Heroku
tcp/443
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c63442d9d63442d9da578f384a578f384a578f384a578f384
Found 1 files trough .DS_Store spidering: /image_cache
Open service 3.209.172.72:443 · www.btbindustries.com
2026-01-09 23:03
HTTP/1.1 200 OK
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=PcP3bRcNHKbfXy3VUjC0U7y3AiVa7%2FQY1l2aXNsqwwg%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767999890"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=PcP3bRcNHKbfXy3VUjC0U7y3AiVa7%2FQY1l2aXNsqwwg%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767999890"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 3a11f027-d92c-68a8-aad2-09586b3aff41
X-Runtime: 0.003928
X-Xss-Protection: 0
Date: Fri, 09 Jan 2026 23:04:50 GMT
Connection: close
Open service 3.209.172.72:443 · www.btbindustries.com
2026-01-02 13:19
HTTP/1.1 200 OK
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=lHUS5TvrXYYbdTveYbWGQ1OLkhs5EY5wBh1Nk%2FfWvfI%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1767359959"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=lHUS5TvrXYYbdTveYbWGQ1OLkhs5EY5wBh1Nk%2FfWvfI%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1767359959"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 65494285-efef-c300-2407-50c7a4f5ca9f
X-Runtime: 0.001815
X-Xss-Protection: 0
Date: Fri, 02 Jan 2026 13:19:19 GMT
Connection: close
Open service 3.209.172.72:443 · www.btbindustries.com
2025-12-22 13:08
HTTP/1.1 200 OK
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=zDoK3%2FsdSQKIM084qtNbtAbMAMtKPzPQgtDXRljPZHM%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766408882"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=zDoK3%2FsdSQKIM084qtNbtAbMAMtKPzPQgtDXRljPZHM%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766408882"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: c9129246-c230-1ff5-4a34-300c54635a6a
X-Runtime: 0.001211
X-Xss-Protection: 0
Date: Mon, 22 Dec 2025 13:08:02 GMT
Connection: close
Open service 3.209.172.72:443 · www.btbindustries.com
2025-12-20 13:11
HTTP/1.1 200 OK
Cache-Control: no-cache
Content-Length: 0
Content-Type: text/html; charset=utf-8
Nel: {"report_to":"heroku-nel","response_headers":["Via"],"max_age":3600,"success_fraction":0.01,"failure_fraction":0.1}
Referrer-Policy: strict-origin-when-cross-origin
Report-To: {"group":"heroku-nel","endpoints":[{"url":"https://nel.heroku.com/reports?s=2E%2BDV7k7Nkk8JHkGddkSOC5%2BZzDVawVzufnR27MDYEw%3D\u0026sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add\u0026ts=1766236266"}],"max_age":3600}
Reporting-Endpoints: heroku-nel="https://nel.heroku.com/reports?s=2E%2BDV7k7Nkk8JHkGddkSOC5%2BZzDVawVzufnR27MDYEw%3D&sid=c46efe9b-d3d2-4a0c-8c76-bfafa16c5add&ts=1766236266"
Server: Heroku
Strict-Transport-Security: max-age=63072000; includeSubDomains
Via: 1.1 heroku-router
X-Content-Type-Options: nosniff
X-Frame-Options: SAMEORIGIN
X-Permitted-Cross-Domain-Policies: none
X-Request-Id: 45aeb2b6-818c-efe5-0499-bb4c5310cb78
X-Runtime: 0.001168
X-Xss-Protection: 0
Date: Sat, 20 Dec 2025 13:11:06 GMT
Connection: close