+plugin:ElasticSearchOpenPlugin +net:"CHINA UNICOM China169 Backbone" -ip:"113.56.0.0/15" +events.leak.severity:"critical"
Indices: 2, document count: 2053, size: 1.8 MB
Found index read_me with 1 documents (5.0 kB)
Found index mod with 2052 documents (1.8 MB)
Ransom notes :
{"text":"Your DB has been back up. The only way of recovery is you must send 0.002 BTC to 127ZBzXyLJFc7ShMmzkYFDhSiXXSnR8Jfr. Once paid please email databaserestore32@onionmail.org with code: `omoRmq` and we will recover your database. please read https://cutmyurl.com/3caF8EkT for more information"}
Analysis helper :
estk --url=http://60.214.102.125:9200 list
Found by ElasticSearchOpenPlugin
Indices: 9, document count: 808964, size: 454.0 MB
Found index .monitoring-es-7-2024.05.10 with 121368 documents (47.5 MB)
Found index .monitorin...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4fy2b@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5FY2B"}
Analysis helper :
estk --url=http://122.191.109.162:9200 list
Found by ElasticSearchOpenPlugin
Indices: 36, document count: 650302, size: 215.3 MB
Found index .kibana-event-log-7.9.3-000002 with 0 documents (208 B)
Found index .kibana-event...
Ransom notes :
{"text":"Your DB has been back up. The only way of recovery is you must send 0.002 BTC to 127ZBzXyLJFc7ShMmzkYFDhSiXXSnR8Jfr. Once paid please email databaserestore32@onionmail.org with code: `omoRmq` and we will recover your database. please read https://cutmyurl.com/3caF8EkT for more information"}
Analysis helper :
estk --url=http://113.200.75.31:9200 list
Found by ElasticSearchOpenPlugin
Indices: 8, document count: 7966, size: 37.2 MB
Found index .geoip_databases with 35 documents (34.0 MB)
Found index read_me with 1 documents (4....
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4g42w@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5G42W"}
Analysis helper :
estk --url=http://123.133.78.134:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 319768, size: 63.7 MB
Found index rental_locker_log with 319767 documents (63.7 MB)
Found index read-me with 1 docume...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://103.252.251.229:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 34705, size: 443.0 MB
Found index read-me with 0 documents (795 B)
Found index zxqy with 34705 documents (443.0 MB)
Analysis helper :
estk --url=http://119.6.253.103:9200 list
Found by ElasticSearchOpenPlugin
Indices: 80, document count: 523647438, size: 104.8 GB
Found index live_channel with 325 documents (128.9 kB)
Found index live_program with 9224 ...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://60.255.240.238:9201 list
Found by ElasticSearchOpenPlugin
Indices: 9, document count: 3799, size: 4.3 MB
Found index client with 0 documents (800 B)
Found index cas with 0 documents (800 B)
Found index c...
Analysis helper :
estk --url=http://115.56.238.173:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 5664, size: 11.1 MB
Found index eb_management with 3923 documents (7.6 MB)
Found index .apm-custom-link with 0 docum...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://116.255.252.68:9200 list
Found by ElasticSearchOpenPlugin
Indices: 36, document count: 18425561, size: 1.8 GB
Through Kibana endpoint
Found index system_logger_2024-3 with 1668 documents (208.5 kB)
Found...
Analysis helper :
estk --url=http://116.132.42.134:5601 list
Found by ElasticSearchOpenPlugin
Indices: 7, document count: 42503, size: 4.1 MB
Found index kf_stat_ipt_202312 with 0 documents (130 B)
Found index kf_stat_opt_202402 with 793 d...
Analysis helper :
estk --url=http://221.10.226.14:9201 list
Found by ElasticSearchOpenPlugin
Indices: 6, document count: 15025, size: 202.1 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (41.1 MB)
Found index re...
Analysis helper :
estk --url=http://153.36.232.55:5601 list
Found by ElasticSearchOpenPlugin
Indices: 48, document count: 764493, size: 161.6 MB
Through Kibana endpoint
Found index .monitoring-kibana-2-2024.02.01 with 17277 documents (3.6...
Analysis helper :
estk --url=http://220.203.16.102:5601 list
Found by ElasticSearchOpenPlugin
Indices: 31, document count: 475753, size: 100.4 MB
Found index .monitoring-kibana-2-2024.02.01 with 11543 documents (2.4 MB)
Found index .monito...
Analysis helper :
estk --url=http://220.203.16.102:9200 list
Found by ElasticSearchOpenPlugin
Indices: 13, document count: 5805, size: 12.2 MB
Through Kibana endpoint
Found index eb_management with 4018 documents (7.8 MB)
Found index .apm-...
Analysis helper :
estk --url=http://116.255.252.68:5601 list
Found by ElasticSearchOpenPlugin
Indices: 7, document count: 2020972, size: 85.5 MB
Found index ested_table_index with 1977958 documents (78.8 MB)
Found index sb_org_sx with 4699...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://110.249.135.178:9200 list
Found by ElasticSearchOpenPlugin
Indices: 5, document count: 185986, size: 71.3 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (40.3 MB)
Found index li...
Analysis helper :
estk --url=http://61.240.141.203:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 5053, size: 1.9 MB
Through Kibana endpoint
Found index read_me with 1 documents (4.5 kB)
Found index heartbeat-7.14.0...
Analysis helper :
estk --url=http://112.80.56.154:5601 list
Found by ElasticSearchOpenPlugin
Indices: 16, document count: 1314096, size: 639.0 MB
Found index .monitoring-kibana-6-2024.01.29 with 8639 documents (2.1 MB)
Found index .monito...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://60.217.78.195:9205 list
Found by ElasticSearchOpenPlugin
Indices: 97, document count: 3052306, size: 764.4 MB
Through Kibana endpoint
Found index casa with 0 documents (226 B)
Found index application-20...
Analysis helper :
estk --url=http://121.31.122.116:5601 list
Found by ElasticSearchOpenPlugin