command-line-murders/i-010e8c8e731a8855b
by SadServersMore by SadServers
_chrony 602 0.0 0.7 10856 3596 ? S 19:12 0:00 /usr/sbin/chrroot 609 0.0 3.7 26612 17272 ? Ss 19:12 0:00 /usr/bin/pyth-upgrades/unattended-upgrad _chrony 611 0.0 0.1 10724 552 ? S 19:12 0:00 /usr/sbin/chrroot 913 0.0 0.0 0 0 ? I 19:17 0:00 [kworker/1:1-admin 916 0.0 0.7 5920 3624 pts/0 S<s+ 19:18 0:00 bash -l admin 918 0.2 4.1 98188 19372 pts/0 R<l+ 19:18 0:00 /usr/bin/pythc -t kihei/i-058f99da3418f9 admin 921 0.0 3.2 24456 14984 pts/0 S<+ 19:18 0:00 /usr/bin/pythc -t kihei/i-058f99da3418f9 admin 922 0.0 0.1 2480 568 pts/1 S<s 19:18 0:00 sh -c /bin/baadmin 923 0.0 1.0 6952 4880 pts/1 S< 19:18 0:00 /bin/bash root 947 0.0 0.0 0 0 ? I 19:18 0:00 [kworker/0:0-admin 1046 0.0 0.7 8648 3268 pts/1 R<+ 19:19 0:00 ps waux admin@i-058f99da3418f95da:~$
kihei/i-058f99da3418f95da 06:55
by SadServersnvme0n1 ├─nvme0n1p1 ext4 1.0 811e12d8-f542-4650-9330-8d96633bd90c 1.2G ├─nvme0n1p14 └─nvme0n1p15 vfat FAT16 8690-F844 117.8M nvme1n1 nvme2n1 admin@i-03e8621f09ba2ba4e:~$ lvs WARNING: Running as a non-root user. Functionality may be unavailable. /run/lock/lvm/P_global:aux: open failed: Permission denied admin@i-03e8621f09ba2ba4e:~$ sudo lvs admin@i-03e8621f09ba2ba4e:~$ ls -la data total 8 drwxr-xr-x 2 admin root 4096 Oct 26 07:02 . drwxr-xr-x 7 admin admin 4096 Oct 26 07:02 .. admin@i-03e8621f09ba2ba4e:~$ sudo
kihei/i-03e8621f09ba2ba4e 03:40
by SadServers-rw-r--r-- 1 admin admin 3526 Aug 4 2021 .bashrc drwxr-xr-x 3 admin admin 4096 Sep 20 2023 .config -rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4096 Sep 17 2023 .ssh drwxr-xr-x 2 admin root 4096 Sep 24 2023 agent -rwxrwx--- 1 root root 360 Sep 24 2023 webserver.py admin@i-0c7688c6e49a68923:~$ cd /var/log admin@i-0c7688c6e49a68923:/var/log$ ls alternatives.log auth.log btmp chrony daemon.log journal kern.log.2.gz messages.1 private syslog.1 user.lalternatives.log.1 auth.log.1 btmp.1 cloud-init-output.log daemon.log.1 kern.log lastlog messages.2.gz runit syslog.2.gz user.lapt auth.log.2.gz cast cloud-init.log daemon.log.2.g kern.log.1 messages minio.log syslog unattended-upgrades user.ladmin@i-0c7688c6e49a68923:/var/log$ less