HoneyLabs

JA4 TLS client fingerprint

t13i1114h2_5e2a75874763_53a89c02159a

Seen 2026-04-16 to 2026-07-27 across the retained window.

11

Source IPs

2

Networks

2

Countries

280

Ports hit

7.4K

Events

6

IPs / network

Top networks

Countries

DE 10VU 1

Ports targeted

Source IPCCNetworkEvents
88.214.25.134DEAS35042 Layer7 Networks GmbH994
88.214.25.137DEAS35042 Layer7 Networks GmbH937
88.214.25.130DEAS35042 Layer7 Networks GmbH923
88.214.25.131DEAS35042 Layer7 Networks GmbH897
88.214.25.138DEAS35042 Layer7 Networks GmbH837
88.214.25.135DEAS35042 Layer7 Networks GmbH757
88.214.25.136DEAS35042 Layer7 Networks GmbH714
88.214.25.132DEAS35042 Layer7 Networks GmbH665
88.214.25.133DEAS35042 Layer7 Networks GmbH650
88.214.25.59DEAS35042 Layer7 Networks GmbH37
147.45.112.222VUAS209132 Alviva Holding Limited16

About this fingerprint

JA4 is a fingerprint of the TLS Client Hello: the version, cipher suites, extensions and signature algorithms a client offers when it opens an HTTPS connection. Clients built on the same library and version produce the same JA4, which makes it a durable handle on the tool behind the traffic.