HoneyLabs

JA4H HTTP client fingerprint

he11nn0500_a3c44ede19e0

Seen 2026-05-22 to 2026-07-22 across the retained window.

10

Source IPs

8

Networks

4

Countries

2

Ports hit

151

Events

1

IPs / network

This fingerprint is spread thinly across many networks, which is the shape of a common, widely-used client.

Top networks

Countries

CN 4US 3DO 2SG 1

Ports targeted

Source IPCCNetworkEvents
72.167.44.205USAS398101 GoDaddy.com, LLC32
222.211.66.28CNAS38283 CHINANET SiChuan Telecom Internet Data Center32
219.151.190.165CNAS134420 Chongqing Telecom32
190.80.139.156DOAS6400 Compania Dominicana de Telefonos S. A.16
4.193.139.29SGAS8075 Microsoft Corporation16
211.101.237.84CNAS58519 Cloud Computing Corporation8
190.167.169.205DOAS6400 Compania Dominicana de Telefonos S. A.8
38.76.165.207USAS174 Cogent Communications, LLC4
13.68.133.98USAS8075 Microsoft Corporation2
180.166.235.226CNAS4812 China Telecom Group1

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.