kihei/i-0691f7d5a77d79293
by SadServersMore by SadServers
udp UNCONN 0 0 127.0.0.1:323 0.0.udp UNCONN 0 0 0.0.0.0:68 0.0.udp UNCONN 0 0 [fe80::8a8:d3ff:fe19:c113]%ens5:546 [udp UNCONN 0 0 [::1]:323 [tcp LISTEN 0 511 0.0.0.0:80 0.0.tcp LISTEN 0 128 0.0.0.0:22 0.0.tcp LISTEN 0 4096 *:6767 tcp LISTEN 0 511 [::]:80 [tcp LISTEN 0 4096 *:8080 tcp LISTEN 0 128 [::]:22 [admin@i-0fe60fd5038ba7352:/etc$ ls -l /proc/511/cmd ls: cannot access '/proc/511/cmd': No such file or directory admin@i-0fe60fd5038ba7352:/etc$ curl http://localhost:80 curl: (7) Failed to connect to localhost port 80: Connection refused admin@i-0fe60fd5038ba7352:/etc$ echonc -u
taipei/i-0fe60fd5038ba7352 01:39
by SadServersty1 Ss+ 20:00 0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux root 593 0.0 0.4 4396 2028 ttyS0 Ss+ 20:00 0:00 /sbin/agetty -o -p -- \u --keep-baud 115200,57 _chrony 595 0.0 0.7 10852 3716 ? S 20:00 0:00 /usr/sbin/chronyd -F 1 _chrony 596 0.0 0.1 10724 552 ? S 20:00 0:00 \_ /usr/sbin/chronyd -F 1 root 611 0.0 3.7 26612 17296 ? Ss 20:00 0:00 /usr/bin/python3 /usr/share/unattended-upgrade admin@i-020b6c81f12d03fba:~$ ca
paris/i-020b6c81f12d03fba 04:05
by SadServers-r--r--r-- 1 root root 0 Nov 28 20:01 timers -rw-rw-rw- 1 root root 0 Nov 28 20:01 timerslack_ns -rw-r--r-- 1 root root 0 Nov 28 20:01 uid_map -r--r--r-- 1 root root 0 Nov 28 20:01 wchan admin@i-03c3097309a075b56:/proc/576$ cd map_files/ bash: cd: map_files/: Permission denied admin@i-03c3097309a075b56:/proc/576$ ls -l^C admin@i-03c3097309a075b56:/proc/576$ less smaps smaps: Permission denied admin@i-03c3097309a075b56:/proc/576$ cat smaps cat: smaps: Permission denied admin@i-03c3097309a075b56:/proc/576$ stra^C admin@i-03c3097309a075b56:/proc/576$ strace -p 576 strace: attach: ptrace(PTRACE_SEIZE, 576): Operation not permitted admin@i-03c3097309a075b56:/proc/576$
paris/i-03c3097309a075b56 01:47
by SadServersroot 685 2 0 23:37 ? 00:00:00 [kworker/0:4-events] admin 687 563 0 23:37 pts/0 00:00:00 bash -l admin 691 687 0 23:37 pts/0 00:00:00 /usr/bin/python3 /usr/bin/asadmin 694 691 0 23:37 pts/0 00:00:00 /usr/bin/python3 /usr/bin/asadmin 695 691 0 23:37 pts/1 00:00:00 sh -c /bin/bash admin 696 695 0 23:37 pts/1 00:00:00 /bin/bash root 704 2 0 23:37 ? 00:00:00 [kworker/u4:4-events_unboundadmin 957 696 0 23:43 pts/1 00:00:00 ps -ef admin@i-0c6e74f29b5339b88:~$ ps -ef | grep web root 580 1 0 23:37 ? 00:00:00 /usr/bin/python3 /home/adminadmin 960 696 0 23:43 pts/1 00:00:00 grep web admin@i-0c6e74f29b5339b88:~$ cat /proc/580/mem cat: /proc/580/mem: Permission denied admin@i-0c6e74f29b5339b88:~$ ^Ct /proc/580/mem admin@i-0c6e74f29b5339b88:~$ cd /