HoneyLabs

UDP traffic

Datagrams matching asn:1221 sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

160

Datagrams

3

Source addresses

1

Networks

1

Countries

2

Destination ports

Traffic by type

Unrecognised

2 datagrams from 1 source

Datagrams no decoder recognised. Their first bytes are kept.

Latest Unrecognised datagram, to 80/udp

·x·W·١·v·JK%f·*·C·:·-·0·Rdl·7·$·6lWL·{·)T· *a·N#f·`·,·Ҍ·3·B3·Vgّ·0·Ac=·:·0· ·h·}·oK·@·>·tvTF·L· ·̷Ί+`·+·*}·

payload bytes
00000000  8b 0c 78 e1 0b 57 15 a5  d9 a1 17 0e 9a 02 76 04  |..x..W........v.|
00000010  cb 4a 4b 25 66 ec e9 2a  8b 99 43 99 eb 3a 95 2d  |.JK%f..*..C..:.-|
00000020  80 30 f7 52 64 6c 18 37  cd 24 12 b2 06 12 d4 36  |.0.Rdl.7.$.....6|
00000030  6c 57 4c dd ed 7b c3 29  54 06 d4 0a 2a 61 06 9c  |lWL..{.)T...*a..|
00000040  f1 b2 4e 23 66 b9 60 11  b8 fb 2c bb c6 d2 8c 14  |..N#f.`...,.....|
00000050  9c 33 03 42 33 19 bc 56  67 d9 91 8a 11 30 f9 f8  |.3.B3..Vg....0..|
00000060  41 63 3d a3 94 83 fe 15  ad 3a a0 11 30 f9 e8 20  |Ac=......:..0.. |
00000070  07 b1 87 68 a0 7d 84 89  6f 4b e1 99 1a 00 a7 fe  |...h.}..oK......|
00000080  40 99 fd ab e2 98 3e 01  99 11 17 92 11 74 76 54  |@.....>......tvT|
00000090  46 d0 06 13 4c a3 0a e6  cd fd bb cc b7 ce 8a 2b  |F...L..........+|
000000a0  60 af 2b 0e 2a 7d 88 bd  c3 aa ce ae db 36 4c d3  |`.+.*}.......6L.|
000000b0  7d d3 4f 80 73 8f d0 7e  d8 aa 93 a5 5f aa db 17  |}.O.s..~...._...|
000000c0  e2 47 f1 e9 b8 e6 a0 13  7e 4b 5d 2b 18 95 1e e1  |.G......~K]+....|
000000d0  8e 10 b3 82 46 b3 32 96  45 1c f5 57 f6 f5 56 42  |....F.2.E..W..VB|
000000e0  52 aa 7b 58 98 8a d0 5b  93 a2 38 a4 a7 0a 34 51  |R.{X...[..8...4Q|
000000f0  e9 13 98 d4 a8 c7 c3 0b  79 d0 8e 6a bd 8e 1e 9b  |........y..j....|

Peer-to-peer

158 datagrams from 2 sources

File-sharing clients trying to reach a peer that used one of these addresses before. This is not scanning, so it is left out of every other figure on this page.

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
101.185.179.82AS1221 Telstra LimitedAUBitTorrent1562026-10-10 07:10
101.173.46.92AS1221 Telstra LimitedAUBitTorrent22026-10-10 13:26
144.130.164.158AS1221 Telstra LimitedAUUnrecognised22026-10-09 17:03

Latest datagrams