kihei/i-05228b05f8cede126
by SadServersMore by SadServers
root 572 0.1 6.0 107132 28272 ? Ss 21:59 0:00 /usr/bin/pythroot 575 0.0 0.9 220796 4224 ? Ssl 21:59 0:00 /usr/sbin/rsyroot 585 0.0 1.4 13492 6540 ? Ss 21:59 0:00 /lib/systemd/root 590 0.0 1.5 13352 7188 ? Ss 21:59 0:00 sshd: /usr/sbroot 591 0.0 0.3 2872 1764 tty1 Ss+ 21:59 0:00 /sbin/agetty root 592 0.0 0.4 4396 2036 ttyS0 Ss+ 21:59 0:00 /sbin/agetty _chrony 594 0.0 0.7 10852 3604 ? S 21:59 0:00 /usr/sbin/chr_chrony 595 0.0 0.1 10724 556 ? S 21:59 0:00 \_ /usr/sbinroot 609 0.0 3.7 26612 17372 ? Ss 21:59 0:00 /usr/bin/pythroot 770 0.0 0.7 5788 3268 ? Ss 22:02 0:00 /bin/bash /roroot 789 0.0 6.7 1254320 31692 ? Sl 22:02 0:00 \_ mc mirroradmin@i-002259b1376148ae2:/var/log$ cd /home/admin/ admin@i-002259b1376148ae2:~$ ls agent webserver.py admin@i-002259b1376148ae2:~$ ps auxf | grep w
paris/i-002259b1376148ae2 02:30
by SadServersHere, the second and the third argument of open(2) are decoded by breakin traditional or native usage differs from ANSI or POSIX, the latter forms Structure pointers are dereferenced and the members are displayed as ap mand "ls -l /dev/null" is captured as: lstat("/dev/null", {st_mode=S_IFCHR|0666, st_rdev=makedev(0x1, 0x3), Notice how the 'struct stat' argument is dereferenced and how each member and numeric values. Also notice in this example that the first argument the system call fails, arguments may not always be dereferenced. For exa lstat("/foo/bar", 0xb004) = -1 ENOENT (No such file or directory) Manual page strace(1) line 17 (press h for help or q to quit)
kihei/i-01b77bb37a0d39570 00:21
by SadServers[46][protocol][@hostname|hostaddr][:service|port] where: 46 specifies the IP version, IPv4 or IPv6 that applies to the following address. '6' may be be specified only if the UNIX dialect supports IPv6. If neither '4' nor '6' is specified, the following address applies to all IP versions. protocol is a protocol name - TCP, UDP hostname is an Internet host name. Unless a specific IP version is specified, open network files associated with host names of all versions will be selected. Manual page lsof(8) line 380 (press h for help or q to quit)