Anyone knows what kind of data is this?

Hi. I decided recently to check some traffic on the WAN facing port using ssh capture and there is some HTTP traffic that I am not really sure what is the purpose of.

Screenshot 2022-11-04 142622

It looks as if my router exchanged some info with a singapore based IP with tencent domain, and this wxpic format is something I witness for the first time, seems to be data related to an image to program PIC micro-controllers.

Screenshot 2022-11-04 143730

Do you think guys this is just one of those hacking attempts, since after all my router responded with ACK and FIN afterwards indicating the end of HTTP stream? Should I be concerned about this finding ?

A tracking image from some website, most likely?

The SRC of the traffic seems to be from your network (assuming port 80 is the server at Tenecent). I assume your camera phones home or sends some other kind of data (i.e. most of those cheap consumer cameras auto-connect to the OEM's provided service).

1 Like

Can always do a whois on the destination IP(s).

The OP did.

You're right, disregard, I guess :slight_smile: