command-line-murders/i-0a17b2cd534833d28
by SadServersMore by SadServers
lsof 791 admin mem REG 259,1 149524-linux-gnu/libpthread-2.31.so lsof 791 admin mem REG 259,1 18684-linux-gnu/libdl-2.31.so lsof 791 admin mem REG 259,1 617124-linux-gnu/libpcre2-8.so.0.10.1 lsof 791 admin mem REG 259,1 1901534-linux-gnu/libc-2.31.so lsof 791 admin mem REG 259,1 166124-linux-gnu/libselinux.so.1 lsof 791 admin mem REG 259,1 177924-linux-gnu/ld-2.31.so lsof 791 admin 4r FIFO 0,11 0tlsof 791 admin 7w FIFO 0,11 0tadmin@i-08470b485bf6eb405:~$ ss -tulnp
paris/i-08470b485bf6eb405 02:03
by SadServersroot 572 0.1 6.0 107132 28272 ? Ss 21:59 0:00 /usr/bin/pythroot 575 0.0 0.9 220796 4224 ? Ssl 21:59 0:00 /usr/sbin/rsyroot 585 0.0 1.4 13492 6540 ? Ss 21:59 0:00 /lib/systemd/root 590 0.0 1.5 13352 7188 ? Ss 21:59 0:00 sshd: /usr/sbroot 591 0.0 0.3 2872 1764 tty1 Ss+ 21:59 0:00 /sbin/agetty root 592 0.0 0.4 4396 2036 ttyS0 Ss+ 21:59 0:00 /sbin/agetty _chrony 594 0.0 0.7 10852 3604 ? S 21:59 0:00 /usr/sbin/chr_chrony 595 0.0 0.1 10724 556 ? S 21:59 0:00 \_ /usr/sbinroot 609 0.0 3.7 26612 17372 ? Ss 21:59 0:00 /usr/bin/pythroot 770 0.0 0.7 5788 3268 ? Ss 22:02 0:00 /bin/bash /roroot 789 0.0 6.7 1254320 31692 ? Sl 22:02 0:00 \_ mc mirroradmin@i-002259b1376148ae2:/var/log$ cd /home/admin/ admin@i-002259b1376148ae2:~$ ls agent webserver.py admin@i-002259b1376148ae2:~$ ps auxf | grep w
paris/i-002259b1376148ae2 02:30
by SadServersagent webserver.py admin@i-0360c0d51a2cc6a1e:~$ ss -lnt4p State Recv-Q Send-Q Local Address:Port Peer AddreLISTEN 0 128 127.0.0.1:5000 0.0.0LISTEN 0 128 0.0.0.0:22 0.0.0admin@i-0360c0d51a2cc6a1e:~$ curl localhost:5000 Unauthorizedadmin@i-0360c0d51a2cc6a1e:~$ ls agent webserver.py admin@i-0360c0d51a2cc6a1e:~$ string webserver.py bash: string: command not found admin@i-0360c0d51a2cc6a1e:~$ python webserver.py bash: python: command not found admin@i-0360c0d51a2cc6a1e:~$ python3 webserver.py python3: can't open file '/home/admin/webserver.py': [Errno 13] Permission denieadmin@i-0360c0d51a2cc6a1e:~$ c