paris/i-070e08a19d8c3591f
by SadServersMore by SadServers
dr-xr-xr-x 3 root root 0 Feb 6 06:31 task -rw-r--r-- 1 root root 0 Feb 6 06:31 timens_offsets -r--r--r-- 1 root root 0 Feb 6 06:31 timers -rw-rw-rw- 1 root root 0 Feb 6 06:31 timerslack_ns -rw-r--r-- 1 root root 0 Feb 6 06:31 uid_map -r--r--r-- 1 root root 0 Feb 6 06:31 wchan admin@i-0fb869488634369c7:/proc/575$ sudo usage: sudo -h | -K | -k | -V usage: sudo -v [-AknS] [-g group] [-h host] [-p prompt] [-u user] usage: sudo -l [-AknS] [-g group] [-h host] [-p prompt] [-U user] [-u user] [comusage: sudo [-AbEHknPS] [-r role] [-t type] [-C num] [-D directory] [-g group] [directory] [-T timeout] [-u user] [VAR=value] [-i|-s] [<command>] usage: sudo -e [-AknS] [-r role] [-t type] [-C num] [-D directory] [-g group] [-irectory] [-T timeout] [-u user] file ... admin@i-0fb869488634369c7:/proc/575$ sudo -
paris/i-0fb869488634369c7 02:09
by SadServerslsof 1008 1000 mem REG 259,1 149520inux-gnu/libpthread-2.31.so lsof 1008 1000 mem REG 259,1 18688inux-gnu/libdl-2.31.so lsof 1008 1000 mem REG 259,1 617128inux-gnu/libpcre2-8.so.0.10.1 lsof 1008 1000 mem REG 259,1 1901536inux-gnu/libc-2.31.so lsof 1008 1000 mem REG 259,1 166120inux-gnu/libselinux.so.1 lsof 1008 1000 mem REG 259,1 177928inux-gnu/ld-2.31.so lsof 1008 1000 4r FIFO 0,11 0t0lsof 1008 1000 7w FIFO 0,11 0t0admin@i-096a29f104e7847fe:~$ lsof -i
paris/i-096a29f104e7847fe 07:14
by SadServersadmin@i-0c111f859fbef3091:/usr/lib$ ls NetworkManager ifupdown networkd-dispatcher sudo X11 init openssh sysctapparmor kernel os-release systeapt klibc pam.d sysusbinfmt.d klibc-YUkGbOClhnaZRUUd4cUed0X2XZI.so python2.7 tc cloud-init libsupp.a python3 termidbus-1.0 locale python3.9 tmpfidebug lsb rsyslog udev dpkg man-db runit-helper valgrenvironment.d mime sasl2 x86_6file modprobe.d sftp-server groff modules shim grub modules-load.d ssl admin@i-0c111f859fbef3091:/usr/lib$ cd lib
kihei/i-0c111f859fbef3091 01:44
by SadServers[:delay_enter=DELAY][:delay_exit=DELAY][:when=WHEN], --inject=SET[:error=ERRNO|:retval=VALUE][:signal=SIG][:syscall=SYSCALL] [:delay_enter=DELAY][:delay_exit=DELAY][:when=WHEN] perform syscall tampering for the syscalls in SET delay: microseconds or NUMBER{s|ms|us|ns} when: FIRST[..LAST][+[STEP]] -e fault=SET[:error=ERRNO][:when=WHEN], --fault=SET[:error=ERRNO][:when=WHEN] synonym for -e inject with default ERRNO set to ENOSYS. Miscellaneous: -d, --debug enable debug output to stderr -h, --help print help message --seccomp-bpf enable seccomp-bpf filtering -V, --version print version admin@i-054157b3157fdc4cd:~$ strace ./kihei -v