cloudflare
tcp/443 tcp/80 tcp/8443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c684e525d684e525dfb28aa85d366783d0e29351d2779c701
Found 27 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/casino_list /media/cache/game /media/cache/game/uploads /media/cache/game/uploads/media /media/cache/game/uploads/media/games /media/cache/pb_b_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads /uploads/media
Severity: low
Fingerprint: 5f32cf5d6962f09c0f8dcf020f8dcf02fd94b99ecd0a1eee92fd4608e0247fbb
Found 24 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/casino_list /media/cache/game /media/cache/game/uploads /media/cache/game/uploads/media /media/cache/game/uploads/media/games /media/cache/pb_b_image /nav-icons /pagebuilder /svg /uploads
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07a74e7b22a74e7b22a74e7b22a74e7b22a74e7b22
Symfony profiler enabled: https://lotto24-de.de/_profiler/empty/search/results
Open service 188.114.97.3:443 · lotto24-de.de
2026-01-09 14:45
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 14:45:49 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=RYsPZq0EXbur4PxgHxP%2FDp7NkBXNwg3ReQZLqjQl6Qcnl8qRjpwvfharlZvItB%2Bpmzcv2ynGKM6WkqN33lL8uc5hiuEm%2FbDzLhjCpdE%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 14:45:49 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bb4b8774da54dbf-FRA
Open service 188.114.97.3:8443 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 521 <none> Date: Fri, 09 Jan 2026 10:25:55 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin Server-Timing: cfEdge;dur=199,cfOrigin;dur=0 X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bb33bbed87415ca-SJC alt-svc: h3=":8443"; ma=86400 error code: 521
Open service 188.114.97.3:443 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 10:25:55 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=fY7KaUOLOIE2qFDIsvQy7v5poRSNslXa2BwJljkTXGmcqMLW2nJcRfGhbIkeyytssoitQfjtmRQWVg9BLapRr61%2FxZ%2Fo3AiTYn9SQ7U%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 10:25:55 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bb33bc0fca19220-FRA
Open service 2606:4700:3036::6815:1a67:8443 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 521 <none> Date: Fri, 09 Jan 2026 10:25:54 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bb33bbdb89c8eb5-FRA alt-svc: h3=":8443"; ma=86400 error code: 521
Open service 2606:4700:3036::6815:1a67:443 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 10:25:55 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=veWDfnjrpNJTt%2BtUCWv1r8%2FczuFY0GcI65i0NcZTuUCmY8w5Kful%2FJCAGVTcZeyad6OzZbAfmQJq%2FepuIcSKFi8ytd0xwG1l8sipMjObybI7Sxn8wbBxeuM%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 10:25:55 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bb33bc0beec1ce4-FRA
Open service 2606:4700:3032::ac43:87dc:80 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 301 Moved Permanently
Date: Fri, 09 Jan 2026 10:25:54 GMT
Content-Length: 0
Connection: close
Location: https://lotto24-de.de/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Uvc7xtM0i0XXKxUS9Hj%2BqyFmENrVbiWzpSL0jH3BDbhWadKZB1F2PUpghGEXcCoXbWk4sEggy%2Fzhpv4q6yBoYHbZBm5wzSN09isBut8klPQf5hPAv9Bj"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=10,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bb33bbcf8450fa4-EWR
alt-svc: h3=":443"; ma=86400
Open service 188.114.97.3:80 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 301 Moved Permanently
Date: Fri, 09 Jan 2026 10:25:54 GMT
Content-Length: 0
Connection: close
Location: https://lotto24-de.de/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=t%2BcjiWy6%2Fg%2BOVL0CZ2QqliMNf2Mq2huVL9xmyOt1fSUz1ACbzFb1xJQvKt68tceZlQ8MChYRSVBj4QCenkKOoNH7NqNnjqiUStg38gs%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfEdge;dur=15,cfOrigin;dur=0
Server: cloudflare
CF-RAY: 9bb33bbcbc8efd85-SIN
alt-svc: h3=":443"; ma=86400
Open service 2606:4700:3032::ac43:87dc:443 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 10:25:55 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=R%2Bpt8vFpeNluWdXIcCuBPyQByugGVbKt1SNl1AHBlZPvXRku3ClCZEtGWTtKp9Dh2MwDxMd%2BAA8MeOYRqZy6eVNsMvhvw2rqw2jfTKW4G4FGS%2Bv76vNZ4RA%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 10:25:55 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bb33bc098ad39d6-FRA
Open service 2606:4700:3036::6815:1a67:80 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 301 Moved Permanently
Date: Fri, 09 Jan 2026 10:25:54 GMT
Content-Length: 0
Connection: close
Location: https://lotto24-de.de/
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=nReuJqvCsOddSme5STWJEJT06G%2FSlNC7KQA7uwXMw%2F24DB9QQyZ0K94ALQHj036YvzOV41Ugb2vHYoaxGgnAuW8PC3htV5VkT8j7VqJJW0CIWk5vBM1u1TY%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server: cloudflare
CF-RAY: 9bb33bbc898e2151-AMS
alt-svc: h3=":443"; ma=86400
Open service 2606:4700:3032::ac43:87dc:8443 · lotto24-de.de
2026-01-09 10:25
HTTP/1.1 521 <none> Date: Fri, 09 Jan 2026 10:25:54 GMT Content-Type: text/plain; charset=UTF-8 Content-Length: 15 Connection: close Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0 Expires: Thu, 01 Jan 1970 00:00:01 GMT Referrer-Policy: same-origin X-Frame-Options: SAMEORIGIN Server: cloudflare CF-RAY: 9bb33bbcdc5011f3-AMS alt-svc: h3=":8443"; ma=86400 error code: 521
Open service 2a06:98c1:3120::3:443 · lotto24-de.de
2026-01-08 19:05
HTTP/1.1 200 OK
Date: Thu, 08 Jan 2026 19:05:33 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=l80UZF3GvMCiWtIHfL1vJny9LXHJQW4bNWPNXALzHj1VDQMZXI61TCPeM8pARVtfLI7j9HJd0ev4jqp3xloFccicqQjMEkNrHDmBWmB%2FZdIVPaLJJLi3A8g%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 08 Feb 2026 19:05:33 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=12,cfOrigin;dur=1163
CF-RAY: 9badf7897b66ef9b-SJC
Open service 188.114.97.3:443 · lotto24-de.de
2026-01-02 14:51
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 14:51:10 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=zbQpkBs4MY77%2BbEXaHoCIky3zm4DxY0YJ1YI8Md37b4DjrB7vheY6nf34e2DqYs3vmGm8UN8QQUhIiH6n%2FZuhBl4AymYu8kD8QFUEss%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 14:51:10 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=5,cfOrigin;dur=495
CF-RAY: 9b7b12ad7db143d5-EWR
Open service 2a06:98c1:3120::3:443 · lotto24-de.de
2026-01-01 19:57
HTTP/1.1 200 OK
Date: Thu, 01 Jan 2026 19:57:44 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ALg%2B887u32njAMlZeKKirF3gSovhkF4Tf4FwSATluJJ36Wl5IJcqvtlJN%2BpVklqWEZlIqk%2BkQzBDE526dn3lUwom3HMxHLBftENb4yv6lrVKZ%2F25wCCK"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 01 Feb 2026 19:57:44 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b74965c2a0bf65a-LHR
Open service 2a06:98c1:3120::3:443 · lotto24-de.de
2025-12-30 04:04
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 04:04:25 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Xjrbkm8THlFz6StabcJ0rDp0WRCPL1oDPqiCTGb1W%2B%2FcgOcRl8ium86lxZ7qfD%2FUZNtr5FBv06mhkShq7wvIAX1YV31K6lo22UE0xOOQKHTS%2B6hjV62wcks%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 04:04:24 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b5ea7251bb6bbf5-FRA
Open service 188.114.97.3:443 · lotto24-de.de
2025-12-23 05:55
HTTP/1.1 200 OK
Date: Tue, 23 Dec 2025 05:55:38 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=IZrhw5LrOHVaqUqRD6nOE1eQHT9UpjMZp6NE20vDF6PBvWE%2Be%2FwBN1zFhRAPQYrQY6qIwI82daWO7NjEmc7eP8JLVirJcl%2BuC5NgTOs%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 23 Jan 2026 05:55:38 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b259c708e179858-LHR
Open service 2a06:98c1:3120::3:443 · lotto24-de.de
2025-12-22 04:48
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 04:48:46 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=8txM0Al4e4%2BoxNPrs3d4Ubb8rPOQvCSVQT45nlSNMlOWUl7i5uelL5OvD3%2BIegiUV%2BFB7cmS6O7OaicEJqoGKmIoMz%2Bonf7K%2FCrb04GPreH0ypXjP672Hqs%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 04:48:46 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b1cfd1f2a1c37de-FRA
Open service 188.114.97.3:443 · lotto24-de.de
2025-12-20 13:38
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 13:38:38 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=cWj6Ylxx1VGV5gJ75UBQq%2FEycSoOZJtS%2BWGd7SxW7RyOiMU1vwIMqyIT4hp6iTiLpv9odpy254RZ8jRc1m3vbRxguzha%2BE5b1AcyEbM%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 13:38:37 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b0f8a87ce3c8882-LHR
Open service 2a06:98c1:3120::3:443 · lotto24-de.de
2025-12-20 04:46
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 04:46:23 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=aR%2BwCToptQHhq2k%2Fd91waxeH6qmNgXPFyXLVbTrrLQZJ%2FyRW8UAno0A0bV3pum7uLjPno8hCv2pZwfBN8thah5uuo1ixllyxZLXzAT3H2BvOOOl%2FRP8kfy4%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 04:46:23 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.27
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=1149
CF-RAY: 9b0c7edcb93e9daa-SIN