By searching for results, you agree with our Terms of service
Found 212 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" -ip:"81.68.0.0/14" +asn:"12876"

Looking for more results ? Register a free account

Countries

  • France 206
  • Poland 3
  • Saudi Arabia 3

Sources

  • ElasticSearchOpenPlugin 212

Network

  • Online S.a.s. 167
  • Scaleway S.a.s. 45

IP Ranges

  • 51.158.0.0/15 66
  • 51.15.0.0/16 50
  • 163.172.0.0/16 45
  • 195.154.0.0/16 13
  • 212.83.128.0/18 12
  • 62.210.0.0/16 9
  • 212.47.224.0/19 5
  • 212.129.0.0/18 4
  • 151.115.0.0/17 3
  • 62.210.128.0/17 2

ASN: 12876
74 events in 207 days
Leak size: 29.3 MB
Open ports: 443
Certificate domains:
nb-kibana.dev0.pandor.cloud
Indices: 9, document count: 32254, size: 29.3 MB
Through Kibana endpoint
Found index monstache.stats.2024-06-17 with 1322 documents (118.7 kB)
Fo...
Analysis helper :
                
estk --url=https://nb-kibana.dev0.pandor.cloud list
            

ASN: 12876
115 events in 566 days
Leak size: 553.2 kB
Open ports: 443
Certificate domains:
es.jobypepper.com
Indices: 24, document count: 86, size: 553.2 kB
Found index jeecg-boot with 5 documents (34.3 kB)
Found index casa with 0 documents (208 B)
Found...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://es.jobypepper.com list
            

ASN: 12876
87 events in 245 days
Leak size: 77.4 GB
Open ports: 5601
Indices: 7, document count: 115655192, size: 77.4 GB
Through Kibana endpoint
Found index keywords-es_es with 7404706 documents (4.2 GB)
Found ind...
Analysis helper :
                
estk --url=http://163.172.103.228:5601 list
            

ASN: 12876
108 events in 440 days
Leak size: 180.3 kB
Open ports: 9200
Indices: 7, document count: 83, size: 180.3 kB
Found index formations with 10 documents (45.6 kB)
Found index read-me with 1 documents (4.3 kB)
F...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://212.47.228.248:9200 list
            

ASN: 12876
97 events in 384 days
Leak size: 77.2 MB
Open ports: 9200
Indices: 2, document count: 79780, size: 77.2 MB
Found index qdoc_3433850698-test with 79779 documents (77.2 MB)
Found index read_me with 1 docum...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4z06v@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5Z06V"}
            
Analysis helper :
                
estk --url=http://51.15.183.81:9200 list
            

ASN: 12876
80 events in 315 days
Leak size: 38.2 MB
Open ports: 9200
Indices: 3, document count: 40, size: 38.2 MB
Found index .geoip_databases with 38 documents (38.2 MB)
Found index internal with 1 documents (6.7...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4hwxs@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5HWXS"}
            
Analysis helper :
                
estk --url=http://51.15.185.29:9200 list
            

ASN: 12876
149 events in 1183 days
Open ports: 9200
Indices: 17, document count: 0, size: 0 B
Found index .monitoring-es-6-2024.07.30 with  documents ()
Found index .monitoring-es-6-2024.08.03 with...
Analysis helper :
                
estk --url=http://62.4.5.41:9200 list
            

ASN: 12876
123 events in 776 days
Leak size: 43.2 MB
Open ports: 9200
Indices: 7, document count: 33532, size: 43.2 MB
Found index magento2_product_4_v11 with 8382 documents (10.5 MB)
Found index .geoip_databases wi...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4w7eq@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5W7EQ"}
            
Analysis helper :
                
estk --url=http://163.172.76.161:9200 list
            

ASN: 12876
138 events in 1194 days
Leak size: 2.0 MB
Open ports: 9200
Indices: 3, document count: 1372, size: 2.0 MB
Found index videos with 53 documents (57.5 kB)
Found index readme with 1 documents (4.5 kB)
Found ...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.01 BTC. Transfer to this BTC address 1L7zgtwkCQA4xLNDwtcYmnVkJs1zYR5VKF . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: mrsec@cock.li and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://51.15.118.255:9200 list
            

ASN: 12876
131 events in 1068 days
Leak size: 52.5 MB
Open ports: 9200
Indices: 12, document count: 31082, size: 52.5 MB
Found index burda_product_7_v5 with 1758 documents (2.2 MB)
Found index burda_product_6_v5 with...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://51.15.185.121:9200 list
            

ASN: 12876
162 events in 1212 days
Leak size: 553.2 kB
Open ports: 443
Indices: 24, document count: 86, size: 553.2 kB
Found index jeecg-boot with 5 documents (34.3 kB)
Found index casa with 0 documents (208 B)
Found...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://163.172.191.45:443 list
            

ASN: 12876
80 events in 1040 days
Leak size: 42.1 MB
Open ports: 8080
Indices: 18, document count: 70, size: 42.1 MB
Found index server with 1 documents (5.3 kB)
Found index a with 0 documents (208 B)
Found index in...
Analysis helper :
                
estk --url=http://212.83.175.210:8080 list
            

ASN: 12876
96 events in 439 days
Leak size: 33.7 MB
Open ports: 9200
Indices: 4, document count: 237, size: 33.7 MB
Found index .geoip_databases with 33 documents (32.5 MB)
Found index internal with 1 documents (6....
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+42k66@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 52K66"}
            
Analysis helper :
                
estk --url=http://62.210.200.81:9200 list
            

ASN: 12876
130 events in 857 days
Leak size: 602.1 MB
Open ports: 9200
Indices: 7, document count: 34318, size: 602.1 MB
Found index recette_research_compagnons with 173 documents (251.3 kB)
Found index readme with 1...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.01 BTC. Transfer to this BTC address 1L7zgtwkCQA4xLNDwtcYmnVkJs1zYR5VKF . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: mrsec@cock.li and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://163.172.140.88:9200 list
            

ASN: 12876
98 events in 397 days
Leak size: 890.5 kB
Open ports: 9207
Indices: 4, document count: 1106, size: 890.5 kB
Found index elasticsearch_index_datawebgmi_elastic_index_preprod with 188 documents (81.1 kB)
Fo...
Analysis helper :
                
estk --url=http://51.159.109.89:9207 list
            

ASN: 12876
91 events in 449 days
Leak size: 14.0 kB
Open ports: 9200
Indices: 5, document count: 2, size: 14.0 kB
Found index gl-events_0 with 0 documents (832 B)
Found index graylog_0 with 0 documents (832 B)
Foun...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://212.83.166.247:9200 list
            

ASN: 12876
79 events in 300 days
Leak size: 3.8 MB
Open ports: 9200
Indices: 2, document count: 3112, size: 3.8 MB
Found index read_me with 1 documents (5.3 kB)
Found index magento2_product_1_v4056 with 3111 docum...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+43yla@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 53YLA"}
            
Analysis helper :
                
estk --url=http://163.172.178.145:9200 list
            

ASN: 12876
115 events in 908 days
Leak size: 596.5 MB
Open ports: 9200
Indices: 8, document count: 30023, size: 596.5 MB
Found index dev_event_compagnons with 501 documents (2.0 MB)
Found index dev_book_compagnons wi...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://51.15.137.224:9200 list
            

ASN: 12876
121 events in 485 days
Leak size: 7.8 GB
Open ports: 5601
Indices: 720, document count: 41527438, size: 7.8 GB
Through Kibana endpoint
Found index logstash-2024.09.01 with 1794 documents (1.0 MB)
Found i...
Analysis helper :
                
estk --url=http://51.158.131.17:5601 list
            

ASN: 12876
107 events in 600 days
Leak size: 12.3 kB
Open ports: 9200
Indices: 2, document count: 2, size: 12.3 kB
Found index read-me with 1 documents (4.9 kB)
Found index .kibana_1 with 1 documents (7.4 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://195.154.81.222:9200 list