.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c0215adfc0215adfc0363d38cc483a842642fe843529ec0e4
Found 4 files trough .DS_Store spidering: /assets /kefu_start_for_win /template /uploads
MySQL is currently open without authentication.
Additionally a ransom note has been found in the dataset which indicates it has been compromised
This results in all the database data made available publicly.
Severity: critical
Fingerprint: cf350410ecceb5fd61bfeb8fa8bdbbb909add75d16543034e46525f67b5c31a3
Databases: 53, row count: 4636, size: 2.0 MB Found table laobanbufan.fa_admin with 2 records Found table laobanbufan.fa_admin_log with 218 records Found table laobanbufan.fa_adszone_ads with 3 records Found table laobanbufan.fa_adszone_zone with 2 records Found table laobanbufan.fa_area with 0 records Found table laobanbufan.fa_article with 10 records Found table laobanbufan.fa_article_category with 3 records Found table laobanbufan.fa_article_content with 0 records Found table laobanbufan.fa_attachment with 582 records Found table laobanbufan.fa_auth_group with 5 records Found table laobanbufan.fa_auth_group_access with 2 records Found table laobanbufan.fa_auth_rule with 234 records Found table laobanbufan.fa_category with 0 records Found table laobanbufan.fa_config with 21 records Found table laobanbufan.fa_ems with 0 records Found table laobanbufan.fa_kefu_blacklist with 0 records Found table laobanbufan.fa_kefu_config with 28 records Found table laobanbufan.fa_kefu_csr_config with 3 records Found table laobanbufan.fa_kefu_fast_reply with 7 records Found table laobanbufan.fa_kefu_kbs with 0 records Found table laobanbufan.fa_kefu_leave_message with 2 records Found table laobanbufan.fa_kefu_reception_log with 1003 records Found table laobanbufan.fa_kefu_record with 870 records Found table laobanbufan.fa_kefu_session with 229 records Found table laobanbufan.fa_kefu_toolbar with 8 records Found table laobanbufan.fa_kefu_trajectory with 35 records Found table laobanbufan.fa_kefu_user with 206 records Found table laobanbufan.fa_law_office with 0 records Found table laobanbufan.fa_law_office_case with 0 records Found table laobanbufan.fa_lawyer with 9 records Found table laobanbufan.fa_sms with 5 records Found table laobanbufan.fa_test with 0 records Found table laobanbufan.fa_user with 22 records Found table laobanbufan.fa_user_commission with 4 records Found table laobanbufan.fa_user_commission_settle with 0 records Found table laobanbufan.fa_user_commission_settle_batch with 0 records Found table laobanbufan.fa_user_group with 3 records Found table laobanbufan.fa_user_money_log with 0 records Found table laobanbufan.fa_user_rule with 12 records Found table laobanbufan.fa_user_score_log with 2 records Found table laobanbufan.fa_user_token with 375 records Found table laobanbufan.fa_version with 0 records Found table laobanbufan.fa_vip with 6 records Found table laobanbufan.fa_vip_order with 343 records Found table laobanbufan.fa_vip_record with 340 records Found table laobanbufan.fa_weixin_cache with 2 records Found table laobanbufan.fa_weixin_config with 15 records Found table laobanbufan.fa_weixin_news with 0 records Found table laobanbufan.fa_weixin_reply with 2 records Found table laobanbufan.fa_weixin_routinetemplate with 0 records Found table laobanbufan.fa_weixin_template with 0 records Found table laobanbufan.fa_weixin_user with 22 records Found table legal-advice.WARNING with 1 records
Severity: high
Fingerprint: cf350410ecceb5fd4cc9b2dc82f9f87986cdf9592c67f642a867bc59a6623f53
Databases: 85, row count: 6349, size: 4.1 MB Found table legal-advice.fa_admin with 4 records Found table legal-advice.fa_admin_log with 475 records Found table legal-advice.fa_adszone_ads with 4 records Found table legal-advice.fa_adszone_zone with 2 records Found table legal-advice.fa_area with 0 records Found table legal-advice.fa_article with 10 records Found table legal-advice.fa_article_category with 1 records Found table legal-advice.fa_article_content with 0 records Found table legal-advice.fa_attachment with 97 records Found table legal-advice.fa_auth_group with 5 records Found table legal-advice.fa_auth_group_access with 4 records Found table legal-advice.fa_auth_rule with 233 records Found table legal-advice.fa_category with 0 records Found table legal-advice.fa_config with 18 records Found table legal-advice.fa_ems with 0 records Found table legal-advice.fa_kefu_blacklist with 1 records Found table legal-advice.fa_kefu_config with 24 records Found table legal-advice.fa_kefu_csr_config with 6 records Found table legal-advice.fa_kefu_fast_reply with 5 records Found table legal-advice.fa_kefu_kbs with 2 records Found table legal-advice.fa_kefu_leave_message with 0 records Found table legal-advice.fa_kefu_reception_log with 85 records Found table legal-advice.fa_kefu_record with 364 records Found table legal-advice.fa_kefu_session with 19 records Found table legal-advice.fa_kefu_toolbar with 8 records Found table legal-advice.fa_kefu_trajectory with 291 records Found table legal-advice.fa_kefu_user with 33 records Found table legal-advice.fa_law_office with 2 records Found table legal-advice.fa_law_office_case with 2 records Found table legal-advice.fa_lawyer with 2 records Found table legal-advice.fa_sms with 3 records Found table legal-advice.fa_test with 0 records Found table legal-advice.fa_user with 7 records Found table legal-advice.fa_user_group with 3 records Found table legal-advice.fa_user_money_log with 0 records Found table legal-advice.fa_user_rule with 12 records Found table legal-advice.fa_user_score_log with 6 records Found table legal-advice.fa_user_token with 814 records Found table legal-advice.fa_version with 0 records Found table legal-advice.fa_vip with 1 records Found table legal-advice.fa_vip_order with 186 records Found table legal-advice.fa_vip_record with 2 records Found table legal-advice.fa_weixin_cache with 0 records Found table legal-advice.fa_weixin_config with 15 records Found table legal-advice.fa_weixin_news with 0 records Found table legal-advice.fa_weixin_reply with 2 records Found table legal-advice.fa_weixin_routinetemplate with 0 records Found table legal-advice.fa_weixin_template with 0 records Found table legal-advice.fa_weixin_user with 7 records Found table mysql.columns_priv with 0 records Found table mysql.db with 4 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 50 records Found table mysql.help_keyword with 821 records Found table mysql.help_relation with 1916 records Found table mysql.help_topic with 387 records Found table mysql.iiczaj with 0 records Found table mysql.innodb_index_stats with 288 records Found table mysql.innodb_table_stats with 56 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 48 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.qmduxh32 with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 9 records Found table pet-fodder-shop.fa_article with 0 records Found table pet-fodder-shop.fa_article_category with 0 records Found table pet-fodder-shop.fa_article_content with 0 records
Severity: high
Fingerprint: cf350410ecceb5fd8292e4e8e2522a00e776cb1907f19ceb5fef864e729219ed
Databases: 85, row count: 6106, size: 3.9 MB Found table legal-advice.fa_admin with 5 records Found table legal-advice.fa_admin_log with 478 records Found table legal-advice.fa_adszone_ads with 1 records Found table legal-advice.fa_adszone_zone with 2 records Found table legal-advice.fa_area with 0 records Found table legal-advice.fa_article with 9 records Found table legal-advice.fa_article_category with 1 records Found table legal-advice.fa_article_content with 0 records Found table legal-advice.fa_attachment with 29 records Found table legal-advice.fa_auth_group with 5 records Found table legal-advice.fa_auth_group_access with 4 records Found table legal-advice.fa_auth_rule with 233 records Found table legal-advice.fa_category with 0 records Found table legal-advice.fa_config with 17 records Found table legal-advice.fa_ems with 0 records Found table legal-advice.fa_kefu_blacklist with 1 records Found table legal-advice.fa_kefu_config with 24 records Found table legal-advice.fa_kefu_csr_config with 6 records Found table legal-advice.fa_kefu_fast_reply with 5 records Found table legal-advice.fa_kefu_kbs with 2 records Found table legal-advice.fa_kefu_leave_message with 0 records Found table legal-advice.fa_kefu_reception_log with 85 records Found table legal-advice.fa_kefu_record with 278 records Found table legal-advice.fa_kefu_session with 19 records Found table legal-advice.fa_kefu_toolbar with 8 records Found table legal-advice.fa_kefu_trajectory with 40 records Found table legal-advice.fa_kefu_user with 33 records Found table legal-advice.fa_law_office with 0 records Found table legal-advice.fa_law_office_case with 1 records Found table legal-advice.fa_lawyer with 2 records Found table legal-advice.fa_sms with 0 records Found table legal-advice.fa_test with 0 records Found table legal-advice.fa_user with 11 records Found table legal-advice.fa_user_group with 0 records Found table legal-advice.fa_user_money_log with 0 records Found table legal-advice.fa_user_rule with 12 records Found table legal-advice.fa_user_score_log with 0 records Found table legal-advice.fa_user_token with 853 records Found table legal-advice.fa_version with 0 records Found table legal-advice.fa_vip with 0 records Found table legal-advice.fa_vip_order with 37 records Found table legal-advice.fa_vip_record with 35 records Found table legal-advice.fa_weixin_cache with 0 records Found table legal-advice.fa_weixin_config with 15 records Found table legal-advice.fa_weixin_news with 0 records Found table legal-advice.fa_weixin_reply with 2 records Found table legal-advice.fa_weixin_routinetemplate with 0 records Found table legal-advice.fa_weixin_template with 0 records Found table legal-advice.fa_weixin_user with 9 records Found table mysql.columns_priv with 0 records Found table mysql.db with 4 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 50 records Found table mysql.help_keyword with 970 records Found table mysql.help_relation with 1501 records Found table mysql.help_topic with 931 records Found table mysql.iiczaj with 0 records Found table mysql.innodb_index_stats with 273 records Found table mysql.innodb_table_stats with 43 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 48 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.qmduxh32 with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 9 records Found table pet-fodder-shop.fa_article with 0 records Found table pet-fodder-shop.fa_article_category with 0 records Found table pet-fodder-shop.fa_article_content with 0 records
Severity: high
Fingerprint: cf350410ecceb5fdf1f543b6e1f1090a401e60b3409a32cdc52aa7e854a13bfa
Databases: 85, row count: 6117, size: 3.9 MB Found table legal-advice.fa_admin with 5 records Found table legal-advice.fa_admin_log with 481 records Found table legal-advice.fa_adszone_ads with 1 records Found table legal-advice.fa_adszone_zone with 2 records Found table legal-advice.fa_area with 0 records Found table legal-advice.fa_article with 9 records Found table legal-advice.fa_article_category with 1 records Found table legal-advice.fa_article_content with 0 records Found table legal-advice.fa_attachment with 29 records Found table legal-advice.fa_auth_group with 5 records Found table legal-advice.fa_auth_group_access with 4 records Found table legal-advice.fa_auth_rule with 233 records Found table legal-advice.fa_category with 0 records Found table legal-advice.fa_config with 17 records Found table legal-advice.fa_ems with 0 records Found table legal-advice.fa_kefu_blacklist with 1 records Found table legal-advice.fa_kefu_config with 24 records Found table legal-advice.fa_kefu_csr_config with 6 records Found table legal-advice.fa_kefu_fast_reply with 5 records Found table legal-advice.fa_kefu_kbs with 2 records Found table legal-advice.fa_kefu_leave_message with 0 records Found table legal-advice.fa_kefu_reception_log with 85 records Found table legal-advice.fa_kefu_record with 278 records Found table legal-advice.fa_kefu_session with 19 records Found table legal-advice.fa_kefu_toolbar with 8 records Found table legal-advice.fa_kefu_trajectory with 51 records Found table legal-advice.fa_kefu_user with 33 records Found table legal-advice.fa_law_office with 0 records Found table legal-advice.fa_law_office_case with 0 records Found table legal-advice.fa_lawyer with 2 records Found table legal-advice.fa_sms with 0 records Found table legal-advice.fa_test with 0 records Found table legal-advice.fa_user with 10 records Found table legal-advice.fa_user_group with 0 records Found table legal-advice.fa_user_money_log with 0 records Found table legal-advice.fa_user_rule with 12 records Found table legal-advice.fa_user_score_log with 0 records Found table legal-advice.fa_user_token with 853 records Found table legal-advice.fa_version with 0 records Found table legal-advice.fa_vip with 0 records Found table legal-advice.fa_vip_order with 37 records Found table legal-advice.fa_vip_record with 35 records Found table legal-advice.fa_weixin_cache with 0 records Found table legal-advice.fa_weixin_config with 15 records Found table legal-advice.fa_weixin_news with 0 records Found table legal-advice.fa_weixin_reply with 2 records Found table legal-advice.fa_weixin_routinetemplate with 0 records Found table legal-advice.fa_weixin_template with 0 records Found table legal-advice.fa_weixin_user with 8 records Found table mysql.columns_priv with 0 records Found table mysql.db with 4 records Found table mysql.engine_cost with 2 records Found table mysql.event with 0 records Found table mysql.func with 0 records Found table mysql.general_log with 2 records Found table mysql.gtid_executed with 0 records Found table mysql.help_category with 50 records Found table mysql.help_keyword with 970 records Found table mysql.help_relation with 1501 records Found table mysql.help_topic with 931 records Found table mysql.iiczaj with 0 records Found table mysql.innodb_index_stats with 273 records Found table mysql.innodb_table_stats with 43 records Found table mysql.ndb_binlog_index with 0 records Found table mysql.plugin with 0 records Found table mysql.proc with 48 records Found table mysql.procs_priv with 0 records Found table mysql.proxies_priv with 1 records Found table mysql.qmduxh32 with 0 records Found table mysql.server_cost with 6 records Found table mysql.servers with 0 records Found table mysql.slave_master_info with 0 records Found table mysql.slave_relay_log_info with 0 records Found table mysql.slave_worker_info with 0 records Found table mysql.slow_log with 2 records Found table mysql.tables_priv with 2 records Found table mysql.time_zone with 0 records Found table mysql.time_zone_leap_second with 0 records Found table mysql.time_zone_name with 0 records Found table mysql.time_zone_transition with 0 records Found table mysql.time_zone_transition_type with 0 records Found table mysql.user with 9 records Found table pet-fodder-shop.fa_article with 0 records Found table pet-fodder-shop.fa_article_category with 0 records Found table pet-fodder-shop.fa_article_content with 0 records
.DS_Store” is an abbreviation for “Desktop Services Store”. These files are created automatically by Apples “Finder” software (which is part of their OS).
They store information about the files within a folder, including display options of folders, such as icon positions and view settings.
It may happen that .DS_Store files inadvertently leak filenames such as database backups or private administration panels.
Severity: low
Fingerprint: 5f32cf5d6962f09c0215adfc0215adfc0363d38cc483a842642fe843529ec0e4
Found 4 files trough .DS_Store spidering: /assets /kefu_start_for_win /template /uploads