+plugin:ElasticSearchOpenPlugin -ip:"124.220.0.0/14" +events.leak.severity:"medium" +asn:"8075"
Indices: 7, document count: 15637, size: 168.5 MB
Through Kibana endpoint
Found index .kibana_7.16.3_001 with 296 documents (2.5 MB)
Found index ...
Analysis helper :
estk --url=http://20.214.210.236:5601 list
Found by ElasticSearchOpenPlugin
Indices: 6, document count: 16, size: 80.4 kB
Through Kibana endpoint
Found index .kibana_task_manager_1 with 2 documents (22.3 kB)
Found index ....
Analysis helper :
estk --url=http://20.33.34.26:5601 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 4.5 kB
Found index read-me with 1 documents (4.5 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qmheh2ukafmsa8y0hxj64lalddzxwj0sfaas7uu. Once paid please email dar0kmdb@tutanota.com with code: `aLEfI8` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://20.222.206.52:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 10.7 kB
Found index .kibana_1 with 1 documents (6.6 kB)
Found index read-me with 1 documents (4.1 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://20.106.132.29:9200 list
Found by ElasticSearchOpenPlugin
Indices: 5, document count: 34, size: 32.1 MB
Found index .geoip_databases with 33 documents (32.1 MB)
Found index .ds-filebeat-8.3.2-2024.05.18-...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4au7h@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5AU7H"}
Analysis helper :
estk --url=http://40.80.87.244:9200 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 4, size: 21.0 kB
Found index .kibana with 2 documents (9.8 kB)
Found index read-me with 1 documents (4.2 kB)
Found in...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://20.193.245.165:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 3, size: 13.9 kB
Found index read_me with 1 documents (4.8 kB)
Found index .kibana with 2 documents (9.1 kB)
Ransom notes :
{"text":"Your DB has been back up. The only way of recovery is you must send 0.0057 BTC to 127ZBzXyLJFc7ShMmzkYFDhSiXXSnR8Jfr. Once paid please email databaserestore32@onionmail.org with code: `omoRmq` and we will recover your database. please read https://cutmyurl.com/3caF8EkT for more information"}
Analysis helper :
estk --url=http://20.39.52.170:9200 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 4.3 kB
Found index read-me with 1 documents (4.3 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://20.127.236.242:9209 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 36, size: 32.1 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (32.1 MB)
Found index .kiban...
Analysis helper :
estk --url=http://20.76.30.122:5601 list
Found by ElasticSearchOpenPlugin
Indices: 13, document count: 1249, size: 67.0 MB
Found index bankone-webhook-development-2024.01.23 with 155 documents (459.2 kB)
Found index ban...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://52.170.1.4:9200 list
Found by ElasticSearchOpenPlugin
Indices: 25, document count: 365077, size: 102.1 MB
Found index applogs-appinventiv-skillfy-contentcreator-api-production-2024-05-15 with 266623 ...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4gnkj@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5GNKJ"}
Analysis helper :
estk --url=http://20.198.108.168:9200 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 5.0 kB
Found index read_me with 1 documents (5.0 kB)
Ransom notes :
{"text":"Your DB has been back up. The only way of recovery is you must send 0.0057 BTC to 127ZBzXyLJFc7ShMmzkYFDhSiXXSnR8Jfr. Once paid please email databaserestore32@onionmail.org with code: `omoRmq` and we will recover your database. please read https://cutmyurl.com/3caF8EkT for more information"}
Analysis helper :
estk --url=http://168.63.150.216:9200 list
Found by ElasticSearchOpenPlugin
Indices: 7, document count: 5767, size: 214.9 MB
Through Kibana endpoint
Found index .geoip_databases with 41 documents (40.3 MB)
Found index .ap...
Analysis helper :
estk --url=http://20.31.9.5:5601 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 11, size: 46.0 kB
Found index read_me with 1 documents (5.1 kB)
Found index cgi-bin with 0 documents (283 B)
Found in...
Ransom notes :
{"text":"Your DB has been back up. The only way of recovery is you must send 0.002 BTC to 127ZBzXyLJFc7ShMmzkYFDhSiXXSnR8Jfr. Once paid please email databaserestore32@onionmail.org with code: `omoRmq` and we will recover your database. please read https://cutmyurl.com/3caF8EkT for more information"}
Analysis helper :
estk --url=http://191.239.178.39 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 5, size: 28.4 kB
Through Kibana endpoint
Found index .kibana with 4 documents (24.1 kB)
Found index read-me-to-recove...
Analysis helper :
estk --url=http://20.229.26.179:5601 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 11, size: 46.0 kB
Found index read_me with 1 documents (5.1 kB)
Found index cgi-bin with 0 documents (283 B)
Found in...
Ransom notes :
{"text":"Your DB has been back up. The only way of recovery is you must send 0.002 BTC to 127ZBzXyLJFc7ShMmzkYFDhSiXXSnR8Jfr. Once paid please email databaserestore32@onionmail.org with code: `omoRmq` and we will recover your database. please read https://cutmyurl.com/3caF8EkT for more information"}
Analysis helper :
estk --url=http://23.100.108.84:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 34, size: 35.4 MB
Found index .geoip_databases with 33 documents (35.4 MB)
Found index read_me with 1 documents (4.5 ...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4gqke@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5GQKE"}
Analysis helper :
estk --url=http://4.233.95.186:9200 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 36, size: 35.3 MB
Found index .geoip_databases with 33 documents (35.3 MB)
Found index translations_bonee_translation...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.0057 BTC to 1tpwVPxbRNtQuzKonhzdEsJL8n562uwAr In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data05)After paying send mail to us: rambler+4i7hk@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5I7HK"}
Analysis helper :
estk --url=http://51.105.192.210:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 0, size: 1.6 kB
Found index .kibana_1 with 0 documents (810 B)
Found index read-me with 0 documents (810 B)
Analysis helper :
estk --url=http://23.96.12.8:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 12.7 kB
Found index read-me with 1 documents (5.1 kB)
Found index .kibana_1 with 1 documents (7.6 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://51.12.210.204:9200 list
Found by ElasticSearchOpenPlugin