+plugin:ElasticSearchOpenPlugin -l9fp:"436d217a42ab3a37d319f9432d44927e2d44927e2d44927e2d44927ef6a5dd03" -ip:"39.104.0.0/14" +country:"Norway" +asn:"34989"
Indices: 2, document count: 2, size: 9.7 kB
Found index read-me with 1 documents (5.1 kB)
Found index test with 1 documents (4.7 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `riDAZo` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://83.143.86.66:9200 list
Found by ElasticSearchOpenPlugin
Indices: 33, document count: 2149206, size: 1.1 GB
Found index jeecg-boot with 1 documents (4.8 kB)
Found index casa with 0 documents (283 B)
Fou...
Analysis helper :
estk --url=http://217.170.200.119:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 9.7 kB
Through Kibana endpoint
Found index read-me with 1 documents (5.1 kB)
Found index test with 1 documen...
Analysis helper :
estk --url=http://83.143.86.66:5601 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 386388, size: 3.8 GB
Found index .geoip_databases with 43 documents (42.8 MB)
Found index repo_head with 22 documents...
Ransom notes :
{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `eNO2CN` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
Analysis helper :
estk --url=http://217.170.201.103:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 5, size: 39.7 kB
Found index read_me with 1 documents (4.7 kB)
Found index .kibana with 2 documents (9.8 kB)
Found in...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14UCEfQG5vs7kZAbFrcZ7K4BCiEa48mdFu . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://217.170.205.95:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 5, size: 39.7 kB
Through Kibana endpoint
Found index read_me with 1 documents (4.7 kB)
Found index .kibana with 2 doc...
Analysis helper :
estk --url=http://217.170.205.95:5601 list
Found by ElasticSearchOpenPlugin