+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +ip:"47.92.0.0/14" +l9fp:"831cb76b8e05df4652a44ba7909eb71a02f035e5d9d2c4a06180b300616032ac"
Indices: 7, document count: 2178, size: 343.7 MB
Found index .geoip_databases with 33 documents (32.7 MB)
Found index read_me with 1 documents (4...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4ep19@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5EP19"}
Analysis helper :
estk --url=http://47.94.150.165:9200 list
Found by ElasticSearchOpenPlugin