By searching for results, you agree with our Terms of service
Found 3 results for
+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" -net:"MICROSOFT-CORP-MSN-AS-BLOCK" +jarm:"29d29d15d29d29d21c42d42d000000b7cc5a312b95f81625a914b21964a66e"

Looking for more results ? Register a free account

Countries

  • The Netherlands 2
  • France 1

Sources

  • ElasticSearchOpenPlugin 3

Network

  • Signet B.V. 2
  • OVH SAS 1

IP Ranges

  • 136.144.128.0/17 2
  • 178.32.0.0/15 1

ASN: 16276
54 events in 304 days
Leak size: 1.9 MB
Open ports: 443
Certificate domains:
elastic.toolynk-lab.com
Indices: 7, document count: 758, size: 1.9 MB
Found index btobturk with 199 documents (144.4 kB)
Found index recrutemoi with 26 documents (176.8 ...
Analysis helper :
                
estk --url=https://elastic.toolynk-lab.com list
            

ASN: 20857
31 events in 435 days
Leak size: 39.5 MB
Open ports: 443
Certificate domains:
best4mage-demo.com
webmail.best4mage-demo.com
www.best4mage-demo.com
Indices: 10, document count: 230, size: 39.5 MB
Found index .geoip_databases with 39 documents (38.8 MB)
Found index actuator with 2 documents (1...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qmheh2ukafmsa8y0hxj64lalddzxwj0sfaas7uu. Once paid please email dar0kmdb@tutanota.com with code: `aLEfI8` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://best4mage-demo.com list
            

ASN: 20857
30 events in 435 days
Leak size: 39.5 MB
Open ports: 443
Certificate domains:
www.best4mage-demo.com
best4mage-demo.com
webmail.best4mage-demo.com
Indices: 10, document count: 230, size: 39.5 MB
Found index .geoip_databases with 39 documents (38.8 MB)
Found index actuator with 2 documents (1...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qmheh2ukafmsa8y0hxj64lalddzxwj0sfaas7uu. Once paid please email dar0kmdb@tutanota.com with code: `aLEfI8` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=https://www.best4mage-demo.com list