MiniServ 2.010
tcp/10000
nginx 1.22.1
tcp/443 tcp/80
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e074b4540ed4b4540ed4b4540ed4b4540ed4b4540ed
Symfony profiler enabled: https://rubi.h2994186.stratoserver.net/_profiler/empty/search/results
The application has Symfony profiling enabled.
It enables an attacker to access the following sensitive content :
Fingerprint: 407cf4363b0e62fafca67e075e91a1115e91a1115e91a1115e91a1115e91a111
Symfony profiler enabled: https://85.214.90.223/_profiler/empty/search/results
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-18 17:16
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Tue, 18 Jun 2024 17:16:13 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 645909 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/645909 X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-17 22:16
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Mon, 17 Jun 2024 22:16:48 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: c108a9 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/c108a9 X-Robots-Tag: noindex
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-16 20:15
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Sun, 16 Jun 2024 20:15:37 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: cbee6a X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/cbee6a X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-15 23:33
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Sat, 15 Jun 2024 23:33:16 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 7a8ced X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/7a8ced X-Robots-Tag: noindex
Open service 85.214.90.223:22
2024-06-15 19:34
Open service 85.214.90.223:443
2024-06-15 17:16
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Sat, 15 Jun 2024 17:16:39 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: b3c35a X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/b3c35a X-Robots-Tag: noindex
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-15 16:23
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Sat, 15 Jun 2024 16:23:25 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 2317de X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/2317de X-Robots-Tag: noindex
Open service 85.214.90.223:80 · rubi.h2994186.stratoserver.net
2024-06-15 16:23
HTTP/1.1 301 Moved Permanently Server: nginx/1.22.1 Date: Sat, 15 Jun 2024 16:23:21 GMT Content-Type: text/html Content-Length: 169 Connection: close Location: https://rubi.h2994186.stratoserver.net/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.22.1</center> </body> </html>
Open service 85.214.90.223:80
2024-06-14 11:40
HTTP/1.1 301 Moved Permanently Server: nginx/1.22.1 Date: Fri, 14 Jun 2024 11:40:38 GMT Content-Type: text/html Content-Length: 169 Connection: close Location: https://rubi.h2994186.stratoserver.net/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.22.1</center> </body> </html>
Open service 85.214.90.223:10000
2024-06-14 09:43
HTTP/1.0 200 Document follows Date: Fri, 14 Jun 2024 09:43:06 GMT Server: MiniServ/2.010 Connection: close Auth-type: auth-required=1 Set-Cookie: redirect=1; path=/; secure; httpOnly Set-Cookie: testing=1; path=/; secure; httpOnly X-Frame-Options: SAMEORIGIN Content-Security-Policy: script-src 'self' 'unsafe-inline' 'unsafe-eval'; frame-src 'self'; child-src 'self' X-Content-Type-Options: nosniff X-no-links: 1 Content-type: text/html; Charset=UTF-8 Page title: Login to Webmin <!DOCTYPE HTML> <html data-bgs="gainsboro" class="session_login"> <head> <meta name="color-scheme" content="only light"> <noscript> <style> html[data-bgs="gainsboro"] { background-color: #d6d6d6; } html[data-bgs="nightRider"] { background-color: #1a1c20; } html[data-bgs="nightRider"] div[data-noscript] { color: #979ba080; } html[data-slider-fixed='1'] { margin-right: 0 !important; } body > div[data-noscript] ~ * { display: none !important; } div[data-noscript] { visibility: hidden; animation: 2s noscript-fadein; animation-delay: 1s; text-align: center; animation-fill-mode: forwards; } @keyframes noscript-fadein { 0% { opacity: 0; } 100% { visibility: visible; opacity: 1; } } </style> <div data-noscript> <div class="fa fa-3x fa-exclamation-triangle margined-top-20 text-danger"></div> <h2>JavaScript is disabled</h2> <p>Please enable javascript and refresh the page</p> </div> </noscript> <meta charset="utf-8"> <link data-link-ref rel="apple-touch-icon" sizes="180x180" href="/images/favicons/webmin/apple-touch-icon.png"> <link data-link-ref rel="icon" type="image/png" sizes="32x32" href="/images/favicons/webmin/favicon-32x32.png"> <link data-link-ref rel="icon" type="image/png" sizes="192x192" href="/images/favicons/webmin/android-chrome-192x192.png"> <link data-link-ref rel="icon" type="image/png" sizes="16x16" href="/images/favicons/webmin/favicon-16x16.png"> <link data-link-ref rel="mask-icon" href="/images/favicons/webmin/safari-pinned-tab.svg" color="#004caa"> <meta data-link-ref name="msapplication-TileImage" content="/images/favicons/webmin/mstile-150x150.png"> <meta name="msapplication-TileColor" content="#004caa"> <meta name="theme-color" content="#004caa"> <title>Login to Webmin</title> <meta name="viewport" content="width=device-width, initial-scale=1.0"> <link href="/unauthenticated/css/bundle.min.css?2010001019999999999" rel="stylesheet"> <script>document.addEventListener("DOMContentLoaded", function(event) {var a=document.querySelectorAll('input[type="password"]');i=0; for(length=a.length;i<length;i++){var b=document.createElement("span"),d=30<a[i].offsetHeight?1:0;b.classList.add("input_warning_caps");b.setAttribute("title","Caps Lock");d&&b.classList.add("large");a[i].classList.add("use_input_warning_caps");a[i].parentNode.insertBefore(b,a[i].nextSibling);a[i].addEventListener("blur",function(){this.nextSibling.classList.remove("visible")});a[i].addEventListener("keydown",function(c){"function"===typeof c.getModifierState&&((state=20===c.keyCode?!c.getModifierState("CapsLock"): c.getModifierState("CapsLock"))?this.nextSibling.classList.add("visible"):this.nextSibling.classList.remove("visible"))})};});function spinner() {var x = document.querySelector('button i.fa-sign-in:not(.invisible)') || document.querySelector('button i.fa-qrcode:not(.invisible)'),s = '<span class="cspinner_container"><span class="cspinner"><span class="cspinner-icon white small"></span></span></span>';if(x){x.classList.add("invisible"); x.insertAdjacentHTML('afterend', s);x.parentNode.classList.add("disabled");x.parentNode.disabled=true}}setTimeout(function(){if(navigator&&navigator.oscpu){var t=navigator.oscpu,i=document.querySelector("html"),e="data-platform";t.indexOf("Linux")>-1?i.setAttribute(e,"linux"):t.indexOf("Windows")>-1&&i.setAttribute(e,"windows")}});</script> <link href="/unauthenticated/css/fonts-roboto.min.css?2010001019999999999" rel="stylesheet"> </head> <body class="session_login" > <div class="container session_login" data-dcontainer="1"> <form class="form-signin session_login clearfix" action="/session_login.cgi" method="post" role="form" onsubmit="spinner()"> <i class="wbm-webmin"></i><h2 class="form-signin-heading"><span> Webmin</span></h2> <p class="form-signin-paragraph">You must enter a username and password to login to the server on<strong> 85.214.90.223</strong></p> <div class="input-group form-group"> <input type="text" name="user" class="form-control session_login" placeholder="Username" autocapitalize="none" autocomplete="username" autocorrect="off" autofocus=" autofocus"> <span class="input-gro
Open service 85.214.90.223:22
2024-06-13 11:09
Open service 85.214.90.223:80
2024-06-12 20:30
HTTP/1.1 301 Moved Permanently Server: nginx/1.22.1 Date: Wed, 12 Jun 2024 20:30:16 GMT Content-Type: text/html Content-Length: 169 Connection: close Location: https://rubi.h2994186.stratoserver.net/ Page title: 301 Moved Permanently <html> <head><title>301 Moved Permanently</title></head> <body> <center><h1>301 Moved Permanently</h1></center> <hr><center>nginx/1.22.1</center> </body> </html>
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-12 14:44
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Wed, 12 Jun 2024 14:44:28 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 6c3ac7 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/6c3ac7 X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-11 21:38
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Tue, 11 Jun 2024 21:38:30 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 54e3a6 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/54e3a6 X-Robots-Tag: noindex
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-10 07:13
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Mon, 10 Jun 2024 07:14:02 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: eed831 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/eed831 X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-09 21:46
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Sun, 09 Jun 2024 21:46:15 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: f19c4f X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/f19c4f X-Robots-Tag: noindex
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-08 05:15
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Sat, 08 Jun 2024 05:15:51 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: f94970 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/f94970 X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-07 22:05
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Fri, 07 Jun 2024 22:05:21 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 167542 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/167542 X-Robots-Tag: noindex
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-06 01:04
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Thu, 06 Jun 2024 01:04:24 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: e85fe1 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/e85fe1 X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-05 20:17
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Wed, 05 Jun 2024 20:17:26 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 0f12b4 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/0f12b4 X-Robots-Tag: noindex
Open service 85.214.90.223:443 · rubi.h2994186.stratoserver.net
2024-06-03 23:44
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Mon, 03 Jun 2024 23:44:11 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: 0e4370 X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://rubi.h2994186.stratoserver.net/_profiler/0e4370 X-Robots-Tag: noindex
Open service 85.214.90.223:443
2024-06-03 21:27
HTTP/1.1 200 OK Server: nginx/1.22.1 Content-Type: text/html; charset=UTF-8 Transfer-Encoding: chunked Connection: close X-Powered-By: PHP/8.1.13 Cache-Control: private, must-revalidate Date: Mon, 03 Jun 2024 21:27:15 GMT X-Powered-By: pimcore Content-Language: en Pragma: no-cache Expires: Tue, 01 Jan 1980 00:00:00 GMT X-Debug-Token: ca011d X-Pimcore-Output-Cache-Disable-Reason: Debug flag DISABLE_FULL_PAGE_CACHE is enabled X-Debug-Token-Link: https://85.214.90.223/_profiler/ca011d X-Robots-Tag: noindex
Open service 85.214.90.223:22
2024-06-02 19:12