By searching for results, you agree with our Terms of service
Found 26 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +net:"Beijing Guanghuan Xinwang Digital"

Looking for more results ? Register a free account

Countries

  • China 26

Sources

  • ElasticSearchOpenPlugin 26

Network

  • Beijing Guanghuan Xinwang Digital 26

IP Ranges

  • 52.80.0.0/15 10
  • 140.179.0.0/17 6
  • 54.222.128.0/17 6
  • 54.223.0.0/16 4

ASN: 55960
19 events in 254 days
Leak size: 29.2 GB
Open ports: 443
Certificate domains:
kibana.prod.springvalleygame.cn
Indices: 90, document count: 54129159, size: 29.2 GB
Through Kibana endpoint
Found index kubernetes_cluster-2024.04.21 with 888858 documents (475...
Analysis helper :
                
estk --url=https://kibana.prod.springvalleygame.cn list
            

ASN: 55960
51 events in 395 days
Leak size: 5.3 kB
Open ports: 9200
Indices: 1, document count: 1, size: 5.3 kB
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qmheh2ukafmsa8y0hxj64lalddzxwj0sfaas7uu. Once paid please email dar0kmdb@tutanota.com with code: `aLEfI8` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://54.223.156.134:9200 list
            

ASN: 55960
17 events in 297 days
Leak size: 34.1 MB
Open ports: 9200
Indices: 154, document count: 1633, size: 34.1 MB
Found index udohhjxz with 1 documents (5.2 kB)
Found index casa with 482 documents (200.2 kB)
F...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+49qth@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 59QTH"}
            
Analysis helper :
                
estk --url=http://52.81.41.74:9200 list
            

ASN: 55960
38 events in 371 days
Leak size: 5.3 kB
Open ports: 5601
Indices: 1, document count: 1, size: 5.3 kB
Through Kibana endpoint
Found index read-me with 1 documents (5.3 kB)
Analysis helper :
                
estk --url=http://54.223.156.134:5601 list
            

ASN: 55960
12 events in 618 days
Leak size: 185.3 MB
Open ports: 5601
Indices: 86, document count: 1025170, size: 185.3 MB
Through Kibana endpoint
Found index casa with 0 documents (208 B)
Found index newclass-main-...
Analysis helper :
                
estk --url=http://54.222.177.72:5601 list
            

ASN: 55960
13 events in 518 days
Leak size: 126.7 MB
Open ports: 9200
Indices: 42, document count: 446133, size: 126.7 MB
Found index read-me with 1 documents (4.3 kB)
Found index newclass-main-2023-10-21 with 12497...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://54.222.177.72:9200 list
            

ASN: 55960
12 events in 20 days
Leak size: 5.3 kB
Open ports: 9200
Indices: 1, document count: 1, size: 5.3 kB
Found index read-me with 1 documents (5.3 kB)
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `NztgbT` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://52.80.183.244:9200 list
            

ASN: 55960
1 events in 0 days
Leak size: 71.1 MB
Open ports: 5601
Indices: 5, document count: 373, size: 71.1 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (41.4 MB)
Found index .apm-...
Analysis helper :
                
estk --url=http://52.80.135.55:5601 list
            

ASN: 55960
6 events in 33 days
Leak size: 497.6 MB
Open ports: 5601
Indices: 36, document count: 1443160, size: 497.6 MB
Through Kibana endpoint
Found index dct-psc-2023.02.04 with 57601 documents (35.8 MB)
Found ...
Analysis helper :
                
estk --url=http://52.80.50.190:5601 list
            

ASN: 55960
1 events in 0 days
Leak size: 283 B
Open ports: 9200
Indices: 1, document count: 0, size: 283 B
Found index casa with 0 documents (283 B)
Analysis helper :
                
estk --url=http://54.222.196.16:9200 list
            

ASN: 55960
4 events in 114 days
Leak size: 446.5 MB
Open ports: 9200
Indices: 10, document count: 1073879, size: 446.5 MB
Found index .geoip_databases with 40 documents (39.6 MB)
Found index actuator with 1 documen...
Analysis helper :
                
estk --url=http://140.179.5.18:9200 list
            

ASN: 55960
1 events in 0 days
Leak size: 24.2 kB
Open ports: 8011
Certificate domains:
alb-sjy-515489641.cn-north-1.elb.amazonaws.com.cn
Indices: 2, document count: 5, size: 24.2 kB
Through Kibana endpoint
Found index .kibana_task_manager with 2 documents (12.9 kB)
Found index .kib...
Analysis helper :
                
estk --url=https://52.80.187.210:8011 list
            

ASN: 55960
6 events in 347 days
Leak size: 3.4 GB
Open ports: 9200
Indices: 186, document count: 9698435, size: 3.4 GB
Found index identityserver-log-2022.02.18 with 53630 documents (19.0 MB)
Found index identity...
Analysis helper :
                
estk --url=http://140.179.80.252:9200 list
            

ASN: 55960
11 events in 202 days
Leak size: 4.5 kB
Open ports: 9200
Indices: 1, document count: 1, size: 4.5 kB
Found index read_me with 1 documents (4.5 kB)
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.015 BTC. Transfer to this BTC address 1JUvAusiHxWt7mkdbwupb5RZhxnBqvy5CZ . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://52.80.89.131:9200 list
            

ASN: 55960
13 events in 360 days
Leak size: 3.4 GB
Open ports: 5601
Indices: 179, document count: 9353498, size: 3.4 GB
Through Kibana endpoint
Found index identityserver-log-2022.02.18 with 53630 documents (19.0 ...
Analysis helper :
                
estk --url=http://140.179.80.252:5601 list
            

ASN: 55960
1 events in 0 days
Leak size: 690.9 kB
Open ports: 9200
Indices: 1, document count: 169, size: 690.9 kB
Found index magento2_product_1_v9 with 169 documents (690.9 kB)
Analysis helper :
                
estk --url=http://52.80.243.190:9200 list
            

ASN: 55960
13 events in 380 days
Leak size: 137.1 kB
Open ports: 9200
Indices: 17, document count: 33, size: 137.1 kB
Found index admin with 1 documents (5.2 kB)
Found index zms with 0 documents (650 B)
Found index ...
Analysis helper :
                
estk --url=http://52.80.35.238:9200 list
            

ASN: 55960
4 events in 85 days
Leak size: 4.8 kB
Open ports: 9200
Indices: 1, document count: 1, size: 4.8 kB
Found index read_me with 1 documents (4.8 kB)
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14b57thKoPjmVVkh6HHLPz8g7fyBJ5SEcr . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://54.222.180.155:9200 list
            

ASN: 55960
2 events in 0 days
Leak size: 60.4 MB
Open ports: 5601
Indices: 10, document count: 407, size: 60.4 MB
Through Kibana endpoint
Found index .geoip_databases with 40 documents (40.0 MB)
Found index user...
Analysis helper :
                
estk --url=http://52.81.92.188:5601 list
            

ASN: 55960
14 events in 264 days
Leak size: 60.1 kB
Open ports: 9200
Indices: 7, document count: 12, size: 60.1 kB
Found index v2 with 1 documents (8.1 kB)
Found index admin with 1 documents (5.8 kB)
Found index v1...
Analysis helper :
                
estk --url=http://52.80.168.80:9200 list