I traced the connection with tcpdump and this is the result.
10:46:55.464525 IP (tos 0x0, ttl 64, id 39028, offset 0, flags [DF], proto TCP (6), length 60)
67.205.187.213.47578 > 148.103.7.40.12345: Flags , cksum 0x9b60 (incorrect -> 0x591c), seq 2543739037, win 29200, options [mss 1460,sackOK,TS val 107542761 ecr 0,nop,wscale 7], length 0
0x0000: 4500 003c 9874 4000 4006 0716 43cd bbd5 E..<.t@.@...C...
0x0010: 9467 0728 b9da 3039 979e 609d 0000 0000 .g.(..09..`.....
0x0020: a002 7210 9b60 0000 0204 05b4 0402 080a ..r..`..........
0x0030: 0668 f8e9 0000 0000 0103 0307 .h..........
10:46:55.528525 IP (tos 0x0, ttl 64, id 39029, offset 0, flags [DF], proto TCP (6), length 52)
67.205.187.213.47578 > 148.103.7.40.12345: Flags [.], cksum 0x9b58 (incorrect -> 0x368c), seq 2543739038, ack 2845112230, win 229, options [nop,nop,TS val 107542777 ecr 74027], length 0
0x0000: 4500 0034 9875 4000 4006 071d 43cd bbd5 E..4.u@.@...C...
0x0010: 9467 0728 b9da 3039 979e 609e a994 f7a6 .g.(..09..`.....
0x0020: 8010 00e5 9b58 0000 0101 080a 0668 f8f9 .....X.......h..
0x0030: 0001 212b ..!+