By searching for results, you agree with our Terms of service
Found 127 results for
+plugin:ElasticSearchOpenPlugin +asn:"134768"

Looking for more results ? Register a free account

Countries

  • China 127

Sources

  • ElasticSearchOpenPlugin 127

Network

  • CHINANET SHAANXI province Cloud Base network 124
  • China Telecom Group 3

IP Ranges

  • 113.141.64.0/19 18
  • 36.41.64.0/20 18
  • 106.12.254.0/24 8
  • 114.111.0.0/23 8
  • 117.23.0.0/21 8
  • 117.33.128.0/18 7
  • 106.12.252.0/23 6
  • 113.142.128.0/17 5
  • 117.34.100.0/22 5
  • 1.82.240.0/20 4

ASN: 134768
20 events in 266 days
Leak size: 8.4 kB
Open ports: 9200
Indices: 3, document count: 2, size: 8.4 kB
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documents (4.3 kB)
Found index ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://113.142.64.165:9200 list
            

ASN: 134768
31 events in 322 days
Leak size: 999.7 kB
Open ports: 9200
Indices: 3, document count: 1556, size: 999.7 kB
Found index product with 1537 documents (932.6 kB)
Found index .kibana with 18 documents (62.8 k...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://36.41.72.212:9200 list
            

ASN: 134768
28 events in 203 days
Leak size: 28.1 kB
Open ports: 9200
Indices: 2, document count: 31, size: 28.1 kB
Found index insp_track_point_2024_01 with 30 documents (24.0 kB)
Found index read-me with 1 documen...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://114.111.0.109:9200 list
            

ASN: 134768
22 events in 418 days
Leak size: 2.0 MB
Open ports: 9202
Indices: 8, document count: 2664, size: 2.0 MB
Found index sysoperationlog with 570 documents (492.7 kB)
Found index gpscoords with 0 documents (...
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `OQnpA4` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://106.12.252.111:9202 list
            

ASN: 134768
20 events in 323 days
Leak size: 7.6 kB
Open ports: 9200
Indices: 2, document count: 2, size: 7.6 kB
Found index test with 1 documents (3.6 kB)
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://36.41.72.123:9200 list
            

ASN: 134768
55 events in 934 days
Leak size: 1.2 GB
Open ports: 5601
Indices: 24, document count: 2923174, size: 1.2 GB
Through Kibana endpoint
Found index 20-27-sys-2024.02.08 with 94109 documents (26.7 MB)
Found ...
Analysis helper :
                
estk --url=http://106.12.254.206:5601 list
            

ASN: 134768
10 events in 118 days
Leak size: 95.5 MB
Open ports: 5601
Indices: 7, document count: 176315, size: 95.5 MB
Through Kibana endpoint
Found index read_me with 1 documents (5.3 kB)
Found index .monitoring-e...
Analysis helper :
                
estk --url=http://114.111.0.70:5601 list
            

ASN: 134768
24 events in 492 days
Leak size: 68.2 kB
Open ports: 5601
Indices: 11, document count: 11, size: 68.2 kB
Through Kibana endpoint
Found index jeecg-boot with 1 documents (4.8 kB)
Found index .kibana with ...
Analysis helper :
                
estk --url=http://106.12.254.36:5601 list
            

ASN: 134768
4 events in 31 days
Leak size: 6.0 MB
Open ports: 5601
Indices: 10, document count: 4747, size: 6.0 MB
Through Kibana endpoint
Found index work_handle_wlaq_warn with 1 documents (6.1 kB)
Found index w...
Analysis helper :
                
estk --url=http://36.41.76.224:5601 list
            

ASN: 134768
4 events in 71 days
Leak size: 5.1 kB
Open ports: 9200
Indices: 1, document count: 1, size: 5.1 kB
Found index read-me-to-recover-data with 1 documents (5.1 kB)
Analysis helper :
                
estk --url=http://113.137.46.7:9200 list
            

ASN: 134768
4 events in 72 days
Leak size: 5.3 kB
Open ports: 9200
Indices: 1, document count: 1, size: 5.3 kB
Found index read_me with 1 documents (5.3 kB)
Ransom notes :

{"message":"All your data is backed up. You must pay 0.005 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+4i8ok@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5I8OK"}
            
Analysis helper :
                
estk --url=http://106.12.252.248:9200 list
            

ASN: 134768
7 events in 273 days
Leak size: 42.0 MB
Open ports: 5601
Indices: 2, document count: 40, size: 42.0 MB
Through Kibana endpoint
Found index .geoip_databases with 39 documents (42.0 MB)
Found index read_m...
Analysis helper :
                
estk --url=http://113.141.85.73:5601 list
            

ASN: 134768
32 events in 401 days
Leak size: 4.9 kB
Open ports: 9201
Indices: 1, document count: 1, size: 4.9 kB
Found index read-me with 1 documents (4.9 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://106.12.252.111:9201 list
            

ASN: 134768
35 events in 910 days
Leak size: 99.6 MB
Open ports: 5601
Indices: 11, document count: 114, size: 99.6 MB
Through Kibana endpoint
Found index .kibana-event-log-7.14.0-000001 with 2 documents (11.3 kB)
Fo...
Analysis helper :
                
estk --url=http://106.12.252.111:5601 list
            

ASN: 134768
36 events in 287 days
Leak size: 999.7 kB
Open ports: 5601
Indices: 3, document count: 1556, size: 999.7 kB
Through Kibana endpoint
Found index product with 1537 documents (932.6 kB)
Found index .kibana w...
Analysis helper :
                
estk --url=http://36.41.72.212:5601 list
            

ASN: 134768
14 events in 399 days
Leak size: 13.0 kB
Open ports: 9200
Indices: 2, document count: 3, size: 13.0 kB
Found index .kibana with 2 documents (8.9 kB)
Found index read-me with 1 documents (4.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://106.12.254.36:9200 list
            

ASN: 134768
12 events in 312 days
Leak size: 7.7 kB
Open ports: 5601
Indices: 2, document count: 2, size: 7.7 kB
Through Kibana endpoint
Found index read-me with 1 documents (4.1 kB)
Found index test with 1 documen...
Analysis helper :
                
estk --url=http://117.23.6.216:5601 list
            

ASN: 134768
14 events in 296 days
Leak size: 7.8 kB
Open ports: 9200
Indices: 2, document count: 2, size: 7.8 kB
Found index test with 1 documents (3.7 kB)
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://117.34.120.29:9200 list
            

ASN: 134768
7 events in 296 days
Leak size: 7.7 kB
Open ports: 9201
Indices: 2, document count: 2, size: 7.7 kB
Found index read-me with 1 documents (4.1 kB)
Found index test with 1 documents (3.6 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://117.23.6.216:9201 list
            

ASN: 134768
25 events in 328 days
Leak size: 42.3 MB
Open ports: 9200
Indices: 4, document count: 45, size: 42.3 MB
Found index .geoip_databases with 43 documents (42.3 MB)
Found index test with 1 documents (4.0 kB)...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://1.82.241.237:9200 list