cloudflare
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09cae99eea9ae99eea96ba46591629a2ee1cbb56ea163e836bb
Found 23 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/pb_block_image /media/cache/pb_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads /uploads/media
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e0702196fe502196fe502196fe502196fe502196fe5
Symfony profiler enabled: https://tiptopbett.com/_profiler/empty/search/results
Open service 188.114.97.3:443 · tiptopbett.com
2026-01-09 07:38
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 07:38:07 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=gjyN4MjQ4AV0Hl5J5fdTYgH5S3gOoy2QwJFrh7F1pEEh4qrBnYez6ltIJy7Ib3Qlxhgo53B6N7rg2WWZyAycbLNsQkS39mjBSyCUSfiz"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 07:38:07 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=1082
CF-RAY: 9bb245ebfed80c60-SJC
Open service 2a06:98c1:3120::3:443 · tiptopbett.com
2026-01-08 21:38
HTTP/1.1 200 OK
Date: Thu, 08 Jan 2026 21:38:38 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=mRGNv4QjlaN4atPCPhbvAb0bN9GTKJHvbgng1tuSpMVCnqR6b4upIIQdcpzt9iU5Jyx8ZFg8v8xoUVdM%2FeHSoHqXwHPcAFxUvReLBX8wPoWuWP5hivNb3VDC"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 08 Feb 2026 21:38:38 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9baed7cd6cc0db9b-FRA
Open service 188.114.97.3:443 · tiptopbett.com
2026-01-02 06:00
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 06:00:52 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=6hW2DyzSbgMMQ0AWNg3G6eQ6iZSbE7lasCTfpv9ZldFSqCsQ8QrEhoind%2Bl0za2nUKKL0j5ZZRET3d8J47wUaieqH6WCjpeN9kJ6TGtr"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 06:00:52 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b7809dd88611c13-FRA
Open service 2a06:98c1:3120::3:443 · tiptopbett.com
2026-01-01 21:48
HTTP/1.1 200 OK
Date: Thu, 01 Jan 2026 21:48:16 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=Jr%2BqU61x1CQNUPRSq9PeXoMU6WClS6U8ejfpJVypXHqdNOU3dZXRLCmf0d9TVPYXveZ5iZEDZs3aSBixTbZo4Q3JD8Ugxd%2BDJ7pUj4X3rbob1pBJ%2FZDg%2FsGB"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Sun, 01 Feb 2026 21:48:15 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=11,cfOrigin;dur=1064
CF-RAY: 9b753840ba3244b7-SIN
Open service 2a06:98c1:3120::3:443 · tiptopbett.com
2025-12-30 06:13
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 06:14:00 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=jt439Msb%2BWwECs1KG7O10ul51pyF7oUtzDQH3%2BqxqzC4lfF5LQqzz8lm5afMQwVjZdMB37S1cAKUngJWlgWSK6upd%2FSdyZnAvcvfQfI1aW00E5oAx8bpFP0R"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 06:13:59 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=7,cfOrigin;dur=1054
CF-RAY: 9b5f64f31d90fd14-SIN
Open service 188.114.97.3:443 · tiptopbett.com
2025-12-22 21:05
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 21:06:01 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=lJrm7wIS2jz6PmTnFNCuxxQb8PxXv1Ktk%2BSQXWZpIocOU5AUl%2BYEBFl5cZgL7TiBpBjsOZuHPpVcjF2Mzmy3GwV8w%2FuLWr8P%2Bv4%2BIkm1"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 21:06:00 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=4,cfOrigin;dur=487
CF-RAY: 9b2294a1b9c9fdca-SIN
Open service 2a06:98c1:3120::3:443 · tiptopbett.com
2025-12-22 07:18
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 07:18:57 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=dPrzBmdOvgUd0WOiSmOwLIBM7dNg3odz3m%2BWZGqw5WN0kBN%2FokeHLUlNamDlOfARO7KDE1rbP1%2BUAV5OWOwLUfnow2TcaDT70s%2F7xwJKKsVf%2F7JpPdE2%2Fw%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 07:18:57 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=816
CF-RAY: 9b1dd91b0b5d2633-EWR
Open service 188.114.97.3:443 · tiptopbett.com
2025-12-21 00:30
HTTP/1.1 200 OK
Date: Sun, 21 Dec 2025 00:30:13 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=kjo3EmA77GXU8RFhZJpM2PHeUGyErpm7V7A%2FCr98dMwFVeLClD2p6cSQHzIuFT1FvFzejCG839%2B9NPRWvsdIvhmr0bXcPLEJB0jVoD0B"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Wed, 21 Jan 2026 00:30:13 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b1345042f964ba8-FRA
Open service 2a06:98c1:3120::3:443 · tiptopbett.com
2025-12-20 07:59
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 07:59:15 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=PKwRQcRG4jTvUMmoXbaBKiF4HhQnKln1NySqjh%2BwegomHoCNoRrjUO78AyDM4QGA%2BE4fd7nYheZqw2hwAzk5TBW05XkcQZ4JKWOWULRSm4AHtMx4uY6kkO5o"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 07:59:14 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=1516
CF-RAY: 9b0d995e0880b79c-BOM