HoneyLabs

UDP traffic

Datagrams matching port:62980 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

6

Datagrams

2

Source addresses

2

Networks

2

Countries

1

Destination ports

Traffic by type

Other services

6 datagrams from 2 sources

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest STUN datagram, to 62980/udp

·T!·BsJNjtELbLN/T· Mbw9:bm6w·ں·7·W· ·*·$·n~·l2·p{П·R·i·͌·f·(·;da·

payload bytes
00000000  00 01 00 54 21 12 a4 42  73 4a 4e 6a 74 45 4c 62  |...T!..BsJNjtELb|
00000010  4c 4e 2f 54 00 06 00 09  4d 62 77 39 3a 62 6d 36  |LN/T....Mbw9:bm6|
00000020  77 00 00 00 da ba 00 04  00 00 0b 37 c0 57 00 04  |w..........7.W..|
00000030  00 01 00 0a 80 2a 00 08  00 00 00 00 00 00 00 00  |.....*..........|
00000040  00 24 00 04 6e 7e 1e ff  00 08 00 14 6c 32 fc d4  |.$..n~......l2..|
00000050  70 7b d0 9f d1 52 fa dd  69 03 cd 8c ad a8 86 66  |p{...R..i......f|
00000060  80 28 00 04 3b 64 61 99                           |.(..;da.|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
57.145.19.135AS32934 Facebook, Inc.THSTUN32026-10-10 12:52
1.55.37.160AS18403 FPT Telecom CompanyVNSTUN32026-10-10 12:52

Latest datagrams