Result for 021948A42B81633FC2B32499DE74EEA76DB4BFA4

Query result

Key Value
FileName./usr/bin/prelude-lml
FileSize136872
MD552EA373B997856B3ACAFFA3F0296B28A
SHA-1021948A42B81633FC2B32499DE74EEA76DB4BFA4
SHA-256BF89394815EE09A67343C2DB0BB20AAE7D2BB92AF7634FDFA98BC1E71D7CA534
SSDEEP3072:kbIjd5GGQN5mQNZJAjg4DfIZGzBV0L/8auhcf99tzEZG6lP0wShO7/7n/3qzWymO:6N5zNZJAjg4DfIZGzBOL/8auhcfftzEf
TLSHT172D31943BB4D6D26D4D6CF36847AC2610F3C38ABA35117237A9C89A9AD0F9CD0FC6449
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize217512
MD5A3393FF6381DC565D0C1F9431F4DAB02
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion5.2.0-2
SHA-10406879ECE460A014E65D5636F3E5DEE49901FFA
SHA-2569AFDAC9CBC36959ADD2F7DA663B319C2B28FC66EE7BED8155138ECDBA8645B4E