HoneyLabs

UDP traffic

Datagrams matching proto:ntp sent to HoneyLabs sensors over UDP in the last 7 days. DNS questions and QUIC client fingerprints are decoded on the sensor. Other datagrams are kept as their first bytes and labelled by protocol where it can be recognised.

A UDP source address can be forged, so each address listed here either sent the traffic or was impersonated by whoever did. UDP traffic is kept out of verdicts, feeds, watchlists and alerts.

15

Datagrams

9

Source addresses

6

Networks

4

Countries

1

Destination ports

Protocols

  • ntp from 9 sources13
  • dns from 1 source2

Destination ports

DNS record types

Networks

Countries

Source addresses (unverified)

AddressNetworkCcDatagramsLast seen (UTC)
45.198.224.251AS215925 Vpsvault.host LtdUS42026-10-05 14:16
201.79.2.46AS14061 DigitalOcean, LLCDE32026-10-05 16:48
151.243.11.230AS209630 LLC Vash Kredit BankAE22026-10-05 16:45
193.163.125.219AS211298 Driftnet LtdGB12026-10-05 16:38
172.180.64.140AS8075 Microsoft CorporationUS12026-10-05 16:15
20.168.120.211AS8075 Microsoft CorporationUS12026-10-05 16:15
71.6.232.23AS10439 CariNet, Inc.US12026-10-05 13:57
20.169.91.49AS8075 Microsoft CorporationUS12026-10-05 16:17
172.203.252.37AS8075 Microsoft CorporationUS12026-10-05 16:13

Latest datagrams