command-line-murders/i-02f5b627acac176b7
by SadServersMore by SadServers
114 root 0 -20 0 0 0 I 0.0 0.0 0:00.00 ena admin@i-0aba8159a1a1cc7e9:~$ ps PID TTY TIME CMD 695 pts/1 00:00:00 sh 696 pts/1 00:00:00 bash 881 pts/1 00:00:00 ps admin@i-0aba8159a1a1cc7e9:~$ lsof -Ua COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME gotty 563 admin 1u unix 0x000000000e846a83 0t0 10471 type=STREAM gotty 563 admin 2u unix 0x000000000e846a83 0t0 10471 type=STREAM sadagent 564 admin 1u unix 0x00000000cc53c95b 0t0 10477 type=STREAM sadagent 564 admin 2u unix 0x00000000cc53c95b 0t0 10477 type=STREAM admin@i-0aba8159a1a1cc7e9:~$
paris/i-0aba8159a1a1cc7e9 05:20
by SadServersProto Recv-Q Send-Q Local Address Foreign Address State tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN tcp 0 0 127.0.0.1:5000 0.0.0.0:* LISTEN tcp6 0 0 :::6767 :::* LISTEN tcp6 0 0 :::8080 :::* LISTEN tcp6 0 0 :::22 :::* LISTEN udp 0 0 127.0.0.1:323 0.0.0.0:* udp 0 0 0.0.0.0:68 0.0.0.0:* udp6 0 0 fe80::887:7cff:fef3:546 :::* udp6 0 0 ::1:323 :::* admin@i-08aea6778f2336813:~$ ls agent webserver.py admin@i-08aea6778f2336813:~$ nc localhost 5000 GET /
paris/i-08aea6778f2336813 01:30
by SadServerstotal 44 drwxr-xr-x 6 admin admin 4096 Sep 24 2023 . drwxr-xr-x 3 root root 4096 Sep 17 2023 .. drwx------ 3 admin admin 4096 Sep 20 2023 .ansible -rw------- 1 admin admin 441 Jan 19 09:55 .bash_history -rw-r--r-- 1 admin admin 220 Aug 4 2021 .bash_logout -rw-r--r-- 1 admin admin 3526 Aug 4 2021 .bashrc drwxr-xr-x 3 admin admin 4096 Sep 20 2023 .config -rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4096 Sep 17 2023 .ssh drwxr-xr-x 2 admin root 4096 Sep 24 2023 agent -rwxrwx--- 1 root root 360 Sep 24 2023 webserver.py admin@i-03340b7ac9cef3b13:~$ groups admin admin : admin adm dialout cdrom floppy sudo audio dip video plugdev netdev admin@i-03340b7ac9cef3b13:~$ ls