nginx
tcp/443 tcp/80
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9d7f9fdbe57f9fdbe57f9fdbe57f9fdbe5
Found 1 files trough .DS_Store spidering: /h5
Severity: low
Fingerprint: 5f32cf5d6962f09cec7f8772ec7f877272a0bbae9752f4b6fa843b4b9976b809
Found 11 files trough .DS_Store spidering: /assets /css /css/mobile /dist /dist/js /fonts /images /js /lib /svg /vendor
The application has Laravel development panel enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 3ae8115d762f12d0cb4e94efcb4e94efcb4e94efcb4e94efcb4e94efcb4e94ef
Laravel Telescope enabled at https://weixin.qilingyun.cn
Open service 8.142.143.72:80 · weixin.qilingyun.cn
2024-04-30 20:18
HTTP/1.1 301 Moved Permanently Server: nginx Date: Tue, 30 Apr 2024 20:18:18 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://weixin.qilingyun.cn/ Strict-Transport-Security: max-age=31536000 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 8.142.143.72:443 · weixin.qilingyun.cn
2024-04-29 01:17
HTTP/1.1 200 OK Server: nginx Date: Mon, 29 Apr 2024 01:17:45 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Strict-Transport-Security: max-age=31536000 <script type="text/javascript">top.parent.frames.location.href="/gcadmin/Login/index.html";</script>
Open service 8.142.143.72:80 · weixin.qilingyun.cn
2024-04-28 19:30
HTTP/1.1 301 Moved Permanently Server: nginx Date: Sun, 28 Apr 2024 19:30:32 GMT Content-Type: text/html Content-Length: 162 Connection: close Location: https://weixin.qilingyun.cn/ Strict-Transport-Security: max-age=31536000 Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx</center> </body> </html>
Open service 8.142.143.72:443 · weixin.qilingyun.cn
2024-04-28 18:52
HTTP/1.1 200 OK Server: nginx Date: Sun, 28 Apr 2024 18:52:54 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Strict-Transport-Security: max-age=31536000 <script type="text/javascript">top.parent.frames.location.href="/gcadmin/Login/index.html";</script>
Open service 8.142.143.72:443 · weixin.qilingyun.cn
2024-04-19 00:52
HTTP/1.1 200 OK Server: nginx Date: Fri, 19 Apr 2024 00:52:13 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Strict-Transport-Security: max-age=31536000 <script type="text/javascript">top.parent.frames.location.href="/gcadmin/Login/index.html";</script>
Open service 8.142.143.72:443 · weixin.qilingyun.cn
2024-04-19 00:39
HTTP/1.1 200 OK Server: nginx Date: Fri, 19 Apr 2024 00:39:44 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding Strict-Transport-Security: max-age=31536000 <script type="text/javascript">top.parent.frames.location.href="/gcadmin/Login/index.html";</script>
Open service 8.142.143.72:443 · weixin.qilingyun.cn
2024-04-17 02:58
HTTP/1.1 200 OK Server: nginx Date: Wed, 17 Apr 2024 02:58:43 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding X-Powered-By: PHP/7.2.31 Cache-Control: private, must-revalidate pragma: no-cache expires: -1 Set-Cookie: laravel_session=9wd850ZqclBfBe0gnUiLpbhBztiRQmOAumOyO0RW; expires=Thu, 25-Apr-2024 10:58:43 GMT; Max-Age=720000; path=/; httponly Strict-Transport-Security: max-age=31536000 Page title: 云端微信裂变宝管理系统 <!DOCTYPE html v-cloak> <html lang="zh" style="height: 100%; font-size: 100px;"> <head> <meta charset="UTF-8" /> <meta name="viewport" content="width=device-width, initial-scale=1"> <meta http-equiv="X-UA-Compatible" content="ie=edge" /> <title>云端微信裂变宝管理系统</title> <link rel="icon" href="/images/titleImg.png"/> <!-- <script src="/js/test.js"></script> --> <link rel="stylesheet" type="text/css" href="/css/login.css" /> <link rel="stylesheet" type="text/css" href="//at.alicdn.com/t/font_1565580_jgju61az6di.css" /> <script src="/lib/all.js"></script> <script src="/lib/axios.js?_version="></script> <script src="/lib/vue.js?_version="></script> <script src="/js/copy.js"></script> <script src="/lib/bootstrap.min.js?_version="></script> <link href="/lib/element/index.css?_version=" rel="stylesheet"> <script src="/js/elementUI.js?_version="></script> <style> .message p a{ color: #7A8A9A; } .message1 p a{ color: #000; } .back1Img { position: fixed; top: 0; left: 0; width: 100%; height: 100%; z-index: -999; object-fit: cover; background-repeat: no-repeat; } .cover1Img{ position: fixed; left: 50%; top: 50%; transform: translate(-50%,-50%); width: 65vw; height: 25vw; z-index: -888; object-fit: cover; border-radius: 10px; } .cover2Img{ position: fixed; right: 5.2%; top: 50%; transform: translatey(-50%); width: 37.5vw; height: 83.33vh; z-index: -888; border-radius:0 20px 20px 0 ; } .temp1Content{ top: 50%; left: 65%; transform: translate(-50%, -50%); position: fixed; width: 31.25vw; height: 30vw; background: #FFFFFF; box-shadow: 0px 0px 10px 1px rgba(54,130,244,0.49); border-radius: 8px 8px 8px 8px; display: flex; flex-direction: column; justify-content: space-evenly; align-items: center; } .temp2Content{ top: 50%; right: 42.7%; transform: translatey(-50%); position: fixed; width: 27.08vw; height: 83.33vh; background: #FFFFFF; box-shadow: 0px 0px 10px 1px rgba(0,0,0,0.13); border-radius:20px 0 0 20px; display: flex; flex-direction: column; justify-content: space-evenly; align-items: center; overflow: auto; } .inputContainer{ display: flex; justify-content: center; align-items: center; border-bottom: 1px solid #dfdfdf; padding: 0.7vw 0.7vw 0.7vw 0; } .inputBody{ min-width: 0; flex:1; border: none; outline: none; margin-left: 0.2rem; font-size: .15rem; } @media (max-width: 600px) { .temp1Content { width: 80%; left: 50%; height: 80vw; transform: translate(-50%,-50%); min-width: 200px; min-height: 200px; } .temp2Content { width: 80% !important; left: 50%; height: 80vw; transform: translate(-50%,-50%); min-width: 200px; min-height: 200px; border-radius: 20px; } .cover2Img{ width: 0; height: 0; }
Open service 8.142.143.72:80 · weixin.qilingyun.cn
2024-04-17 02:58
HTTP/1.1 200 OK Server: nginx Date: Wed, 17 Apr 2024 02:58:36 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Vary: Accept-Encoding <script type="text/javascript">top.parent.frames.location.href="/gcadmin/Login/index.html";</script>