kihei/i-0d285af1bf9841b85
by SadServersMore by SadServers
-rw-r----- 1 root adm 6951 Feb 18 15:31 syslog -rw-r----- 1 root adm 88453 Feb 18 15:26 syslog.1 -rw-r----- 1 root adm 46670 Sep 24 2023 syslog.2.gz drwxr-x--- 2 root adm 4096 Feb 18 15:26 unattended-upgrades -rw-r----- 1 root adm 928 Feb 18 15:26 user.log -rw-r----- 1 root adm 7751 Sep 24 2023 user.log.1 -rw-r----- 1 root adm 2927 Sep 20 2023 user.log.2.gz -rw-rw-r-- 1 root utmp 67968 Feb 18 15:26 wtmp admin@i-08d02c91e01791c90:/var/log$ ll bash: ll: command not found admin@i-08d02c91e01791c90:/var/log$ vi syslog. syslog.1 syslog.2.gz admin@i-08d02c91e01791c90:/var/log$ vi syslog. syslog.1 syslog.2.gz admin@i-08d02c91e01791c90:/var/log$ vi syslog.
paris/i-08d02c91e01791c90 06:30
by SadServers42108d7968f7038 (ED25519) Jan 12 17:27:40 i-0842108d7968f7038 ec2: 3072 SHA256:hj5IRhHgQNWK1wNwOHkxby3pdb0842108d7968f7038 (RSA) Jan 12 17:27:40 i-0842108d7968f7038 ec2: -----END SSH HOST KEY FINGERPRINTS-----Jan 12 17:27:40 i-0842108d7968f7038 ec2: #######################################admin@i-0842108d7968f7038:~$ curl localhost curl: (7) Failed to connect to localhost port 80: Connection refused admin@i-0842108d7968f7038:~$ curl localhost:3000 curl: (7) Failed to connect to localhost port 3000: Connection refused admin@i-0842108d7968f7038:~$ curl localhost:5000 Unauthorizedadmin@i-0842108d7968f7038:~$ lsof -i -P -n | grep LISTEN gotty 558 admin 6u IPv6 10589 0t0 TCP *:8080 (LISTEN) sadagent 559 admin 7u IPv6 11492 0t0 TCP *:6767 (LISTEN) admin@i-0842108d7968f7038:~$ less /etc/services admin@i-0842108d7968f7038:~$ lsof -i:
paris/i-0842108d7968f7038 03:30
by SadServers-rw-r--r-- 1 admin admin 1024 Feb 29 07:33 .webserver.py.swp drwxr-xr-x 2 admin root 4096 Sep 24 23:20 agent -rwxrwx--- 1 root root 360 Sep 24 23:20 webserver.py admin@i-03d33c47959abc794:~$ file webserver.py webserver.py: regular file, no read permission admin@i-03d33c47959abc794:~$ curl localhost:5000 Unauthorizedadmin@i-03d33c47959abc794:~$ curl -I localhost:5000 HTTP/1.1 200 OK Server: Werkzeug/2.3.7 Python/3.9.2 Date: Thu, 29 Feb 2024 07:34:11 GMT Content-Type: text/html; charset=utf-8 Content-Length: 12 Connection: close admin@i-03d33c47959abc794:~$