By searching for results, you agree with our Terms of service
Found 1108 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +ip:"120.76.0.0/14"

Looking for more results ? Register a free account

Countries

  • China 1108

Sources

  • ElasticSearchOpenPlugin 1108

Network

  • Hangzhou Alibaba Advertising Co.,Ltd. 1108

IP Ranges

  • 120.76.0.0/14 1108

ASN: 37963
23 events in 459 days
Leak size: 7.7 kB
Open ports: 9200
Indices: 2, document count: 2, size: 7.7 kB
Found index test with 1 documents (3.6 kB)
Found index read-me with 1 documents (4.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.67.220:9200 list
            

ASN: 37963
22 events in 169 days
Leak size: 90.5 kB
Open ports: 5601
Indices: 3, document count: 5, size: 90.5 kB
Through Kibana endpoint
Found index .kibana with 2 documents (9.0 kB)
Found index read-me with 1 doc...
Analysis helper :
                
estk --url=http://120.77.202.117:5601 list
            

ASN: 37963
23 events in 467 days
Leak size: 1.6 kB
Open ports: 9200
Indices: 2, document count: 0, size: 1.6 kB
Found index api with 0 documents (795 B)
Found index read-me with 0 documents (795 B)
Analysis helper :
                
estk --url=http://120.79.148.246:9200 list
            

ASN: 37963
17 events in 169 days
Leak size: 119.1 kB
Open ports: 9200
Indices: 2, document count: 58, size: 119.1 kB
Found index b2c-single with 57 documents (115.1 kB)
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.171.244:9200 list
            

ASN: 37963
45 events in 373 days
Leak size: 235.6 kB
Open ports: 9200
Indices: 2, document count: 111, size: 235.6 kB
Found index read_me with 1 documents (4.6 kB)
Found index info_index_v1 with 110 documents (231.1...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+468gu@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 568GU"}
            
Analysis helper :
                
estk --url=http://120.76.205.30:9200 list
            

ASN: 37963
10 events in 72 days
Leak size: 90.7 kB
Open ports: 5601
Indices: 7, document count: 15, size: 90.7 kB
Through Kibana endpoint
Found index .apm-custom-link with 0 documents (208 B)
Found index .kibana_t...
Analysis helper :
                
estk --url=http://120.76.202.145:5601 list
            

ASN: 37963
37 events in 447 days
Leak size: 8.3 kB
Open ports: 9200
Indices: 2, document count: 2, size: 8.3 kB
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.77.59.61:9200 list
            

ASN: 37963
25 events in 371 days
Leak size: 250.3 MB
Open ports: 9200
Indices: 14, document count: 10238, size: 250.3 MB
Found index [erp-log]-2024.05 with 92 documents (173.7 kB)
Found index [erp-log]-2023.12 with ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.76.197.184:9200 list
            

ASN: 37963
10 events in 71 days
Leak size: 4.3 kB
Open ports: 5601
Indices: 1, document count: 1, size: 4.3 kB
Through Kibana endpoint
Found index read-me-to-recover-data with 1 documents (4.3 kB)
Analysis helper :
                
estk --url=http://120.79.13.143:5601 list
            

ASN: 37963
50 events in 516 days
Leak size: 13.0 kB
Open ports: 5601
Indices: 2, document count: 3, size: 13.0 kB
Through Kibana endpoint
Found index .kibana with 2 documents (9.0 kB)
Found index read-me with 1 doc...
Analysis helper :
                
estk --url=http://120.76.200.101:5601 list
            

ASN: 37963
32 events in 458 days
Leak size: 4.0 kB
Open ports: 9200
Indices: 1, document count: 1, size: 4.0 kB
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.79.41.231:9200 list
            

ASN: 37963
53 events in 889 days
Leak size: 44.3 MB
Open ports: 9200
Indices: 4, document count: 3200, size: 44.3 MB
Found index .geoip_databases with 40 documents (42.5 MB)
Found index test with 1 documents (4.0 k...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.158.68:9200 list
            

ASN: 37963
12 events in 149 days
Leak size: 3.1 MB
Open ports: 9200
Indices: 2, document count: 5638, size: 3.1 MB
Found index jht with 5637 documents (3.1 MB)
Found index read-me with 1 documents (4.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.77.25.69:9200 list
            

ASN: 37963
45 events in 1081 days
Leak size: 22.2 MB
Open ports: 9200
Indices: 12, document count: 23, size: 22.2 MB
Found index house_case_picture with 1 documents (7.9 kB)
Found index test with 1 documents (4.0 kB...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.217.210:9200 list
            

ASN: 37963
39 events in 519 days
Leak size: 43.3 MB
Open ports: 5601
Indices: 3, document count: 42, size: 43.3 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (43.3 MB)
Found index test_s...
Analysis helper :
                
estk --url=http://120.77.83.233:5601 list
            

ASN: 37963
10 events in 122 days
Leak size: 34.7 MB
Open ports: 9222
Indices: 4, document count: 757, size: 34.7 MB
Found index .geoip_databases with 33 documents (32.7 MB)
Found index lili_logs with 14 documents (...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.76.40.172:9222 list
            

ASN: 37963
19 events in 149 days
Leak size: 1.3 MB
Open ports: 5601
Indices: 9, document count: 2127, size: 1.3 MB
Through Kibana endpoint
Found index raw-wiki with 0 documents (1.7 kB)
Found index .kibana_task_ma...
Analysis helper :
                
estk --url=http://120.78.164.201:5601 list
            

ASN: 37963
32 events in 453 days
Leak size: 2.6 MB
Open ports: 9200
Indices: 16, document count: 92, size: 2.6 MB
Found index home_page_search_product with 21 documents (40.8 kB)
Found index tbl_food_store with 0 ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.77.181.203:9200 list
            

ASN: 37963
63 events in 1067 days
Leak size: 14.5 MB
Open ports: 5601
Indices: 52, document count: 3333, size: 14.5 MB
Through Kibana endpoint
Found index logstash-midai88-prod-log-2024.04.18 with 89 documents (276....
Analysis helper :
                
estk --url=http://120.77.32.62:5601 list
            

ASN: 37963
31 events in 280 days
Leak size: 8.3 kB
Open ports: 5601
Indices: 2, document count: 2, size: 8.3 kB
Through Kibana endpoint
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documen...
Analysis helper :
                
estk --url=http://120.79.13.124:5601 list