UDP traffic
Datagrams matching port:1025 sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.
A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.
6
Datagrams
3
Source addresses
3
Networks
3
Countries
1
Destination ports
Traffic by type
Destination ports
- 1025/udp SIP6
Networks
- AS12876 Scaleway SAS from 1 source4
- AS24961 WIIT AG from 1 source1
- AS45102 Alibaba (US) Technology Co., Ltd. from 1 source1
Countries
Source addresses (unverified)
| Address | Network | Cc | Sends | Datagrams | Last seen (UTC) |
|---|---|---|---|---|---|
| 51.158.201.249 | AS12876 Scaleway SAS | NL | SIP | 4 | 2026-10-10 22:19 |
| 47.89.251.254 | AS45102 Alibaba (US) Technology Co., Ltd. | US | SOCKS5 | 1 | 2026-10-08 15:27 |
| 193.111.198.241 | AS24961 WIIT AG | DE | Redis | 1 | 2026-10-05 16:27 |
Latest datagrams
Payload bytes withheld: they contain the sensor's address.
Payload bytes withheld: they contain the sensor's address.
Payload bytes withheld: they contain the sensor's address.
Payload bytes withheld: they contain the sensor's address.
payload bytes
00000000 05 00 0b 03 10 00 00 00 48 00 00 00 01 00 00 00 |........H.......| 00000010 b8 10 b8 10 00 00 00 00 01 00 00 00 00 00 01 00 |................| 00000020 01 23 45 67 89 ab cd ef 01 23 45 67 89 ab cd ef |.#Eg.....#Eg....| 00000030 e7 03 00 00 fe dc ba 98 76 54 32 10 01 23 45 67 |........vT2..#Eg| 00000040 89 ab cd ef e7 03 00 00 |........|
Payload bytes withheld: they contain the sensor's address.