Key | Value |
---|---|
MD5 | 38FE2B065C23547C294AEEE8337EFA67 |
PackageArch | x86_64 |
PackageDescription | Prelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications |
PackageMaintainer | https://bugs.opensuse.org |
PackageName | prelude-lml |
PackageRelease | lp150.1.7 |
PackageVersion | 4.0.0 |
SHA-1 | 0CBB4870B731C9E99E4F0E9A27F34A6800D182F1 |
SHA-256 | 43344FC9C730D80CDD0B7628D54CC762121E0C0DE1E44CDE9D36D7805A8453A3 |
hashlookup:children-total | 12 |
hashlookup:trust | 50 |
The searched file hash includes 12 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-lml/HACKING.README |
FileSize | 756 |
MD5 | 1475976CC703D5CACF83483486774A0B |
SHA-1 | 2FCBA98BFEAFCEA21E12CAD85F979583F9B51DA0 |
SHA-256 | 1DB2E6985C825EB5742271954E017E2F8DDEE0A11A022EDDA6F9A00C19F7846C |
SSDEEP | 12:hBe+oVOrqLRh1y4AvoInFbyE0MevyCmFQMl9Kr1yAHkxbpfgtthcAkU5tDWg2:XywrqLvw49IxM5yCmFjqNHkxNEeAvW |
TLSH | T19D01D01EF26C62A4198105E17682E3F2660F41DACB324432E257D4C533BBA7E853F5DD |
Key | Value |
---|---|
FileName | ./usr/lib/systemd/system/prelude-lml.service |
FileSize | 184 |
MD5 | 0C94BB2412116D6989F201D2E1D78FDD |
SHA-1 | 9EEEBFCCDD311F33C67F9AD1DD9952DF0963E49D |
SHA-256 | B767B68E401D49A4AE8633CFEA039FE4ACF3543BCA64202BFD0F27C0A005E9C2 |
SSDEEP | 3:zMZa7+rUSXABlRVGKRy6tafKlEXC0FrBv3AXjQJAXTMzdK+aQ9sHSv2rSkQmWA18:z8tU6wlzGKRyFClEXN5aXjyADMzdK+ac |
TLSH | T16BC02201F55024F18C2B1A67CF6243D405254145DF8AF4203AA1286825D098A40200A8 |
Key | Value |
---|---|
FileName | ./usr/bin/prelude-lml |
FileSize | 141568 |
MD5 | 77813EF9FF9F997D4423497A2321870C |
SHA-1 | BD0C5F34B1F5DB98C0FC9A99C46A359C4F9629FD |
SHA-256 | F4D4F0C2639EC4396E239FCFA150E987815F4DD45A7A9B80A0191610BB730215 |
SSDEEP | 1536:gcrlVr5/FjD7Gbz3T5tV/MvruffUfe4F62kFWe8GDb7Eb4o6WbtCnsvlFT:gcr5/e3rV0Bfe4sFWe8E7g5bosvl5 |
TLSH | T10FD34C9B729158BDC5C0C97086ABD2613AB4B444D3226B3F39449A782F12F6C1F1FB76 |
Key | Value |
---|---|
FileName | ./etc/prelude-lml/plugins.rules |
FileSize | 836 |
MD5 | 446480A94DE7E09917ACD9C48361234B |
SHA-1 | CCC52AC2BE9F8DCFFA54115CD8F46FC7995DC8D5 |
SHA-256 | 6E009A53AD344BD1563EA2A2B79A8D3F53886948567979355EA3FCCD2C3F6BF9 |
SSDEEP | 24:SslZ+0CJBxd1ayS3EPSR0LSjTWdEkoF7lS5EPgLRSaAgm:S++0CJBX1ayS3yS+LSncEnS5ygLqgm |
TLSH | T172014C1F878D253101E584E23099E1D9462AD2D9ABF0E091F7DE855C6B3497E51A9D40 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/prelude-lml/NEWS |
FileSize | 29504 |
MD5 | C271685D181400D5B10B35CE01F7DCA1 |
SHA-1 | EB3D3B4938A6B107AF42A57ABF55CD995552A603 |
SHA-256 | 23D461CE7DDF826AD4DD7821C8980992E98AD20B84E42885F994AF3950EA2425 |
SSDEEP | 384:YK/o951i9ipVVMebv4r9zOXIgMRbEmY/ZzzA+g6ha5FTjTzl+xcJYUDD7a4EW:J/e6ipVBy9CXI5FEmazzA+gMg9Kqau |
TLSH | T167D2FAA7B66832271A521DBAE1DA82D2EF3C746FD353B5A435CD42883F01470D2F6698 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-lml/pcre.so |
FileSize | 35960 |
MD5 | 293B34C62FCA09B57CD2652713A57957 |
SHA-1 | 54CA8CF10C4B4A9449BE71086BBD2BF4EFD2E537 |
SHA-256 | E823220D444DCCE36E21169C37F4415D30BEE57D79DDA7FF9AA8076B897BD7F1 |
SSDEEP | 768:ucE/G7HX+Ql6jULkMU+Mftu1WVXgNGNzJKBZxsi4:ucE/G7HXUsU+MfbVXoGtJII |
TLSH | T1F6F25A4F779588FCC5E48770C9A79766BDB03019E300523B7A44A7781A42F380A2FE3A |
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-lml/README |
FileSize | 1728 |
MD5 | 05E12D515E6B5F984C8B880E9A9D5009 |
SHA-1 | E187FDE5A267DC18E07A31E90A4738422A14958F |
SHA-256 | 64826052D54C20F3E93CCE7E6BDC00D2BCBE96D6E850C1955C5D06EEE6BB9FEF |
SSDEEP | 24:yAwdzTaLVNECo7w5QlXlunfy1XICIrYKZQaIJkt8MswCHJfVKcDwaq+ygXA:kwECo7Hlua1XtKZQ3kt8DXJfVsP |
TLSH | T16A3116FFA2687270734525C87216E4F7CB6375AFA26025B1BCDC84D5632A39C4132B85 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-lml/debug.so |
FileSize | 10408 |
MD5 | 77BE0AE7D29F9E0B3FFA21FD8E6616A6 |
SHA-1 | 49C3149C98ED9363525847F9486A60EC221F3AFA |
SHA-256 | B6FFD473A3295F1AF58A3285A32F23B56C2203A103C620F7D84358059EC8233D |
SSDEEP | 96:RFY1BWBc+9rmtTCNfVBjrkgro8FgDl3P47MFF/4nFeu+OGd+iVvR5wM:RS18P3NPrkgbCl3A7mFgnQLCi |
TLSH | T10C22B50FA270863FC994433484BF46B026B0A494D7A243377654B17C7E9279C5B77AAE |
Key | Value |
---|---|
FileName | ./usr/lib/tmpfiles.d/prelude-lml.conf |
FileSize | 34 |
MD5 | AF758F6271D4CBAC4C9842C3087E015F |
SHA-1 | 25D770E9CAC73A12FB213E5562AB4A3C3E3A7D01 |
SHA-256 | 9A6660A59E058E6A0C996D4773093F02C8905D7047440D685174C91E59F3B14B |
SSDEEP | 3:kQe4VjP3HJ:kQldP3HJ |
TLSH |
Key | Value |
---|---|
CRC32 | 4E46F4A1 |
FileName | ./usr/share/cmake/Templates/fedora/gpl-2.0.txt |
FileSize | 18092 |
KnownMalicious | malshare.com |
MD5 | B234EE4D69F5FCE4486A80FDAF4A4263 |
OpSystemCode | 362 |
ProductCode | 15109 |
RDS:package_id | 313212 |
SHA-1 | 4CC77B90AF91E615A64AE04893FDFFA7939DB84C |
SHA-256 | 8177F97513213526DF2CF6184D8FF986C675AFB514D4E68A404010521B880643 |
SHA-512 | AEE80B1F9F7F4A8A00DCF6E6CE6C41988DCAEDC4DE19D9D04460CBFB05D99829FFE8F9D038468EABBFBA4D65B38E8DBEF5ECF5EB8A1B891D9839CDA6C48EE957 |
SSDEEP | 384:ghUwi5rpL676yV12rPd34ZomzM2FR+dWF7jUI:gmFWixMFzMdm7jUI |
SpecialCode | |
TLSH | T13A82A42E770443F205C202A16A4F68DFA32AD5B9723E1155386DC15E236FE35C3BFA99 |
db | nsrl_legacy |
insert-timestamp | 1728991626.679368 |
mimetype | text/plain |
nsrl-sha256 | rds241-sha256.zip |
source | snap:MmD5jWldYNMNgb2rFFht3FNKGJx1FLLV_613 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
CRC32 | E19D9AD2 |
FileName | ./usr/sbin/rcznc |
FileSize | 7 |
MD5 | AAABF0D39951F3E6C3E8A7911DF524C2 |
OpSystemCode | 362 |
ProductCode | 183711 |
RDS:package_id | 263811 |
SHA-1 | 4CF5BC59BEE9E1C44C6254B5F84E7F066BD8E5FE |
SHA-256 | 9DF6B026A8C6C26E3C3ACD2370A16E93FFFDC0015FF5BD879218788025DB0280 |
SSDEEP | 3:jg:jg |
SpecialCode | |
TLSH | |
db | nsrl_modern_rds |
insert-timestamp | 1654961073.836576 |
source | modern.db |
Key | Value |
---|---|
FileName | ./etc/prelude-lml/prelude-lml.conf |
FileSize | 7037 |
MD5 | CBD92FBCC93E48ADCF0917AE8B75E9FB |
SHA-1 | F00675B6BE4BAEB36A516CB88E388568A5B3DB5C |
SHA-256 | D240496C90B1A9122C00C0B7930DD934E2C9025CCB1E9BFF0FCA7D69F2782682 |
SSDEEP | 192:mKqkehijEnNmfiZiMyB0Xus6vzGoMcNadlO25e:mkSmUUsWIOP |
TLSH | T124E17565D24D7B2A13CF07A150AEE1DDDB3D804D6F63241262DD98A83201E7892FBBE5 |