Result for 01E9E1305D5A4116F9E2B91B4EC064D76E92ABA7

Query result

Key Value
FileName./usr/lib/i386-linux-gnu/prelude-manager/reports/xmlmod.so
FileSize42376
MD5A4EE4523A0609B9EFD70ACAB85FCE1CE
SHA-101E9E1305D5A4116F9E2B91B4EC064D76E92ABA7
SHA-2568EAFF8EA49EE227EBD3D5C9C17E737B972A0E25F1049CDA324323564BBF477A6
SSDEEP768:eJaQ69fTRlHCcpQptpxwYXPtIhbjkC+yzZ+HmZ:c9mtXWptr60G
TLSHT1A113A78EB7F4CCB6F15308FC0ABA61E19560070573F3FAD1EE05664A897A249677263C
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize263484
MD5474B56D2613B2289DD8864F22DF73A26
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion5.2.0-2
SHA-1A0B69085286148E696B2B129002C0B3FB35700E8
SHA-2561C85DC8D26699D4223A8802BA5E5C699D3F595892CD55A8EE26396F91373F2DC