command-line-murders/i-0d6ba88306e0cf45c
by SadServersMore by SadServers
root 584 0.0 0.4 4396 2104 ttyS0 Ss+ 15:59 0:00 /sbin/agetty root 585 0.0 1.5 13352 7136 ? Ss 15:59 0:00 sshd: /usr/sb_chrony 587 0.0 0.7 10852 3716 ? S 15:59 0:00 /usr/sbin/chr_chrony 588 0.0 0.1 10724 552 ? S 15:59 0:00 /usr/sbin/chrroot 607 0.0 3.7 26612 17324 ? Ss 15:59 0:00 /usr/bin/pythroot 681 0.0 0.0 0 0 ? I 15:59 0:00 [kworker/0:3-root 682 0.0 0.0 0 0 ? I 15:59 0:00 [kworker/0:4-admin 685 0.0 0.9 6740 4500 pts/0 S<s+ 15:59 0:00 bash -l admin 689 0.2 4.1 98188 19260 pts/0 R<l+ 15:59 0:00 /usr/bin/pythadmin 692 0.0 3.2 24456 14960 pts/0 S<+ 15:59 0:00 /usr/bin/pythadmin 693 0.0 0.1 2480 512 pts/1 S<s 15:59 0:00 sh -c /bin/baadmin 694 0.0 1.0 6952 4812 pts/1 S< 15:59 0:00 /bin/bash root 763 0.0 0.0 0 0 ? R 16:00 0:00 [kworker/u4:4admin 808 0.0 0.6 8648 3140 pts/1 R<+ 16:01 0:00 ps -aux admin@i-08415f3e4b883b5b6:/etc/apache2/conf-available$
paris/i-08415f3e4b883b5b6 03:06
by SadServerstotal 44 drwxr-xr-x 6 admin admin 4096 Sep 24 2023 . drwxr-xr-x 3 root root 4096 Sep 17 2023 .. drwx------ 3 admin admin 4096 Sep 20 2023 .ansible -rw------- 1 admin admin 441 Jan 19 09:55 .bash_history -rw-r--r-- 1 admin admin 220 Aug 4 2021 .bash_logout -rw-r--r-- 1 admin admin 3526 Aug 4 2021 .bashrc drwxr-xr-x 3 admin admin 4096 Sep 20 2023 .config -rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4096 Sep 17 2023 .ssh drwxr-xr-x 2 admin root 4096 Sep 24 2023 agent -rwxrwx--- 1 root root 360 Sep 24 2023 webserver.py admin@i-03340b7ac9cef3b13:~$ groups admin admin : admin adm dialout cdrom floppy sudo audio dip video plugdev netdev admin@i-03340b7ac9cef3b13:~$ ls
paris/i-03340b7ac9cef3b13 03:24
by SadServers-r--r--r-- 1 root root 0 Jan 14 19:12 interrupts dr-xr-xr-x 5 root root 0 Jan 14 19:12 fs -r--r--r-- 1 root root 0 Jan 14 19:12 fb -r--r--r-- 1 root root 0 Jan 14 19:12 execdomains dr-xr-xr-x 3 root root 0 Jan 14 19:12 dynamic_debug dr-xr-xr-x 3 root root 0 Jan 14 19:12 driver -r--r--r-- 1 root root 0 Jan 14 19:12 diskstats -r--r--r-- 1 root root 0 Jan 14 19:12 crypto -r--r--r-- 1 root root 0 Jan 14 19:12 consoles dr-xr-xr-x 4 root root 0 Jan 14 19:12 bus -r--r--r-- 1 root root 0 Jan 14 19:12 buddyinfo dr-xr-xr-x 9 admin admin 0 Jan 14 19:12 845 admin@i-0ecf61c754f513041:/proc$ cat cmdline BOOT_IMAGE=/boot/vmlinuz-5.10.0-25-cloud-amd64 root=UUID=811e12d8-f542-4650-9330admin@i-0ecf61c754f513041:/proc$