Result for 16FB86855B0D55A21D835DC3EE2984C46AF875B8

Query result

Key Value
FileName./etc/prelude-lml/ruleset/ms-sql.rules
FileSize2480
MD59FE4C32B8B8127722FF7599AE5AA44D7
SHA-116FB86855B0D55A21D835DC3EE2984C46AF875B8
SHA-256B3CC045CC8C4C4C7FB7BF512EDBAA3E3FBD2DE7BFBFC786F741C3C535F356729
SSDEEP48:lg+sg4yUjH0hcpoocP8QKatQzcfza+3GMoU9KrZzcfzai3G+nsp:jFwToocPfLtQzAza+L6ZzAzaiO
TLSHT1F851300C690495A5084302B1280117F5B37AE7D697E781945ABDDB0CF50EEFCB37AEB8
hashlookup:parent-total55
hashlookup:trust100

Network graph view

Parents (Total: 55)

The searched file hash is included in 55 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD583370381B9A6418A65D634F6FE277CEA
PackageArchs390
PackageDescriptionPrelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications,
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease10.fc19
PackageVersion1.0.0
SHA-100C52685FDB1A48951430E5E814E65D85E2AA0C0
SHA-2562AE1B0472F1FEEBF11F1DFBF6B592FCA5166701D8F5198E086C517271BB17501
Key Value
FileSize233536
MD5BD1AE5FE3C88D5286A9777AE0DD4FE76
PackageDescriptionSecurity Information Management System [ Log Agent ] Prelude is a Universal "Security Information Management" (SIM) system. Its goals are performance and modularity. It is divided in two main parts : - the Prelude sensors, responsible for generating alerts, such as snort sensor, featuring a signature engine, plugins for protocol analysis, and intrusion detection plugins, and the Prelude log monitoring lackey. - the Prelude report server, collecting data from Prelude sensors, and generating user-readable reports. . Prelude-LML is a signature based log analyzer monitoring logfile and received syslog messages for suspicious activity. It handle events generated by a large set of components, including but not limited to: Apache, BigIP, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nagios, NTsyslog, NuFW, PAM, Portsentry, Postfix, Proftpd, ssh, etc.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion1.0.0-5.3
SHA-102980F19C2A3168079E78080E03E840B5AE512C5
SHA-256C3EAAEFCA44BE88E9FB41A04414E71423F6FFAE2F07C18D781D16CFA354DF589
Key Value
FileSize235652
MD51897290586C1B3F7E1F64DCB71FB4C5F
PackageDescriptionSecurity Information Management System [ Log Agent ] Prelude is a Universal "Security Information Management" (SIM) system. Its goals are performance and modularity. It is divided in two main parts : - the Prelude sensors, responsible for generating alerts, such as snort sensor, featuring a signature engine, plugins for protocol analysis, and intrusion detection plugins, and the Prelude log monitoring lackey. - the Prelude report server, collecting data from Prelude sensors, and generating user-readable reports. . Prelude-LML is a signature based log analyzer monitoring logfile and received syslog messages for suspicious activity. It handle events generated by a large set of components, including but not limited to: Apache, BigIP, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nagios, NTsyslog, NuFW, PAM, Portsentry, Postfix, Proftpd, ssh, etc.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion1.0.0-5.3+b4
SHA-1070A91F4BD8F6568BC23752A1A651FC917E060A7
SHA-256DE5FCE204B978D8CB2E57FD2B05E162C1F6AF9481C48BBF291CC2E324D5918BE
Key Value
MD5723166817B0F37FF937009D3CFBC4994
PackageArchppc
PackageDescriptionPrelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications,
PackageMaintainerKoji
PackageNameprelude-lml
PackageRelease4.fc15
PackageVersion1.0.0
SHA-10A128C32A6610B73E4A0D55681EC4BA7B97DC12E
SHA-256A105610776B95454BC395D3965B5E5A48DD5BD706CA0CEF9D357796F831DE4C9
Key Value
FileSize131990
MD5091ABBD2B4FDF7331F96EFF207CEA445
PackageDescriptionSecurity Information Management System [ Log Agent ] Prelude is a Universal "Security Information Management" (SIM) system. Its goals are performance and modularity. It is divided in two main parts : - the Prelude sensors, responsible for generating alerts, such as snort sensor, featuring a signature engine, plugins for protocol analysis, and intrusion detection plugins, and the Prelude log monitoring lackey. - the Prelude report server, collecting data from Prelude sensors, and generating user-readable reports. . Prelude-LML is a signature based log analyzer monitoring logfile and received syslog messages for suspicious activity. It handle events generated by a large set of components, including but not limited to: Apache, BigIP, Grsecurity, Honeyd, ipchains, Netfilter, ipfw, Nagios, NTsyslog, NuFW, PAM, Portsentry, Postfix, Proftpd, ssh, etc.
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion1.0.0-5build1
SHA-10C95E178EAF9F850E778DBC2722EDDD5231062CF
SHA-256CF96A52610A17997A46E87F851C34429A64395F994ACAA402B94DE51DC425F30
Key Value
MD5ADB7EC94887D2F21F1E4B9BB04FA59EA
PackageArchs390x
PackageDescriptionPrelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications,
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease4.fc15
PackageVersion1.0.0
SHA-10CD1D632D8C9FF937C9863CF50C0F5EF10FBC887
SHA-256606B8D80FFC40277D5C0CCCCB80C98F9615032487713DD2506855CEF3A75B8FA
Key Value
MD56E4BA087E5259C946588DBE0E49E38DF
PackageArcharmv5tel
PackageDescriptionPrelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications,
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease1.fc14
PackageVersion1.0.0
SHA-111B2B40188022101BBDEB396077A4997AEF2EB82
SHA-25625025D638FC21BB24D779BA4A546AD158576273970830AE7831A48B0CFC9BDA6
Key Value
MD5E318DFBB7AFE97F1C3EA1F52C1E5366F
PackageArchsparcv9
PackageDescriptionPrelude-LML’s primary function is log analysis. Logs on a local system or logs monitored over the network (if configured to accept syslog messages from other hosts) can be processed and analyzed in order to discover security anomalies.
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease1.fc9
PackageVersion0.9.13
SHA-11EE624E8B6D1C81E6C0BC7E2D68CEDB5F578BCA4
SHA-2566C853CBC6ACFBC8EE67C0E7449068918B8B187E2C16C6CE33AD674BD016A06BC
Key Value
MD5EC5443360DA9715E413EF3D2EF74A9F5
PackageArchs390x
PackageDescriptionPrelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications,
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease6.fc18
PackageVersion1.0.0
SHA-12AF5E6CB26FC4E1E7E142504E491B3E198D46DA0
SHA-25669DACE3D02597020D8F4E7CD57B62DA1C6CD8318BE29C052439672BD1443356F
Key Value
MD5368CDB4177F4B11029AD23863558E19D
PackageArcharmv7hl
PackageDescriptionPrelude-LML is a log analyser that allows Prelude to collect and analyze information from all kind of applications emitting logs or syslog messages in order to detect suspicious activities and transform them into Prelude-IDMEF alerts. Prelude-LML handles events generated by a large set of applications,
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease5.fc17
PackageVersion1.0.0
SHA-13658452B718FBF2403E491671E753ECFD6B46248
SHA-256546FAEDA473E7D9C6485D01E8B28C0E1CD9A29B3B9E0BDC5BF3969D14CC9E331