command-line-murders/i-07ab54530b3e98bee
by SadServersMore by SadServers
567 ? Ssl 0:00 /usr/sbin/rsyslogd -n -iNONE 570 ? Ss 0:00 /lib/systemd/systemd-logind 572 tty1 Ss+ 0:00 /sbin/agetty -o -p -- \u --noclear tty1 linux 573 ttyS0 Ss+ 0:00 /sbin/agetty -o -p -- \u --keep-baud 115200,57600,3 587 ? S 0:00 /usr/sbin/chronyd -F 1 588 ? Ss 0:00 sshd: /usr/sbin/sshd -D [listener] 0 of 10-100 star 589 ? S 0:00 /usr/sbin/chronyd -F 1 608 ? Ss 0:00 /usr/bin/python3 /usr/share/unattended-upgrades/una 681 pts/0 S<s+ 0:00 bash -l 685 pts/0 S<l+ 0:00 /usr/bin/python3 /usr/bin/asciinema rec -t paris/i- 688 pts/0 R<+ 0:00 /usr/bin/python3 /usr/bin/asciinema rec -t paris/i- 689 pts/1 S<s 0:00 sh -c /bin/bash 690 pts/1 S< 0:00 /bin/bash 741 pts/1 R<+ 0:00 ps -ax admin@i-06e8ffe7f101ff487:~$
paris/i-06e8ffe7f101ff487 01:36
by SadServersirc:x:39:39:ircd:/run/ircd:/usr/sbin/nologin gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/usr/sbin/nologinobody:x:65534:65534:nobody:/nonexistent:/usr/sbin/nologin _apt:x:100:65534::/nonexistent:/usr/sbin/nologin messagebus:x:101:101::/nonexistent:/usr/sbin/nologin uuidd:x:102:102::/run/uuidd:/usr/sbin/nologin tcpdump:x:103:103::/nonexistent:/usr/sbin/nologin _chrony:x:104:104:Chrony daemon,,,:/var/lib/chrony:/usr/sbin/nologin systemd-network:x:105:106:systemd Network Management,,,:/run/systemd:/usr/sbin/nsystemd-resolve:x:106:107:systemd Resolver,,,:/run/systemd:/usr/sbin/nologin sshd:x:107:65534::/run/sshd:/usr/sbin/nologin systemd-timesync:x:999:999:systemd Time Synchronization:/:/usr/sbin/nologin systemd-coredump:x:998:998:systemd Core Dumper:/:/usr/sbin/nologin admin:x:1000:1000:Debian:/home/admin:/bin/bash admin@i-09dd7a16c1516f9c8:~$ sudo cat /etc/passwd\
kihei/i-09dd7a16c1516f9c8 05:30
by SadServers=5,direct,pipe_ino=9613) hugetlbfs on /dev/hugepages type hugetlbfs (rw,relatime,pagesize=2M) mqueue on /dev/mqueue type mqueue (rw,nosuid,nodev,noexec,relatime) debugfs on /sys/kernel/debug type debugfs (rw,nosuid,nodev,noexec,relatime) tracefs on /sys/kernel/tracing type tracefs (rw,nosuid,nodev,noexec,relatime) fusectl on /sys/fs/fuse/connections type fusectl (rw,nosuid,nodev,noexec,relatimconfigfs on /sys/kernel/config type configfs (rw,nosuid,nodev,noexec,relatime) /dev/nvme0n1p15 on /boot/efi type vfat (rw,relatime,fmask=0022,dmask=0022,codepaortname=mixed,utf8,errors=remount-ro) binfmt_misc on /proc/sys/fs/binfmt_misc type binfmt_misc (rw,nosuid,nodev,noexecadmin@i-002fcecc6e43c1be2:~$ ps aux | grep webserver root 579 0.0 5.9 33040 27944 ? Ss 13:14 0:00 /usr/bin/pyth.py admin 935 0.0 0.1 5264 704 pts/1 S<+ 13:21 0:00 grep webserveadmin@i-002fcecc6e43c1be2:~$