+plugin:KafkaOpenPlugin -l9fp:"43224224eeda9da960defeaa0efe442a0efe442a0efe442a0efe442ac94bd81d"
Indices: 10, document count: 806, size: 2.0 MB
Found index logs-2022.06.26 with 36 documents (269.6 kB)
Found index logs-2022.06.27 with 27 docum...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 15BdJyWiWRcNQY4xBuhJrmjqz7ZQD6zAcT . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://2.56.98.96:9200 list
Collections: 1, document count: 0, size: 0 B
Found collection READ_ME_TO_RECOVER_YOUR_DATA.README
Analysis helper :
echo 'show dbs' | mongo --host 47.106.86.94 --port 27017
Indices: 7, document count: 117, size: 220.5 MB
Found index .geoip_databases with 41 documents (43.2 MB)
Found index .apm-custom-link with 0 docu...
Analysis helper :
estk --url=http://47.97.207.16:9200 list
Found 6 files trough .DS_Store spidering:
/css
/favicon.ico
/fonts
/img
/index.html
/js
Redis is open
Indices: 5, document count: 399454, size: 115.8 MB
Found index idx_alert with 194203 documents (31.3 MB)
Found index read_me with 0 documents (81...
Analysis helper :
estk --url=http://47.113.191.163:9200 list
Indices: 13, document count: 298331, size: 2.0 GB
Through Kibana endpoint
Found index mgj_camera_server with 2560 documents (56.3 MB)
Found index...
Analysis helper :
estk --url=http://121.196.213.168:5601 list
NoAuth
Cluster info:
{"_nodes":{"total":1,"successful":1,"failed":0},"cluster_name":"docker-cluster","nodes":{"rzJukxToSemAdBrBLZ1WzA":{"name":"r...
Analysis helper :
estk --url=https://94.102.74.98:9200 list
Found Wordpress users (CVE-2017-5487):
User #1 alphabeta01
Name: alphabeta01
Url: https://test1.divinehealth.club
User #2 editor
Name: The Edit...
Found by KafkaOpenPlugin WpUserEnumHttp
Indices: 12, document count: 952576, size: 382.2 MB
Found index read_me with 1 documents (5.6 kB)
Found index solr with 1 documents (4.1 kB)
Foun...
Analysis helper :
estk --url=http://39.97.47.26:9200 list
Collections: 3, document count: 6, size: 1.2 kB
Found collection READ__ME_TO_RECOVER_YOUR_DATA.README with 1 documents (745 B)
Found collection ...
Analysis helper :
echo 'show dbs' | mongo --host 52.53.216.188 --port 27017
Indices: 6, document count: 7, size: 43.6 kB
Found index v2 with 1 documents (8.0 kB)
Found index api with 2 documents (11.9 kB)
Found index v1 w...
Analysis helper :
estk --url=http://119.45.187.98:9200 list
Found 4 files trough .DS_Store spidering:
/edomportal
/edomportal/attachments
/vendorportal
/vendorportal/components
Indices: 2, document count: 2, size: 9.3 kB
Through Kibana endpoint
Found index .kibana with 1 documents (4.5 kB)
Found index read_me with 1 docu...
Analysis helper :
estk --url=http://54.74.231.66:5601 list
Indices: 1, document count: 1, size: 5.5 kB
Found index read_me with 1 documents (5.5 kB)
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 14b57thKoPjmVVkh6HHLPz8g7fyBJ5SEcr . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://223.167.110.99:9200 list
Indices: 14, document count: 448865, size: 350.0 MB
Through Kibana endpoint
Found index test with 1 documents (3.3 kB)
Found index .apm-agent-con...
Analysis helper :
estk --url=http://101.200.82.243:5601 list
Indices: 329, document count: 3407555563, size: 1.4 TB
Found index el-dispatch_2022.06.20 with 30799 documents (5.6 MB)
Found index el-dispatch_2...
Analysis helper :
estk --url=http://221.228.80.164 list
Indices: 2, document count: 0, size: 2.8 kB
Found index device_ble with 0 documents (1.4 kB)
Found index device_cwis_record with 0 documents (1.4...
Analysis helper :
estk --url=http://113.108.62.58:9200 list
Indices: 3, document count: 1, size: 8.1 kB
Found index read_me with 1 documents (5.5 kB)
Found index energy_metrics with 0 documents (1.3 kB)
Fo...
Ransom notes :
{"@timestamp": "2099-11-15T13:12:00", "message": "All indexs has been dropped. But we backup all indexs. The only method of recoveribing database is to pay 0.021 BTC. Transfer to this BTC address 15BdJyWiWRcNQY4xBuhJrmjqz7ZQD6zAcT . You can buy bitcoin here, does not take much time to buy https://localbitcoins.com or https://buy.moonpay.io/ . After paying write to me in the mail with your DB IP: recmydata@onionmail.org and you will receive a link to download your database dump.\n"}
Analysis helper :
estk --url=http://173.249.10.240:9200 list
Found 2 files trough .DS_Store spidering:
/index.html
/static