when,ip,message 2018-10-27 03:03:28,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=50652 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:05:05,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=17761 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:05:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=34462 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:05:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=21781 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:06:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=33807 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:14:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=8905 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:15:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=46486 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:15:29,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=48829 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:24:29,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=26600 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:24:29,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=35361 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:31:29,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=44734 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:38:28,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=47704 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:40:28,45.34.0.246,SRC=45.34.0.246 DST=104.251.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=12584 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:44:05,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=24029 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:46:07,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=55779 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:46:08,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=53017 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:59:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=47344 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 03:59:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=38417 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 04:02:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=24823 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 04:02:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=18976 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 04:02:06,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=8781 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 04:03:05,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=247 ID=23434 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 04:03:05,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=2112 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0 2018-10-27 04:09:28,45.34.0.246,SRC=45.34.0.246 DST=107.155.*.* LEN=40 TOS=0x00 PREC=0x00 TTL=249 ID=21063 PROTO=TCP SPT=47052 DPT=3389 WINDOW=1024 RES=0x00 SYN URGP=0