Key | Value |
---|---|
FileSize | 56232 |
MD5 | 29DCB0898D1D0FF8C4CB81578FE99A13 |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1:2.8.3-1ubuntu2 |
SHA-1 | 3E5588494CC1E085A0E22939181DCCD46F637BC2 |
SHA-256 | 7993F270E84DD69355722F486E4A3E0DC0B00421DE9D274D1C6966ED02F56153 |
hashlookup:children-total | 16 |
hashlookup:trust | 50 |
The searched file hash includes 16 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 30108 |
MD5 | D1DA2CB61FAB480E7493A0DAAD179A25 |
SHA-1 | 1D0D315F7EBE0193477EA0F8FA6D526E7F00FBC7 |
SHA-256 | 5AADD0BAE0D56D6B0AC44FBC5C8E89503D8F3FFE433D7107E9700445086275AF |
SSDEEP | 768:Sgdk4ZzblfTRlHCc7sUxxotpLSTwlexy0iTS1ZP4Rjr:S4k4Z9tX4UjupLSTw4A0iGGH |
TLSH | T193D2E88AF941DDB2F29241B4465F03759131881AA753C792FB8E73AA3467308BE313BD |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-prelude.8.gz |
FileSize | 2088 |
MD5 | 9635CD7692B43DE32B33DE8CF1E4C0A4 |
SHA-1 | 2D93402611C688DD754C3CBAC12870C56BAF207A |
SHA-256 | 3FE4E06AD0C8B8BC6D2553B359268362EDA8459CCA22929DF8712FAB82368EC2 |
SSDEEP | 48:Xikc+/VpfW7CKm/zzwxq27WZPtIc8tLCgVVmpfmcVmSu:tl+OKm7x270+XLP2OcW |
TLSH | T175411947DEB8A0AC0ED39685856054B5E811A034FE6453FC18361F46A5931C3BA5CD3C |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd-zos-remote.8.gz |
FileSize | 3810 |
MD5 | 7E55F39A9CB9CBB7015C528056EB4938 |
RDS:package_id | 182052 |
SHA-1 | 359BAD44B01EE23C99AD3A381D3763338461D812 |
SHA-256 | 4D928EC8EEB09FA3AACE085318915952FF4BF7AD287B803325D90C4BA34BF838 |
SSDEEP | 96:PTHyWRUTUlfYgYb7dAyY77G6Nprzy1+mA:7tUTq+796NA17A |
TLSH | T107717C27162AF3B1307B23BB80E9A73A006519B994FBC02938406CDD8879702F0D57BE |
insert-timestamp | 1679426507.3935153 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/audisp-prelude |
FileSize | 50680 |
MD5 | 1DD4150FB2E06AC9A271AD24D40AD8BC |
SHA-1 | 3B476F64192C4CE23403022C79C56E9EFB36F133 |
SHA-256 | 8DD25809A46008529B1B21ECA3BCB22CD2D50081F4177BE4FBC608A71644578A |
SSDEEP | 1536:zZOZ6stXWljIzmssM/RbFeqJcDA4baH2lAjdr9b43XZc:g4s1WlGmBM/RbFeUcU4baH2ajdr9 |
TLSH | T15233EA8B7B47D9B1F3F255F14563223259B14A0CD607D2A7BE093B5A3436285BB133B8 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-remote.8.gz |
FileSize | 788 |
MD5 | EA760FE34FE2F9A4ED14F89910F1FDE5 |
RDS:package_id | 182052 |
SHA-1 | 4FFDE58FD6CEB5089017587C19DFA3573044CAE0 |
SHA-256 | F92779302EB66FFF8804D7A302E92AFD162F4795B221982DE3653A3FE21755F0 |
SSDEEP | 24:XevYB4YGTwyU2R7H4MA2yEzUosEPLxXUNmb:Xe9NwyUmj4mz4eXS0 |
TLSH | T106017A42257121077D4CA909DAE996D5592DC5203E20FF7CE571812D49E364FD3C50DF |
insert-timestamp | 1679426507.4002094 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 42408 |
MD5 | 53218B067E5D05B3A88F93B9FB301E45 |
SHA-1 | 5935EA993F6D037FB01DA53990422E486794B994 |
SHA-256 | F5BBAED62AD31A8E852C1121DFE7E26E2BA8C07F7D97A7EF4CFBE51C38F4036D |
SSDEEP | 768:rtEqJfTRlHCc1xAjmGfTsdmqh/NuBuFYCUnS3v8AMyZrG7p:rZJtX1KLsdjh/NKuU9AM |
TLSH | T128132A8EB743C8F2E2B352B41A2B97327630C5019257E1A3BB0E775E7876505AB35339 |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/audisp-prelude.conf.5.gz |
FileSize | 1386 |
MD5 | E9CF351E5EA325FEF3CE89E59BBD930F |
RDS:package_id | 182052 |
SHA-1 | 946ADC96A68057089FB012751539AD317EE7793C |
SHA-256 | DB73C9DA01C6E3264D1AEBFA51DF02FBA2BE069183D4182A0DEF5E49CF96C746 |
SSDEEP | 24:XTJnmZIqcAkIbMhBrMTl8YJ21G9RSkuIz6hiOKQw8Iz9YwhlCgmqddv:XTJn4cUGBrIWE9RD364XZVYUl64 |
TLSH | T1F5210BCC6FD34F1E9161D532EA3CE860F3D546D6564C2F9D4B0531486406C1C7D1BC90 |
insert-timestamp | 1679426507.3764014 |
source | RDS.db |