HTTP/2 frames (Akamai)

2:0;4:4194304;5:16384;6:262144|1073741824|0|a,m,p,s

first seen 2026-09-05 20:44 · last seen 2026-09-05 20:44 · JSON

Distinct clients per day (last 30 days, peak 1/day)

Distinct clients are counted by IP-hash per complete UTC day — unlike observation counts this is insensitive to one chatty client, but NAT merges clients and address rotation splits them.

Decomposed attributes

SETTINGS{"2": 0, "4": 4194304, "5": 16384, "6": 262144}
WINDOW_UPDATE1073741824
PRIORITY frames0
Pseudo-header ordera,m,p,s

Co-observed signals

Signals from other families seen in the same observation. A fingerprint spread thinly across many lower-layer signatures is a classic inconsistency signal.

TLS ClientHello (JA4)

fingerprintco-occurrences
t13d1516h2_8daaf6152771_d8a2da3f94cd Match?Exact match in Thumbprint's published controlled catalog captures: chromium 149.0.7827.102, chrome 149.0.7827.102, chrome 149.0.7827.156, +25 more.The fingerprint page shows the full measured match list. More on the catalog.1

HTTP request (JA4H)

fingerprintco-occurrences
ge20nn13enus_02648c573205_000000000000_0000000000001

TCP SYN (p0f)

fingerprintco-occurrences
4:55+9:0:1420:mss*46,7:mss,sok,ts,nop,ws:df,id+:01

TCP SYN (JA4T)

fingerprintco-occurrences
65320_2-4-8-1-3_1420_71

User-Agent

fingerprintco-occurrences
Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.361

Country

fingerprintco-occurrences
US · United States1

Network (ASN)

fingerprintco-occurrences
AS396982 · Google LLC1