+plugin:ElasticSearchOpenPlugin -ip:"49.232.0.0/14" -ip:"43.136.0.0/13" +events.leak.severity:"high" +net:"AMAZON-AES"
Indices: 9, document count: 35480578, size: 15.4 GB
Through Kibana endpoint
Found index apm-7.9.3-profile-000001 with 0 documents (208 B)
Found i...
Analysis helper :
estk --url=http://34.235.19.168:5601 list
Found by ElasticSearchOpenPlugin
Indices: 3, document count: 147158, size: 83.4 MB
Found index groups with 19 documents (70.2 kB)
Found index students with 147138 documents (83.3...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://44.194.81.189 list
Found by ElasticSearchOpenPlugin
Indices: 32, document count: 1845029, size: 22.2 GB
Through Kibana endpoint
Found index logstash-2024.06.07 with 63933 documents (908.4 MB)
Found...
Analysis helper :
estk --url=http://3.229.184.98:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 11.3 kB
Found index read-me with 1 documents (4.3 kB)
Found index .kibana_1 with 1 documents (7.1 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://44.194.164.177:9200 list
Found by ElasticSearchOpenPlugin
Indices: 5, document count: 15757, size: 57.5 MB
Found index .geoip_databases with 42 documents (41.5 MB)
Found index tomatomx-searchstats with 1...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `5Xcpm5` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://54.86.104.42:9200 list
Found by ElasticSearchOpenPlugin
Indices: 8, document count: 139287871, size: 58.0 GB
Through Kibana endpoint
Found index kubernetes-2024.02.25 with 26173699 documents (10.8 GB)
...
Analysis helper :
estk --url=http://3.87.255.62:5601 list
Found by ElasticSearchOpenPlugin
Indices: 10, document count: 4622, size: 6.0 MB
Found index test_system.audit_article_master-1 with 1372 documents (328.3 kB)
Found index test_sy...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y3EVBa` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://18.235.139.225:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2525561, size: 774.4 MB
Through Kibana endpoint
Found index logstash with 2525560 documents (774.4 MB)
Found index re...
Analysis helper :
estk --url=http://54.90.72.191:5601 list
Found by ElasticSearchOpenPlugin
Indices: 10, document count: 117377, size: 255.8 MB
Through Kibana endpoint
Found index .geoip_databases with 33 documents (32.0 MB)
Found index ...
Analysis helper :
estk --url=http://52.45.197.221:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 40, size: 38.9 MB
Found index .geoip_databases with 39 documents (38.9 MB)
Found index read_me with 1 documents (4.5 ...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.005 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+4f893@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5F893"}
Analysis helper :
estk --url=http://52.23.165.86:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 8.2 kB
Through Kibana endpoint
Found index .kibana with 1 documents (4.2 kB)
Found index read-me with 1 docu...
Analysis helper :
estk --url=http://54.145.37.197:5601 list
Found by ElasticSearchOpenPlugin
Indices: 4, document count: 1646, size: 48.3 MB
Found index .geoip_databases with 39 documents (38.8 MB)
Found index modesto-homologation-magento...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.006 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+4k51r@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5K51R"}
Analysis helper :
estk --url=http://54.88.199.95:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 40, size: 38.9 MB
Through Kibana endpoint
Found index .geoip_databases with 39 documents (38.9 MB)
Found index read_m...
Analysis helper :
estk --url=http://44.198.193.193:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 2, size: 12.8 kB
Found index read-me with 1 documents (5.1 kB)
Found index api with 1 documents (7.7 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://3.83.199.3:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 20001, size: 6.0 MB
Found index .ds-logs-generic-default-2024.02.13-000014 with 20000 documents (6.0 MB)
Found index ...
Ransom notes :
{"message":"All your data is backed up. You must pay 0.006 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+4obrh@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 5OBRH"}
Analysis helper :
estk --url=http://18.215.143.235:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 1, size: 5.5 kB
Through Kibana endpoint
Found index .ds-logs-generic-default-2023.05.17-000002 with 0 documents (225 ...
Analysis helper :
estk --url=http://18.234.31.96:5601 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 20001, size: 6.0 MB
Through Kibana endpoint
Found index .ds-logs-generic-default-2024.02.13-000014 with 20000 documen...
Analysis helper :
estk --url=http://18.215.143.235:5601 list
Found by ElasticSearchOpenPlugin
Indices: 8, document count: 126520726, size: 61.4 GB
Found index gl-system-events_2 with 1 documents (12.6 kB)
Found index gl-events_1 with 20 do...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `h7pEfd` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://35.173.43.98:9200 list
Found by ElasticSearchOpenPlugin
Indices: 1, document count: 1, size: 5.1 kB
Found index read-me with 1 documents (5.1 kB)
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `EaBLis` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://3.88.168.152:9200 list
Found by ElasticSearchOpenPlugin
Indices: 2, document count: 59905, size: 250.4 MB
Found index keyframe_index with 59904 documents (250.4 MB)
Found index read-me with 1 documents...
Ransom notes :
{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `h7pEfd` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
Analysis helper :
estk --url=http://3.212.29.79:9200 list
Found by ElasticSearchOpenPlugin