HoneyLabs

JA4H HTTP client fingerprint

ge11nn0600_285c7a41a4af

Seen 2026-03-16 to 2026-07-25 across the retained window.

8

Source IPs

8

Networks

7

Countries

2

Ports hit

17

Events

1

IPs / network

This fingerprint is spread thinly across many networks, which is the shape of a common, widely-used client.

Top networks

Countries

NL 2NO 1SG 1RU 1US 1BG 1JP 1

Ports targeted

Source IPCCNetworkEvents
52.200.116.105USAS14618 Amazon.com, Inc.7
185.221.64.84BGAS197450 Sunucun Bilgi Iletisim Teknolojileri ve Ticaret Ltd. Sti.3
213.108.3.70RUAS41745 Baykov Ilya Sergeevich2
20.251.155.67NOAS8075 Microsoft Corporation1
194.114.136.74JPAS23959 Owl Limited1
185.242.3.12NLAS60223 Netiface Limited1
185.242.3.191NLAS401626 Netiface America, Inc.1
13.212.211.47SGAS16509 Amazon.com, Inc.1

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.