UDP traffic
Datagrams matching asn:212219 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.
A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.
4
Datagrams
1
Source addresses
1
Networks
1
Countries
3
Destination ports
Traffic by type
Unrecognised
4 datagrams from 1 sourceDatagrams no decoder recognised. Their first bytes are kept.
Latest Unrecognised datagram, to 1900/udp
payload bytes
00000000 64 2e 27 77 50 4a 5d 33 31 5f f0 |d.'wPJ]31_.|
Amplification checks
Probes for services that answer a small request with a much larger reply, the property reflection attacks rely on.
| Service | Port | Datagrams | Sources | Factor |
|---|---|---|---|---|
| SSDP | 1900/udp | 1 | 1 | 30.8 |
The factor is how many bytes a reachable server can send back for each byte it receives, as published by CISA in alert TA14-017A.
Source addresses (unverified)
| Address | Network | Cc | Sends | Datagrams | Last seen (UTC) |
|---|---|---|---|---|---|
| 195.85.207.31 | AS212219 Hosting Dunyam Bilisim Teknolojileri Tic | TR | Unrecognised | 4 | 2026-10-11 02:33 |
Latest datagrams
payload bytes
00000000 64 2e 27 77 50 4a 5d 33 31 5f f0 |d.'wPJ]31_.|
payload bytes
00000000 34 2e 2c 61 20 49 2e 1f 21 03 66 75 48 4d 61 29 |4.,a I..!.fuHMa)| 00000010 0c 63 3d 30 62 51 21 3d 4d 61 5c 3a 1c 35 27 50 |.c=0bQ!=Ma\:.5'P| 00000020 67 53 31 07 1d 60 26 3e 63 0d 33 2b 5a 14 54 67 |gS1..`&>c.3+Z.Tg| 00000030 77 11 d1 ba |w...|
payload bytes
00000000 07 2e 79 3c 07 3d 57 26 31 29 56 0f 47 7d 65 6a |..y<.=W&1)V.G}ej| 00000010 3d 21 07 2b 42 |=!.+B|
payload bytes
00000000 1f 2e 44 09 4e 77 1d 47 60 48 69 48 7d 3a 7b 69 |..D.Nw.G`HiH}:{i| 00000010 2f 6d 71 34 64 54 76 67 |/mq4dTvg|