Key | Value |
---|---|
FileSize | 53952 |
MD5 | 32EE79FAA4166260F89D6290351F261E |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1:2.7.7-1ubuntu2 |
SHA-1 | 5810DF59825E115CE0FC3B4699304065F24B886F |
SHA-256 | 9B91DD045EB43C643ECD4CC2ABD96E8B879BFEA3FED0C20B4E86BC2F32D2F9AF |
hashlookup:children-total | 16 |
hashlookup:trust | 50 |
The searched file hash includes 16 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 43096 |
MD5 | 8DAF408EDDA920E4FF7D92021D9D394C |
SHA-1 | 01DBD13DAF236575570F64635A67DEBE478CDE95 |
SHA-256 | 355B96EBF9AC2F7DA2A3D1644143612CDEE91E43B35BAA2EA0762608D6428996 |
SSDEEP | 768:kOrulzLT0hlJxYetWmiQbHOnU7mfoMXISVu:kOQvm/ZfDtMXISVu |
TLSH | T18A132B07B39348BDC561CB30456BA7716E70B851D231A63F220567793E62BA80B2FF75 |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd-zos-remote.8.gz |
FileSize | 3810 |
MD5 | 7E55F39A9CB9CBB7015C528056EB4938 |
RDS:package_id | 182052 |
SHA-1 | 359BAD44B01EE23C99AD3A381D3763338461D812 |
SHA-256 | 4D928EC8EEB09FA3AACE085318915952FF4BF7AD287B803325D90C4BA34BF838 |
SSDEEP | 96:PTHyWRUTUlfYgYb7dAyY77G6Nprzy1+mA:7tUTq+796NA17A |
TLSH | T107717C27162AF3B1307B23BB80E9A73A006519B994FBC02938406CDD8879702F0D57BE |
insert-timestamp | 1679426507.3935153 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-prelude.8.gz |
FileSize | 2090 |
MD5 | 175090956E5769A8A62E0D6661119B4A |
RDS:package_id | 182052 |
SHA-1 | 48FAABB5DC1C226E51D6B778248D06E4B84FA673 |
SHA-256 | 5BEDC12EDD0B76387AC16BC221E4911122C8037061364A625A652D9B3AEC8358 |
SSDEEP | 48:XlW9Q09xm/MVE1O2i+CvNj3/ykO5ECYspE+ltC2dfC+D+lBKB0eQtkbx:w9QoI/MVEsxNjU5/YcE+lo2Vz4jesk1 |
TLSH | T168411CCD98B33E1F15A373A551287897F73D18391AB4342C5488EBA3DA8A1711F1F423 |
insert-timestamp | 1679426507.4072115 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-remote.8.gz |
FileSize | 788 |
MD5 | EA760FE34FE2F9A4ED14F89910F1FDE5 |
RDS:package_id | 182052 |
SHA-1 | 4FFDE58FD6CEB5089017587C19DFA3573044CAE0 |
SHA-256 | F92779302EB66FFF8804D7A302E92AFD162F4795B221982DE3653A3FE21755F0 |
SSDEEP | 24:XevYB4YGTwyU2R7H4MA2yEzUosEPLxXUNmb:Xe9NwyUmj4mz4eXS0 |
TLSH | T106017A42257121077D4CA909DAE996D5592DC5203E20FF7CE571812D49E364FD3C50DF |
insert-timestamp | 1679426507.4002094 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/audisp-prelude |
FileSize | 51424 |
MD5 | 1707740E54BB90C8EEA7F3E18EEBCFCF |
SHA-1 | 7ACA4BBF733837FEE911FDC2FD187EEA5971FFF1 |
SHA-256 | B50F169D1203B110C31AFD679136F4EA4A3CB7BAC26D440064BA05874082BC4E |
SSDEEP | 768:SCaZyMVmnI4gq9snoFU7D2OjW98ANIGuYZrHjf+HvlumlP4of:0ZJCOqSyU7a18AOYZrrydOE |
TLSH | T12C330A0BB6D080FCC6A4CB7499CB62721EF83850D631B63EB6146E782922B544F1FF65 |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/audisp-prelude.conf.5.gz |
FileSize | 1386 |
MD5 | E9CF351E5EA325FEF3CE89E59BBD930F |
RDS:package_id | 182052 |
SHA-1 | 946ADC96A68057089FB012751539AD317EE7793C |
SHA-256 | DB73C9DA01C6E3264D1AEBFA51DF02FBA2BE069183D4182A0DEF5E49CF96C746 |
SSDEEP | 24:XTJnmZIqcAkIbMhBrMTl8YJ21G9RSkuIz6hiOKQw8Iz9YwhlCgmqddv:XTJn4cUGBrIWE9RD364XZVYUl64 |
TLSH | T1F5210BCC6FD34F1E9161D532EA3CE860F3D546D6564C2F9D4B0531486406C1C7D1BC90 |
insert-timestamp | 1679426507.3764014 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 30792 |
MD5 | 13242D1C1EDEA6DF0983FCC826C59D18 |
SHA-1 | 9AD1C5540A39BF50E5845E04AC3C6047F156BA05 |
SHA-256 | 8EF525BBC446314C849BE36D9B98B201CFBF6D08B0D88537EE32A2137E3B2067 |
SSDEEP | 768:eM9Mlk4ZPWgqq4BRAJLJ9QWkgGZdUA9Ghz+AK8C:eM9Mlk4Z+o7J9AgGU88C |
TLSH | T1A6D21A8BBA9295BDCC90C7304A9B41317570B881E325522F3BCCB6B53D42F546B2F76A |