Key | Value |
---|---|
FileSize | 221640 |
MD5 | FAF916C5AD2AADFA13EF913EFBF63D5D |
PackageDescription | User space tools for security auditing The audit package contains the user space utilities for storing and searching the audit records generated by the audit subsystem in the Linux 2.6 kernel. . Also contains the audit dispatcher "audisp". |
PackageMaintainer | Laurent Bigonville <bigon@debian.org> |
PackageName | auditd |
PackageSection | admin |
PackageVersion | 1:3.0.7-1.1+b3 |
SHA-1 | CB53990F174E620722967DBC7DE9AC4899907479 |
SHA-256 | DD85852BA7E4DBFE2F61E1B2F7A7ACF70FF6E3C208B81731BCE86F48B3C67ACD |
hashlookup:children-total | 78 |
hashlookup:trust | 50 |
The searched file hash includes 78 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | usr/share/audit-rules/30-ospp-v42-2-modify-success.rules |
FileSize | 826 |
MD5 | F583259AD73E913DB48A76E8A0C24863 |
RDS:package_id | 294718 |
SHA-1 | 0035557B33B9BBB564FB1DE550BA031D49C37F30 |
SHA-256 | CAEB9A7F4BB77AB89027F11789E02EB6E9B4F2FC4346EEAEA25EFE1730D83FE6 |
SSDEEP | 12:j3toeuFecEIWyb0FeVEIWyb0FecwIwWyb0FeVwIwWyb0FeHAWyb0Fe3MAWybE:j2gczWKVzWKcwLWKVwLWKgWK3rWT |
TLSH | T15001D29342B430F05F6B43A3C864DEB83405471E93635DC5D186E9D9DD1943ABEC390E |
insert-timestamp | 1696439445.0774827 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/auditd.conf.5.gz |
FileSize | 6841 |
MD5 | 4C995396A9EBEE5CEC1138CABCCB51D6 |
RDS:package_id | 293683 |
SHA-1 | 0BD56CF325A3242B111927850AE6E10D2A4F6D0F |
SHA-256 | 902053BBF311B19370F1DCDECD18E5E887882CFE3A2C1FD862926035349EFEA3 |
SSDEEP | 192:AhecJQoNLg1B16bR1ZSZNBZGn53ZPqJIJC:yFJtLMq/ZUbm3ZyJIM |
TLSH | T181E18E0014841B3BFE0E4BD9E882F338E69D98CBD407727F2A50277516676149F7E1A8 |
insert-timestamp | 1678953074.8046045 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/auditd |
FileSize | 157268 |
MD5 | 4AD424BA3F40DFBB5C013AC0CBFCBE56 |
SHA-1 | 1082393F4420419F4931E777394F2DC8F5364AF9 |
SHA-256 | 545153F17D470263F3DCCA17C5A0ADE28A80CF370DE6499026252BE7F2711778 |
SSDEEP | 3072:8C1W3Qe+ezWNsF1YMo10aGtbYWE6R86A5rqYcy40v:8C16Qe9zRcMo10ztbm626GrqYcyjv |
TLSH | T1EFE3299DB292D8F4F39341F1562B8362593045099323F2B3FF4A33A938762557E2A379 |
Key | Value |
---|---|
FileName | ./usr/share/audit/sample-rules/30-pci-dss-v31.rules |
FileSize | 6179 |
MD5 | 70B8DE2048C6B44A784AB221B95BA995 |
RDS:package_id | 293704 |
SHA-1 | 129423A508685ECE22A9EB155D9A0150EEF0FD82 |
SHA-256 | A6D974558DAE7B6D24EDF083A0D72BB8D15AC463DA0717FCD854235168390033 |
SSDEEP | 192:KGct29tkiKacQHguhLCZ0/XKANc4cIiKy2/P:KGcw9zcQH3SGhiF2/P |
TLSH | T149D13157636927319D1743E3EA5CB2EAE718809D3336B4EC4184A079EC6643A63E371E |
insert-timestamp | 1678960636.6124964 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/audit-rules/README-rules |
FileSize | 1421 |
MD5 | 6405EBAE48BB89AF7FF7DF3385F1448E |
RDS:package_id | 294718 |
SHA-1 | 148ACBDD22A8BF666CA5A3E284E4AC9EBF910926 |
SHA-256 | 00E0926039F166A9F8D5B0B825E33358C7F2C1CCC6F86067BA2F684C26D13F95 |
SSDEEP | 24:zPopzNwKFwInXYhOOayvCEAqH/JuNLcoY1awOdzXxLmEZ:UxFJXYhfLAC7ONXxLZ |
TLSH | T125210F1B67899B2A408333DAFECE12D9AF1581BD5368A530549F001EBE5177915F39D0 |
insert-timestamp | 1696439444.1184876 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/audit-rules/30-ospp-v42-3-access-failed.rules |
FileSize | 625 |
MD5 | 852D1A243E59DD5961F3D9F5C5592BAC |
RDS:package_id | 294718 |
SHA-1 | 149781B05552A0CDA6C6159984F21EE76540A154 |
SHA-256 | 74AA84E36882DD5F1BC4F1953B938FC6425A00D28D0C36232B16A5AEADC7B413 |
SSDEEP | 12:jEttqOQYENLFecOr9DeFeVOr9DeFecOm9DeFeVOm9D+:jkqO3JcOr9nVOr9ncOm9nVOm9K |
TLSH | T1BEF096DFC33434744A0A179789B54FBDF808511D533359CAC68416C1FE514B52AC2EAD |
insert-timestamp | 1696439445.0373838 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 1770520E |
FileName | usr/share/audit-rules/10-base-config.rules |
FileSize | 244 |
MD5 | DEF45A38095C1C16EA919317B8020A83 |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 294718 |
SHA-1 | 17C157514A3D87C906A6C830DF30C7FF3966C798 |
SHA-256 | 54C2CEBDAADFB928F7327CC066218E38743F0FF94D02FE162A7A415E148D23A8 |
SSDEEP | 6:jO2/q9RjRiNChQYF9FxNVYKAtOFPQYmFnNGd:jOuqHIQGYF9Lx+OQBgd |
SpecialCode | |
TLSH | T117D0A72D87B4B571095E03DF6A4673F39E6D214DA5603019208F683B458739FC53BA92 |
db | nsrl_modern_rds |
insert-timestamp | 1696439445.5309117 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./sbin/ausearch |
FileSize | 140900 |
MD5 | 208646977C53723FE9ABD30A668FCADE |
SHA-1 | 194AC38D9F6720A864C84B8A01D23F94F54EAC63 |
SHA-256 | 9D846581DE7ACB8CE40E326F684FCCCBE5C0C5A240195DCBC0BED666C5563FF1 |
SSDEEP | 3072:QC1W6xKfUg3exgq8+np2lMlNdA5mrb2mFRjSaDN:L1PKfU8ibp2yNdymrb2EReax |
TLSH | T1B6D33B0AD396C8F6F6A341F0179BA72366304909A353F6D2EE481AB17C753916F2B374 |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/README.Debian |
FileSize | 762 |
MD5 | B3227334EE362039157636427817912B |
SHA-1 | 1F16E2C6AF3B44FF3BBCA62804A4CEFB56111887 |
SHA-256 | 3FC3C889319C32A4CF030D58687C4E9F9AEA049F7E097028059406F397EB69A8 |
SSDEEP | 12:3+PQ8EXgb3jLUXJNFB4h6A+ysf2HCY2NO8J8BCQk6PfGWRVGWRROxnJYzGLun:3kEXgfgXJpPA+yTHCY201Xk6Wf+WJYzH |
TLSH | T1D50128273E80D7765640F0B1FD5A61D1DA2A34A833043074259DA10FE99552A93FDF76 |
Key | Value |
---|---|
FileName | ./etc/audit/auditd.conf |
FileSize | 881 |
MD5 | FCDA3BA8BA06665ED33396551B8AA8E4 |
SHA-1 | 205CFC6E06A76ED481DD301955B1DC1E2388560E |
SHA-256 | 9A17001171E39899E535173AB9044923FB155C9C9AFA2C8EB71EEF2DB757C883 |
SSDEEP | 12:LzAKR4JZooKK9PGq6bEIo3ndI3Q3j4LXeOQ600tMSQOPUavAgEvG2o3XgpWpK/Kr:YCKJdI3Kj47jQ60KpUTRt/wZj7ovg71 |
TLSH | T16B1123F850F9FE6654B6D541E1A3018F0378790C39451679BB16F814E9B9CD0AB43190 |