paris/i-00eb05101ee0e1b16
by SadServersMore by SadServers
> Host: 127.0.0.1:5000 > User-Agent: curl/7.74.0 > Accept: */* > * Mark bundle as not supporting multiuse < HTTP/1.1 200 OK < Server: Werkzeug/2.3.7 Python/3.9.2 < Date: Tue, 14 Jan 2025 19:29:25 GMT < Content-Type: text/html; charset=utf-8 < Content-Length: 12 < Connection: close < * Closing connection 0 Unauthorizedadmin@i-0ec82287eecb31de5:~$ admin@i-0ec82287eecb31de5:~$ find / -newer t 2
paris/i-0ec82287eecb31de5 06:56
by SadServersroot 685 2 0 23:37 ? 00:00:00 [kworker/0:4-events] admin 687 563 0 23:37 pts/0 00:00:00 bash -l admin 691 687 0 23:37 pts/0 00:00:00 /usr/bin/python3 /usr/bin/asadmin 694 691 0 23:37 pts/0 00:00:00 /usr/bin/python3 /usr/bin/asadmin 695 691 0 23:37 pts/1 00:00:00 sh -c /bin/bash admin 696 695 0 23:37 pts/1 00:00:00 /bin/bash root 704 2 0 23:37 ? 00:00:00 [kworker/u4:4-events_unboundadmin 957 696 0 23:43 pts/1 00:00:00 ps -ef admin@i-0c6e74f29b5339b88:~$ ps -ef | grep web root 580 1 0 23:37 ? 00:00:00 /usr/bin/python3 /home/adminadmin 960 696 0 23:43 pts/1 00:00:00 grep web admin@i-0c6e74f29b5339b88:~$ cat /proc/580/mem cat: /proc/580/mem: Permission denied admin@i-0c6e74f29b5339b88:~$ ^Ct /proc/580/mem admin@i-0c6e74f29b5339b88:~$ cd /
paris/i-0c6e74f29b5339b88 06:10
by SadServerstcp TIME-WAIT 0 0 172.31.45.67:46 172.31.18.4:9000 tcp TIME-WAIT 0 0 172.31.45.67:46 172.31.18.4:9000 tcp TIME-WAIT 0 0 172.31.45.67:45 172.31.18.4:9000 tcp LISTEN 0 4096 *:67 *:* tcp LISTEN 0 4096 *:80 *:* tcp LISTEN 0 128 [::]:22 [::]:* tcp ESTAB 0 0 [::ffff:172.31.45.67]:80 [::ffff:172.31.16.109]:59956 admin@i-00c8d7508d4dbeee3:~$ ss -lan