Key | Value |
---|---|
FileSize | 54546 |
MD5 | 830846FBF61371EB1AF4DAA826C81634 |
PackageDescription | Plugins for the audit event dispatcher The audispd-plugins package provides plugins for the real-time interface to the audit system, audispd. These plugins can do things like relay events to remote machines or analyze events for suspicious behavior. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | audispd-plugins |
PackageSection | admin |
PackageVersion | 1:2.2.2-1ubuntu4 |
SHA-1 | 6300BFDFD54B3FFE32B66EA89C11FF11F2868E69 |
SHA-256 | 42C00DD9390E0A74C749EA4535C7C61ECF21F7F1282F30826519418293A155C1 |
hashlookup:children-total | 16 |
hashlookup:trust | 50 |
The searched file hash includes 16 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./sbin/audispd-zos-remote |
FileSize | 22440 |
MD5 | 2FA8DDB6D75DE661653D1AA2227A582D |
SHA-1 | 057884B123714FA4D0244B7471A050AE14C23EA0 |
SHA-256 | 3A00351AD6DE30C4294307915762ECBA7BAC13A9FD56A8F5FD9B727AE78B1253 |
SSDEEP | 384:OT0kPhKb2ip04kXjkAOdCGAMTlcGqmuIpMD4O4:xkJKbv09Q3dCRdm2G |
TLSH | T1E7A219C39A4A8AB7C0814B3568130E7D567E9BDAC75A4B43534CC8B139D3168C67AFF4 |
Key | Value |
---|---|
FileName | ./sbin/audisp-remote |
FileSize | 30228 |
MD5 | 6EFBCEC726E8DB1F2825D1947DC95A1E |
SHA-1 | 1262F961301F302EB2F452B38272BEA1175B8AD8 |
SHA-256 | C41F11F733C24C51565A95B6DC704822F7BCAD0E09E32A7B894EE1FD21C9B7E1 |
SSDEEP | 384:44jHxZb8adJ591LrGMAmeusapnfdiSpggH7QXi1hJZLpMI2IP2zoxY6P2X:4YTDVrGKZsahfdiSpnHSE39pMt+i6P2 |
TLSH | T14AD24AD2B257BD63D482A5B738D34B33325AE0D4DB4D8B07231F005926A1AD89367FB6 |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/audisp-remote.conf.5.gz |
FileSize | 3148 |
MD5 | 95BD2D0142B292CA44438B62B3DB45F8 |
SHA-1 | 20D3BF820EE20C91886CF20427056877FA0A79ED |
SHA-256 | AE4B18491E80441463705B4D8DA8797F4487B9839F7E14EC0FC3C653A59F5B3F |
SSDEEP | 96:MdrtSIIFa09NPdwmxTBCFJOvM3QlbFjACO:MHUa0vVwICTOvM3QlbFY |
TLSH | T1F7514D06C1B281EDC979FB779009DC866ECD8B921E5E5C5904311A3A5DB19E58C98D0D |
Key | Value |
---|---|
CRC32 | 41DA0A99 |
FileName | ./etc/audisp/plugins.d/au-prelude.conf |
FileSize | 280 |
MD5 | FDBE0EAE23D0AB3963F81D4102E1CC4B |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 25FE37B04A644C1438DD2B609C6190BAC368918F |
SHA-256 | CD39364F42336B4A3D5F6E1B56216C4A28732FE90F633413CDC2617304EFA7E6 |
SSDEEP | 6:mV7id4EjQEXsoA0EvdQj3KYAmJGp6LOjkeGNy9Vd1ZY:mF+JHvElyBPGfRWAVd1G |
SpecialCode | |
TLSH | T19AD0C2B121B4B27814093A413A8BC5E999BAB09656281415243D88A46126074E323B86 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4377716 |
source | RDS.db |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audispd-zos-remote.8.gz |
FileSize | 3810 |
MD5 | 7E55F39A9CB9CBB7015C528056EB4938 |
RDS:package_id | 182052 |
SHA-1 | 359BAD44B01EE23C99AD3A381D3763338461D812 |
SHA-256 | 4D928EC8EEB09FA3AACE085318915952FF4BF7AD287B803325D90C4BA34BF838 |
SSDEEP | 96:PTHyWRUTUlfYgYb7dAyY77G6Nprzy1+mA:7tUTq+796NA17A |
TLSH | T107717C27162AF3B1307B23BB80E9A73A006519B994FBC02938406CDD8879702F0D57BE |
insert-timestamp | 1679426507.3935153 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 88842C8A |
FileName | ./etc/audisp/plugins.d/audispd-zos-remote.conf |
FileSize | 436 |
MD5 | BE9F4B5B737E467A8FF69348A83108E3 |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 655063BC53686E399C1154FB82664812C1C188FF |
SHA-256 | 85BF9CC51764A1EBA91D71BC62F291CD96708875FA364A81EB751148E9E8F3C0 |
SSDEEP | 12:q0RofnEEgb3duRuRhK4xxi9h0cdYDMfM3aRWid1DfvKoaC:qYofnrgbRhKCi9h0uYdTid17bl |
SpecialCode | |
TLSH | T179E0ABF12AC53A630C3126008B9F70D8176BA3F2523E1445722BC6999AAE5A1C30B7D5 |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4327202 |
source | RDS.db |
Key | Value |
---|---|
CRC32 | 9DA9B2A7 |
FileName | ./etc/audit/zos-remote.conf |
FileSize | 246 |
MD5 | 871BBE04101FF19CF1BAA0DD300C76EC |
OpSystemCode | 362 |
ProductCode | 183705 |
RDS:package_id | 182052 |
SHA-1 | 6FE4675388A81688FCE3618EEB16B331155DF1CE |
SHA-256 | 392EF562F7CD7F6A1D474A506C32AD4B9171926A89E9D3BD90F6B420B9847A72 |
SSDEEP | 6:jLVYQIRQFaH42kQ6VyK7naKQ8JRDEFGMKL3TJyMLEdNj5L/SiXykfXv:jLERTZ6sSaKlvE8HJyMGNtL6iXPfXv |
SpecialCode | |
TLSH | T168D0979108C72DF3206607CB022630D0130CA390073F00422D22E70F5F3FA9783172EA |
db | nsrl_modern_rds |
insert-timestamp | 1679426507.4216154 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/audisp-prelude |
FileSize | 34976 |
MD5 | 56F4B3C156ADA3A7CF201E7D07715058 |
SHA-1 | 7B19CF3EBF0F16BBEAA1A9DE410F31503B8E1E09 |
SHA-256 | 3047BCBBBE2E98AAD3BAC11D5F8873CB911DB4EF721F8114F2F96F4CF40CD74A |
SSDEEP | 768:pFQtcsnS+h5+50sQvv8uBFiUA6WyFClrPvlzBU9Nm:BsRK0scYrdaN |
TLSH | T162F22B97B37E5873C1861BBAD4633A026212E9DDC39FAB57A23C00943A097DCC952B75 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/audisp-remote.8.gz |
FileSize | 722 |
MD5 | 13CC675E5F737D1C3B42FB3643D53B9E |
SHA-1 | 9274282DE6AC8217FA6173C3803AEBD915F3DBE9 |
SHA-256 | 1ACB2DC55E1C7E3803E5588873B915F744EB701CF6CF3E0C40A59115F36471EE |
SSDEEP | 12:X3mYFQhwWPeDFpfCMmvCTJUrLXhevXFoFz74TcSDrIatsserXlWEL7/lkJtcG7M3:XWYowW2DFYuJUpuXYv8rErXQW7qtcG7c |
TLSH | T1F001654651129C30C1428349BB6C281D471EF882AD8F55E81B541FC0E7241A152671E3 |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/audisp-prelude.conf.5.gz |
FileSize | 1386 |
MD5 | E9CF351E5EA325FEF3CE89E59BBD930F |
RDS:package_id | 182052 |
SHA-1 | 946ADC96A68057089FB012751539AD317EE7793C |
SHA-256 | DB73C9DA01C6E3264D1AEBFA51DF02FBA2BE069183D4182A0DEF5E49CF96C746 |
SSDEEP | 24:XTJnmZIqcAkIbMhBrMTl8YJ21G9RSkuIz6hiOKQw8Iz9YwhlCgmqddv:XTJn4cUGBrIWE9RD364XZVYUl64 |
TLSH | T1F5210BCC6FD34F1E9161D532EA3CE860F3D546D6564C2F9D4B0531486406C1C7D1BC90 |
insert-timestamp | 1679426507.3764014 |
source | RDS.db |