+plugin:ElasticSearchOpenPlugin -ip:"49.232.0.0/14" -ip:"43.136.0.0/13" +events.leak.severity:"high" +net:"AMAZON-AES"
Indices: 2, document count: 20001, size: 6.0 MB
Through Kibana endpoint
Found index .ds-logs-generic-default-2024.02.13-000014 with 20000 documen...
Analysis helper :
estk --url=http://18.215.143.235:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 1, size: 5.5 kB
Through Kibana endpoint
Found index .ds-logs-generic-default-2023.05.17-000002 with 0 documents (225 ...
Analysis helper :
estk --url=http://18.234.31.96:5601 list
Found by ElasticSearchOpenPlugin
Indices: 11, document count: 3756, size: 11.9 MB
Found index casa with 0 documents (1.0 kB)
Found index auth with 1 documents (5.2 kB)
Found inde...
Analysis helper :
estk --url=https://54.144.141.249:10443 list
Found by ElasticSearchOpenPlugin
Indices: 304, document count: 720039, size: 10.5 GB
Through Kibana endpoint
Found index logstash-2023.09.02 with 6418 documents (89.0 MB)
Found i...
Analysis helper :
estk --url=http://44.204.150.159:5601 list
Found by ElasticSearchOpenPlugin
Indices: 49, document count: 6715724, size: 1.1 GB
Through Kibana endpoint
Found index logstash-2024.01.15 with 148300 documents (24.8 MB)
Found ...
Analysis helper :
estk --url=http://35.168.3.136:5601 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 12, size: 330.2 kB
Found index ohio_-devohiohealthwpenginecom-post-1 with 1 documents (25.7 kB)
Found index .kibana w...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://54.144.159.20 list
Found by ElasticSearchOpenPlugin
Indices: 41, document count: 14078523, size: 2.4 GB
Through Kibana endpoint
Found index logstash-2024.06.06 with 1 documents (98.5 MB)
Found inde...
Analysis helper :
estk --url=http://44.201.189.36:5601 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 5.3 kB
Through Kibana endpoint
Found index read-me with 1 documents (5.3 kB)
Analysis helper :
estk --url=http://54.234.36.147:5601 list
Found by ElasticSearchOpenPlugin
Indices: 15, document count: 88551683, size: 13.2 GB
Found index .kibana-event-log-7.9.3-000039 with 0 documents (226 B)
Found index test with 1 ...
Analysis helper :
estk --url=http://52.1.190.104:8983 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 5.1 kB
Found index read-me with 1 documents (5.1 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://3.213.225.48:9200 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 21791959, size: 10.8 GB
Found index .ds-filebeat-8.9.0-2024.01.22-000001 with 0 documents (247 B)
Found index .ds-fil...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.005 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+4s3cr@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5S3CR"}
Analysis helper :
estk --url=http://107.23.243.68:9200 list
Found by ElasticSearchOpenPlugin
Indices: 45, document count: 7152842, size: 3.9 GB
Found index oauth with 6 documents (29.0 kB)
Found index solr with 1 documents (4.1 kB)
Found ...
Analysis helper :
estk --url=https://34.239.112.247 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 3, size: 14.9 kB
Through Kibana endpoint
Found index .kibana with 1 documents (4.2 kB)
Found index read-me with 1 doc...
Analysis helper :
estk --url=http://34.238.241.22:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 20001, size: 6.0 MB
Found index .ds-logs-generic-default-2024.02.13-000014 with 20000 documents (6.0 MB)
Found index ...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.006 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+4obrh@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5OBRH"}
Analysis helper :
estk --url=http://18.215.143.235:9200 list
Found by ElasticSearchOpenPlugin
Indices: 10, document count: 139253, size: 235.0 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (32.5 MB)
Found index ...
Analysis helper :
estk --url=http://52.45.197.221:5601 list
Found by ElasticSearchOpenPlugin
Indices: 10, document count: 4622, size: 6.0 MB
Found index test_system.audit_article_master-1 with 1372 documents (328.3 kB)
Found index test_sy...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://18.235.139.225:9200 list
Found by ElasticSearchOpenPlugin
Indices: 8, document count: 139287871, size: 58.0 GB
Through Kibana endpoint
Found index kubernetes-2024.02.25 with 26173699 documents (10.8 GB)
...
Analysis helper :
estk --url=http://3.87.255.62:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 11.3 kB
Found index read-me with 1 documents (4.3 kB)
Found index .kibana_1 with 1 documents (7.1 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://44.194.164.177:9200 list
Found by ElasticSearchOpenPlugin
Indices: 32, document count: 1331311, size: 15.0 GB
Through Kibana endpoint
Found index logstash-2024.06.07 with 63933 documents (908.4 MB)
Found...
Analysis helper :
estk --url=http://3.229.184.98:5601 list
Found by ElasticSearchOpenPlugin
Indices: 9, document count: 35480578, size: 15.4 GB
Through Kibana endpoint
Found index apm-7.9.3-profile-000001 with 0 documents (208 B)
Found i...
Analysis helper :
estk --url=http://34.235.19.168:5601 list
Found by ElasticSearchOpenPlugin