+plugin:ElasticSearchOpenPlugin -ip:"49.232.0.0/14" -ip:"43.136.0.0/13" +events.leak.severity:"high" +ip:"120.76.0.0/14"
Indices: 600, document count: 1374672, size: 311.3 MB
Found index digital_v2_order_20_jrkqswqm_prod with 0 documents (208 B)
Found index digital_...
Analysis helper :
estk --url=https://es.chensheng137137.cn list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 5638, size: 3.1 MB
Found index jht with 5637 documents (3.1 MB)
Found index read-me with 1 documents (4.1 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.77.25.69:9200 list
Found by ElasticSearchOpenPlugin
Indices: 39, document count: 411163870, size: 180.5 GB
Found index device_message_20240523 with 8533183 documents (6.9 GB)
Found index device_mes...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4i1ae@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5I1AE"}
Analysis helper :
estk --url=http://120.76.96.225:9200 list
Found by ElasticSearchOpenPlugin
Indices: 8, document count: 187, size: 101.0 kB
Found index casa with 0 documents (208 B)
Found index test with 2 documents (7.7 kB)
Found index ...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.78.94.78:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 46, size: 36.0 MB
Found index .geoip_databases with 34 documents (36.0 MB)
Found index post with 11 documents (20.6 k...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4pc2@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5PC2"}
Analysis helper :
estk --url=http://120.76.139.165:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 5, size: 90.5 kB
Through Kibana endpoint
Found index .kibana with 2 documents (9.0 kB)
Found index read-me with 1 doc...
Analysis helper :
estk --url=http://120.77.202.117:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 8.3 kB
Through Kibana endpoint
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documen...
Analysis helper :
estk --url=http://120.77.59.61:5601 list
Found by ElasticSearchOpenPlugin
Indices: 6, document count: 93, size: 248.3 kB
Found index b2c-single with 64 documents (149.1 kB)
Found index .apm-custom-link with 0 documents ...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.78.171.244:9200 list
Found by ElasticSearchOpenPlugin
Indices: 16, document count: 92, size: 2.6 MB
Found index home_page_search_product with 21 documents (40.8 kB)
Found index tbl_food_store with 0 ...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.77.181.203:9200 list
Found by ElasticSearchOpenPlugin
Indices: 6, document count: 285, size: 151.3 kB
Found index jaeger-span-2024-04-03 with 20 documents (12.1 kB)
Found index website with 1 documen...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.79.202.249:9200 list
Found by ElasticSearchOpenPlugin
Indices: 12, document count: 23, size: 22.2 MB
Found index house_case_picture with 1 documents (7.9 kB)
Found index test with 1 documents (4.0 kB...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.78.217.210:9200 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 4.0 kB
Found index read-me with 1 documents (4.0 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.79.41.231:9200 list
Found by ElasticSearchOpenPlugin
Indices: 10, document count: 3378, size: 56.7 MB
Through Kibana endpoint
Found index order-000001 with 0 documents (44.2 MB)
Found index order-00...
Analysis helper :
estk --url=http://120.79.217.174:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 8.3 kB
Found index test with 1 documents (4.0 kB)
Found index read-me with 1 documents (4.3 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.77.59.61:9200 list
Found by ElasticSearchOpenPlugin
Indices: 46, document count: 33293442, size: 31.0 GB
Found index car_parts_swap_es with 0 documents (283 B)
Found index user_query_date_log_es wi...
Ransom notes :
{"took":0,"timed_out":false,"_shards":{"total":5,"successful":5,"skipped":0,"failed":0},"hits":{"total":1,"max_score":1.0,"hits":[{"_index":"read-me","_type":"_doc","_id":"1MacJooBY9kUd17URRg3","_score":1.0,"_source":{"message": "We deleted all databases, but download a copy to our server. The only way of recovery is you must send 0.015 BTC to 1BAW8LmC6bEg1Sjsq1dWpqezVT7EvAqQS9 You have until 48 hours to pay or data will be inaccesible. Once paid email Backups@onionmail.org with code: 'PT53hm' and we will recover your database. please read https://paste.sh/IOMBsAEl#XzwHcDCsND_DJkEuWMkeqlao for more information"}}]}}
Analysis helper :
estk --url=http://120.78.91.252:9200 list
Found by ElasticSearchOpenPlugin
Indices: 24, document count: 975, size: 33.6 MB
Found index application-2024.04.20 with 114 documents (69.5 kB)
Found index application-2024.04.3...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4uxqk@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5UXQK"}
Analysis helper :
estk --url=http://120.77.169.45:9200 list
Found by ElasticSearchOpenPlugin
Indices: 14, document count: 10268, size: 275.4 MB
Found index [erp-log]-2024.05 with 122 documents (289.4 kB)
Found index test with 3 documents ...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://120.76.197.184:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 35, size: 65.6 MB
Through Kibana endpoint
Found index .geoip_databases with 34 documents (65.6 MB)
Found index read_m...
Analysis helper :
estk --url=http://120.79.200.24:5601 list
Found by ElasticSearchOpenPlugin
Indices: 17, document count: 1518016, size: 810.7 MB
Through Kibana endpoint
Found index .monitoring-es-6-2024.05.21 with 211094 documents (108.9...
Analysis helper :
estk --url=http://120.76.58.60:5601 list
Found by ElasticSearchOpenPlugin
Indices: 24, document count: 1826844, size: 961.4 MB
Through Kibana endpoint
Found index casa with 0 documents (1.3 kB)
Found index .monitoring-e...
Analysis helper :
estk --url=http://120.76.55.24:5601 list
Found by ElasticSearchOpenPlugin