HoneyLabs

JA4H HTTP client fingerprint

ge11nn0500_ac5b6e4e5c5d

Seen 2026-04-04 to 2026-05-16 across the retained window.

4

Source IPs

4

Networks

4

Countries

3

Ports hit

19

Events

1

IPs / network

This fingerprint is spread thinly across many networks, which is the shape of a common, widely-used client.

Top networks

Countries

HK 1CN 1US 1QA 1

Ports targeted

Source IPCCNetworkEvents
78.100.195.89QAAS8781 Ooredoo Q.S.C.12
101.36.125.58HKAS135377 UCLOUD INFORMATION TECHNOLOGY HK LIMITED3
130.12.180.63USAS202412 Omegatech LTD2
115.171.80.253CNAS4847 China Networks Inter-Exchange2

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.