By searching for results, you agree with our Terms of service
Found 1295 results for
+plugin:ElasticSearchOpenPlugin -ip:"49.232.0.0/14" -ip:"43.136.0.0/13" +events.leak.severity:"high" +ip:"120.76.0.0/14"

Looking for more results ? Register a free account

Countries

  • China 1295

Sources

  • ElasticSearchOpenPlugin 1295

Network

  • Hangzhou Alibaba Advertising Co.,Ltd. 1295

IP Ranges

  • 120.76.0.0/14 1295

ASN: 37963
15 events in 419 days
Leak size: 311.3 MB
Open ports: 443
Certificate domains:
api-test.erp.chensheng137137.cn
admin-test.erp.chensheng137137.cn
devops-mgr.chensheng137137.cn
file.erp.chensheng137137.cn
m-test.erp.chensheng137137.cn
es.chensheng137137.cn
file-test.erp.chensheng137137.cn
knitt.erp.chensheng137137.cn
m.erp.chensheng137137.cn
nacos.chensheng137137.cn
update-test.erp.chensheng137137.cn
update.erp.chensheng137137.cn
admin.erp.chensheng137137.cn
api.erp.chensheng137137.cn
knitt-test.erp.chensheng137137.cn
Indices: 600, document count: 1374672, size: 311.3 MB
Found index digital_v2_order_20_jrkqswqm_prod with 0 documents (208 B)
Found index digital_...
Analysis helper :
                
estk --url=https://es.chensheng137137.cn list
            

ASN: 37963
13 events in 159 days
Leak size: 3.1 MB
Open ports: 9200
Indices: 2, document count: 5638, size: 3.1 MB
Found index jht with 5637 documents (3.1 MB)
Found index read-me with 1 documents (4.1 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.77.25.69:9200 list
            

ASN: 37963
16 events in 384 days
Leak size: 180.5 GB
Open ports: 9200
Indices: 39, document count: 411163870, size: 180.5 GB
Found index device_message_20240523 with 8533183 documents (6.9 GB)
Found index device_mes...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4i1ae@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5I1AE"}
            
Analysis helper :
                
estk --url=http://120.76.96.225:9200 list
            

ASN: 37963
12 events in 309 days
Leak size: 101.0 kB
Open ports: 9200
Indices: 8, document count: 187, size: 101.0 kB
Found index casa with 0 documents (208 B)
Found index test with 2 documents (7.7 kB)
Found index ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.94.78:9200 list
            

ASN: 37963
13 events in 407 days
Leak size: 36.0 MB
Open ports: 9200
Indices: 3, document count: 46, size: 36.0 MB
Found index .geoip_databases with 34 documents (36.0 MB)
Found index post with 11 documents (20.6 k...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4pc2@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5PC2"}
            
Analysis helper :
                
estk --url=http://120.76.139.165:9200 list
            

ASN: 37963
23 events in 179 days
Leak size: 90.5 kB
Open ports: 5601
Indices: 3, document count: 5, size: 90.5 kB
Through Kibana endpoint
Found index .kibana with 2 documents (9.0 kB)
Found index read-me with 1 doc...
Analysis helper :
                
estk --url=http://120.77.202.117:5601 list
            

ASN: 37963
42 events in 550 days
Leak size: 8.3 kB
Open ports: 5601
Indices: 2, document count: 2, size: 8.3 kB
Through Kibana endpoint
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documen...
Analysis helper :
                
estk --url=http://120.77.59.61:5601 list
            

ASN: 37963
18 events in 179 days
Leak size: 248.3 kB
Open ports: 9200
Indices: 6, document count: 93, size: 248.3 kB
Found index b2c-single with 64 documents (149.1 kB)
Found index .apm-custom-link with 0 documents ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.171.244:9200 list
            

ASN: 37963
33 events in 463 days
Leak size: 2.6 MB
Open ports: 9200
Indices: 16, document count: 92, size: 2.6 MB
Found index home_page_search_product with 21 documents (40.8 kB)
Found index tbl_food_store with 0 ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.77.181.203:9200 list
            

ASN: 37963
14 events in 160 days
Leak size: 151.3 kB
Open ports: 9200
Indices: 6, document count: 285, size: 151.3 kB
Found index jaeger-span-2024-04-03 with 20 documents (12.1 kB)
Found index website with 1 documen...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.79.202.249:9200 list
            

ASN: 37963
46 events in 1092 days
Leak size: 22.2 MB
Open ports: 9200
Indices: 12, document count: 23, size: 22.2 MB
Found index house_case_picture with 1 documents (7.9 kB)
Found index test with 1 documents (4.0 kB...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.78.217.210:9200 list
            

ASN: 37963
33 events in 468 days
Leak size: 4.0 kB
Open ports: 9200
Indices: 1, document count: 1, size: 4.0 kB
Found index read-me with 1 documents (4.0 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.79.41.231:9200 list
            

ASN: 37963
7 events in 30 days
Leak size: 56.7 MB
Open ports: 5601
Indices: 10, document count: 3378, size: 56.7 MB
Through Kibana endpoint
Found index order-000001 with 0 documents (44.2 MB)
Found index order-00...
Analysis helper :
                
estk --url=http://120.79.217.174:5601 list
            

ASN: 37963
38 events in 457 days
Leak size: 8.3 kB
Open ports: 9200
Indices: 2, document count: 2, size: 8.3 kB
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.77.59.61:9200 list
            

ASN: 37963
57 events in 1066 days
Leak size: 31.0 GB
Open ports: 9200
Indices: 46, document count: 33293442, size: 31.0 GB
Found index car_parts_swap_es with 0 documents (283 B)
Found index user_query_date_log_es wi...
Ransom notes :

{"took":0,"timed_out":false,"_shards":{"total":5,"successful":5,"skipped":0,"failed":0},"hits":{"total":1,"max_score":1.0,"hits":[{"_index":"read-me","_type":"_doc","_id":"1MacJooBY9kUd17URRg3","_score":1.0,"_source":{"message": "We deleted all databases, but download a copy to our server. The only way of recovery is you must send 0.015 BTC to 1BAW8LmC6bEg1Sjsq1dWpqezVT7EvAqQS9 You have until 48 hours to pay or data will be inaccesible. Once paid email Backups@onionmail.org with code: 'PT53hm' and we will recover your database. please read https://paste.sh/IOMBsAEl#XzwHcDCsND_DJkEuWMkeqlao for more information"}}]}}
            
Analysis helper :
                
estk --url=http://120.78.91.252:9200 list
            

ASN: 37963
19 events in 227 days
Leak size: 33.6 MB
Open ports: 9200
Indices: 24, document count: 975, size: 33.6 MB
Found index application-2024.04.20 with 114 documents (69.5 kB)
Found index application-2024.04.3...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4uxqk@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5UXQK"}
            
Analysis helper :
                
estk --url=http://120.77.169.45:9200 list
            

ASN: 37963
26 events in 381 days
Leak size: 275.4 MB
Open ports: 9200
Indices: 14, document count: 10268, size: 275.4 MB
Found index [erp-log]-2024.05 with 122 documents (289.4 kB)
Found index test with 3 documents ...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://120.76.197.184:9200 list
            

ASN: 37963
19 events in 160 days
Leak size: 65.6 MB
Open ports: 5601
Indices: 2, document count: 35, size: 65.6 MB
Through Kibana endpoint
Found index .geoip_databases with 34 documents (65.6 MB)
Found index read_m...
Analysis helper :
                
estk --url=http://120.79.200.24:5601 list
            

ASN: 37963
68 events in 1057 days
Leak size: 810.7 MB
Open ports: 5601
Indices: 17, document count: 1518016, size: 810.7 MB
Through Kibana endpoint
Found index .monitoring-es-6-2024.05.21 with 211094 documents (108.9...
Analysis helper :
                
estk --url=http://120.76.58.60:5601 list
            

ASN: 37963
48 events in 614 days
Leak size: 961.4 MB
Open ports: 5601
Indices: 24, document count: 1826844, size: 961.4 MB
Through Kibana endpoint
Found index casa with 0 documents (1.3 kB)
Found index .monitoring-e...
Analysis helper :
                
estk --url=http://120.76.55.24:5601 list