Public recordings
Sort by
write(2, "main.main", 9main.main) = 9 write(2, "(", 1() = 1 write(2, ")\n", 2) ) = 2 write(2, "\t", 1 ) = 1 write(2, "./main.go", 9./main.go) = 9 write(2, ":", 1:) = 1 write(2, "64", 264) = 2 write(2, " +", 2 +) = 2 write(2, "0x47d", 50x47d) = 5 write(2, "\n", 1 ) = 1 exit_group(2) = ? +++ exited with 2 +++ admin@i-0f19b173fcd94021c:~$ strace /home/admin/kihei
kihei/i-0f19b173fcd94021c 01:30
by SadServers<p>Error code explanation: HTTPStatus.BAD_REQUEST - Bad request syntax o </body> </html> ^C admin@i-04851452443a1c73a:~$ curl http://127.0.0.1:5000 Unauthorizedadmin@i-04851452443a1c73a:~$ curl http://127.0.0.1:5000/admin <!doctype html> <html lang=en> <title>404 Not Found</title> <h1>Not Found</h1> <p>The requested URL was not found on the server. If you entered the URL manualladmin@i-04851452443a1c73a:~$ curl http://127.0.0.1:5000/ Unauthorizedadmin@i-04851452443a1c73a:~$ ls agent webserver.py admin@i-04851452443a1c73a:~$ cat w
paris/i-04851452443a1c73a 01:31
by SadServers[ -q|--quiet ] [ -v|--verbose ] [ -y|--yes ] [ -t|--test ] [ --commandprofile String ] [ --config String ] [ --driverloaded y|n ] [ --nolocking ] [ --lockopt String ] [ --longhelp ] [ --profile String ] [ --version ] Use --longhelp to show all options and advanced commands. root@i-0dcdf1734cc1a577d:~# lvcreate -L 100%F
kihei/i-0dcdf1734cc1a577d 06:32
by SadServersroot@i-060531571472350e7:/home/admin# lsblk -l NAME MAJ:MIN RM SIZE RO TYPE MOUNTPOINT nvme0n1 259:0 0 8G 0 disk nvme0n1p1 259:1 0 7.9G 0 part / nvme0n1p14 259:2 0 3M 0 part nvme0n1p15 259:3 0 124M 0 part /boot/efi nvme1n1 259:4 0 1G 0 disk nvme2n1 259:5 0 1G 0 disk root@i-060531571472350e7:/home/admin# mount nvme0n1 ^C root@i-060531571472350e7:/home/admin# pwd /home/admin root@i-060531571472350e7:/home/admin# lsblk -l^C root@i-060531571472350e7:/home/admin# mount nvme0n1 /home/admin mount: /home/admin: special device nvme0n1 does not exist. root@i-060531571472350e7:/home/admin#
kihei/i-060531571472350e7 03:29
by SadServers(Not all processes could be identified, non-owned process info will not be shown, you would have to be root to see it all.) Active Internet connections (only servers) Proto Recv-Q Send-Q Local Address Foreign Address State tcp 0 0 127.0.0.1:5000 0.0.0.0:* LISTEN tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN tcp6 0 0 :::6767 :::* LISTEN tcp6 0 0 :::8080 :::* LISTEN tcp6 0 0 :::22 :::* LISTEN udp 0 0 127.0.0.1:323 0.0.0.0:* udp 0 0 0.0.0.0:68 0.0.0.0:* udp6 0 0 fe80::861:81ff:feef:546 :::* udp6 0 0 ::1:323 :::* admin@i-08509f86769b7ad0f:~$ admin@i-08509f86769b7ad0f:~$ n
paris/i-08509f86769b7ad0f 01:22
by SadServerswrite(2, ")\n", 2) ) = 2 write(2, "\t", 1 ) = 1 write(2, "./main.go", 9./main.go) = 9 write(2, ":", 1:) = 1 write(2, "64", 264) = 2 write(2, " +", 2 +) = 2 write(2, "0x47d", 50x47d) = 5 write(2, "\n", 1 ) = 1 exit_group(2) = ? +++ exited with 2 +++ admin@i-08a24784aa14064f9:~$ admin@i-08a24784aa14064f9:~$ admin@i-08a24784aa14064f9:~$ strace /home/admin/kihei
kihei/i-08a24784aa14064f9 01:20
by SadServerslinux-gnu/libpthread-2.31.so lsof 769 admin mem REG 259,1 1868linux-gnu/libdl-2.31.so lsof 769 admin mem REG 259,1 61712linux-gnu/libpcre2-8.so.0.10.1 lsof 769 admin mem REG 259,1 190153linux-gnu/libc-2.31.so lsof 769 admin mem REG 259,1 16612linux-gnu/libselinux.so.1 lsof 769 admin mem REG 259,1 17792linux-gnu/ld-2.31.so lsof 769 admin 4r FIFO 0,11 0tlsof 769 admin 7w FIFO 0,11 0tadmin@i-059fb7e158508f014:~$ lsof |grep webserver admin@i-059fb7e158508f014:~$ lsof |grep .pyu
paris/i-059fb7e158508f014 01:33
by SadServers581 ? Ss 0:00 /usr/bin/python3 /home/admin/webserver.py 582 ? Ssl 0:00 /usr/sbin/rsyslogd -n -iNONE 585 ? Ss 0:00 /lib/systemd/systemd-logind 590 tty1 Ss+ 0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux 591 ttyS0 Ss+ 0:00 /sbin/agetty -o -p -- \u --keep-baud 115200,57600,3 592 ? Ss 0:00 sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 star 594 ? S 0:00 /usr/sbin/chronyd -F 1 602 ? S 0:00 \_ /usr/sbin/chronyd -F 1 601 ? Ss 0:00 /usr/bin/python3 /usr/share/unattended-upgrades/una--wait-for-signal admin@i-00f8248b2e8900994:~$ ps -fax|grep http 900 pts/1 S<+ 0:00 \_ grep http admin@i-00f8248b2e8900994:~$ ps -fax|grep 5000 902 pts/1 S<+ 0:00 \_ grep 5000 admin@i-00f8248b2e8900994:~$ n
paris/i-00f8248b2e8900994 03:28
by SadServersroot 579 1 0 10:14 ttyS0 00:00:00 /sbin/agetty -o -p -- \u --k_chrony 589 1 0 10:14 ? 00:00:00 /usr/sbin/chronyd -F 1 root 590 1 0 10:14 ? 00:00:00 sshd: /usr/sbin/sshd -D [lis_chrony 591 589 0 10:14 ? 00:00:00 /usr/sbin/chronyd -F 1 root 598 1 0 10:14 ? 00:00:00 /usr/bin/python3 /usr/share/root 678 2 0 10:14 ? 00:00:00 [kworker/0:3-events] root 679 2 0 10:14 ? 00:00:00 [kworker/0:4-mm_percpu_wq] admin 796 561 0 10:18 pts/0 00:00:00 bash -l admin 800 796 0 10:18 pts/0 00:00:00 /usr/bin/python3 /usr/bin/asadmin 803 800 0 10:18 pts/0 00:00:00 /usr/bin/python3 /usr/bin/asadmin 804 800 0 10:18 pts/1 00:00:00 sh -c /bin/bash admin 805 804 0 10:18 pts/1 00:00:00 /bin/bash root 843 2 0 10:19 ? 00:00:00 [kworker/u4:2-events_unboundadmin 846 805 0 10:19 pts/1 00:00:00 ps -ef admin@i-01ba3fb0890c35be2:~$
paris/i-01ba3fb0890c35be2 01:11
by SadServersroot@i-0c2a4233b77648504:~# ls mc.sh root@i-0c2a4233b77648504:~# cd /home/admin root@i-0c2a4233b77648504:/home/admin# ls agent data datafile kihei root@i-0c2a4233b77648504:/home/admin# vi kihei root@i-0c2a4233b77648504:/home/admin# ./kihei -h Usage: ./kihei [options] -h Display help -help Display help -v Verbose mode (print extra info) -verbose Verbose mode (print extra info) root@i-0c2a4233b77648504:/home/admin# ./kihei -
kihei/i-0c2a4233b77648504 01:28
by SadServerstmpfs on /run/lock type tmpfs (rw,nosuid,nodev,noexec,relatime,size=5120k) cgroup2 on /sys/fs/cgroup type cgroup2 (rw,nosuid,nodev,noexec,relatime,nsdelegapstore on /sys/fs/pstore type pstore (rw,nosuid,nodev,noexec,relatime) none on /sys/fs/bpf type bpf (rw,nosuid,nodev,noexec,relatime,mode=700) systemd-1 on /proc/sys/fs/binfmt_misc type autofs (rw,relatime,fd=30,pgrp=1,timeo=5,direct,pipe_ino=10306) hugetlbfs on /dev/hugepages type hugetlbfs (rw,relatime,pagesize=2M) mqueue on /dev/mqueue type mqueue (rw,nosuid,nodev,noexec,relatime) debugfs on /sys/kernel/debug type debugfs (rw,nosuid,nodev,noexec,relatime) tracefs on /sys/kernel/tracing type tracefs (rw,nosuid,nodev,noexec,relatime) fusectl on /sys/fs/fuse/connections type fusectl (rw,nosuid,nodev,noexec,relatimconfigfs on /sys/kernel/config type configfs (rw,nosuid,nodev,noexec,relatime) /dev/nvme0n1p15 on /boot/efi type vfat (rw,relatime,fmask=0022,dmask=0022,codepahortname=mixed,utf8,errors=remount-ro) admin@i-07e1cebffd652dba0:~$ free -
kihei/i-07e1cebffd652dba0 01:13
by SadServers5.1G . admin@i-04ba647eafae86351:~$ ls agent data datafile kihei admin@i-04ba647eafae86351:~$ cd .. admin@i-04ba647eafae86351:/home$ du -h . 11M ./admin/agent 4.0K ./admin/.ansible/tmp 8.0K ./admin/.ansible 4.0K ./admin/data 8.0K ./admin/.config/asciinema 12K ./admin/.config 8.0K ./admin/.ssh 5.1G ./admin 5.1G . admin@i-04ba647eafae86351:/home$ cd
kihei/i-04ba647eafae86351 04:09
by SadServersunattended-upgrades alternatives.log.1 btmp cloud-init.log debug.1 journal user.log apt btmp.1 daemon.log debug.2.gz kern.log user.log.1 auth.log cast daemon.log.1 dpkg.log kern.log.11 user.log.2.gz auth.log.1 chrony daemon.log.2.gz dpkg.log.1 kern.log.22.gz wtmp admin@i-06683be665f75c9a6:/var/log$ cd ./cast/ admin@i-06683be665f75c9a6:/var/log/cast$ ls i-06683be665f75c9a6 admin@i-06683be665f75c9a6:/var/log/cast$ ls- la bash: ls-: command not found admin@i-06683be665f75c9a6:/var/log/cast$