By searching for results, you agree with our Terms of service
Found 19 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +asn:"9123" +events.leak.severity:"critical"

Looking for more results ? Register a free account

Countries

  • Russia 19

Sources

  • ElasticSearchOpenPlugin 19

Network

  • TimeWeb Ltd. 19

IP Ranges

  • 185.200.240.0/22 2
  • 89.223.120.0/21 2
  • 89.223.64.0/21 2
  • 176.57.208.0/22 1
  • 185.104.114.0/24 1
  • 193.164.149.0/24 1
  • 193.164.150.0/24 1
  • 217.25.88.0/23 1
  • 37.77.104.0/22 1
  • 78.40.218.0/23 1

ASN: 9123
39 events in 273 days
Leak size: 519.7 kB
Open ports: 9200
Indices: 2, document count: 8086, size: 519.7 kB
Found index shop with 8085 documents (514.4 kB)
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://193.164.149.3:9200 list
            

ASN: 9123
71 events in 472 days
Leak size: 41.8 MB
Open ports: 9200
Indices: 5, document count: 74410, size: 41.8 MB
Found index app_institutions with 782 documents (570.7 kB)
Found index app_events with 1 documen...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://94.228.116.45:9200 list
            

ASN: 9123
81 events in 1071 days
Leak size: 5.2 MB
Open ports: 9200
Indices: 7, document count: 9147, size: 5.2 MB
Found index catalog-sections with 526 documents (172.7 kB)
Found index discounts-elements with 0 d...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://185.200.240.244:9200 list
            

ASN: 9123
33 events in 485 days
Leak size: 34.0 MB
Open ports: 5601
Indices: 3, document count: 6039, size: 34.0 MB
Through Kibana endpoint
Found index .geoip_databases with 34 documents (33.4 MB)
Found index read...
Analysis helper :
                
estk --url=http://89.223.71.65:5601 list
            

ASN: 9123
53 events in 774 days
Leak size: 34.0 MB
Open ports: 9200
Indices: 3, document count: 6039, size: 34.0 MB
Found index .geoip_databases with 34 documents (33.4 MB)
Found index read_me with 1 documents (4....
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+43u61@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 53U61"}
            
Analysis helper :
                
estk --url=http://89.223.71.65:9200 list
            

ASN: 9123
45 events in 364 days
Leak size: 260.2 MB
Open ports: 9200
Indices: 4, document count: 254736, size: 260.2 MB
Found index graylog_0 with 254735 documents (260.2 MB)
Found index gl-events_0 with 0 document...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://94.228.124.241:9200 list
            

ASN: 9123
31 events in 328 days
Leak size: 449.1 kB
Open ports: 9200
Indices: 2, document count: 1063, size: 449.1 kB
Found index price with 1062 documents (444.8 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `h7pEfd` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://78.40.219.104:9200 list
            

ASN: 9123
26 events in 322 days
Leak size: 6.2 MB
Open ports: 9200
Indices: 4, document count: 2504, size: 6.2 MB
Found index pro_backend_news-test-1.0.0 with 2449 documents (5.8 MB)
Found index pro_backend_selec...
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `eNO2CN` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://90.156.227.8:9200 list
            

ASN: 9123
25 events in 79 days
Leak size: 65.9 MB
Open ports: 9200
Indices: 3, document count: 4042, size: 65.9 MB
Found index .geoip_databases with 42 documents (42.3 MB)
Found index read-me with 1 documents (4....
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `NztgbT` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://176.57.211.113:9200 list
            

ASN: 9123
42 events in 852 days
Leak size: 317.4 kB
Open ports: 9200
Indices: 2, document count: 1372, size: 317.4 kB
Found index read_me with 1 documents (5.5 kB)
Found index websearch with 1371 documents (311.8 k...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14UCEfQG5vs7kZAbFrcZ7K4BCiEa48mdFu . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://92.53.107.228:9200 list
            

ASN: 9123
47 events in 727 days
Leak size: 1.2 MB
Open ports: 9200
Indices: 12, document count: 1026, size: 1.2 MB
Found index ztp with 1 documents (8.4 kB)
Found index api with 1 documents (7.7 kB)
Found index o...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://185.104.114.149:9200 list
            

ASN: 9123
38 events in 692 days
Leak size: 1.4 MB
Open ports: 9200
Indices: 12, document count: 1026, size: 1.4 MB
Found index mansions with 194 documents (398.2 kB)
Found index ztp with 1 documents (8.4 kB)
Foun...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://37.77.105.245:9200 list
            

ASN: 9123
32 events in 719 days
Leak size: 1.1 MB
Open ports: 9200
Indices: 12, document count: 1026, size: 1.1 MB
Found index ztp with 1 documents (8.4 kB)
Found index api with 1 documents (7.7 kB)
Found index o...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://89.223.124.45:9200 list
            

ASN: 9123
47 events in 730 days
Leak size: 1.2 MB
Open ports: 9200
Indices: 12, document count: 1026, size: 1.2 MB
Found index object with 197 documents (290.0 kB)
Found index ztp with 1 documents (8.4 kB)
Found ...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://193.164.150.244:9200 list
            

ASN: 9123
7 events in 100 days
Leak size: 447.0 MB
Open ports: 9200
Indices: 3, document count: 106709, size: 447.0 MB
Found index .geoip_databases with 42 documents (42.3 MB)
Found index read-me with 1 documents ...
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `NztgbT` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://85.193.87.112:9200 list
            

ASN: 9123
19 events in 682 days
Leak size: 1.2 MB
Open ports: 9200
Indices: 12, document count: 1031, size: 1.2 MB
Found index mansions with 196 documents (327.9 kB)
Found index ztp with 1 documents (8.4 kB)
Foun...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://185.200.241.245:9200 list
            

ASN: 9123
8 events in 172 days
Leak size: 60.4 MB
Open ports: 9200
Indices: 7, document count: 32960, size: 60.4 MB
Found index .geoip_databases with 42 documents (42.2 MB)
Found index cleverence-server-cloudinst...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.008 BTC to 1Kv1RDK6BGdejeavuTnjNk6zkG9bHj54rD In 48 hours, your data will be publicly disclosed and deleted. (more information: go to https://cutt.ly/rambler5)After paying send mail to us: rambler+58mqn@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 58MQN"}
            
Analysis helper :
                
estk --url=http://94.228.120.199:9200 list
            

ASN: 9123
14 events in 353 days
Leak size: 174.8 MB
Open ports: 5601
Indices: 37, document count: 195314, size: 174.8 MB
Through Kibana endpoint
Found index cleverence-server-cloudinstance-1b123776e805-2022-11 with...
Analysis helper :
                
estk --url=http://217.25.89.131:5601 list
            

ASN: 9123
22 events in 486 days
Leak size: 159.1 MB
Open ports: 5601
Indices: 4, document count: 46203, size: 159.1 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (44.0 MB)
Found index re...
Analysis helper :
                
estk --url=http://89.223.125.5:5601 list