Result for 1645CE85BD8AAE577F5226DE3BBF4A0510A47630

Query result

Key Value
FileName./etc/prelude-correlator/rules/python/CIArmyPlugin.pyo
FileSize3232
MD5EB8890F6E35B9C493E30BA91E5D0DCD3
SHA-11645CE85BD8AAE577F5226DE3BBF4A0510A47630
SHA-2568B05A771F3089358BBCA72F3C06BB33B8B7B36353A72AC3862408A1B388FC257
SSDEEP96:NAN8jR4i65K7OjJH076i8nK/WFE8FUbGzaw:ON81B2K7mWR/E
TLSHT12361BAC4E3E44847E8B413B8E8F8518BBD66F2F35204971125ACA4BA3DDE2E5D91E3C1
hashlookup:parent-total2
hashlookup:trust60

Network graph view

Parents (Total: 2)

The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD59A3D1B8981963E489AE4A67BFD1B1839
PackageArchx86_64
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.1.0
SHA-1AD24572D0D3969926FD9BF4ADB9788B586C1A8AB
SHA-256F64F2D16CA5565F2CB1F720E8A6D141308973ADA79B1B9493F2744790FC7B898
Key Value
MD52324D3D2065F4F4EDC069D168C11D83A
PackageArchppc64le
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.1.0
SHA-18C7A0C270F574A56C4D49D7DAF25B1CF7B00FFDF
SHA-256717F62A7A95A496B99956FF6A242BD98AE10E298F1E6263DA377AA5FA5F4FF43