nginx 1.18.0
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09cd4047824d4047824dd98b68d0b968c886cd4ca503176a20d
Found 35 files trough .DS_Store spidering: /.htaccess /build /css /favicon.ico /fonts /fonts/03d5b20d124cd26dc873bd4a8e42313e.eot /fonts/03d5b20d124cd26dc873bd4a8e42313e.svg /fonts/03d5b20d124cd26dc873bd4a8e42313e.ttf /fonts/03d5b20d124cd26dc873bd4a8e42313e.woff /fonts/03d5b20d124cd26dc873bd4a8e42313e.woff2 /fonts/653d9381828e9577fb1e417dc047f89d.eot /fonts/653d9381828e9577fb1e417dc047f89d.svg /fonts/653d9381828e9577fb1e417dc047f89d.ttf /fonts/653d9381828e9577fb1e417dc047f89d.woff /fonts/653d9381828e9577fb1e417dc047f89d.woff2 /fonts/88f10bf18a36407ef36bf30bc25a3618.eot /fonts/88f10bf18a36407ef36bf30bc25a3618.svg /fonts/88f10bf18a36407ef36bf30bc25a3618.ttf /fonts/88f10bf18a36407ef36bf30bc25a3618.woff /fonts/88f10bf18a36407ef36bf30bc25a3618.woff2 /fonts/c446362802681bacaacbad0f39bfc1a5.eot /fonts/c446362802681bacaacbad0f39bfc1a5.svg /fonts/c446362802681bacaacbad0f39bfc1a5.ttf /fonts/c446362802681bacaacbad0f39bfc1a5.woff /fonts/c446362802681bacaacbad0f39bfc1a5.woff2 /fonts/d1a580023d40c546276decde1c711e60.eot /fonts/d1a580023d40c546276decde1c711e60.svg /fonts/d1a580023d40c546276decde1c711e60.ttf /fonts/d1a580023d40c546276decde1c711e60.woff /fonts/d1a580023d40c546276decde1c711e60.woff2 /hot /images /index.php /js /robots.txt
Open service 172.232.212.236:443 · gca.naif.agency
2026-01-09 07:20
HTTP/1.1 302 Found
Server: nginx/1.18.0 (Ubuntu)
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache, private
Date: Fri, 09 Jan 2026 07:20:09 GMT
Location: https://gca.naif.agency/ar
Set-Cookie: XSRF-TOKEN=eyJpdiI6Im9UZUphWUZKbnFZc2JBMFZyQThTb2c9PSIsInZhbHVlIjoiVmFQYk9Nc1FIUFdEZlN1d3k5c3d5STBKZExxdk1IelhocHd3elgya244b1VyR2IwR2ZHQlpyNmdLRVdxVkEydzNOZElHb1VlTVEwLzZ4QVdCQ2t2NjR6T21VVWQ2RWRESi9DWi9LV2VyR3hIWkk2YVFSVHQ4MDZwaHJ6eVVYQUYiLCJtYWMiOiJhY2RlODRkYTMyODlmMDc1OTNiZmYzMWM2ZGQ4OTEwMWNkMTA0YWFlMzA5ZTQ2MjJiZWZiYzc5NTZhNmFjMTdiIiwidGFnIjoiIn0%3D; expires=Fri, 09 Jan 2026 09:20:09 GMT; Max-Age=7200; path=/; secure; samesite=lax
Set-Cookie: cga_session=eyJpdiI6InBjWnhwTndZcFI3eGlxRTNwVDhpRlE9PSIsInZhbHVlIjoiOHNJZU5ZOXBkK3hzTXpSMkJUaTkwUUk5U08vcEJyZDVnN3krY1dNd3luUk5GSk9Pd0VKdU5JT0R0UUk0ai92Y05lbHI5THRDOFEySHZKaEtFczIveWl4YVNYVkhGUldTaDh4cmZ1SUxqc1YwSVdGL2lYVTVsYzltOU1VUDlZSkkiLCJtYWMiOiI2YWYyNjA2MTkwMjdmNDExYjIzZjI4YzRiYzM1Mjg0NDcyNjllYmFmYTUyMjczMGIwMjJmMjhiNWU2Mjc0OWM4IiwidGFnIjoiIn0%3D; expires=Fri, 09 Jan 2026 09:20:09 GMT; Max-Age=7200; path=/; secure; httponly; samesite=lax
Page title: Redirecting to https://gca.naif.agency/ar
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://gca.naif.agency/ar'" />
<title>Redirecting to https://gca.naif.agency/ar</title>
</head>
<body>
Redirecting to <a href="https://gca.naif.agency/ar">https://gca.naif.agency/ar</a>.
</body>
</html>
Open service 172.232.212.236:443 · gca.naif.agency
2026-01-02 07:49
HTTP/1.1 302 Found
Server: nginx/1.18.0 (Ubuntu)
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache, private
Date: Fri, 02 Jan 2026 07:49:17 GMT
Location: https://gca.naif.agency/ar
Set-Cookie: XSRF-TOKEN=eyJpdiI6IlZJL204Vk95cjRmZTFQQnl6c3RCUGc9PSIsInZhbHVlIjoiV2pvY3pMUjdPb0JJUE02QUFiUmUzaVRVeHJSaVR5bWxCOTJPYkZhZWlZNlIwZWs2MkI0MEk2d3NWNTA0Tk44M1FpSXpkSTJ4U2NaSitzSnpFbWZIMGdrQ0VySDF5aEFVSHozd1ZScSsrS3ZSWjhhSmlnbEwrbE1kbUMwR1FodEkiLCJtYWMiOiIwZTg3MjUyNTFhY2U0ZmI3OGRjYzRiNzAxNDg0NDYzYmJjMmQ1YmU0ZGI4YzZkZmM1ZDIxNWIzN2UxMTI2NGYxIiwidGFnIjoiIn0%3D; expires=Fri, 02 Jan 2026 09:49:17 GMT; Max-Age=7200; path=/; secure; samesite=lax
Set-Cookie: cga_session=eyJpdiI6IjJGUm9aTnFzQXo5RmE4SnpMejZ4S1E9PSIsInZhbHVlIjoiNndteXJLS2pJWXBIUXQyTEp0MzhhQ0ZNMmNLWmpUM1BGZFN2T3E4UGFGT3hISjFuMHVHaW1hUEpBSFNmSERtN0ljRkh5bTk1N2tQNnVxaS9WTzVKZXRuRWlaWEw1SnNIWDUzZFhTcW1tOVREU0lralBQblY3Y2JHL3F4VDExRVgiLCJtYWMiOiIwNDU4YzdkNWE5ZmJlNjQ1ZDU1ZjkyMGZhNjA1MTQzZTY2NDUzOTU0NzI2YmYwMjI4NzJiZDQ3MGI5ZmNlMjIyIiwidGFnIjoiIn0%3D; expires=Fri, 02 Jan 2026 09:49:17 GMT; Max-Age=7200; path=/; secure; httponly; samesite=lax
Page title: Redirecting to https://gca.naif.agency/ar
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://gca.naif.agency/ar'" />
<title>Redirecting to https://gca.naif.agency/ar</title>
</head>
<body>
Redirecting to <a href="https://gca.naif.agency/ar">https://gca.naif.agency/ar</a>.
</body>
</html>
Open service 172.232.212.236:443 · gca.naif.agency
2025-12-22 17:37
HTTP/1.1 302 Found
Server: nginx/1.18.0 (Ubuntu)
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache, private
Date: Mon, 22 Dec 2025 17:37:47 GMT
Location: https://gca.naif.agency/ar
Set-Cookie: XSRF-TOKEN=eyJpdiI6InpSckhLMnU3bUp3OFpXaVNKUjN2ZUE9PSIsInZhbHVlIjoiUHFGZVBvRFpQbE5LeS9oNTk5T0ZhV0NlYVlrR0g5amFqb3RNUzBjMTI4Z01zN01PbC9OYnA1SWNoeXNFWkFCYXd5VExueXp6TFNUWTlUZW9relFCTU1PVEE5VEE0bXl4MHV6VEZTRElRaVVxTXo5c0NaaUQ1ZlNvWGtwZ1FxaEkiLCJtYWMiOiI0YWJlYzhiZjNiZDMzMGE1ZTAwMjc5NWY0OGMyYjRkMDE0ZWU5YjcwNmQwZGExNzQ4YWIzZGZiYjA5YmViM2RhIiwidGFnIjoiIn0%3D; expires=Mon, 22 Dec 2025 19:37:47 GMT; Max-Age=7200; path=/; secure; samesite=lax
Set-Cookie: cga_session=eyJpdiI6Im85ZGhkSS9Gb3loaGNGVkhTMUhFakE9PSIsInZhbHVlIjoiRG0wMC96b3hLVzdsK0FQbWh6WXlVYWE2ckZuYndIMGpERVdkSXpNRWZsOFlQdDV0TDV0bDNWWUtNRDM3V1JQNUFhWTcybHFzZW5pRjkrSTFCaE1lYncwU0JzMW90RElhYnNObTZkL0k2MTJQYWFvanA2YnJrUHdwY3Z6ejQzYzMiLCJtYWMiOiIzN2M4ODQ0ZWUxN2RmNDljMTM0ZTY5ZDFjYThkOGM1NWFiM2IwNjI5NmNmNjliMjgxYjJmMjM2ZjFlMzQ2NGIyIiwidGFnIjoiIn0%3D; expires=Mon, 22 Dec 2025 19:37:47 GMT; Max-Age=7200; path=/; secure; httponly; samesite=lax
Page title: Redirecting to https://gca.naif.agency/ar
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://gca.naif.agency/ar'" />
<title>Redirecting to https://gca.naif.agency/ar</title>
</head>
<body>
Redirecting to <a href="https://gca.naif.agency/ar">https://gca.naif.agency/ar</a>.
</body>
</html>
Open service 172.232.212.236:443 · gca.naif.agency
2025-12-20 21:16
HTTP/1.1 302 Found
Server: nginx/1.18.0 (Ubuntu)
Content-Type: text/html; charset=utf-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: no-cache, private
Date: Sat, 20 Dec 2025 21:16:30 GMT
Location: https://gca.naif.agency/ar
Set-Cookie: XSRF-TOKEN=eyJpdiI6Im1nWHlkalVaQVBJUEt0U3FNcnlzWlE9PSIsInZhbHVlIjoid2tsaUl2VHZqbkJNUVVEdU5JTHBONWIzRXArVlorMHpRZ01neW9OSyt1b3Y2K2JPOFM5UzhINkxPLzRPRVhieFhNQXA1S2FrdVU3Skh1c1VjeHdNZzVtTU1PRTZtQ1lZV1hHUEI5UnpnSUEzUnJBZ1c1ejNZUWRDdmdEekY4S2ciLCJtYWMiOiIxYTBlMzI1MzAyYWZjNjVmZmZiNGJlOGNlMmZlYzA5OThiZmU5ZDFiZWQ4MDEzNzg3YzVhNDQxNGJmZDNkNGZkIiwidGFnIjoiIn0%3D; expires=Sat, 20 Dec 2025 23:16:30 GMT; Max-Age=7200; path=/; secure; samesite=lax
Set-Cookie: cga_session=eyJpdiI6IkxCSW50SzhZb2p5dEFzRk1TdkFLS1E9PSIsInZhbHVlIjoib1VGbTdFM0NNbTB3eXlaWEQxT0NQSG44R2x1d1IrYUsvRnJ4UGZhMXpHdW1CVWFRbE53VjUxeHlySHV4dGxoK0RNS1p5NE94cTZDQmtQNGJwemdUOWhrWnVCME1DOFJoeUlWajg3cHdleDZyc2FCbFhqVlh3ekN3QzA2QUp0TWgiLCJtYWMiOiJmYjViYjA1NjBiNzY4YWQzYTYxZjUzMDEzYjVlOGE1ZTU2ZTAyYmJmNjRhMGZmNWVhZDU1ZDRkYmJkN2VmY2QyIiwidGFnIjoiIn0%3D; expires=Sat, 20 Dec 2025 23:16:30 GMT; Max-Age=7200; path=/; secure; httponly; samesite=lax
Page title: Redirecting to https://gca.naif.agency/ar
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://gca.naif.agency/ar'" />
<title>Redirecting to https://gca.naif.agency/ar</title>
</head>
<body>
Redirecting to <a href="https://gca.naif.agency/ar">https://gca.naif.agency/ar</a>.
</body>
</html>