cloudflare
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c684e525d684e525dfb28aa85d366783d0e29351d2779c701
Found 27 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/casino_list /media/cache/game /media/cache/game/uploads /media/cache/game/uploads/media /media/cache/game/uploads/media/games /media/cache/pb_b_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads /uploads/media
Severity: low
Fingerprint: 5f32cf5d6962f09c87f05b7087f05b705914feb4f2c9d16ce4658c76e0ca8168
Found 26 files trough .DS_Store spidering: /admin /admin/img /admin/js /build /build/admin /build/frontend /bundles /css /flags /frontend /frontend/img /img /media /media/cache /media/cache/casino_list /media/cache/game /media/cache/game/uploads /media/cache/game/uploads/media /media/cache/game/uploads/media/games /media/cache/pb_b_image /nav-icons /pagebuilder /svg /svg/games /svg/socials /uploads
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e07cddc9ec4cddc9ec4cddc9ec4cddc9ec4cddc9ec4
Symfony profiler enabled: https://wishwin.com.gr/_profiler/empty/search/results
Open service 104.21.88.154:443 · wishwin.com.gr
2026-01-09 11:54
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 11:54:07 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=gqIGQ45fZTmEJizfCqtq7VU%2Ble7A6aHTGGrD74%2F8Y55yhHhOzsdNRKPOLN%2BxQZxjaLPOffevHZ6ERw9HHW7FDP1%2FNtrcWOpDDUY8ko3w"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 11:54:07 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bb3bcf389537d93-LHR
Open service 2a06:98c1:3121::3:443 · wishwin.com.gr
2026-01-09 00:48
HTTP/1.1 200 OK
Date: Fri, 09 Jan 2026 00:48:07 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=G2gZ1NEtVEyyrhHwEWW6vaz%2F38KFbRd5TN%2FVQQI%2FTwUDMbYOFxkvK4bTJdoAhpQFPXKLrQD%2B3Sfz0mer7sRz10nS80lC0l%2F2yhZb5T8W3xC6Gq2g5OHbaQHR"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 09 Feb 2026 00:48:07 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9bafed5c29cabbf7-FRA
Open service 104.21.88.154:443 · wishwin.com.gr
2026-01-02 02:56
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 02:56:15 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=xxRsyl9acBI7tzfXjTEXmEFrTPRpnC4pyzpsCdzH7gUua1T42FI0Qt6DBDwP36VPTJiYWq3AA9D%2B7LFOqAVddtQrTBHJszz1JewqZOw%2F"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 02:56:14 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b76fb6a7c2e362c-FRA
Open service 2a06:98c1:3121::3:443 · wishwin.com.gr
2026-01-02 00:56
HTTP/1.1 200 OK
Date: Fri, 02 Jan 2026 00:56:50 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=xRmwgwhM18ZEg%2BIOoV1L0YW8LPA23w3urERJJFU%2BhHRc%2FAt2b7inoVP7GRKMa157uRlJL%2Fzzx13PnouTPiWXLa2isUZFoxW2TlessYMb6CkOxhcisQtLP6le"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Mon, 02 Feb 2026 00:56:50 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b764c7dd91430e4-FRA
Open service 2a06:98c1:3121::3:443 · wishwin.com.gr
2025-12-30 08:35
HTTP/1.1 200 OK
Date: Tue, 30 Dec 2025 08:35:49 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=4puC%2FkoRUnWENaixgnYi8F85KDjsSPfNijhRhbOtL2ES46LZApOpN%2FI7YRt8k8src4M2e6qgq6qEGb3Iw%2FykcH3o9%2Bltxbchv8i1MVUXBossJHSYQFUT8A%3D%3D"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Fri, 30 Jan 2026 08:35:49 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=8,cfOrigin;dur=832
CF-RAY: 9b6034b67fdc204a-EWR
Open service 104.21.88.154:443 · wishwin.com.gr
2025-12-22 09:35
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 09:35:10 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=xgKlrcb93w30NUpdWRwL6Jpw%2BjKPjzOEb1YK7litVayHKUriIeZgre9rYIYX45VhSryY8ZrdhzBL%2FfuSM7DI1tONv56eRuYWz9gU4bxA"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 09:35:10 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server-Timing: cfCacheStatus;desc="DYNAMIC"
Server-Timing: cfEdge;dur=3,cfOrigin;dur=449
CF-RAY: 9b1ea0a7fadfdafc-EWR
Open service 2a06:98c1:3121::3:443 · wishwin.com.gr
2025-12-22 09:05
HTTP/1.1 200 OK
Date: Mon, 22 Dec 2025 09:05:42 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=uc0oIcVjwwfRXjRAiCGEufT7UeHGeWrmAe2fBJH6D5ZuIBEJTeQvYpop7H38m7dkYMbJRjNasAHqcy6U1MMKjGvES8KxBKj5EGMgNojHyqyhLKEyMLKzfbts"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Thu, 22 Jan 2026 09:05:42 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b1e757abbd77733-LHR
Open service 2a06:98c1:3121::3:443 · wishwin.com.gr
2025-12-20 09:42
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 09:43:00 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=KH%2B1Q8msAyiFwEc0xbtiA2OhTgwwBjK7szPWRKeogL1AZh8xRyE1%2BOViPD719%2FWyzGZBCvEZPo%2FoaQYWerq6tAfMPqIa7iIQZIRShxzA3fYlDOOUwGvaFYvF"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 09:43:00 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b0e315f9d67d38c-FRA
Open service 104.21.88.154:443 · wishwin.com.gr
2025-12-20 08:42
HTTP/1.1 200 OK
Date: Sat, 20 Dec 2025 08:42:53 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
alt-svc: h3=":443"; ma=86400
Cache-Control: no-cache, private
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=u13HR0dAWDCvLCWCMD6P01%2BxnT%2FILgvyNo2bonAEwMphxF4vAa0SyqLmhspckC7tiSc1uHOR55%2B%2BI6FPB5pB1aPYRe0q00BcCIcehoMg"}]}
Server: cloudflare
Set-Cookie: geo_country=us; expires=Tue, 20 Jan 2026 08:42:53 GMT; Max-Age=2678400; path=/; samesite=lax
vary: Accept-Encoding
x-powered-by: PHP/8.3.28
cf-cache-status: DYNAMIC
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
CF-RAY: 9b0dd9510f091907-FRA