By searching for results, you agree with our Terms of service
Found 714 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +net:"Contabo GmbH" -ip:"173.249.0.0/18"

Looking for more results ? Register a free account

Countries

  • Germany 648
  • United States 31
  • United Kingdom 16
  • Turkey 11
  • The Netherlands 3
  • Israel 2
  • Italy 2
  • Türkiye 1

Sources

  • ElasticSearchOpenPlugin 714

Network

  • Contabo GmbH 714

IP Ranges

  • 194.163.128.0/18 54
  • 38.242.192.0/18 50
  • 144.91.64.0/18 49
  • 161.97.64.0/18 43
  • 207.180.192.0/18 43
  • 5.189.128.0/18 41
  • 38.242.128.0/19 31
  • 75.119.128.0/19 31
  • 161.97.128.0/19 28
  • 173.212.192.0/18 28

ASN: 51167
28 events in 227 days
Leak size: 162.3 MB
Open ports: 443
Certificate domains:
kibana.dev.fastbim4.eu
Indices: 44, document count: 427121, size: 162.3 MB
Through Kibana endpoint
Found index hilti-framework-services-clashservice-api-development-202...
Analysis helper :
                
estk --url=https://kibana.dev.fastbim4.eu list
            

ASN: 51167
19 events in 421 days
Leak size: 211.0 MB
Open ports: 443
Certificate domains:
elasticsearch.onlinealive.in
Indices: 13, document count: 96, size: 211.0 MB
Found index internal with 1 documents (6.8 kB)
Found index casa with 0 documents (226 B)
Found in...
Analysis helper :
                
estk --url=https://elasticsearch.onlinealive.in list
            

ASN: 51167
37 events in 452 days
Leak size: 32.2 MB
Open ports: 443
Certificate domains:
www.search.ngoja.com
search.ngoja.com
Indices: 7, document count: 259, size: 32.2 MB
Found index .geoip_databases with 33 documents (32.2 MB)
Found index website with 1 documents (4.0...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+41t37@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 51T37"}
            
Analysis helper :
                
estk --url=https://www.search.ngoja.com list
            

ASN: 51167
38 events in 1005 days
Leak size: 19.9 kB
Open ports: 443
Certificate domains:
cockpit.myservk.fr
home-remote.myservk.fr
kibana.myservk.fr
socket.home-remote.myservk.fr
elasticsearch.myservk.fr
Indices: 3, document count: 3, size: 19.9 kB
Found index read-me with 1 documents (5.1 kB)
Found index .kibana_1 with 1 documents (7.5 kB)
Found ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://elasticsearch.myservk.fr list
            

ASN: 51167
36 events in 230 days
Leak size: 129.4 MB
Open ports: 5601
Indices: 8, document count: 3415, size: 129.4 MB
Through Kibana endpoint
Found index .kibana_7.17.12_001 with 18 documents (2.5 MB)
Found index ....
Analysis helper :
                
estk --url=http://5.189.182.225:5601 list
            

ASN: 51167
34 events in 268 days
Leak size: 64.8 MB
Open ports: 443
Certificate domains:
logs.wizzremits.com
Indices: 8, document count: 24, size: 64.8 MB
Through Kibana endpoint
Found index .apm-custom-link with 0 documents (208 B)
Found index .kibana_t...
Analysis helper :
                
estk --url=https://logs.wizzremits.com list
            

ASN: 51167
22 events in 422 days
Leak size: 4.3 kB
Open ports: 443
Certificate domains:
elk.fidary.eternus.si
Indices: 1, document count: 1, size: 4.3 kB
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://elk.fidary.eternus.si list
            

ASN: 51167
29 events in 453 days
Leak size: 4.3 kB
Open ports: 443
Certificate domains:
search.toporec.com
Indices: 2, document count: 1, size: 4.3 kB
Found index vk20 with 0 documents (283 B)
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://search.toporec.com list
            

ASN: 51167
29 events in 453 days
Leak size: 4.3 kB
Open ports: 80
Certificate domains:
search.toporec.com
Indices: 2, document count: 1, size: 4.3 kB
Found index vk20 with 0 documents (283 B)
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://search.toporec.com:80 list
            

ASN: 51167
26 events in 144 days
Leak size: 426.0 MB
Open ports: 5601
Indices: 336, document count: 3442392, size: 426.0 MB
Through Kibana endpoint
Found index zeebe-record_deployment_8.2.5_2024-05-12 with 4 documen...
Analysis helper :
                
estk --url=http://185.185.80.92:5601 list
            

ASN: 51167
42 events in 372 days
Leak size: 14.1 kB
Open ports: 5601
Indices: 2, document count: 3, size: 14.1 kB
Through Kibana endpoint
Found index .kibana with 2 documents (9.8 kB)
Found index read-me with 1 doc...
Analysis helper :
                
estk --url=http://161.97.71.226:5601 list
            

ASN: 51167
31 events in 144 days
Leak size: 8.6 MB
Open ports: 5601
Indices: 14, document count: 2126, size: 8.6 MB
Through Kibana endpoint
Found index sky_qos_log_info-20240326 with 157 documents (116.4 kB)
Found...
Analysis helper :
                
estk --url=http://167.86.115.5:5601 list
            

ASN: 51167
25 events in 421 days
Leak size: 202.3 MB
Open ports: 443
Certificate domains:
kibana.onlinealive.in
Indices: 13, document count: 96, size: 202.3 MB
Through Kibana endpoint
Found index casa with 0 documents (226 B)
Found index internal with 1 doc...
Analysis helper :
                
estk --url=https://kibana.onlinealive.in list
            

ASN: 51167
29 events in 507 days
Leak size: 3.9 MB
Open ports: 443
Certificate domains:
dashboard.dev.refilamer.com
pma.dev.refilamer.com
kibana.dev.refilamer.com
api.dev.refilamer.com
Indices: 33, document count: 4401, size: 3.9 MB
Through Kibana endpoint
Found index read_me with 1 documents (6.2 kB)
Found index fluentd-2024051...
Analysis helper :
                
estk --url=https://kibana.dev.refilamer.com list
            

ASN: 51167
24 events in 726 days
Leak size: 65.6 MB
Open ports: 8080
Indices: 14, document count: 57345, size: 65.6 MB
Through Kibana endpoint
Found index login_attempt_log with 731 documents (351.7 kB)
Found index...
Analysis helper :
                
estk --url=http://75.119.128.129:8080 list
            

ASN: 51167
28 events in 135 days
Leak size: 916.0 MB
Open ports: 5601
Indices: 6, document count: 3065091, size: 916.0 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (35.3 MB)
Found index ...
Analysis helper :
                
estk --url=http://38.242.156.138:5601 list
            

ASN: 51167
16 events in 37 days
Leak size: 970.3 MB
Open ports: 5601
Indices: 34, document count: 2489465, size: 970.3 MB
Through Kibana endpoint
Found index logstash-2024.06.02 with 218 documents (151.4 kB)
Found ...
Analysis helper :
                
estk --url=http://173.212.239.169:5601 list
            

ASN: 51167
36 events in 256 days
Leak size: 11.4 kB
Open ports: 9200
Indices: 2, document count: 2, size: 11.4 kB
Found index read-me with 1 documents (4.3 kB)
Found index .kibana_1 with 1 documents (7.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://80.241.217.137:9200 list
            

ASN: 51167
51 events in 484 days
Leak size: 76.2 MB
Open ports: 9200
Indices: 7, document count: 38957, size: 76.2 MB
Found index .geoip_databases with 40 documents (39.5 MB)
Found index n_general_folder_workspace ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qmheh2ukafmsa8y0hxj64lalddzxwj0sfaas7uu. Once paid please email dar0kmdb@tutanota.com with code: `aLEfI8` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://185.245.182.70:9200 list
            

ASN: 51167
63 events in 1098 days
Leak size: 11.4 kB
Open ports: 9200
Indices: 2, document count: 2, size: 11.4 kB
Found index read-me with 1 documents (4.3 kB)
Found index .kibana_1 with 1 documents (7.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://164.68.124.70:9200 list