HoneyLabs

JA4H HTTP client fingerprint

ge11cn0300_df70c3f63f2d

Seen 2026-03-12 to 2026-07-09 across the retained window.

9

Source IPs

6

Networks

6

Countries

21

Ports hit

129

Events

2

IPs / network

This fingerprint is spread thinly across many networks, which is the shape of a common, widely-used client.

Top networks

AS0 4 IPs89

Countries

KZ 3AE 2GB 1HK 1UA 1DE 1

Ports targeted

Source IPCCNetworkEvents
101.36.125.58HKAS135377 UCLOUD INFORMATION TECHNOLOGY HK LIMITED22
185.156.73.167UAAS211736 FOP Dmytro Nedilskyi14
151.243.11.23AEAS209630 LLC Vash Kredit Bank2
31.59.160.3AEAS203861 Miteflux Technologies Ltd1
87.106.88.229DEAS8560 IONOS SE1

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.