command-line-murders/i-02a249cdecc0406d9
by SadServersMore by SadServers
apt cloud-init-output.log dpkg.log messages syslog.2.gauth.log cloud-init.log dpkg.log.1 messages.1 unattendedauth.log.1 daemon.log faillog messages.2.gz user.log auth.log.2.gz daemon.log.1 journal minio.log user.log.1btmp daemon.log.2.gz kern.log private user.log.2btmp.1 debug kern.log.1 runit wtmp admin@i-0742bf7ca8414ac5b:/var/log$ cd ^C admin@i-0742bf7ca8414ac5b:/var/log$ cd / admin@i-0742bf7ca8414ac5b:/$ ls bin dev home lib32 libx32 media opt root sbin sys usr boot etc lib lib64 lost+found mnt proc run srv tmp var admin@i-0742bf7ca8414ac5b:/$ cd admin@i-0742bf7ca8414ac5b:~$ ls agent webserver.py admin@i-0742bf7ca8414ac5b:~$
paris/i-0742bf7ca8414ac5b 01:47
by SadServers<... poll resumed>) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500^C admin@i-0432ed2a019015273:~/agent$ ) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500ps) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500 aux |) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500 grep) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500 -i s) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500tr) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500^C admin@i-0432ed2a019015273:~/agent$ k) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500illa) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500ll) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500
monaco/i-0432ed2a019015273 05:56
by SadServersdrwxrwsr-x 2 root mail 4096 Sep 28 2021 mail drwxr-xr-x 2 root root 4096 Sep 28 2021 opt lrwxrwxrwx 1 root root 4 Sep 28 2021 run -> /run drwxr-xr-x 4 root root 4096 Sep 28 2021 spool drwxrwxrwt 5 root root 4096 Feb 6 04:38 tmp admin@i-0746e5b388abec5a6:/var$ curl localhost:5000 Unauthorizedadmin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ admin@i-0746e5b388abec5a6:/var$ wget localhost:
paris/i-0746e5b388abec5a6 01:42
by SadServers[sudo] password for admin: Sorry, try again. [sudo] password for admin: Sorry, try again. [sudo] password for admin: sudo: 3 incorrect password attempts admin@i-048902c622e991104:~$ su Password: su: Authentication failure admin@i-048902c622e991104:~$ systemctl status nginx Unit nginx.service could not be found. admin@i-048902c622e991104:~$ systemctl status apache2 Unit apache2.service could not be found. admin@i-048902c622e991104:~$ curl -I local