Result for 02A5E182623AF2CDDAC11C406E93A072010E95DF

Query result

Key Value
FileName./usr/lib/i386-linux-gnu/prelude-manager/reports/relaying.so
FileSize13704
MD54A5BDA26C9448B4CF70F3E426AD9396C
SHA-102A5E182623AF2CDDAC11C406E93A072010E95DF
SHA-2569840F30FCFC6E6F5E01162C4540E17911488EF9ADD8E594EF71DDB199807D15A
SSDEEP96:FRYUVyCNBWBcxd4UhTl4MX3Qa/c2EwroIQ5uu2wHRRpLbvuCJcS3V5BwFLg:YUQ28MdXX3Qgc2EwEuuVRpLLuCJP
TLSHT1A35295567AA5E876E5D21234048796A89333615A87D3C3337A2423E85CF23D4FF7273A
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize263484
MD5474B56D2613B2289DD8864F22DF73A26
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion5.2.0-2
SHA-1A0B69085286148E696B2B129002C0B3FB35700E8
SHA-2561C85DC8D26699D4223A8802BA5E5C699D3F595892CD55A8EE26396F91373F2DC