command-line-murders/i-07bd860cbbf85a1a6
by SadServersMore by SadServers
42108d7968f7038 (ED25519) Jan 12 17:27:40 i-0842108d7968f7038 ec2: 3072 SHA256:hj5IRhHgQNWK1wNwOHkxby3pdb0842108d7968f7038 (RSA) Jan 12 17:27:40 i-0842108d7968f7038 ec2: -----END SSH HOST KEY FINGERPRINTS-----Jan 12 17:27:40 i-0842108d7968f7038 ec2: #######################################admin@i-0842108d7968f7038:~$ curl localhost curl: (7) Failed to connect to localhost port 80: Connection refused admin@i-0842108d7968f7038:~$ curl localhost:3000 curl: (7) Failed to connect to localhost port 3000: Connection refused admin@i-0842108d7968f7038:~$ curl localhost:5000 Unauthorizedadmin@i-0842108d7968f7038:~$ lsof -i -P -n | grep LISTEN gotty 558 admin 6u IPv6 10589 0t0 TCP *:8080 (LISTEN) sadagent 559 admin 7u IPv6 11492 0t0 TCP *:6767 (LISTEN) admin@i-0842108d7968f7038:~$ less /etc/services admin@i-0842108d7968f7038:~$ lsof -i:
paris/i-0842108d7968f7038 03:30
by SadServersty1 Ss+ 20:00 0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux root 593 0.0 0.4 4396 2028 ttyS0 Ss+ 20:00 0:00 /sbin/agetty -o -p -- \u --keep-baud 115200,57 _chrony 595 0.0 0.7 10852 3716 ? S 20:00 0:00 /usr/sbin/chronyd -F 1 _chrony 596 0.0 0.1 10724 552 ? S 20:00 0:00 \_ /usr/sbin/chronyd -F 1 root 611 0.0 3.7 26612 17296 ? Ss 20:00 0:00 /usr/bin/python3 /usr/share/unattended-upgrade admin@i-020b6c81f12d03fba:~$ ca
paris/i-020b6c81f12d03fba 04:05
by SadServerslrwxrwxrwx 1 root root 8 Nov 7 2019 ypdomainname -> hostname -rwxr-xr-x 1 root root 2.0K Apr 10 2022 zcat -rwxr-xr-x 1 root root 1.7K Apr 10 2022 zcmp -rwxr-xr-x 1 root root 5.8K Apr 10 2022 zdiff -rwxr-xr-x 1 root root 23K Apr 19 2023 zdump -rwxr-xr-x 1 root root 29 Apr 10 2022 zegrep -rwxr-xr-x 1 root root 29 Apr 10 2022 zfgrep -rwxr-xr-x 1 root root 2.1K Apr 10 2022 zforce -rwxr-xr-x 1 root root 7.9K Apr 10 2022 zgrep -rwxr-xr-x 1 root root 51K Sep 24 2021 zipdetails -rwxr-xr-x 1 root root 2.2K Apr 10 2022 zless -rwxr-xr-x 1 root root 1.8K Apr 10 2022 zmore -rwxr-xr-x 1 root root 4.5K Apr 10 2022 znew admin@i-09caab26a6727cfcc:/usr/bin$ cd admin@i-09caab26a6727cfcc:~$
paris/i-09caab26a6727cfcc 00:59
by SadServersdr-xr-xr-x 3 root root 0 Feb 6 06:31 task -rw-r--r-- 1 root root 0 Feb 6 06:31 timens_offsets -r--r--r-- 1 root root 0 Feb 6 06:31 timers -rw-rw-rw- 1 root root 0 Feb 6 06:31 timerslack_ns -rw-r--r-- 1 root root 0 Feb 6 06:31 uid_map -r--r--r-- 1 root root 0 Feb 6 06:31 wchan admin@i-0fb869488634369c7:/proc/575$ sudo usage: sudo -h | -K | -k | -V usage: sudo -v [-AknS] [-g group] [-h host] [-p prompt] [-u user] usage: sudo -l [-AknS] [-g group] [-h host] [-p prompt] [-U user] [-u user] [comusage: sudo [-AbEHknPS] [-r role] [-t type] [-C num] [-D directory] [-g group] [directory] [-T timeout] [-u user] [VAR=value] [-i|-s] [<command>] usage: sudo -e [-AknS] [-r role] [-t type] [-C num] [-D directory] [-g group] [-irectory] [-T timeout] [-u user] file ... admin@i-0fb869488634369c7:/proc/575$ sudo -