HoneyLabs

JA4H HTTP client fingerprint

po11nn0600_36b368ee4bc7

Seen 2026-02-19 to 2026-07-27 across the retained window.

41

Source IPs

18

Networks

13

Countries

18

Ports hit

334

Events

2

IPs / network

Top networks

Countries

US 20NL 4CA 4BG 3DE 2QA 1HK 1IR 1GB 1ID 1

Ports targeted

Source IPCCNetworkEvents
78.100.195.89QAAS8781 Ooredoo Q.S.C.92
185.93.89.43IRAS213790 Limited Network LTD78
101.36.125.58HKAS135377 UCLOUD INFORMATION TECHNOLOGY HK LIMITED29
103.168.67.159USAS142430 DIGI VPS16
192.142.28.77NLAS60064 Hostpalace Datacenters Ltd15
79.124.40.174BGAS50360 Tamatiya EOOD13
115.171.80.253CNAS4847 China Networks Inter-Exchange10
163.7.5.166IDAS150436 Byteplus Pte. Ltd.10
204.76.203.206NLAS51396 Pfcloud UG (haftungsbeschrankt)8
85.11.167.8BGAS213438 ColocaTel Inc.8
130.12.180.63USAS202412 Omegatech LTD6
176.65.148.155NLAS51396 Pfcloud UG (haftungsbeschrankt)6
152.42.185.130SGAS14061 DigitalOcean, LLC4
35.184.186.164USAS396982 Google LLC3
104.238.187.191GBAS20473 The Constant Company, LLC2
68.183.114.81USAS14061 DigitalOcean, LLC1
143.110.215.13CAAS14061 DigitalOcean, LLC1
45.79.152.168USAS63949 Akamai Connected Cloud1
89.169.55.117DEAS210644 Aeza International Ltd1

About this fingerprint

JA4H fingerprints the shape of an HTTP request: method, version, the ordered set of headers and the cookie and language handling. It identifies the HTTP client independently of the URL it asks for.