Key | Value |
---|---|
FileSize | 59238 |
MD5 | ECD63579146D370ADFD13DDA28EC80DC |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Laurent Bigonville <bigon@debian.org> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1:2.4-1+b1 |
SHA-1 | 5B887C55829D4BAC48DDAE479E19813BD126CE58 |
SHA-256 | 9F2D3BCFF2B85F92E33F4C25DBE7A904C4DC58836C3784DE9A73B2453637FBA9 |
hashlookup:children-total | 19 |
hashlookup:trust | 50 |
The searched file hash includes 19 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/audisp-prelude |
FileSize | 34272 |
MD5 | B13D1F2BACDD50A155B62649A0638115 |
SHA-1 | 028972E1D714AA362C616BF878E3D03E59D829B0 |
SHA-256 | A65FF6571A98E9F0C8F3537EF04EC83785E43985FBEE7F2BBB083786B9543D75 |
SSDEEP | 768:mb91snSJKTtesC8oYYFZIO22fFvlVPU1:i1sCKTt05V9dW |
TLSH | T1E6F219A7B3171877CD47ABFFE9631B849233B1CEC246DF17A62C00842E4259CCE26A55 |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 21916 |
MD5 | F4DE6511F6D09312B9EDCF657B7951EE |
SHA-1 | 2740DBE7B773451061709641D8C57B9844D8D906 |
SHA-256 | 51DDB2120BE22D8477CD7670A5E227C4ECA2A5893C11F908780A5DDE9A773933 |
SSDEEP | 384:2ovdkPWKb9141PyY67KBK85tZQjvqKCDGpgrjMMU4Ou:2idk+Kbgtyrr2Z4bCDEzI |
TLSH | T135A2FAE2A2857D23C081523CD8178A1232B684CED75D4B13669C8CB97B7A758CEF6B64 |
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 30120 |
MD5 | 3232C796B4D33468150F1A25839F5E7C |
SHA-1 | 2DBC38EE5B8EA8A652961427213542C76F3465ED |
SHA-256 | AF42561DA72167E231E1447D9904081AE53F34883B383E0D5F91B1ADD710C78D |
SSDEEP | 768:1ho0MFjM9lI1b6+bBDFRJdx5rMIZMtOzeya8A:1lMFjxbBx5zQ/+a |
TLSH | T154D24CC2706A48B7C5C18279FA236B202BB9FADAF37A8307650E41D44E51E9CCE71F55 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd-zos-remote.8.gz |
FileSize | 3810 |
MD5 | 7E55F39A9CB9CBB7015C528056EB4938 |
RDS:package_id | 182052 |
SHA-1 | 359BAD44B01EE23C99AD3A381D3763338461D812 |
SHA-256 | 4D928EC8EEB09FA3AACE085318915952FF4BF7AD287B803325D90C4BA34BF838 |
SSDEEP | 96:PTHyWRUTUlfYgYb7dAyY77G6Nprzy1+mA:7tUTq+796NA17A |
TLSH | T107717C27162AF3B1307B23BB80E9A73A006519B994FBC02938406CDD8879702F0D57BE |
insert-timestamp | 1679426507.3935153 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-prelude.8.gz |
FileSize | 2090 |
MD5 | 175090956E5769A8A62E0D6661119B4A |
RDS:package_id | 182052 |
SHA-1 | 48FAABB5DC1C226E51D6B778248D06E4B84FA673 |
SHA-256 | 5BEDC12EDD0B76387AC16BC221E4911122C8037061364A625A652D9B3AEC8358 |
SSDEEP | 48:XlW9Q09xm/MVE1O2i+CvNj3/ykO5ECYspE+ltC2dfC+D+lBKB0eQtkbx:w9QoI/MVEsxNjU5/YcE+lo2Vz4jesk1 |
TLSH | T168411CCD98B33E1F15A373A551287897F73D18391AB4342C5488EBA3DA8A1711F1F423 |
insert-timestamp | 1679426507.4072115 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | D2134007 |
FileName | ./etc/audisp/audisp-remote.conf |
FileSize | 693 |
MD5 | 2BB46D963C89E8FC0C1CB2ADBFF4689F |
OpSystemCode | 362 |
ProductCode | 183705 |
SHA-1 | 68234DDDCB990F1A91891A18FE3779CD66A7EF2A |
SHA-256 | 8B3985A2C7928D19B26C9216CF75A7E53A49E18965C0CC96FB99077633064020 |
SSDEEP | 12:LzAKRDoWZ3wPHt073ebjM5KhdlFRRerYqXEfv+BkwBZHmdEmMDKAJj2dK2OcwgHP:1onP+DebLhAr103+mwb+6FF2L5Hpt/bX |
SpecialCode | |
TLSH | T13501CB7960FA7D370CB3668AF562B68603B5600435CD00543397D5A81DAD4F4C7174A2 |
db | nsrl_modern_rds |
insert-timestamp | 1647016663.8298998 |
source | NSRL |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-remote.8.gz |
FileSize | 722 |
MD5 | 13CC675E5F737D1C3B42FB3643D53B9E |
SHA-1 | 9274282DE6AC8217FA6173C3803AEBD915F3DBE9 |
SHA-256 | 1ACB2DC55E1C7E3803E5588873B915F744EB701CF6CF3E0C40A59115F36471EE |
SSDEEP | 12:X3mYFQhwWPeDFpfCMmvCTJUrLXhevXFoFz74TcSDrIatsserXlWEL7/lkJtcG7M3:XWYowW2DFYuJUpuXYv8rErXQW7qtcG7c |
TLSH | T1F001654651129C30C1428349BB6C281D471EF882AD8F55E81B541FC0E7241A152671E3 |