HoneyLabs

UDP traffic

Datagrams matching proto:mining sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

Your plan searches up to 7d, so 30d was shortened. Plans

1

Datagrams

1

Source addresses

1

Networks

1

Countries

1

Destination ports

Traffic by type

Other services

1 datagrams from 1 source

First packets of sessions with VPN, voice, tunnelling, database and management services.

Latest MINING datagram, to 30303/udp

·{M·A· 2·<1^+E·`·Į·0|!·B·7.·C·bX·b·^]·F·;·|·hv·!·0#·)·8·]*·&·˄·v_·v_˄·v_·v_·j·V

payload bytes
00000000  d3 7b 4d f2 90 cf 41 90  20 32 ca 3c 31 5e 2b 45  |.{M...A. 2.<1^+E|
00000010  84 60 94 c4 ae 92 30 7c  21 89 42 cf da 37 2e db  |.`....0|!.B..7..|
00000020  43 ac bc da 62 58 ce e3  8f 03 0f 62 eb f8 5e 5d  |C...bX.....b..^]|
00000030  be 8c da f9 46 8a 3b 17  e0 f0 7c b2 f3 b1 01 68  |....F.;...|....h|
00000040  76 e1 21 e0 30 23 bc a5  03 0e 8e 14 96 29 8f 00  |v.!.0#.......)..|
00000050  c5 e0 8a c0 db f0 d4 38  87 5d 2a ab 00 e8 9e 26  |.......8.]*....&|
00000060  00 01 de 04 cb 84 7f 00  00 01 82 76 5f 82 76 5f  |...........v_.v_|
00000070  cb 84 7f 00 00 01 82 76  5f 82 76 5f 84 6a c4 0e  |.......v_.v_.j..|
00000080  56                                                |V|

Destination ports

Networks

Countries

Source addresses (unverified)

AddressNetworkCcSendsDatagramsLast seen (UTC)
93.174.95.106AS202425 IP Volume incNLMINING12026-10-06 03:19

Latest datagrams