinkAjax.php /app/controllers/Links.php /app/controllers/Login.php /app/controllers/Logout.php /app/controllers/LostPassword.php /app/controllers/NotFound.php /app/controllers/Page.php /app/controllers/Pages.php /app/controllers/Pay.php /app/controllers/PayThankYou.php /app/controllers/Plan.php /app/controllers/Projects.php /app/controllers/Register.php /app/controllers/ResendActivation.php /app/controllers/ResetPassword.php /app/controllers/Sitemap.php /app/controllers/WebhookPaypal.php /app/controllers/WebhookStripe.php /app/core /app/helpers /app/helpers/payment-gateways /app/helpers/qr-codes /app/includes /app/init.php /app/languages /app/languages/admin /app/models /app/traits /config.php /index.php /install /plugins /themes /update /uploads /vendor
Severity: medium
Fingerprint: 5f32cf5d6962f09c8051bd0c8051bd0c8abe8f0503bb1b596d8d5dcb5d2214d4
Found 66 files trough .DS_Store spidering: /.htaccess /app /app/controllers /app/controllers/Account.php /app/controllers/AccountDelete.php /app/controllers/AccountLogs.php /app/controllers/AccountPayments.php /app/controllers/AccountPlan.php /app/controllers/ActivateUser.php /app/controllers/admin /app/controllers/admin-api /app/controllers/api /app/controllers/Cron.php /app/controllers/Dashboard.php /app/controllers/Domains.php /app/controllers/Index.php /app/controllers/Invoice.php /app/controllers/l /app/controllers/Link.php /app/controllers/LinkAjax.php /app/controllers/Links.php /app/controllers/Login.php /app/controllers/Logout.php /app/controllers/LostPassword.php /app/controllers/NotFound.php /app/controllers/Page.php /app/controllers/Pages.php /app/controllers/Pay.php /app/controllers/PayThankYou.php /app/controllers/Plan.php /app/controllers/Projects.php /app/controllers/Register.php /app/controllers/ResendActivation.php /app/controllers/ResetPassword.php /app/controllers/Sitemap.php /app/controllers/WebhookPaypal.php /app/controllers/WebhookStripe.php /app/core /app/helpers /app/helpers/payment-gateways /app/helpers/qr-codes /app/includes /app/init.php /app/languages /app/languages/admin /app/models /app/traits /config.php /index.php /install /plugins /plugins/affiliate /plugins/aix /plugins/email-signatures /plugins/image-optimizer /plugins/offload /plugins/payment-blocks /plugins/pro-blocks /plugins/push-notifications /plugins/pwa /plugins/teams /plugins/ultimate-blocks /themes /update /uploads /vendor
Severity: medium
Fingerprint: 5f32cf5d6962f09c3078a2ae3078a2aea1d5413f669d669f8e0ae525abec26e8
Found 73 files trough .DS_Store spidering: /.htaccess /app /app/controllers /app/controllers/Account.php /app/controllers/AccountDelete.php /app/controllers/AccountLogs.php /app/controllers/AccountPayments.php /app/controllers/AccountPlan.php /app/controllers/ActivateUser.php /app/controllers/admin /app/controllers/admin-api /app/controllers/api /app/controllers/Cron.php /app/controllers/Dashboard.php /app/controllers/Domains.php /app/controllers/Index.php /app/controllers/Invoice.php /app/controllers/l /app/controllers/Link.php /app/controllers/LinkAjax.php /app/controllers/Links.php /app/controllers/Login.php /app/controllers/Logout.php /app/controllers/LostPassword.php /app/controllers/NotFound.php /app/controllers/Page.php /app/controllers/Pages.php /app/controllers/Pay.php /app/controllers/PayThankYou.php /app/controllers/Plan.php /app/controllers/Projects.php /app/controllers/Register.php /app/controllers/ResendActivation.php /app/controllers/ResetPassword.php /app/controllers/Sitemap.php /app/controllers/WebhookPaypal.php /app/controllers/WebhookStripe.php /app/core /app/helpers /app/helpers/payment-gateways /app/helpers/qr-codes /app/includes /app/init.php /app/languages /app/languages/admin /app/models /app/traits /config.php /index.php /install /plugins /plugins/affiliate /plugins/aix /plugins/email-signatures /plugins/image-optimizer /plugins/offload /plugins/offload/aws /plugins/offload/aws/GuzzleHttp /plugins/offload/aws/GuzzleHttp/Cookie /plugins/offload/aws/GuzzleHttp/Exception /plugins/offload/aws/GuzzleHttp/Handler /plugins/offload/aws/GuzzleHttp/Promise /plugins/offload/aws/GuzzleHttp/Psr7 /plugins/payment-blocks /plugins/pro-blocks /plugins/push-notifications /plugins/pwa /plugins/teams /plugins/ultimate-blocks /themes /update /uploads /vendor
Open service 217.154.10.21:80 · connect.whitelisted.link
2026-01-09 11:42
HTTP/1.1 301 Moved Permanently Server: nginx Date: Fri, 09 Jan 2026 11:42:05 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.29 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=fs90es2i895ih9nekn3f28mblt; path=/; secure; SameSite=Lax Location: https://connect.whitelisted.link/ X-Powered-By: PleskLin
Open service 217.154.10.21:443 · connect.whitelisted.link
2026-01-09 11:42
HTTP/1.1 302 Found Server: nginx Date: Fri, 09 Jan 2026 11:42:05 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.29 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=pibejo55umoup0klv0ung0q5hl; path=/; secure; SameSite=Lax Location: https://app.linkpod.co/not-found X-Powered-By: PleskLin
Open service 217.154.10.21:8443 · connect.whitelisted.link
2026-01-03 16:04
HTTP/1.1 303 See Other Server: sw-cp-server Date: Sat, 03 Jan 2026 16:04:08 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Expires: Fri, 28 May 1999 00:00:00 GMT Last-Modified: Sat, 03 Jan 2026 16:04:08 GMT Cache-Control: no-store, no-cache, must-revalidate Cache-Control: post-check=0, pre-check=0 Pragma: no-cache P3P: CP="NON COR CURa ADMa OUR NOR UNI COM NAV STA" X-Frame-Options: SAMEORIGIN X-XSS-Protection: 1; mode=block Location: https://connect.whitelisted.link/login.php X-Content-Type-Options: nosniff
Open service 217.154.10.21:443 · connect.whitelisted.link
2026-01-03 16:04
HTTP/1.1 302 Found Server: nginx Date: Sat, 03 Jan 2026 16:04:06 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.28 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=6ro4ffk4u3nrcpiu31fu13ku5k; path=/; secure; SameSite=Lax Location: https://app.linkpod.co/not-found X-Powered-By: PleskLin
Open service 217.154.10.21:80 · connect.whitelisted.link
2026-01-03 16:04
HTTP/1.1 301 Moved Permanently Server: nginx Date: Sat, 03 Jan 2026 16:04:05 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.28 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=8a72tce19qqccackdcihb6tue5; path=/; secure; SameSite=Lax Location: https://connect.whitelisted.link/ X-Powered-By: PleskLin
Open service 217.154.10.21:443 · connect.whitelisted.link
2025-12-30 09:18
HTTP/1.1 302 Found Server: nginx Date: Tue, 30 Dec 2025 09:18:28 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.28 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=agto66hiuqd54dab8vidoc5l2q; path=/; secure; SameSite=Lax Location: https://app.linkpod.co/not-found X-Powered-By: PleskLin
Open service 217.154.10.21:443 · connect.whitelisted.link
2025-12-23 07:33
HTTP/1.1 302 Found Server: nginx Date: Tue, 23 Dec 2025 07:33:34 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.28 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=416gvi3k8psudblqs3qlo07d1d; path=/; secure; SameSite=Lax Location: https://app.linkpod.co/not-found X-Powered-By: PleskLin
Open service 217.154.10.21:443 · connect.whitelisted.link
2025-12-20 23:33
HTTP/1.1 302 Found Server: nginx Date: Sat, 20 Dec 2025 23:33:46 GMT Content-Type: text/html; charset=UTF-8 Content-Length: 0 Connection: close X-Powered-By: PHP/8.3.28 Expires: Thu, 19 Nov 1981 08:52:00 GMT Cache-Control: no-store, no-cache, must-revalidate Pragma: no-cache Content-Security-Policy: frame-ancestors *; Strict-Transport-Security: max-age=31536000; preload Access-Control-Allow-Origin: * Access-Control-Allow-Methods: GET, POST, OPTIONS Access-Control-Allow-Headers: Content-Type Access-Control-Max-Age: 7200 Set-Cookie: PHPSESSID=gsilma4499uda6gbvgj1p02r0a; path=/; secure; SameSite=Lax Location: https://app.linkpod.co/not-found X-Powered-By: PleskLin