Varnish
tcp/80
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c3838040e3838040e0eb87dca6b4d16c68c09c083e36f97bf
Found 20 files trough .DS_Store spidering: /wp-admin /wp-admin/css /wp-admin/images /wp-admin/includes /wp-admin/js /wp-admin/maint /wp-admin/network /wp-admin/user /wp-content /wp-content/languages /wp-content/languages/plugins /wp-content/languages/themes /wp-content/plugins /wp-content/plugins/simple-custom-post-order /wp-content/themes /wp-content/themes/webit /wp-content/themes/webit/font /wp-content/themes/webit/js /wp-content/upgrade /wp-content/uploads
Severity: low
Fingerprint: 5f32cf5d6962f09c3af247253af24725a4a803871c1de5ab23ee35a7f428570f
Found 9 files trough .DS_Store spidering: /wp-admin /wp-content /wp-content/languages /wp-content/languages/plugins /wp-content/languages/themes /wp-content/plugins /wp-content/themes /wp-content/upgrade /wp-content/uploads
Severity: low
Fingerprint: 5f32cf5d6962f09c47dfe71947dfe719513bec2371d6eb0506f38f4063c33aeb
Found 16 files trough .DS_Store spidering: /wp-admin /wp-admin/css /wp-admin/images /wp-admin/includes /wp-admin/js /wp-admin/maint /wp-admin/network /wp-admin/user /wp-content /wp-content/languages /wp-content/languages/plugins /wp-content/languages/themes /wp-content/plugins /wp-content/themes /wp-content/upgrade /wp-content/uploads
Severity: low
Fingerprint: 5f32cf5d6962f09cdafa5447dafa54472a658d19d93cce335cb3468663d1b00a
Found 18 files trough .DS_Store spidering: /wp-admin /wp-admin/css /wp-admin/images /wp-admin/includes /wp-admin/js /wp-admin/maint /wp-admin/network /wp-admin/user /wp-content /wp-content/languages /wp-content/languages/plugins /wp-content/languages/themes /wp-content/plugins /wp-content/plugins/simple-custom-post-order /wp-content/themes /wp-content/themes/webit /wp-content/upgrade /wp-content/uploads
Severity: low
Fingerprint: 5f32cf5d6962f09c3af247253af24725a4a80387f2f3b20911e1bd44e28bd143
Found 9 files trough .DS_Store spidering: /wp-admin /wp-admin/css /wp-admin/images /wp-admin/includes /wp-admin/js /wp-admin/maint /wp-admin/network /wp-admin/user /wp-content
Severity: low
Fingerprint: 5f32cf5d6962f09c668fcbec668fcbec7426161003d9690cdaae418189fe9d96
Found 17 files trough .DS_Store spidering: /wp-admin /wp-admin/css /wp-admin/images /wp-admin/includes /wp-admin/js /wp-admin/maint /wp-admin/network /wp-admin/user /wp-content /wp-content/languages /wp-content/languages/plugins /wp-content/languages/themes /wp-content/plugins /wp-content/plugins/simple-custom-post-order /wp-content/themes /wp-content/upgrade /wp-content/uploads
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c3838040e3838040e0eb87dca6b4d16c68c09c083e36f97bf
Found 20 files trough .DS_Store spidering: /wp-admin /wp-admin/css /wp-admin/images /wp-admin/includes /wp-admin/js /wp-admin/maint /wp-admin/network /wp-admin/user /wp-content /wp-content/languages /wp-content/languages/plugins /wp-content/languages/themes /wp-content/plugins /wp-content/plugins/simple-custom-post-order /wp-content/themes /wp-content/themes/webit /wp-content/themes/webit/font /wp-content/themes/webit/js /wp-content/upgrade /wp-content/uploads
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737d3d578f6e9390664fd18811d58fcb0d57082b14a2
[core] bare = false filemode = true ignorecase = true precomposeunicode = true logallrefupdates = true [core] repositoryformatversion = 0 [remote "origin"] url = https://github.com/webit-be/VDS.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master
The following URL (usually /.git/config) is publicly accessible and is leaking source code and repository configuration.
Severity: medium
Fingerprint: 2580fa947178c88602b1737d3d578f6e9390664fd18811d58fcb0d57082b14a2
[core] bare = false filemode = true ignorecase = true precomposeunicode = true logallrefupdates = true [core] repositoryformatversion = 0 [remote "origin"] url = https://github.com/webit-be/VDS.git fetch = +refs/heads/*:refs/remotes/origin/* [branch "master"] remote = origin merge = refs/heads/master
Open service 151.101.65.91:443 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 162 Content-Type: text/html Location: https://www.vdsdrinks.be/ Content-Security-Policy: frame-ancestors 'self' Referrer-Policy: strict-origin-when-cross-origin X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:31 GMT Via: 1.1 varnish X-Served-By: cache-fra-eddf8230141-FRA X-Cache: MISS X-Cache-Hits: 0 X-Timer: S1767937952.803916,VS0,VE54 Strict-Transport-Security: max-age=31557600 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 151.101.193.91:80 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://vdsdrinks.be/ Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:31 GMT Via: 1.1 varnish X-Served-By: cache-sin-wsat1880067-SIN X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767937952.850084,VS0,VE24 Strict-Transport-Security: max-age=31557600
Open service 151.101.129.91:80 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://vdsdrinks.be/ Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:31 GMT Via: 1.1 varnish X-Served-By: cache-lcy-egml8630035-LCY X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767937952.772963,VS0,VE19 Strict-Transport-Security: max-age=31557600
Open service 151.101.65.91:80 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://vdsdrinks.be/ Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:31 GMT Via: 1.1 varnish X-Served-By: cache-fra-eddf8230032-FRA X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767937952.841643,VS0,VE0 Strict-Transport-Security: max-age=31557600
Open service 151.101.129.91:443 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 162 Content-Type: text/html Location: https://www.vdsdrinks.be/ Content-Security-Policy: frame-ancestors 'self' Referrer-Policy: strict-origin-when-cross-origin X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:31 GMT Via: 1.1 varnish X-Served-By: cache-lon4240-LON X-Cache: MISS X-Cache-Hits: 0 X-Timer: S1767937952.786625,VS0,VE46 Strict-Transport-Security: max-age=31557600 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 151.101.193.91:443 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 162 Content-Type: text/html Location: https://www.vdsdrinks.be/ Content-Security-Policy: frame-ancestors 'self' Referrer-Policy: strict-origin-when-cross-origin X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:32 GMT Via: 1.1 varnish X-Served-By: cache-bom-vanm7210029-BOM X-Cache: MISS X-Cache-Hits: 0 X-Timer: S1767937952.358662,VS0,VE525 Strict-Transport-Security: max-age=31557600 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 151.101.1.91:80 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 0 Server: Varnish Retry-After: 0 Location: https://vdsdrinks.be/ Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:31 GMT Via: 1.1 varnish X-Served-By: cache-lga21921-LGA X-Cache: HIT X-Cache-Hits: 0 X-Timer: S1767937952.694575,VS0,VE1 Strict-Transport-Security: max-age=31557600
Open service 151.101.1.91:443 · vdsdrinks.be
2026-01-09 05:52
HTTP/1.1 301 Moved Permanently Connection: close Content-Length: 162 Content-Type: text/html Location: https://www.vdsdrinks.be/ Content-Security-Policy: frame-ancestors 'self' Referrer-Policy: strict-origin-when-cross-origin X-Content-Type-Options: nosniff X-XSS-Protection: 1; mode=block Accept-Ranges: bytes Date: Fri, 09 Jan 2026 05:52:33 GMT Via: 1.1 varnish X-Served-By: cache-sin-wsat1880026-SIN X-Cache: MISS X-Cache-Hits: 0 X-Timer: S1767937952.460736,VS0,VE640 Strict-Transport-Security: max-age=31557600 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>