command-line-murders/i-0d48b04ba1de73b41
by SadServersMore by SadServers
admin@i-01dd903cae99da8dd:~$ ls -la /home/admin/kihei -rwxr-xr-x 1 admin root 2207109 Sep 17 2023 /home/admin/kihei admin@i-01dd903cae99da8dd:~$ lsof /home/admin/kihei admin@i-01dd903cae99da8dd:~$ lsof /home/admin/ COMMAND PID USER FD TYPE DEVICE SIZE/OFF NODE NAME gotty 571 admin cwd DIR 259,3 4096 272476 /home/admin bash 681 admin cwd DIR 259,3 4096 272476 /home/admin asciinema 683 admin cwd DIR 259,3 4096 272476 /home/admin asciinema 686 admin cwd DIR 259,3 4096 272476 /home/admin sh 687 admin cwd DIR 259,3 4096 272476 /home/admin bash 688 admin cwd DIR 259,3 4096 272476 /home/admin lsof 733 admin cwd DIR 259,3 4096 272476 /home/admin lsof 734 admin cwd DIR 259,3 4096 272476 /home/admin admin@i-01dd903cae99da8dd:~$ lsof /home/admin/^C admin@i-01dd903cae99da8dd:~$ ps aux /
kihei/i-01dd903cae99da8dd 02:09
by SadServers#1) Respect the privacy of others. #2) Think before you type. #3) With great power comes great responsibility. [sudo] password for admin: sudo: a password is required admin@i-01ea60294022f2d7a:~$ curl localhost:5000 Unauthorizedadmin@i-01ea60294022f2d7a:~$ ns localhost:5000 bash: ns: command not found admin@i-01ea60294022f2d7a:~$ nc localhost:5000 nc: missing port number admin@i-01ea60294022f2d7a:~$ GET / bash: GET: command not found admin@i-01ea60294022f2d7a:~$ nc localhost:5000
paris/i-01ea60294022f2d7a 01:32
by SadServers-upgrades/unattended-upgrade-shutdown -- root 685 0.0 0.0 0 0 ? I 04:20 0:00 [kworker/1:4-admin 687 0.0 0.9 6740 4512 pts/0 S<s+ 04:20 0:00 bash -l admin 691 0.5 4.1 98188 19348 pts/0 S<l+ 04:20 0:00 /usr/bin/pythc -t paris/i-0cea73f15d68f034f -q -i 2 / admin 694 0.0 3.0 24456 14436 pts/0 S<+ 04:20 0:00 /usr/bin/pythc -t paris/i-0cea73f15d68f034f -q -i 2 / admin 695 0.0 0.1 2480 572 pts/1 S<s 04:20 0:00 sh -c /bin/baadmin 696 0.0 1.0 6952 4724 pts/1 S< 04:20 0:00 /bin/bash admin 709 0.0 0.6 8648 3240 pts/1 R<+ 04:20 0:00 ps aux admin@i-0cea73f15d68f034f:~$ ps aux|grep -i web root 574 0.5 6.0 107132 28320 ? Ss 04:20 0:00 /usr/bin/pyth.py admin 712 0.0 0.1 5132 640 pts/1 S<+ 04:20 0:00 grep -i web admin@i-0cea73f15d68f034f:~$
paris/i-0cea73f15d68f034f 00:54
by SadServersPassing on a "Transfer-Encoding: chunked" header when doing a HT quest body, will make curl send the data using chunked encoding. Example: curl -H "X-First-Name: Joe" http://example.com/ WARNING: headers set with this option will be set in all requests rects are followed, like when told with -L, --location. This can l ing sent to other hosts than the original host, so sensitive head with caution combined with following redirects. This option can be used multiple times to add/replace/remove multi Manual page curl(1) line 1104 (press h for help or q to quit)