paris/i-06cc86bd8a997be11
by SadServersMore by SadServers
pgrades/unattended-upgrade-shutdown -- root 620 0.0 0.0 0 0 ? I 21:48 0:00 [kworker/0:3-root 685 0.0 0.0 0 0 ? I 21:48 0:00 [kworker/0:4-admin 687 0.0 0.9 6740 4416 pts/0 S<s+ 21:49 0:00 bash -l admin 691 0.2 4.1 98188 19244 pts/0 D<l+ 21:49 0:00 /usr/bin/pyth-t paris/i-036f8423c1405f693 -q -i 2 / admin 694 0.0 3.0 24456 14396 pts/0 R<+ 21:49 0:00 /usr/bin/pyth-t paris/i-036f8423c1405f693 -q -i 2 / admin 695 0.0 0.1 2480 508 pts/1 S<s 21:49 0:00 sh -c /bin/baadmin 696 0.0 0.9 6820 4588 pts/1 S< 21:49 0:00 /bin/bash root 714 0.0 0.0 0 0 ? I 21:49 0:00 [kworker/1:3-root 716 0.0 0.0 0 0 ? I 21:49 0:00 [kworker/1:4-root 776 0.0 0.0 0 0 ? R 21:50 0:00 [kworker/u4:4admin 777 0.0 0.6 8648 3216 pts/1 R<+ 21:51 0:00 ps aux admin@i-036f8423c1405f693:~$
paris/i-036f8423c1405f693 02:01
by SadServers-rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4096 Sep 17 2023 .ssh drwxr-xr-x 2 admin root 4096 Sep 24 2023 agent -rwxrwx--- 1 root root 360 Sep 24 2023 webserver.py admin@i-049d7de41c1f65c5b:~$ python webserver.py bash: python: command not found admin@i-049d7de41c1f65c5b:~$ python3 webserver.py python3: can't open file '/home/admin/webserver.py': [Errno 13] Permission denieadmin@i-049d7de41c1f65c5b:~$ systemctl status | grep nginx └─838 grep nginx admin@i-049d7de41c1f65c5b:~$ ls agent webserver.py admin@i-049d7de41c1f65c5b:~$ ls agent check.sh sadagent sadagent.txt admin@i-049d7de41c1f65c5b:~$ curl localhost:50000
paris/i-049d7de41c1f65c5b 04:07
by SadServersgoroutine 1 [running]: main.main() ./main.go:64 +0x47d admin@i-0b7ecaf1b65fe9efe:~$ type /home/admin/kihei /home/admin/kihei is /home/admin/kihei admin@i-0b7ecaf1b65fe9efe:~$ file /home/admin/kihei /home/admin/kihei: ELF 64-bit LSB executable, x86-64, version 1 (SYSV), staticaladmin@i-0b7ecaf1b65fe9efe:~$ ls -la /home/admin/kihei -rwxr-xr-x 1 admin root 2207109 Sep 17 2023 /home/admin/kihei admin@i-0b7ecaf1b65fe9efe:~$ cd /var/log admin@i-0b7ecaf1b65fe9efe:/var/log$ ls alternatives.log btmp cloud-init-output.log debug journal messages apt cast cloud-init.log dpkg.log kern.log minio.log auth.log chrony daemon.log faillog lastlog private admin@i-0b7ecaf1b65fe9efe:/var/log$