paris/i-02dd1b8dbee12a939
by SadServersMore by SadServers
admin@i-08a1941667a15b5b6:/home$ cd /var/log/ admin@i-08a1941667a15b5b6:/var/log$ ls alternatives.log auth.log.2.gz cloud-init-output.log debug faillog te unattended-upgrades alternatives.log.1 btmp cloud-init.log debug.1 journal user.log apt btmp.1 daemon.log debug.2.gz kern.log g user.log.1 auth.log cast daemon.log.1 dpkg.log kern.log.1g.1 user.log.2.gz auth.log.1 chrony daemon.log.2.gz dpkg.log.1 kern.log.2g.2.gz wtmp admin@i-08a1941667a15b5b6:/var/log$ less messages admin@i-08a1941667a15b5b6:/var/log$ less syslog admin@i-08a1941667a15b5b6:/var/log$ c
paris/i-08a1941667a15b5b6 03:08
by SadServersadmin@i-05d27a7439a0e6399:~$ ls agent data datafile kihei admin@i-05d27a7439a0e6399:~$ file kihei kihei: ELF 64-bit LSB executable, x86-64, version 1 (SYSV), statically linked, G7tVbey9uC58oKsR, not stripped admin@i-05d27a7439a0e6399:~$ ps aux | grep "kihei" admin 704 0.6 4.1 98188 19192 pts/0 S<l+ 10:38 0:00 /usr/bin/pythi-05d27a7439a0e6399 admin 707 0.0 3.0 24456 14448 pts/0 S<+ 10:38 0:00 /usr/bin/pythi-05d27a7439a0e6399 admin 715 0.0 0.1 5264 704 pts/1 S<+ 10:38 0:00 grep kihei admin@i-05d27a7439a0e6399:~$
kihei/i-05d27a7439a0e6399 00:26
by SadServerslrwxrwxrwx 1 root root 8 Nov 7 2019 ypdomainname -> hostname -rwxr-xr-x 1 root root 2.0K Apr 10 2022 zcat -rwxr-xr-x 1 root root 1.7K Apr 10 2022 zcmp -rwxr-xr-x 1 root root 5.8K Apr 10 2022 zdiff -rwxr-xr-x 1 root root 23K Apr 19 2023 zdump -rwxr-xr-x 1 root root 29 Apr 10 2022 zegrep -rwxr-xr-x 1 root root 29 Apr 10 2022 zfgrep -rwxr-xr-x 1 root root 2.1K Apr 10 2022 zforce -rwxr-xr-x 1 root root 7.9K Apr 10 2022 zgrep -rwxr-xr-x 1 root root 51K Sep 24 2021 zipdetails -rwxr-xr-x 1 root root 2.2K Apr 10 2022 zless -rwxr-xr-x 1 root root 1.8K Apr 10 2022 zmore -rwxr-xr-x 1 root root 4.5K Apr 10 2022 znew admin@i-09caab26a6727cfcc:/usr/bin$ cd admin@i-09caab26a6727cfcc:~$