cloudflare
tcp/443
GraphQL introspection is enabled.
This could leak to data leak if not properly configured.
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa3cc7790ef650808bd9fd7e5382fe76f66733d4e35
GraphQL introspection enabled at /graphql Types: 467 (by kind: ENUM: 43, INPUT_OBJECT: 111, INTERFACE: 25, OBJECT: 283, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart, addProductsToCompareList Directives: deprecated, include, skip (total: 3) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa32e35a0e67b5a65968c653eb7a7db7f9f0ec28c1a
GraphQL introspection enabled at /graphql Types: 463 (by kind: ENUM: 43, INPUT_OBJECT: 109, INTERFACE: 25, OBJECT: 281, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart, addProductsToCompareList Directives: deprecated, include, skip (total: 3) Detected: Magento
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa32e35a0e67b5a65968c653eb7a7db7f9f181907bf
GraphQL introspection enabled at /graphql Types: 463 (by kind: ENUM: 43, INPUT_OBJECT: 109, INTERFACE: 25, OBJECT: 281, SCALAR: 5) Operations: - Query: Query | fields: attributesForm, attributesList, availableStores, cart, categories - Mutation: Mutation | fields: addBundleProductsToCart, addConfigurableProductsToCart, addDownloadableProductsToCart, addProductsToCart, addProductsToCompareList Directives: deprecated, include, skip (total: 3)
Severity: medium
Fingerprint: c2db3a1c40d490db1a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa31a0bbaa3
GraphQL introspection enabled at /graphql
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09cf35cbfb3f35cbfb303b4cbfbea0d8f53b2d458c89731aa37
Found 29 files trough .DS_Store spidering: /add-datasheet.php /add-product-model.php /cron.php /datasheets.csv /errors /get.php /health_check.php /import /import/add-url.php /import/assign-products.php /import/change-subcategory.php /import/convert-to-magento.php /import/duplicate_products.csv /import/duplicate_products.xlsx /import/files /import/fix-brands.php /import/mark-products-as-new.php /import/original_testunlimited_database_02_dec_2.csv /import/process_csv.php /import/remove-products-and-categories.php /import/unique-products.php /import/unique_products.csv /import/updated_woocommerce.csv /import/woocommerce.csv /index.php /media /opt /static /static.php
Open service 104.26.11.163:443 · www.testwall.com
2026-01-23 08:00
HTTP/1.1 403 Forbidden
Date: Fri, 23 Jan 2026 08:00:39 GMT
Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: close
Cache-Control: private, max-age=0, no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Expires: Thu, 01 Jan 1970 00:00:01 GMT
Referrer-Policy: same-origin
Server-Timing: cfEdge;dur=7,cfOrigin;dur=0
X-Frame-Options: SAMEORIGIN
Report-To: {"group":"cf-nel","max_age":604800,"endpoints":[{"url":"https://a.nel.cloudflare.com/report/v4?s=ZBu%2F5QCL90DYcHMCIyb6QrqnZVCn6zZwU2pMnUxOckbAMBMP57PkLcFfOa3xHFVfQEa66MKb6EjkmhJpDsL0FkPtqXBwkgkgwLVJkUBnEQ%3D%3D"}]}
Nel: {"report_to":"cf-nel","success_fraction":0.0,"max_age":604800}
Server: cloudflare
CF-RAY: 9c25c239987efcf7-SIN
Page title: Attention Required! | Cloudflare
<!DOCTYPE html>
<!--[if lt IE 7]> <html class="no-js ie6 oldie" lang="en-US"> <![endif]-->
<!--[if IE 7]> <html class="no-js ie7 oldie" lang="en-US"> <![endif]-->
<!--[if IE 8]> <html class="no-js ie8 oldie" lang="en-US"> <![endif]-->
<!--[if gt IE 8]><!--> <html class="no-js" lang="en-US"> <!--<![endif]-->
<head>
<title>Attention Required! | Cloudflare</title>
<meta charset="UTF-8" />
<meta http-equiv="Content-Type" content="text/html; charset=UTF-8" />
<meta http-equiv="X-UA-Compatible" content="IE=Edge" />
<meta name="robots" content="noindex, nofollow" />
<meta name="viewport" content="width=device-width,initial-scale=1" />
<link rel="stylesheet" id="cf_styles-css" href="/cdn-cgi/styles/cf.errors.css" />
<!--[if lt IE 9]><link rel="stylesheet" id='cf_styles-ie-css' href="/cdn-cgi/styles/cf.errors.ie.css" /><![endif]-->
<style>body{margin:0;padding:0}</style>
<!--[if gte IE 10]><!-->
<script>
if (!navigator.cookieEnabled) {
window.addEventListener('DOMContentLoaded', function () {
var cookieEl = document.getElementById('cookie-alert');
cookieEl.style.display = 'block';
})
}
</script>
<!--<![endif]-->
</head>
<body>
<div id="cf-wrapper">
<div class="cf-alert cf-alert-error cf-cookie-error" id="cookie-alert" data-translate="enable_cookies">Please enable cookies.</div>
<div id="cf-error-details" class="cf-error-details-wrapper">
<div class="cf-wrapper cf-header cf-error-overview">
<h1 data-translate="block_headline">Sorry, you have been blocked</h1>
<h2 class="cf-subheadline"><span data-translate="unable_to_access">You are unable to access</span> testwall.com</h2>
</div><!-- /.header -->
<div class="cf-section cf-highlight">
<div class="cf-wrapper">
<div class="cf-screenshot-container cf-screenshot-full">
<span class="cf-no-screenshot error"></span>
</div>
</div>
</div><!-- /.captcha-container -->
<div class="cf-section cf-wrapper">
<div class="cf-columns two">
<div class="cf-column">
<h2 data-translate="blocked_why_headline">Why have I been blocked?</h2>
<p data-translate="blocked_why_detail">This website is using a security service to protect itself from online attacks. The action you just performed triggered the security solution. There are several actions that could trigger this block including submitting a certain word or phrase, a SQL command or malformed data.</p>
</div>
<div class="cf-column">
<h2 data-translate="blocked_resolve_headline">What can I do to resolve this?</h2>
<p data-translate="blocked_resolve_detail">You can email the site owner to let them know you were blocked. Please include what you were doing when this page came up and the Cloudflare Ray ID found at the bottom of this page.</p>
</div>
</div>
</div><!-- /.section -->
<div class="cf-error-footer cf-wrapper w-240 lg:w-full py-10 sm:py-4 sm:px-8 mx-auto text-center sm:text-left border-solid border-0 border-t border-gray-300">
<p class="text-13">
<span class="cf-footer-item sm:block sm:mb-1">Cloudflare Ray ID: <strong class="font-semibold">9c25c239987efcf7</strong></span>
<span class="cf-footer-separator sm:hidden">•</span>
<span id="cf-footer-item-ip" class="cf-footer-item hidden sm:block sm:mb-1">
Your IP:
<button type="button" id="cf-footer-ip-reveal" class="cf-footer-ip-reveal-btn">Click to reveal</button>
<span class="hidden" id="cf-footer-ip">128.199.182.55</span>
<span class="cf-footer-separator sm:hidden">•</span>
</span>
<span class="cf-footer-item sm:block sm:mb-1"><span>Performance & security by</span> <a rel="noopener noreferrer" href="https://www.cloudflare.com/5xx-error-landing" id="brand_link" target="_blank">Cloudflare</a></span>
</p>
<script>(function(){function d(){var b=a.getElementById("cf-footer-item-ip"),c=a.getElementById("cf-footer-ip-reveal");b&&"c
Open service 172.67.73.132:443 · www.testwall.com
2026-01-09 13:19
HTTP/1.1 200 OK Date: Fri, 09 Jan 2026 13:19:58 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: cloudflare Set-Cookie: PHPSESSID=86hig9qpfspafogrcc4mhnr27a; expires=Fri, 09 Jan 2026 14:19:58 GMT; Max-Age=3600; path=/; domain=www.testwall.com; secure; HttpOnly; SameSite=Lax Expires: Thu, 09 Jan 2025 13:19:58 GMT Cache-Control: max-age=0, must-revalidate, no-cache, no-store Pragma: no-cache
Open service 172.67.73.132:443 · www.testwall.com
2026-01-09 00:06
HTTP/1.1 200 OK Date: Fri, 09 Jan 2026 00:06:05 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: cloudflare Set-Cookie: PHPSESSID=54pc20l65ha8t5oiqmes11lnnq; expires=Fri, 09 Jan 2026 01:06:04 GMT; Max-Age=3600; path=/; domain=www.testwall.com; secure; HttpOnly; SameSite=Lax Expires: Thu, 09 Jan 2025 00:06:04 GMT Cache-Control: max-age=0, must-revalidate, no-cache, no-store Pragma: no-cache
Open service 172.67.73.132:443 · www.testwall.com
2026-01-02 01:12
HTTP/1.1 200 OK Date: Fri, 02 Jan 2026 01:12:16 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: cloudflare Set-Cookie: PHPSESSID=8ag9a07rlktbq0effp4cdce9fk; expires=Fri, 02 Jan 2026 02:12:15 GMT; Max-Age=3600; path=/; domain=www.testwall.com; secure; HttpOnly; SameSite=Lax Expires: Thu, 02 Jan 2025 01:12:15 GMT Cache-Control: max-age=0, must-revalidate, no-cache, no-store Pragma: no-cache
Open service 172.67.73.132:443 · www.testwall.com
2026-01-01 23:05
HTTP/1.1 200 OK Date: Thu, 01 Jan 2026 23:05:30 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: cloudflare Set-Cookie: PHPSESSID=c68q00md3e7te3j7qmaj39qcsp; expires=Fri, 02 Jan 2026 00:05:30 GMT; Max-Age=3600; path=/; domain=www.testwall.com; secure; HttpOnly; SameSite=Lax Expires: Wed, 01 Jan 2025 23:05:30 GMT Cache-Control: max-age=0, must-revalidate, no-cache, no-store Pragma: no-cache
Open service 172.67.73.132:443 · www.testwall.com
2025-12-23 07:06
HTTP/1.1 200 OK Date: Tue, 23 Dec 2025 07:06:07 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: cloudflare Set-Cookie: PHPSESSID=k36jk7msbrvpp5vi8gsalk4145; expires=Tue, 23 Dec 2025 08:06:06 GMT; Max-Age=3600; path=/; domain=www.testwall.com; secure; HttpOnly; SameSite=Lax Expires: Mon, 23 Dec 2024 07:06:06 GMT Cache-Control: max-age=0, must-revalidate, no-cache, no-store Pragma: no-cache
Open service 172.67.73.132:443 · www.testwall.com
2025-12-23 05:02
HTTP/1.1 200 OK Date: Tue, 23 Dec 2025 05:02:12 GMT Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close Server: cloudflare Set-Cookie: PHPSESSID=aim4j69eehdtou3rjui8gvs702; expires=Tue, 23 Dec 2025 06:02:11 GMT; Max-Age=3600; path=/; domain=www.testwall.com; secure; HttpOnly; SameSite=Lax Expires: Mon, 23 Dec 2024 05:02:11 GMT Cache-Control: max-age=0, must-revalidate, no-cache, no-store Pragma: no-cache