Key | Value |
---|---|
FileSize | 182696 |
MD5 | 0BF4B4CF40D0106F17D6EEE6C15E046A |
PackageDescription | User space tools for security auditing The audit package contains the user space utilities for storing and searching the audit records generated by the audit subsystem in the Linux 2.6 kernel. . Also contains the audit dispatcher "audisp". |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | auditd |
PackageSection | admin |
PackageVersion | 1:2.6.6-1ubuntu1 |
SHA-1 | 08F39917CF98DDFE50BB813B33DEDEE8AA727A09 |
SHA-256 | 1B7771DD9A8C3E6388120F2B16E66D72E954EF6564F8675E8F5D821D37B574A9 |
hashlookup:children-total | 62 |
hashlookup:trust | 50 |
The searched file hash includes 62 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/examples/rules/30-stig.rules.gz |
FileSize | 2171 |
MD5 | 343E32B79DFA69B74838FC2902239832 |
SHA-1 | 02E255C49C8B8B037D8C2AB105177D15A6D48C63 |
SHA-256 | 12C1870F94233ED5631ED5033EF6E911CEC608F655D77781C910764672E742FC |
SSDEEP | 48:XV1aMO75SalNaijSC8Sm05lgBXunB72fq+JIpmoXxdxbxr2+z+:faShfwgB+ByjIYuPZh2u+ |
TLSH | T1A3415A8E5DBFCB15BC73CB08085EBBA45D554450181ED3E23C10B161AF3AAA9E6E013A |
Key | Value |
---|---|
FileName | ./usr/bin/aulast |
FileSize | 67576 |
MD5 | B15CB9B5077E0EFB8532FC95BFE2EBBB |
SHA-1 | 03B0467BEC554234C00DE4718A3537D182D039A5 |
SHA-256 | B6C711F47D9DA5CBCBAE7B2D03D75B77FF84EA10A5638BE0F17A6BED134E1BE9 |
SSDEEP | 1536:KitKrEF+f4JSDs9G3ghD89W3wxaLUlO/BDceaNl:Kgav |
TLSH | T1D7638463326DAB0BEB802A3E825D666133327D47036053835614432B2FDEB2DCE6FD49 |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/examples/rules/30-nispom.rules.gz |
FileSize | 1368 |
MD5 | 4802871AC8700C9AC83241B3913B66C3 |
SHA-1 | 0CF26EA9FCCBDF00F488802398986BF2E65817E0 |
SHA-256 | D5EE4D2C1E644658362260D23F25278B1F3B4250B02469DC062D25EDF311A776 |
SSDEEP | 24:XxsVjaWxrfmZMT/VK5+MRhFAU3Hq4IG5NJVkrJyFz6YDxspOLxnMhoKTZ:X6jPeZMTs5+oYU3om4dmjxs4L+HZ |
TLSH | T15321D8E6501B842093A89A44FD397CA36949702C57798AC18DB24236F28B25F1F664A1 |
Key | Value |
---|---|
CRC32 | 871200C4 |
FileName | README-rules |
FileSize | 890 |
MD5 | B56EE86EA7721E8667C1CAAC29D8AA4A |
OpSystemCode | 362 |
ProductCode | 163556 |
SHA-1 | 164BBC86312C7982281CA48086F2E37C5577FD07 |
SHA-256 | CEFDB6887DBF0CDBD77B8E4D796D27F6721AF71590A1A1FDE8B1E2D5F9490427 |
SSDEEP | 24:g9zoov6fwInXYhOOayvCEH5RmVjBjT6Mxn:UwfJXYhfLZUj9 |
SpecialCode | |
TLSH | T14411CC1B2E881B2A81933AE2FDDD23D8AF2242BD635CA520149F500AFC02B7585E39D4 |
db | nsrl_modern_rds |
insert-timestamp | 1646986441.264619 |
source | NSRL |
Key | Value |
---|---|
FileName | ./sbin/auditctl |
FileSize | 67688 |
MD5 | 301194AF2414E91D9EE345CE4618D122 |
SHA-1 | 18BF4486660C491D5DFBE364D493CB413924AC05 |
SHA-256 | 3D5846D4D3DDD398849D61098F80F8CF57E6B3623228804955E10AE64D05BC4C |
SSDEEP | 1536:NawxaLUlO/IZyzs3Qx6s9G3giD89/YpyDKRIiXYmQClzvYmm/:NR7/vY |
TLSH | T15163E763366D8B4AEB50763E931D6751B367AD0B03305307B51C430BAFDE73ACA6A918 |
Key | Value |
---|---|
CRC32 | 4F86115E |
FileName | ./usr/share/doc/auditd/examples/rules/22-ignore-chrony.rules |
FileSize | 252 |
MD5 | 82BD33F23A828FA4C071B4FA14FEFCA0 |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 298595 |
SHA-1 | 1C70886DA693BB5940340CA611AF173121268A12 |
SHA-256 | 2D90890ED78C0F75CD572D3E4D4055FF0884D4C7E63E2732EA97728B85CA272D |
SSDEEP | 6:jLVfHLGNrA5BEDijFen4WmdKl38jFeg4WmdKlv:jL9+M5BEkFenLmdKl3yFegLmdKlv |
SpecialCode | |
TLSH | T1D4D0A7625171703246CD47AE91B49DE82A25504347271BC4B0F58AAD613BC71FECFDB9 |
db | nsrl_modern_rds |
insert-timestamp | 1696458478.476194 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/README.Debian |
FileSize | 762 |
MD5 | B3227334EE362039157636427817912B |
SHA-1 | 1F16E2C6AF3B44FF3BBCA62804A4CEFB56111887 |
SHA-256 | 3FC3C889319C32A4CF030D58687C4E9F9AEA049F7E097028059406F397EB69A8 |
SSDEEP | 12:3+PQ8EXgb3jLUXJNFB4h6A+ysf2HCY2NO8J8BCQk6PfGWRVGWRROxnJYzGLun:3kEXgfgXJpPA+yTHCY201Xk6Wf+WJYzH |
TLSH | T1D50128273E80D7765640F0B1FD5A61D1DA2A34A833043074259DA10FE99552A93FDF76 |
Key | Value |
---|---|
CRC32 | C7459450 |
FileName | ausearch.8.gz |
FileSize | 4195 |
MD5 | D105B5EC08EFC5AB68950A4B478F3579 |
OpSystemCode | 362 |
ProductCode | 163556 |
SHA-1 | 201578A6019D5C0D0208E45CA68078ACEF3CAFAB |
SHA-256 | 1313529824FA1166266954F214DC3D2A67FBDBE1E78829D2A28D5B9577CC0B2B |
SSDEEP | 96:Tgon39EvPvyL7r6SaskaVApOt4/6duYNqZz1N:Nn39Ev3yuSaaVApO2/6duYNgN |
SpecialCode | |
TLSH | T192817E40996A08A6EBBD275AF42F84CC0E0253AA700B52A90429512F68522388FE70ED |
db | nsrl_modern_rds |
insert-timestamp | 1646990638.1322198 |
source | NSRL |
Key | Value |
---|---|
CRC32 | ECC1E13D |
FileName | ./etc/audisp/plugins.d/syslog.conf |
FileSize | 517 |
MD5 | 57421191EFE78160BD7E085DE99BF5CD |
OpSystemCode | 362 |
ProductCode | 163556 |
RDS:package_id | 298595 |
SHA-1 | 21AE729077A2D61BF35844445AFCEA26AB5D4643 |
SHA-256 | 3899D01E19AE0A6E08398CF43C4A0C5A3A709E464BDA1FE7491E5273F8569DD5 |
SSDEEP | 12:q1AKRNcA5yxfAun+jxqupDoBuM33nLS+eyeRqNwv:qb5yxfAmK/U3LS+/Xmv |
SpecialCode | |
TLSH | T187F0C076F2283675094817859F9AD3E6492A1FFA3138302320DE0C6C1225DE192B7FC5 |
db | nsrl_modern_rds |
insert-timestamp | 1696459818.5596983 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 9B2DA067 |
FileName | ./usr/share/man/man8/audispd.8.gz |
FileSize | 1159 |
MD5 | 135BB7129C559DBFDA3D7DB7C4F119C7 |
OpSystemCode | 362 |
ProductCode | 183711 |
RDS:package_id | 222721 |
SHA-1 | 2303B4F9ED81D8A3970B9F5236A990B86F91AC88 |
SHA-256 | A472521EACF96BAFF706D46B0BF46FBDC6FAEA3530B0990E1BC5E05CB1FC73E6 |
SSDEEP | 24:XuGxmtghkwHrEkYNBBZfiAc47XEf6AlOC6NCGW/NEjOyq05L0Xn7VJ:XuwFhk3vjoC61OC6cGGEVDwXn7VJ |
SpecialCode | |
TLSH | T1C321CA417E287187A971F41256C3544123042C5B07F9745EF7FF857F51280DA879DB52 |
db | nsrl_modern_rds |
insert-timestamp | 1727040854.401868 |
source | RDS.db |