HoneyLabs

UDP traffic

Datagrams matching port:5353 sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

12

Datagrams

7

Source addresses

7

Networks

6

Countries

1

Destination ports

Protocols

  • dns from 3 sources8
  • raw from 4 sources4

Destination ports

DNS questions

8 queries and 0 unsolicited answers. An answer nobody asked for means a resolver was given a forged source address.

DNS record types

Networks

Countries

Source addresses (unverified)

AddressNetworkCcDatagramsLast seen (UTC)
16.5.0.234AS401661 EMBNEX, LLCBR32026-10-05 17:01
172.104.155.101AS63949 Akamai Connected CloudDE32026-10-05 16:57
194.164.107.4AS50219 Valence Technology Co.US22026-10-05 13:22
14.225.1.210AS135905 VIETNAM POSTS AND TELECOMMUNICATIONS GROVN12026-10-05 17:12
217.71.127.125AS198545 Flex Network SarlFR12026-10-05 15:43
217.160.190.176AS8560 IONOS SEDE12026-10-05 14:59
195.24.207.184AS15964 CAMTELCM12026-10-05 15:20

Latest datagrams