cloudflare
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c114fbe07114fbe07727f4d9a190bce36f6271d7980a7d535
Found 47 files trough .DS_Store spidering: /.htaccess /assets /assets/bower_components /assets/bower_components/bootstrap /assets/bower_components/bootstrap-colorpicker /assets/bower_components/bootstrap-datepicker /assets/bower_components/bootstrap-daterangepicker /assets/bower_components/bootstrap-datetimepicker /assets/bower_components/bootstrap-slider /assets/bower_components/bootstrap-timepicker /assets/bower_components/chart.js /assets/bower_components/ckeditor /assets/bower_components/datatables.net /assets/bower_components/datatables.net-bs /assets/bower_components/eve-raphael /assets/bower_components/fastclick /assets/bower_components/Flot /assets/bower_components/font-awesome /assets/bower_components/fullcalendar /assets/bower_components/inputmask /assets/bower_components/ion.rangeSlider /assets/bower_components/Ionicons /assets/bower_components/jquery /assets/bower_components/jquery-knob /assets/bower_components/jquery-mask /assets/bower_components/jquery-mask/jquery.mask.js /assets/bower_components/jquery-mask/jquery.mask.min.js /assets/bower_components/jquery-slimscroll /assets/bower_components/jquery-sparkline /assets/bower_components/jquery-ui /assets/bower_components/jvectormap /assets/bower_components/mocha /assets/bower_components/moment /assets/bower_components/morris.js /assets/bower_components/PACE /assets/bower_components/raphael /assets/bower_components/select2 /assets/bower_components/tata-toast /assets/dist /assets/dist/css /assets/dist/img /assets/dist/js /assets/number.js /assets/plugins /favicon.ico /index.php /style.css
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: medium
Fingerprint: 5f32cf5d6962f09c114fbe07114fbe07727f4d9a190bce36f6271d7980a7d535
Found 47 files trough .DS_Store spidering: /.htaccess /assets /assets/bower_components /assets/bower_components/bootstrap /assets/bower_components/bootstrap-colorpicker /assets/bower_components/bootstrap-datepicker /assets/bower_components/bootstrap-daterangepicker /assets/bower_components/bootstrap-datetimepicker /assets/bower_components/bootstrap-slider /assets/bower_components/bootstrap-timepicker /assets/bower_components/chart.js /assets/bower_components/ckeditor /assets/bower_components/datatables.net /assets/bower_components/datatables.net-bs /assets/bower_components/eve-raphael /assets/bower_components/fastclick /assets/bower_components/Flot /assets/bower_components/font-awesome /assets/bower_components/fullcalendar /assets/bower_components/inputmask /assets/bower_components/ion.rangeSlider /assets/bower_components/Ionicons /assets/bower_components/jquery /assets/bower_components/jquery-knob /assets/bower_components/jquery-mask /assets/bower_components/jquery-mask/jquery.mask.js /assets/bower_components/jquery-mask/jquery.mask.min.js /assets/bower_components/jquery-slimscroll /assets/bower_components/jquery-sparkline /assets/bower_components/jquery-ui /assets/bower_components/jvectormap /assets/bower_components/mocha /assets/bower_components/moment /assets/bower_components/morris.js /assets/bower_components/PACE /assets/bower_components/raphael /assets/bower_components/select2 /assets/bower_components/tata-toast /assets/dist /assets/dist/css /assets/dist/img /assets/dist/js /assets/number.js /assets/plugins /favicon.ico /index.php /style.css
Open service 104.21.13.201:443 · www.polayayang.com
2026-01-23 04:51
HTTP/1.1 200 OK
Date: Fri, 23 Jan 2026 04:51:43 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
Cache-Control: no-cache, private
Set-Cookie: XSRF-TOKEN=eyJpdiI6IjAyc0NVZmx1WTVzYk0yRFhFYmZYcEE9PSIsInZhbHVlIjoiR3k2Y2JBQmxEdU15a1cvTDM4SXdBRzNoUDNBWHZWYWN5b2h1eXlaek0zeFRRRFB3Y0FxV295SjgrUm5ZR2R3RzlaVnRBSkd0Nzg1eU9jbk8vb2tZRW52UDdWa01KSmhjdlJHM3VQK01ncnVKS05xZGdDekRtN3VFWDZ5Q20ySWoiLCJtYWMiOiI5N2I4MzFmNmI0ZDM4ODE4YzNjOWY5OWJmM2YxMTliNjQ0YTc1YTMyNjBmODQ2ODQyYWNhMjljMzkwZDUzMzE5IiwidGFnIjoiIn0%3D; expires=Fri, 23-Jan-2026 06:51:43 GMT; Max-Age=7200; path=/; samesite=lax
Set-Cookie: laravel_session=eyJpdiI6ImxaMTZMSnREM2YzNWpCdGdISGkzbVE9PSIsInZhbHVlIjoiS3RtSFh3b2h0QjBuOElXSk9YNkg4UURHRVFqUzFhMFNwTytoUUFqaGorVmJhTWZCMnFxbEplTHJjS2VDaVZXRUtaRGtVSEYrSVRNY3NwTml1UDRNUlN6V2U4cE1pd0NQYVpMOEZEOGNyd01YT3dCYmFVcTR6cVNKcTZ3eGlxNEQiLCJtYWMiOiIzZjI5Zjk4M2MwZTQ3Y2M3MTk4ZDc5ODM4OGEyMzFjMzY3YzMwZWRhYjQwNjcyMjc5NTZkMWQxODQ2ZmNkNWM0IiwidGFnIjoiIn0%3D; expires=Fri, 23-Jan-2026 06:51:43 GMT; Max-Age=7200; path=/; httponly; samesite=lax
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=xJyiWGBNRWNSqTeL1aLnV1Kf0nQsF9Ebjag5tpdOT%2Fzh6syFtFmjX06tN2UhELcL63nXlHQ4z%2BviUuDonGvZmnm5%2Ft9hrQsokZNOR3oV8gUXnQ%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=815
CF-RAY: 9c24ad713b3ef8ac-YYZ
alt-svc: h3=":443"; ma=86400
Open service 172.67.157.84:443 · polayayang.com
2026-01-23 04:50
HTTP/1.1 200 OK
Date: Fri, 23 Jan 2026 04:50:14 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Server: cloudflare
Cache-Control: no-cache, private
Set-Cookie: XSRF-TOKEN=eyJpdiI6IkZOQ2ZPemVOMkt4WlAvWjlOWkpXYWc9PSIsInZhbHVlIjoidmVyYWF4bnV2N21qWkxwNmhRMDhZdUo3Yis3bCs3WGhUckd4Z3YzS2kzQi8xTyttWlVuWHNWckpXeXZCWnc4MkNJWFdBWGdPWWlkUTVlM2N4eENkMTV3Q2dwWi94ODI2YU1XbjFZQ0I1SHBuSjBnSU1adnVJUkRxMHJjdHB0VVUiLCJtYWMiOiI1ZGU3MTYyN2M5ODM1YjljNTI5ZGUxZThiM2RhNzQ1NDY1ODRlOGY1ZTUwNmUxYWYxNWFlMWIxM2M0YjhhOTlhIiwidGFnIjoiIn0%3D; expires=Fri, 23-Jan-2026 06:50:14 GMT; Max-Age=7200; path=/; samesite=lax
Set-Cookie: laravel_session=eyJpdiI6ImFiN0wyeWVJWTRicnp1Z2d3M3VZOEE9PSIsInZhbHVlIjoiazU2dnNXOU45clFkNDN4S2cydzNmVXVTVXphNTVJODRzTi95MVNzai8vQWpiaGU3Y0VjSnFIR1luN3JVZkV6ZkUxaDJPQ3RITjc1VjhXMnBTODRVS0IwTlhLUXIybjJBdTdEak81MHVUVW9VTUo0UjdxeE1zQkRpa1JvUVowOVAiLCJtYWMiOiJmY2UxNjBmZTg5NTg3YWE5NGYzOTlhYTRiODI1YjgyMzQwYzUyYzIzNDkxNGM5YTI4Zjk2MDc1MWNiYTAzMzM0IiwidGFnIjoiIn0%3D; expires=Fri, 23-Jan-2026 06:50:14 GMT; Max-Age=7200; path=/; httponly; samesite=lax
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=we4b%2FLBMJpoxZEzGtXkgiG1CBjA%2FSF2po6WdxLmt1oz1rYZsRVH8dc7b608syVwai5nmy2aEpuehBiXkVAbs5CDgb66RPcB6LbK3RcRE"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
cf-cache-status: DYNAMIC
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=6,cfOrigin;dur=871
CF-RAY: 9c24ab463d628c6d-EWR
alt-svc: h3=":443"; ma=86400