By searching for results, you agree with our Terms of service
Found 893 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" -net:"AMAZON-AES" +ip:"120.24.0.0/14"

Looking for more results ? Register a free account

Countries

  • China 893

Sources

  • ElasticSearchOpenPlugin 893

Network

  • Hangzhou Alibaba Advertising Co.,Ltd. 893

IP Ranges

  • 120.24.0.0/14 893

ASN: 37963
28 events in 127 days
Leak size: 272.9 kB
Open ports: 80
Indices: 4, document count: 201, size: 272.9 kB
Found index cgi-bin with 0 documents (208 B)
Found index client with 1 documents (4.6 kB)
Found i...
Analysis helper :
                
estk --url=http://120.26.195.55 list
            

ASN: 37963
58 events in 467 days
Leak size: 10.9 kB
Open ports: 9201
Indices: 2, document count: 2, size: 10.9 kB
Found index internal with 1 documents (6.6 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.25.175.130:9201 list
            

ASN: 37963
35 events in 878 days
Leak size: 42.0 MB
Open ports: 5601
Indices: 131, document count: 215889, size: 42.0 MB
Through Kibana endpoint
Found index application-2022.11.02 with 1718 documents (288.4 kB)
Fou...
Analysis helper :
                
estk --url=http://120.25.175.95:5601 list
            

ASN: 37963
64 events in 531 days
Leak size: 35.9 MB
Open ports: 5601
Indices: 4, document count: 37, size: 35.9 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (35.8 MB)
Found index es_tes...
Analysis helper :
                
estk --url=http://120.25.210.104:5601 list
            

ASN: 37963
43 events in 275 days
Leak size: 217.0 MB
Open ports: 5601
Indices: 10, document count: 9662, size: 217.0 MB
Through Kibana endpoint
Found index .geoip_databases with 40 documents (42.6 MB)
Found index in...
Analysis helper :
                
estk --url=http://120.25.125.220:5601 list
            

ASN: 37963
62 events in 879 days
Leak size: 7.7 kB
Open ports: 9200
Indices: 2, document count: 2, size: 7.7 kB
Found index test with 1 documents (3.7 kB)
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.27.129.167:9200 list
            

ASN: 37963
43 events in 743 days
Leak size: 1.1 GB
Open ports: 9200
Indices: 61, document count: 3423474, size: 1.1 GB
Found index raw_carbon_dioxide with 0 documents (283 B)
Found index mnt_vibrating_wire with 22...
Ransom notes :

{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14UCEfQG5vs7kZAbFrcZ7K4BCiEa48mdFu . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
            
Analysis helper :
                
estk --url=http://120.24.172.238:9200 list
            

ASN: 37963
17 events in 39 days
Leak size: 113.1 MB
Open ports: 5601
Indices: 7, document count: 70, size: 113.1 MB
Through Kibana endpoint
Found index .kibana_7.12.1_001 with 44 documents (2.2 MB)
Found index .apm...
Analysis helper :
                
estk --url=http://120.26.86.172:5601 list
            

ASN: 37963
14 events in 37 days
Leak size: 143.9 MB
Open ports: 5601
Indices: 7, document count: 728, size: 143.9 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (32.1 MB)
Found index lili...
Analysis helper :
                
estk --url=http://120.27.108.122:5601 list
            

ASN: 37963
17 events in 38 days
Leak size: 102.9 MB
Open ports: 5601
Indices: 23, document count: 14419, size: 102.9 MB
Through Kibana endpoint
Found index kye_users with 5 documents (5.7 kB)
Found index users_obje...
Analysis helper :
                
estk --url=http://120.24.179.236:5601 list
            

ASN: 37963
17 events in 38 days
Leak size: 113.0 MB
Open ports: 5601
Indices: 10, document count: 246, size: 113.0 MB
Through Kibana endpoint
Found index .kibana_7.12.1_001 with 31 documents (2.2 MB)
Found index te...
Analysis helper :
                
estk --url=http://120.26.121.99:5601 list
            

ASN: 37963
34 events in 487 days
Leak size: 8.3 kB
Open ports: 9200
Indices: 2, document count: 2, size: 8.3 kB
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.25.160.20:9200 list
            

ASN: 37963
19 events in 170 days
Leak size: 66.9 kB
Open ports: 9200
Indices: 175, document count: 1, size: 66.9 kB
Found index sw_metrics-doubleavg-20240201 with 0 documents (283 B)
Found index sw_metrics-histogra...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.26.11.68:9200 list
            

ASN: 37963
38 events in 273 days
Leak size: 31.1 kB
Open ports: 9201
Indices: 2, document count: 5, size: 31.1 kB
Found index .kibana with 4 documents (26.9 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.26.102.164:9201 list
            

ASN: 37963
37 events in 330 days
Leak size: 23.5 MB
Open ports: 9200
Indices: 12, document count: 356, size: 23.5 MB
Found index .security-7 with 46 documents (196.5 kB)
Found index dup-videobeats-ugc-content with ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.27.139.137:9200 list
            

ASN: 37963
31 events in 248 days
Leak size: 12.4 MB
Open ports: 9200
Indices: 8, document count: 4005, size: 12.4 MB
Found index product with 3951 documents (1.4 MB)
Found index .kibana-event-log-7.9.1-000002 with ...
Analysis helper :
                
estk --url=http://120.27.23.41:9200 list
            

ASN: 37963
20 events in 142 days
Leak size: 4.0 kB
Open ports: 9200
Indices: 1, document count: 1, size: 4.0 kB
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.26.194.119:9200 list
            

ASN: 37963
49 events in 693 days
Leak size: 7.7 kB
Open ports: 9200
Indices: 2, document count: 2, size: 7.7 kB
Found index read-me with 1 documents (4.1 kB)
Found index test with 1 documents (3.6 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.24.244.152:9200 list
            

ASN: 37963
43 events in 287 days
Leak size: 11.4 kB
Open ports: 9200
Indices: 3, document count: 3, size: 11.4 kB
Found index website with 1 documents (3.7 kB)
Found index test with 1 documents (3.6 kB)
Found index...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.24.93.80:9200 list
            

ASN: 37963
32 events in 396 days
Leak size: 263.9 MB
Open ports: 9200
Indices: 6, document count: 43633, size: 263.9 MB
Found index .geoip_databases with 42 documents (42.2 MB)
Found index read_me with 1 documents (...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.009 BTC to 1BKR6oEHijewdPguozk6J7rQoa5tfdDZws In 48 hours, your data will be publicly disclosed and deleted. (more information: go to https://cutt.ly/rambler5)After paying send mail to us: rambler+5j9s8@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5J9S8"}
            
Analysis helper :
                
estk --url=http://120.25.150.32:9200 list