Key | Value |
---|---|
FileSize | 198694 |
MD5 | C3940F02BF1563C817D7CFF86BA0854D |
PackageDescription | User space tools for security auditing The audit package contains the user space utilities for storing and searching the audit records generated by the audit subsystem in the Linux 2.6 kernel. . Also contains the audit dispatcher "audisp". |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | auditd |
PackageSection | admin |
PackageVersion | 1:2.4.5-1ubuntu2 |
SHA-1 | 4799CEF75AFE37CB443DE48D2D2834CAFBF8A39D |
SHA-256 | 8B7F786C7BAD563C2AB7A519204AC77C43B82E9289CB6CBD94A52E720AA6BBDD |
hashlookup:children-total | 45 |
hashlookup:trust | 50 |
The searched file hash includes 45 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/auditd |
FileSize | 128452 |
MD5 | B6A9C80802FD0A202EFFDC9023C77CE9 |
SHA-1 | 0B5BB6E8AA59613B82F0F215C9CF5F957880876E |
SHA-256 | E4A595243F967879F6373D9C269453373F1CB80E01A4994365D353886BA6754C |
SSDEEP | 3072:SXoVOkoF9fco0Ff2sXqwB30I8uD5Crzz7R:SXCNoF9fco05dX930MDIrzz |
TLSH | T1A0C34C49F782D9F1E2D286B1471A87661920C80A9277F3B1FF0D736E3C366163E52369 |
Key | Value |
---|---|
FileName | ./usr/bin/ausyscall |
FileSize | 9736 |
MD5 | BB7B95EC3988A24D1DEC0A5DC56EBA38 |
SHA-1 | 14748DB1221087CC9DF048B444CA7F827C10B9C8 |
SHA-256 | B2055AA2D9BC2DB5D63EDC2EB005F95CCB31958AA3377FC6688B38AF83C34168 |
SSDEEP | 192:fuIoWsEq4NqaAGUvGvLIn4ZrJJwjBkFh7YY5l:fDq1aI4Inw0B+5n |
TLSH | T1C312A619F765D932C4E2233C90531A611232C851DA63AFE3D29A75E62F067DC8A22F26 |
Key | Value |
---|---|
CRC32 | 92357B08 |
FileName | ./usr/share/man/man5/auditd.conf.5.gz |
FileSize | 5210 |
MD5 | 222A99BCF00A383726048689921E9DAB |
OpSystemCode | 362 |
ProductCode | 17393 |
RDS:package_id | 222721 |
SHA-1 | 1EFEBA4619B4823321DF9EAE2E354BD332A983FC |
SHA-256 | 8593E4874E64E33B3698EA33B35C0C6694B0697FA5E9D199D9B4A7625AE92CF0 |
SSDEEP | 96:wsARsv2k1Rbp4rbLTeMOI99TXYaSBx5stjU3WEX89sex2pl/SM5uRjTr:ww22RbpSbLTeMOILTXsnslX8Yx2z/SM0 |
SpecialCode | |
TLSH | T108B18E6494FD5586922EB364FA438495FC284C8946C50CC3F735FA60E4B125407EA3D7 |
db | nsrl_modern_rds |
insert-timestamp | 1727040853.8852868 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 9B2DA067 |
FileName | ./usr/share/man/man8/audispd.8.gz |
FileSize | 1159 |
MD5 | 135BB7129C559DBFDA3D7DB7C4F119C7 |
OpSystemCode | 362 |
ProductCode | 183711 |
RDS:package_id | 222721 |
SHA-1 | 2303B4F9ED81D8A3970B9F5236A990B86F91AC88 |
SHA-256 | A472521EACF96BAFF706D46B0BF46FBDC6FAEA3530B0990E1BC5E05CB1FC73E6 |
SSDEEP | 24:XuGxmtghkwHrEkYNBBZfiAc47XEf6AlOC6NCGW/NEjOyq05L0Xn7VJ:XuwFhk3vjoC61OC6cGGEVDwXn7VJ |
SpecialCode | |
TLSH | T1C321CA417E287187A971F41256C3544123042C5B07F9745EF7FF857F51280DA879DB52 |
db | nsrl_modern_rds |
insert-timestamp | 1727040854.401868 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/examples/stig.rules.gz |
FileSize | 2848 |
MD5 | 228BECE15A488F6FA6C6DC9901D0F093 |
RDS:package_id | 222721 |
SHA-1 | 27F623558062C3D4A97D9B7CF12BFD0741808C13 |
SHA-256 | F69913D2C3DF52AA2D3522C75793B19BE1FB3A25667D710A5A27693908BB200A |
SSDEEP | 48:X4XBqA0cReIubCkyQlUqaI8HAvh8LGREY0SyS+at92ApQmzkkR23xVD6fNwNp:htnva10TS4yaDbzJR2DgNMp |
TLSH | T166514B5133B1FEF2230D22E4E98199E89BA605BC5851CE95A1BB337984DD5184F0669C |
insert-timestamp | 1727040704.397388 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/README.Debian |
FileSize | 919 |
MD5 | 71530E8E04634A023800D9FCFE478BC1 |
RDS:package_id | 222721 |
SHA-1 | 2BC8DF446CD0C850B8FFB11BC620BDB23B312E12 |
SHA-256 | B207622700C8AB30D56D93BF40D42FD91180A8D8E726264F68B7ACDA09684E5D |
SSDEEP | 24:3kEXgfgX6koVgF/pO+4TH2d9e1Y201n6Wflv3pGu:3k+ToWF/4+4Ltt41fp |
TLSH | T1DD1199237E81DB264680F0A5FE572280DA2A30AC3309242420E9A0DFE94253A52FEF71 |
insert-timestamp | 1727040704.3892922 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 1C124E86 |
FileName | ./etc/audisp/plugins.d/af_unix.conf |
FileSize | 358 |
MD5 | 199EAA1E43FA9139F0910BDB64FD219E |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 222721 |
SHA-1 | 31F906A6E55C835D5A14D241D88580FBCF7F7422 |
SHA-256 | B7C3E851E8901BC6B2895A6BE8ABE38887EA4BF8BCC9BF2699BF940C7974B567 |
SSDEEP | 6:mV7+QIKRcGreM2K/jcAu4YcqMqMoaeGiXCR2SFhGi+g4VxZUjkeIPTgnHtVbK/3:mFAKR3reMlcAhYc+MpeGiSRBQ/g414RS |
SpecialCode | |
TLSH | T16BE068A2E9A03A2538E80B11AFAD83A5FC2596C97B380017282E2C2041029209263EEC |
db | nsrl_modern_rds |
insert-timestamp | 1727040613.7428613 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/bin/auvirt |
FileSize | 38552 |
MD5 | DFC91321362F95A7AD9BD5C30D37368E |
SHA-1 | 3E785699819F89847A02DE5A305EFA5128087F72 |
SHA-256 | D3BCE32DF925B5A409EDE5A4C156D965A959A212549066B0FEC769F192AF146A |
SSDEEP | 768:2RONZNs5OLu5Qk0NcyTgasoWog3Q426i10nIg:2Rss5XQfNcyUY3AIg |
TLSH | T139031A49B393DDB1D55606B99B86B2213836000EE16FF9B2E91D7BBC32771016F1A374 |
Key | Value |
---|---|
CRC32 | 1EC45F21 |
FileName | ./usr/share/doc/auditd/examples/auditd.cron |
FileSize | 271 |
MD5 | 38EABF76CB16946B506A2FE853DE2863 |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 222721 |
SHA-1 | 45BCD14824122202B143E78E59533968C933A5B5 |
SHA-256 | 8655D58E59EB7420D5182AA76017DAF40452EBABC1A5131DE0A7320AEEEE2368 |
SSDEEP | 6:hhRGk+O8cOBFsNRY+sgkldrn1vsYCs6ZZA49jsfBrvOFqfn:tGkgNo6gkv5sYr6ZZbpLFqfn |
SpecialCode | |
TLSH | T19ED0C203290858300B1503A34A42696210A8104E3E37F06425EE275DFA93ADFB0C775E |
db | nsrl_modern_rds |
insert-timestamp | 1727040704.3995628 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 58D6D6CB |
FileName | ./etc/audit/auditd.conf |
FileSize | 701 |
MD5 | E1886162554C18906DF2ECD258AA4794 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 222721 |
SHA-1 | 4960616B49F418D1DC7D7BC2161B400651FE754E |
SHA-256 | 60A95AF472143B3E3102EC784BBB0BBFB05EFA177BAC934806FA7EE46ACB17CA |
SSDEEP | 12:LzAKR4MoKK9M7tJS6hp2MEIZo7Q3j4HTXeOQ600tMSQrRBAgEvG2o3zpWpK/Kfrv:vK/6hp2MEI+Kj4HDjQ60KSjA0t/wv |
SpecialCode | |
TLSH | T10501F4AC55E8F9A65077DAC2E097418F01797418345815213A1FF465FABCC90DB83650 |
db | nsrl_modern_rds |
insert-timestamp | 1727040614.798482 |
source | RDS.db |