command-line-murders/i-0405b021ee5a04980
by SadServersMore by SadServers
admin@i-07ee6b558ede8f810:~$ file /home/admin/kihei /home/admin/kihei: ELF 64-bit LSB executable, x86-64, version 1 (SYSV), staticalolUanvRPB7DWhc7e4I/nM83nW4qxDvf9asNaf7E/5u1Qa6jnFvq2KL4kV5G1/6IwNz7tVbey9uC58oKsadmin@i-07ee6b558ede8f810:~$ lsof /home/admin/kihei admin@i-07ee6b558ede8f810:~$ ls -l /home/admin/kihei -rwxr-xr-x 1 admin root 2207109 Sep 17 2023 /home/admin/kihei admin@i-07ee6b558ede8f810:~$ man strace
kihei/i-07ee6b558ede8f810 00:59
by SadServersdrwxr-xr-x 2 admin root 4096 Sep 24 23:20 agent -rwxrwx--- 1 root root 360 Sep 24 23:20 webserver.py admin@i-09ca2bfbe0a48f3ce:~$ ls -la .config/ total 12 drwxr-xr-x 3 admin admin 4096 Sep 20 15:56 . drwxr-xr-x 6 admin admin 4096 Sep 24 23:20 .. drwxr-xr-x 2 admin admin 4096 Sep 20 15:56 asciinema admin@i-09ca2bfbe0a48f3ce:~$ ls -la .config/asciinema/ total 12 drwxr-xr-x 2 admin admin 4096 Sep 20 15:56 . drwxr-xr-x 3 admin admin 4096 Sep 20 15:56 .. -rw-r--r-- 1 admin admin 36 Sep 20 15:56 install-id admin@i-09ca2bfbe0a48f3ce:~$ ls -la .config/asciinema/install-id -rw-r--r-- 1 admin admin 36 Sep 20 15:56 .config/asciinema/install-id admin@i-09ca2bfbe0a48f3ce:~$
paris/i-09ca2bfbe0a48f3ce 01:20
by SadServers25 2023-10-11T07:37:24 cd 26 2023-10-11T07:37:27 clear 27 2023-10-11T07:37:28 ls -la 28 2023-10-11T07:37:39 history admin@i-0bb8bee028b81617c:~$ cd .config/ admin@i-0bb8bee028b81617c:~/.config$ ls asciinema admin@i-0bb8bee028b81617c:~/.config$ ls -la total 12 drwxr-xr-x 3 admin admin 4096 Sep 20 15:56 . drwxr-xr-x 7 admin admin 4096 Oct 11 07:35 .. drwxr-xr-x 2 admin admin 4096 Sep 20 15:56 asciinema admin@i-0bb8bee028b81617c:~/.config$ ll bash: ll: command not found admin@i-0bb8bee028b81617c:~/.config$
paris/i-0bb8bee028b81617c 04:45
by SadServers#1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: sudo: a password is required admin@i-0883f8551b33b395b:~$ ^C admin@i-0883f8551b33b395b:~$ ^C admin@i-0883f8551b33b395b:~$ sudo usage: sudo -h | -K | -k | -V usage: sudo -v [-AknS] [-g group] [-h host] [-p prompt] [-u user] usage: sudo -l [-AknS] [-g group] [-h host] [-p prompt] [-U user] [-u user] [comusage: sudo [-AbEHknPS] [-r role] [-t type] [-C num] [-D directory] [-g group] [usage: sudo -e [-AknS] [-r role] [-t type] [-C num] [-D directory] [-g group] [-admin@i-0883f8551b33b395b:~$