Result for 0A1DE1C46285756619FF17D6FD88F97402CE73EA

Query result

Key Value
FileName./usr/sbin/kmsgsd
FileSize67744
MD5F71A2DAC47C6496FAF06DA01163A8E61
SHA-10A1DE1C46285756619FF17D6FD88F97402CE73EA
SHA-25659C10BF33418793A0BC0A706064C5DAE3912C5FB6170197B0B1770EE88F41673
SSDEEP1536:uMtvo5iz8tWnwRKLkF+/YpyDsdm3gBacNfh/YWp:kh/YW
TLSHT19663C723325C9B1ADB53653E465E5A60B3727C8B0361430B7618A32F2FEEB1DCE12655
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize181280
MD5C2A73A5FDA7FE1575E4F3ED870BE6861
PackageDescriptionPort Scan Attack Detector PSAD is a collection of four lightweight system daemons (in Perl and C) designed to work with iptables to detect port scans. It features: * a set of highly configurable danger thresholds (with sensible defaults provided); * verbose alert messages that include the source, destination, scanned port range, beginning and end times, TCP flags, and corresponding Nmap options; * reverse DNS information; * alerts via email; * automatic blocking of offending IP addresses via dynamic firewall configuration. . When combined with fwsnort and the iptables string match extension, PSAD is capable of detecting many attacks described in the Snort rule set that involve application layer data.
PackageMaintainerThiago Andrade Marques <andrade@debian.org>
PackageNamepsad
PackageSectionadmin
PackageVersion2.4.6-2
SHA-1ED3B06112ED0B0E87869275EA8146CB477820B9A
SHA-2565C28D2732B28CE241DE97F818DF05D38198D7029EA36FD74C57B2EEC6579ECEE