HoneyLabs

UDP traffic

Datagrams matching port:1604 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

8

Datagrams

8

Source addresses

5

Networks

3

Countries

1

Destination ports

Traffic by type

Other services

2 datagrams from 2 sources

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest Redis datagram, to 1604/udp

*·2·!·

payload bytes
00000000  2a 00 01 32 02 fd a8 e3  00 00 00 00 00 00 00 00  |*..2............|
00000010  00 00 00 00 00 00 00 00  00 00 00 00 21 00 02 00  |............!...|
00000020  00 00 00 00 00 00 00 00  00 00                    |..........|

Unrecognised

6 datagrams from 6 sources

Datagrams no decoder recognised. Their first bytes are kept.

Latest Unrecognised datagram, to 1604/udp

·0·

payload bytes
00000000  1e 00 01 30 02 fd a8 e3  00 00 00 00 00 00 00 00  |...0............|
00000010  00 00 00 00 00 00 00 00  00 00 00 00 00 00        |..............|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
176.65.149.188AS51396 Pfcloud UG (haftungsbeschrankt)NLRedis12026-10-11 06:39
198.235.24.246AS396982 Google LLCUSUnrecognised12026-10-10 13:07
20.65.179.64AS8075 Microsoft CorporationUSUnrecognised12026-10-10 21:12
146.88.241.160AS20052 Arbor Networks, Inc.USRedis12026-10-10 14:58
198.235.24.68AS396982 Google LLCUSUnrecognised12026-10-10 18:12
20.14.93.62AS8075 Microsoft CorporationUSUnrecognised12026-10-10 21:17
47.245.141.134AS45102 Alibaba (US) Technology Co., Ltd.DEUnrecognised12026-10-10 13:00
48.216.210.93AS8075 Microsoft CorporationUSUnrecognised12026-10-10 21:14

Latest datagrams