Key | Value |
---|---|
FileSize | 198368 |
MD5 | BD2886D53F15D9097CE0F5352C8C4810 |
PackageDescription | User space tools for security auditing The audit package contains the user space utilities for storing and searching the audit records generated by the audit subsystem in the Linux 2.6 kernel. . Also contains the audit dispatcher "audisp". |
PackageMaintainer | Laurent Bigonville <bigon@debian.org> |
PackageName | auditd |
PackageSection | admin |
PackageVersion | 1:3.0.7-1.1+b1 |
SHA-1 | F08B9E1FC1341358A03DB59BB5D7E65852D5750E |
SHA-256 | 8C6554ED9357F0FCD9DC0D1C36CE3EF859467324A850392EBC33A959B341076F |
hashlookup:children-total | 78 |
hashlookup:trust | 50 |
The searched file hash includes 78 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | usr/share/audit-rules/30-ospp-v42-2-modify-success.rules |
FileSize | 826 |
MD5 | F583259AD73E913DB48A76E8A0C24863 |
RDS:package_id | 294718 |
SHA-1 | 0035557B33B9BBB564FB1DE550BA031D49C37F30 |
SHA-256 | CAEB9A7F4BB77AB89027F11789E02EB6E9B4F2FC4346EEAEA25EFE1730D83FE6 |
SSDEEP | 12:j3toeuFecEIWyb0FeVEIWyb0FecwIwWyb0FeVwIwWyb0FeHAWyb0Fe3MAWybE:j2gczWKVzWKcwLWKVwLWKgWK3rWT |
TLSH | T15001D29342B430F05F6B43A3C864DEB83405471E93635DC5D186E9D9DD1943ABEC390E |
insert-timestamp | 1696439445.0774827 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/man/man5/auditd.conf.5.gz |
FileSize | 6841 |
MD5 | 4C995396A9EBEE5CEC1138CABCCB51D6 |
RDS:package_id | 293683 |
SHA-1 | 0BD56CF325A3242B111927850AE6E10D2A4F6D0F |
SHA-256 | 902053BBF311B19370F1DCDECD18E5E887882CFE3A2C1FD862926035349EFEA3 |
SSDEEP | 192:AhecJQoNLg1B16bR1ZSZNBZGn53ZPqJIJC:yFJtLMq/ZUbm3ZyJIM |
TLSH | T181E18E0014841B3BFE0E4BD9E882F338E69D98CBD407727F2A50277516676149F7E1A8 |
insert-timestamp | 1678953074.8046045 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/python3-audit/changelog.Debian.armhf.gz |
FileSize | 244 |
MD5 | F447826823B4DEC3F500E225AF3AB151 |
SHA-1 | 0E6E08F3CDD8E83D9C5DFA6219E34A520F9B6B2E |
SHA-256 | A4AB71B0BD3E385E76B9036751F46C9121B12F6F8DFD0F46AA74086CCE159CB3 |
SSDEEP | 6:Xt3ybEq+j3HyoTvbt5d8zby0uN0WXrW064jjncaLqGANk94L:XNyuj3HfbPKzby0uugFnVLqGeL |
TLSH | T14FD097AC744B63E1C810A32B6450AF5A03FEA7AD020CD890A3C88E2E5E96CD00B17C06 |
Key | Value |
---|---|
FileName | ./usr/bin/ausyscall |
FileSize | 67112 |
MD5 | 4A20DDCD67EA6FF667FF30A08D84A1E3 |
SHA-1 | 1116B68ADF427FC3C706CB3FDD6478A3364743F8 |
SHA-256 | 86282C57A2A6DB697CBD6A0E29D0E64E177EA58056AAC7F43A87042830147DE6 |
SSDEEP | 96:MxJB+B5oUP/3VnKooOtbz98bWYkLEmqFKXov4O++tSIZwia5:0wFPvVnhouxSk0KXotcIZ |
TLSH | T18D63B70FFF966893C8C263BD485B1B51A333C46E97825B734E4CD1B22E050E99ED6B40 |
Key | Value |
---|---|
FileName | ./usr/share/audit/sample-rules/30-pci-dss-v31.rules |
FileSize | 6179 |
MD5 | 70B8DE2048C6B44A784AB221B95BA995 |
RDS:package_id | 293704 |
SHA-1 | 129423A508685ECE22A9EB155D9A0150EEF0FD82 |
SHA-256 | A6D974558DAE7B6D24EDF083A0D72BB8D15AC463DA0717FCD854235168390033 |
SSDEEP | 192:KGct29tkiKacQHguhLCZ0/XKANc4cIiKy2/P:KGcw9zcQH3SGhiF2/P |
TLSH | T149D13157636927319D1743E3EA5CB2EAE718809D3336B4EC4184A079EC6643A63E371E |
insert-timestamp | 1678960636.6124964 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/audit-rules/README-rules |
FileSize | 1421 |
MD5 | 6405EBAE48BB89AF7FF7DF3385F1448E |
RDS:package_id | 294718 |
SHA-1 | 148ACBDD22A8BF666CA5A3E284E4AC9EBF910926 |
SHA-256 | 00E0926039F166A9F8D5B0B825E33358C7F2C1CCC6F86067BA2F684C26D13F95 |
SSDEEP | 24:zPopzNwKFwInXYhOOayvCEAqH/JuNLcoY1awOdzXxLmEZ:UxFJXYhfLAC7ONXxLZ |
TLSH | T125210F1B67899B2A408333DAFECE12D9AF1581BD5368A530549F001EBE5177915F39D0 |
insert-timestamp | 1696439444.1184876 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/audit-rules/30-ospp-v42-3-access-failed.rules |
FileSize | 625 |
MD5 | 852D1A243E59DD5961F3D9F5C5592BAC |
RDS:package_id | 294718 |
SHA-1 | 149781B05552A0CDA6C6159984F21EE76540A154 |
SHA-256 | 74AA84E36882DD5F1BC4F1953B938FC6425A00D28D0C36232B16A5AEADC7B413 |
SSDEEP | 12:jEttqOQYENLFecOr9DeFeVOr9DeFecOm9DeFeVOm9D+:jkqO3JcOr9nVOr9ncOm9nVOm9K |
TLSH | T1BEF096DFC33434744A0A179789B54FBDF808511D533359CAC68416C1FE514B52AC2EAD |
insert-timestamp | 1696439445.0373838 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | 1770520E |
FileName | usr/share/audit-rules/10-base-config.rules |
FileSize | 244 |
MD5 | DEF45A38095C1C16EA919317B8020A83 |
OpSystemCode | 362 |
ProductCode | 214118 |
RDS:package_id | 294718 |
SHA-1 | 17C157514A3D87C906A6C830DF30C7FF3966C798 |
SHA-256 | 54C2CEBDAADFB928F7327CC066218E38743F0FF94D02FE162A7A415E148D23A8 |
SSDEEP | 6:jO2/q9RjRiNChQYF9FxNVYKAtOFPQYmFnNGd:jOuqHIQGYF9Lx+OQBgd |
SpecialCode | |
TLSH | T117D0A72D87B4B571095E03DF6A4673F39E6D214DA5603019208F683B458739FC53BA92 |
db | nsrl_modern_rds |
insert-timestamp | 1696439445.5309117 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/auditd/README.Debian |
FileSize | 762 |
MD5 | B3227334EE362039157636427817912B |
SHA-1 | 1F16E2C6AF3B44FF3BBCA62804A4CEFB56111887 |
SHA-256 | 3FC3C889319C32A4CF030D58687C4E9F9AEA049F7E097028059406F397EB69A8 |
SSDEEP | 12:3+PQ8EXgb3jLUXJNFB4h6A+ysf2HCY2NO8J8BCQk6PfGWRVGWRROxnJYzGLun:3kEXgfgXJpPA+yTHCY201Xk6Wf+WJYzH |
TLSH | T1D50128273E80D7765640F0B1FD5A61D1DA2A34A833043074259DA10FE99552A93FDF76 |
Key | Value |
---|---|
FileName | ./etc/audit/auditd.conf |
FileSize | 881 |
MD5 | FCDA3BA8BA06665ED33396551B8AA8E4 |
SHA-1 | 205CFC6E06A76ED481DD301955B1DC1E2388560E |
SHA-256 | 9A17001171E39899E535173AB9044923FB155C9C9AFA2C8EB71EEF2DB757C883 |
SSDEEP | 12:LzAKR4JZooKK9PGq6bEIo3ndI3Q3j4LXeOQ600tMSQOPUavAgEvG2o3XgpWpK/Kr:YCKJdI3Kj47jQ60KpUTRt/wZj7ovg71 |
TLSH | T16B1123F850F9FE6654B6D541E1A3018F0378790C39451679BB16F814E9B9CD0AB43190 |