URL: https://ptk-krgmsanynsatas.buzz/
Submission: On May 16 via api from TR — Scanned from NL

Summary

This website contacted 4 IPs in 3 countries across 3 domains to perform 30 HTTP transactions. The main IP is 188.114.96.3, located in Amsterdam, Netherlands and belongs to CLOUDFLARENET, US. The main domain is ptk-krgmsanynsatas.buzz.
TLS certificate: Issued by GTS CA 1P5 on May 11th 2024. Valid for: 3 months.
This is the only time ptk-krgmsanynsatas.buzz was scanned on urlscan.io!

urlscan.io Verdict: No classification

Domain & IP information

IP Address AS Autonomous System
22 188.114.96.3 13335 (CLOUDFLAR...)
2 2a04:4e42::649 54113 (FASTLY)
6 2a00:1450:400... 15169 (GOOGLE)
30 4
Apex Domain
Subdomains
Transfer
22 ptk-krgmsanynsatas.buzz
ptk-krgmsanynsatas.buzz
638 KB
6 gstatic.com
fonts.gstatic.com
40 KB
2 jquery.com
code.jquery.com — Cisco Umbrella Rank: 776
60 KB
30 3
Domain Requested by
22 ptk-krgmsanynsatas.buzz ptk-krgmsanynsatas.buzz
code.jquery.com
6 fonts.gstatic.com ptk-krgmsanynsatas.buzz
2 code.jquery.com ptk-krgmsanynsatas.buzz
30 3

This site contains no links.

Subject Issuer Validity Valid
ptk-krgmsanynsatas.buzz
GTS CA 1P5
2024-05-11 -
2024-08-09
3 months crt.sh
*.jquery.com
Sectigo RSA Domain Validation Secure Server CA
2023-07-11 -
2024-07-14
a year crt.sh
*.gstatic.com
WR2
2024-05-06 -
2024-07-29
3 months crt.sh

This page contains 2 frames:

Primary Page: https://ptk-krgmsanynsatas.buzz/
Frame ID: 13B85920118DB08758C7CF85344B17EA
Requests: 4 HTTP requests in this frame

Frame: https://ptk-krgmsanynsatas.buzz/p/aras/
Frame ID: 98B2CED3B3287F71E80F1A153700EBC1
Requests: 27 HTTP requests in this frame

Screenshot


Detected technologies

Overall confidence: 100%
Detected patterns
  • jquery[.-]([\d.]*\d)[^/]*\.js
  • /([\d.]+)/jquery(?:\.min)?\.js
  • jquery.*\.js(?:\?ver(?:sion)?=([\d.]+))?

Page Statistics

30
Requests

100 %
HTTPS

67 %
IPv6

3
Domains

3
Subdomains

4
IPs

3
Countries

739 kB
Transfer

1801 kB
Size

1
Cookies

Redirected requests

There were HTTP redirect chains for the following requests:

30 HTTP transactions

Resource
Path
Size
x-fer
Type
MIME-Type
Primary Request /
ptk-krgmsanynsatas.buzz/
1 KB
1 KB
Document
General
Full URL
https://ptk-krgmsanynsatas.buzz/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PHP/8.2.19 PleskLin
Resource Hash
d647f3f26ed95422bd39ea6504b31fc8158c2609898dc3e0e5905d9126032352

Request headers

Accept-Language
nl-NL,nl;q=0.9;q=0.9
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
sec-ch-ua-mobile
?0
sec-ch-ua-platform
"Win32"

Response headers

alt-svc
h3=":443"; ma=86400
cache-control
no-store, no-cache, must-revalidate
cf-cache-status
DYNAMIC
cf-ray
8849b3854d4d6610-AMS
content-encoding
br
content-type
text/html; charset=UTF-8
date
Thu, 16 May 2024 07:37:13 GMT
expires
Thu, 19 Nov 1981 08:52:00 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
pragma
no-cache
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=HXk4THKqUjVqXTcLQltyXBnBb3zjPwL417UHAVMYWmT5T%2Bfvv4Lcorrl8HYhROeivLd05Mp8JgkOgjLoX1w4UkjQW%2BqzhD7otdCgmSVjADCFxOM21%2BYVr9hR%2BcXJ337CeQkRuD%2B90Dqzzw%3D%3D"}],"group":"cf-nel","max_age":604800}
server
cloudflare
vary
Accept-Encoding
x-powered-by
PHP/8.2.19 PleskLin
jquery-3.6.2.min.js
code.jquery.com/
88 KB
31 KB
Script
General
Full URL
https://code.jquery.com/jquery-3.6.2.min.js
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a04:4e42::649 , United States, ASN54113 (FASTLY, US),
Reverse DNS
Software
nginx /
Resource Hash
da4ad864a87ffcf71c851b5df87f95cb242867f7b711cae4c6133cc9cc0048f0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:13 GMT
content-encoding
gzip
via
1.1 varnish, 1.1 varnish
age
7174258
x-cache
HIT, HIT
content-length
31043
x-served-by
cache-lga21931-LGA, cache-mad22036-MAD
last-modified
Fri, 18 Oct 1991 12:00:00 GMT
server
nginx
x-timer
S1715845034.985626,VS0,VE0
etag
W/"28feccc0-15f56"
vary
Accept-Encoding
content-type
application/javascript; charset=utf-8
access-control-allow-origin
*
cache-control
public, max-age=31536000, stale-while-revalidate=604800
accept-ranges
bytes
x-cache-hits
613, 1574
/
ptk-krgmsanynsatas.buzz/p/aras/ Frame 98B2
997 KB
573 KB
Document
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PHP/8.2.19 PleskLin
Resource Hash
ceee4df7fad880d624bf91e212f6de44a4666622e06226236f1e46ae77ee5c4d

Request headers

Accept-Language
nl-NL,nl;q=0.9;q=0.9
Referer
https://ptk-krgmsanynsatas.buzz/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
sec-ch-ua-mobile
?0
sec-ch-ua-platform
"Win32"

Response headers

alt-svc
h3=":443"; ma=86400
cache-control
no-store, no-cache, must-revalidate
cf-cache-status
DYNAMIC
cf-ray
8849b386ce746610-AMS
content-encoding
br
content-type
text/html; charset=UTF-8
date
Thu, 16 May 2024 07:37:14 GMT
expires
Thu, 19 Nov 1981 08:52:00 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
pragma
no-cache
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=2H2bHy5DtHfgA5NKFx1%2F4RKL9c0yn3uwBTNb1mska7HqH5L%2BoJwOA4U%2B%2B1P9l4ASZ85KOaN8Gx1V6dzHF6SiavT0Pyjwsc74PU6IxX0vY21drgRswyUgra01lwgI4%2FL8U4rwqQxRylxgrw%3D%3D"}],"group":"cf-nel","max_age":604800}
server
cloudflare
vary
Accept-Encoding
x-powered-by
PHP/8.2.19 PleskLin
jquery.min.js
ptk-krgmsanynsatas.buzz/cdnjs.cloudflare.com/ajax/libs/jquery/3.6.3/ Frame 98B2
0
0
Script
General
Full URL
https://ptk-krgmsanynsatas.buzz/cdnjs.cloudflare.com/ajax/libs/jquery/3.6.3/jquery.min.js
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=MAE%2B06X3cm%2F3%2FgjTG5%2BF1KBhILrU6TFyKTeHBucYScIzGKPv170oWvDBMVkqwYdZXxSfe%2BS91whRIP2sQHNSEXpJfAcnWSAjQzlPOFFPznn9mg6T41mExtdPnraxV3%2FAnvCZkHrAfsIOrw%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b3876f2f6610-AMS
alt-svc
h3=":443"; ma=86400
jquery-3.7.1.min.js
code.jquery.com/ Frame 98B2
85 KB
30 KB
Script
General
Full URL
https://code.jquery.com/jquery-3.7.1.min.js
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a04:4e42::649 , United States, ASN54113 (FASTLY, US),
Reverse DNS
Software
nginx /
Resource Hash
fc9a93dd241f6b045cbff0481cf4e1901becd0e12fb45166a8f17f95823f0b1a

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
gzip
via
1.1 varnish, 1.1 varnish
age
1702830
x-cache
HIT, HIT
content-length
30336
x-served-by
cache-lga21978-LGA, cache-mad22036-MAD
last-modified
Fri, 18 Oct 1991 12:00:00 GMT
server
nginx
x-timer
S1715845034.161474,VS0,VE0
etag
W/"28feccc0-155ed"
vary
Accept-Encoding
content-type
application/javascript; charset=utf-8
access-control-allow-origin
*
cache-control
public, max-age=31536000, stale-while-revalidate=604800
accept-ranges
bytes
x-cache-hits
3, 11539
styles.1a7b9105305b9ca0.css
ptk-krgmsanynsatas.buzz/p/aras/assets/css/ Frame 98B2
147 KB
23 KB
Stylesheet
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/css/styles.1a7b9105305b9ca0.css
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
1a69b88b3f2fe0405ea88f53e7065c8c5225eda0e6f353d6e54a9c1b5668b7f4

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 12 May 2024 01:29:52 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"66401b90-24a83"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=0%2F07jkaTtp8QG9sC3oZh5%2BgWD4h5g7IjViG2uXF85S1iQom0skzoUjTGFzMHDPWecWyIo9FuZlj0Iie0f64CNMcjgVEt8nbzO6XMZS5WzGAVIVws7E1i%2FQlNHjc9YjXlk1pN%2F8giRFyMQA%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/css
cache-control
max-age=14400
cf-ray
8849b3876f346610-AMS
alt-svc
h3=":443"; ma=86400
aras-logo.svg
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
41 KB
8 KB
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/aras-logo.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
199528d00d5d473f98e70de831c19848220152b27dbf6db12e02b170464d4f68

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 12 May 2024 00:08:16 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"66400870-a4d1"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=fZed18N161Vu2%2BnrTzbk0gBpahytayvYYtrkFpHxCeqrBRSd0LsUd7aGMUbMTEX%2FOyx9RWZ%2Bn6CnB7iB1V5s57Y73zkz2VUXJFrkVbVH0Ym%2BKH9y%2FYq86nUyLVftuJxG3IZJYFC%2BnTv5JQ%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/svg+xml
cache-control
max-age=14400
cf-ray
8849b387cf926610-AMS
alt-svc
h3=":443"; ma=86400
form-map-icon.svg
ptk-krgmsanynsatas.buzz/p/aras/arasco/ Frame 98B2
808 B
808 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/arasco/form-map-icon.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=PiVjCIA0PNb7lsypf7ebm1KJLeYxVnmuLhfipAB6Yz2%2BNv%2B1cTZwkQC15B3ALX42zZQcvFzjmfHPmOLfXs3Wz6IDesxBLS8n99vaGNUJWwm1cavC2LgpL7z0DHsizCNQlsGrkHiV90f9QQ%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b387efa06610-AMS
alt-svc
h3=":443"; ma=86400
form-help-icon.svg
ptk-krgmsanynsatas.buzz/p/aras/arasco/ Frame 98B2
808 B
808 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/arasco/form-help-icon.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=SbUidPtU2OWCqt8BFnCVFBi1pjyaOM%2FF1r5r6qCRBzeVP7g7QkHIVM1zaGmsp%2BzCILouOz3UCAb0N6%2Fv0vvZc558Kvm3wV9Jnam8xmmqH8Ajjfhk5%2BFXMSEqurGGvSB9j4rCmjX0%2BETsxw%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b387efa26610-AMS
alt-svc
h3=":443"; ma=86400
list-icon.svg
ptk-krgmsanynsatas.buzz/p/aras/arasco/ Frame 98B2
808 B
808 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/arasco/list-icon.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=HxHvpg%2FG5nJlk5MpcoOZHa%2FzVk0uw0C%2FzET9WPb6J%2BrgmH4p9kjaQhpEBH1YJWskaqEIlgs4phDgXYrzA70QwsgP9wPNj19F5eur7xzYKoMSXBSuKi17De6udJ0vjUBFONvhbID%2FiV2U1A%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b387efa36610-AMS
alt-svc
h3=":443"; ma=86400
menu-lang.svg
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
1 KB
865 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/menu-lang.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
5f640902021c76a544961d401ae12e11617230b50aae6a0ca7f2fc91dd1fbd7d

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 12 May 2024 00:09:06 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"664008a2-418"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=GZiW6isSG%2BN8HtWurzggS2jBkv4mctask6V8FoIs2mT2VaMBxoOdHYhq1iWFZWOSZnn%2FhnG5uJCBOsXCofFCm%2Fv1YW%2FHlleKchWgZoMkge8Uv0f%2BbCmiAuMMx%2FwHtXw46MA5aSabU0eTIQ%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/svg+xml
cache-control
max-age=14400
cf-ray
8849b387efa46610-AMS
alt-svc
h3=":443"; ma=86400
menu-search.svg
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
419 B
741 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/menu-search.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
adc2ced09b773785c30a344ef321eb13f63dc5bde15cf59d16e304e42018f063

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
age
5803
x-powered-by
PleskLin
alt-svc
h3=":443"; ma=86400
last-modified
Sun, 12 May 2024 00:09:36 GMT
x-accel-version
0.01
server
cloudflare
etag
W/"1a3-618369583b000"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=j9rpgWxQ7zZuibu7Yfxrdpz7HtnxgojZciBCvMUH8iUqumzh9RdZrv5OhtNwqhktqNmNTdQg35e1oB0I%2F4yGQ1oYrajghJGrUZc0oCD5FaB8vyrVB1PWTD7tYQJ7T57SkQxU549I20pq6w%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/svg+xml
cache-control
max-age=14400
cf-ray
8849b387efa66610-AMS
menu-search.svg
ptk-krgmsanynsatas.buzz/p/aras/arasco/ Frame 98B2
808 B
808 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/arasco/menu-search.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=p%2Bl24q%2FtOqqmMJuW4D%2B0St6qgzgKD3rYXJZucM75DQg09YTufAjcJOqCNixLqG6hK5E%2B2BqXCDzi2XK2Gv6sv2lsbzDklXjMjSA7fQyMWjRsOM7CsEbp872TLusUVgqR920tQcZ7DfguZg%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b387efa76610-AMS
alt-svc
h3=":443"; ma=86400
menu-close.svg
ptk-krgmsanynsatas.buzz/p/aras/arasco/ Frame 98B2
808 B
808 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/arasco/menu-close.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=IxEvc4skm4ZtjCd%2FxHkeq0IZsWBFh0gkMow0L8YUSAHQ9TCrULeUr8g31WC0a56glQO42jYhrcJ%2FOjmDk9WK2JvxS24Ga%2Ffqejlh%2B2y%2Br%2BtX9jTQs3Nqh31EZldwM6y%2FBNXmNU7XlEV69w%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b387efa96610-AMS
alt-svc
h3=":443"; ma=86400
form-map-icon.svg
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
1 KB
965 B
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/form-map-icon.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
6e9e00a3ed8f23de9aea5b25a1f0cd130fa7aad87b1a9e7d4615f04647f288aa

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 12 May 2024 00:07:46 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"66400852-438"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=ZusCuHI2A3ZVrXXjVmkvsPQ%2B2JOWvx6YwpP7vO%2BXCVhFJeVPncb8ArbVeW7XHfHRZv3yfZAJS1%2BSB50ZCR9FREXMA8JrnskCBnwYteqIllInKBeCpvcpwlR2O73wL3b0QkldHIOiYW46NQ%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/svg+xml
cache-control
max-age=14400
cf-ray
8849b3882ff16610-AMS
alt-svc
h3=":443"; ma=86400
form-help-icon.svg
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
2 KB
1 KB
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/form-help-icon.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
52cf3717a9c24daa478c605e01d0b06712b9c97d85033e5c9421da5d45f69680

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 12 May 2024 00:10:16 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"664008e8-69b"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=%2Bp6LptYvjYycPPg3APhpNuFh1UJAAJChaR9NkHrRDLPdGj2j%2B8jDifl7tN6VajGssz9ulwgvGWBMGnCORS%2F66GC3hwspjtt0JjWqFPTrnE6yj2l4Bhw6YWscgoP88Lh1Lj26BEozVT1kiA%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/svg+xml
cache-control
max-age=14400
cf-ray
8849b3882ff56610-AMS
alt-svc
h3=":443"; ma=86400
truncated
/ Frame 98B2
343 KB
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
8f67a5abdab57b2c8035191f9ca51c819e428aac447565532a63bb002ffaaf81

Request headers

Accept-Language
nl-NL,nl;q=0.9;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36

Response headers

Content-Type
image/jpeg
pxiByp8kv8JHgFVrLGT9Z1xlFd2JQEk.woff2
fonts.gstatic.com/s/poppins/v20/ Frame 98B2
8 KB
8 KB
Font
General
Full URL
https://fonts.gstatic.com/s/poppins/v20/pxiByp8kv8JHgFVrLGT9Z1xlFd2JQEk.woff2
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:81d::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
cd36de204aca2d5fa263a731f7c20009b5e3d754ba1f1e03c33e93a48f3e7446
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Tue, 14 May 2024 07:43:14 GMT
x-content-type-options
nosniff
age
172440
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
7748
x-xss-protection
0
last-modified
Wed, 27 Apr 2022 16:10:09 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Wed, 14 May 2025 07:43:14 GMT
pxiEyp8kv8JHgFVrJJfecnFHGPc.woff2
fonts.gstatic.com/s/poppins/v20/ Frame 98B2
8 KB
8 KB
Font
General
Full URL
https://fonts.gstatic.com/s/poppins/v20/pxiEyp8kv8JHgFVrJJfecnFHGPc.woff2
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:81d::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
7d93459d86585bfcdbb7e0376056226adb25821ee54b96236fe2123e9560929f
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Tue, 14 May 2024 14:02:37 GMT
x-content-type-options
nosniff
age
149677
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
7884
x-xss-protection
0
last-modified
Wed, 27 Apr 2022 16:07:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Wed, 14 May 2025 14:02:37 GMT
pxiEyp8kv8JHgFVrJJnecnFHGPezSQ.woff2
fonts.gstatic.com/s/poppins/v20/ Frame 98B2
5 KB
6 KB
Font
General
Full URL
https://fonts.gstatic.com/s/poppins/v20/pxiEyp8kv8JHgFVrJJnecnFHGPezSQ.woff2
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:81d::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
cb8bdeabc838774d9808eb7c4cfcea963b57855e34f84b54797076940c8e5986
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Fri, 10 May 2024 20:09:40 GMT
x-content-type-options
nosniff
age
473254
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
5544
x-xss-protection
0
last-modified
Wed, 27 Apr 2022 16:21:12 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Sat, 10 May 2025 20:09:40 GMT
home-cycles-aras.svg
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
40 KB
13 KB
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/home-cycles-aras.svg
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
3be1261755e4d160c371da43e9dfa54c770eee3d40057ec777e4881723625a1b

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 12 May 2024 00:10:36 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"664008fc-a1a5"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=2iK2qWdR6c0oR8dbhvuXIAr69Rj55rIVg9rHz8dAqLeQDcNAN25HYNBlw2MmlFK2BMN5XINnWpTksFEbTEbx6%2Fc5dDsmcXAilHlwC6Y%2FbfNe7hjedup%2Bf9r%2F0N8varW8GyNGe2qE2WFjxw%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/svg+xml
cache-control
max-age=14400
cf-ray
8849b38858186610-AMS
alt-svc
h3=":443"; ma=86400
cta-aras-adres-image.webp
ptk-krgmsanynsatas.buzz/p/aras/assets/img/ Frame 98B2
8 KB
9 KB
Image
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/img/cta-aras-adres-image.webp
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
68f92b82181f63ccbec69851fef39303947ad625a7b70068daa7ffb1604a9497

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
cf-cache-status
HIT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
age
5803
x-powered-by
PleskLin
alt-svc
h3=":443"; ma=86400
content-length
8438
last-modified
Sun, 12 May 2024 00:13:12 GMT
server
cloudflare
etag
"66400998-20f6"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=fMdpuzp1Amd0GTvdcNSTK3ytu8kOBKeIiCZuBbZFF5EoV2KqpgiwBqCqM3LaOwPfhC%2B6MUlhiNLd0%2FrPe%2BB1IIKHulnT2QjaxgCLiCNkbYSQ6T8qkfULHFIvDAU9Y7NC9yBLP%2F2rFAXuxA%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
image/webp
cache-control
max-age=14400
accept-ranges
bytes
cf-ray
8849b388581a6610-AMS
jquery-3.6.0.min.js
ptk-krgmsanynsatas.buzz/p/aras/assets/js/ Frame 98B2
0
0
Script
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/js/jquery-3.6.0.min.js
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
76
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=U4NTflPt1YDNT94I9TWxhDU2LDm7w1gvcdp1mdLy3QPTf78V9%2BlCx%2BmPxEbJlvtif4sqg4VbuBtyQL4TpNZPJAZDez0kwrHjqD4UIGE6UEF09zIXud8%2BTSmJ3Rg9V7GvMWSJlzuwTiUzmA%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b388581b6610-AMS
alt-svc
h3=":443"; ma=86400
custom.js
ptk-krgmsanynsatas.buzz/p/aras/assets/js/ Frame 98B2
1 KB
1 KB
Script
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/assets/js/custom.js
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PleskLin
Resource Hash
73e5b52f60a794a93d988bf3052f0ee115cc61c3d0f3ea68935fe09a492fb081

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Sun, 08 Jan 2023 15:21:16 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
5803
etag
W/"63badf6c-535"
x-powered-by
PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=dhn8AsA61aX%2BIB2GwI%2B8ozE2px%2B7y8V45TDaBZlVlhh5Fe51WnaSzlIZxTXKlVZMqsSnA2gy1zV7M5rRG%2FQMYY3dld6YDg9lKFsFtqo%2BiG9ODi8hwmn46JQjxeSqXI8FOqB53DqlAHpoag%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/javascript
cache-control
max-age=14400
cf-ray
8849b388581c6610-AMS
alt-svc
h3=":443"; ma=86400
pxiByp8kv8JHgFVrLEj6Z1xlFd2JQEk.woff2
fonts.gstatic.com/s/poppins/v20/ Frame 98B2
8 KB
8 KB
Font
General
Full URL
https://fonts.gstatic.com/s/poppins/v20/pxiByp8kv8JHgFVrLEj6Z1xlFd2JQEk.woff2
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:81d::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f4e80d9dfd374d02989b87a27b5ed4cb78fbb177c27f1478e9a8b0afb7513149
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Wed, 15 May 2024 12:20:47 GMT
x-content-type-options
nosniff
age
69387
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8000
x-xss-protection
0
last-modified
Wed, 27 Apr 2022 16:59:03 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Thu, 15 May 2025 12:20:47 GMT
pxiByp8kv8JHgFVrLGT9Z1JlFd2JQEl8qw.woff2
fonts.gstatic.com/s/poppins/v20/ Frame 98B2
5 KB
5 KB
Font
General
Full URL
https://fonts.gstatic.com/s/poppins/v20/pxiByp8kv8JHgFVrLGT9Z1JlFd2JQEl8qw.woff2
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:81d::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
5f9d6298f5edc6d2b57a6f3a30f87f1c93c84b7aad7c5e9bf9d3a2c9384403fa
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Tue, 14 May 2024 08:10:27 GMT
x-content-type-options
nosniff
age
170807
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
5452
x-xss-protection
0
last-modified
Wed, 27 Apr 2022 16:15:19 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Wed, 14 May 2025 08:10:27 GMT
pxiByp8kv8JHgFVrLEj6Z1JlFd2JQEl8qw.woff2
fonts.gstatic.com/s/poppins/v20/ Frame 98B2
5 KB
6 KB
Font
General
Full URL
https://fonts.gstatic.com/s/poppins/v20/pxiByp8kv8JHgFVrLEj6Z1JlFd2JQEl8qw.woff2
Requested by
Host: ptk-krgmsanynsatas.buzz
URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:81d::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
9c15f7b06458075c69b40e79f03e62d43017ecf4c618487add407ee47e438684
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Origin
https://ptk-krgmsanynsatas.buzz
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Sat, 11 May 2024 05:59:21 GMT
x-content-type-options
nosniff
age
437873
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
5512
x-xss-protection
0
last-modified
Wed, 27 Apr 2022 16:56:24 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 11 May 2025 05:59:21 GMT
datach.php
ptk-krgmsanynsatas.buzz/p/aras/ Frame 98B2
0
520 B
XHR
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/datach.php?ip=95.211.199.139
Requested by
Host: code.jquery.com
URL: https://code.jquery.com/jquery-3.7.1.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PHP/8.2.19, PleskLin
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
Accept
*/*
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
X-Requested-With
XMLHttpRequest
sec-ch-ua-platform
"Win32"

Response headers

pragma
no-cache
date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
DYNAMIC
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
x-powered-by
PHP/8.2.19, PleskLin
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=CGvQKyylq9W6Mzyq%2BzGc838ddYDysFUVMJ74hlUuYrRFROaJeolxdPyzNLLbUaKSPasKStMWCRt2XVgAn%2B3HOUp0EPaMRi68EMbQpQ2ZxB2wkE3k6fHc3vykwZ3RXwMLa0nHOx83eUvX3w%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html; charset=UTF-8
cache-control
no-store, no-cache, must-revalidate
cf-ray
8849b38888416610-AMS
alt-svc
h3=":443"; ma=86400
expires
Thu, 19 Nov 1981 08:52:00 GMT
save.php
ptk-krgmsanynsatas.buzz/
29 B
573 B
XHR
General
Full URL
https://ptk-krgmsanynsatas.buzz/save.php
Requested by
Host: code.jquery.com
URL: https://code.jquery.com/jquery-3.6.2.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PHP/8.2.19, PleskLin
Resource Hash
d9b5e32dc1217a1ce0473444b67d4961a4374b32127e766ca940ae97b4c09e71

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
Content-Type
application/x-www-form-urlencoded
Accept
application/json, text/javascript, */*; q=0.01
Referer
https://ptk-krgmsanynsatas.buzz/
X-Requested-With
XMLHttpRequest
sec-ch-ua-platform
"Win32"

Response headers

pragma
no-cache
date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
DYNAMIC
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
x-powered-by
PHP/8.2.19, PleskLin
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=KM2YrAt4ED9oto%2FMEvZEb6c3vgyDuVjPOFo2B9%2FUxFWnsxHt%2FQ7L8jNSXfn3FkLUzGblabJ9b4biUImN7d5Gf%2FhQ8dFvrEyOjybL8IVkNwr0XeM%2BeP3Hs8GLnmafdv4NaUW13lwjs%2F5%2BWw%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html; charset=UTF-8
cache-control
no-store, no-cache, must-revalidate
cf-ray
8849b38908c96610-AMS
alt-svc
h3=":443"; ma=86400
expires
Thu, 19 Nov 1981 08:52:00 GMT
favicon.ico
ptk-krgmsanynsatas.buzz/
808 B
865 B
Other
General
Full URL
https://ptk-krgmsanynsatas.buzz/favicon.ico
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Referer
https://ptk-krgmsanynsatas.buzz/
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
sec-ch-ua-platform
"Win32"

Response headers

date
Thu, 16 May 2024 07:37:14 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Tue, 14 May 2024 12:28:24 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
age
75
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=hLbJwomJ0H0g%2B9HD96rrHvDsw9UF2jDiNsokEPUIIEuLMarfmqvzhAa%2BslkxHKozias5yYDK6PlqbBCzjUppgSjtj3WhdvRBKWxCSsXrhowT1CNQfNSQwnuHsZVum%2F0uVo%2F9PAKx6%2BlPqw%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html
cache-control
max-age=14400
cf-ray
8849b38908cc6610-AMS
alt-svc
h3=":443"; ma=86400
datach.php
ptk-krgmsanynsatas.buzz/p/aras/ Frame 98B2
0
523 B
XHR
General
Full URL
https://ptk-krgmsanynsatas.buzz/p/aras/datach.php?ip=95.211.199.139
Requested by
Host: code.jquery.com
URL: https://code.jquery.com/jquery-3.7.1.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
188.114.96.3 Amsterdam, Netherlands, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PHP/8.2.19, PleskLin
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

sec-ch-ua
"Google Chrome";v="124", "Not:A-Brand";v="8", "Chromium";v="124"
Accept-Language
nl-NL,nl;q=0.9;q=0.9
sec-ch-ua-mobile
?0
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/124.0.0.0 Safari/537.36
Accept
*/*
Referer
https://ptk-krgmsanynsatas.buzz/p/aras/
X-Requested-With
XMLHttpRequest
sec-ch-ua-platform
"Win32"

Response headers

pragma
no-cache
date
Thu, 16 May 2024 07:37:17 GMT
content-encoding
br
cf-cache-status
DYNAMIC
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
x-powered-by
PHP/8.2.19, PleskLin
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v4?s=c%2FgwijYX7zeTHhDl8zLOjjzEEvjN%2FZ29H1Rzum4iBNviI%2BEXJ0S9NE7yZcdpRk2KlMQFtmkbbwyyh7HiI3iW0mNF9ncQE3kXXVPYWbfYvYTFsU%2FEG61Eg1ddNbi92SSZrnLXfdwl3kyxHw%3D%3D"}],"group":"cf-nel","max_age":604800}
content-type
text/html; charset=UTF-8
cache-control
no-store, no-cache, must-revalidate
cf-ray
8849b39b58536610-AMS
alt-svc
h3=":443"; ma=86400
expires
Thu, 19 Nov 1981 08:52:00 GMT

Verdicts & Comments Add Verdict or Comment

4 JavaScript Global Variables

These are the non-standard "global" variables defined on the window object. These can be helpful in identifying possible client-side frameworks and code.

object| 0 function| $ function| jQuery function| savePath

1 Cookies

Domain/Path Name / Value
ptk-krgmsanynsatas.buzz/ Name: PHPSESSID
Value: vm78hac8gdt7fmqrdt1krl9pso

9 Console Messages

Source Level URL
Text
security warning URL: https://ptk-krgmsanynsatas.buzz/p/aras/
Message:
An iframe which has both allow-scripts and allow-same-origin for its sandbox attribute can escape its sandboxing.
network error URL: https://ptk-krgmsanynsatas.buzz/cdnjs.cloudflare.com/ajax/libs/jquery/3.6.3/jquery.min.js
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/p/aras/arasco/form-map-icon.svg
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/p/aras/arasco/form-help-icon.svg
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/p/aras/arasco/list-icon.svg
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/p/aras/arasco/menu-search.svg
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/p/aras/arasco/menu-close.svg
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/p/aras/assets/js/jquery-3.6.0.min.js
Message:
Failed to load resource: the server responded with a status of 404 ()
network error URL: https://ptk-krgmsanynsatas.buzz/favicon.ico
Message:
Failed to load resource: the server responded with a status of 404 ()

Indicators

This is a term in the security industry to describe indicators such as IPs, Domains, Hashes, etc. This does not imply that any of these indicate malicious activity.

code.jquery.com
fonts.gstatic.com
ptk-krgmsanynsatas.buzz
188.114.96.3
2a00:1450:4001:81d::2003
2a04:4e42::649
199528d00d5d473f98e70de831c19848220152b27dbf6db12e02b170464d4f68
1a69b88b3f2fe0405ea88f53e7065c8c5225eda0e6f353d6e54a9c1b5668b7f4
3be1261755e4d160c371da43e9dfa54c770eee3d40057ec777e4881723625a1b
52cf3717a9c24daa478c605e01d0b06712b9c97d85033e5c9421da5d45f69680
5f640902021c76a544961d401ae12e11617230b50aae6a0ca7f2fc91dd1fbd7d
5f9d6298f5edc6d2b57a6f3a30f87f1c93c84b7aad7c5e9bf9d3a2c9384403fa
68f92b82181f63ccbec69851fef39303947ad625a7b70068daa7ffb1604a9497
6e9e00a3ed8f23de9aea5b25a1f0cd130fa7aad87b1a9e7d4615f04647f288aa
73e5b52f60a794a93d988bf3052f0ee115cc61c3d0f3ea68935fe09a492fb081
7d93459d86585bfcdbb7e0376056226adb25821ee54b96236fe2123e9560929f
8f67a5abdab57b2c8035191f9ca51c819e428aac447565532a63bb002ffaaf81
9c15f7b06458075c69b40e79f03e62d43017ecf4c618487add407ee47e438684
adc2ced09b773785c30a344ef321eb13f63dc5bde15cf59d16e304e42018f063
b9347f234dc3c8d56e015e86d88a1400415db8f7a5ad91f02b6a2323c10a4187
cb8bdeabc838774d9808eb7c4cfcea963b57855e34f84b54797076940c8e5986
cd36de204aca2d5fa263a731f7c20009b5e3d754ba1f1e03c33e93a48f3e7446
ceee4df7fad880d624bf91e212f6de44a4666622e06226236f1e46ae77ee5c4d
d647f3f26ed95422bd39ea6504b31fc8158c2609898dc3e0e5905d9126032352
d9b5e32dc1217a1ce0473444b67d4961a4374b32127e766ca940ae97b4c09e71
da4ad864a87ffcf71c851b5df87f95cb242867f7b711cae4c6133cc9cc0048f0
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
f4e80d9dfd374d02989b87a27b5ed4cb78fbb177c27f1478e9a8b0afb7513149
fc9a93dd241f6b045cbff0481cf4e1901becd0e12fb45166a8f17f95823f0b1a