HoneyLabs

UDP traffic

Datagrams matching port:50858 sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

Your plan searches up to 7d, so 30d was shortened. Plans

10

Datagrams

2

Source addresses

2

Networks

2

Countries

1

Destination ports

Traffic by type

Other services

10 datagrams from 2 sources

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest STUN datagram, to 50858/udp

·T!·BaucJNE562Fy7· 6vSr:B80y·ں·:·W· ·*·$·n·UpOy·$]·:^·/"·w·(·za·

payload bytes
00000000  00 01 00 54 21 12 a4 42  61 75 63 4a 4e 45 35 36  |...T!..BaucJNE56|
00000010  32 46 79 37 00 06 00 09  36 76 53 72 3a 42 38 30  |2Fy7....6vSr:B80|
00000020  79 00 00 00 da ba 00 04  00 00 3a dc c0 57 00 04  |y.........:..W..|
00000030  00 01 00 0a 80 2a 00 08  00 00 00 00 00 00 00 00  |.....*..........|
00000040  00 24 00 04 6e 7f 1e ff  00 08 00 14 55 70 4f 79  |.$..n.......UpOy|
00000050  cc ce 24 5d 19 80 3a 5e  9f 2f 22 9a 77 bf d1 1f  |..$]..:^./".w...|
00000060  80 28 00 04 e1 7a 61 1e                           |.(...za.|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
14.230.133.126AS45899 VNPT CorpVNSTUN52026-10-09 15:26
157.240.15.57AS32934 Facebook, Inc.SGSTUN52026-10-09 15:26

Latest datagrams