Apache 2.4.52
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c2eda814e2eda814e2cd21bea4d3e5c6f7e2c5aa84fbbc2b6
Found 6 files trough .DS_Store spidering: /assets /assets/images /images /uploads /uploads/4 /web
Open service 35.176.213.2:443 · invoices.sjhbuilding.com
2026-01-02 01:55
HTTP/1.1 302 Found
Date: Fri, 02 Jan 2026 01:55:27 GMT
Server: Apache/2.4.52 (Ubuntu)
Cache-Control: no-cache, private
Set-Cookie: XSRF-TOKEN=eyJpdiI6IjlJcVBWZXlRQzdVa2hxK0pHb3N4alE9PSIsInZhbHVlIjoiVWNNZWZIYzFRMkV3TXRXUG01bVVnaHBmZDlZRWMzenl6cng1czNvZXRHZ3l3b0tpbWwyNEw2TkI4QTJIMTROZ2JSSXNrZFBDWlRUOVRDSWErU0xhRTZld0xtRjc1MjcrUEpQM3J1d1JyOTN6YkZ6SjZKUGpuVnR0UVRSZ05SM1kiLCJtYWMiOiJmMGVlODgwY2ViZTQ5YjJiZDM2MzM4MjY5NGNiYmY5MTkxMzVkMWFmNzE5ZGMxY2JiYzkyMjViNjU4MWY5ZDhlIiwidGFnIjoiIn0%3D; expires=Fri, 02-Jan-2026 03:55:27 GMT; Max-Age=7200; path=/; samesite=lax
Set-Cookie: sjh_invoices_session=eyJpdiI6InlLQ0JvQWhjVTRRczRTMFNDTzJCMmc9PSIsInZhbHVlIjoiK1EyU3pZbnZlTVZCTHA0dCtZdmNHU1FZYkVwQjBaMG02T1dSTkhrclNyN0N5cVllWmMzYnAwbDE0a3dJUW05eVBBOW9vWEducS8velptMlZOZmswNncwVUVJNDJMTVNGMEhPUWNON21UTnB4UExWd29LODJPbHJhRVhTMGVvd2oiLCJtYWMiOiI3MDRiNjBjM2NmMzJiYjI5YzRkODVjYWYxZGJjNDgyZTJiNGU5MmMxZGMyZmVlZjVhZjViMGI2MGM3YjUyNDI1IiwidGFnIjoiIn0%3D; expires=Fri, 02-Jan-2026 03:55:27 GMT; Max-Age=7200; path=/; httponly; samesite=lax
Location: https://invoices.sjhbuilding.com/login
Connection: close
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
Page title: Redirecting to https://invoices.sjhbuilding.com/login
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://invoices.sjhbuilding.com/login'" />
<title>Redirecting to https://invoices.sjhbuilding.com/login</title>
</head>
<body>
Redirecting to <a href="https://invoices.sjhbuilding.com/login">https://invoices.sjhbuilding.com/login</a>.
</body>
</html>
Open service 35.176.213.2:443 · invoices.sjhbuilding.com
2025-12-30 12:17
HTTP/1.1 302 Found
Date: Tue, 30 Dec 2025 12:17:32 GMT
Server: Apache/2.4.52 (Ubuntu)
Cache-Control: no-cache, private
Set-Cookie: XSRF-TOKEN=eyJpdiI6Inp2dXRIWjNqb3BGbDBPNXRaNDhMd3c9PSIsInZhbHVlIjoidzFYVWFEeDFhL1UzVnNVcEV1MUNSdDhsekZnbmJ4YzduSkptcGdDUTk1WVRCWTZHUFVRcFNDZkFOWGhUWjJtOHQyNENZV3dqd1B4bi9ZT29oTk1iNnlVYVQ1MHVVdTBoQzIrRlViSTY4d00zL1Q0aE1VTHg0N1dtR1kyUEgrdk8iLCJtYWMiOiIzNzg1NmU5NmI0Njk2MTNlOGI0ZmI0MTkzMDM5NTYwY2U1NTZkZDJlY2M1NmU3ZWMyYzNlOGI5ODdkMjRlZTNjIiwidGFnIjoiIn0%3D; expires=Tue, 30-Dec-2025 14:17:32 GMT; Max-Age=7200; path=/; samesite=lax
Set-Cookie: sjh_invoices_session=eyJpdiI6Ill5cG03SDFUTjZvZ3NZL08ybDNCR2c9PSIsInZhbHVlIjoiSDBKMm9RaHgxZXNlbGRQdElKTERNV3U1VXczdlgxbG5qY1ZIa0N4RHEvZ0VySWVWZTBZWStESktHanh0TDY0Z0sxbXF3TGEyMzJObWFxZ21tZ0loNHpiWklobEh6c3JacGtPSUkzQVZsYkJIcmRxVktCZmRXdFJQSm1qWHloV2QiLCJtYWMiOiI1N2RiM2U1MzA1YTA4YmViZjI3ZDRhODAzNjBhNjc3ZGRjYmZlMjE3ZDRlODBkMTUxNWRkNjMyMjlkYjIyNGFkIiwidGFnIjoiIn0%3D; expires=Tue, 30-Dec-2025 14:17:32 GMT; Max-Age=7200; path=/; httponly; samesite=lax
Location: https://invoices.sjhbuilding.com/login
Connection: close
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
Page title: Redirecting to https://invoices.sjhbuilding.com/login
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://invoices.sjhbuilding.com/login'" />
<title>Redirecting to https://invoices.sjhbuilding.com/login</title>
</head>
<body>
Redirecting to <a href="https://invoices.sjhbuilding.com/login">https://invoices.sjhbuilding.com/login</a>.
</body>
</html>
Open service 35.176.213.2:443 · invoices.sjhbuilding.com
2025-12-22 05:23
HTTP/1.1 302 Found
Date: Mon, 22 Dec 2025 05:23:47 GMT
Server: Apache/2.4.52 (Ubuntu)
Cache-Control: no-cache, private
Set-Cookie: XSRF-TOKEN=eyJpdiI6IjJRbEdmbFZyK1dob3NpemtzY3doNWc9PSIsInZhbHVlIjoiWWNBSDJCQnJWT1MzVk5LWmxaRTNlU1ppU256NXhXOVNzUHhpdDJKd2pTa3NsMVpMSjNVaWZYbW9oNWRkQ0x2NzlWcmhqMmMySTkveXJYaWp5TUQ2eUxvSHBHRnhneCs3RlYwTmlWbGNzMklxdVVpWkZxTmh3eGJobUYva1prUnQiLCJtYWMiOiI2ZGJhOGY0MGJiZmE3NTllNWFjODMwZWI2YjA3YjhhMzQyYTk2NzYwNWEyNzRmZjNmMmM2MGEwYzU5OGNiMGRhIiwidGFnIjoiIn0%3D; expires=Mon, 22-Dec-2025 07:23:47 GMT; Max-Age=7200; path=/; samesite=lax
Set-Cookie: sjh_invoices_session=eyJpdiI6InVTN2pYVFdoSnBvbkhYaTQ3dWUvTkE9PSIsInZhbHVlIjoiaGo4Yi9QWmJjb0YwOVBieEFqQ1ZUSVBEN0Z4MVRuZmFOS0dYa3pMYmZhSmF4SVhBaHBvcW5CT2U5S1haUUNYUVRWRGUzb1BhRDhKM1QrblVEbHpML0lzcGtneVR0aCt2RlFMRHcrdnVPR2JzYjhDK1J4YUdhNmpzc3JvTEV4ZnQiLCJtYWMiOiI1NTM2NzFhNDc3ZTYyNTUxMGIxODNjNzM4OTZmZWZhMjQxNWQ1MTAyMDM5M2ViMGZiZjY2NWRhYzkyMTNkMmVjIiwidGFnIjoiIn0%3D; expires=Mon, 22-Dec-2025 07:23:47 GMT; Max-Age=7200; path=/; httponly; samesite=lax
Location: https://invoices.sjhbuilding.com/login
Connection: close
Transfer-Encoding: chunked
Content-Type: text/html; charset=UTF-8
Page title: Redirecting to https://invoices.sjhbuilding.com/login
<!DOCTYPE html>
<html>
<head>
<meta charset="UTF-8" />
<meta http-equiv="refresh" content="0;url='https://invoices.sjhbuilding.com/login'" />
<title>Redirecting to https://invoices.sjhbuilding.com/login</title>
</head>
<body>
Redirecting to <a href="https://invoices.sjhbuilding.com/login">https://invoices.sjhbuilding.com/login</a>.
</body>
</html>