Key | Value |
---|---|
FileSize | 187740 |
MD5 | B5EAC8BC074A2C112949828CFB781D14 |
PackageDescription | User space tools for security auditing The audit package contains the user space utilities for storing and searching the audit records generated by the audit subsystem in the Linux 2.6 kernel. . Also contains the audit dispatcher "audisp". |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | auditd |
PackageSection | admin |
PackageVersion | 1:2.8.5-2ubuntu1 |
SHA-1 | 0EAB5ED28C48198F969CE8BACCE35C6DA9BE2A17 |
SHA-256 | 6E25B5D5861D66190E5232BFAD2821B85A52CC7A04BF93AFEDC80070887C4A93 |
hashlookup:children-total | 63 |
hashlookup:trust | 50 |
The searched file hash includes 63 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./etc/audit/auditd.conf |
FileSize | 804 |
MD5 | A6FB050CC84B0681A69F9093E3CD45F9 |
SHA-1 | 0793BF69027759771859C14425439CECD1FDE525 |
SHA-256 | B1CB175540A846467492DD6A666C5E023D325822E35844DCFE960557A860045F |
SSDEEP | 12:LzAKR4JZooKK9PGq8bEIo3nDhp2MEI3Q3j4LXeOQ600tMSQOPUavAgEvG2o3zpW7:YCK/Dhp2MEI3Kj47jQ60KpUT0t/wZjv |
TLSH | T12A01F1B855E9FE569077D5C1E067414F0235B91C348817767A2FF854F5BDCC0AB83590 |
Key | Value |
---|---|
CRC32 | 96E3A8F0 |
FileName | ./usr/share/man/man7/audit.rules.7.gz |
FileSize | 4684 |
MD5 | DFAAD82AD21DA31471FD33B0E5AC351C |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 298595 |
SHA-1 | 0BC7B97579A039BA61DD9C1ACDC0DB0EBE6D15EF |
SHA-256 | 1C6451FE88913758B5EBA1709CDBD9350E29715112DB1C1C0553422E81D97C49 |
SSDEEP | 96:Ziy6Izzgy+qlr3Rx9L83NapAW9mDcZpeW+P7Bn7r4N1etsS:ZcwzgyLl3L89aRmAgn7oY6S |
SpecialCode | |
TLSH | T1E1A17E6F0D54E530131FB75FAB844E662AB40D4163DA4C86593F84DBF136830125DB4F |
db | nsrl_modern_rds |
insert-timestamp | 1696458477.9012852 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/examples/rules/30-nispom.rules.gz |
FileSize | 1368 |
MD5 | 4802871AC8700C9AC83241B3913B66C3 |
SHA-1 | 0CF26EA9FCCBDF00F488802398986BF2E65817E0 |
SHA-256 | D5EE4D2C1E644658362260D23F25278B1F3B4250B02469DC062D25EDF311A776 |
SSDEEP | 24:XxsVjaWxrfmZMT/VK5+MRhFAU3Hq4IG5NJVkrJyFz6YDxspOLxnMhoKTZ:X6jPeZMTs5+oYU3om4dmjxs4L+HZ |
TLSH | T15321D8E6501B842093A89A44FD397CA36949702C57798AC18DB24236F28B25F1F664A1 |
Key | Value |
---|---|
CRC32 | 0684E777 |
FileName | ./usr/share/man/man8/aulast.8.gz |
FileSize | 1053 |
MD5 | 5B5B6D87C92D63A31F61D59D5ECF303E |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 298595 |
SHA-1 | 15BFD0FC89A639533AA3DE7BFECA26BCA5BD4006 |
SHA-256 | C48351CE1EF7CD9C13A27FB482F80555116ED7A64D627237EDD03E85EB9B9C67 |
SSDEEP | 24:Xexa6tB9OnuVCdj2msIQCSw0epdQPKYATc01:Xaa6B9OnECdj2rItSlydXYoH1 |
SpecialCode | |
TLSH | T15F111C36520D0757B2A4C853746E311F04BD1C9DE8D3455D0A94B51B7D414CCD4B9BB1 |
db | nsrl_modern_rds |
insert-timestamp | 1696458477.7481477 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 8EC3FD27 |
FileName | ./usr/share/man/man8/aulastlog.8.gz |
FileSize | 474 |
MD5 | C7A3C20237A41D5690189E1D464A97AF |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 298595 |
SHA-1 | 189474C0A84AFB16DF7A2803B9B8AE17C536ED67 |
SHA-256 | F8CFACBF5A4E79765429E153750A4D149D0084C87A7494B74718077DB6AA6EA8 |
SSDEEP | 12:XgIsEmjAtLvEoaqFruTbfnb9eaTz56FNpxUeX9eLsJvAWyB2i0:XdsEmGcoxApH+NpWeX9wIvaAi0 |
SpecialCode | |
TLSH | T133F0543C0033BB3174829E23981C5F130EE50B0404DC4A20BCF73202F1EA1670769FA4 |
db | nsrl_modern_rds |
insert-timestamp | 1696458477.723863 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 4F86115E |
FileName | ./usr/share/doc/auditd/examples/rules/22-ignore-chrony.rules |
FileSize | 252 |
MD5 | 82BD33F23A828FA4C071B4FA14FEFCA0 |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 298595 |
SHA-1 | 1C70886DA693BB5940340CA611AF173121268A12 |
SHA-256 | 2D90890ED78C0F75CD572D3E4D4055FF0884D4C7E63E2732EA97728B85CA272D |
SSDEEP | 6:jLVfHLGNrA5BEDijFen4WmdKl38jFeg4WmdKlv:jL9+M5BEkFenLmdKl3yFegLmdKlv |
SpecialCode | |
TLSH | T1D4D0A7625171703246CD47AE91B49DE82A25504347271BC4B0F58AAD613BC71FECFDB9 |
db | nsrl_modern_rds |
insert-timestamp | 1696458478.476194 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/autrace |
FileSize | 14264 |
MD5 | 168D67667E2BE467D174C6ABEADFA300 |
SHA-1 | 1CF5142D71867CB81D44649C0D64EA5D3DAC6D0F |
SHA-256 | 9BD6303EB4066BAA4C3D0942F9CAC9B8E0F40700A2A549A5BC8EC835E19928AF |
SSDEEP | 192:mxq+8w7WOaKC139bg8QUbdm7BghKsvioCVTT46SP09uWAxEEYoY:iBWOaKCD08Q8BYc0/47s9RKEd |
TLSH | T1B3529595F60AD8BBC68747F1DE8B87F1B332405CE34A4393220C97546F92B6EDE69244 |
Key | Value |
---|---|
FileName | ./usr/bin/ausyscall |
FileSize | 10168 |
MD5 | 651703F6A7CCD0C98F7A9D6690A321A9 |
SHA-1 | 1EB275DFE722ED6E6E20EB40D1C16BBDB5882701 |
SHA-256 | 90F3E27ACDE210F8150B574C450A8834DEBA7541610E27D3A79103509AC06509 |
SSDEEP | 96:67qfdB+BYXpvybTWUZy+5VFj7+FC2fGYLbU8LRRoAVq6z:6mfdw2p4TFZLEFLlRRo |
TLSH | T13A22604AFF29E43BC4CE43394E9B15307376848AD3514373710CA2299F8339A4EA26D6 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd.8.gz |
FileSize | 1181 |
MD5 | 821E315F7D60E172411BA991C3D480EE |
RDS:package_id | 298595 |
SHA-1 | 1EBD2DC66A9BDCBCB7055D64569D5544EC8B2EE0 |
SHA-256 | 72918009F0C1A85E97AA9D83EE5C348DDC5E1F2E89865EE83030955D759766A6 |
SSDEEP | 24:X/U59a3dL1Ge8yCOXlhwCVDpaYIi/68mBAe6eLNeVfVWhlgnl:XMnqZYHyT1paYT/PmBoWM |
TLSH | T121210A83DF9012B8A8ED71C8D1489A512093B1EB2E25F650813FACCFA4242D408CCFA8 |
insert-timestamp | 1696458477.8752413 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/README.Debian |
FileSize | 762 |
MD5 | B3227334EE362039157636427817912B |
SHA-1 | 1F16E2C6AF3B44FF3BBCA62804A4CEFB56111887 |
SHA-256 | 3FC3C889319C32A4CF030D58687C4E9F9AEA049F7E097028059406F397EB69A8 |
SSDEEP | 12:3+PQ8EXgb3jLUXJNFB4h6A+ysf2HCY2NO8J8BCQk6PfGWRVGWRROxnJYzGLun:3kEXgfgXJpPA+yTHCY201Xk6Wf+WJYzH |
TLSH | T1D50128273E80D7765640F0B1FD5A61D1DA2A34A833043074259DA10FE99552A93FDF76 |