By searching for results, you agree with our Terms of service
Found 9 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +ip:"47.92.0.0/14" +l9fp:"831cb76b8e05df46d9ce83df1943d1531943d1531943d1531943d1531943d153"

Looking for more results ? Register a free account

Countries

  • China 9

Sources

  • ElasticSearchOpenPlugin 9

Network

  • Hangzhou Alibaba Advertising Co.,Ltd. 9

IP Ranges

  • 47.92.0.0/14 9

ASN: 37963
36 events in 395 days
Leak size: 1.9 MB
Open ports: 9200
Indices: 3, document count: 3407, size: 1.9 MB
Found index gpten with 692 documents (568.5 kB)
Found index gptcn with 2714 documents (1.3 MB)
Fou...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.93.241.80:9200 list
            

ASN: 37963
28 events in 136 days
Leak size: 5.3 kB
Open ports: 80
Indices: 1, document count: 1, size: 5.3 kB
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.155.121 list
            

ASN: 37963
52 events in 1095 days
Leak size: 9.7 kB
Open ports: 9200
Indices: 2, document count: 2, size: 9.7 kB
Found index read-me with 1 documents (5.1 kB)
Found index website with 1 documents (4.7 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.220.76:9200 list
            

ASN: 37963
59 events in 1042 days
Leak size: 9.7 kB
Open ports: 9200
Indices: 2, document count: 2, size: 9.7 kB
Found index test with 1 documents (4.6 kB)
Found index read-me with 1 documents (5.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.94.57.171:9200 list
            

ASN: 37963
25 events in 141 days
Leak size: 51.2 kB
Open ports: 9200
Indices: 2, document count: 7, size: 51.2 kB
Found index cms_content with 6 documents (45.9 kB)
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.94.1.190:9200 list
            

ASN: 37963
18 events in 217 days
Leak size: 2.1 MB
Open ports: 9200
Indices: 17, document count: 8063, size: 2.1 MB
Found index suggest_model_jlsx_zh_200 with 51 documents (34.7 kB)
Found index .kibana_task_manage...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.93.245.123:9200 list
            

ASN: 37963
39 events in 823 days
Leak size: 1.4 MB
Open ports: 9200
Indices: 3, document count: 4156, size: 1.4 MB
Found index read_me with 1 documents (5.6 kB)
Found index ge_dynamic with 0 documents (1.3 kB)
Fou...
Analysis helper :
                
estk --url=http://47.93.140.60:9200 list
            

ASN: 37963
26 events in 145 days
Leak size: 5.1 kB
Open ports: 9200
Indices: 1, document count: 1, size: 5.1 kB
Found index read-me with 1 documents (5.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qmheh2ukafmsa8y0hxj64lalddzxwj0sfaas7uu. Once paid please email dar0kmdb@tutanota.com with code: `aLEfI8` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://47.92.227.181:9200 list
            

ASN: 37963
19 events in 204 days
Leak size: 5.3 kB
Open ports: 9200
Indices: 1, document count: 1, size: 5.3 kB
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `NztgbT` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://47.92.84.194:9200 list