command-line-murders/i-03455a2b63f53175c
by SadServersMore by SadServers
goroutine 1 [running]: main.main() ./main.go:64 +0x47d admin@i-0b7ecaf1b65fe9efe:~$ type /home/admin/kihei /home/admin/kihei is /home/admin/kihei admin@i-0b7ecaf1b65fe9efe:~$ file /home/admin/kihei /home/admin/kihei: ELF 64-bit LSB executable, x86-64, version 1 (SYSV), staticaladmin@i-0b7ecaf1b65fe9efe:~$ ls -la /home/admin/kihei -rwxr-xr-x 1 admin root 2207109 Sep 17 2023 /home/admin/kihei admin@i-0b7ecaf1b65fe9efe:~$ cd /var/log admin@i-0b7ecaf1b65fe9efe:/var/log$ ls alternatives.log btmp cloud-init-output.log debug journal messages apt cast cloud-init.log dpkg.log kern.log minio.log auth.log chrony daemon.log faillog lastlog private admin@i-0b7ecaf1b65fe9efe:/var/log$
kihei/i-0b7ecaf1b65fe9efe 00:50
by SadServersadmin@i-075f2b4944f673d35:~$ ss -tulpna | grep 5000 tcp LISTEN 0 128 127.0.0.1:5000 tcp TIME-WAIT 0 0 127.0.0.1:35450 admin@i-075f2b4944f673d35:~$ ls agent webserver.py admin@i-075f2b4944f673d35:~$ cat webserver.py cat: webserver.py: Permission denied admin@i-075f2b4944f673d35:~$ cd agent/ admin@i-075f2b4944f673d35:~/agent$ ls check.sh sadagent sadagent.txt admin@i-075f2b4944f673d35:~/agent$ cd .. admin@i-075f2b4944f673d35:~$
paris/i-075f2b4944f673d35 01:48
by SadServers<... poll resumed>) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500^C admin@i-0432ed2a019015273:~/agent$ ) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500ps) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500 aux |) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500 grep) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500 -i s) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500tr) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500^C admin@i-0432ed2a019015273:~/agent$ k) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500illa) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500ll) = 0 (Timeout) poll([{fd=3, events=POLLIN}], 1, 500