URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Submission: On July 16 via manual from UA — Scanned from NL

Summary

This website contacted 18 IPs in 6 countries across 17 domains to perform 129 HTTP transactions. The main IP is 2a06:98c1:3121::3, located in United States and belongs to CLOUDFLARENET, US. The main domain is iphonetsu.com.
TLS certificate: Issued by GTS CA 1P5 on June 11th 2023. Valid for: 3 months.
iphonetsu.com scanned 45 times on urlscan.io Show Scans 45

urlscan.io Verdict: No classification


Live information

Google Safe Browsing: No classification for iphonetsu.com
Current DNS A record: 188.114.96.3 (AS13335 - CLOUDFLARENET, US)
Domain created: December 4th 2017, 07:00:00 (UTC)
Domain registrar: NameSilo, LLC

Domain & IP information

Apex Domain
Subdomains
Transfer
51 googlesyndication.com
pagead2.googlesyndication.com — Cisco Umbrella Rank: 135
tpc.googlesyndication.com — Cisco Umbrella Rank: 160
524 KB
20 doubleclick.net
googleads.g.doubleclick.net — Cisco Umbrella Rank: 57
cm.g.doubleclick.net — Cisco Umbrella Rank: 254
259 KB
20 iphonetsu.com
iphonetsu.com
252 KB
12 gstatic.com
www.gstatic.com
fonts.gstatic.com
199 KB
8 googleapis.com
fonts.googleapis.com — Cisco Umbrella Rank: 88
9 KB
7 googletagservices.com
www.googletagservices.com — Cisco Umbrella Rank: 205
393 KB
6 google.com
adservice.google.com — Cisco Umbrella Rank: 113
www.google.com — Cisco Umbrella Rank: 10
mts0.google.com — Cisco Umbrella Rank: 4234
2 KB
2 de17a.com
d5p.de17a.com — Cisco Umbrella Rank: 5037
653 B
2 turn.com
ad.turn.com — Cisco Umbrella Rank: 1067
r.turn.com — Cisco Umbrella Rank: 3947
869 B
1 yahoo.com
pr-bh.ybp.yahoo.com — Cisco Umbrella Rank: 481
714 B
1 adsrvr.org
match.adsrvr.org — Cisco Umbrella Rank: 383
265 B
1 mathtag.com
sync.mathtag.com — Cisco Umbrella Rank: 577
732 B
1 dotomi.com
dclk-match.dotomi.com — Cisco Umbrella Rank: 3235
104 B
1 quantserve.com
cms.quantserve.com — Cisco Umbrella Rank: 862
463 B
1 googleadservices.com
partner.googleadservices.com — Cisco Umbrella Rank: 1129
602 B
1 google-analytics.com
region1.google-analytics.com — Cisco Umbrella Rank: 1623
252 B
1 googletagmanager.com
www.googletagmanager.com — Cisco Umbrella Rank: 79
87 KB
129 17
Domain Requested by
34 tpc.googlesyndication.com pagead2.googlesyndication.com
googleads.g.doubleclick.net
tpc.googlesyndication.com
20 iphonetsu.com iphonetsu.com
17 pagead2.googlesyndication.com iphonetsu.com
pagead2.googlesyndication.com
tpc.googlesyndication.com
googleads.g.doubleclick.net
www.googletagservices.com
15 googleads.g.doubleclick.net pagead2.googlesyndication.com
googleads.g.doubleclick.net
9 www.gstatic.com googleads.g.doubleclick.net
8 fonts.googleapis.com googleads.g.doubleclick.net
7 www.googletagservices.com googleads.g.doubleclick.net
5 cm.g.doubleclick.net 1 redirects googleads.g.doubleclick.net
3 fonts.gstatic.com fonts.googleapis.com
3 www.google.com 1 redirects tpc.googlesyndication.com
googleads.g.doubleclick.net
2 d5p.de17a.com 2 redirects
2 adservice.google.com pagead2.googlesyndication.com
1 pr-bh.ybp.yahoo.com 1 redirects
1 match.adsrvr.org googleads.g.doubleclick.net
1 sync.mathtag.com 1 redirects
1 dclk-match.dotomi.com googleads.g.doubleclick.net
1 cms.quantserve.com googleads.g.doubleclick.net
1 r.turn.com
1 ad.turn.com 1 redirects
1 mts0.google.com googleads.g.doubleclick.net
1 partner.googleadservices.com pagead2.googlesyndication.com
1 region1.google-analytics.com www.googletagmanager.com
1 www.googletagmanager.com iphonetsu.com
129 23

This site contains links to these domains. Also see Links.

Domain
blog.with2.net
mobile.blogmura.com
Subject Issuer Validity Valid
iphonetsu.com
GTS CA 1P5
2023-06-11 -
2023-09-09
3 months crt.sh
*.google-analytics.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
*.g.doubleclick.net
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
*.googleadservices.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
*.google.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
tpc.googlesyndication.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
upload.video.google.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
*.gstatic.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
www.google.com
GTS CA 1C3
2023-06-19 -
2023-09-11
3 months crt.sh
*.quantserve.com
DigiCert TLS RSA SHA256 2020 CA1
2022-08-09 -
2023-09-09
a year crt.sh
*.dotomi.com
GlobalSign RSA OV SSL CA 2018
2022-08-09 -
2023-09-10
a year crt.sh
*.adsrvr.org
GlobalSign GCC R3 DV TLS CA 2020
2023-04-12 -
2024-05-13
a year crt.sh

This page contains 22 frames:

Primary Page: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Frame ID: 3E0E6FBC1E2B03340E0393D862D18269
Requests: 32 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20190131/zrt_lookup.html
Frame ID: A6C3D8635984EA1FB4527D59BE315262
Requests: 1 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Frame ID: 127A72BD494CB7D264EC48263F63564F
Requests: 17 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Frame ID: 709D23F570DF8D8D5D7E3FC626564ED4
Requests: 14 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&adk=1812271804&adf=3025194257&lmt=1689544880&plat=9%3A32776%2C16%3A8388608%2C17%3A32%2C24%3A32%2C25%3A32%2C30%3A1081344%2C32%3A32%2C41%3A32%2C42%3A32&plas=212x945_l%7C212x945_r&format=0x0&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&ea=0&pra=7&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880645&bpp=1&bdt=498&idt=259&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280%2C1082x280&nras=1&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=-12245933&ady=-12245933&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=32768&bc=31&ifi=3&uci=a!3&fsb=1&dtd=273
Frame ID: 13D7A68FE52C5E4E126EB10525704B8D
Requests: 1 HTTP requests in this frame

Frame: https://tpc.googlesyndication.com/sodar/sodar2/225/runner.html
Frame ID: 67814B97F355EB880009B6F0206A77A2
Requests: 3 HTTP requests in this frame

Frame: https://www.google.com/recaptcha/api2/aframe
Frame ID: 0305773FDBDCB13D6521C6FD76D109AD
Requests: 2 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Frame ID: CE5A541988073250EF347E0954C0A8C1
Requests: 15 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: 06F42DC6530BD2F1E1C291D436405E3B
Requests: 1 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Frame ID: 9FD8626949F141A17353A61F5FA274F3
Requests: 5 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Frame ID: B362B660BB4DFFE627E2C409A84FBEA6
Requests: 7 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Frame ID: FFB5F50CAD5E194445D817AAB38DCCCF
Requests: 8 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Frame ID: B4A9AFC2B7A895F7438A110FEADD699A
Requests: 12 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: E710C68580AA4AEDB25A93E9A89F0BED
Requests: 1 HTTP requests in this frame

Frame: https://fonts.googleapis.com/css?family=Noto%20Sans%20JP%3A400&text=%E9%96%89%E3%81%98%E3%82%8B
Frame ID: 58FD705E289D334BFC66FDAF06538D0D
Requests: 8 HTTP requests in this frame

Frame: https://googleads.g.doubleclick.net/pagead/drt/si?st=NO_DATA
Frame ID: DF297D4A36E8833FE63FA8A541FB12EE
Requests: 2 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: 0FA8BACE2E2EDD0D6BE58B43FF8F5567
Requests: 1 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: 47C2588AF14764F62FCF0820CB028F43
Requests: 1 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/pagead/s/cookie_push_onload.html
Frame ID: 2096F97FF7F6FAF2A4AED6BFF8A8B641
Requests: 9 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: FA26C80104DE4C99E766D59CE78E2C82
Requests: 1 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: 0C08E1E20F9450C66555A429D20C8DD2
Requests: 1 HTTP requests in this frame

Frame: https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Frame ID: D6673C982B2CD24DE803EC853BAB28F6
Requests: 1 HTTP requests in this frame

Screenshot


Detected technologies

Overall confidence: 100%
Detected patterns
  • /wp-(?:content|includes)/

Overall confidence: 100%
Detected patterns
  • (?:F|f)o(?:n|r)t-?(?:A|a)wesome(?:.*?([0-9a-fA-F]{7,40}|[\d]+(?:.[\d]+(?:.[\d]+)?)?)|)

Overall confidence: 100%
Detected patterns
  • googlesyndication\.com/

Overall confidence: 100%
Detected patterns

Overall confidence: 100%
Detected patterns
  • googletagmanager\.com/gtag/js

Overall confidence: 100%
Detected patterns
  • jquery.*\.js(?:\?ver(?:sion)?=([\d.]+))?

Overall confidence: 100%
Detected patterns
  • jquery[.-]migrate(?:-([\d.]+))?(?:\.min)?\.js(?:\?ver=([\d.]+))?

Page Statistics

129
Requests

97 %
HTTPS

80 %
IPv6

17
Domains

23
Subdomains

18
IPs

6
Countries

1728 kB
Transfer

4757 kB
Size

12
Cookies

Redirected requests

There were HTTP redirect chains for the following requests:

Request Chain 122
  • https://www.google.com/pagead/drt/ui HTTP 302
  • https://googleads.g.doubleclick.net/pagead/drt/si?st=NO_DATA
Request Chain 128
  • https://ad.turn.com/r/cs?pid=3&google_gid=CAESEIaxEHqK73Itg0GoKNcxpmE&google_cver=1&google_push=AaAOQGF5FgRPOhe8f_bX5MggvkKG-_o_JJ5tRWTe5WShtP7PPOX_rBllx7-WvDFVIaq-vi_Qv2sXVQd24SDxccDJt8rStVI1g_09XEU HTTP 302
  • https://cm.g.doubleclick.net/pixel?google_nid=turn1&google_cm&google_sc&google_hm=MzY4MjcxNTEwMDg5NjAwMjgzNA==&gdpr=&gdpr_consent= HTTP 302
  • https://r.turn.com/r/cms/id/0/ddc/1/pid/18/uid/?gdpr=&gdpr_consent=&google_gid=CAESEIaxEHqK73Itg0GoKNcxpmE&google_cver=1
Request Chain 131
  • https://sync.mathtag.com/sync/img?mt_exid=4&google_gid=CAESENXQwM1yUvqtJHsAgl9lOVo&google_cver=1&google_push=AaAOQGE3hAv0Hs6ia5qmbG7WVA62k3-parI23HWF_rj-3G-tPYSU7SrF8O31--1lu8cg8aK1lbIuLbHDuCTtdqQh097qqbv-lARr6uQ HTTP 302
  • https://cm.g.doubleclick.net/pixel?google_nid=mediamath&google_hm=&google_push=AaAOQGE3hAv0Hs6ia5qmbG7WVA62k3-parI23HWF_rj-3G-tPYSU7SrF8O31--1lu8cg8aK1lbIuLbHDuCTtdqQh097qqbv-lARr6uQ
Request Chain 133
  • https://pr-bh.ybp.yahoo.com/sync/adx?google_gid=CAESEAXDfKcTBSiz08Atu0_HrV4&google_cver=1&google_push=AaAOQGGcKd_qNDUWk_iFY41tuJUQxcvvjFNE_I6dcYthL2w-mCNBDebpsKXhUWdCasHVbd8pbKDD6NkFAfnt9Bzg_VFublzAo8Pfjfw HTTP 302
  • https://cm.g.doubleclick.net/pixel?google_nid=yahoo&google_push=AaAOQGGcKd_qNDUWk_iFY41tuJUQxcvvjFNE_I6dcYthL2w-mCNBDebpsKXhUWdCasHVbd8pbKDD6NkFAfnt9Bzg_VFublzAo8Pfjfw&google_hm=eS1pdHMxR2dCRTJwSEx1Njg2anp1ZnFwYWNHNEFuSWw2Wn5B
Request Chain 134
  • https://d5p.de17a.com/cookies/google?google_gid=CAESEBetfLJOUpoe-0hj4g_5sno&google_cver=1&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UFY5CPaJg8 HTTP 302
  • https://d5p.de17a.com/cookies/google;c?google_gid=CAESEBetfLJOUpoe-0hj4g_5sno&google_cver=1&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UFY5CPaJg8 HTTP 302
  • https://cm.g.doubleclick.net/pixel?google_nid=delta_projects_ab&google_ula=668382&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UFY5CPaJg8

129 HTTP transactions

Resource
Path
Size
x-fer
Type
MIME-Type
Primary Request dark-abstract-samsung-galaxy-wallpaper
iphonetsu.com/abstract/
94 KB
23 KB
Document
General
Full URL
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare / PHP/5.6.40
Resource Hash
760c7f6ef054e55537a56b7060bcc86a42c364e847f73548e6291fc1c2f13dc8

Request headers

Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=86400
cf-cache-status
DYNAMIC
cf-ray
7e7d85e279bcb760-AMS
content-encoding
br
content-type
text/html; charset=UTF-8
date
Sun, 16 Jul 2023 22:01:20 GMT
expires
Mon, 17 Jul 2023 10:01:18 GMT
link
<https://iphonetsu.com/?p=6618>; rel=shortlink
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=DoWbHipmbLzLf84LldMpKqjwUi10%2BdhM8w%2FlpaQEkTJe%2FEIl7tzwr9bf7Ka3H0idWxJl578INusqf1bQknqPapMLz7%2Fs7pX9Fp0bYaFzE5Y%2FDxfJhccK5ILKLP%2BRyO1FA%2FwqLwz8cSTE8nk4"}],"group":"cf-nel","max_age":604800}
server
cloudflare
vary
Accept-Encoding,User-Agent
x-hyper-cache
stop - no cache header
x-powered-by
PHP/5.6.40
Dark-Abstract-Samsung-Galaxy-Wallpaper-425x600.jpg
iphonetsu.com/wp-content/uploads/2023/07/
45 KB
45 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2023/07/Dark-Abstract-Samsung-Galaxy-Wallpaper-425x600.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
43e4f1cf1d537b239f59ca6d5b2389fda5e48cb6acae1b1542c78171ffa739e8

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Sat, 08 Jul 2023 20:23:29 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"64a9c5c1-b408"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=8TLE6iVLuuVPU68g1qeJve8HpA6giur8yhUGrB1jCFTpv%2FWaD1OtpQS%2BbQ5JrB9f7b8eLxsrQpNKM7%2FU5L9typf5RZhr4mAnpqnqHD4W3hFCdR3T2la7AoLhDcDGnfRy86NuKyOMXWxtx7BC"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed0af0b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
46088
expires
Sun, 13 Aug 2023 14:35:19 GMT
br_c_1001_1.gif
iphonetsu.com/wp-content/uploads/
2 KB
3 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/br_c_1001_1.gif
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
47f3305c3a4882c30b7c5ac795f3a2e10d98674961b1cf42c81f7cdf0102fbcb

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Sat, 11 Jan 2020 13:40:22 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5e19d046-979"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Za373MoU7bh9eqmVzXavlbd4UiSqaUEarkGezVwduINjZuz7%2BtYtwQXnOo7bBmAKf0bGWH5b7jLfx3ulX4ikwF2%2BovKAAL7pEUqS4%2Fjr%2Bf7yQSsvWmU%2BfwTElvJb8rv3Bv1dvZl9cvvZcNpp"}],"group":"cf-nel","max_age":604800}
content-type
image/gif
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed0af1b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
2425
expires
Tue, 25 Jul 2023 20:35:17 GMT
88_31.gif
iphonetsu.com/wp-content/uploads/
3 KB
3 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/88_31.gif
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
4d26f87d1cd304c9b81f09b65c6a87fd7a81e18284f4b8225778402b518fcc84

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Sat, 11 Jan 2020 13:40:22 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5e19d046-a37"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=m7gQ06hmD6I5ELRF1DHIR%2BePUQFmVBrj8P9Od0%2FyYFpu2hPZxd90EMoPwO%2BrKdP6gW9flm71EDPhvmKveBriuRra7leMANgEVC%2FO2ek%2FnE8Ds5Nmi359MyKxiE3Cu%2FywXM6WY5wOoTDhirMh"}],"group":"cf-nel","max_age":604800}
content-type
image/gif
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1af6b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
2615
expires
Sun, 13 Aug 2023 20:27:17 GMT
Artistic-Flower-and-Starry-Night-iPhone-Wallpaper-170x250.jpg
iphonetsu.com/wp-content/uploads/2023/01/
11 KB
11 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2023/01/Artistic-Flower-and-Starry-Night-iPhone-Wallpaper-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
2392632a9bf27cf67a0dca7aefd6d6652dda955bda6e79b900a9ec68807907b0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Mon, 16 Jan 2023 00:57:49 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"63c4a10d-2a34"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=NFXbl8xQL5yibVn5BAalewGWID3dzt6M3Al%2FuMdFYSJyrWkylgpcKCgSVFOFuTAoBZz9hi%2FWRi%2B4IUX5grCBTybWrG57pGnwGDYDqsSuwCZVxj%2BfZO6KTQqJV58T8yOt6oVoZgStuPWfPTuw"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1afab760-AMS
alt-svc
h3=":443"; ma=86400
content-length
10804
expires
Sun, 13 Aug 2023 14:35:19 GMT
Abstract-Turquoise-iPhone-Wallpaper-170x250.jpg
iphonetsu.com/wp-content/uploads/2022/02/
8 KB
9 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2022/02/Abstract-Turquoise-iPhone-Wallpaper-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
e99d8e8900a141c531182b7f55a95a6710f753170f88c1c00adb1874910f0573

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Thu, 10 Feb 2022 11:35:22 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"6204f87a-20ec"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=yBmEnjdQAkUJTERNlMttfisZiBYNZVGXBhzdj6WDioCPYWni4zyH6jLqo0%2FF%2ByAugYKf3T2BXsDdS%2BDV6MIv5JQYVkuhVowBYMOwON3zMbkN7DstV%2FAJ%2FC6cUygzHF1pkqDSK6%2BO8cix94wZ"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1afbb760-AMS
alt-svc
h3=":443"; ma=86400
content-length
8428
expires
Sun, 13 Aug 2023 14:35:19 GMT
Abstract-Paint-Phone-Wallpaper-170x250.jpg
iphonetsu.com/wp-content/uploads/2021/09/
7 KB
7 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2021/09/Abstract-Paint-Phone-Wallpaper-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
f5b99186e2f8a9dcec3d34d8844392fa29c597e672607cc9b084a8a9b65eac69

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Thu, 23 Sep 2021 22:30:52 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"614d001c-1a85"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=zl8NGlBvr58yArSoWaKfdLAgyRh7RloZXQZZw2EELckn0zLpoUQ1NVe%2Bed5G703G6kktdv34QeybkmLakr1yUmm%2BSnbD%2BpRuz7D6p0SMm3kYF4nMZ5kxV%2F0TltklBBmWFlaaISJKjYXd8Ulw"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1afcb760-AMS
alt-svc
h3=":443"; ma=86400
content-length
6789
expires
Sun, 13 Aug 2023 14:35:19 GMT
Huawei-Mate-30-Pro-Stock-Wallpapers-170x250.jpg
iphonetsu.com/wp-content/uploads/2021/05/
10 KB
10 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2021/05/Huawei-Mate-30-Pro-Stock-Wallpapers-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
ffd826d0d61d20657005962af6877b8fcb91fe2e1fd596d876385f72afa1494e

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Mon, 31 May 2021 10:34:48 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"60b4bbc8-2746"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=QATXcpkrIb4x5aHpiHBnWi3mXUTAKSPuNk8sukewSE9Jl%2BgKbCVJMJCmdm2Wa%2BalQtiy%2FFmOY%2FPoyui2avZ%2BreDgQX59UX1wPfWXmLdEnnMOolEGEdml3Sf5Wb%2FopFYIf5B%2FpvtCtbpkdCmO"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1afdb760-AMS
alt-svc
h3=":443"; ma=86400
content-length
10054
expires
Sun, 13 Aug 2023 14:35:19 GMT
Abstract-Turquoise-Background-iPhone-8-Plus-Wallpaper-170x250.jpg
iphonetsu.com/wp-content/uploads/2020/05/
6 KB
6 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2020/05/Abstract-Turquoise-Background-iPhone-8-Plus-Wallpaper-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
a39db86ba3f92393ccf45a8e1a036b8cd9c68526c0873f12118b5d30bdfd87a3

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Tue, 05 May 2020 12:02:27 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5eb155d3-16b9"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=I9wPsI9C3Pii5bASVpqO0H%2FtJN8SDir0dKKL8GZSqQBpwi%2BDJKaQZq1Q7hIMcIq5%2FFM02w9TEJgYHPJu9BZYmgIg33vpGpEZEITVwbEGAGR9qzQgJsrp%2BgHdRfgl7zUtrkAmGX97loMhVjfY"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1afeb760-AMS
alt-svc
h3=":443"; ma=86400
content-length
5817
expires
Sun, 13 Aug 2023 14:35:19 GMT
Abstract-Vector-Free-Wallpapers-170x250.jpg
iphonetsu.com/wp-content/uploads/2020/05/
7 KB
7 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2020/05/Abstract-Vector-Free-Wallpapers-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
56f35ff17bde6488dd843cf5c86c7d4dc55356c4a6b624ee6f92fc8f72b5f956

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Sun, 03 May 2020 01:16:56 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5eae1b88-1bed"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=beOuey1QM2AzB8hEvnFLcFCDWtmT5auUdAy0u84lEQcXGnpgw2DEeecl53laTFAEJaMDBA0nH1oK%2FJILBn5ReChP40om2vYFdek1krasy2cCHs1eWPNtu%2FYINl9F9WvKZsCUtBYuu5eq1MJm"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1b00b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
7149
expires
Sun, 13 Aug 2023 14:35:19 GMT
Blue-Abstract-iPhone-8-Plus-Wallpapers-170x250.jpg
iphonetsu.com/wp-content/uploads/2020/04/
4 KB
4 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2020/04/Blue-Abstract-iPhone-8-Plus-Wallpapers-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
0759df9d8bae742b0eca7cf7d02ae8f2c32be5e870bf1c2da314c2bc28040ba3

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Sat, 25 Apr 2020 23:23:16 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5ea4c664-fa8"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=nca%2FlLg91r3QxQITdgi8BEbwC1EqEjtap00aGDe52GBM%2BXnd2wJwiJM4rS2LMi4sV8QHNrj8PUUgL9uGJGnFT%2FiMRp5HzqluN0QfqlLhXh8jXBEliaQ9%2BKlt%2B%2F9HRx6w%2BsPI7WI44bbvB%2Fu5"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed1b01b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
4008
expires
Sun, 13 Aug 2023 14:35:19 GMT
Black-Abstract-Smartphone-Wallpapers-170x250.jpg
iphonetsu.com/wp-content/uploads/2020/04/
8 KB
8 KB
Image
General
Full URL
https://iphonetsu.com/wp-content/uploads/2020/04/Black-Abstract-Smartphone-Wallpapers-170x250.jpg
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
3a494eea4f877afbd859c20cbe10a5341db107d65bd4be23590b43f336e56e05

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
HIT
last-modified
Fri, 17 Apr 2020 13:14:37 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5e99abbd-201d"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=4zlYUFwe4o4Yx4smeCYGgQS4ts9uou%2FTdNiaFKxFQmD4CH8mFCcYWEjp2N6CPyF0DQ6qLwO7rqQlXpL1F2uytHO4EhUxCBkoIVdz2AO5r787VpeSTvgNxAgKQH%2FAAq%2Bu8XpPuGzB75%2FZjC1x"}],"group":"cf-nel","max_age":604800}
content-type
image/jpeg
cache-control
max-age=2592000
accept-ranges
bytes
cf-ray
7e7d85ed3b17b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
8221
expires
Sun, 13 Aug 2023 14:35:19 GMT
rocket-loader.min.js
iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/
12 KB
4 KB
Script
General
Full URL
https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
ccf00d1923b0131a10e0c6d26f95e5dee6ebf8621a27e83c5a2f68a2e0093142
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Frame-Options DENY

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
gzip
x-content-type-options
nosniff
last-modified
Tue, 11 Jul 2023 16:27:41 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
W/"64ad82fd-302c"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=X%2BBVqQjHFfQ0oST1BOe2VK0OZ5AQDcUJop5tkqU0T3adCGwrEthe5EqmXcfvdqY1BxEqx74FwXmTo7nL1cihu3NOZ40ZbMpVvn0qb9SIrQQGtc%2Bk%2FvpRv6l5TTo0N7tPZO23vX%2Bsp6%2BcN%2BIC"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
x-frame-options
DENY
cache-control
max-age=172800, public
cf-ray
7e7d85ed3b18b760-AMS
expires
Tue, 18 Jul 2023 22:01:20 GMT
truncated
/
3 KB
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
c39e3829591f1ad04f92a56ede1d397104cb5e68081c5fd146c0445f3148aa6a

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/png
fontawesome-webfont.woff2
iphonetsu.com/wp-content/themes/pingraphy/fonts/
55 KB
56 KB
Font
General
Full URL
https://iphonetsu.com/wp-content/themes/pingraphy/fonts/fontawesome-webfont.woff2?v=4.5.0
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
aadc3580d2b64ff5a7e6f1425587db4e8b033efcbf8f5c332ca52a5ed580c87c

Request headers

Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Origin
https://iphonetsu.com
accept-language
nl-NL,nl;q=0.9
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
cf-cache-status
REVALIDATED
last-modified
Thu, 30 Nov 2017 22:39:59 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
"5a2088bf-ddcc"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=PYTbi8ynuscJv%2F8PoaxUp%2FZG0Kr7Eamhq9bWqri8knj83q%2FYakq3rHloACVfyqOr4gEjSjEc2kbxqV7Co5oDEX6E74R4uNAkIdKGYafodOoVObo5J4jBKltXZiPk8p%2BwBHxkzs9S4dH3Kmp8"}],"group":"cf-nel","max_age":604800}
content-type
application/octet-stream
cache-control
max-age=14400
accept-ranges
bytes
cf-ray
7e7d85ed3b19b760-AMS
alt-svc
h3=":443"; ma=86400
content-length
56780
expires
Sun, 16 Jul 2023 22:01:25 GMT
skip-link-focus-fix.js
iphonetsu.com/wp-content/themes/pingraphy/js/
588 B
846 B
Script
General
Full URL
https://iphonetsu.com/wp-content/themes/pingraphy/js/skip-link-focus-fix.js?ver=20160115
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
b2ff39ccfc80daf66110e4b104956bc70911dec5c51764de1c19422439a34ba5

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
cf-cache-status
HIT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
cf-polished
origSize=751
alt-svc
h3=":443"; ma=86400
cf-bgj
minify
last-modified
Thu, 30 Nov 2017 22:40:01 GMT
x-accel-version
0.01
server
cloudflare
etag
W/"2ef-55f3aeebd13ca-gzip"
vary
Accept-Encoding,User-Agent
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=Q%2BrwSneFxypx1Uj%2Bu8nDcx7MGPTovkTQ7Rt7VCvCpSYP06Eb%2FM2ZVHj%2FgLQAUr22gMoMQ8Bx1b4cbkDaYtlzT67vxNlN3zqlVV7wWfBDLJ%2F6jOamDs9Fhapno8Oa71c%2FXuScrYj%2FB10PRSwS"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
cache-control
max-age=604800
cf-ray
7e7d85ed8877b96f-AMS
expires
Fri, 21 Jul 2023 09:58:17 GMT
script.js
iphonetsu.com/wp-content/themes/pingraphy/js/
4 KB
2 KB
Script
General
Full URL
https://iphonetsu.com/wp-content/themes/pingraphy/js/script.js?ver=20160115
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
9981135767d0dd32228a5fa82f21ac19c61a8577522b0353af7a787e4298a684

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
cf-cache-status
HIT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
cf-polished
origSize=5465
alt-svc
h3=":443"; ma=86400
cf-bgj
minify
last-modified
Thu, 30 Nov 2017 22:40:01 GMT
server
cloudflare
etag
W/"5a2088c1-1559"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=0xPidpLg6xAOBOpF%2BqKQbLNZBKrbyv2gQzfwYM7gd2Ypel0Ws%2FzA8MqyroHeQEitzL9BFKWtqICJpCabp0HfnM18bM7%2BiihhS2tghkPIuJcRU7gjguOxezaWQbNKL%2F3HWFZTDqKl3yB9sQ%2F9"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
cache-control
max-age=604800
cf-ray
7e7d85ed887cb96f-AMS
expires
Mon, 17 Jul 2023 03:32:34 GMT
imagesloaded.pkgd.min.js
iphonetsu.com/wp-content/themes/pingraphy/js/
5 KB
2 KB
Script
General
Full URL
https://iphonetsu.com/wp-content/themes/pingraphy/js/imagesloaded.pkgd.min.js?ver=20160115
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
23bd7e5fac741d9a4b7cd4572ab0df7556b4dd610c67e3dfaa852d28812b4250

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Thu, 30 Nov 2017 22:40:00 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
W/"5a2088c0-151f"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=JI%2BUwhg05pinkC73L6CudTtcYGRbAJaSQ%2BK8%2Fa9gB7x1RlyCkOLPoeQun8hNAAtFIYW0QIubD8YtNz%2FM2vV9LEMVR13xFNbxIdGKX0%2FhivWp3xonuvcILdYc5y5JATJYiJr%2Bge9B6cijoKFW"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
cache-control
max-age=604800
cf-ray
7e7d85ed887db96f-AMS
alt-svc
h3=":443"; ma=86400
expires
Fri, 21 Jul 2023 09:10:40 GMT
isotope.pkgd.min.js
iphonetsu.com/wp-content/themes/pingraphy/js/
40 KB
12 KB
Script
General
Full URL
https://iphonetsu.com/wp-content/themes/pingraphy/js/isotope.pkgd.min.js?ver=20160115
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
338867db60061d0d769700bd29def22fd63bce55e904001ecb7a4bfe2f4912b4

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Thu, 30 Nov 2017 22:40:01 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
W/"5a2088c1-9f8f"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=lWha2kBImJssaONqzuV8MkUbHl2yMps%2B0PIRSa%2FIrhQODF1bnIepdyVwrSaWgtq%2FXJamM1mhFSlRjFEI9Sm2YOvdR6Y9AN5rL6aLS89lO6q6ht37mw1cYJhs8GJrdLt5vC4GWn1ztFiDdNO5"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
cache-control
max-age=604800
cf-ray
7e7d85ed887eb96f-AMS
alt-svc
h3=":443"; ma=86400
expires
Thu, 20 Jul 2023 21:56:54 GMT
js
www.googletagmanager.com/gtag/
259 KB
87 KB
Script
General
Full URL
https://www.googletagmanager.com/gtag/js?id=G-VVQVH7EX8Z
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2008 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
Google Tag Manager /
Resource Hash
d02121fb0d15c79fefc2e7cb337606e346b950513c3da2215b7c1f077e97914c
Security Headers
Name Value
Strict-Transport-Security max-age=31536000; includeSubDomains
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
strict-transport-security
max-age=31536000; includeSubDomains
server
Google Tag Manager
vary
Accept-Encoding
content-type
application/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
private, max-age=900
access-control-allow-credentials
true
cross-origin-resource-policy
cross-origin
access-control-allow-headers
Cache-Control
content-length
88859
x-xss-protection
0
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
expires
Sun, 16 Jul 2023 22:01:20 GMT
adsbygoogle.js
pagead2.googlesyndication.com/pagead/js/
144 KB
50 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
ba41c43f9ee0d0f8645eddb88977a118c8691220e1534924e0967c14ed5e8b91
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
x-content-type-options
nosniff
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
50625
x-xss-protection
0
server
cafe
etag
11399621113506023161
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
private, max-age=3600
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:20 GMT
jquery-migrate.min.js
iphonetsu.com/wp-includes/js/jquery/
10 KB
4 KB
Script
General
Full URL
https://iphonetsu.com/wp-includes/js/jquery/jquery-migrate.min.js?ver=1.4.1
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
48eb8b500ae6a38617b5738d2b3faec481922a7782246e31d2755c034a45cd5d

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
cf-cache-status
HIT
last-modified
Thu, 30 Nov 2017 21:47:13 GMT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
server
cloudflare
etag
W/"5a207c61-2748"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=5UrYjsNZrEB37qFtG%2B5Dn7meyBFxTXCPMHNISvFhVVGiMr5Irsuc19lvGmnN1ZMOcLf8OeeXsaVuSYAgB%2FWxp7i0vC%2BZJFdjYFQnazOen7MOYPWBvEh4yF56ndlm5e1bYzQ10olYbpnkOC0N"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
cache-control
max-age=604800
cf-ray
7e7d85ed887fb96f-AMS
alt-svc
h3=":443"; ma=86400
expires
Fri, 21 Jul 2023 11:52:05 GMT
jquery.js
iphonetsu.com/wp-includes/js/jquery/
95 KB
35 KB
Script
General
Full URL
https://iphonetsu.com/wp-includes/js/jquery/jquery.js?ver=1.12.4
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/cdn-cgi/scripts/7d0fa10a/cloudflare-static/rocket-loader.min.js
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a06:98c1:3121::3 , United States, ASN13335 (CLOUDFLARENET, US),
Reverse DNS
Software
cloudflare /
Resource Hash
8a4c252da9c4b03a65ca99a734ef82408df893c1b6a5d5a49c4f87f774bc4f75

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
cf-cache-status
HIT
nel
{"success_fraction":0,"report_to":"cf-nel","max_age":604800}
cf-polished
origSize=97184
alt-svc
h3=":443"; ma=86400
cf-bgj
minify
last-modified
Thu, 30 Nov 2017 21:47:13 GMT
server
cloudflare
etag
W/"5a207c61-17ba0"
vary
Accept-Encoding
report-to
{"endpoints":[{"url":"https:\/\/a.nel.cloudflare.com\/report\/v3?s=J5ot5gfI7SuxgC0W93bpURickPZUGfPOAacIEs6BNzSo4AX4b9iqU41BfXuJi7TFOAANDdgNihbLWqNAIMb1zwzWLoIlF6hWRI9%2BNUEYoOsnNFNiGDMZu6yusu9phOLH49F8AwckX%2FnULFlh"}],"group":"cf-nel","max_age":604800}
content-type
application/javascript
cache-control
max-age=604800
cf-ray
7e7d85ed8880b96f-AMS
expires
Sun, 23 Jul 2023 14:31:39 GMT
collect
region1.google-analytics.com/g/
0
252 B
Ping
General
Full URL
https://region1.google-analytics.com/g/collect?v=2&tid=G-VVQVH7EX8Z&gtm=45je37c0&_p=2086886738&cid=694200842.1689544880&ul=en-us&sr=1600x1200&uaa=&uab=&uafvl=&uamb=0&uam=&uap=&uapv=&uaw=0&ngs=1&_s=1&sid=1689544880&sct=1&seg=0&dl=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&dt=%E3%83%80%E3%83%BC%E3%82%AF%E6%8A%BD%E8%B1%A1%E7%9A%84%E3%81%AA%E3%82%B5%E3%83%A0%E3%82%B9%E3%83%B3%E3%82%AE%E3%83%A3%E3%83%A9%E3%82%AF%E3%82%B7%E3%83%BC%E5%A3%81%E7%B4%99%20%7C%20iPhone%E3%83%81%E3%83%BC%E3%82%BA&en=page_view&_fv=1&_nsi=1&_ss=1&_ee=1
Requested by
Host: www.googletagmanager.com
URL: https://www.googletagmanager.com/gtag/js?id=G-VVQVH7EX8Z
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2001:4860:4802:34::36 , United States, ASN15169 (GOOGLE, US),
Reverse DNS
Software
Golfe2 /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:20 GMT
server
Golfe2
content-type
text/plain
access-control-allow-origin
https://iphonetsu.com
cache-control
no-cache, no-store, must-revalidate
access-control-allow-credentials
true
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
expires
Fri, 01 Jan 1990 00:00:00 GMT
show_ads_impl_with_ama_fy2021.js
pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/
356 KB
123 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
421f4d5cfd50df72960b035a161684c592405a1d0ff127bad6e3a0966cb1971e
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
x-content-type-options
nosniff
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
125349
x-xss-protection
0
server
cafe
etag
15694731509274808993
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
cache-control
private, max-age=3600, stale-while-revalidate=3600
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:20 GMT
zrt_lookup.html
googleads.g.doubleclick.net/pagead/html/r20230711/r20190131/ Frame A6C3
10 KB
5 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20190131/zrt_lookup.html
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/js/adsbygoogle.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
18e7a53e3b3abd7ac0242719f7f62cb56b8efe7065091585b8ad22cbc2b8c41c
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
12409
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=1209600
content-encoding
br
content-length
4544
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 18:34:31 GMT
etag
12368291122986407432
expires
Sun, 30 Jul 2023 18:34:31 GMT
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
cookie.js
partner.googleadservices.com/gampad/
393 B
602 B
Script
General
Full URL
https://partner.googleadservices.com/gampad/cookie.js?domain=iphonetsu.com&callback=_gfp_s_&client=ca-pub-7652110621730409
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:82f::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
4bbcd084adeeb6dd5bc11aa75e83c2138300fade4c37bfd0a95cba66cfef2488
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
gzip
x-content-type-options
nosniff
server
cafe
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
content-type
text/javascript; charset=UTF-8
cache-control
private
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
251
x-xss-protection
0
integrator.js
adservice.google.com/adsid/
107 B
456 B
Script
General
Full URL
https://adservice.google.com/adsid/integrator.js?domain=iphonetsu.com
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:808::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
a4a1824defec1084ca81d496ee77891684c26196924bdc4fc21dd3482ce15e14
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
server
cafe
content-type
application/javascript; charset=UTF-8
p3p
CP="This is not a P3P policy! See http://support.google.com/accounts/answer/151657 for more info."
cache-control
private, no-cache, no-store
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
100
x-xss-protection
0
ads
googleads.g.doubleclick.net/pagead/ Frame 127A
140 KB
43 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
0f06c3b871ba936ec71ba3888bd643fb5f60b8da4d2b1b4d89daa30c62a1296c
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private
content-encoding
br
content-length
43634
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:21 GMT
expires
Sun, 16 Jul 2023 22:01:21 GMT
observe-browsing-topics
?1
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
x-content-type-options
nosniff
x-xss-protection
0
sodar
pagead2.googlesyndication.com/getconfig/
15 KB
12 KB
XHR
General
Full URL
https://pagead2.googlesyndication.com/getconfig/sodar?sv=200&tid=gda&tv=r20230711&st=env
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
ac847f783234f52d2cc9a4ebabfb4f0ce47eb9bdf578e7e38fc0bdd52bb5aad3
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:20 GMT
content-encoding
br
x-content-type-options
nosniff
server
cafe
content-type
application/json; charset=UTF-8
access-control-allow-origin
*
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
11794
x-xss-protection
0
ads
googleads.g.doubleclick.net/pagead/ Frame 709D
114 KB
38 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
785fa2f53bbe1f1c900f19b193768036247543af4c0096488a88e534818c81c5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private
content-encoding
br
content-length
39105
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:21 GMT
expires
Sun, 16 Jul 2023 22:01:21 GMT
observe-browsing-topics
?1
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
x-content-type-options
nosniff
x-xss-protection
0
ads
googleads.g.doubleclick.net/pagead/ Frame 13D7
607 KB
114 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&adk=1812271804&adf=3025194257&lmt=1689544880&plat=9%3A32776%2C16%3A8388608%2C17%3A32%2C24%3A32%2C25%3A32%2C30%3A1081344%2C32%3A32%2C41%3A32%2C42%3A32&plas=212x945_l%7C212x945_r&format=0x0&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&ea=0&pra=7&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880645&bpp=1&bdt=498&idt=259&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280%2C1082x280&nras=1&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=-12245933&ady=-12245933&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=32768&bc=31&ifi=3&uci=a!3&fsb=1&dtd=273
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
236c2d65caa919bb7f7bafe2218843aa2d216c24907985740d79fca9e904473a
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private
content-encoding
br
content-length
116843
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:21 GMT
expires
Sun, 16 Jul 2023 22:01:21 GMT
observe-browsing-topics
?1
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
x-content-type-options
nosniff
x-xss-protection
0
sodar2.js
tpc.googlesyndication.com/sodar/
17 KB
7 KB
Script
General
Full URL
https://tpc.googlesyndication.com/sodar/sodar2.js
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
61c32059a5e94075a7ecff678b33907966fc9cfa384daa01aa057f872da14dbb
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
6386
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="adspam-signals-scs"
etag
"1637097310169751"
vary
Accept-Encoding
report-to
{"group":"adspam-signals-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/adspam-signals-scs"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
expires
Sun, 16 Jul 2023 22:01:21 GMT
css
fonts.googleapis.com/ Frame 709D
14 KB
2 KB
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
aade7746342f608807b7eb107059c842fe200e1ff09e146db822250055cecaed
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:54:51 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:21 GMT
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 709D
2 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12404
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
14763004658117789537
tpc.googlesyndication.com/simgad/9240886996696155612/ Frame 709D
14 KB
15 KB
Image
General
Full URL
https://tpc.googlesyndication.com/simgad/9240886996696155612/14763004658117789537?w=600&h=314
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
a6bde669645cc8e41137ac301f167d94e28c0a192584c8100eb9683bd0bc1324
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 22:14:49 GMT
x-content-type-options
nosniff
age
258392
x-dns-prefetch-control
off
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14613
x-xss-protection
0
last-modified
Wed, 05 Apr 2023 10:40:27 GMT
server
sffe
report-to
{"group":"content-ads-owners","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/content-ads-owners"}]}
content-type
image/jpeg
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
cross-origin-opener-policy-report-only
same-origin; report-to="content-ads-owners"
expires
Fri, 12 Jul 2024 22:14:49 GMT
truncated
/ Frame 709D
206 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
44eefef34507164f4234b958d8f6906488a2521071379498041568bae9499b2e

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame 709D
209 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
d7779d95203bed5280ee3281f856607f95ac5df680547356656c7109d7d0a6a6

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame 709D
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35896
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 709D
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17199
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 709D
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame 709D
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:21 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame 709D
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255681
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
css
fonts.googleapis.com/ Frame 127A
14 KB
1 KB
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
aade7746342f608807b7eb107059c842fe200e1ff09e146db822250055cecaed
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:12:52 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:21 GMT
runner.html
tpc.googlesyndication.com/sodar/sodar2/225/ Frame 6781
13 KB
5 KB
Document
General
Full URL
https://tpc.googlesyndication.com/sodar/sodar2/225/runner.html
Requested by
Host: tpc.googlesyndication.com
URL: https://tpc.googlesyndication.com/sodar/sodar2.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
55a119c0394f901a8a297e109c17b5e5402689708b999ab10691c16179f32a4a
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

accept-ranges
bytes
age
5181
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=31536000
content-encoding
gzip
content-length
5046
content-type
text/html
cross-origin-opener-policy
same-origin; report-to="adspam-signals-scs"
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 20:35:00 GMT
expires
Mon, 15 Jul 2024 20:35:00 GMT
last-modified
Mon, 21 Jun 2021 20:47:05 GMT
report-to
{"group":"adspam-signals-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/adspam-signals-scs"}]}
server
sffe
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
aframe
www.google.com/recaptcha/api2/ Frame 0305
783 B
1 KB
Document
General
Full URL
https://www.google.com/recaptcha/api2/aframe
Requested by
Host: tpc.googlesyndication.com
URL: https://tpc.googlesyndication.com/sodar/sodar2.js
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:82b::2004 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
GSE /
Resource Hash
f3eca3bb87009a2f7f3d8de686c0a10fd6cb7eccda56e8315ec9e5b9f0902280
Security Headers
Name Value
Content-Security-Policy script-src 'report-sample' 'nonce-Iv74RhZFAbui_QIe2CuFoA' 'unsafe-inline' 'strict-dynamic' https: http: 'unsafe-eval';object-src 'none';base-uri 'self';report-uri https://csp.withgoogle.com/csp/recaptcha/1
X-Content-Type-Options nosniff
X-Xss-Protection 1; mode=block

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private, max-age=300
content-encoding
gzip
content-length
512
content-security-policy
script-src 'report-sample' 'nonce-Iv74RhZFAbui_QIe2CuFoA' 'unsafe-inline' 'strict-dynamic' https: http: 'unsafe-eval';object-src 'none';base-uri 'self';report-uri https://csp.withgoogle.com/csp/recaptcha/1
content-type
text/html; charset=utf-8
cross-origin-embedder-policy
require-corp
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:21 GMT
expires
Sun, 16 Jul 2023 22:01:21 GMT
report-to
{"group":"recaptcha","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/recaptcha"}]}
server
GSE
x-content-type-options
nosniff
x-xss-protection
1; mode=block
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 127A
2 KB
927 B
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12404
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame 127A
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35896
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 127A
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17199
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 127A
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame 127A
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:21 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame 127A
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255681
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
data=4xwvOt-oQoHhvuRZqmriYMpW1jRlYVYiTRzwZcSB9i8a0kA0kwi0lx3BI58ZhA6H37eirs3ht2HVF58jQJukXQ
mts0.google.com/vt/ Frame 127A
0
0
Image
General
Full URL
https://mts0.google.com/vt/data=4xwvOt-oQoHhvuRZqmriYMpW1jRlYVYiTRzwZcSB9i8a0kA0kwi0lx3BI58ZhA6H37eirs3ht2HVF58jQJukXQ
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:810::200e Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
/
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

truncated
/ Frame 127A
297 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
65f22d8aa0690bd9cf8ffe5d68e5f6866b05ed8fc6f6c9083b996c1b3c4c75f4

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame 127A
465 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
41b7f4ef86f2344e72da822fe79265700ff1bf3361450a02ab4397ff1a5eb040

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame 127A
333 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
8b1ccf2d92e5e6235fcb23becebc6b98f5eba33abad7902763aa8b830be20bd7

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame 127A
336 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
be3b15b1e68cf3e9278293d3b50491fe16c985e0ee5968852cac4fc062a7134e

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame 709D
211 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
a81998dc69ec853fd90829a67fe1c3f676c00b1758747267b6a2730aad7f11cc

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/png
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame 6781
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: tpc.googlesyndication.com
URL: https://tpc.googlesyndication.com/sodar/sodar2/225/runner.html
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://tpc.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549127
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2
fonts.gstatic.com/s/googlesans/v58/ Frame 709D
33 KB
34 KB
Font
General
Full URL
https://fonts.gstatic.com/s/googlesans/v58/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2
Requested by
Host: fonts.googleapis.com
URL: https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
65c99d3b9f1a1b905046e30d00a97f2d4d605e565c32917e7a89a35926e04b98
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://fonts.googleapis.com/
Origin
https://googleads.g.doubleclick.net
accept-language
nl-NL,nl;q=0.9
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Tue, 11 Jul 2023 19:09:17 GMT
x-content-type-options
nosniff
age
442324
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
34108
x-xss-protection
0
last-modified
Tue, 23 May 2023 16:35:55 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Wed, 10 Jul 2024 19:09:17 GMT
truncated
/ Frame 127A
210 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
03ad820be05759dc5d0d95670893ef2114f8423a87b1696b0aeac45b36f13b8b

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/png
reactive_library_fy2021.js
pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/
154 KB
52 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/reactive_library_fy2021.js
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
a7d15e24c0063f9e4e9179c28f700b470e405af7f226ef8694bdb37ae87ee92f
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
br
x-content-type-options
nosniff
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
53520
x-xss-protection
0
server
cafe
etag
8326107451767308847
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
cache-control
private, max-age=1209600
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:21 GMT
integrator.js
adservice.google.com/adsid/
107 B
165 B
Script
General
Full URL
https://adservice.google.com/adsid/integrator.js?domain=iphonetsu.com
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:808::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
a4a1824defec1084ca81d496ee77891684c26196924bdc4fc21dd3482ce15e14
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
server
cafe
content-type
application/javascript; charset=UTF-8
p3p
CP="This is not a P3P policy! See http://support.google.com/accounts/answer/151657 for more info."
cache-control
private, no-cache, no-store
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
100
x-xss-protection
0
ads
googleads.g.doubleclick.net/pagead/ Frame CE5A
116 KB
40 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
16436c72750091e52e2166c2cc352d7775378b00cc7a59caf9fe7cf3bedc1dce
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private
content-encoding
br
content-length
40934
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:22 GMT
expires
Sun, 16 Jul 2023 22:01:22 GMT
observe-browsing-topics
?1
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
x-content-type-options
nosniff
x-xss-protection
0
4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2
fonts.gstatic.com/s/googlesans/v58/ Frame 127A
33 KB
33 KB
Font
General
Full URL
https://fonts.gstatic.com/s/googlesans/v58/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2
Requested by
Host: fonts.googleapis.com
URL: https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
65c99d3b9f1a1b905046e30d00a97f2d4d605e565c32917e7a89a35926e04b98
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://fonts.googleapis.com/
Origin
https://googleads.g.doubleclick.net
accept-language
nl-NL,nl;q=0.9
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Tue, 11 Jul 2023 19:09:17 GMT
x-content-type-options
nosniff
age
442324
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
34108
x-xss-protection
0
last-modified
Tue, 23 May 2023 16:35:55 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Wed, 10 Jul 2024 19:09:17 GMT
sodar
pagead2.googlesyndication.com/pagead/ Frame 0305
0
0
Image
General
Full URL
https://pagead2.googlesyndication.com/pagead/sodar?id=sodar2&v=225&li=gda_r20230711&jk=3473306514976882&rc=
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
/
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://www.google.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

adview
googleads.g.doubleclick.net/pagead/ Frame 709D
0
23 B
Image
General
Full URL
https://googleads.g.doubleclick.net/pagead/adview?ai=C44EssGi0ZPWROYartwfPyLuoDOyPvvRvn63n67gRh8u9_McBEAEg56WhBWCRhKCFjBigAbe4wb8pyAEJqQJymQG4SNayPqgDAcgDywSqBI4CT9DWbwEb713nsz_Ey9iHApbuaOyo1WVhDkywrKwYT3ak_vWkE64lzJus5sXVaN6VNkbV6tDRfsdzDlWJvHpOju2R_gMzmtr8PjLyETvo9kFDC7gnQNDG0Q7RKgz_ECbjbMRFs33XL18-12lLEpFsf_ttH7LNr1wuwMZIFZpAPjnUPj596t5uFUh2FwlRSjdyXQC1zYinYCtO5e2MKShQCMCp7iy8_RU5zwq8tOBiNHGZVhXOM4jasMUxhXWaK26UiOtx3UneLLZ0TW5HoFxB3RHq-qRiKIFe1ODkQe8ZYP9kqLrxVKdm99imE5bEYjmSqtv1fvY9XmtauMcoZNdrEo6Yq_wrz0gT7ZIEJ2lPwATu9LjtqQSSBQQIBBgBkgUECAUYBKAGLoAHt_CRnwSoB47OG6gHk9gbqAfulrECqAf-nrECqAeko7ECqAfVyRuoB6a-G9gHAPIHBBDDqgrSCBYIgOGAEBABGB8yAqoCOgKAQEi9_cE6gAoByAsBogwIKgYKBMOwsQLYEwrQFQGAFwGyFxwKGggAEhRwdWItNzY1MjExMDYyMTczMDQwORgA&sigh=Riw5WVpbz9w&uach_m=[UACH]&cid=CAQSGwBpAlJWPgckGSviLtwvH25hQYJzsaF3It0gcBgB&template_id=5000&cbvp=2&vis=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy script-src 'none'; object-src 'none'
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

content-security-policy
script-src 'none'; object-src 'none'
date
Sun, 16 Jul 2023 22:01:21 GMT
x-content-type-options
nosniff
server
cafe
content-type
text/html; charset=UTF-8
access-control-allow-origin
*
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
cache-control
private
access-control-allow-credentials
true
cross-origin-resource-policy
cross-origin
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
x-xss-protection
0
expires
Sun, 16 Jul 2023 22:01:21 GMT
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame 06F4
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=4041291795&adk=254886622&adf=794698646&pi=t.ma~as.4041291795&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880628&bpp=1&bdt=482&idt=253&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&prev_fmts=1082x280&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=1469&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeEbr%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=2&uci=a!2&btvi=1&fsb=1&xpc=3u4YvFVsHW&p=https%3A//iphonetsu.com&dtd=257
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549127
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
zrt_lookup.html
googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/ Frame 9FD8
10 KB
4 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
18e7a53e3b3abd7ac0242719f7f62cb56b8efe7065091585b8ad22cbc2b8c41c
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
25191
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=1209600
content-encoding
br
content-length
4544
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 15:01:30 GMT
etag
12368291122986407432
expires
Sun, 30 Jul 2023 15:01:30 GMT
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
zrt_lookup.html
googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/ Frame B362
10 KB
4 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
18e7a53e3b3abd7ac0242719f7f62cb56b8efe7065091585b8ad22cbc2b8c41c
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
25191
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=1209600
content-encoding
br
content-length
4544
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 15:01:30 GMT
etag
12368291122986407432
expires
Sun, 30 Jul 2023 15:01:30 GMT
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
zrt_lookup.html
googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/ Frame FFB5
10 KB
4 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
18e7a53e3b3abd7ac0242719f7f62cb56b8efe7065091585b8ad22cbc2b8c41c
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
25191
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=1209600
content-encoding
br
content-length
4544
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 15:01:30 GMT
etag
12368291122986407432
expires
Sun, 30 Jul 2023 15:01:30 GMT
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
zrt_lookup.html
googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/ Frame B4A9
10 KB
4 KB
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Requested by
Host: pagead2.googlesyndication.com
URL: https://pagead2.googlesyndication.com/pagead/managed/js/adsense/m202307110102/show_ads_impl_with_ama_fy2021.js?client=ca-pub-7652110621730409&plah=iphonetsu.com
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
18e7a53e3b3abd7ac0242719f7f62cb56b8efe7065091585b8ad22cbc2b8c41c
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://iphonetsu.com/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
25191
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=1209600
content-encoding
br
content-length
4544
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 15:01:30 GMT
etag
12368291122986407432
expires
Sun, 30 Jul 2023 15:01:30 GMT
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
timing-allow-origin
*
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
adview
googleads.g.doubleclick.net/pagead/ Frame 127A
0
23 B
Image
General
Full URL
https://googleads.g.doubleclick.net/pagead/adview?ai=CRmrhsGi0ZKz_N9iitweK5IyYA8-R6aVxqp7695ERy8utl94aEAEg56WhBWCRhKCFjBigAa_dw48pyAEJqQJymQG4SNayPqgDAcgDywSqBIsCT9AINbYCBjYRufhKNR3GVnmKHd7eCjlPyhD9_qOallaSlu3jtZc7tjHhc3hoT4hh7fO5P4XGQjhZDe02agXHaWqjcnZShbrCyHZGgGFKexXM2qLiXM_FwauDKBLpJ0LIXzCldJEKib5Dr1x4bNgtl4b5Ec7amBffmXiWic8z-wE5z3uA4a2JJM0UKtwF6tA28r_WeqHhPPfWYz4PXIvCWdrykLZTHGgLt19aHd3V1qZBN3SgNaNbxYy5Etz5HtqOK1lezbRDvGpjHAorgT3rqWgoztORk_g01tMnXtyb67UE0EwatUyCSRDbysEoSVzCcJcCSIYpc18Fhdy_kxA7ge_wU6-S5-jkkUB6wASD6M38oASSBQQIBBgBkgUECAUYBKAGLoAHr5WU7wOoB47OG6gHk9gbqAfulrECqAf-nrECqAeko7ECqAfVyRuoB6a-G9gHAPIHBBCvgCTSCBYIgOGAEBABGB8yAqoCOgKAQEi9_cE6gAoByAsBogwIKgYKBMOwsQK4E4gE2BMK0BUBgBcBshccChoIABIUcHViLTc2NTIxMTA2MjE3MzA0MDkYAA&sigh=ZcEqzRgTtqA&uach_m=[UACH]&cid=CAQSGwBpAlJWEy53OWPkgNseUw7Ud6Q4HsfErgD3hBgB&template_id=520&cbvp=2&vis=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy script-src 'none'; object-src 'none'
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

content-security-policy
script-src 'none'; object-src 'none'
date
Sun, 16 Jul 2023 22:01:21 GMT
x-content-type-options
nosniff
server
cafe
content-type
text/html; charset=UTF-8
access-control-allow-origin
*
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
cache-control
private
access-control-allow-credentials
true
cross-origin-resource-policy
cross-origin
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
x-xss-protection
0
expires
Sun, 16 Jul 2023 22:01:21 GMT
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame E710
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=280&slotname=5412770130&adk=3484801312&adf=3069097852&pi=t.ma~as.5412770130&w=1082&fwrn=4&fwrnh=100&lmt=1689544880&rafmt=1&format=1082x280&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&rpe=1&resp_fmts=3&wgl=1&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544880623&bpp=5&bdt=476&idt=231&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&correlator=188256451487&frm=20&pv=2&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=259&ady=358&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7CeE%7C&abl=CS&pfx=0&fu=128&bc=31&ifi=1&uci=a!1&fsb=1&xpc=XbMjUrY9vk&p=https%3A//iphonetsu.com&dtd=247
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549127
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
css2
fonts.googleapis.com/ Frame 9FD8
4 KB
744 B
Stylesheet
General
Full URL
https://fonts.googleapis.com/css2?family=Roboto:wght@400;700&display=swap
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
2d0922bd18f06df3c7413fcd6a3f1c5ec9545b4b07b131e362f30df7275fc058
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:18:05 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:21 GMT
feedback_grey600_24dp.png
www.gstatic.com/images/icons/material/system/2x/ Frame 9FD8
205 B
520 B
Image
General
Full URL
https://www.gstatic.com/images/icons/material/system/2x/feedback_grey600_24dp.png
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
4d45982f2dc34f36c9045ee46a75a1943666bb7fd64e103cac8c7429e7012840
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Fri, 14 Jul 2023 09:18:57 GMT
x-content-type-options
nosniff
age
218544
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
205
x-xss-protection
0
last-modified
Wed, 28 Jun 2023 17:48:00 GMT
server
sffe
vary
Origin
report-to
{"group":"static-on-bigtable","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/static-on-bigtable"}]}
content-type
image/png
cache-control
public, max-age=31536000
accept-ranges
bytes
cross-origin-opener-policy-report-only
same-origin; report-to="static-on-bigtable"
expires
Sat, 13 Jul 2024 09:18:57 GMT
settings_grey600_24dp.png
www.gstatic.com/images/icons/material/system/2x/ Frame 9FD8
604 B
696 B
Image
General
Full URL
https://www.gstatic.com/images/icons/material/system/2x/settings_grey600_24dp.png
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
5c4a713ee4250851232be9f9f68d41586be39b299528cfc7266e0b0e7e582e1b
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sat, 15 Jul 2023 12:13:24 GMT
x-content-type-options
nosniff
age
121677
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
604
x-xss-protection
0
last-modified
Wed, 28 Jun 2023 17:48:00 GMT
server
sffe
vary
Origin
report-to
{"group":"static-on-bigtable","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/static-on-bigtable"}]}
content-type
image/png
cache-control
public, max-age=31536000
accept-ranges
bytes
cross-origin-opener-policy-report-only
same-origin; report-to="static-on-bigtable"
expires
Sun, 14 Jul 2024 12:13:24 GMT
interstitial_ad_frame_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/elements/html/ Frame 9FD8
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/elements/html/interstitial_ad_frame_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
407e5f7555fe203a6245ac0209874437d50b9daf51a7102e6fd90a99a3df1717
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 14:12:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
28119
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8599
x-xss-protection
0
server
cafe
etag
12796843930313450165
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 14:12:42 GMT
generate_204
tpc.googlesyndication.com/ Frame 6781
0
10 B
Image
General
Full URL
https://tpc.googlesyndication.com/generate_204?HCp4kA
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
/
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://tpc.googlesyndication.com/sodar/sodar2/225/runner.html
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame B362
2 KB
892 B
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12404
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame B362
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35896
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame B362
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17199
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame B362
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame B362
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:21 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame B362
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255681
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
css
fonts.googleapis.com/ Frame FFB5
14 KB
1 KB
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
aade7746342f608807b7eb107059c842fe200e1ff09e146db822250055cecaed
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:12:28 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:21 GMT
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame FFB5
2 KB
892 B
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12404
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame FFB5
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35896
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame FFB5
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17199
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame FFB5
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame FFB5
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:21 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame FFB5
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255681
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
css
fonts.googleapis.com/ Frame B4A9
14 KB
1 KB
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
aade7746342f608807b7eb107059c842fe200e1ff09e146db822250055cecaed
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:21 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:10:21 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:21 GMT
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame B4A9
2 KB
892 B
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12404
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame B4A9
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35896
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame B4A9
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17199
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame B4A9
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame B4A9
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:22 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:22 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame B4A9
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255681
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
truncated
/ Frame B4A9
336 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
be3b15b1e68cf3e9278293d3b50491fe16c985e0ee5968852cac4fc062a7134e

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
css
fonts.googleapis.com/ Frame 58FD
249 B
266 B
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Noto%20Sans%20JP%3A400&text=%E9%96%89%E3%81%98%E3%82%8B
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
0bb5af18639dfc54932f4340945c1dceeb1e5aac5933b578f2ab597f29137599
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:22 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 22:01:22 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:22 GMT
css
fonts.googleapis.com/ Frame 58FD
14 KB
1 KB
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
aade7746342f608807b7eb107059c842fe200e1ff09e146db822250055cecaed
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:22 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:13:17 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:22 GMT
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 58FD
2 KB
892 B
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12405
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame 58FD
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
s
googleads.g.doubleclick.net/pagead/drt/ Frame DF29
143 B
166 B
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/drt/s?v=r20120211
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
18088c10e79c926292732af98a0ce470e90f3fbcba4bb4896ab3310c2d94e421
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
2691
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=3600
content-encoding
gzip
content-length
145
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 21:16:31 GMT
server
cafe
timing-allow-origin
*
x-content-type-options
nosniff
x-xss-protection
0
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 58FD
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17200
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame 58FD
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35898
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame 58FD
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:22 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:22 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame 58FD
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255682
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
truncated
/ Frame B4A9
210 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
534117164edcb7baeadb94679e91a329dae890c304fdac74537bf06b3ca7faf7

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/png
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame 0FA8
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549128
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
css
fonts.googleapis.com/ Frame CE5A
14 KB
1 KB
Stylesheet
General
Full URL
https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:829::200a Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
ESF /
Resource Hash
aade7746342f608807b7eb107059c842fe200e1ff09e146db822250055cecaed
Security Headers
Name Value
Strict-Transport-Security max-age=31536000
X-Content-Type-Options nosniff
X-Frame-Options SAMEORIGIN
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

strict-transport-security
max-age=31536000
date
Sun, 16 Jul 2023 22:01:22 GMT
content-encoding
gzip
x-content-type-options
nosniff
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
x-xss-protection
0
last-modified
Sun, 16 Jul 2023 21:12:52 GMT
server
ESF
cross-origin-opener-policy
same-origin-allow-popups
x-frame-options
SAMEORIGIN
content-type
text/css; charset=utf-8
access-control-allow-origin
*
cache-control
private, max-age=86400, stale-while-revalidate=604800
timing-allow-origin
*
link
<https://fonts.gstatic.com>; rel=preconnect; crossorigin
expires
Sun, 16 Jul 2023 22:01:22 GMT
load_preloaded_resource_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame CE5A
2 KB
892 B
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/load_preloaded_resource_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3ab7853ddfc8ef3468082187bff5636436df85cd9d1e54653530c018cf9d9280
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 18:34:37 GMT
content-encoding
br
x-content-type-options
nosniff
age
12405
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
865
x-xss-protection
0
server
cafe
etag
5051423035144352294
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 18:34:37 GMT
abg_lite_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/ Frame CE5A
23 KB
9 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/abg_lite_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
02193fbcb11d960448e0fa887ff68d5ce73f01076893523fc3037e00a7149bc2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:05 GMT
content-encoding
br
x-content-type-options
nosniff
age
35897
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
9104
x-xss-protection
0
server
cafe
etag
12939045362079141464
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:05 GMT
window_focus_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame CE5A
3 KB
1 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/window_focus_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
3164db7ef9efc7121ce85192340a653c6cb87e34caa05849c8fd47b7872f9fc5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 17:14:42 GMT
content-encoding
br
x-content-type-options
nosniff
age
17200
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
1236
x-xss-protection
0
server
cafe
etag
15004572836499977866
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 17:14:42 GMT
qs_click_protection_fy2021.js
tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/ Frame CE5A
20 KB
8 KB
Script
General
Full URL
https://tpc.googlesyndication.com/pagead/js/r20230711/r20110914/client/qs_click_protection_fy2021.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
5dff1c5185bfe98d10fd4b80ad1e2a04d57365a09e631840dce7fd3c79d19971
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 12:03:04 GMT
content-encoding
br
x-content-type-options
nosniff
age
35898
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cross-origin-resource-policy
cross-origin
content-disposition
attachment; filename="f.txt"
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
8314
x-xss-protection
0
server
cafe
etag
15120507268597061312
vary
Accept-Encoding
content-type
text/javascript; charset=UTF-8
access-control-allow-origin
*
cache-control
public, max-age=1209600
timing-allow-origin
*
expires
Sun, 30 Jul 2023 12:03:04 GMT
l
www.google.com/ads/measurement/ Frame CE5A
0
0
Image
General
Full URL
https://www.google.com/ads/measurement/l?ebcid=ALh7CaQ6m7t8evg5zLIeUdsA6lZ9wzYYLqvmgy74FMPgr9mPz1eLoaqA2uqaVHv17WPXKIJCGyZfykMvg_PGKmjqoNuLWghnBA
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:82b::2004 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
/
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

rx_lidar.js
www.googletagservices.com/activeview/js/current/ Frame CE5A
179 KB
56 KB
Script
General
Full URL
https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b72dda235b143194413283de53498a1e9c2cc2142558b6fe8b80f6ac551520c2
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:22 GMT
content-encoding
gzip
x-content-type-options
nosniff
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/active-view-scs-read-write-acl
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
57311
x-xss-protection
0
server
sffe
cross-origin-opener-policy
same-origin; report-to="active-view-scs-read-write-acl"
etag
"1689162493659380"
vary
Accept-Encoding
report-to
{"group":"active-view-scs-read-write-acl","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/active-view-scs-read-write-acl"}]}
content-type
text/javascript
cache-control
private, max-age=3000
accept-ranges
bytes
timing-allow-origin
*
expires
Sun, 16 Jul 2023 22:01:22 GMT
2a76cf1338a212cd33ad52adb05195b7.js
www.gstatic.com/mysidia/ Frame CE5A
33 KB
14 KB
Script
General
Full URL
https://www.gstatic.com/mysidia/2a76cf1338a212cd33ad52adb05195b7.js?tag=mysidia_one_click_handler_one_afma_2019
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
3ac22a80a1517c4b3751f554c5ea17e9906473d3fff568baa668e37588ba753d
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Thu, 13 Jul 2023 23:00:00 GMT
content-encoding
gzip
x-content-type-options
nosniff
age
255682
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/mysidia
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14183
x-xss-protection
0
last-modified
Tue, 11 Jul 2023 07:02:30 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="mysidia"
vary
Accept-Encoding
report-to
{"group":"mysidia","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/mysidia"}]}
content-type
text/javascript
cache-control
public, max-age=7776000
accept-ranges
bytes
expires
Wed, 11 Oct 2023 23:00:00 GMT
adview
googleads.g.doubleclick.net/pagead/ Frame B4A9
0
19 B
Image
General
Full URL
https://googleads.g.doubleclick.net/pagead/adview?ai=CsuOfsGi0ZICOO8G7tgfXxaToAc-R6aVxqp7695ERy8utl94aEAEg56WhBWCRhKCFjBigAa_dw48pyAEJqQJymQG4SNayPqgDAcgDywSqBI4CT9BmHgSvJT51LHEbBvGUsPLjQk3Y6tohD5f0ljGH_88dGRPqIBvYtBaI2IjNK3K8cDRT5Uo86lLsTM-SEulcGHGgqaxhX-9z_ehJwNZkP3rnr6IXgOq-VPHsLHMRa_xXynyqC10lreXOt8Z-v4o9pdnk6b8nChEMjn-Epjd-W_imxs5jkMbfrdmjWMr2PR_al1tSQCvILqVf-94sHWZjB4pg-7b8JFtf6KhHqINO3w3FXhGLkPjLvJW41l_krYZm34NEOZTWHMuuv0KVDgt1L9vMORNQXTrF7Z_AlWjl-xMopvtmgmtzFx25EfX9ZU8NmlN1RDjH1KDuQNP6UR1uFwAt0jtD3ZD3RYGSrylmwASD6M38oASSBQQIBBgBkgUECAUYBKAGLoAHr5WU7wOoB47OG6gHk9gbqAfulrECqAf-nrECqAeko7ECqAfVyRuoB6a-G9gHAPIHBBDc6gvSCBYIgOGAEBABGB8yAqoCOgKAQEi9_cE6gAoByAsBogwIKgYKBMOwsQK4E4gE2BMK0BUBgBcBshccChoIABIUcHViLTc2NTIxMTA2MjE3MzA0MDkYAA&sigh=p0Wj_BYj1Ak&uach_m=[UACH]&cid=CAQSGwBpAlJWWtzaWdUBhT710H0qbkzGfM4L5oL4OxgB&template_id=520&cbvp=2&vis=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy script-src 'none'; object-src 'none'
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

content-security-policy
script-src 'none'; object-src 'none'
date
Sun, 16 Jul 2023 22:01:22 GMT
x-content-type-options
nosniff
server
cafe
content-type
text/html; charset=UTF-8
access-control-allow-origin
*
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
access-control-allow-credentials
true
cross-origin-resource-policy
cross-origin
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
x-xss-protection
0
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame 47C2
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549128
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
cookie_push_onload.html
pagead2.googlesyndication.com/pagead/s/ Frame 2096
1 KB
643 B
Document
General
Full URL
https://pagead2.googlesyndication.com/pagead/s/cookie_push_onload.html
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
9a9b7fb32e01fd70747f32efdbd0472fd681c85eebb0c42d10c7a514820a0062
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://googleads.g.doubleclick.net/
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

age
29663
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
public, max-age=86400
content-encoding
br
content-length
618
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 13:46:59 GMT
etag
48472445140208031
expires
Mon, 17 Jul 2023 13:46:59 GMT
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
server
cafe
timing-allow-origin
*
vary
Accept-Encoding
x-content-type-options
nosniff
x-xss-protection
0
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame FA26
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549128
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
si
googleads.g.doubleclick.net/pagead/drt/ Frame DF29
Redirect Chain
  • https://www.google.com/pagead/drt/ui
  • https://googleads.g.doubleclick.net/pagead/drt/si?st=NO_DATA
0
17 B
Document
General
Full URL
https://googleads.g.doubleclick.net/pagead/drt/si?st=NO_DATA
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://googleads.g.doubleclick.net/pagead/drt/s?v=r20120211
Upgrade-Insecure-Requests
1
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36
accept-language
nl-NL,nl;q=0.9

Response headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private
content-length
0
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:22 GMT
expires
Sun, 16 Jul 2023 22:01:22 GMT
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
server
cafe
x-content-type-options
nosniff
x-xss-protection
0

Redirect headers

alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
cache-control
private
content-length
0
content-type
text/html; charset=UTF-8
cross-origin-resource-policy
cross-origin
date
Sun, 16 Jul 2023 22:01:22 GMT
location
https://googleads.g.doubleclick.net/pagead/drt/si?st=NO_DATA
server
cafe
timing-allow-origin
*
x-content-type-options
nosniff
x-xss-protection
0
14763004658117789537
tpc.googlesyndication.com/simgad/12603018742208322915/ Frame CE5A
3 KB
3 KB
Image
General
Full URL
https://tpc.googlesyndication.com/simgad/12603018742208322915/14763004658117789537?w=195&h=102
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:813::2001 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
b3995af6e84e70f002837329a43dc8894ee643223d17ca4dfa42361185d831b5
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 06:32:20 GMT
x-content-type-options
nosniff
age
55742
x-dns-prefetch-control
off
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
2718
x-xss-protection
0
last-modified
Fri, 20 Jan 2023 11:24:45 GMT
server
sffe
report-to
{"group":"content-ads-owners","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/content-ads-owners"}]}
content-type
image/jpeg
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
cross-origin-opener-policy-report-only
same-origin; report-to="content-ads-owners"
expires
Mon, 15 Jul 2024 06:32:20 GMT
truncated
/ Frame CE5A
209 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
d7779d95203bed5280ee3281f856607f95ac5df680547356656c7109d7d0a6a6

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame CE5A
206 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
44eefef34507164f4234b958d8f6906488a2521071379498041568bae9499b2e

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/svg+xml
truncated
/ Frame CE5A
214 B
0
Image
General
Full URL
data:truncated
Protocol
DATA
Server
-, , ASN (),
Reverse DNS
Software
/
Resource Hash
dc1b107ddd9889e2e19441175a01c7f6c7611f5a1e04abb227ce34084e2e431e

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

Content-Type
image/png
4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2
fonts.gstatic.com/s/googlesans/v58/ Frame CE5A
33 KB
33 KB
Font
General
Full URL
https://fonts.gstatic.com/s/googlesans/v58/4UasrENHsxJlGDuGo1OIlJfC6l_24rlCK1Yo_Iqcsih3SAyH6cAwhX9RPjIUvQ.woff2
Requested by
Host: fonts.googleapis.com
URL: https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
2a00:1450:4001:80f::2003 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
65c99d3b9f1a1b905046e30d00a97f2d4d605e565c32917e7a89a35926e04b98
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

Referer
https://fonts.googleapis.com/
Origin
https://googleads.g.doubleclick.net
accept-language
nl-NL,nl;q=0.9
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Tue, 11 Jul 2023 19:09:17 GMT
x-content-type-options
nosniff
age
442325
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/apps-themes
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
34108
x-xss-protection
0
last-modified
Tue, 23 May 2023 16:35:55 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="apps-themes"
report-to
{"group":"apps-themes","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/apps-themes"}]}
content-type
font/woff2
access-control-allow-origin
*
cache-control
public, max-age=31536000
accept-ranges
bytes
timing-allow-origin
*
expires
Wed, 10 Jul 2024 19:09:17 GMT
/
r.turn.com/r/cms/id/0/ddc/1/pid/18/uid/ Frame 2096
Redirect Chain
  • https://ad.turn.com/r/cs?pid=3&google_gid=CAESEIaxEHqK73Itg0GoKNcxpmE&google_cver=1&google_push=AaAOQGF5FgRPOhe8f_bX5MggvkKG-_o_JJ5tRWTe5WShtP7PPOX_rBllx7-WvDFVIaq-vi_Qv2sXVQd24SDxccDJt8rStVI1g_09XEU
  • https://cm.g.doubleclick.net/pixel?google_nid=turn1&google_cm&google_sc&google_hm=MzY4MjcxNTEwMDg5NjAwMjgzNA==&gdpr=&gdpr_consent=
  • https://r.turn.com/r/cms/id/0/ddc/1/pid/18/uid/?gdpr=&gdpr_consent=&google_gid=CAESEIaxEHqK73Itg0GoKNcxpmE&google_cver=1
43 B
398 B
Image
General
Full URL
https://r.turn.com/r/cms/id/0/ddc/1/pid/18/uid/?gdpr=&gdpr_consent=&google_gid=CAESEIaxEHqK73Itg0GoKNcxpmE&google_cver=1
Protocol
H2
Server
2001:678:cb4:bbbb::11 , United Kingdom, ASN56396 (AMOBEE, GB),
Reverse DNS
Software
/
Resource Hash
48a33ca9f42b91902d57ad8ac52e1ce32b92c8c10c732f2dbb6fe960ebfd9438

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

content-type
image/gif
pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
cache-control
max-age=0, no-cache, no-store, private, must-revalidate, s-maxage=0
content-length
43
p3p
policyref="/w3c/p3p.xml", CP="NOI CURa DEVa TAIa PSAa PSDa IVAa IVDa OUR IND UNI NAV"

Redirect headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
server
HTTP server (unknown)
content-type
text/html; charset=UTF-8
location
https://r.turn.com/r/cms/id/0/ddc/1/pid/18/uid/?gdpr=&gdpr_consent=&google_gid=CAESEIaxEHqK73Itg0GoKNcxpmE&google_cver=1
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
cache-control
no-cache, must-revalidate
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
329
x-xss-protection
0
expires
Fri, 01 Jan 1990 00:00:00 GMT
dpixel
cms.quantserve.com/ Frame 2096
35 B
463 B
Image
General
Full URL
https://cms.quantserve.com/dpixel?a=p-n5vvLvRdjg0ek&eid=0&qc_google_push=&google_gid=CAESEJPIDaUoff_CT6wzvr__-lg&google_cver=1&google_push=AaAOQGG0ne6U3HMAj3i6xrecJDXTnpflLQ-g5BbY8JcbDdEVciP3Y_u_8mut_afyGnxUWguTRWH46375OWptsqeaUZQxG7q9oPxNKpQ
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H2
Security
TLS 1.2, ECDHE_RSA, AES_128_GCM
Server
2620:116:800d:21:93ca:31d8:d86e:38f6 , United States, ASN16509 (AMAZON-02, US),
Reverse DNS
Software
/
Resource Hash
a0d3a0aff7dc3bf32d2176fc3dcda6e7aba2867c4f4d1f7af6355d2cfc6c44f8
Security Headers
Name Value
Strict-Transport-Security max-age=86400

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
strict-transport-security
max-age=86400
p3p
CP="NOI DSP COR NID CURa ADMa DEVa PSAo PSDo OUR SAMa IND COM NAV"
content-type
image/gif
cache-control
private, no-cache, no-store, proxy-revalidate
content-length
35
expires
Fri, 04 Aug 1978 12:00:00 GMT
current
dclk-match.dotomi.com/match/bounce/ Frame 2096
0
104 B
Image
General
Full URL
https://dclk-match.dotomi.com/match/bounce/current?networkId=14000&version=1&google_gid=CAESECbS_r74mQcqsm4M397LTIE&google_cver=1&google_push=AaAOQGFgMRAJruIMjWDeF2HDo9K0H_KPjZvKLMPYa9wCDPLo2xTNvQhMjFMn97io5O5ENftEF19yaOwtatZ7nqI77nLEXu4GxR9z6VQ
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H2
Security
TLS 1.2, ECDHE_RSA, AES_256_GCM
Server
2a02:fa8:8806:16::1370 , Singapore, ASN41041 (VCLK-EU-SE, US),
Reverse DNS
Software
nginx /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
cache-control
no-cache, private, max-age=0, no-store
server
nginx
expires
0
pixel
cm.g.doubleclick.net/ Frame 2096
Redirect Chain
  • https://sync.mathtag.com/sync/img?mt_exid=4&google_gid=CAESENXQwM1yUvqtJHsAgl9lOVo&google_cver=1&google_push=AaAOQGE3hAv0Hs6ia5qmbG7WVA62k3-parI23HWF_rj-3G-tPYSU7SrF8O31--1lu8cg8aK1lbIuLbHDuCTtdqQh...
  • https://cm.g.doubleclick.net/pixel?google_nid=mediamath&google_hm=&google_push=AaAOQGE3hAv0Hs6ia5qmbG7WVA62k3-parI23HWF_rj-3G-tPYSU7SrF8O31--1lu8cg8aK1lbIuLbHDuCTtdqQh097qqbv-lARr6uQ
170 B
329 B
Image
General
Full URL
https://cm.g.doubleclick.net/pixel?google_nid=mediamath&google_hm=&google_push=AaAOQGE3hAv0Hs6ia5qmbG7WVA62k3-parI23HWF_rj-3G-tPYSU7SrF8O31--1lu8cg8aK1lbIuLbHDuCTtdqQh097qqbv-lARr6uQ
Protocol
H2
Server
142.250.184.226 , United States, ASN15169 (GOOGLE, US),
Reverse DNS
fra24s12-in-f2.1e100.net
Software
HTTP server (unknown) /
Resource Hash
0b8a20373c6dd04e091902226d922b3688143a8938afb9d283d889de7b55ceb5
Security Headers
Name Value
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
server
HTTP server (unknown)
content-type
image/png
cache-control
no-cache, must-revalidate
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
170
x-xss-protection
0
expires
Fri, 01 Jan 1990 00:00:00 GMT

Redirect headers

Date
Sun, 16 Jul 2023 22:01:22 GMT
Server
MT3 1031 59fd23a master cdg cdg-pixel-x30 config_version:"1438"
Content-Type
image/gif
Access-Control-Allow-Origin
*
location
https://cm.g.doubleclick.net/pixel?google_nid=mediamath&google_hm=&google_push=AaAOQGE3hAv0Hs6ia5qmbG7WVA62k3-parI23HWF_rj-3G-tPYSU7SrF8O31--1lu8cg8aK1lbIuLbHDuCTtdqQh097qqbv-lARr6uQ
P3P
CP="NOI DSP COR NID CURa ADMa DEVa PSAa PSDa OUR BUS COM INT OTC PUR STA"
Cache-Control
no-cache
Connection
keep-alive
Keep-Alive
timeout=360
Content-Length
0
Expires
Sun, 16 Jul 2023 22:01:21 GMT
google
match.adsrvr.org/track/cmf/ Frame 2096
70 B
265 B
Image
General
Full URL
https://match.adsrvr.org/track/cmf/google?google_gid=CAESEN4gl7CbZIJZp_eIabhbuVw&google_cver=1&google_push=AaAOQGEAWt8TNIPULqUA_r1hpDX-CEgwMYNGzPTM052ZpHaDSui2u_CUCvThgEG6ppEvpEUs8KG_Ak0EdtxEvg9l3lhiR1v6BDSsVA
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H2
Security
TLS 1.2, ECDHE_RSA, AES_128_GCM
Server
35.71.131.137 , United States, ASN16509 (AMAZON-02, US),
Reverse DNS
a6370ebea231e0c9a.awsglobalaccelerator.com
Software
/
Resource Hash
8d70b3e6badb6973663b398d297bb32eaedd08826a1af98d0a1cfce5324ffce0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

content-type
image/gif
pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
cache-control
private,no-cache, must-revalidate
x-aspnet-version
4.0.30319
content-length
70
p3p
CP="NOI DSP COR CUR ADMo DEVo PSAo PSDo OUR SAMo BUS UNI NAV"
pixel
cm.g.doubleclick.net/ Frame 2096
Redirect Chain
  • https://pr-bh.ybp.yahoo.com/sync/adx?google_gid=CAESEAXDfKcTBSiz08Atu0_HrV4&google_cver=1&google_push=AaAOQGGcKd_qNDUWk_iFY41tuJUQxcvvjFNE_I6dcYthL2w-mCNBDebpsKXhUWdCasHVbd8pbKDD6NkFAfnt9Bzg_VFublz...
  • https://cm.g.doubleclick.net/pixel?google_nid=yahoo&google_push=AaAOQGGcKd_qNDUWk_iFY41tuJUQxcvvjFNE_I6dcYthL2w-mCNBDebpsKXhUWdCasHVbd8pbKDD6NkFAfnt9Bzg_VFublzAo8Pfjfw&google_hm=eS1pdHMxR2dCRTJwSEx...
170 B
232 B
Image
General
Full URL
https://cm.g.doubleclick.net/pixel?google_nid=yahoo&google_push=AaAOQGGcKd_qNDUWk_iFY41tuJUQxcvvjFNE_I6dcYthL2w-mCNBDebpsKXhUWdCasHVbd8pbKDD6NkFAfnt9Bzg_VFublzAo8Pfjfw&google_hm=eS1pdHMxR2dCRTJwSEx1Njg2anp1ZnFwYWNHNEFuSWw2Wn5B
Protocol
H2
Server
142.250.184.226 , United States, ASN15169 (GOOGLE, US),
Reverse DNS
fra24s12-in-f2.1e100.net
Software
HTTP server (unknown) /
Resource Hash
0b8a20373c6dd04e091902226d922b3688143a8938afb9d283d889de7b55ceb5
Security Headers
Name Value
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
server
HTTP server (unknown)
content-type
image/png
cache-control
no-cache, must-revalidate
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
170
x-xss-protection
0
expires
Fri, 01 Jan 1990 00:00:00 GMT

Redirect headers

date
Sun, 16 Jul 2023 22:01:22 GMT
strict-transport-security
max-age=31536000
x-content-type-options
nosniff
referrer-policy
strict-origin-when-cross-origin
server
ATS
content-security-policy
sandbox; default-src 'self'; script-src 'none'; object-src 'none'; report-uri http://csp.yahoo.com/beacon/csp?src=generic
age
0
expect-ct
max-age=31536000, report-uri="http://csp.yahoo.com/beacon/csp?src=yahoocom-expect-ct-report-only"
x-frame-options
DENY
location
https://cm.g.doubleclick.net/pixel?google_nid=yahoo&google_push=AaAOQGGcKd_qNDUWk_iFY41tuJUQxcvvjFNE_I6dcYthL2w-mCNBDebpsKXhUWdCasHVbd8pbKDD6NkFAfnt9Bzg_VFublzAo8Pfjfw&google_hm=eS1pdHMxR2dCRTJwSEx1Njg2anp1ZnFwYWNHNEFuSWw2Wn5B
content-length
0
pixel
cm.g.doubleclick.net/ Frame 2096
Redirect Chain
  • https://d5p.de17a.com/cookies/google?google_gid=CAESEBetfLJOUpoe-0hj4g_5sno&google_cver=1&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UF...
  • https://d5p.de17a.com/cookies/google;c?google_gid=CAESEBetfLJOUpoe-0hj4g_5sno&google_cver=1&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5...
  • https://cm.g.doubleclick.net/pixel?google_nid=delta_projects_ab&google_ula=668382&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UFY5CPaJg8
170 B
232 B
Image
General
Full URL
https://cm.g.doubleclick.net/pixel?google_nid=delta_projects_ab&google_ula=668382&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UFY5CPaJg8
Protocol
H2
Server
142.250.184.226 , United States, ASN15169 (GOOGLE, US),
Reverse DNS
fra24s12-in-f2.1e100.net
Software
HTTP server (unknown) /
Resource Hash
0b8a20373c6dd04e091902226d922b3688143a8938afb9d283d889de7b55ceb5
Security Headers
Name Value
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
server
HTTP server (unknown)
content-type
image/png
cache-control
no-cache, must-revalidate
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
170
x-xss-protection
0
expires
Fri, 01 Jan 1990 00:00:00 GMT

Redirect headers

location
https://cm.g.doubleclick.net/pixel?google_nid=delta_projects_ab&google_ula=668382&google_push=AaAOQGGExsH0B1Vh0umL31Z3vBzPSL3WC6gGj1IMO2Psx4yhXItvWv2VaeqDWW0uJKraP1Gz3QMOktzLLmEtXzkazvEo5UFY5CPaJg8
content-length
0
p3p
CP=NON CURa ADMa DEVa TAIa OUR STP IND UNI COM NAV
attr
cm.g.doubleclick.net/pixel/ Frame 2096
0
130 B
Image
General
Full URL
https://cm.g.doubleclick.net/pixel/attr?d=AHNF13LKqtGMW63F-PtT1R9lAbR1wOflmlR8dc7q_CAjonU20DlVOb89qTyvIP05544B126HbqOZ
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H2
Security
TLS 1.3, , AES_128_GCM
Server
142.250.184.226 , United States, ASN15169 (GOOGLE, US),
Reverse DNS
fra24s12-in-f2.1e100.net
Software
HTTP server (unknown) /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://pagead2.googlesyndication.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Sun, 16 Jul 2023 22:01:22 GMT
server
HTTP server (unknown)
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
x-xss-protection
0
content-type
text/html
adview
googleads.g.doubleclick.net/pagead/ Frame CE5A
0
19 B
Image
General
Full URL
https://googleads.g.doubleclick.net/pagead/adview?ai=CnnCEsWi0ZJ3DK8-e78EPzP2gwAHkyofKbrmJsqPVEcvLrZfeGhABIOeloQVgkYSghYwYoAHZie3TAcgBCakCcpkBuEjWsj6oAwHIA8sEqgSBAk_QFdRP8uNWjDvLONaI_z-MnpU-_84VhL-1s5Pdx6SsqmG6M_Ih1BwuPc5Ti7Hz6j2Ew7icK7EBIcP0lbhudZsxcWw4jxJqnNcNNygYVsTriPmPNBhx49fYBavaTSmu2QxJFRjvviq0QTUFrMH3D5_f1e2iRhtdO7n-eFBJtdKDGQh1EV7YRT6TiGsIJjGWi5wjYM402q3Kkbvq9ay4Oh7fcwZK3UF2rStrvqRFsg-0wKT60vIMXb4ujzmPc3r9NRIuwtHj4CSVznExMlDsLbV4IJrEE5yokNX44c9m-gndtiIVpyG5WhjbhA--A6_wN8bnGOurCYe3LuvwRrD5igzuwASZrKPyrgOSBQQIBBgBkgUECAUYBKAGLoAHj_aSrAKoB47OG6gHk9gbqAfulrECqAf-nrECqAeko7ECqAfVyRuoB6a-G9gHAPIHBBCklwPSCBYIgOGAEBABGB8yAqoCOgKAQEi9_cE6gAoByAsB2BMK0BUBmBYBgBcBshccChoIABIUcHViLTc2NTIxMTA2MjE3MzA0MDkYAA&sigh=NoCYb18ow_o&uach_m=[UACH]&cid=CAQSOwBpAlJWbQFS6e5iVkgnnqLcQp6W5P-8VXYAHyoXWg8jQT53a_fXg5D-0_05aqmBA8HRpDU-zUXYoUyeGAE&template_id=5000&cbvp=2&vis=1
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:80b::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855
Security Headers
Name Value
Content-Security-Policy script-src 'none'; object-src 'none'
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

content-security-policy
script-src 'none'; object-src 'none'
date
Sun, 16 Jul 2023 22:01:22 GMT
x-content-type-options
nosniff
server
cafe
content-type
text/html; charset=UTF-8
access-control-allow-origin
*
p3p
policyref="https://googleads.g.doubleclick.net/pagead/gcn_p3p_.xml", CP="CURa ADMa DEVa TAIo PSAo PSDo OUR IND UNI PUR INT DEM STA PRE COM NAV OTC NOI DSP COR"
access-control-allow-credentials
true
cross-origin-resource-policy
cross-origin
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
0
x-xss-protection
0
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame 0C08
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: googleads.g.doubleclick.net
URL: https://googleads.g.doubleclick.net/pagead/ads?client=ca-pub-7652110621730409&output=html&h=90&adk=1365415531&adf=2807653287&pi=t.aa~a.4196110798~rp.1&w=1142&fwrn=4&fwrnh=100&lmt=1689544881&rafmt=1&to=qs&pwprc=8806849545&format=1142x90&url=https%3A%2F%2Fiphonetsu.com%2Fabstract%2Fdark-abstract-samsung-galaxy-wallpaper&fwr=0&pra=3&rpe=1&resp_fmts=3&wgl=1&fa=40&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ..&dt=1689544881649&bpp=1&bdt=1503&idt=0&shv=r20230711&mjsv=m202307110102&ptt=9&saldr=aa&abxe=1&cookie=ID%3D081bc08189df9549-2264b4d4c2e200bd%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA&gpic=UID%3D00000c3e86adedb2%3AT%3D1689544880%3ART%3D1689544880%3AS%3DALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA&prev_fmts=1082x280%2C1082x280%2C0x0&nras=2&correlator=188256451487&frm=20&pv=1&ga_vid=694200842.1689544880&ga_sid=1689544881&ga_hid=2086886738&ga_fc=1&u_tz=0&u_his=2&u_h=1200&u_w=1600&u_ah=1200&u_aw=1600&u_cd=24&u_sd=1&dmc=8&adx=229&ady=1779&biw=1600&bih=1200&scr_x=0&scr_y=0&eid=44759876%2C44759927%2C44759842%2C44788441%2C44796700&oid=2&psts=ABnkTfCIBc-sCh9iQUz2NA8rILvM6F8tNnO9SRzK8U6lb6WJdWgP9-nkN7TdFPdQoDOTGcz8c2O3ZhsLdqLHjy9e59w2u3Ts%2CABnkTfCDE7-tQxLd8KzJfW3p9RNgOcCqgcUv90rJ7X0ViSJ1GaNtBK-F39p6obgWDTUgYiRwIQm8QpKogYf0lRFdbTDJTN_5&pvsid=3473306514976882&tmod=145701277&uas=0&nvt=1&fc=896&brdim=0%2C0%2C0%2C0%2C1600%2C0%2C1600%2C1200%2C1600%2C1200&vis=1&rsz=%7C%7Cs%7C&abl=NS&fu=128&bc=31&ifi=4&uci=a!4&btvi=2&fsb=1&xpc=DoNYhXHXj5&p=https%3A//iphonetsu.com&dtd=7
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549128
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
pagead2.googlesyndication.com/bg/ Frame D667
37 KB
14 KB
Script
General
Full URL
https://pagead2.googlesyndication.com/bg/9sT3o9SHt_8CKWiZImOleDpjc_rECPIYUFPEk3-7T8E.js
Requested by
Host: iphonetsu.com
URL: https://iphonetsu.com/abstract/dark-abstract-samsung-galaxy-wallpaper
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
sffe /
Resource Hash
f6c4f7a3d487b7ff022968992263a5783a6373fac408f2185053c4937fbb4fc1
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

date
Mon, 10 Jul 2023 13:29:14 GMT
content-encoding
br
x-content-type-options
nosniff
age
549128
content-security-policy-report-only
require-trusted-types-for 'script'; report-uri https://csp.withgoogle.com/csp/botguard-scs
cross-origin-resource-policy
cross-origin
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
14698
x-xss-protection
0
last-modified
Mon, 26 Jun 2023 15:28:00 GMT
server
sffe
cross-origin-opener-policy
same-origin; report-to="botguard-scs"
vary
Accept-Encoding
report-to
{"group":"botguard-scs","max_age":2592000,"endpoints":[{"url":"https://csp.withgoogle.com/csp/report-to/botguard-scs"}]}
content-type
text/javascript
cache-control
public, max-age=31536000
accept-ranges
bytes
expires
Tue, 09 Jul 2024 13:29:14 GMT
sodar
pagead2.googlesyndication.com/pagead/
0
0
Image
General
Full URL
https://pagead2.googlesyndication.com/pagead/sodar?id=sodar2&v=225&t=2&li=gda_r20230711&jk=3473306514976882&bg=!Y2ClYDTNAAb90kgr3dI7ADkAdvg8Ws1WrIEkTejcN7OpafdIrJOY_W7XPjeh3QXxLYmKsK4ZdkfmSqu2JRVBanH9Fr_OEws4Ze8CAAABF1IAAAAHaAEHmQKu0RvYLk1yXDb82zald0WwAN1FjvKnxVckX-VHwOSrHHPj_Hsxe9HXXrJR4S3B1TDuyCAwxmJJ2J8aLy_HLPwTzD4u4iT8CQfi9gDtkZJ2YY0bHzjROchTRdk05t_AcOBwT7cE7kWJTwh0AOA7tYjqwFx5xFnTEjXT-5zHMw9TQFdavZFJCWPo7b75I47Ds1sOvZAWQKl_NZ1LlxLK7w42clfn8hehWSnFJ4xUOebECijcNJvACcTlr3rtHaHqaWmb_P5O1pC1fDW4nuctdttRDW2gWTUoNBxWTVNU8yFNDsgu9RmY3rLv_qq3BFACnWruEeSgatYZbjhX7kH4FK5s2IZ9ViA8sV5KxJg_t56eUm3VmhZRO09RWyO2T0Lgy37_p55tOIs1YCkHC1IdV9UUXDC7Xa2ptTnGZv7z5TD9YUg3i0QDTKeVOfr81cAP_EE_MhW4QnOn_YB1_1ffDFKpGYD2yPTql0qX8wvsGF2XTh-b5bhz0-mXKnxCtyD9Vvl_V1DdwXp9PtQ9LFXxIw61uglHHnT8P9u5enYJfYCXRgOCaLYUdG9dnh7N2wq-t9ini2SQyyVtyRYOpUIQkVViYFmCf2kWkBeBZsdxzOKZMK62-GYHdNGZC7vDgnqtTmEikO8ikFeb_vI6FtvSZ-4ye9tG-DzQSz7gr72CruM6SjTUhqVugbku_pLh9MXpw9ivVIDHAVatsQstjyqgG0wF0dsIE2D-8danargXp17u65pkE17DR9IlnOF2ko-XFSPFFTW8oI8jb228TAcggXfNk9XdZ8gUleRUTKmjBDgRuHXQGf_7rD49_C4t0hURBmVtcLpGJtVipmeW-mqWPvB9a7AU_UmRo0rIXEvx2oaDziS3gxCuZ0HtV_0Cmh8VQyFz3bk1WgA_vdQ1xsRGQgw
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
/
Resource Hash
e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://iphonetsu.com/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

activeview
pagead2.googlesyndication.com/pcs/ Frame 127A
42 B
64 B
Fetch
General
Full URL
https://pagead2.googlesyndication.com/pcs/activeview?xai=AKAOjsvepEIwXdjFPxHyPNkpFrhoidBlt5W5hP48xhIe7P44SizOS4YK7YMEJF5dUggZNKYvN3ablkQT0mj-po3F7cVzTGMJvkPMEmaxfz5uvf__v5J1lKBfXhaiD9UppCAtZmvZpaJk9FYqTSrt&sai=AMfl-YSIiyZDdCGoa-3182Eyo5b26Lh3q5aW7KyKiQjxxTKxqpe6mQecut3tYE9-njKgnOBUYa5Xeh3ODqrK&sig=Cg0ArKJSzKJNPrpBTkV5EAE&cid=CAQSGwBpAlJWEy53OWPkgNseUw7Ud6Q4HsfErgD3hBgB&id=lidar2&mcvt=1000&p=0,0,280,1082&mtos=1000,1000,1000,1000,1000&tos=1000,0,0,0,0&v=20230712&bin=7&avms=nio&bs=0,0&mc=1&if=1&vu=1&app=0&itpl=22&adk=3484801312&rs=2&la=1&cr=0&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ%3D%3D&vs=4&r=v&rst=1689544880872&rpt=924&met=mue&wmsd=0&pbe=0&vae=0&spb=0&ffslot=0&reach=0&io2=0
Requested by
Host: www.googletagservices.com
URL: https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
ef1955ae757c8b966c83248350331bd3a30f658ced11f387f8ebf05ab3368629
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:22 GMT
x-content-type-options
nosniff
server
cafe
content-type
image/gif
access-control-allow-origin
*
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cache-control
no-cache, must-revalidate
cross-origin-resource-policy
cross-origin
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
42
x-xss-protection
0
expires
Fri, 01 Jan 1990 00:00:00 GMT
activeview
pagead2.googlesyndication.com/pcs/ Frame B4A9
42 B
64 B
Fetch
General
Full URL
https://pagead2.googlesyndication.com/pcs/activeview?xai=AKAOjsuSKr1ez3aIziO25k4yu3ijqXltCNgp6NclKOatQuVjNgMWXZuUXQor84pKy-xb8kIobm_wMSLXMUtKFpBlflSqFyzLRoT33CtzjbPDF_izrRfGu1tmhAs4BQJVyrNw1r3vfqhF1D922wRR&sai=AMfl-YTP6Crf-BnT2N_LWGGvmC6tTTLkWCyLnibPU_sm5GdZMGMawecllbzs5D3xzjr4I3Wj2KnDKEF7YTDf&sig=Cg0ArKJSzKVCLH2DdlXvEAE&cid=CAQSGwBpAlJWWtzaWdUBhT710H0qbkzGfM4L5oL4OxgB&id=lidar2&mcvt=1001&p=0,0,124,1005&mtos=134,718,1001,1001,1001&tos=134,584,283,0,0&v=20230712&bin=7&avms=nio&bs=0,0&mc=1&if=1&vu=1&app=0&itpl=22&adk=1812271801&rs=2&la=0&cr=0&uach=WyIiLCIiLCIiLCIiLCIiLFtdLDAsbnVsbCwiIixbXSwwXQ%3D%3D&vs=4&r=v&rst=1689544881777&rpt=400&met=mue&wmsd=0&pbe=0&vae=0&spb=0&ffslot=0&reach=0&io2=0
Requested by
Host: www.googletagservices.com
URL: https://www.googletagservices.com/activeview/js/current/rx_lidar.js?cache=r20110914
Protocol
H3
Security
QUIC, , AES_128_GCM
Server
2a00:1450:4001:811::2002 Frankfurt am Main, Germany, ASN15169 (GOOGLE, US),
Reverse DNS
Software
cafe /
Resource Hash
ef1955ae757c8b966c83248350331bd3a30f658ced11f387f8ebf05ab3368629
Security Headers
Name Value
X-Content-Type-Options nosniff
X-Xss-Protection 0

Request headers

accept-language
nl-NL,nl;q=0.9
Referer
https://googleads.g.doubleclick.net/
User-Agent
Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/114.0.5735.198 Safari/537.36

Response headers

pragma
no-cache
date
Sun, 16 Jul 2023 22:01:23 GMT
x-content-type-options
nosniff
server
cafe
content-type
image/gif
access-control-allow-origin
*
p3p
policyref="https://www.googleadservices.com/pagead/p3p.xml", CP="NOI DEV PSA PSD IVA IVD OTP OUR OTR IND OTC"
cache-control
no-cache, must-revalidate
cross-origin-resource-policy
cross-origin
timing-allow-origin
*
alt-svc
h3=":443"; ma=2592000,h3-29=":443"; ma=2592000
content-length
42
x-xss-protection
0
expires
Fri, 01 Jan 1990 00:00:00 GMT

Verdicts & Comments Add Verdict or Comment

70 JavaScript Global Variables

These are the non-standard "global" variables defined on the window object. These can be helpful in identifying possible client-side frameworks and code.

object| 0 object| 1 object| 2 object| 3 object| 4 object| 5 object| 6 object| 7 object| 8 object| 9 boolean| credentialless object| onbeforetoggle object| onscrollend object| __cfQR undefined| $ function| jQuery object| adsbygoogle function| gtag object| dataLayer object| google_tag_manager object| google_tag_data object| eventie function| EventEmitter function| getStyleProperty function| getSize function| docReady function| matchesSelector object| fizzyUIUtils function| Outlayer function| Isotope function| Masonry function| onYouTubeIframeAPIReady object| gaGlobal function| EvEmitter function| imagesLoaded object| AdminAjaxURL boolean| __cfRLUnblockHandlers object| jQuery112408832591112686254 object| google_js_reporting_queue number| google_srt object| google_logging_queue number| tmod object| google_ad_modifications object| ggeac object| google_persistent_state_async boolean| google_measure_js_timing object| google_reactive_ads_global_state object| google_sa_queue function| google_process_slots boolean| google_apltlad function| google_spfd number| google_lpabyc number| google_unique_id object| google_sv_map object| google_ama_state string| google_user_agent_client_hint number| google_rum_task_id_counter function| google_sa_impl boolean| _gfp_p_ function| processGoogleToken object| googleToken object| googleIMState number| google_global_correlator object| google_prev_clients object| ampInaboxIframes object| ampInaboxPendingMessages object| GoogleGcLKhOms object| googletag object| google_llp object| google_image_requests

12 Cookies

Domain/Path Name / Value
.iphonetsu.com/ Name: _ga_VVQVH7EX8Z
Value: GS1.1.1689544880.1.0.1689544880.0.0.0
.iphonetsu.com/ Name: _ga
Value: GA1.1.694200842.1689544880
.iphonetsu.com/ Name: __gads
Value: ID=081bc08189df9549-2264b4d4c2e200bd:T=1689544880:RT=1689544880:S=ALNI_MZhIRer17j-BG8LchzI5sNDS5CgvA
.iphonetsu.com/ Name: __gpi
Value: UID=00000c3e86adedb2:T=1689544880:RT=1689544880:S=ALNI_MYfbfu3BXU09NisDvg-pwpdspqmXA
.doubleclick.net/ Name: IDE
Value: AHWqTUnuLeFkF2LlhfmYG1SHoXUn-GGHS-arpnwbOxdtCdx7vp_bqgUQvUGQJ65J0eE
.doubleclick.net/ Name: DSID
Value: NO_DATA
.mathtag.com/ Name: mt_mop
Value: 4:1689544882
.quantserve.com/ Name: d
Value: EAwBCQG9KYEA
.quantserve.com/ Name: mc
Value: 64b468b2-8a6b2-cde41-086ab
.de17a.com/ Name: guid
Value: 1.1352041603510541392
.yahoo.com/ Name: A3
Value: d=AQABBLJotGQCEBTrP-zYLRMUhbG6NRuoo8cFEgEBAQG6tWS-ZAAAAAAA_eMAAA&S=AQAAAr-H6nB9vm9sQA8qx91CWRA
.turn.com/ Name: uid
Value: 3682715100896002834

3 Console Messages

Source Level URL
Text
network error URL: https://mts0.google.com/vt/data=4xwvOt-oQoHhvuRZqmriYMpW1jRlYVYiTRzwZcSB9i8a0kA0kwi0lx3BI58ZhA6H37eirs3ht2HVF58jQJukXQ
Message:
Failed to load resource: the server responded with a status of 400 ()
javascript warning URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1#RS-2-&adk=1812271804&client=ca-pub-7652110621730409&fa=4&ifi=7&uci=a!7&btvi=4&xpc=KlOnH9kZ7S&p=https%3A//iphonetsu.com
Message:
The resource https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500 was preloaded using link preload but not used within a few seconds from the window's load event. Please make sure it has an appropriate `as` value and it is preloaded intentionally.
javascript warning URL: https://googleads.g.doubleclick.net/pagead/html/r20230711/r20110914/zrt_lookup.html?fsb=1#RS-3-&adk=1812271801&client=ca-pub-7652110621730409&fa=1&ifi=8&uci=a!8&btvi=5&xpc=mXyfZYPUZV&p=https%3A//iphonetsu.com
Message:
The resource https://fonts.googleapis.com/css?family=Google%20Sans%3A400%2C500 was preloaded using link preload but not used within a few seconds from the window's load event. Please make sure it has an appropriate `as` value and it is preloaded intentionally.

Indicators

This is a term in the security industry to describe indicators such as IPs, Domains, Hashes, etc. This does not imply that any of these indicate malicious activity.

ad.turn.com
adservice.google.com
cm.g.doubleclick.net
cms.quantserve.com
d5p.de17a.com
dclk-match.dotomi.com
fonts.googleapis.com
fonts.gstatic.com
googleads.g.doubleclick.net
iphonetsu.com
match.adsrvr.org
mts0.google.com
pagead2.googlesyndication.com
partner.googleadservices.com
pr-bh.ybp.yahoo.com
r.turn.com
region1.google-analytics.com
sync.mathtag.com
tpc.googlesyndication.com
www.google.com
www.googletagmanager.com
www.googletagservices.com
www.gstatic.com
142.250.184.226
185.29.134.248
2001:4860:4802:34::36
2001:678:cb4:bbbb::11
213.155.156.169
2620:116:800d:21:93ca:31d8:d86e:38f6
2a00:1450:4001:808::2002
2a00:1450:4001:80b::2002
2a00:1450:4001:80f::2003
2a00:1450:4001:810::200e
2a00:1450:4001:811::2002
2a00:1450:4001:813::2001
2a00:1450:4001:813::2008
2a00:1450:4001:829::200a
2a00:1450:4001:82b::2004
2a00:1450:4001:82f::2002
2a02:fa8:8806:16::1370
2a05:d018:d29:3605:5ed0:634f:f490:f683
2a06:98c1:3121::3
35.71.131.137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