By searching for results, you agree with our Terms of service
Found 7148 results for
+plugin:ElasticSearchOpenPlugin -ip:"49.232.0.0/14" -ip:"43.136.0.0/13" +events.leak.severity:"high" +net:"AMAZON-AES"

Looking for more results ? Register a free account

Countries

  • United States 7147
  • Sweden 1

Sources

  • ElasticSearchOpenPlugin 7148

Network

  • AMAZON-AES 7147
  • AMAZON-02 1

IP Ranges

  • 44.192.0.0/11 632
  • 3.80.0.0/12 522
  • 34.224.0.0/12 484
  • 34.192.0.0/12 471
  • 3.224.0.0/12 448
  • 3.208.0.0/12 434
  • 52.200.0.0/13 278
  • 54.160.0.0/13 264
  • 54.80.0.0/13 263
  • 35.168.0.0/13 255

ASN: 14618
39 events in 852 days
Leak size: 38.9 MB
Open ports: 9200
Indices: 2, document count: 40, size: 38.9 MB
Found index .geoip_databases with 39 documents (38.9 MB)
Found index read_me with 1 documents (4.5 ...
Ransom notes :

{"message":"All your data is backed up. You must pay 0.005 BTC to 16w2xEN9pcjFgECWH1LDVps4xV9m3nUMBN In 48 hours, your data will be publicly disclosed and deleted. (more information: go to http://iplis.ru/data5)After paying send mail to us: rambler+47ea7@onionmail.org and we will provide a link for you to download your data. Your DBCODE is: 57EA7"}
            
Analysis helper :
                
estk --url=http://34.193.90.20:9200 list
            

ASN: 14618
57 events in 495 days
Leak size: 6.0 MB
Open ports: 9200
Indices: 6, document count: 11962, size: 6.0 MB
Found index .kibana with 2 documents (8.9 kB)
Found index eventd-2024.01.11 with 1383 documents (...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `h7pEfd` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://54.82.237.250:9200 list
            

ASN: 14618
39 events in 349 days
Leak size: 5.5 kB
Open ports: 5601
Indices: 2, document count: 1, size: 5.5 kB
Through Kibana endpoint
Found index read_me with 1 documents (5.3 kB)
Found index .ds-filebeat-8.8.1-...
Analysis helper :
                
estk --url=http://34.224.64.111:5601 list
            

ASN: 14618
12 events in 468 days
Leak size: 1.4 MB
Open ports: 80
Certificate domains:
admin.es.demo.polfa.nuvu.cc
Indices: 19, document count: 95, size: 1.4 MB
Found index polfa-relatorias with 10 documents (1.0 MB)
Found index jeecg-boot with 1 documents (5....
Ransom notes :

{"message": "We delete all databases, but download a copy to our server. The only way of recovery is you must send 0.01 BTC to bc1qmaacz9fdvnkujqlf8m547mzzh0l5t0ajn699th. You have until 48 hours to pay or data will be inaccessible. Once paid please email incomings99112@onionmail.com with code: `r6OIrj` and we will recover your database. please read https://paste.sh/UY6_vtGL#THGqRdL9oQqUc-28RPDOWSbB for more information"}
            
Analysis helper :
                
estk --url=http://admin.es.demo.polfa.nuvu.cc list
            

ASN: 14618
11 events in 649 days
Leak size: 107.4 MB
Open ports: 80
Certificate domains:
kibana.utils.baamtuservices.com
Indices: 28, document count: 1045077, size: 107.4 MB
Through Kibana endpoint
Found index agent with 1 documents (17.2 kB)
Found index saas_compan...
Analysis helper :
                
estk --url=https://kibana.utils.baamtuservices.com:80 list
            

ASN: 14618
11 events in 649 days
Leak size: 107.4 MB
Open ports: 443
Certificate domains:
kibana.utils.baamtuservices.com
Indices: 28, document count: 1045077, size: 107.4 MB
Through Kibana endpoint
Found index agent with 1 documents (17.2 kB)
Found index saas_compan...
Analysis helper :
                
estk --url=https://kibana.utils.baamtuservices.com list
            

ASN: 14618
8 events in 475 days
Leak size: 107.4 MB
Open ports: 80
Certificate domains:
elastic.utils.baamtuservices.com
Indices: 28, document count: 1045077, size: 107.4 MB
Found index agent with 1 documents (17.2 kB)
Found index saas_company with 2 documents (13.2...
Analysis helper :
                
estk --url=https://elastic.utils.baamtuservices.com:80 list
            

ASN: 14618
6 events in 475 days
Leak size: 107.4 MB
Open ports: 443
Certificate domains:
elastic.utils.baamtuservices.com
Indices: 28, document count: 1045077, size: 107.4 MB
Found index agent with 1 documents (17.2 kB)
Found index saas_company with 2 documents (13.2...
Analysis helper :
                
estk --url=https://elastic.utils.baamtuservices.com list
            

ASN: 14618
52 events in 426 days
Leak size: 191.6 MB
Open ports: 443
Certificate domains:
elastic.smentrega.com.br
Indices: 53, document count: 220013, size: 191.6 MB
Found index teste with 1409 documents (477.4 kB)
Found index auth with 2 documents (4.2 kB)
F...
Analysis helper :
                
estk --url=https://52.21.251.102 list
            

ASN: 14618
64 events in 803 days
Leak size: 1.9 MB
Open ports: 80
Indices: 4, document count: 2363, size: 1.9 MB
Through Kibana endpoint
Found index .kibana with 2 documents (10.0 kB)
Found index magento2_produc...
Analysis helper :
                
estk --url=http://18.205.230.156 list
            

ASN: 14618
44 events in 981 days
Leak size: 1.9 MB
Open ports: 9200
Indices: 4, document count: 2363, size: 1.9 MB
Found index .kibana with 2 documents (10.0 kB)
Found index magento2_product_1_v22 with 1180 docume...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `WCR6wZ` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://18.205.230.156:9200 list
            

ASN: 14618
56 events in 698 days
Leak size: 359.4 GB
Open ports: 443
Certificate domains:
kibana.flightobject-lst.com
Indices: 54, document count: 693047696, size: 359.4 GB
Through Kibana endpoint
Found index gufi-rules-logs-2023.06 with 142 documents (114.3 kB)
...
Analysis helper :
                
estk --url=https://kibana.flightobject-lst.com list
            

ASN: 14618
13 events in 136 days
Leak size: 58.9 MB
Open ports: 443
Certificate domains:
www.api.develop-sr3snxi-p4fuatmijyn3u.us-2.platformsh.site
www.develop-sr3snxi-p4fuatmijyn3u.us-2.platformsh.site
es.develop-sr3snxi-p4fuatmijyn3u.us-2.platformsh.site
api.develop-sr3snxi-p4fuatmijyn3u.us-2.platformsh.site
develop-sr3snxi-p4fuatmijyn3u.us-2.platformsh.site
Indices: 9, document count: 5699, size: 58.9 MB
Found index internal with 1 documents (6.7 kB)
Found index wittkiefferapiddevsite-post-1 with 36 ...
Analysis helper :
                
estk --url=https://es.develop-sr3snxi-p4fuatmijyn3u.us-2.platformsh.site list
            

ASN: 14618
29 events in 331 days
Leak size: 9.8 MB
Open ports: 9200
Indices: 4, document count: 3327, size: 9.8 MB
Found index folio_instance_diku with 953 documents (8.9 MB)
Found index folio_instance_subject_dik...
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `h7pEfd` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://44.216.67.216:9200 list
            

ASN: 14618
27 events in 372 days
Leak size: 746.0 MB
Open ports: 5601
Indices: 17, document count: 1597310, size: 746.0 MB
Through Kibana endpoint
Found index .monitoring-kibana-7-2024.03.18 with 17280 documents (3....
Analysis helper :
                
estk --url=http://3.229.85.195:5601 list
            

ASN: 14618
6 events in 14 days
Leak size: 671.2 MB
Open ports: 443
Certificate domains:
kibana.staging.afstc100.com
Indices: 20, document count: 1297984, size: 671.2 MB
Through Kibana endpoint
Found index logstash-2024.05.24 with 88395 documents (35.1 MB)
Found...
Analysis helper :
                
estk --url=https://kibana.staging.afstc100.com list
            

ASN: 14618
59 events in 436 days
Leak size: 10.6 kB
Open ports: 9200
Indices: 2, document count: 2, size: 10.6 kB
Found index read-me with 1 documents (4.0 kB)
Found index .kibana_1 with 1 documents (6.6 kB)
Ransom notes :

{"message": "Your DB has been back up. The only way of recovery is you must send 0.01 BTC to bc1qaua9cwrp0g2nqg2txn86e7k376v0xm4m0yfcfq. Once paid please email dar0kmdb@tutanota.com with code: `Y8N85w` and we will recover your database. please read https://paste.sh/u6JYxXwk#PwdBc7jVzqo9-h12zU5hyPYP for more information"}
            
Analysis helper :
                
estk --url=http://34.229.183.113:9200 list
            

ASN: 14618
11 events in 193 days
Leak size: 681.9 MB
Open ports: 443
Certificate domains:
elasticsearch.prod.afstc100.com
Indices: 19, document count: 1234970, size: 681.9 MB
Found index logstash-2024.05.24 with 87899 documents (35.0 MB)
Found index logstash-2024.05....
Analysis helper :
                
estk --url=https://elasticsearch.prod.afstc100.com list
            

ASN: 14618
6 events in 64 days
Leak size: 171.1 MB
Open ports: 443
Certificate domains:
atsone.com.br
kibana.atsone.com.br
api.atsone.com.br
fiscal.atsone.com.br
hml.atsone.com.br
painel.atsone.com.br
pgadmin.atsone.com.br
sso.atsone.com.br
Indices: 68, document count: 188524, size: 171.1 MB
Through Kibana endpoint
Found index apm-7.15.0-profile-000001 with 0 documents (208 B)
Found ...
Analysis helper :
                
estk --url=https://kibana.atsone.com.br list
            

ASN: 14618
24 events in 313 days
Leak size: 41.2 MB
Open ports: 443
Certificate domains:
kibana.galveston.emr-now.com
facility.api.galveston.emr-now.com
grafana.galveston.emr-now.com
patient.api.galveston.emr-now.com
chart.api.galveston.emr-now.com
identity.api.galveston.emr-now.com
order.api.galveston.emr-now.com
rabbit.galveston.emr-now.com
timer.api.galveston.emr-now.com
Indices: 12, document count: 2407, size: 41.2 MB
Through Kibana endpoint
Found index resourcemanager-galveston with 301 documents (481.1 kB)
Foun...
Analysis helper :
                
estk --url=https://kibana.galveston.emr-now.com list