command-line-murders/i-002d01f536ef858a7
by SadServersMore by SadServers
581 ? Ss 0:00 /usr/bin/python3 /home/admin/webserver.py 582 ? Ssl 0:00 /usr/sbin/rsyslogd -n -iNONE 585 ? Ss 0:00 /lib/systemd/systemd-logind 590 tty1 Ss+ 0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux 591 ttyS0 Ss+ 0:00 /sbin/agetty -o -p -- \u --keep-baud 115200,57600,3 592 ? Ss 0:00 sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 star 594 ? S 0:00 /usr/sbin/chronyd -F 1 602 ? S 0:00 \_ /usr/sbin/chronyd -F 1 601 ? Ss 0:00 /usr/bin/python3 /usr/share/unattended-upgrades/una--wait-for-signal admin@i-00f8248b2e8900994:~$ ps -fax|grep http 900 pts/1 S<+ 0:00 \_ grep http admin@i-00f8248b2e8900994:~$ ps -fax|grep 5000 902 pts/1 S<+ 0:00 \_ grep 5000 admin@i-00f8248b2e8900994:~$ n
paris/i-00f8248b2e8900994 03:28
by SadServersed find: ‘./var/log/private’: Permission denied find: ‘./var/log/chrony’: Permission denied find: ‘./var/lib/private’: Permission denied find: ‘./var/lib/apt/lists/partial’: Permission denied find: ‘./var/lib/chrony’: Permission denied admin@i-0454b5c96348909f7:/$ ^C admin@i-0454b5c96348909f7:/$ ^C admin@i-0454b5c96348909f7:/$ find . -type f -iname "webserver.py" 2>/dev/null ./home/admin/webserver.py admin@i-0454b5c96348909f7:/$ pwd / admin@i-0454b5c96348909f7:/$ less a9da3e83a611 a9da3e83a611: No such file or directory admin@i-0454b5c96348909f7:/$ less /h
paris/i-0454b5c96348909f7 05:15
by SadServers;35:*.xcf=01;35:*.xwd=01;35:*.yuv=01;35:*.cgm=01;35:*.emf=01;35:*.ogv=01;35:*.ogu=00;36:*.flac=00;36:*.m4a=00;36:*.mid=00;36:*.midi=00;36:*.mka=00;36:*.mp3=00;336:*.ra=00;36:*.wav=00;36:*.oga=00;36:*.opus=00;36:*.spx=00;36:*.xspf=00;36: PROMPT_COMMAND=history -a;history -c;history -r; INVOCATION_ID=920af40af11844ab9f911ba07653b1f6 TERM=xterm-256color USER=admin SHLVL=2 JOURNAL_STREAM=8:10545 PATH=/usr/local/sbin:/usr/local/bin:/usr/sbin:/usr/bin:/sbin:/bin _=/usr/bin/env admin@i-085b2ac89e621076d:~$ cat ^C admin@i-085b2ac89e621076d:~$ nano webserver.py admin@i-085b2ac89e621076d:~$ ls /prox