command-line-murders/i-0b6822c8b00d24d31
by SadServersMore by SadServers
#1698484587 cat .bash admin@i-0f6c30f8d04ab9891:~$ cd .config/ admin@i-0f6c30f8d04ab9891:~/.config$ ls asciinema admin@i-0f6c30f8d04ab9891:~/.config$ cd asciinema/ admin@i-0f6c30f8d04ab9891:~/.config/asciinema$ ls install-id admin@i-0f6c30f8d04ab9891:~/.config/asciinema$ cat install-id 0e2d35c4-a944-417f-bd3a-677c2f875b37admin@i-0f6c30f8d04ab9891:~/.config/asciinema$ cd .. admin@i-0f6c30f8d04ab9891:~/.config$ cd .. admin@i-0f6c30f8d04ab9891:~$ ls agent webserver.py admin@i-0f6c30f8d04ab9891:~$
paris/i-0f6c30f8d04ab9891 01:47
by SadServersDec 29 18:18:30 i-00b7b142f6d6bf77b ec2: ####################################### ^[[A^[[B ^Z [1]+ Stopped tail -f /var/log/*.log admin@i-00b7b142f6d6bf77b:/proc/574$ bg [1]+ tail -f /var/log/*.log & admin@i-00b7b142f6d6bf77b:/proc/574$ admin@i-00b7b142f6d6bf77b:/proc/574$ curl localhost:5000 Unauthorized ==> /var/log/daemon.log <== Dec 29 18:25:47 i-00b7b142f6d6bf77b python3[574]: 127.0.0.1 - - [29/Dec/2023 18:admin@i-00b7b142f6d6bf77b:/proc/574$
paris/i-00b7b142f6d6bf77b 03:52
by SadServersdrwxr-xr-x 7 admin admin 4096 Dec 28 20:34 . drwxr-xr-x 3 root root 4096 Sep 17 2023 .. drwx------ 3 admin admin 4096 Sep 17 2023 .ansible -rw------- 1 admin admin 75 Dec 28 20:34 .bash_history -rw-r--r-- 1 admin admin 220 Aug 4 2021 .bash_logout -rw-r--r-- 1 admin admin 3526 Aug 4 2021 .bashrc drwxr-xr-x 3 admin admin 4096 Dec 28 20:34 .config -rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4096 Sep 17 2023 .ssh -rw------- 1 admin admin 688 Dec 28 20:34 .viminfo drwxr-xr-x 2 admin root 4096 Sep 17 2023 agent drwxr-xr-x 2 admin root 4096 Dec 28 20:36 data -rw-r--r-- 1 root root 5368709120 Sep 17 2023 datafile -rwxr-xr-x 1 admin root 2207109 Sep 17 2023 kihei admin@i-018da4c7d7c33aafe:~$ vi
kihei/i-018da4c7d7c33aafe 05:03
by SadServersstemd: --nofork --nopidfile --systemd-activation --syslog-only root 573 0.2 5.9 33040 27900 ? Ss 21:18 0:00 /usr/bin/pythroot 575 0.0 0.9 220796 4340 ? Ssl 21:18 0:00 /usr/sbin/rsyroot 586 0.0 1.4 13492 6676 ? Ss 21:18 0:00 /lib/systemd/root 591 0.0 0.3 2872 1728 tty1 Ss+ 21:18 0:00 /sbin/agetty nux root 592 0.0 0.4 4396 2096 ttyS0 Ss+ 21:18 0:00 /sbin/agetty 0,57600,38400,9600 ttyS0 vt220 root 593 0.0 1.5 13352 7292 ? Ss 21:18 0:00 sshd: /usr/sb-100 startups _chrony 595 0.0 0.7 10852 3664 ? S 21:18 0:00 /usr/sbin/chr_chrony 596 0.0 0.1 10724 548 ? S 21:18 0:00 \_ /usr/sbinroot 610 0.0 3.7 26612 17412 ? Ss 21:18 0:00 /usr/bin/pythrades/unattended-upgrade-shutdown --wait-for-signal admin@i-0f11b62e125014253:~$ curl 127