command-line-murders/i-0d874500b71e25578
by SadServersMore by SadServers
root 588 0.1 0.3 2872 1652 tty1 Ss+ 15:43 0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux root 590 0.0 0.4 4396 2140 ttyS0 Ss+ 15:43 0:00 /sbin/agetty -o -p -- \u --keep-baud 115200,57600,38400,9600 ttyS0 vt220 root 591 0.0 1.5 13352 7188 ? Ss 15:43 0:00 sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 startups _chrony 593 0.0 0.7 10852 3596 ? S 15:43 0:00 /usr/sbin/chronyd -F 1 _chrony 604 0.0 0.1 10724 552 ? S 15:43 0:00 \_ /usr/sbin/chronyd -F 1 root 603 0.0 3.7 26612 17364 ? Ss 15:43 0:00 /usr/bin/python3 /usr/share/unattended-upgrades/unattended-upgrade-shutdown --wait-for-signaladmin@i-001eabc18e1752db3:~$ cat ~/webserver.py cat: /home/admin/webserver.py: Permission denied admin@i-001eabc18e1752db3:~$
paris/i-001eabc18e1752db3 03:40
by SadServersroot 614 0.0 0.0 0 0 ? I 11:23 0:00 [kworker/0:3-root 678 0.0 0.0 0 0 ? I 11:23 0:00 [kworker/0:4-admin 709 0.0 0.9 6740 4376 pts/0 S<s+ 11:24 0:00 bash -l admin 714 0.2 4.1 98188 19364 pts/0 S<l+ 11:24 0:00 /usr/bin/pythadmin 717 0.0 3.1 24456 14504 pts/0 R<+ 11:24 0:00 /usr/bin/pythadmin 718 0.0 0.1 2480 508 pts/1 S<s 11:24 0:00 sh -c /bin/baadmin 719 0.0 0.9 6820 4612 pts/1 S< 11:24 0:00 /bin/bash admin 759 0.0 0.6 8648 3248 pts/1 R<+ 11:25 0:00 ps aux admin@i-0c3de957f9712f12c:~$ ls agent webserver.py admin@i-0c3de957f9712f12c:~$ less webserver.py webserver.py: Permission denied admin@i-0c3de957f9712f12c:~$ cat webserver.py cat: webserver.py: Permission denied admin@i-0c3de957f9712f12c:~$ ls -
paris/i-0c3de957f9712f12c 01:23
by SadServers</body> </html> Connection closed by foreign host. admin@i-06cd2f2879efb2fb1:~$ nmap localhost Starting Nmap 7.80 ( https://nmap.org ) at 2024-02-28 12:40 UTC Nmap scan report for localhost (127.0.0.1) Host is up (0.00022s latency). Not shown: 997 closed ports PORT STATE SERVICE 22/tcp open ssh 5000/tcp open upnp 8080/tcp open http-proxy Nmap done: 1 IP address (1 host up) scanned in 0.09 seconds admin@i-06cd2f2879efb2fb1:~$ telnet localhost 5000