Result for 07E1158774DF0C12D48299497D75365B7E0C2671

Query result

Key Value
FileName./usr/share/doc/samhain/manual.html/stylesheet-images/annot-open.png
FileSize169
MD5349242E1C28E3F53E70926F9527903AB
SHA-107E1158774DF0C12D48299497D75365B7E0C2671
SHA-256B70F9E8F1841CBD865B9E42799CD92BCE00A264BCD12760654BE6DA1DD079F5B
SSDEEP3:yionv//thPl6vQEcG2/uDlhlbJhM6h9vAbLW9q0OxCKXOxAPrAmeIadp:6v/lhP8YD/6T/hhh9vAbC9OCxAPsXdp
TLSHT19DC0CCCE28C2883EF08A2232230E080AAA23CF0C00022B00A0F0E83000030082EE3320
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize1167092
MD55B7AA146F163188E4F68FE15844F7466
PackageDescriptionData integrity and host intrusion alert system Samhain is an integrity checker and host intrusion detection system that can be used on single hosts as well as large, UNIX-based networks. It supports central monitoring as well as powerful (and new) stealth features to run undetected on memory using steganography. . Main features * Complete integrity check + uses cryptographic checksums of files to detect modifications, + can find rogue SUID executables anywhere on disk, and * Centralized monitoring + native support for logging to a central server via encrypted and authenticated connections * Tamper resistance + database and configuration files can be signed + logfile entries and e-mail reports are signed + support for stealth operation
PackageMaintainerJavier Fernández-Sanguino Peña <jfs@debian.org>
PackageNamesamhain
PackageSectionadmin
PackageVersion4.1.4-2+b1
SHA-1250E74244A20BE8BB5D5CCEEB4226BDFED091181
SHA-256DBFB671750E30EC87FF1145FB8EDAA6B7213EDB1945BC58D61008F69484EAEF0