HoneyLabs

UDP traffic

Datagrams matching port:30310 sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

Your plan searches up to 7d, so 30d was shortened. Plans

3

Datagrams

3

Source addresses

2

Networks

3

Countries

1

Destination ports

Traffic by type

Other services

1 datagrams from 1 source

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest HTTP datagram, to 30310/udp

payload bytes
00000000  47 45 54 20 2f 47 61 72  64 20 48 54 54 50 2f 31  |GET /Gard HTTP/1|
00000010  2e 30 0d 0a 0d 0a                                 |.0....|

Unrecognised

2 datagrams from 2 sources

Datagrams no decoder recognised. Their first bytes are kept.

Latest Unrecognised datagram, to 30310/udp

Gardasoft,PP520,012345,000B75018099,0a0a0aa9

payload bytes
00000000  47 61 72 64 61 73 6f 66  74 2c 50 50 35 32 30 2c  |Gardasoft,PP520,|
00000010  30 31 32 33 34 35 2c 30  30 30 42 37 35 30 31 38  |012345,000B75018|
00000020  30 39 39 2c 30 61 30 61  30 61 61 39              |099,0a0a0aa9|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
47.250.93.212AS45102 Alibaba (US) Technology Co., Ltd.MYUnrecognised12026-10-06 19:49
43.98.165.95AS45102 Alibaba (US) Technology Co., Ltd.SGHTTP12026-10-06 07:09
106.75.175.147AS58466 CHINANET Guangdong province networkCNUnrecognised12026-10-09 12:50

Latest datagrams