SadServers Joined on September 10, 2023
1961 public recordings by SadServers
-r--r--r-- 1 root root 0 Nov 28 20:01 timers -rw-rw-rw- 1 root root 0 Nov 28 20:01 timerslack_ns -rw-r--r-- 1 root root 0 Nov 28 20:01 uid_map -r--r--r-- 1 root root 0 Nov 28 20:01 wchan admin@i-03c3097309a075b56:/proc/576$ cd map_files/ bash: cd: map_files/: Permission denied admin@i-03c3097309a075b56:/proc/576$ ls -l^C admin@i-03c3097309a075b56:/proc/576$ less smaps smaps: Permission denied admin@i-03c3097309a075b56:/proc/576$ cat smaps cat: smaps: Permission denied admin@i-03c3097309a075b56:/proc/576$ stra^C admin@i-03c3097309a075b56:/proc/576$ strace -p 576 strace: attach: ptrace(PTRACE_SEIZE, 576): Operation not permitted admin@i-03c3097309a075b56:/proc/576$
paris/i-03c3097309a075b56 01:47
by SadServers-rw-r--r-- 1 root root 0 Nov 28 19:24 setgroups -r--r--r-- 1 root root 0 Nov 28 19:24 smaps -r--r--r-- 1 root root 0 Nov 28 19:24 smaps_rollup -r-------- 1 root root 0 Nov 28 19:24 stack -r--r--r-- 1 root root 0 Nov 28 19:20 stat -r--r--r-- 1 root root 0 Nov 28 19:24 statm -r--r--r-- 1 root root 0 Nov 28 19:20 status -r-------- 1 root root 0 Nov 28 19:24 syscall dr-xr-xr-x 3 root root 0 Nov 28 19:24 task -rw-r--r-- 1 root root 0 Nov 28 19:24 timens_offsets -r--r--r-- 1 root root 0 Nov 28 19:24 timers -rw-rw-rw- 1 root root 0 Nov 28 19:24 timerslack_ns -rw-r--r-- 1 root root 0 Nov 28 19:24 uid_map -r--r--r-- 1 root root 0 Nov 28 19:24 wchan admin@i-0f502522293dd2f2c:/proc/571$ ps axuwwf |"
paris/i-0f502522293dd2f2c 05:01
by SadServersNov 28 16:41:52 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:52] "GET / HTTP/1.1" 200 - Nov 28 16:41:52 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:52] "GET / HTTP/1.1" 200 - Nov 28 16:41:52 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:52] "GET / HTTP/1.1" 200 - Nov 28 16:41:52 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:52] "GET / HTTP/1.1" 200 - Nov 28 16:41:52 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:52] "GET / HTTP/1.1" 200 - Nov 28 16:41:52 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:52] "GET / HTTP/1.1" 200 - Nov 28 16:41:53 i-0018cc7eb8ecd8de9 python3[564]: 127.0.0.1 - - [28/Nov/2024 16:41:53] "GET / HTTP/1.1" 200 - admin@i-0018cc7eb8ecd8de9:~$ q
paris/i-0018cc7eb8ecd8de9 06:40
by SadServers--key FILE The key file to use when specifying a certificate. --reload / --no-reload Enable or disable the reloader. By default the reloader is active if debug is enabled. --debugger / --no-debugger Enable or disable the debugger. By default the debugger is active if debug is enabled. --with-threads / --without-threads Enable or disable multithreading. --extra-files PATH Extra files that trigger a reload on change. Multiple paths are separated by ':'. --exclude-patterns PATH Files matching these fnmatch patterns will not trigger a reload on change. Multiple patterns are separated by ':'. --help Show this message and exit. admin@i-0a7121b58e7b89b1f:~$ flask run webserver.py
paris/i-0a7121b58e7b89b1f 02:47
by SadServers^Csudo: 2 incorrect password attempts admin@i-05f19733b5c36166e:~$ ls -alh total 44K drwxr-xr-x 6 admin admin 4.0K Sep 24 2023 . drwxr-xr-x 3 root root 4.0K Sep 17 2023 .. drwx------ 3 admin admin 4.0K Sep 20 2023 .ansible -rw------- 1 admin admin 176 Nov 28 08:19 .bash_history -rw-r--r-- 1 admin admin 220 Aug 4 2021 .bash_logout -rw-r--r-- 1 admin admin 3.5K Aug 4 2021 .bashrc drwxr-xr-x 3 admin admin 4.0K Sep 20 2023 .config -rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4.0K Sep 17 2023 .ssh drwxr-xr-x 2 admin root 4.0K Sep 24 2023 agent -rwxrwx--- 1 root root 360 Sep 24 2023 webserver.py admin@i-05f19733b5c36166e:~$
paris/i-05f19733b5c36166e 00:55
by SadServersrtt min/avg/max/mdev = 0.023/0.031/0.034/0.004 ms admin@i-06ccaf22127d79ccf:~$ curl localhost curl: (7) Failed to connect to localhost port 80: Connection refused admin@i-06ccaf22127d79ccf:~$ dig localhost bash: dig: command not found admin@i-06ccaf22127d79ccf:~$ apt install dig E: Could not open lock file /var/lib/dpkg/lock-frontend - open (13: Permission dE: Unable to acquire the dpkg frontend lock (/var/lib/dpkg/lock-frontend), are yadmin@i-06ccaf22127d79ccf:~$ netcat localhost netcat: missing port number admin@i-06ccaf22127d79ccf:~$ netcat localhost:5000 netcat: missing port number admin@i-06ccaf22127d79ccf:~$ ls agent webserver.py admin@i-06ccaf22127d79ccf:~$
paris/i-06ccaf22127d79ccf 01:33
by SadServersadmin@i-0f0fc0419b1540f81:~$ sudo pvcreate /dev/nvme1 nvme1 nvme1n1 admin@i-0f0fc0419b1540f81:~$ sudo pvcreate /dev/nvme1 nvme1 nvme1n1 admin@i-0f0fc0419b1540f81:~$ sudo pvcreate /dev/nvme1n1 /dev/nvme2 nvme2 nvme2n1 admin@i-0f0fc0419b1540f81:~$ sudo pvcreate /dev/nvme1n1 /dev/nvme2 nvme2 nvme2n1 admin@i-0f0fc0419b1540f81:~$ sudo pvcreate /dev/nvme1n1 /dev/nvme2n1 Physical volume "/dev/nvme1n1" successfully created. Physical volume "/dev/nvme2n1" successfully created. admin@i-0f0fc0419b1540f81:~$ vgcreate vg /dev/nvme1n1 /dev/nvme2n1 WARNING: Running as a non-root user. Functionality may be unavailable. /run/lock/lvm/P_global:aux: open failed: Permission denied admin@i-0f0fc0419b1540f81:~$
kihei/i-0f0fc0419b1540f81 02:07
by SadServers> GET / HTTP/1.1 > Host: localhost:5000 > User-Agent: curl/7.74.0 > Accept: */* > * Mark bundle as not supporting multiuse < HTTP/1.1 200 OK < Server: Werkzeug/2.3.7 Python/3.9.2 < Date: Tue, 26 Nov 2024 07:04:49 GMT < Content-Type: text/html; charset=utf-8 < Content-Length: 12 < Connection: close < * Closing connection 0 Unauthorizedadmin@i-01e2944ab36dfdbe2:~$
paris/i-01e2944ab36dfdbe2 01:05
by SadServersfind: ‘/var/cache/private’: Permission denied find: ‘/var/cache/ldconfig’: Permission denied find: ‘/var/cache/apt/archives/partial’: Permission denied find: ‘/var/cache/apparmor/c08a2770.0’: Permission denied find: ‘/var/spool/rsyslog’: Permission denied find: ‘/var/spool/cron/crontabs’: Permission denied find: ‘/var/tmp/systemd-private-9f2badbbb91d448495163a36e0cc284b-chrony.service-find: ‘/var/tmp/systemd-private-9f2badbbb91d448495163a36e0cc284b-systemd-logind.enied find: ‘/var/log/private’: Permission denied find: ‘/var/log/chrony’: Permission denied find: ‘/var/lib/private’: Permission denied find: ‘/var/lib/apt/lists/partial’: Permission denied find: ‘/var/lib/chrony’: Permission denied admin@i-0f010295ecb30725e:~$ find / -type f | grep webse
paris/i-0f010295ecb30725e 02:33
by SadServerstotal 5245084 drwxr-xr-x 7 admin admin 4096 Nov 24 05:54 . drwxr-xr-x 3 root root 4096 Sep 17 2023 .. drwx------ 3 admin admin 4096 Sep 17 2023 .ansible -rw------- 1 admin admin 65 Nov 24 05:54 .bash_history -rw-r--r-- 1 admin admin 220 Aug 4 2021 .bash_logout -rw-r--r-- 1 admin admin 3526 Aug 4 2021 .bashrc drwxr-xr-x 3 admin admin 4096 Nov 24 05:49 .config -rw-r--r-- 1 admin admin 807 Aug 4 2021 .profile drwx------ 2 admin admin 4096 Sep 17 2023 .ssh drwxr-xr-x 2 admin root 4096 Sep 17 2023 agent drwxr-xr-x 2 admin root 4096 Nov 24 05:56 data -rw-r--r-- 1 root root 5368709120 Sep 17 2023 datafile -rwxr-xr-x 1 admin root 2207109 Sep 17 2023 kihei admin@i-0196ce4cef0e287bd:~$ cat k
kihei/i-0196ce4cef0e287bd 01:17
by SadServers83 -q -i 2 /var/log/cast/i-0df1765d3 admin 681 0.0 3.0 24456 14444 pts/0 R<+ 02:55 0:00 /usr/bin/pyth83 -q -i 2 /var/log/cast/i-0df1765d3 admin 682 0.0 0.1 2480 572 pts/1 S<s 02:55 0:00 sh -c /bin/baadmin 683 0.0 0.9 6820 4536 pts/1 S< 02:55 0:00 /bin/bash admin 716 0.0 0.6 8648 3136 pts/1 R<+ 02:56 0:00 ps -aux admin@i-0df1765d381c3a083:~$ ps -aux | grep kihei admin 678 0.4 4.1 98188 19260 pts/0 S<l+ 02:55 0:00 /usr/bin/pyth83 -q -i 2 /var/log/cast/i-0df1765d381c3a083 admin 681 0.0 3.0 24456 14444 pts/0 S<+ 02:55 0:00 /usr/bin/pyth83 -q -i 2 /var/log/cast/i-0df1765d381c3a083 admin 718 0.0 0.1 5264 704 pts/1 S<+ 02:56 0:00 grep kihei admin@i-0df1765d381c3a083:~$ ls agent data datafile kihei admin@i-0df1765d381c3a083:~$
kihei/i-0df1765d381c3a083 00:56
by SadServers.itab.*reflect.rtype,reflect.Typego.itab.*flag.durationValue,flag.Valuego.itab.*lue,flag.Valuego.itab.*flag.intValue,flag.Valuego.itab.*flag.int64Value,flag.Valg.stringValue,flag.Valuego.itab.*flag.uintValue,flag.Valuego.itab.*flag.uint64Vago.itab.*strings.Builder,io.Writergo.itab.*errors.errorString,errorgo.itab.*fmt.rgo.itab.*fmt.pp,fmt.Statego.itab.*os.File,io.Readergo.itab.syscall.Signal,os.Sio/fs.PathError,errorgo.itab.*os.SyscallError,errorgo.itab.syscall.Errno,errorgo.iter,io.Writergo.itab.*os.fileStat,io/fs.FileInfogo.itab.*io.LimitedReader,io.Res.File,io.Closergo.itab.*os/exec.ExitError,errorgo.itab.*os/exec.Error,errorgo.ider,io.Readergo.itab.os/user.UnknownUserIdError,errorgo.itab.*internal/reflectlinal/reflectlite.Typego.itab.time.fileSizeError,errorgo.itab.*internal/fmtsort.Sonterfacego.itab.runtime.errorString,error_cgo_init_cgo_thread_start_cgo_notify_rne_cgo_callers_cgo_yield_cgo_mmap_cgo_munmap_cgo_sigactionruntime.mainPCgo.itab..DeadlineExceededError,errorgo.itab.internal/poll.errNetClosing,errorruntime.defruntime.buildVersion.strruntime.modinfo.strtype.*runtime.textsectionmaproot@i-0b3:/home/admin#