Key | Value |
---|---|
FileSize | 53736 |
MD5 | F0E239AFC4BBE1FEA4DC71491C1DA651 |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1:2.8.5-2ubuntu6 |
SHA-1 | 05972EAB920056DDB2AF8831DCE5F3576B5BE348 |
SHA-256 | 9C33CB550B3EADBC32AB8247EC633B01194DB5CD592E20F44C1F2B41A66F6360 |
hashlookup:children-total | 16 |
hashlookup:trust | 50 |
The searched file hash includes 16 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 39144 |
MD5 | FEA80ADBFDF2398EB590A723C48BB2FD |
SHA-1 | 1FB847E1875C22AF07BEAE8B39B9AF8850617A39 |
SHA-256 | 5010CAF617CAFA8DC77B5AA89A16AC5BF9759C3384BF532C6FC1267420752E90 |
SSDEEP | 768:2kfZZEvCAIxZhJR5BpxZhJR5Bpxs0ckMU8Es0ckMU8Es0ckMU8Es0ckMU8EP3/nA:2kfZyj6CamBWkBzgmSq |
TLSH | T1BC03D80FF281597DC8D4D131CF9F45627232F845E232063F6F94A2BA2DD3A644A7AA35 |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-prelude.8.gz |
FileSize | 2088 |
MD5 | 9635CD7692B43DE32B33DE8CF1E4C0A4 |
SHA-1 | 2D93402611C688DD754C3CBAC12870C56BAF207A |
SHA-256 | 3FE4E06AD0C8B8BC6D2553B359268362EDA8459CCA22929DF8712FAB82368EC2 |
SSDEEP | 48:Xikc+/VpfW7CKm/zzwxq27WZPtIc8tLCgVVmpfmcVmSu:tl+OKm7x270+XLP2OcW |
TLSH | T175411947DEB8A0AC0ED39685856054B5E811A034FE6453FC18361F46A5931C3BA5CD3C |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd-zos-remote.8.gz |
FileSize | 3810 |
MD5 | 7E55F39A9CB9CBB7015C528056EB4938 |
RDS:package_id | 182052 |
SHA-1 | 359BAD44B01EE23C99AD3A381D3763338461D812 |
SHA-256 | 4D928EC8EEB09FA3AACE085318915952FF4BF7AD287B803325D90C4BA34BF838 |
SSDEEP | 96:PTHyWRUTUlfYgYb7dAyY77G6Nprzy1+mA:7tUTq+796NA17A |
TLSH | T107717C27162AF3B1307B23BB80E9A73A006519B994FBC02938406CDD8879702F0D57BE |
insert-timestamp | 1679426507.3935153 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 51456 |
MD5 | BC67794E9D9C2C5553285947AA7C9175 |
SHA-1 | 3A32D50250CB70F3F666FAB2BC3019DF6A2EFAD1 |
SHA-256 | F1DF6D412AFD4E65B693895FFAA1B594649191D075045455FEBA411EE8DFACB2 |
SSDEEP | 768:xjnOGXwwJR5BpxZhJR5BpxZhJRMU8Es0ckMU8Es0ckMU8Es0ckMU8Es0ckvXfHPe:xqZ0C+L91xKOm |
TLSH | T10333F70BF2A16CBEC8D0D4308A9FD2320631F415E231563F2B40677D2DAAA655B7EF65 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-remote.8.gz |
FileSize | 788 |
MD5 | EA760FE34FE2F9A4ED14F89910F1FDE5 |
RDS:package_id | 182052 |
SHA-1 | 4FFDE58FD6CEB5089017587C19DFA3573044CAE0 |
SHA-256 | F92779302EB66FFF8804D7A302E92AFD162F4795B221982DE3653A3FE21755F0 |
SSDEEP | 24:XevYB4YGTwyU2R7H4MA2yEzUosEPLxXUNmb:Xe9NwyUmj4mz4eXS0 |
TLSH | T106017A42257121077D4CA909DAE996D5592DC5203E20FF7CE571812D49E364FD3C50DF |
insert-timestamp | 1679426507.4002094 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./etc/audisp/audisp-remote.conf |
FileSize | 726 |
MD5 | 355D45D0595DA0591C7C35AF45B2C7F2 |
RDS:package_id | 293700 |
SHA-1 | 74CF73C92279021A218B09795F800AAA223B9419 |
SHA-256 | 2E4250DA94E620E9DC5FFBF0D0254650D446A02BD8EDC5E58E59655782983C48 |
SSDEEP | 12:LzAKRDoWZ3wPHt073ebjM5KhdlFRRZxd9YqXEfv+BkwBZHmdEmMDADAkw42dKZrE:1onP+DebLht/103+mwb+6b+Zr+p5Hptz |
TLSH | T1C5019C7920FA3C331CB76649F1A2FA8613B9611034CD1054735BD5651DAD6F4CB175A2 |
insert-timestamp | 1678967486.113112 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/audisp-remote.conf.5.gz |
FileSize | 3296 |
MD5 | 16F2837A84F66C1C20E3E76081B15046 |
SHA-1 | 7FB32CBEC5343A1FCDF00CD7C5E8902E72F38D09 |
SHA-256 | 665A9C33EF431E18A0B9D664EEDB18D2A226D9F56D648955429D70C238B42E66 |
SSDEEP | 96:DPJt4lC/GaeNw2m8iK4Q1SdY5OCUsgEzSa0vKcZK:DfcBNw2rCQ1SdTEgEfL |
TLSH | T168616D8520ACBA47F16A3961445FC3FD97EEAD80424B7C4F59E21B82344E44E8E24DF0 |
tar:gname | root |
tar:uname | root |