paris/i-0c8aeb0a6e13b348e
by SadServersMore by SadServers
modprobe.d pam.conf rc0.d rsyslog.conf skel sysctl.confapparmor.d cron.daily e2scrub.conf gshadow issue modules pam.d rc1.d rsyslog.d ssh sysctl.d apt cron.hourly environment gshadow- issue.n modules-load.d passwd rc2.d runit ssl systemd bash.bashrc cron.monthly ethertypes gss kernel motd passwd- rc3.d sadscenario subgid terminfo bash_completion cron.weekly fonts host.conf kernel- mtab perl rc4.d screenrc subgid- timezone bindresvport.blacklist crontab fstab hostname ld.so.c nanorc pm rc5.d security subuid tmpfiles.d binfmt.d dbus-1 fstab.old hosts ld.so.c netconfig ppp rc6.d selinux subuid- ucf.conf admin@i-0d57ae06890a9cfc8:/etc$ cd admin@i-0d57ae06890a9cfc8:~$
paris/i-0d57ae06890a9cfc8 05:22
by SadServersfile"] /var/log/cast/i-008b0220d06b61fa7:[297.457658, "o", "\b\b\b\b\b\b\b\b\b\b\b-name/var/log/cast/i-008b0220d06b61fa7:[301.266025, "o", "\b\b\b\b\b\b\b\b\b\b\b\b\b\/var/log -name newdatafile"] /var/log/cast/i-008b0220d06b61fa7:[339.22969, "o", "\b\b\b\b\b\b\b\b\b\b\b\b\b\btafile /var/log"] /var/log/cast/i-008b0220d06b61fa7:[339.527642, "o", "\b\b\b\b\b\b\b\b\b\b\b\b\b\file"] /var/log/cast/i-008b0220d06b61fa7:[340.82254, "o", "\b\b\b\b\b\b\b\b\b\b\b-name /var/log/cast/i-008b0220d06b61fa7:[347.397351, "o", "\b\b\b\b\b\b\b\b\b\b\b\b\b\atafile /var/log"] grep: /var/log/btmp: Permission denied grep: /var/log/private: Permission denied grep: /var/log/chrony: Permission denied admin@i-008b0220d06b61fa7:~$ /home/admin/kihei
kihei/i-008b0220d06b61fa7 06:01
by SadServersadmin@i-058087a6dfc6f1217:~$ /home/admin/kihei panic: exit status 1 goroutine 1 [running]: main.main() ./main.go:64 +0x47d admin@i-058087a6dfc6f1217:~$ ps aux | grep kihei admin 682 0.1 4.1 98188 19204 pts/0 S<l+ 09:17 0:00 /usr/bin/pyth-t kihei/i-058087a6dfc6f1217 -q -i 2 /var/log/cast/i-058087a6dfc6f1217 admin 685 0.0 3.0 24456 14420 pts/0 S<+ 09:17 0:00 /usr/bin/pyth-t kihei/i-058087a6dfc6f1217 -q -i 2 /var/log/cast/i-058087a6dfc6f1217 admin 793 0.0 0.1 5264 704 pts/1 S<+ 09:19 0:00 grep kihei admin@i-058087a6dfc6f1217:~$
kihei/i-058087a6dfc6f1217 01:12
by SadServersadmin@i-0c86aaede796dd0fb:~$ ды bash: ды: command not found admin@i-0c86aaede796dd0fb:~$ ls agent webserver.py admin@i-0c86aaede796dd0fb:~$ ls -l total 8 drwxr-xr-x 2 admin root 4096 Sep 24 23:20 agent -rwxrwx--- 1 root root 360 Sep 24 23:20 webserver.py admin@i-0c86aaede796dd0fb:~$ curl localhost:5000 Unauthorizedadmin@i-0c86aaede796dd0fb:~$ admin@i-0c86aaede796dd0fb:~$ curl localhost:5000