UDP traffic
Datagrams matching asn:4837 sent to HoneyLabs sensors over UDP in the last 24 hours. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.
A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.
2
Datagrams
2
Source addresses
1
Networks
1
Countries
2
Destination ports
Protocols
Destination ports
DNS questions
1 queries and 0 unsolicited answers. An answer nobody asked for means a resolver was given a forged source address.
DNS record types
- TXT1
Networks
- AS4837 CHINA UNICOM China169 Backbone from 2 sources2
Countries
Source addresses (unverified)
| Address | Network | Cc | Datagrams | Last seen (UTC) |
|---|---|---|---|---|
| 1.24.16.117 | AS4837 CHINA UNICOM China169 Backbone | CN | 1 | 2026-10-05 18:10 |
| 123.8.49.152 | AS4837 CHINA UNICOM China169 Backbone | CN | 1 | 2026-10-05 18:54 |
Latest datagrams
payload bytes
00000000 22 2e 3f 3c 5c 4a 76 35 6e 48 51 07 08 34 3a 5a |".?<\Jv5nHQ..4:Z| 00000010 21 4f 1b 30 32 3e 11 52 15 30 6a 1c 2b 65 59 4d |!O.02>.R.0j.+eYM| 00000020 17 18 09 74 63 7f 29 51 48 7a 59 50 2e 13 2b 4f |...tc.)QHzYP..+O| 00000030 63 46 00 15 05 11 68 1a 41 52 36 6c 37 38 db |cF....h.AR6l78.|
payload bytes
00000000 3c 8d 01 20 00 01 00 00 00 00 00 00 07 76 65 72 |<.. .........ver| 00000010 73 69 6f 6e 04 62 69 6e 64 00 00 10 00 03 00 |sion.bind......|