when,ip,message 2018-10-12 21:00:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=32602 DF PROTO=UDP SPT=4567 DPT=123 LEN=20 2018-10-12 23:38:16,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=56043 DPT=30005 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-12 23:38:16,184.105.139.92,SRC=184.105.139.92 DST=23.92.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=42657 DPT=30005 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 01:22:06,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=46110 DPT=21 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 03:37:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=51680 DPT=27017 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 03:48:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=41590 DPT=27017 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 05:30:06,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=35396 DPT=6379 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 05:48:05,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=44582 DPT=873 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 06:56:08,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=44616 DPT=4786 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 09:25:06,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=46960 DPT=447 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 12:41:08,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=37125 DPT=80 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-13 23:00:08,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=43364 DF PROTO=UDP SPT=27473 DPT=123 LEN=20 2018-10-14 03:56:06,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=34618 DPT=27017 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-14 05:23:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=36071 DPT=6379 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-14 10:36:07,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=49176 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-14 12:50:13,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=44006 DPT=80 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-14 21:10:08,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=58 ID=33898 DF PROTO=UDP SPT=65270 DPT=123 LEN=20 2018-10-14 23:00:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=61082 DF PROTO=UDP SPT=51631 DPT=123 LEN=20 2018-10-15 01:14:06,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=56699 DPT=21 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-15 01:53:12,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=44412 DPT=50075 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-15 06:28:09,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=33793 DPT=4786 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-15 19:12:10,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=51614 DPT=8080 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-15 22:08:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=48821 DF PROTO=UDP SPT=62672 DPT=123 LEN=20 2018-10-16 01:21:11,184.105.139.92,SRC=184.105.139.92 DST=23.92.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=52176 DPT=21 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 01:22:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=42176 DPT=21 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 13:47:21,184.105.139.92,SRC=184.105.139.92 DST=162.213.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=60609 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 13:48:21,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=44976 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 13:54:04,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=39823 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 13:54:04,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=46390 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 13:54:11,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=50795 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-16 21:46:06,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=63180 DF PROTO=UDP SPT=34738 DPT=123 LEN=20 2018-10-16 22:19:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=45810 DF PROTO=UDP SPT=18916 DPT=123 LEN=20 2018-10-16 23:04:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=45291 DF PROTO=UDP SPT=25136 DPT=123 LEN=20 2018-10-16 23:10:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=45982 DF PROTO=UDP SPT=34738 DPT=123 LEN=20 2018-10-17 00:34:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=59296 DPT=9200 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-17 00:56:07,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=57467 DPT=21 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-17 04:54:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=38459 DPT=3389 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-17 20:25:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=31576 DF PROTO=UDP SPT=52459 DPT=123 LEN=20 2018-10-18 03:34:11,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=36839 DPT=27017 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-18 04:51:15,184.105.139.92,SRC=184.105.139.92 DST=104.251.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=52550 DPT=3389 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-18 12:56:08,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=55059 DPT=2323 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-18 20:16:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=26230 DF PROTO=UDP SPT=48870 DPT=123 LEN=20 2018-10-18 21:08:15,184.105.139.92,SRC=184.105.139.92 DST=192.211.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=58 ID=24848 DF PROTO=UDP SPT=55597 DPT=123 LEN=20 2018-10-18 22:20:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=10244 DF PROTO=UDP SPT=55597 DPT=123 LEN=20 2018-10-18 23:19:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=57 ID=12039 DF PROTO=UDP SPT=48870 DPT=123 LEN=20 2018-10-18 23:48:05,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=39365 DPT=30005 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-19 02:54:27,184.105.139.92,SRC=184.105.139.92 DST=104.251.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=43765 DPT=50070 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-19 05:01:18,184.105.139.92,SRC=184.105.139.92 DST=192.211.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=45397 DPT=6379 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-19 09:17:16,184.105.139.92,SRC=184.105.139.92 DST=144.168.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=59967 DPT=447 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-19 11:10:16,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=54321 PROTO=TCP SPT=56065 DPT=443 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-19 13:35:05,184.105.139.92,SRC=184.105.139.92 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=41817 DPT=23 WINDOW=65535 RES=0x00 SYN URGP=0 2018-10-19 14:19:04,184.105.139.92,SRC=184.105.139.92 DST=23.227.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=248 ID=54321 PROTO=TCP SPT=46916 DPT=389 WINDOW=65535 RES=0x00 SYN URGP=0