By searching for results, you agree with our Terms of service
Found 124 results for
%2Bplugin%3APaloAltoPlugin %2Bl9fp%3A%2286a3662a5a0946e72bafa95f04373b6211464bfe568ba360550371bcb95c754d%22 +net:"GOOGLE-CLOUD-PLATFORM" +ip:"104.196.0.0/14" +plugin:"ElasticSearchOpenPlugin"

Looking for more results ? Register a free account

Countries

  • United States 113
  • Taiwan 9
  • Japan 2

Sources

  • ElasticSearchOpenPlugin 124

Network

  • GOOGLE-CLOUD-PLATFORM 124

IP Ranges

  • 104.196.0.0/14 123
  • 104.198.0.0/15 1

ASN: 396982
30 events in 301 days
Leak size: 1.1 GB
Open ports: 443
Certificate domains:
report.bank.demo.inspiring.marketing
Indices: 22, document count: 1549502, size: 784.2 MB
Through Kibana endpoint
Found index .monitoring-kibana
Analysis helper :
                
estk --url=https://report.bank.demo.inspiring.marketing list
            

ASN: 396982
13 events in 33 days
Leak size: 1.0 GB
Open ports: 443
Certificate domains:
smartxoffice.cc
Indices: 411, document count: 4599781, size: 1.0 GB
Through Kibana endpoint
Found index oa-uat-backend-cms-20240429 with 31874 documents (7.4 MB)...
Analysis helper :
                
estk --url=https://104.199.234.48 list
            

ASN: 396982
17 events in 947 days
Leak size: 130.3 GB
Open ports: 8080
(1.6 GB)
Found index chatlog-2021-08-23 with 4894500 documents (1.4 GB)
Found index chatlog-2021-08-22
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://104.198.219.100:8080 list
            

ASN: 396982
72 events in 1096 days
Leak size: 11.3 kB
Open ports: 9200
Indices: 2, document count: 2, size: 11.3 kB
Found index api with 1 documents (7.0 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://104.197.153.228:9200 list
            

ASN: 396982
81 events in 1040 days
Leak size: 2.7 MB
Open ports: 9200
with 20496 documents (43.4 MB)
Found index yz.jsp with 1 documents (5.7 kB)
Found index website with 22
Analysis helper :
                
estk --url=http://104.198.13.14:9200 list
            

ASN: 396982
66 events in 677 days
Leak size: 779.9 MB
Open ports: 9200
Indices: 5, document count: 1148499, size: 779.9 MB
Found index read-me with 1 documents (5.1 kB)
Found index eventsautoheal with 118970 document...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://104.196.140.146:9200 list
            

ASN: 396982
52 events in 325 days
Leak size: 80.1 kB
Open ports: 9200
Indices: 11, document count: 10, size: 80.1 kB
Found index casa with 0 documents (1.3 kB)
Found index service with 1 documents (20.5 kB)
Found in...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://104.197.207.139:9200 list
            

ASN: 396982
100 events in 1093 days
Open ports: 5601
Indices: 1, document count: 0, size: 0 B
Through Kibana endpoint
Found index read-me with  documents ()
Analysis helper :
                
estk --url=http://104.197.210.100:5601 list
            

ASN: 396982
73 events in 1066 days
Open ports: 9200
Indices: 1, document count: 0, size: 0 B
Found index read-me with  documents ()
Analysis helper :
                
estk --url=http://104.197.210.100:9200 list
            

ASN: 396982
18 events in 103 days
Leak size: 10.1 kB
Open ports: 5601
Indices: 2, document count: 2, size: 10.1 kB
Through Kibana endpoint
Found index nightlionsecurity.com with 0 documents (1.3 kB)
Found index .kib...
Analysis helper :
                
estk --url=https://104.199.187.189:5601 list
            

ASN: 396982
79 events in 1066 days
Leak size: 42.3 MB
Open ports: 9200
Indices: 2, document count: 36635, size: 42.3 MB
Found index read-me with 1 documents (5.0 kB)
Found index library with 36634 documents (42.3 MB)...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://104.198.176.157:9200 list
            

ASN: 396982
25 events in 140 days
Leak size: 920.3 kB
Open ports: 8021
Indices: 3, document count: 1009, size: 920.3 kB
Found index content_user with 592 documents (493.0 kB)
Found index content_item with 416 documen...
Analysis helper :
                
estk --url=http://104.197.83.63:8021 list
            

ASN: 396982
49 events in 911 days
Leak size: 650 B
Open ports: 9200
Indices: 1, document count: 0, size: 650 B
Found index read-me with 0 documents (650 B)
Analysis helper :
                
estk --url=http://104.196.42.15:9200 list
            

ASN: 396982
8 events in 75 days
Leak size: 11.1 GB
Open ports: 443
(105.9 MB)
Found index wazuh-cmdlog_27 with 1 documents (19.8 kB)
Found index wazuh-cmdlog_28 with 22
Analysis helper :
                
estk --url=https://104.199.167.95 list
            

ASN: 396982
15 events in 429 days
Leak size: 17.9 MB
Open ports: 443
Certificate domains:
elk-logserver.imvidu.com
Indices: 3, document count: 85712, size: 17.9 MB
Through Kibana endpoint
Found index read_me with 1 documents (4.6 kB)
Found index logstash with ...
Analysis helper :
                
estk --url=https://elk-logserver.imvidu.com list
            

ASN: 396982
45 events in 487 days
Leak size: 967.3 MB
Open ports: 443
Certificate domains:
elk-logserver.imvidu.com
Indices: 4, document count: 4999106, size: 967.3 MB
Through Kibana endpoint
Found index .ds-logs-generic-default-2023.10.08-000030 with 0 documen...
Analysis helper :
                
estk --url=https://104.197.95.70 list
            

ASN: 396982
53 events in 435 days
Leak size: 967.4 MB
Open ports: 8001
Indices: 4, document count: 4999106, size: 967.4 MB
Through Kibana endpoint
Found index .ds-logs-generic-default-2023.10.08-000030 with 0 documen...
Analysis helper :
                
estk --url=http://104.197.95.70:8001 list
            

ASN: 396982
45 events in 462 days
Leak size: 3.2 MB
Open ports: 9200
Indices: 3, document count: 15577, size: 3.2 MB
Found index read_me with 1 documents (4.6 kB)
Found index logstash with 15576 documents (3.2 MB)
...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.01 BTC to 14PYVptPexgRpHRm7SSrFMAyBKYymkRA55 In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+5ha4t@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5HA4T"}
            
Analysis helper :
                
estk --url=http://104.197.95.70:9200 list
            

ASN: 396982
72 events in 869 days
Leak size: 1.9 GB
Open ports: 9200
Indices: 3, document count: 2843283, size: 1.9 GB
Found index liferay-0 with 12 documents (28.4 kB)
Found index liferay-20099 with 2843270 docume...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://104.196.143.206:9200 list
            

ASN: 396982
30 events in 844 days
Leak size: 795 B
Open ports: 9200
Indices: 1, document count: 0, size: 795 B
Found index read-me with 0 documents (795 B)
Analysis helper :
                
estk --url=http://104.199.116.115:9200 list