Key | Value |
---|---|
FileSize | 50264 |
MD5 | 458B7AF25E4EF4F7421F38E6A9A5D479 |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1.7.18-1ubuntu1 |
SHA-1 | 42FBB579E4E7692998728FADF846CAC7CA53475A |
SHA-256 | 7840DDA4C378BE66C1ECF73D426693B5E019A54EB2A4D55C841D74DCC6B6C319 |
hashlookup:children-total | 16 |
hashlookup:trust | 50 |
The searched file hash includes 16 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 22304 |
MD5 | 288D48004B6EB90E95A9AE834E71C3CF |
SHA-1 | 1173CE0F5E7F0EFF30CF3D488955154AE0949827 |
SHA-256 | 28B75EFE0317B8A67CBB915EDBBD0ABBBC7DECB8741A867B2F998EE78DD47050 |
SSDEEP | 384:w+8XPHD2XkrqKb4hU1Vg5S6UgeDv9zz4nuJhJIKuMD4Z4:c/D2XkeKb46TYw9YnchJlB |
TLSH | T105A2EAC293864A13C0804735585F0E91D3AEC48AD7C95F336A4CDC9538D2A6EEEBBB15 |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-prelude.8.gz |
FileSize | 2098 |
MD5 | 25CDF95AE8B866DC8F52212642FFE09A |
SHA-1 | 2E6000C40A9E48FA9AEDC99615BC90CAF6F4B0CA |
SHA-256 | 8218700D08B7F225D74B450808324ED5354191B9826F619E4C05F3A64125F664 |
SSDEEP | 48:XirxpvPueVVpmgbQYQ71Z4oQb6FxmXqchhuPkxTJMgmZ5bKlcmg:axpuePpmuQYC1Z4tWFkXRFxFpEbKlcV |
TLSH | T193411C5B194109A1DC43413C0D2D7C9DE4D55B466D496B872917D1FA53717CA53C9011 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd-zos-remote.8.gz |
FileSize | 3810 |
MD5 | 7E55F39A9CB9CBB7015C528056EB4938 |
RDS:package_id | 182052 |
SHA-1 | 359BAD44B01EE23C99AD3A381D3763338461D812 |
SHA-256 | 4D928EC8EEB09FA3AACE085318915952FF4BF7AD287B803325D90C4BA34BF838 |
SSDEEP | 96:PTHyWRUTUlfYgYb7dAyY77G6Nprzy1+mA:7tUTq+796NA17A |
TLSH | T107717C27162AF3B1307B23BB80E9A73A006519B994FBC02938406CDD8879702F0D57BE |
insert-timestamp | 1679426507.3935153 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 22348 |
MD5 | 1F98895441EDC1C56CBC04E4C267B979 |
SHA-1 | 3C7F45D4EEBC7FD831457FA1FD576C0FFEB73065 |
SHA-256 | C201EE338671133CDFB9FCE2E74777D8410FF3FEA934A038ABC22C9DB1E39A5E |
SSDEEP | 384:Fd/jHxZbteMaGnLmxTbXugGxiE917TISbv8MI22IGoetD8:P5RfLmxTbdGxiE9d4MzYD |
TLSH | T150A229C2226B9A63DA854B397C031F35622AFEA9D3CA4707570DC0A02CD67BC9525F99 |
Key | Value |
---|---|
FileName | ./sbin/audisp-prelude |
FileSize | 30816 |
MD5 | 82AB8DB316EE42CFC598FD7660EF34F5 |
SHA-1 | 58625919B164906128456CAA5496F904A0B479E3 |
SHA-256 | E8CAA92A6BC3082D1EAC703BE08EE35F3CAEC95F707F57EC4525B62D629D2422 |
SSDEEP | 768:AfsnSx9IQYgow4AI2PYgow4t+IQYgow4AIQYgow4A5BJRZhglN1dFtV9lN1dFtVE:EsQIQYgow4AI2PYgow4AIQYgow4AIQYr |
TLSH | T1B0D22BE5B6B7B837C48626BAE0539E1C3169A189C7BA4F0FAF1C00953D412BC856FF54 |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
FileName | audisp-remote.8.gz |
FileSize | 519 |
MD5 | F15D6E07F0F684984E69D556A18E5764 |
RDS:package_id | 187003 |
SHA-1 | 69040374ED8DD93820D998564DF3AD0CBA71BB96 |
SHA-256 | 542F3AAC19801E1480FA1FCB41E00CF52B9620DB549C038DDD2E855E9CFE2B7B |
SSDEEP | 12:XZCNAHJc49m8PXJ44B/SgRKdoU+GhcA9dta08SEucll:XZCNtKmEJ4NgPULhcA9/OQUl |
TLSH | T1E7F075D1043E26376F6D36E5104337A5E36334EDC538452E6CC81483C01CD1B039146F |
insert-timestamp | 1679424419.5313194 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./etc/audisp/audisp-remote.conf |
FileSize | 620 |
MD5 | 814B4E51DF97210ABE9210FB9746CABB |
SHA-1 | 699DAD59BE90B1E52591DFA17E92EDB0C0100F63 |
SHA-256 | 20F60167A809C88A7D6D9B0EA2BAB819800BBAB41151BCEE37484F68A961575F |
SSDEEP | 12:LzAKRDoWZ3wPHt073ebRFRReF/YqXEfv+BkwBZHmdEmMDKAJjlKLHHppWpK/KoiG:1onP+Deb29103+mwb+6FUzHpt/bX |
TLSH | T188F0DD7861FB3D3B0CB2668EFA61BA4207B96001749C00403747C5AC1DAE4F4C717461 |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |