HoneyLabs

JA4H HTTP client fingerprint

ge11nn0400_91d9e55fb80a

Seen 2026-05-15 to 2026-07-19 across the retained window.

10

Source IPs

7

Networks

7

Countries

17

Ports hit

115

Events

1

IPs / network

This fingerprint is spread thinly across many networks, which is the shape of a common, widely-used client.

Top networks

Countries

CN 3US 2HK 1NL 1CH 1BR 1AE 1

Ports targeted

Source IPCCNetworkEvents
179.43.163.26CHAS51852 Private Layer INC29
118.123.80.12CNAS4134 Chinanet23
118.123.80.56CNAS4134 Chinanet20
185.242.3.87NLAS401626 Netiface America, Inc.13
204.152.193.32USAS36352 HostPapa9
151.243.11.23AEAS209630 LLC Vash Kredit Bank7
101.36.125.58HKAS135377 UCLOUD INFORMATION TECHNOLOGY HK LIMITED6
201.16.163.61BRAS16735 ALGAR TELECOM S/A4
64.89.163.22USAS401626 Netiface America, Inc.3
118.123.80.29CNAS4134 Chinanet1

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.