Last active
August 28, 2019 10:24
-
-
Save iamtakingiteasy/46f6af5cdd63025d16a84fce1db8ec80 to your computer and use it in GitHub Desktop.
Revisions
-
iamtakingiteasy revised this gist
Aug 28, 2019 . 1 changed file with 352 additions and 76 deletions.There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters. Learn more about bidirectional Unicode charactersOriginal file line number Diff line number Diff line change @@ -1,78 +1,354 @@ ``` # conntrack -E -o timestamp [1566987633.893212] [NEW] udp 17 30 src=46.160.198.64 dst=94.29.75.38 sport=27344 dport=8999 [UNREPLIED] src=94.29.75.38 dst=46.160.198.64 sport=8999 dport=27344 [1566987636.414233] [NEW] tcp 6 120 SYN_SENT src=175.197.17.246 dst=94.29.75.38 sport=55813 dport=8999 [UNREPLIED] src=94.29.75.38 dst=175.197.17.246 sport=8999 dport=55813 [1566987636.414268] [DESTROY] tcp 6 src=175.197.17.246 dst=94.29.75.38 sport=55813 dport=8999 [UNREPLIED] src=94.29.75.38 dst=175.197.17.246 sport=8999 dport=55813 [1566987636.752365] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 [UNREPLIED] src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [1566987636.873342] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [1566987639.359932] [NEW] udp 17 30 src=121.169.108.234 dst=94.29.75.38 sport=53164 dport=8999 [UNREPLIED] src=94.29.75.38 dst=121.169.108.234 sport=8999 dport=53164 [1566987639.718548] [NEW] tcp 6 120 SYN_SENT src=24.210.199.30 dst=94.29.75.38 sport=54488 dport=22 [UNREPLIED] src=94.29.75.38 dst=24.210.199.30 sport=22 dport=54488 [1566987639.718582] [UPDATE] tcp 6 60 SYN_RECV src=24.210.199.30 dst=94.29.75.38 sport=54488 dport=22 src=94.29.75.38 dst=24.210.199.30 sport=22 dport=54488 [1566987639.781197] [DESTROY] udp 17 src=196.64.161.8 dst=94.29.75.38 sport=12064 dport=8999 [UNREPLIED] src=94.29.75.38 dst=196.64.161.8 sport=8999 dport=12064 [1566987639.884061] [UPDATE] tcp 6 432000 ESTABLISHED src=24.210.199.30 dst=94.29.75.38 sport=54488 dport=22 src=94.29.75.38 dst=24.210.199.30 sport=22 dport=54488 [ASSURED] [1566987640.391126] [DESTROY] udp 17 src=150.242.173.249 dst=94.29.75.38 sport=25623 dport=8999 [UNREPLIED] src=94.29.75.38 dst=150.242.173.249 sport=8999 dport=25623 [1566987640.631535] [NEW] udp 17 30 src=121.44.116.243 dst=94.29.75.38 sport=35358 dport=8999 [UNREPLIED] src=94.29.75.38 dst=121.44.116.243 sport=8999 dport=35358 [1566987640.825782] [NEW] tcp 6 120 SYN_SENT src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 [UNREPLIED] src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [1566987640.874381] [UPDATE] tcp 6 60 SYN_RECV src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [1566987640.875525] [UPDATE] tcp 6 432000 ESTABLISHED src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [ASSURED] [1566987640.887795] [DESTROY] udp 17 src=114.26.43.81 dst=94.29.75.38 sport=21000 dport=8999 [UNREPLIED] src=94.29.75.38 dst=114.26.43.81 sport=8999 dport=21000 [1566987640.887837] [DESTROY] udp 17 src=2.63.79.188 dst=94.29.75.38 sport=40772 dport=8999 [UNREPLIED] src=94.29.75.38 dst=2.63.79.188 sport=8999 dport=40772 [1566987640.924495] [UPDATE] tcp 6 120 FIN_WAIT src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [ASSURED] [1566987640.925445] [UPDATE] tcp 6 60 CLOSE_WAIT src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [ASSURED] [1566987640.925554] [UPDATE] tcp 6 30 LAST_ACK src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [ASSURED] [1566987640.974228] [UPDATE] tcp 6 120 TIME_WAIT src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [ASSURED] [1566987640.984466] [DESTROY] udp 17 src=105.157.63.188 dst=94.29.75.38 sport=55764 dport=8999 [UNREPLIED] src=94.29.75.38 dst=105.157.63.188 sport=8999 dport=55764 [1566987642.447794] [DESTROY] icmp 1 src=80.239.201.237 dst=94.29.75.38 type=8 code=0 id=57689 src=94.29.75.38 dst=80.239.201.237 type=0 code=0 id=57689 [1566987644.474511] [DESTROY] udp 17 src=2.93.71.88 dst=94.29.75.38 sport=62960 dport=8999 [UNREPLIED] src=94.29.75.38 dst=2.93.71.88 sport=8999 dport=62960 [1566987644.474541] [DESTROY] udp 17 src=218.173.168.169 dst=94.29.75.38 sport=12312 dport=8999 [UNREPLIED] src=94.29.75.38 dst=218.173.168.169 sport=8999 dport=12312 [1566987644.474557] [DESTROY] udp 17 src=175.36.85.213 dst=94.29.75.38 sport=22894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=175.36.85.213 sport=8999 dport=22894 [1566987644.597616] [UPDATE] tcp 6 120 FIN_WAIT src=24.210.199.30 dst=94.29.75.38 sport=54488 dport=22 src=94.29.75.38 dst=24.210.199.30 sport=22 dport=54488 [ASSURED] [1566987644.598573] [UPDATE] tcp 6 30 LAST_ACK src=24.210.199.30 dst=94.29.75.38 sport=54488 dport=22 src=94.29.75.38 dst=24.210.199.30 sport=22 dport=54488 [ASSURED] [1566987644.723006] [NEW] udp 17 30 src=36.239.150.48 dst=94.29.75.38 sport=16402 dport=8999 [UNREPLIED] src=94.29.75.38 dst=36.239.150.48 sport=8999 dport=16402 [1566987644.760950] [UPDATE] tcp 6 120 TIME_WAIT src=24.210.199.30 dst=94.29.75.38 sport=54488 dport=22 src=94.29.75.38 dst=24.210.199.30 sport=22 dport=54488 [ASSURED] [1566987645.145559] [NEW] tcp 6 120 SYN_SENT src=192.168.1.96 dst=109.74.196.48 sport=48556 dport=8267 [UNREPLIED] src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [1566987645.203667] [UPDATE] tcp 6 60 SYN_RECV src=192.168.1.96 dst=109.74.196.48 sport=48556 dport=8267 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [1566987645.204847] [UPDATE] tcp 6 432000 ESTABLISHED src=192.168.1.96 dst=109.74.196.48 sport=48556 dport=8267 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [ASSURED] [1566987645.322796] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [ASSURED] [1566987645.387093] [NEW] udp 17 30 src=111.171.150.182 dst=94.29.75.38 sport=19661 dport=8999 [UNREPLIED] src=94.29.75.38 dst=111.171.150.182 sport=8999 dport=19661 [1566987646.422603] [NEW] tcp 6 120 SYN_SENT src=175.149.150.224 dst=94.29.75.38 sport=55403 dport=8080 [UNREPLIED] src=94.29.75.38 dst=175.149.150.224 sport=8080 dport=55403 [1566987646.422638] [DESTROY] tcp 6 src=175.149.150.224 dst=94.29.75.38 sport=55403 dport=8080 [UNREPLIED] src=94.29.75.38 dst=175.149.150.224 sport=8080 dport=55403 [1566987647.179024] [NEW] udp 17 30 src=101.127.67.20 dst=94.29.75.38 sport=65435 dport=8999 [UNREPLIED] src=94.29.75.38 dst=101.127.67.20 sport=8999 dport=65435 [1566987648.270480] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 [UNREPLIED] src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [1566987648.392560] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [1566987650.190052] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 [UNREPLIED] src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [1566987650.313993] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [1566987650.447847] [DESTROY] udp 17 src=94.29.75.38 dst=224.0.0.252 sport=5355 dport=5355 [UNREPLIED] src=224.0.0.252 dst=94.29.75.38 sport=5355 dport=5355 [1566987650.447879] [DESTROY] udp 17 src=176.59.195.174 dst=94.29.75.38 sport=48047 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.59.195.174 sport=8999 dport=48047 [1566987650.621098] [DESTROY] udp 17 src=94.29.72.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=94.29.72.1 sport=68 dport=67 [1566987650.621132] [NEW] udp 17 30 src=94.29.72.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=94.29.72.1 sport=68 dport=67 [1566987651.722371] [NEW] tcp 6 120 SYN_SENT src=93.77.124.225 dst=94.29.75.38 sport=49575 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49575 [1566987651.722405] [DESTROY] tcp 6 src=93.77.124.225 dst=94.29.75.38 sport=49575 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49575 [1566987652.308690] [NEW] tcp 6 120 SYN_SENT src=93.77.124.225 dst=94.29.75.38 sport=49575 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49575 [1566987652.308725] [DESTROY] tcp 6 src=93.77.124.225 dst=94.29.75.38 sport=49575 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49575 [1566987652.898725] [NEW] tcp 6 120 SYN_SENT src=93.77.124.225 dst=94.29.75.38 sport=49575 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49575 [1566987652.898761] [DESTROY] tcp 6 src=93.77.124.225 dst=94.29.75.38 sport=49575 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49575 [1566987654.484860] [NEW] udp 17 30 src=46.242.9.83 dst=94.29.75.38 sport=7425 dport=8999 [UNREPLIED] src=94.29.75.38 dst=46.242.9.83 sport=8999 dport=7425 [1566987654.503250] [NEW] udp 17 30 src=54.214.105.212 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=54.214.105.212 sport=8999 dport=6881 [1566987655.141172] [DESTROY] udp 17 src=69.70.247.58 dst=94.29.75.38 sport=39765 dport=8999 [UNREPLIED] src=94.29.75.38 dst=69.70.247.58 sport=8999 dport=39765 [1566987655.141207] [DESTROY] udp 17 src=101.136.215.150 dst=94.29.75.38 sport=11744 dport=8999 [UNREPLIED] src=94.29.75.38 dst=101.136.215.150 sport=8999 dport=11744 [1566987656.276795] [NEW] udp 17 30 src=58.62.123.32 dst=94.29.75.38 sport=21504 dport=8999 [UNREPLIED] src=94.29.75.38 dst=58.62.123.32 sport=8999 dport=21504 [1566987656.910449] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [ASSURED] [1566987658.412746] [NEW] udp 17 30 src=202.170.179.23 dst=94.29.75.38 sport=16839 dport=8999 [UNREPLIED] src=94.29.75.38 dst=202.170.179.23 sport=8999 dport=16839 [1566987658.695815] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [ASSURED] [1566987658.707851] [DESTROY] udp 17 src=95.24.94.34 dst=94.29.75.38 sport=14130 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=14130 [1566987658.707883] [DESTROY] udp 17 src=180.157.74.75 dst=94.29.75.38 sport=9933 dport=8999 [UNREPLIED] src=94.29.75.38 dst=180.157.74.75 sport=8999 dport=9933 [1566987659.790426] [UPDATE] tcp 6 432000 src=192.168.1.96 dst=64.233.162.188 sport=40318 dport=5228 src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=40318 [ASSURED] [1566987660.381567] [NEW] tcp 6 120 SYN_SENT src=43.248.124.113 dst=94.29.75.38 sport=57066 dport=22 [UNREPLIED] src=94.29.75.38 dst=43.248.124.113 sport=22 dport=57066 [1566987660.381602] [UPDATE] tcp 6 60 SYN_RECV src=43.248.124.113 dst=94.29.75.38 sport=57066 dport=22 src=94.29.75.38 dst=43.248.124.113 sport=22 dport=57066 [1566987660.631716] [UPDATE] tcp 6 432000 ESTABLISHED src=43.248.124.113 dst=94.29.75.38 sport=57066 dport=22 src=94.29.75.38 dst=43.248.124.113 sport=22 dport=57066 [ASSURED] [1566987661.967825] [DESTROY] udp 17 src=185.24.26.138 dst=94.29.75.38 sport=43599 dport=8999 [UNREPLIED] src=94.29.75.38 dst=185.24.26.138 sport=8999 dport=43599 [1566987662.821166] [DESTROY] udp 17 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [UNREPLIED] src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 [1566987664.912851] [UPDATE] tcp 6 432000 src=192.168.1.96 dst=151.101.192.133 sport=60138 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60138 [ASSURED] [1566987664.912885] [UPDATE] tcp 6 432000 src=192.168.1.96 dst=151.101.192.133 sport=60158 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60158 [ASSURED] [1566987664.954482] [DESTROY] udp 17 src=176.196.56.15 dst=94.29.75.38 sport=12221 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=12221 [1566987666.346626] [UPDATE] tcp 6 120 FIN_WAIT src=43.248.124.113 dst=94.29.75.38 sport=57066 dport=22 src=94.29.75.38 dst=43.248.124.113 sport=22 dport=57066 [ASSURED] [1566987666.347592] [UPDATE] tcp 6 30 LAST_ACK src=43.248.124.113 dst=94.29.75.38 sport=57066 dport=22 src=94.29.75.38 dst=43.248.124.113 sport=22 dport=57066 [ASSURED] [1566987666.447793] [DESTROY] icmp 1 src=80.239.201.237 dst=94.29.75.38 type=8 code=0 id=25433 src=94.29.75.38 dst=80.239.201.237 type=0 code=0 id=25433 [1566987666.594175] [UPDATE] tcp 6 120 TIME_WAIT src=43.248.124.113 dst=94.29.75.38 sport=57066 dport=22 src=94.29.75.38 dst=43.248.124.113 sport=22 dport=57066 [ASSURED] [1566987666.617876] [UPDATE] tcp 6 432000 src=192.168.1.96 dst=151.101.192.133 sport=60160 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60160 [ASSURED] [1566987667.477889] [NEW] tcp 6 120 SYN_SENT src=92.118.37.67 dst=94.29.75.38 sport=48250 dport=2275 [UNREPLIED] src=94.29.75.38 dst=92.118.37.67 sport=2275 dport=48250 [1566987667.477922] [DESTROY] tcp 6 src=92.118.37.67 dst=94.29.75.38 sport=48250 dport=2275 [UNREPLIED] src=94.29.75.38 dst=92.118.37.67 sport=2275 dport=48250 [1566987667.737826] [DESTROY] udp 17 src=31.169.0.144 dst=94.29.75.38 sport=35093 dport=8999 [UNREPLIED] src=94.29.75.38 dst=31.169.0.144 sport=8999 dport=35093 [1566987668.826814] [NEW] udp 17 30 src=85.64.249.92 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.64.249.92 sport=8999 dport=6889 [1566987669.244455] [NEW] udp 17 30 src=188.131.201.84 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=188.131.201.84 sport=8999 dport=6881 [1566987671.529741] [NEW] udp 17 30 src=14.109.211.68 dst=94.29.75.38 sport=41562 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.109.211.68 sport=8999 dport=41562 [1566987672.899616] [NEW] udp 17 30 src=180.107.147.14 dst=94.29.75.38 sport=23793 dport=8999 [UNREPLIED] src=94.29.75.38 dst=180.107.147.14 sport=8999 dport=23793 [1566987673.293139] [NEW] udp 17 30 src=36.231.58.208 dst=94.29.75.38 sport=25080 dport=8999 [UNREPLIED] src=94.29.75.38 dst=36.231.58.208 sport=8999 dport=25080 [1566987674.341225] [DESTROY] udp 17 src=122.121.53.153 dst=94.29.75.38 sport=20339 dport=8999 [UNREPLIED] src=94.29.75.38 dst=122.121.53.153 sport=8999 dport=20339 [1566987674.341258] [DESTROY] udp 17 src=213.222.42.232 dst=94.29.75.38 sport=25284 dport=8999 [UNREPLIED] src=94.29.75.38 dst=213.222.42.232 sport=8999 dport=25284 [1566987674.930504] [NEW] tcp 6 120 SYN_SENT src=200.122.249.203 dst=94.29.75.38 sport=36638 dport=22 [UNREPLIED] src=94.29.75.38 dst=200.122.249.203 sport=22 dport=36638 [1566987674.930539] [UPDATE] tcp 6 60 SYN_RECV src=200.122.249.203 dst=94.29.75.38 sport=36638 dport=22 src=94.29.75.38 dst=200.122.249.203 sport=22 dport=36638 [1566987675.137979] [UPDATE] tcp 6 432000 ESTABLISHED src=200.122.249.203 dst=94.29.75.38 sport=36638 dport=22 src=94.29.75.38 dst=200.122.249.203 sport=22 dport=36638 [ASSURED] [1566987676.231979] [NEW] tcp 6 120 SYN_SENT src=5.178.83.125 dst=94.29.75.38 sport=54693 dport=47433 [UNREPLIED] src=94.29.75.38 dst=5.178.83.125 sport=47433 dport=54693 [1566987676.232014] [DESTROY] tcp 6 src=5.178.83.125 dst=94.29.75.38 sport=54693 dport=47433 [UNREPLIED] src=94.29.75.38 dst=5.178.83.125 sport=47433 dport=54693 [1566987676.290580] [NEW] udp 17 30 src=178.68.15.87 dst=94.29.75.38 sport=49001 dport=8999 [UNREPLIED] src=94.29.75.38 dst=178.68.15.87 sport=8999 dport=49001 [1566987676.901209] [DESTROY] udp 17 src=61.215.242.42 dst=94.29.75.38 sport=20531 dport=8999 [UNREPLIED] src=94.29.75.38 dst=61.215.242.42 sport=8999 dport=20531 [1566987678.824082] [NEW] udp 17 30 src=92.211.142.144 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=92.211.142.144 sport=8999 dport=6889 [1566987678.853979] [NEW] udp 17 30 src=173.212.202.22 dst=94.29.75.38 sport=6948 dport=8999 [UNREPLIED] src=94.29.75.38 dst=173.212.202.22 sport=8999 dport=6948 [1566987678.937911] [DESTROY] udp 17 src=213.136.79.238 dst=94.29.75.38 sport=33422 dport=8999 [UNREPLIED] src=94.29.75.38 dst=213.136.79.238 sport=8999 dport=33422 [1566987678.937945] [NEW] udp 17 30 src=213.136.79.238 dst=94.29.75.38 sport=33422 dport=8999 [UNREPLIED] src=94.29.75.38 dst=213.136.79.238 sport=8999 dport=33422 [1566987679.721376] [NEW] udp 17 30 src=173.249.19.73 dst=94.29.75.38 sport=23006 dport=8999 [UNREPLIED] src=94.29.75.38 dst=173.249.19.73 sport=8999 dport=23006 [1566987680.741210] [DESTROY] udp 17 src=221.250.51.133 dst=94.29.75.38 sport=13447 dport=8999 [UNREPLIED] src=94.29.75.38 dst=221.250.51.133 sport=8999 dport=13447 [1566987680.855099] [UPDATE] tcp 6 120 FIN_WAIT src=200.122.249.203 dst=94.29.75.38 sport=36638 dport=22 src=94.29.75.38 dst=200.122.249.203 sport=22 dport=36638 [ASSURED] [1566987680.855856] [UPDATE] tcp 6 30 LAST_ACK src=200.122.249.203 dst=94.29.75.38 sport=36638 dport=22 src=94.29.75.38 dst=200.122.249.203 sport=22 dport=36638 [ASSURED] [1566987680.887822] [DESTROY] udp 17 src=175.197.17.246 dst=94.29.75.38 sport=8999 dport=8999 [UNREPLIED] src=94.29.75.38 dst=175.197.17.246 sport=8999 dport=8999 [1566987680.941181] [DESTROY] udp 17 src=46.160.198.64 dst=94.29.75.38 sport=27344 dport=8999 [UNREPLIED] src=94.29.75.38 dst=46.160.198.64 sport=8999 dport=27344 [1566987680.941215] [DESTROY] udp 17 src=101.127.67.20 dst=94.29.75.38 sport=65435 dport=8999 [UNREPLIED] src=94.29.75.38 dst=101.127.67.20 sport=8999 dport=65435 [1566987681.063240] [UPDATE] tcp 6 120 TIME_WAIT src=200.122.249.203 dst=94.29.75.38 sport=36638 dport=22 src=94.29.75.38 dst=200.122.249.203 sport=22 dport=36638 [ASSURED] [1566987681.941158] [DESTROY] udp 17 src=35.143.107.22 dst=94.29.75.38 sport=27234 dport=8999 [UNREPLIED] src=94.29.75.38 dst=35.143.107.22 sport=8999 dport=27234 [1566987683.216990] [NEW] udp 17 30 src=220.134.144.17 dst=94.29.75.38 sport=27042 dport=8999 [UNREPLIED] src=94.29.75.38 dst=220.134.144.17 sport=8999 dport=27042 [1566987686.148309] [NEW] tcp 6 120 SYN_SENT src=51.158.101.76 dst=94.29.75.38 sport=37382 dport=22 [UNREPLIED] src=94.29.75.38 dst=51.158.101.76 sport=22 dport=37382 [1566987686.148343] [UPDATE] tcp 6 60 SYN_RECV src=51.158.101.76 dst=94.29.75.38 sport=37382 dport=22 src=94.29.75.38 dst=51.158.101.76 sport=22 dport=37382 [1566987686.177711] [NEW] udp 17 30 src=113.251.50.159 dst=94.29.75.38 sport=4267 dport=8999 [UNREPLIED] src=94.29.75.38 dst=113.251.50.159 sport=8999 dport=4267 [1566987686.216184] [UPDATE] tcp 6 432000 ESTABLISHED src=51.158.101.76 dst=94.29.75.38 sport=37382 dport=22 src=94.29.75.38 dst=51.158.101.76 sport=22 dport=37382 [ASSURED] [1566987686.217822] [DESTROY] udp 17 src=118.154.16.149 dst=94.29.75.38 sport=20200 dport=8999 [UNREPLIED] src=94.29.75.38 dst=118.154.16.149 sport=8999 dport=20200 [1566987688.191569] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.50 dst=64.233.162.188 sport=41077 dport=5228 [UNREPLIED] src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=41077 [1566987688.212870] [DESTROY] tcp 6 src=192.168.1.50 dst=64.233.162.188 sport=41077 dport=5228 [UNREPLIED] src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=41077 [1566987688.247778] [NEW] tcp 6 120 SYN_SENT src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 [UNREPLIED] src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [1566987688.268019] [UPDATE] tcp 6 60 SYN_RECV src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [1566987688.269883] [UPDATE] tcp 6 432000 ESTABLISHED src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [ASSURED] [1566987688.270893] [NEW] udp 17 30 src=192.168.1.50 dst=8.8.8.8 sport=27670 dport=53 [UNREPLIED] src=8.8.8.8 dst=94.29.75.38 sport=53 dport=27670 [1566987688.274742] [NEW] udp 17 30 src=192.168.1.50 dst=8.8.8.8 sport=7383 dport=53 [UNREPLIED] src=8.8.8.8 dst=94.29.75.38 sport=53 dport=7383 [1566987688.291522] [UPDATE] udp 17 30 src=192.168.1.50 dst=8.8.8.8 sport=27670 dport=53 src=8.8.8.8 dst=94.29.75.38 sport=53 dport=27670 [1566987688.295216] [UPDATE] udp 17 30 src=192.168.1.50 dst=8.8.8.8 sport=7383 dport=53 src=8.8.8.8 dst=94.29.75.38 sport=53 dport=7383 [1566987688.298819] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.50 dst=173.194.222.94 sport=43250 dport=80 [UNREPLIED] src=173.194.222.94 dst=94.29.75.38 sport=80 dport=43250 [1566987688.302115] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.50 dst=173.194.73.104 sport=46586 dport=443 [UNREPLIED] src=173.194.73.104 dst=94.29.75.38 sport=443 dport=46586 [1566987688.319031] [DESTROY] tcp 6 src=192.168.1.50 dst=173.194.222.94 sport=43250 dport=80 [UNREPLIED] src=173.194.222.94 dst=94.29.75.38 sport=80 dport=43250 [1566987688.323460] [DESTROY] tcp 6 src=192.168.1.50 dst=173.194.73.104 sport=46586 dport=443 [UNREPLIED] src=173.194.73.104 dst=94.29.75.38 sport=443 dport=46586 [1566987688.332899] [NEW] tcp 6 120 SYN_SENT src=192.168.1.50 dst=173.194.222.94 sport=43308 dport=80 [UNREPLIED] src=173.194.222.94 dst=94.29.75.38 sport=80 dport=43308 [1566987688.343857] [NEW] tcp 6 120 SYN_SENT src=192.168.1.50 dst=74.125.205.103 sport=43002 dport=443 [UNREPLIED] src=74.125.205.103 dst=94.29.75.38 sport=443 dport=43002 [1566987688.353276] [UPDATE] tcp 6 60 SYN_RECV src=192.168.1.50 dst=173.194.222.94 sport=43308 dport=80 src=173.194.222.94 dst=94.29.75.38 sport=80 dport=43308 [1566987688.355522] [NEW] tcp 6 120 SYN_SENT src=192.168.1.50 dst=64.233.161.188 sport=49332 dport=5228 [UNREPLIED] src=64.233.161.188 dst=94.29.75.38 sport=5228 dport=49332 [1566987688.355881] [UPDATE] tcp 6 432000 ESTABLISHED src=192.168.1.50 dst=173.194.222.94 sport=43308 dport=80 src=173.194.222.94 dst=94.29.75.38 sport=80 dport=43308 [ASSURED] [1566987688.364930] [UPDATE] tcp 6 60 SYN_RECV src=192.168.1.50 dst=74.125.205.103 sport=43002 dport=443 src=74.125.205.103 dst=94.29.75.38 sport=443 dport=43002 [1566987688.366404] [UPDATE] tcp 6 432000 ESTABLISHED src=192.168.1.50 dst=74.125.205.103 sport=43002 dport=443 src=74.125.205.103 dst=94.29.75.38 sport=443 dport=43002 [ASSURED] [1566987688.376587] [UPDATE] tcp 6 60 SYN_RECV src=192.168.1.50 dst=64.233.161.188 sport=49332 dport=5228 src=64.233.161.188 dst=94.29.75.38 sport=5228 dport=49332 [1566987688.379172] [UPDATE] tcp 6 432000 ESTABLISHED src=192.168.1.50 dst=64.233.161.188 sport=49332 dport=5228 src=64.233.161.188 dst=94.29.75.38 sport=5228 dport=49332 [ASSURED] [1566987688.847857] [DESTROY] udp 17 src=83.42.78.21 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=83.42.78.21 sport=8999 dport=6881 [1566987689.021376] [NEW] udp 17 30 src=183.156.121.241 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=183.156.121.241 sport=8999 dport=6881 [1566987689.728346] [UPDATE] tcp 6 120 FIN_WAIT src=51.158.101.76 dst=94.29.75.38 sport=37382 dport=22 src=94.29.75.38 dst=51.158.101.76 sport=22 dport=37382 [ASSURED] [1566987689.729349] [UPDATE] tcp 6 30 LAST_ACK src=51.158.101.76 dst=94.29.75.38 sport=37382 dport=22 src=94.29.75.38 dst=51.158.101.76 sport=22 dport=37382 [ASSURED] [1566987689.741212] [DESTROY] udp 17 src=14.192.212.59 dst=94.29.75.38 sport=5166 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=5166 [1566987689.794235] [UPDATE] tcp 6 120 TIME_WAIT src=51.158.101.76 dst=94.29.75.38 sport=37382 dport=22 src=94.29.75.38 dst=51.158.101.76 sport=22 dport=37382 [ASSURED] [1566987690.127802] [DESTROY] udp 17 src=111.171.150.182 dst=94.29.75.38 sport=19661 dport=8999 [UNREPLIED] src=94.29.75.38 dst=111.171.150.182 sport=8999 dport=19661 [1566987690.127835] [DESTROY] udp 17 src=46.35.254.249 dst=94.29.75.38 sport=8621 dport=8999 [UNREPLIED] src=94.29.75.38 dst=46.35.254.249 sport=8999 dport=8621 [1566987690.127851] [DESTROY] udp 17 src=46.242.9.83 dst=94.29.75.38 sport=7425 dport=8999 [UNREPLIED] src=94.29.75.38 dst=46.242.9.83 sport=8999 dport=7425 [1566987691.504490] [DESTROY] udp 17 src=14.11.3.128 dst=94.29.75.38 sport=50498 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.11.3.128 sport=8999 dport=50498 [1566987691.607826] [DESTROY] udp 17 src=114.37.243.43 dst=94.29.75.38 sport=24009 dport=8999 [UNREPLIED] src=94.29.75.38 dst=114.37.243.43 sport=8999 dport=24009 [1566987691.711199] [DESTROY] udp 17 src=95.211.184.105 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.211.184.105 sport=8999 dport=6881 [1566987692.104828] [UPDATE] tcp 6 120 FIN_WAIT src=192.168.1.96 dst=151.101.192.133 sport=60160 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60160 [ASSURED] [1566987692.104863] [UPDATE] tcp 6 120 FIN_WAIT src=192.168.1.96 dst=151.101.192.133 sport=60158 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60158 [ASSURED] [1566987692.106256] [UPDATE] tcp 6 120 FIN_WAIT src=192.168.1.96 dst=151.101.192.133 sport=60138 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60138 [ASSURED] [1566987692.132301] [UPDATE] tcp 6 60 CLOSE_WAIT src=192.168.1.96 dst=151.101.192.133 sport=60158 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60158 [ASSURED] [1566987692.132335] [UPDATE] tcp 6 30 LAST_ACK src=192.168.1.96 dst=151.101.192.133 sport=60158 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60158 [ASSURED] [1566987692.133036] [UPDATE] tcp 6 60 CLOSE_WAIT src=192.168.1.96 dst=151.101.192.133 sport=60138 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60138 [ASSURED] [1566987692.133232] [UPDATE] tcp 6 30 LAST_ACK src=192.168.1.96 dst=151.101.192.133 sport=60138 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60138 [ASSURED] [1566987692.133398] [UPDATE] tcp 6 10 CLOSE src=192.168.1.96 dst=151.101.192.133 sport=60158 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60158 [ASSURED] [1566987692.134153] [UPDATE] tcp 6 60 CLOSE_WAIT src=192.168.1.96 dst=151.101.192.133 sport=60160 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60160 [ASSURED] [1566987692.134187] [UPDATE] tcp 6 30 LAST_ACK src=192.168.1.96 dst=151.101.192.133 sport=60160 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60160 [ASSURED] [1566987692.134722] [UPDATE] tcp 6 10 CLOSE src=192.168.1.96 dst=151.101.192.133 sport=60138 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60138 [ASSURED] [1566987692.138535] [UPDATE] tcp 6 10 CLOSE src=192.168.1.96 dst=151.101.192.133 sport=60160 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60160 [ASSURED] [1566987694.682784] [NEW] udp 17 30 src=218.102.101.175 dst=94.29.75.38 sport=1234 dport=8999 [UNREPLIED] src=94.29.75.38 dst=218.102.101.175 sport=8999 dport=1234 [1566987695.788084] [NEW] udp 17 30 src=220.72.45.173 dst=94.29.75.38 sport=39070 dport=8999 [UNREPLIED] src=94.29.75.38 dst=220.72.45.173 sport=8999 dport=39070 [1566987698.234538] [DESTROY] udp 17 src=157.192.147.103 dst=94.29.75.38 sport=7494 dport=8999 [UNREPLIED] src=94.29.75.38 dst=157.192.147.103 sport=8999 dport=7494 [1566987698.234572] [DESTROY] udp 17 src=202.170.179.23 dst=94.29.75.38 sport=16839 dport=8999 [UNREPLIED] src=94.29.75.38 dst=202.170.179.23 sport=8999 dport=16839 [1566987698.234591] [DESTROY] udp 17 src=128.74.69.213 dst=94.29.75.38 sport=48910 dport=8999 [UNREPLIED] src=94.29.75.38 dst=128.74.69.213 sport=8999 dport=48910 [1566987698.892731] [NEW] udp 17 30 src=10.108.192.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=10.108.192.1 sport=68 dport=67 [1566987703.126628] [NEW] udp 17 30 src=5.189.157.90 dst=94.29.75.38 sport=12023 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.157.90 sport=8999 dport=12023 [1566987703.428846] [NEW] udp 17 30 src=5.189.157.90 dst=94.29.75.38 sport=12006 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.157.90 sport=8999 dport=12006 [1566987703.558723] [NEW] udp 17 30 src=41.189.179.204 dst=94.29.75.38 sport=9414 dport=8999 [UNREPLIED] src=94.29.75.38 dst=41.189.179.204 sport=8999 dport=9414 [1566987707.691186] [DESTROY] udp 17 src=122.30.35.67 dst=94.29.75.38 sport=10500 dport=8999 [UNREPLIED] src=94.29.75.38 dst=122.30.35.67 sport=8999 dport=10500 [1566987708.069684] [NEW] udp 17 30 src=54.183.201.45 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=54.183.201.45 sport=8999 dport=6881 [1566987709.613272] [NEW] udp 17 30 src=101.87.75.178 dst=94.29.75.38 sport=21101 dport=8999 [UNREPLIED] src=94.29.75.38 dst=101.87.75.178 sport=8999 dport=21101 [1566987710.675667] [NEW] udp 17 30 src=158.46.119.68 dst=94.29.75.38 sport=43311 dport=8999 [UNREPLIED] src=94.29.75.38 dst=158.46.119.68 sport=8999 dport=43311 [1566987711.034523] [DESTROY] udp 17 src=54.214.105.212 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=54.214.105.212 sport=8999 dport=6881 [1566987711.075383] [NEW] udp 17 30 src=223.72.55.118 dst=94.29.75.38 sport=17875 dport=8999 [UNREPLIED] src=94.29.75.38 dst=223.72.55.118 sport=8999 dport=17875 [1566987711.695816] [NEW] tcp 6 120 SYN_SENT src=93.77.124.225 dst=94.29.75.38 sport=49636 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49636 [1566987711.695851] [DESTROY] tcp 6 src=93.77.124.225 dst=94.29.75.38 sport=49636 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49636 [1566987711.881152] [DESTROY] udp 17 src=85.64.249.92 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.64.249.92 sport=8999 dport=6889 [1566987712.191971] [NEW] udp 17 30 src=49.48.248.205 dst=94.29.75.38 sport=22160 dport=8999 [UNREPLIED] src=94.29.75.38 dst=49.48.248.205 sport=8999 dport=22160 [1566987712.283976] [NEW] tcp 6 120 SYN_SENT src=93.77.124.225 dst=94.29.75.38 sport=49636 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49636 [1566987712.284026] [DESTROY] tcp 6 src=93.77.124.225 dst=94.29.75.38 sport=49636 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49636 [1566987712.294491] [DESTROY] udp 17 src=14.109.211.68 dst=94.29.75.38 sport=41562 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.109.211.68 sport=8999 dport=41562 [1566987712.294524] [DESTROY] tcp 6 src=124.43.130.47 dst=94.29.75.38 sport=65198 dport=22 src=94.29.75.38 dst=124.43.130.47 sport=22 dport=65198 [ASSURED] [1566987712.874340] [NEW] tcp 6 120 SYN_SENT src=93.77.124.225 dst=94.29.75.38 sport=49636 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49636 [1566987712.874392] [DESTROY] tcp 6 src=93.77.124.225 dst=94.29.75.38 sport=49636 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.77.124.225 sport=8999 dport=49636 [1566987713.707854] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=60138 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60138 [ASSURED] [1566987713.707887] [DESTROY] tcp 6 src=51.38.237.78 dst=94.29.75.38 sport=44242 dport=22 src=94.29.75.38 dst=51.38.237.78 sport=22 dport=44242 [ASSURED] [1566987713.890249] [NEW] tcp 6 120 SYN_SENT src=37.187.12.126 dst=94.29.75.38 sport=60784 dport=22 [UNREPLIED] src=94.29.75.38 dst=37.187.12.126 sport=22 dport=60784 [1566987713.890283] [UPDATE] tcp 6 60 SYN_RECV src=37.187.12.126 dst=94.29.75.38 sport=60784 dport=22 src=94.29.75.38 dst=37.187.12.126 sport=22 dport=60784 [1566987713.935026] [UPDATE] tcp 6 432000 ESTABLISHED src=37.187.12.126 dst=94.29.75.38 sport=60784 dport=22 src=94.29.75.38 dst=37.187.12.126 sport=22 dport=60784 [ASSURED] [1566987716.794523] [DESTROY] tcp 6 src=151.80.140.13 dst=94.29.75.38 sport=49884 dport=22 src=94.29.75.38 dst=151.80.140.13 sport=22 dport=49884 [ASSURED] [1566987718.329562] [UPDATE] tcp 6 120 FIN_WAIT src=37.187.12.126 dst=94.29.75.38 sport=60784 dport=22 src=94.29.75.38 dst=37.187.12.126 sport=22 dport=60784 [ASSURED] [1566987718.330401] [UPDATE] tcp 6 30 LAST_ACK src=37.187.12.126 dst=94.29.75.38 sport=60784 dport=22 src=94.29.75.38 dst=37.187.12.126 sport=22 dport=60784 [ASSURED] [1566987718.375159] [UPDATE] tcp 6 120 TIME_WAIT src=37.187.12.126 dst=94.29.75.38 sport=60784 dport=22 src=94.29.75.38 dst=37.187.12.126 sport=22 dport=60784 [ASSURED] [1566987719.971547] [NEW] udp 17 30 src=2.94.202.121 dst=94.29.75.38 sport=53777 dport=8999 [UNREPLIED] src=94.29.75.38 dst=2.94.202.121 sport=8999 dport=53777 [1566987721.397010] [NEW] udp 17 30 src=220.135.66.85 dst=94.29.75.38 sport=15496 dport=8999 [UNREPLIED] src=94.29.75.38 dst=220.135.66.85 sport=8999 dport=15496 [1566987721.621185] [DESTROY] udp 17 src=36.239.150.48 dst=94.29.75.38 sport=16402 dport=8999 [UNREPLIED] src=94.29.75.38 dst=36.239.150.48 sport=8999 dport=16402 [1566987721.621218] [DESTROY] udp 17 src=36.231.58.208 dst=94.29.75.38 sport=25080 dport=8999 [UNREPLIED] src=94.29.75.38 dst=36.231.58.208 sport=8999 dport=25080 [1566987721.640429] [NEW] udp 17 30 src=109.252.19.34 dst=94.29.75.38 sport=5758 dport=8999 [UNREPLIED] src=94.29.75.38 dst=109.252.19.34 sport=8999 dport=5758 [1566987722.755725] [NEW] tcp 6 120 SYN_SENT src=85.95.178.195 dst=94.29.75.38 sport=1826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.95.178.195 sport=8999 dport=1826 [1566987722.755759] [DESTROY] tcp 6 src=85.95.178.195 dst=94.29.75.38 sport=1826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.95.178.195 sport=8999 dport=1826 [1566987722.954524] [DESTROY] udp 17 src=173.208.197.226 dst=94.29.75.38 sport=9815 dport=8999 [UNREPLIED] src=94.29.75.38 dst=173.208.197.226 sport=8999 dport=9815 [1566987723.031165] [DESTROY] udp 17 src=121.169.108.234 dst=94.29.75.38 sport=53164 dport=8999 [UNREPLIED] src=94.29.75.38 dst=121.169.108.234 sport=8999 dport=53164 [1566987723.067820] [DESTROY] udp 17 src=58.62.123.32 dst=94.29.75.38 sport=21504 dport=8999 [UNREPLIED] src=94.29.75.38 dst=58.62.123.32 sport=8999 dport=21504 [1566987723.284488] [DESTROY] udp 17 src=82.46.192.113 dst=94.29.75.38 sport=25751 dport=8999 [UNREPLIED] src=94.29.75.38 dst=82.46.192.113 sport=8999 dport=25751 [1566987723.330150] [NEW] tcp 6 120 SYN_SENT src=85.95.178.195 dst=94.29.75.38 sport=1826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.95.178.195 sport=8999 dport=1826 [1566987723.330185] [DESTROY] tcp 6 src=85.95.178.195 dst=94.29.75.38 sport=1826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.95.178.195 sport=8999 dport=1826 [1566987723.490344] [NEW] udp 17 30 src=116.49.75.199 dst=94.29.75.38 sport=16826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=116.49.75.199 sport=8999 dport=16826 [1566987723.515010] [NEW] udp 17 30 src=110.134.162.92 dst=94.29.75.38 sport=12365 dport=8999 [UNREPLIED] src=94.29.75.38 dst=110.134.162.92 sport=8999 dport=12365 [1566987723.890279] [NEW] tcp 6 120 SYN_SENT src=85.95.178.195 dst=94.29.75.38 sport=1826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.95.178.195 sport=8999 dport=1826 [1566987723.890314] [DESTROY] tcp 6 src=85.95.178.195 dst=94.29.75.38 sport=1826 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.95.178.195 sport=8999 dport=1826 [1566987724.143528] [NEW] udp 17 30 src=59.115.135.116 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=59.115.135.116 sport=8999 dport=6889 [1566987724.506470] [NEW] tcp 6 120 SYN_SENT src=92.118.37.67 dst=94.29.75.38 sport=48250 dport=3154 [UNREPLIED] src=94.29.75.38 dst=92.118.37.67 sport=3154 dport=48250 [1566987724.506504] [DESTROY] tcp 6 src=92.118.37.67 dst=94.29.75.38 sport=48250 dport=3154 [UNREPLIED] src=94.29.75.38 dst=92.118.37.67 sport=3154 dport=48250 [1566987726.191110] [NEW] udp 17 30 src=5.189.160.21 dst=94.29.75.38 sport=2239 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.160.21 sport=8999 dport=2239 [1566987728.796764] [NEW] tcp 6 120 SYN_SENT src=138.68.101.167 dst=94.29.75.38 sport=43076 dport=22 [UNREPLIED] src=94.29.75.38 dst=138.68.101.167 sport=22 dport=43076 [1566987728.796799] [UPDATE] tcp 6 60 SYN_RECV src=138.68.101.167 dst=94.29.75.38 sport=43076 dport=22 src=94.29.75.38 dst=138.68.101.167 sport=22 dport=43076 [1566987728.833776] [UPDATE] tcp 6 432000 ESTABLISHED src=138.68.101.167 dst=94.29.75.38 sport=43076 dport=22 src=94.29.75.38 dst=138.68.101.167 sport=22 dport=43076 [ASSURED] [1566987729.600355] [NEW] udp 17 30 src=185.24.26.138 dst=94.29.75.38 sport=43599 dport=8999 [UNREPLIED] src=94.29.75.38 dst=185.24.26.138 sport=8999 dport=43599 [1566987731.435050] [NEW] udp 17 30 src=178.187.232.95 dst=94.29.75.38 sport=49001 dport=8999 [UNREPLIED] src=94.29.75.38 dst=178.187.232.95 sport=8999 dport=49001 [1566987731.722382] [NEW] udp 17 30 src=178.172.177.112 dst=94.29.75.38 sport=49160 dport=8999 [UNREPLIED] src=94.29.75.38 dst=178.172.177.112 sport=8999 dport=49160 [1566987731.941201] [DESTROY] udp 17 src=92.211.142.144 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=92.211.142.144 sport=8999 dport=6889 [1566987731.941234] [DESTROY] udp 17 src=183.156.121.241 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=183.156.121.241 sport=8999 dport=6881 [1566987732.470319] [UPDATE] tcp 6 120 FIN_WAIT src=138.68.101.167 dst=94.29.75.38 sport=43076 dport=22 src=94.29.75.38 dst=138.68.101.167 sport=22 dport=43076 [ASSURED] [1566987732.471409] [UPDATE] tcp 6 30 LAST_ACK src=138.68.101.167 dst=94.29.75.38 sport=43076 dport=22 src=94.29.75.38 dst=138.68.101.167 sport=22 dport=43076 [ASSURED] [1566987732.508371] [UPDATE] tcp 6 120 TIME_WAIT src=138.68.101.167 dst=94.29.75.38 sport=43076 dport=22 src=94.29.75.38 dst=138.68.101.167 sport=22 dport=43076 [ASSURED] [1566987733.084250] [NEW] udp 17 30 src=59.19.124.207 dst=94.29.75.38 sport=58792 dport=8999 [UNREPLIED] src=94.29.75.38 dst=59.19.124.207 sport=8999 dport=58792 [1566987733.523160] [NEW] tcp 6 120 SYN_SENT src=176.196.56.15 dst=94.29.75.38 sport=52894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=52894 [1566987733.523194] [DESTROY] tcp 6 src=176.196.56.15 dst=94.29.75.38 sport=52894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=52894 [1566987734.078617] [NEW] tcp 6 120 SYN_SENT src=176.196.56.15 dst=94.29.75.38 sport=52894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=52894 [1566987734.078647] [DESTROY] tcp 6 src=176.196.56.15 dst=94.29.75.38 sport=52894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=52894 [1566987734.266215] [NEW] udp 17 30 src=81.154.219.60 dst=94.29.75.38 sport=17770 dport=8999 [UNREPLIED] src=94.29.75.38 dst=81.154.219.60 sport=8999 dport=17770 [1566987734.641139] [NEW] tcp 6 120 SYN_SENT src=176.196.56.15 dst=94.29.75.38 sport=52894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=52894 [1566987734.641174] [DESTROY] tcp 6 src=176.196.56.15 dst=94.29.75.38 sport=52894 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=52894 [1566987734.733800] [NEW] udp 17 30 src=121.200.185.7 dst=94.29.75.38 sport=10720 dport=8999 [UNREPLIED] src=94.29.75.38 dst=121.200.185.7 sport=8999 dport=10720 [1566987735.229429] [NEW] tcp 6 120 SYN_SENT src=188.166.150.79 dst=94.29.75.38 sport=36118 dport=22 [UNREPLIED] src=94.29.75.38 dst=188.166.150.79 sport=22 dport=36118 [1566987735.229464] [UPDATE] tcp 6 60 SYN_RECV src=188.166.150.79 dst=94.29.75.38 sport=36118 dport=22 src=94.29.75.38 dst=188.166.150.79 sport=22 dport=36118 [1566987735.288540] [UPDATE] tcp 6 432000 ESTABLISHED src=188.166.150.79 dst=94.29.75.38 sport=36118 dport=22 src=94.29.75.38 dst=188.166.150.79 sport=22 dport=36118 [ASSURED] [1566987735.301199] [DESTROY] tcp 6 src=202.131.102.78 dst=94.29.75.38 sport=33964 dport=22 src=94.29.75.38 dst=202.131.102.78 sport=22 dport=33964 [ASSURED] [1566987735.301233] [DESTROY] udp 17 src=192.168.1.50 dst=8.8.8.8 sport=27670 dport=53 src=8.8.8.8 dst=94.29.75.38 sport=53 dport=27670 [1566987735.691320] [NEW] tcp 6 120 SYN_SENT src=79.107.237.80 dst=94.29.75.38 sport=23091 dport=23 [UNREPLIED] src=94.29.75.38 dst=79.107.237.80 sport=23 dport=23091 [1566987735.691355] [DESTROY] tcp 6 src=79.107.237.80 dst=94.29.75.38 sport=23091 dport=23 [UNREPLIED] src=94.29.75.38 dst=79.107.237.80 sport=23 dport=23091 [1566987736.992999] [NEW] udp 17 30 src=176.113.247.58 dst=94.29.75.38 sport=16501 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.113.247.58 sport=8999 dport=16501 [1566987738.341198] [DESTROY] udp 17 src=10.108.192.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=10.108.192.1 sport=68 dport=67 [1566987738.635019] [UPDATE] tcp 6 120 FIN_WAIT src=188.166.150.79 dst=94.29.75.38 sport=36118 dport=22 src=94.29.75.38 dst=188.166.150.79 sport=22 dport=36118 [ASSURED] [1566987738.636000] [UPDATE] tcp 6 30 LAST_ACK src=188.166.150.79 dst=94.29.75.38 sport=36118 dport=22 src=94.29.75.38 dst=188.166.150.79 sport=22 dport=36118 [ASSURED] [1566987738.695059] [UPDATE] tcp 6 120 TIME_WAIT src=188.166.150.79 dst=94.29.75.38 sport=36118 dport=22 src=94.29.75.38 dst=188.166.150.79 sport=22 dport=36118 [ASSURED] [1566987739.682335] [NEW] udp 17 30 src=210.223.46.200 dst=94.29.75.38 sport=40717 dport=8999 [UNREPLIED] src=94.29.75.38 dst=210.223.46.200 sport=8999 dport=40717 [1566987740.224519] [DESTROY] udp 17 src=5.189.157.90 dst=94.29.75.38 sport=12023 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.157.90 sport=8999 dport=12023 [1566987740.443707] [NEW] udp 17 30 src=93.175.211.157 dst=94.29.75.38 sport=39928 dport=8999 [UNREPLIED] src=94.29.75.38 dst=93.175.211.157 sport=8999 dport=39928 [1566987740.577824] [DESTROY] udp 17 src=5.189.157.90 dst=94.29.75.38 sport=12006 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.157.90 sport=8999 dport=12006 [1566987740.681148] [DESTROY] udp 17 src=180.107.147.14 dst=94.29.75.38 sport=23793 dport=8999 [UNREPLIED] src=94.29.75.38 dst=180.107.147.14 sport=8999 dport=23793 [1566987740.937812] [DESTROY] udp 17 src=121.44.116.243 dst=94.29.75.38 sport=35358 dport=8999 [UNREPLIED] src=94.29.75.38 dst=121.44.116.243 sport=8999 dport=35358 [1566987740.974485] [DESTROY] tcp 6 src=54.39.29.105 dst=94.29.75.38 sport=59632 dport=22 src=94.29.75.38 dst=54.39.29.105 sport=22 dport=59632 [ASSURED] [1566987741.284496] [DESTROY] udp 17 src=218.102.101.175 dst=94.29.75.38 sport=1234 dport=8999 [UNREPLIED] src=94.29.75.38 dst=218.102.101.175 sport=8999 dport=1234 [1566987742.071152] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=60160 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60160 [ASSURED] [1566987742.157818] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=60158 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=60158 [ASSURED] [1566987742.218067] [NEW] udp 17 30 src=84.46.207.53 dst=94.29.75.38 sport=54087 dport=8999 [UNREPLIED] src=94.29.75.38 dst=84.46.207.53 sport=8999 dport=54087 [1566987742.277818] [DESTROY] udp 17 src=41.189.179.204 dst=94.29.75.38 sport=9414 dport=8999 [UNREPLIED] src=94.29.75.38 dst=41.189.179.204 sport=8999 dport=9414 [1566987742.947561] [NEW] udp 17 30 src=95.24.94.34 dst=94.29.75.38 sport=14130 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=14130 [1566987742.948158] [NEW] tcp 6 120 SYN_SENT src=95.24.94.34 dst=94.29.75.38 sport=58943 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=58943 [1566987742.948192] [DESTROY] tcp 6 src=95.24.94.34 dst=94.29.75.38 sport=58943 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=58943 [1566987742.982882] [NEW] tcp 6 120 SYN_SENT src=5.178.83.125 dst=94.29.75.38 sport=54693 dport=47452 [UNREPLIED] src=94.29.75.38 dst=5.178.83.125 sport=47452 dport=54693 [1566987742.982912] [DESTROY] tcp 6 src=5.178.83.125 dst=94.29.75.38 sport=54693 dport=47452 [UNREPLIED] src=94.29.75.38 dst=5.178.83.125 sport=47452 dport=54693 [1566987743.455522] [NEW] tcp 6 120 SYN_SENT src=95.24.94.34 dst=94.29.75.38 sport=58943 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=58943 [1566987743.455556] [DESTROY] tcp 6 src=95.24.94.34 dst=94.29.75.38 sport=58943 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=58943 [1566987743.961430] [NEW] tcp 6 120 SYN_SENT src=95.24.94.34 dst=94.29.75.38 sport=58943 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=58943 [1566987743.961464] [DESTROY] tcp 6 src=95.24.94.34 dst=94.29.75.38 sport=58943 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.24.94.34 sport=8999 dport=58943 [1566987745.660303] [NEW] udp 17 30 src=211.244.205.215 dst=94.29.75.38 sport=44908 dport=8999 [UNREPLIED] src=94.29.75.38 dst=211.244.205.215 sport=8999 dport=44908 [1566987746.300239] [DESTROY] udp 17 src=94.29.72.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=94.29.72.1 sport=68 dport=67 [1566987746.300273] [NEW] udp 17 30 src=94.29.72.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=94.29.72.1 sport=68 dport=67 [1566987746.954515] [DESTROY] udp 17 src=101.87.75.178 dst=94.29.75.38 sport=21101 dport=8999 [UNREPLIED] src=94.29.75.38 dst=101.87.75.178 sport=8999 dport=21101 [1566987748.346504] [UPDATE] tcp 6 120 FIN_WAIT src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [ASSURED] [1566987748.435093] [UPDATE] tcp 6 60 CLOSE_WAIT src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [ASSURED] [1566987748.435128] [UPDATE] tcp 6 30 LAST_ACK src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [ASSURED] [1566987748.455174] [UPDATE] tcp 6 10 CLOSE src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [ASSURED] [1566987749.312223] [NEW] udp 17 30 src=213.136.79.27 dst=94.29.75.38 sport=5929 dport=8999 [UNREPLIED] src=94.29.75.38 dst=213.136.79.27 sport=8999 dport=5929 [1566987749.898450] [NEW] udp 17 30 src=101.98.219.199 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=101.98.219.199 sport=8999 dport=6881 [1566987750.714486] [DESTROY] udp 17 src=173.212.202.22 dst=94.29.75.38 sport=6948 dport=8999 [UNREPLIED] src=94.29.75.38 dst=173.212.202.22 sport=8999 dport=6948 [1566987752.847872] [DESTROY] udp 17 src=49.48.248.205 dst=94.29.75.38 sport=22160 dport=8999 [UNREPLIED] src=94.29.75.38 dst=49.48.248.205 sport=8999 dport=22160 [1566987752.847905] [DESTROY] udp 17 src=178.68.15.87 dst=94.29.75.38 sport=49001 dport=8999 [UNREPLIED] src=94.29.75.38 dst=178.68.15.87 sport=8999 dport=49001 [1566987753.630777] [NEW] udp 17 30 src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 [UNREPLIED] src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [1566987754.342051] [UPDATE] udp 17 30 src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [1566987754.342714] [DESTROY] tcp 6 src=192.168.1.50 dst=74.125.205.103 sport=43002 dport=443 src=74.125.205.103 dst=94.29.75.38 sport=443 dport=43002 [ASSURED] [1566987754.343163] [DESTROY] tcp 6 src=192.168.1.96 dst=18.184.99.129 sport=44842 dport=443 src=18.184.99.129 dst=94.29.75.38 sport=443 dport=44842 [ASSURED] [1566987754.343670] [DESTROY] udp 17 src=192.168.1.50 dst=8.8.8.8 sport=7383 dport=53 src=8.8.8.8 dst=94.29.75.38 sport=53 dport=7383 [1566987754.343690] [DESTROY] tcp 6 src=192.168.1.50 dst=8.8.4.4 sport=38411 dport=853 src=8.8.4.4 dst=94.29.75.38 sport=853 dport=38411 [ASSURED] [1566987754.343707] [DESTROY] tcp 6 src=192.168.1.96 dst=64.233.162.188 sport=40318 dport=5228 src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=40318 [ASSURED] [1566987754.343839] [DESTROY] tcp 6 src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [ASSURED] [1566987754.344116] [DESTROY] tcp 6 src=192.168.1.96 dst=109.74.196.48 sport=48556 dport=8267 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [ASSURED] [1566987754.344153] [DESTROY] tcp 6 src=192.168.1.50 dst=173.194.222.94 sport=43308 dport=80 src=173.194.222.94 dst=94.29.75.38 sport=80 dport=43308 [ASSURED] [1566987754.344247] [DESTROY] tcp 6 src=192.168.1.96 dst=138.201.81.199 sport=53010 dport=80 src=138.201.81.199 dst=94.29.75.38 sport=80 dport=53010 [ASSURED] [1566987754.344794] [DESTROY] udp 17 src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [1566987754.345334] [DESTROY] tcp 6 src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [ASSURED] [1566987754.345364] [DESTROY] tcp 6 src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [ASSURED] [1566987754.345551] [DESTROY] tcp 6 src=192.168.1.96 dst=94.29.74.28 sport=54038 dport=22 src=94.29.74.28 dst=94.29.75.38 sport=22 dport=54038 [ASSURED] [1566987754.345839] [DESTROY] tcp 6 src=192.168.1.50 dst=64.233.161.188 sport=49332 dport=5228 src=64.233.161.188 dst=94.29.75.38 sport=5228 dport=49332 [ASSURED] [1566987754.352939] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.352970] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.364439] [DESTROY] udp 17 src=188.131.201.84 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=188.131.201.84 sport=8999 dport=6881 [1566987754.497627] [NEW] udp 17 30 src=94.29.75.38 dst=224.0.0.252 sport=5355 dport=5355 [UNREPLIED] src=224.0.0.252 dst=94.29.75.38 sport=5355 dport=5355 [1566987754.509843] [NEW] udp 17 30 src=176.196.56.15 dst=94.29.75.38 sport=12221 dport=8999 [UNREPLIED] src=94.29.75.38 dst=176.196.56.15 sport=8999 dport=12221 [1566987754.592931] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.592963] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.753292] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.753324] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.813673] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987754.813705] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.075954] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.075986] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.236375] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.236408] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.397824] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.397856] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.403383] [NEW] udp 17 30 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [UNREPLIED] src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 [1566987755.558046] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.558085] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=48556 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=48556 dport=8267 [1566987755.821280] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=18.184.99.129 sport=44842 dport=443 [UNREPLIED] src=18.184.99.129 dst=94.29.75.38 sport=443 dport=44842 [1566987755.860290] [UPDATE] tcp 6 300 src=192.168.1.96 dst=18.184.99.129 sport=44842 dport=443 src=18.184.99.129 dst=94.29.75.38 sport=443 dport=44842 [1566987755.862033] [UPDATE] tcp 6 300 src=192.168.1.96 dst=18.184.99.129 sport=44842 dport=443 src=18.184.99.129 dst=94.29.75.38 sport=443 dport=44842 [ASSURED] [1566987755.871125] [DESTROY] tcp 6 src=165.22.78.120 dst=94.29.75.38 sport=58698 dport=22 src=94.29.75.38 dst=165.22.78.120 sport=22 dport=58698 [ASSURED] [1566987756.220324] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 [UNREPLIED] src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [1566987756.342405] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [1566987756.474535] [DESTROY] tcp 6 src=111.230.116.149 dst=94.29.75.38 sport=35850 dport=22 src=94.29.75.38 dst=111.230.116.149 sport=22 dport=35850 [ASSURED] [1566987756.971995] [NEW] tcp 6 120 SYN_SENT src=175.197.17.246 dst=94.29.75.38 sport=50865 dport=8999 [UNREPLIED] src=94.29.75.38 dst=175.197.17.246 sport=8999 dport=50865 [1566987756.972033] [DESTROY] tcp 6 src=175.197.17.246 dst=94.29.75.38 sport=50865 dport=8999 [UNREPLIED] src=94.29.75.38 dst=175.197.17.246 sport=8999 dport=50865 [1566987757.927010] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 [UNREPLIED] src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [1566987758.050979] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [1566987758.592854] [NEW] udp 17 30 src=5.144.106.85 dst=94.29.75.38 sport=1024 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.144.106.85 sport=8999 dport=1024 [1566987758.758197] [DESTROY] udp 17 src=220.135.66.85 dst=94.29.75.38 sport=15496 dport=8999 [UNREPLIED] src=94.29.75.38 dst=220.135.66.85 sport=8999 dport=15496 [1566987758.758240] [NEW] udp 17 30 src=27.34.74.216 dst=94.29.75.38 sport=52813 dport=8999 [UNREPLIED] src=94.29.75.38 dst=27.34.74.216 sport=8999 dport=52813 [1566987759.558853] [NEW] udp 17 30 src=84.54.79.14 dst=94.29.75.38 sport=34052 dport=8999 [UNREPLIED] src=94.29.75.38 dst=84.54.79.14 sport=8999 dport=34052 [1566987759.674514] [DESTROY] udp 17 src=110.134.162.92 dst=94.29.75.38 sport=12365 dport=8999 [UNREPLIED] src=94.29.75.38 dst=110.134.162.92 sport=8999 dport=12365 [1566987759.674546] [DESTROY] udp 17 src=113.251.50.159 dst=94.29.75.38 sport=4267 dport=8999 [UNREPLIED] src=94.29.75.38 dst=113.251.50.159 sport=8999 dport=4267 [1566987759.784515] [DESTROY] tcp 6 src=134.209.126.196 dst=94.29.75.38 sport=37594 dport=22 src=94.29.75.38 dst=134.209.126.196 sport=22 dport=37594 [ASSURED] [1566987761.807828] [DESTROY] udp 17 src=2.94.202.121 dst=94.29.75.38 sport=53777 dport=8999 [UNREPLIED] src=94.29.75.38 dst=2.94.202.121 sport=8999 dport=53777 [1566987763.347847] [DESTROY] udp 17 src=220.134.144.17 dst=94.29.75.38 sport=27042 dport=8999 [UNREPLIED] src=94.29.75.38 dst=220.134.144.17 sport=8999 dport=27042 [1566987763.441191] [DESTROY] udp 17 src=220.72.45.173 dst=94.29.75.38 sport=39070 dport=8999 [UNREPLIED] src=94.29.75.38 dst=220.72.45.173 sport=8999 dport=39070 [1566987763.454479] [DESTROY] udp 17 src=178.172.177.112 dst=94.29.75.38 sport=49160 dport=8999 [UNREPLIED] src=94.29.75.38 dst=178.172.177.112 sport=8999 dport=49160 [1566987763.467814] [DESTROY] udp 17 src=109.252.19.34 dst=94.29.75.38 sport=5758 dport=8999 [UNREPLIED] src=94.29.75.38 dst=109.252.19.34 sport=8999 dport=5758 [1566987763.927816] [DESTROY] udp 17 src=59.115.135.116 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=59.115.135.116 sport=8999 dport=6889 [1566987764.437834] [DESTROY] udp 17 src=81.154.219.60 dst=94.29.75.38 sport=17770 dport=8999 [UNREPLIED] src=94.29.75.38 dst=81.154.219.60 sport=8999 dport=17770 [1566987764.437868] [DESTROY] udp 17 src=213.136.79.238 dst=94.29.75.38 sport=33422 dport=8999 [UNREPLIED] src=94.29.75.38 dst=213.136.79.238 sport=8999 dport=33422 [1566987764.912457] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.124 sport=34864 dport=443 src=192.30.253.124 dst=94.29.75.38 sport=443 dport=34864 [ASSURED] [1566987765.181150] [DESTROY] udp 17 src=185.24.26.138 dst=94.29.75.38 sport=43599 dport=8999 [UNREPLIED] src=94.29.75.38 dst=185.24.26.138 sport=8999 dport=43599 [1566987765.387814] [DESTROY] udp 17 src=158.46.119.68 dst=94.29.75.38 sport=43311 dport=8999 [UNREPLIED] src=94.29.75.38 dst=158.46.119.68 sport=8999 dport=43311 [1566987765.549977] [NEW] udp 17 30 src=85.187.107.248 dst=94.29.75.38 sport=15834 dport=8999 [UNREPLIED] src=94.29.75.38 dst=85.187.107.248 sport=8999 dport=15834 [1566987765.672175] [NEW] udp 17 30 src=139.26.3.21 dst=94.29.75.38 sport=14585 dport=8999 [UNREPLIED] src=94.29.75.38 dst=139.26.3.21 sport=8999 dport=14585 [1566987766.697734] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=59698 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=59698 [ASSURED] [1566987767.149932] [NEW] udp 17 30 src=173.249.33.72 dst=94.29.75.38 sport=7239 dport=8999 [UNREPLIED] src=94.29.75.38 dst=173.249.33.72 sport=8999 dport=7239 [1566987768.207860] [DESTROY] udp 17 src=54.183.201.45 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=54.183.201.45 sport=8999 dport=6881 [1566987768.468080] [NEW] udp 17 30 src=192.168.1.96 dst=8.8.4.4 sport=55897 dport=53 [UNREPLIED] src=8.8.4.4 dst=94.29.75.38 sport=53 dport=55897 [1566987768.491040] [UPDATE] udp 17 30 src=192.168.1.96 dst=8.8.4.4 sport=55897 dport=53 src=8.8.4.4 dst=94.29.75.38 sport=53 dport=55897 ``` -
iamtakingiteasy revised this gist
Aug 28, 2019 . 1 changed file with 78 additions and 0 deletions.There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters. Learn more about bidirectional Unicode charactersOriginal file line number Diff line number Diff line change @@ -0,0 +1,78 @@ ``` [secs=1566987292 nanos=464590670] [NEW] udp 17 30 src=123.241.96.114 dst=94.29.75.38 sport=16650 dport=8999 [UNREPLIED] src=94.29.75.38 dst=123.241.96.114 sport=8999 dport=16650 [secs=1566987294 nanos=084767929] [NEW] udp 17 30 src=94.29.72.1 dst=255.255.255.255 sport=67 dport=68 [UNREPLIED] src=255.255.255.255 dst=94.29.72.1 sport=68 dport=67 [secs=1566987294 nanos=719321830] [NEW] udp 17 30 src=5.189.188.23 dst=94.29.75.38 sport=57919 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.188.23 sport=8999 dport=57919 [secs=1566987297 nanos=983214053] [NEW] udp 17 30 src=5.189.157.90 dst=94.29.75.38 sport=12040 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.157.90 sport=8999 dport=12040 [secs=1566987298 nanos=005965102] [NEW] udp 17 30 src=183.156.121.241 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=183.156.121.241 sport=8999 dport=6881 [secs=1566987298 nanos=086497351] [NEW] udp 17 30 src=184.22.82.71 dst=94.29.75.38 sport=7769 dport=8999 [UNREPLIED] src=94.29.75.38 dst=184.22.82.71 sport=8999 dport=7769 [secs=1566987298 nanos=330018239] [NEW] udp 17 30 src=82.226.129.187 dst=94.29.75.38 sport=6889 dport=8999 [UNREPLIED] src=94.29.75.38 dst=82.226.129.187 sport=8999 dport=6889 [secs=1566987299 nanos=027959505] [NEW] udp 17 30 src=37.57.177.164 dst=94.29.75.38 sport=40356 dport=8999 [UNREPLIED] src=94.29.75.38 dst=37.57.177.164 sport=8999 dport=40356 [secs=1566987301 nanos=139459835] [NEW] udp 17 30 src=2.93.71.88 dst=94.29.75.38 sport=62960 dport=8999 [UNREPLIED] src=94.29.75.38 dst=2.93.71.88 sport=8999 dport=62960 [secs=1566987301 nanos=518517890] [NEW] udp 17 30 src=221.254.10.169 dst=94.29.75.38 sport=16916 dport=8999 [UNREPLIED] src=94.29.75.38 dst=221.254.10.169 sport=8999 dport=16916 [secs=1566987303 nanos=141338899] [NEW] udp 17 30 src=5.189.157.90 dst=94.29.75.38 sport=12006 dport=8999 [UNREPLIED] src=94.29.75.38 dst=5.189.157.90 sport=8999 dport=12006 [secs=1566987303 nanos=917191801] [NEW] udp 17 30 src=183.178.7.234 dst=94.29.75.38 sport=22165 dport=8999 [UNREPLIED] src=94.29.75.38 dst=183.178.7.234 sport=8999 dport=22165 [secs=1566987305 nanos=539883866] [NEW] tcp 6 120 SYN_SENT src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987305 nanos=541412912] [DESTROY] tcp 6 src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987306 nanos=273308772] [NEW] tcp 6 120 SYN_SENT src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987306 nanos=274824269] [DESTROY] tcp 6 src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987306 nanos=382626961] [DESTROY] udp 17 src=14.192.212.59 dst=94.29.75.38 sport=5166 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=5166 [secs=1566987306 nanos=905870360] [NEW] udp 17 30 src=95.87.47.81 dst=94.29.75.38 sport=7714 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.87.47.81 sport=8999 dport=7714 [secs=1566987307 nanos=001616982] [NEW] tcp 6 120 SYN_SENT src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987307 nanos=003082133] [DESTROY] tcp 6 src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987307 nanos=734807258] [NEW] tcp 6 120 SYN_SENT src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987307 nanos=736252584] [DESTROY] tcp 6 src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987307 nanos=761970534] [NEW] udp 17 30 src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 [UNREPLIED] src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [secs=1566987308 nanos=464907730] [NEW] tcp 6 120 SYN_SENT src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987308 nanos=466353259] [DESTROY] tcp 6 src=14.192.212.59 dst=94.29.75.38 sport=4091 dport=8999 [UNREPLIED] src=94.29.75.38 dst=14.192.212.59 sport=8999 dport=4091 [secs=1566987308 nanos=934078820] [UPDATE] udp 17 30 src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [secs=1566987308 nanos=935535396] [DESTROY] tcp 6 src=192.168.1.96 dst=140.82.113.26 sport=33254 dport=443 src=140.82.113.26 dst=94.29.75.38 sport=443 dport=33254 [ASSURED] [secs=1566987308 nanos=937014376] [DESTROY] tcp 6 src=192.168.1.96 dst=18.184.99.129 sport=44842 dport=443 src=18.184.99.129 dst=94.29.75.38 sport=443 dport=44842 [ASSURED] [secs=1566987308 nanos=938602030] [DESTROY] tcp 6 src=192.168.1.96 dst=64.233.162.188 sport=40318 dport=5228 src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=40318 [ASSURED] [secs=1566987308 nanos=940178778] [DESTROY] tcp 6 src=192.168.1.96 dst=140.82.113.26 sport=33266 dport=443 src=140.82.113.26 dst=94.29.75.38 sport=443 dport=33266 [ASSURED] [secs=1566987308 nanos=941780712] [DESTROY] tcp 6 src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [ASSURED] [secs=1566987308 nanos=943291349] [DESTROY] udp 17 src=212.35.185.176 dst=94.29.75.38 sport=4429 dport=8999 [UNREPLIED] src=94.29.75.38 dst=212.35.185.176 sport=8999 dport=4429 [secs=1566987308 nanos=944768581] [DESTROY] udp 17 src=192.168.1.96 dst=8.8.4.4 sport=49432 dport=53 src=8.8.4.4 dst=94.29.75.38 sport=53 dport=49432 [secs=1566987308 nanos=946294350] [DESTROY] tcp 6 src=192.168.1.96 dst=109.74.196.48 sport=47928 dport=8267 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [ASSURED] [secs=1566987308 nanos=947690859] [DESTROY] udp 17 src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [secs=1566987308 nanos=949208461] [DESTROY] tcp 6 src=192.168.1.96 dst=109.74.196.48 sport=47920 dport=8267 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47920 [ASSURED] [secs=1566987308 nanos=950708787] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=59446 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=59446 [ASSURED] [secs=1566987308 nanos=952309049] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=59442 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=59442 [ASSURED] [secs=1566987308 nanos=953736253] [DESTROY] tcp 6 src=192.168.1.96 dst=13.35.254.79 sport=40896 dport=443 src=13.35.254.79 dst=94.29.75.38 sport=443 dport=40896 [ASSURED] [secs=1566987308 nanos=955278431] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=59440 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=59440 [ASSURED] [secs=1566987308 nanos=956772096] [DESTROY] tcp 6 src=192.168.1.96 dst=151.101.192.133 sport=59444 dport=443 src=151.101.192.133 dst=94.29.75.38 sport=443 dport=59444 [ASSURED] [secs=1566987308 nanos=958273979] [DESTROY] tcp 6 src=192.168.1.96 dst=94.29.74.28 sport=54038 dport=22 src=94.29.74.28 dst=94.29.75.38 sport=22 dport=54038 [ASSURED] [secs=1566987308 nanos=965443836] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987308 nanos=966876633] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=073638272] [NEW] udp 17 30 src=94.29.75.38 dst=224.0.0.252 sport=5355 dport=5355 [UNREPLIED] src=224.0.0.252 dst=94.29.75.38 sport=5355 dport=5355 [secs=1566987309 nanos=295670352] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=297034628] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=348778741] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=350163435] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=616069654] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=617438957] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=776569112] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=777999792] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=938656220] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987309 nanos=940016917] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987310 nanos=002569208] [DESTROY] udp 17 src=173.249.44.163 dst=94.29.75.38 sport=47604 dport=8999 [UNREPLIED] src=94.29.75.38 dst=173.249.44.163 sport=8999 dport=47604 [secs=1566987310 nanos=102323821] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987310 nanos=103698471] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987310 nanos=210492824] [NEW] udp 17 30 src=94.29.72.1 dst=94.29.75.38 sport=67 dport=68 [UNREPLIED] src=94.29.75.38 dst=94.29.72.1 sport=68 dport=67 [secs=1566987310 nanos=262491756] [DESTROY] udp 17 src=39.106.107.163 dst=94.29.75.38 sport=42069 dport=8999 [UNREPLIED] src=94.29.75.38 dst=39.106.107.163 sport=8999 dport=42069 [secs=1566987310 nanos=266462152] [NEW] tcp 6 300 ESTABLISHED src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987310 nanos=267998901] [DESTROY] tcp 6 src=109.74.196.48 dst=94.29.75.38 sport=8267 dport=47928 [UNREPLIED] src=94.29.75.38 dst=109.74.196.48 sport=47928 dport=8267 [secs=1566987310 nanos=313253090] [DESTROY] udp 17 src=95.211.184.105 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=95.211.184.105 sport=8999 dport=6881 [secs=1566987310 nanos=314763229] [DESTROY] udp 17 src=112.246.231.227 dst=94.29.75.38 sport=22883 dport=8999 [UNREPLIED] src=94.29.75.38 dst=112.246.231.227 sport=8999 dport=22883 [secs=1566987311 nanos=035879926] [DESTROY] udp 17 src=197.100.27.195 dst=94.29.75.38 sport=8741 dport=8999 [UNREPLIED] src=94.29.75.38 dst=197.100.27.195 sport=8999 dport=8741 [secs=1566987311 nanos=241459235] [NEW] tcp 6 300 ESTABLISHED src=140.82.113.26 dst=94.29.75.38 sport=443 dport=33254 [UNREPLIED] src=94.29.75.38 dst=140.82.113.26 sport=33254 dport=443 [secs=1566987311 nanos=242919175] [DESTROY] tcp 6 src=140.82.113.26 dst=94.29.75.38 sport=443 dport=33254 [UNREPLIED] src=94.29.75.38 dst=140.82.113.26 sport=33254 dport=443 [secs=1566987312 nanos=022602434] [DESTROY] udp 17 src=94.156.73.25 dst=94.29.75.38 sport=23335 dport=8999 [UNREPLIED] src=94.29.75.38 dst=94.156.73.25 sport=8999 dport=23335 [secs=1566987312 nanos=698288720] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 [UNREPLIED] src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [secs=1566987312 nanos=739953845] [NEW] tcp 6 120 SYN_SENT src=212.129.11.232 dst=94.29.75.38 sport=47306 dport=5038 [UNREPLIED] src=94.29.75.38 dst=212.129.11.232 sport=5038 dport=47306 [secs=1566987312 nanos=741447617] [DESTROY] tcp 6 src=212.129.11.232 dst=94.29.75.38 sport=47306 dport=5038 [UNREPLIED] src=94.29.75.38 dst=212.129.11.232 sport=5038 dport=47306 [secs=1566987312 nanos=819302787] [UPDATE] tcp 6 300 src=192.168.1.96 dst=192.30.253.125 sport=57902 dport=443 src=192.30.253.125 dst=94.29.75.38 sport=443 dport=57902 [secs=1566987313 nanos=337225589] [NEW] tcp 6 300 ESTABLISHED src=192.168.1.96 dst=64.233.162.188 sport=40318 dport=5228 [UNREPLIED] src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=40318 [secs=1566987313 nanos=358616154] [UPDATE] tcp 6 300 src=192.168.1.96 dst=64.233.162.188 sport=40318 dport=5228 src=64.233.162.188 dst=94.29.75.38 sport=5228 dport=40318 [secs=1566987313 nanos=809244355] [DESTROY] udp 17 src=88.4.103.36 dst=94.29.75.38 sport=6881 dport=8999 [UNREPLIED] src=94.29.75.38 dst=88.4.103.36 sport=8999 dport=6881 [secs=1566987314 nanos=423191439] [NEW] udp 17 30 src=94.99.77.73 dst=94.29.75.38 sport=26604 dport=8999 [UNREPLIED] src=94.29.75.38 dst=94.99.77.73 sport=8999 dport=26604 ``` -
iamtakingiteasy created this gist
Aug 28, 2019 .There are no files selected for viewing
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters. Learn more about bidirectional Unicode charactersOriginal file line number Diff line number Diff line change @@ -0,0 +1,27 @@ ``` 200 3.199131088 109.74.196.48 ? 94.29.75.38 TCP 1320 8267 ? 44444 [PSH, ACK] Seq=285549 Ack=98 Win=65152 Len=1254 TSval=4070908815 TSecr=2898444556 [TCP segment of a reassembled PDU] 201 3.200775618 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=286803 Win=482944 Len=0 TSval=2898444717 TSecr=4070908815 202 3.360017865 109.74.196.48 ? 94.29.75.38 TCP 1320 8267 ? 44444 [PSH, ACK] Seq=286803 Ack=98 Win=65152 Len=1254 TSval=4070908976 TSecr=2898444717 [TCP segment of a reassembled PDU] 203 3.380198325 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=288057 Win=482944 Len=0 TSval=2898444896 TSecr=4070908976 204 3.520690101 109.74.196.48 ? 94.29.75.38 TCP 1529 8267 ? 44444 [PSH, ACK] Seq=288057 Ack=98 Win=65152 Len=1463 TSval=4070909136 TSecr=2898444896 [TCP segment of a reassembled PDU] 205 3.584912366 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=289520 Win=482560 Len=0 TSval=2898445101 TSecr=4070909136 206 3.681634099 109.74.196.48 ? 94.29.75.38 TCP 1529 8267 ? 44444 [PSH, ACK] Seq=289520 Ack=98 Win=65152 Len=1463 TSval=4070909298 TSecr=2898445101 [TCP segment of a reassembled PDU] 207 3.683459507 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=290983 Win=482560 Len=0 TSval=2898445199 TSecr=4070909298 208 3.841771543 109.74.196.48 ? 94.29.75.38 TCP 1320 8267 ? 44444 [PSH, ACK] Seq=290983 Ack=98 Win=65152 Len=1254 TSval=4070909458 TSecr=2898445199 [TCP segment of a reassembled PDU] 209 3.892188006 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=292237 Win=482944 Len=0 TSval=2898445408 TSecr=4070909458 210 4.002663338 109.74.196.48 ? 94.29.75.38 TCP 1319 8267 ? 44444 [PSH, ACK] Seq=292237 Ack=98 Win=65152 Len=1253 TSval=4070909619 TSecr=2898445408 [TCP segment of a reassembled PDU] 211 4.097010176 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=293490 Win=482944 Len=0 TSval=2898445613 TSecr=4070909619 212 4.162707703 109.74.196.48 ? 94.29.75.38 TCP 1529 8267 ? 44444 [PSH, ACK] Seq=293490 Ack=98 Win=65152 Len=1463 TSval=4070909779 TSecr=2898445613 [TCP segment of a reassembled PDU] 213 4.163899537 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=294953 Win=482560 Len=0 TSval=2898445680 TSecr=4070909779 214 4.322050742 109.74.196.48 ? 94.29.75.38 TCP 1320 8267 ? 44444 [PSH, ACK] Seq=294953 Ack=98 Win=65152 Len=1254 TSval=4070909938 TSecr=2898445680 [TCP segment of a reassembled PDU] 215 4.404411719 94.29.75.38 ? 109.74.196.48 TCP 66 44444 ? 8267 [ACK] Seq=98 Ack=296207 Win=482944 Len=0 TSval=2898445920 TSecr=4070909938 216 4.482563043 109.74.196.48 ? 94.29.75.38 TCP 1320 8267 ? 44444 [PSH, ACK] Seq=296207 Ack=98 Win=65152 Len=1254 TSval=4070910099 TSecr=2898445920 [TCP segment of a reassembled PDU] 217 4.802186439 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=297461 Ack=98 Win=65152 Len=1448 TSval=4070910418 TSecr=2898445920 [TCP segment of a reassembled PDU] 218 4.963386427 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=298909 Ack=98 Win=65152 Len=1448 TSval=4070910579 TSecr=2898445920 [TCP segment of a reassembled PDU] 219 5.123428165 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=300357 Ack=98 Win=65152 Len=1448 TSval=4070910740 TSecr=2898445920 [TCP segment of a reassembled PDU] 220 5.284866626 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=301805 Ack=98 Win=65152 Len=1448 TSval=4070910901 TSecr=2898445920 [TCP segment of a reassembled PDU] 221 5.446042170 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=303253 Ack=98 Win=65152 Len=1448 TSval=4070911062 TSecr=2898445920 [TCP segment of a reassembled PDU] 222 5.607801335 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=304701 Ack=98 Win=65152 Len=1448 TSval=4070911224 TSecr=2898445920 [TCP segment of a reassembled PDU] 223 5.768678711 109.74.196.48 ? 94.29.75.38 TCP 1514 8267 ? 44444 [ACK] Seq=306149 Ack=98 Win=65152 Len=1448 TSval=4070911385 TSecr=2898445920 [TCP segment of a reassembled PDU] 224 5.772221616 94.29.75.38 ? 109.74.196.48 TCP 54 44444 ? 8267 [RST] Seq=98 Win=0 Len=0 ```