HoneyLabs

JA4H HTTP client fingerprint

ge11nn0400_628fde536a8d

Seen 2026-03-26 to 2026-07-12 across the retained window.

3

Source IPs

3

Networks

3

Countries

3

Ports hit

403

Events

1

IPs / network

This fingerprint is spread thinly across many networks, which is the shape of a common, widely-used client.

Top networks

Countries

HK 1NL 1US 1

Ports targeted

Source IPCCNetworkEvents
176.65.149.180NLAS51396 Pfcloud UG (haftungsbeschrankt)396
101.36.125.58HKAS135377 UCLOUD INFORMATION TECHNOLOGY HK LIMITED5
5.253.84.214USAS213438 ColocaTel Inc.2

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.