UDP traffic
Datagrams matching port:9906 sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.
A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.
1
Datagrams
1
Source addresses
1
Networks
1
Countries
1
Destination ports
Traffic by type
Unrecognised
1 datagrams from 1 sourceDatagrams no decoder recognised. Their first bytes are kept.
Latest Unrecognised datagram, to 9906/udp
payload bytes
00000000 4b 6e 6f 63 6b 20 4b 6e 6f 63 6b 20 58 46 21 00 |Knock Knock XF!.|
Source addresses (unverified)
| Address | Network | Cc | Sends | Datagrams | Last seen (UTC) |
|---|---|---|---|---|---|
| 181.129.101.50 | AS13489 UNE EPM TELECOMUNICACIONES S.A. | CO | Unrecognised | 1 | 2026-10-06 14:49 |
Latest datagrams
payload bytes
00000000 4b 6e 6f 63 6b 20 4b 6e 6f 63 6b 20 58 46 21 00 |Knock Knock XF!.|