Key | Value |
---|---|
FileSize | 64982 |
MD5 | FEAD420E499D8EBCA09F204DD43779D6 |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Ubuntu MOTU Developers <ubuntu-motu@lists.ubuntu.com> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1.7.11-1ubuntu1 |
SHA-1 | 399BCF8F15FE36B6D83F975BCD51C797D2AE3DE4 |
SHA-256 | FF2A3AD76F38FC9AFE607DB7AA4A940857C14C3CCB956D81E20BF1BF491A2340 |
hashlookup:children-total | 18 |
hashlookup:trust | 50 |
The searched file hash includes 18 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./etc/audisp/audisp-remote.conf |
FileSize | 619 |
MD5 | BABA84EDEC82FBB8AD8DC205E9920B4F |
SHA-1 | 0E6DB6FB842DC6E23CCF35B4A9110A6D196A52C1 |
SHA-256 | 7B6E2282F5C1D090536BC9555118D90C5F3590260A807AD4FAC7465EF076F43E |
SSDEEP | 12:LzAKRDoWZ3wPHt073ebRFRReXYqXEfv+BkwBZHmdEmMDKAJjlKLHHppWpK/KoiG:1onP+Deb2X103+mwb+6FUzHpt/bX |
TLSH | T1FDF0DD7861FB3D3B0CB2668EFA61BA4207B96001349C00403747C5A81DAE4F4C717461 |
Key | Value |
---|---|
FileName | zos-remote.conf.5.gz |
FileSize | 1308 |
MD5 | F26E5D43E9C722758BA2CBEDFB6878CA |
RDS:package_id | 187003 |
SHA-1 | 132F05BBF20D7B38A4323287015CBD4052E7C003 |
SHA-256 | F99F4F353C0D415205A36BF390D78580EDA7568B5974F06F12A0AE136CFA5010 |
SSDEEP | 24:X8ja6giO03jpjOcB8ruCecUBaLbE5+uh7bZHR8WX6EzdfopXe6XIp6ioqZqp0xPt:XwVgizpjOcB8KC6BegdhfZ3Vzdcfio+l |
TLSH | T1B921F890D8045433C3AB47B5946F908BD4BE8EA4C9A698D78E7B0244CD3C747EDB00AF |
insert-timestamp | 1679424419.538601 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 26992 |
MD5 | E0F8C35538A0842897A9A2F7ECDEEBEA |
SHA-1 | 300E563E30054EA7E7CDD0CAA7EE291CC4DFCACF |
SHA-256 | 9F3052867A79AB4935A1FDD4604F73151D527C92A6B395BCF7AAF56837C438EB |
SSDEEP | 384:RND4CkrPHFt6qttvVWal72IxA5eP9nPOV0LvqKanc:RZkjHFMqfBlSIx3tP6ezanc |
TLSH | T16FC2B5525BF55D17C0D41332A4A30322B2BA5B86A755C70F7E4918FF2DC27186A3BBE8 |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/audisp-prelude.conf.5.gz |
FileSize | 1385 |
MD5 | A07EB49559943CD483267930E04543D1 |
SHA-1 | 4896C27D88480C8AA0DAAFA1150F6AACF8E4A792 |
SHA-256 | 400D051505B94DF35203776BD0F9224CB715AE7433DDA0609F383784ADD72327 |
SSDEEP | 24:XvaBnKFZmuPPHFSGCSo0ZOQkTXxW36fMMIvZRDADiAkju3KvZtWJ9YT+:Xy0XLPfcGC+J3wMd38+Akju3KRVT+ |
TLSH | T1E72108D1FB034CC9651CD2712198046F7C1E27C4DC75FF1E9202747BD72902BAB85861 |
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 35612 |
MD5 | 06ED30FED57799EA20298C7B6662F1AC |
SHA-1 | 5746521857421CD06F2E37E0DCECE0BE81706658 |
SHA-256 | 7CE5AAED26740B7631DF1F58B4D63BBF6A37A5FB95E9F9241DB28417F3885B38 |
SSDEEP | 768:xqQ3sD09uuXRY8w2TmtlMBcL6++RNY19Szty:X9u/L6++7YCE |
TLSH | T140F2076277DA5817C0902D78A2F32723B76D9F425E54B70F2D1648AE0DE4F981CBB3A4 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-prelude.8.gz |
FileSize | 2042 |
MD5 | F9F9B0AD7AA2A14844C77591FE79F81D |
SHA-1 | 603BEE5E8529CB8D39DA2F7FCB1CDB6AC7BC25CE |
SHA-256 | A38D6A2148D5E81902981D05320A2B3E56C57ED5F051427DCCD56C25B8F1F5AF |
SSDEEP | 48:X7fDb3x6FYVOnXnUqIkOpfM2l+84WFfc7DpcxQWlIGGWFlUGegsPl:bf3oFfnE1rMPTWFfcexRGWF2GUd |
TLSH | T133412A2D0E7498C2907A49CE73EC23C12B05439B285A83E53F59B58C8A7FC6E614535C |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
FileName | audisp-remote.8.gz |
FileSize | 519 |
MD5 | F15D6E07F0F684984E69D556A18E5764 |
RDS:package_id | 187003 |
SHA-1 | 69040374ED8DD93820D998564DF3AD0CBA71BB96 |
SHA-256 | 542F3AAC19801E1480FA1FCB41E00CF52B9620DB549C038DDD2E855E9CFE2B7B |
SSDEEP | 12:XZCNAHJc49m8PXJ44B/SgRKdoU+GhcA9dta08SEucll:XZCNtKmEJ4NgPULhcA9/OQUl |
TLSH | T1E7F075D1043E26376F6D36E5104337A5E36334EDC538452E6CC81483C01CD1B039146F |
insert-timestamp | 1679424419.5313194 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |