Result for 1513347B7A6BE60C92F490633E93EF87F632D85C

Query result

Key Value
FileName./usr/sbin/kmsgsd
FileSize19032
MD5F25A530A8075C76EC9355EC01ECDE33B
SHA-11513347B7A6BE60C92F490633E93EF87F632D85C
SHA-256AFE2E3F9BC282C505C6496AFC19279CEE5451E825CCE02C6FE7BBC47B764B476
SSDEEP192:J5FmoW2l7uVXtdOpvrD5N8DnqaEjGiDaTNUWMqiD0kmRmWT8jOnrcDSOa:bP8VdcpDD5eDqxqMuQ018qrcPa
TLSHT1A282D85967329BF6CCEA133B9B6E429B0B33C0F6DB07015E7B4C915A2F179189D41B22
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD545A4B8325F05AE181F666CA24505AAAB
PackageArchs390
PackageDescriptionPort Scan Attack Detector (psad) is a collection of three lightweight system daemons written in Perl and in C that are designed to work with Linux iptables firewalling code to detect port scans and other suspect traffic. It features a set of highly configurable danger thresholds (with sensible defaults provided), verbose alert messages that include the source, destination, scanned port range, begin and end times, tcp flags and corresponding nmap options, reverse DNS info, email and syslog alerting, automatic blocking of offending ip addresses via dynamic configuration of iptables rulesets, and passive operating system fingerprinting. In addition, psad incorporates many of the tcp, udp, and icmp signatures included in the snort intrusion detection system (http://www.snort.org) to detect highly suspect scans for various backdoor programs (e.g. EvilFTP, GirlFriend, SubSeven), DDoS tools (mstream, shaft), and advanced port scans (syn, fin, xmas) which are easily leveraged against a machine via nmap. psad can also alert on snort signatures that are logged via fwsnort (http://www.cipherdyne.org/fwsnort/), which makes use of the iptables string match module to detect application layer signatures.
PackageMaintainerFedora Project
PackageNamepsad
PackageRelease6.fc23
PackageVersion2.2.1
SHA-102A293B93629DB38403B1AAB5CA13ED619FD8702
SHA-2567034157F3D1C0231E7013D56E19D7C256BD775E07B43E266B4E2A021A6009F1E