HoneyLabs

UDP traffic

Datagrams matching port:3391 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

6

Datagrams

6

Source addresses

3

Networks

2

Countries

1

Destination ports

Traffic by type

Other services

6 datagrams from 6 sources

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest DTLS datagram, to 3391/udp

·l·`·`·T·ԭ·|·o;·`·#·?E· ·9· ·3·5·/·$· · ·#·

payload bytes
00000000  16 fe ff 00 00 00 00 00  00 00 00 00 6c 01 00 00  |............l...|
00000010  60 00 00 00 00 00 00 00  60 fe ff d8 fb 54 e5 d4  |`.......`....T..|
00000020  ad a9 03 96 bc 02 95 7c  9e 06 6f 3b a7 e6 85 19  |.......|..o;....|
00000030  d0 fb 03 60 05 23 bd bb  ef 3f 45 00 00 00 12 c0  |...`.#...?E.....|
00000040  0a c0 14 00 39 c0 09 c0  13 00 33 00 35 00 2f 00  |....9.....3.5./.|
00000050  ff 01 00 00 24 00 0b 00  04 03 00 01 02 00 0a 00  |....$...........|
00000060  0c 00 0a 00 1d 00 17 00  1e 00 19 00 18 00 23 00  |..............#.|
00000070  00 00 16 00 00 00 17 00  00                       |.........|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
20.169.85.75AS8075 Microsoft CorporationUSDTLS12026-10-10 19:33
216.25.89.86AS396982 Google LLCUSDTLS12026-10-10 16:41
40.124.84.194AS8075 Microsoft CorporationUSDTLS12026-10-10 19:31
152.32.188.207AS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITHKDTLS12026-10-10 13:55
20.65.202.151AS8075 Microsoft CorporationUSDTLS12026-10-10 19:26
134.33.67.79AS8075 Microsoft CorporationUSDTLS12026-10-10 19:26

Latest datagrams