By searching for results, you agree with our Terms of service
Found 1213 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +ip:"47.92.0.0/14"

Looking for more results ? Register a free account

Countries

  • China 1213

Sources

  • ElasticSearchOpenPlugin 1213

Network

  • Hangzhou Alibaba Advertising Co.,Ltd. 1213

IP Ranges

  • 47.92.0.0/14 1213

ASN: 37963
39 events in 370 days
Leak size: 37.7 kB
Open ports: 9200
Indices: 4, document count: 82, size: 37.7 kB
Found index website with 1 documents (4.0 kB)
Found index test with 15 documents (19.2 kB)
Found in...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.94.95.150:9200 list
            

ASN: 37963
54 events in 461 days
Leak size: 32.7 MB
Open ports: 9200
Indices: 2, document count: 34, size: 32.7 MB
Found index .geoip_databases with 33 documents (32.7 MB)
Found index read_me with 1 documents (4.5 ...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4kvkk@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5KVKK"}
            
Analysis helper :
                
estk --url=http://47.92.83.6:9200 list
            

ASN: 37963
46 events in 982 days
Leak size: 5.0 kB
Open ports: 9200
Indices: 2, document count: 1, size: 5.0 kB
Found index read-me with 0 documents (810 B)
Found index test with 1 documents (4.2 kB)
Analysis helper :
                
estk --url=http://47.92.2.95:9200 list
            

ASN: 37963
49 events in 375 days
Leak size: 32.7 MB
Open ports: 9200
Indices: 2, document count: 34, size: 32.7 MB
Found index .geoip_databases with 33 documents (32.7 MB)
Found index read_me with 1 documents (4.5 ...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0063 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4kd90@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5KD90"}
            
Analysis helper :
                
estk --url=http://47.94.251.209:9200 list
            

ASN: 37963
14 events in 216 days
Leak size: 18.3 kB
Open ports: 9200
Indices: 6, document count: 3, size: 18.3 kB
Found index read-me with 1 documents (5.1 kB)
Found index test with 1 documents (4.6 kB)
Found index...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.92.38:9200 list
            

ASN: 37963
43 events in 1076 days
Leak size: 9.7 kB
Open ports: 9200
Indices: 2, document count: 2, size: 9.7 kB
Found index read-me with 1 documents (5.1 kB)
Found index website with 1 documents (4.7 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.220.76:9200 list
            

ASN: 37963
46 events in 726 days
Leak size: 4.4 MB
Open ports: 5601
Indices: 4, document count: 3168, size: 4.4 MB
Through Kibana endpoint
Found index read_me with 1 documents (4.5 kB)
Found index .kibana with 3 d...
Analysis helper :
                
estk --url=http://47.95.2.69:5601 list
            

ASN: 37963
20 events in 217 days
Leak size: 32.7 MB
Open ports: 9200
Indices: 2, document count: 34, size: 32.7 MB
Found index .geoip_databases with 33 documents (32.7 MB)
Found index read_me with 1 documents (4.5 ...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4mikf@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5MIKF"}
            
Analysis helper :
                
estk --url=http://47.94.83.163:9200 list
            

ASN: 37963
26 events in 236 days
Leak size: 32.7 MB
Open ports: 5601
Indices: 2, document count: 34, size: 32.7 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (32.7 MB)
Found index read_m...
Analysis helper :
                
estk --url=http://47.94.83.163:5601 list
            

ASN: 37963
16 events in 116 days
Leak size: 5.3 kB
Open ports: 80
Indices: 1, document count: 1, size: 5.3 kB
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.155.121 list
            

ASN: 37963
63 events in 1079 days
Leak size: 11.4 kB
Open ports: 9200
Indices: 3, document count: 3, size: 11.4 kB
Found index test with 1 documents (3.6 kB)
Found index website with 1 documents (3.7 kB)
Found index...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.95.216.233:9200 list
            

ASN: 37963
55 events in 513 days
Leak size: 40.3 MB
Open ports: 5601
Indices: 2, document count: 42, size: 40.3 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (40.3 MB)
Found index read-m...
Analysis helper :
                
estk --url=http://47.92.224.172:5601 list
            

ASN: 37963
11 events in 71 days
Leak size: 4.8 kB
Open ports: 5601
Indices: 2, document count: 1, size: 4.8 kB
Through Kibana endpoint
Found index read_me with 1 documents (4.5 kB)
Found index goods with 0 docume...
Analysis helper :
                
estk --url=http://47.92.55.159:5601 list
            

ASN: 37963
36 events in 359 days
Leak size: 343.7 MB
Open ports: 9200
Indices: 7, document count: 2178, size: 343.7 MB
Found index .geoip_databases with 33 documents (32.7 MB)
Found index read_me with 1 documents (4...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4ep19@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5EP19"}
            
Analysis helper :
                
estk --url=http://47.94.150.165:9200 list
            

ASN: 37963
39 events in 908 days
Open ports: 9200
Indices: 1, document count: 0, size: 0 B
Found index read-me with  documents ()
Analysis helper :
                
estk --url=http://47.93.125.209:9200 list
            

ASN: 37963
44 events in 1033 days
Leak size: 29.3 MB
Open ports: 9200
Indices: 12, document count: 213919, size: 29.3 MB
Found index login_status with 2 documents (12.7 kB)
Found index bashboard_survey1 with 6 docum...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 1rsAp5FzhD6huVBjJEnLZxnQXU6EQmUvb . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://47.93.19.196:9200 list
            

ASN: 37963
14 events in 217 days
Leak size: 526.7 kB
Open ports: 9200
Indices: 7, document count: 1031, size: 526.7 kB
Found index product with 4 documents (47.4 kB)
Found index blank with 1000 documents (424.3 kB)
...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.94.216.31:9200 list
            

ASN: 37963
20 events in 737 days
Leak size: 6.4 MB
Open ports: 5601
Indices: 10, document count: 4761, size: 6.4 MB
Through Kibana endpoint
Found index bank with 4 documents (34.5 kB)
Found index megacorp with 3 d...
Analysis helper :
                
estk --url=http://47.93.115.203:5601 list
            

ASN: 37963
18 events in 397 days
Leak size: 81.2 kB
Open ports: 9200
Indices: 5, document count: 17, size: 81.2 kB
Found index alertlog with 2 documents (18.7 kB)
Found index .kibana_task_manager_1 with 2 documents...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.86.241:9200 list
            

ASN: 37963
11 events in 123 days
Leak size: 34.2 kB
Open ports: 9200
Indices: 7, document count: 11, size: 34.2 kB
Found index test with 1 documents (3.8 kB)
Found index services%20 with 0 documents (795 B)
Found i...
Analysis helper :
                
estk --url=http://47.94.247.206:9200 list