HoneyLabs

UDP traffic

Datagrams matching port:4500 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

27

Datagrams

25

Source addresses

9

Networks

5

Countries

1

Destination ports

Traffic by type

Other services

2 datagrams from 1 source

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest HTTP datagram, to 4500/udp

payload bytes
00000000  47 45 54 20 2f 20 48 54  54 50 2f 31 2e 31 0d 0a  |GET / HTTP/1.1..|
00000010  48 6f 73 74 3a 20 77 77  77 0d 0a 0d 0a           |Host: www....|

Unrecognised

25 datagrams from 24 sources

Datagrams no decoder recognised. Their first bytes are kept.

Latest Unrecognised datagram, to 4500/udp

·P·4·(·$·p·$·p·$·p·$·p·$·

payload bytes
00000000  00 00 00 00 89 ec e2 de  18 86 e4 b9 00 00 00 00  |................|
00000010  00 00 00 00 01 10 02 00  00 00 00 00 00 00 01 50  |...............P|
00000020  00 00 01 34 00 00 00 01  00 00 00 01 00 00 01 28  |...4...........(|
00000030  01 01 00 08 03 00 00 24  01 01 00 00 80 01 00 05  |.......$........|
00000040  80 02 00 02 80 03 00 01  80 04 00 02 80 0b 00 01  |................|
00000050  00 0c 00 04 00 00 70 80  03 00 00 24 02 01 00 00  |......p....$....|
00000060  80 01 00 05 80 02 00 01  80 03 00 01 80 04 00 02  |................|
00000070  80 0b 00 01 00 0c 00 04  00 00 70 80 03 00 00 24  |..........p....$|
00000080  03 01 00 00 80 01 00 01  80 02 00 02 80 03 00 01  |................|
00000090  80 04 00 02 80 0b 00 01  00 0c 00 04 00 00 70 80  |..............p.|
000000a0  03 00 00 24 04 01 00 00  80 01 00 01 80 02 00 01  |...$............|
000000b0  80 03 00 01 80 04 00 02  80 0b 00 01 00 0c 00 04  |................|
000000c0  00 00 70 80 03 00 00 24  05 01 00 00 80 01 00 05  |..p....$........|
000000d0  80 02 00 02 80 03 00 01  80 04 00 01 80 0b 00 01  |................|
000000e0  00 0c 00 04 00 00 70 80  03 00 00 24 06 01 00 00  |......p....$....|
000000f0  80 01 00 05 80 02 00 01  80 03 00 01 80 04 00 01  |................|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
193.163.125.178AS211298 Driftnet LtdGBUnrecognised22026-10-10 17:59
45.79.67.140AS63949 Akamai Connected CloudUSHTTP22026-10-10 08:04
8.211.46.83AS45102 Alibaba (US) Technology Co., Ltd.DEUnrecognised12026-10-10 09:16
66.132.186.219AS398324 Censys, Inc.USUnrecognised12026-10-11 00:52
65.49.1.10AS6939 Hurricane Electric LLCUSUnrecognised12026-10-10 06:38
205.210.31.255AS396982 Google LLCUSUnrecognised12026-10-10 07:24
167.71.228.11AS14061 DigitalOcean, LLCINUnrecognised12026-10-11 01:23
150.107.36.236AS135377 UCLOUD INFORMATION TECHNOLOGY (HK) LIMITHKUnrecognised12026-10-10 11:35
198.235.24.164AS396982 Google LLCUSUnrecognised12026-10-11 04:50
64.62.156.38AS6939 Hurricane Electric LLCUSUnrecognised12026-10-11 02:35
205.210.31.65AS396982 Google LLCUSUnrecognised12026-10-10 10:37
198.235.24.178AS396982 Google LLCUSUnrecognised12026-10-10 06:28
198.235.24.92AS396982 Google LLCUSUnrecognised12026-10-10 20:10
66.132.186.243AS398324 Censys, Inc.USUnrecognised12026-10-10 19:58
66.132.224.23AS398324 Censys, Inc.USUnrecognised12026-10-10 21:05
71.6.134.234AS10439 CariNet, Inc.USUnrecognised12026-10-10 18:55
205.210.31.214AS396982 Google LLCUSUnrecognised12026-10-10 23:49
66.132.172.227AS398324 Censys, Inc.USUnrecognised12026-10-11 01:47
198.235.24.117AS396982 Google LLCUSUnrecognised12026-10-10 20:13
147.185.132.37AS396982 Google LLCUSUnrecognised12026-10-10 19:53

Latest datagrams