cloudflare
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09cae99eea9ae99eea96ba46591629a2ee1cbb56ea163e836bb
Found 23 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/pb_block_image /media/cache/pb_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads /uploads/media
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e079203262792032627920326279203262792032627
Symfony profiler enabled: https://oscarspin-casino-fr.com/_profiler/empty/search/results
Open service 188.114.97.3:443 · oscarspin-casino-fr.com
2026-01-09 01:21
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 01:21:27 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=eVynXNafX6J709F6kFnq44q2JhuoGYnqH1NbQFBzTtW7olk%2BvxvBBBBXyswe%2FQpc6r5XVBaISl1Plrp%2FNL0YvtIcyAMrSXgIKpIfYzMLZChPWd0dTQ4A"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 01:21:27 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=3,cfOrigin;dur=708
CF-RAY: 9bb01e2ddaffff73-BOM
Open service 2a06:98c1:3121::3:443 · oscarspin-casino-fr.com
2026-01-09 00:37
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 00:37:52 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=%2F1FBvX87ValSI0%2FjlFB4XCY1Qr2eX4UciIW5%2FKk7w%2FnmVIbt5GkhEcpXqdcTGGrTe3BCDyEM7k1paqH6O99mZAoYbTy9skQDXEgerKK3sWzpD%2FbSaWjLmuOXvxp8arHULxWf"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 00:37:52 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bafde55094d243d-LHR
Open service 2a06:98c1:3121::3:443 · oscarspin-casino-fr.com
2026-01-02 00:43
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 00:44:02 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=l09%2Fec8Kd4l%2FEmKhSQSxJg8Mnwows7fql%2FOVAgYY5ztEl%2B6q7sIrWy0jXcph3S7nm4xmIDL%2FLpvZb9EwcWwMmFpgBoXNnTcbTU8RQU5NieeIGlxVFzOvIA7JGtnDkgPy%2F3hD"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 00:44:02 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=1501
CF-RAY: 9b7639b84d5748e6-BOM
Open service 188.114.97.3:443 · oscarspin-casino-fr.com
2026-01-01 22:39
HTTP/1.1 200 OK
Date: Thu, 01 Jan 2026 22:39:27 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=PfPmXR3aTfU7FxLrS2xpajc%2FlrLgXLUpElfuJxWSSu3obRJeAG%2BoQjjZ38uE8gA9ql9CCNKTrL%2BjZJ%2B%2B1UBLtofVuN2y88YvjYUeOBSLLUw0XzvMpVvy"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 01 Feb 2026 22:39:27 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b758341aa19dc95-FRA
Open service 2a06:98c1:3121::3:443 · oscarspin-casino-fr.com
2025-12-30 08:21
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 08:21:56 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=v11sNcVnm9Qjled5jxswrWOdFzd8Sx318ZMpDH9G7in3KE2g%2BYWDVvejjk3lfNhDd3gE5LLPvKJMWGg6Ko3IKXAvdmxA%2BSQg0OH0UaDBRFDl0%2BLint63r0bkbgyCoByDhg%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 08:21:55 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=9,cfOrigin;dur=789
CF-RAY: 9b60205b6d650cba-EWR
Open service 188.114.97.3:443 · oscarspin-casino-fr.com
2025-12-30 07:49
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 07:49:58 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=9jy6D3U6G1nXm3nOLdY4kb2JiBya%2FbCxWeyBecOS%2Bf25CimoA4jmdeqDl0w1HUv5lHmmFBiQf6%2Bn9nwg4gC2iJ0bMA2bP%2F7QuGz%2BR%2BYD7shBy%2BTe80AP"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 07:49:58 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b5ff18b2c771c2e-FRA
Open service 2a06:98c1:3121::3:443 · oscarspin-casino-fr.com
2025-12-22 08:58
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 08:58:36 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=iuuXAhzyuQBY%2F3ZOz34BOKjKhXJojnXJNvHiXF3SJyTTL%2Fec%2Bs9%2FaTZX5eZl3NRS5kn0SnFIcSlkubN2yJE8SPfECi%2FgFiOXVEDKwE5TK3IBPWEzfBcKNtNbpHOUSiDiBQtH"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 08:58:36 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b1e6b197b3e579c-FRA
Open service 188.114.97.3:443 · oscarspin-casino-fr.com
2025-12-22 06:28
Open service 188.114.97.3:443 · oscarspin-casino-fr.com
2025-12-20 18:37
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 18:37:43 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=7tm6TdBbwxYU19wxgKe%2BcTApgnSwf2dcJVOwpci4TieXWXxNg%2B0KM09Xj5UoPTjsAIogs8OVxbrCuTtGy2gJtAxy2Dju78VhB1PNUfmAQAH9aTqVNw%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 18:37:43 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=17,cfOrigin;dur=994
CF-RAY: 9b1140a1eb6fc340-EWR
Open service 2a06:98c1:3121::3:443 · oscarspin-casino-fr.com
2025-12-20 09:31
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 09:31:22 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Cruo%2FpXXVivI0nnrFJ%2BQDJgD8J2hjiXw0Sbp6umarxbuJPXkOHjX1p7Ss2qeoK%2FegwHSYXTuMIj05j%2B60uf9cRzGMa3br1F%2BzljIbT6jqYShHTx%2Bw78jOMzL8X5bcIhifFKM"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 09:31:22 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b0e20547d90cd22-LHR
Open service 188.114.97.3:443 · oscarspin-casino-fr.com
2025-12-19 02:07
HTTP/1.1 200 OK
Date: Fri, 19 Dec 2025 02:07:44 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=VREdGD3L1wkwg0y2H6e03lOHP7r27tZTut0gF1RNu%2BV%2F9WaYy4BMiAg8XZKjYLePeQA65RwSukSZZ6TXr58%2FGHVDOskXeUmhw5pQzdWum7uhkIBDo5cQ"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 19 Jan 2026 02:07:43 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=17,cfOrigin;dur=871
CF-RAY: 9b035915ec3fcd8b-EWR