+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +asn:"9123" +events.leak.severity:"critical"
Indices: 2, document count: 8086, size: 519.7 kB
Found index shop with 8085 documents (514.4 kB)
Found index read-me with 1 documents (5.3 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://193.164.149.3:9200 list
Found by ElasticSearchOpenPlugin
Indices: 5, document count: 74410, size: 41.8 MB
Found index app_institutions with 782 documents (570.7 kB)
Found index app_events with 1 documen...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://94.228.116.45:9200 list
Found by ElasticSearchOpenPlugin
Indices: 7, document count: 9147, size: 5.2 MB
Found index catalog-sections with 526 documents (172.7 kB)
Found index discounts-elements with 0 d...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://185.200.240.244:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 6039, size: 34.0 MB
Through Kibana endpoint
Found index .geoip_databases with 34 documents (33.4 MB)
Found index read...
Analysis helper :
estk --url=http://89.223.71.65:5601 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 6039, size: 34.0 MB
Found index .geoip_databases with 34 documents (33.4 MB)
Found index read_me with 1 documents (4....
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+43u61@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 53U61"}
Analysis helper :
estk --url=http://89.223.71.65:9200 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 254736, size: 260.2 MB
Found index graylog_0 with 254735 documents (260.2 MB)
Found index gl-events_0 with 0 document...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://94.228.124.241:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 1063, size: 449.1 kB
Found index price with 1062 documents (444.8 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `h7pEfd` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://78.40.219.104:9200 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 2504, size: 6.2 MB
Found index pro_backend_news-test-1.0.0 with 2449 documents (5.8 MB)
Found index pro_backend_selec...
Ransom notes :
{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `eNO2CN` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
Analysis helper :
estk --url=http://90.156.227.8:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 4042, size: 65.9 MB
Found index .geoip_databases with 42 documents (42.3 MB)
Found index read-me with 1 documents (4....
Ransom notes :
{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `NztgbT` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
Analysis helper :
estk --url=http://176.57.211.113:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 1372, size: 317.4 kB
Found index read_me with 1 documents (5.5 kB)
Found index websearch with 1371 documents (311.8 k...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14UCEfQG5vs7kZAbFrcZ7K4BCiEa48mdFu . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://92.53.107.228:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 1026, size: 1.2 MB
Found index ztp with 1 documents (8.4 kB)
Found index api with 1 documents (7.7 kB)
Found index o...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://185.104.114.149:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 1026, size: 1.4 MB
Found index mansions with 194 documents (398.2 kB)
Found index ztp with 1 documents (8.4 kB)
Foun...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://37.77.105.245:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 1026, size: 1.1 MB
Found index ztp with 1 documents (8.4 kB)
Found index api with 1 documents (7.7 kB)
Found index o...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://89.223.124.45:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 1026, size: 1.2 MB
Found index object with 197 documents (290.0 kB)
Found index ztp with 1 documents (8.4 kB)
Found ...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://193.164.150.244:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 106709, size: 447.0 MB
Found index .geoip_databases with 42 documents (42.3 MB)
Found index read-me with 1 documents ...
Ransom notes :
{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `NztgbT` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
Analysis helper :
estk --url=http://85.193.87.112:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 1031, size: 1.2 MB
Found index mansions with 196 documents (327.9 kB)
Found index ztp with 1 documents (8.4 kB)
Foun...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://185.200.241.245:9200 list
Found by ElasticSearchOpenPlugin
Indices: 7, document count: 32960, size: 60.4 MB
Found index .geoip_databases with 42 documents (42.2 MB)
Found index cleverence-server-cloudinst...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.008 BTC to 1Kv1RDK6BGdejeavuTnjNk6zkG9bHj54rD In 48 hours, your data will be publicly disclosed and deleted. (more information: go to https://cutt.ly/rambler5)After paying send mail to us: rambler+58mqn@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 58MQN"}
Analysis helper :
estk --url=http://94.228.120.199:9200 list
Found by ElasticSearchOpenPlugin
Indices: 37, document count: 195314, size: 174.8 MB
Through Kibana endpoint
Found index cleverence-server-cloudinstance-1b123776e805-2022-11 with...
Analysis helper :
estk --url=http://217.25.89.131:5601 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 46203, size: 159.1 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (44.0 MB)
Found index re...
Analysis helper :
estk --url=http://89.223.125.5:5601 list
Found by ElasticSearchOpenPlugin