Key | Value |
---|---|
MD5 | A7E5F1940DDC1C097C191C41BB5573CD |
PackageArch | x86_64 |
PackageDescription | Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude modules. It is able to register local or remote agents, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert logging. |
PackageMaintainer | Fedora Project |
PackageName | prelude-manager |
PackageRelease | 1.el7 |
PackageVersion | 5.2.0 |
SHA-1 | 18ABBDDA8A61FC1698608FB089E10F15D2098104 |
SHA-256 | FD6E927044DDB7545FF7F1E7734EC368744956657B1A5DEE99ECDEB247754D20 |
hashlookup:children-total | 14 |
hashlookup:trust | 50 |
The searched file hash includes 14 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/filters/idmef-criteria.so |
FileSize | 15088 |
MD5 | 81635DC99C47242CB4922F6B16651460 |
SHA-1 | D09D9EEF339F4CA31017D0F77243DDD8451F64B6 |
SHA-256 | BFBEEE3362778AFB7D1FF994AECD01A0F03A4A53B3D56A940C1C903DEE8D8FF6 |
SSDEEP | 96:RhW1BWBPfMDm64Cbc1DGfCTIJBkkCjP0k6ihfZt3c1/XuozK6qaRCe1FzBw+am8u:RG8pf6mR1yfCTSMBrM1/Xh+D2CKd |
TLSH | T13862F79FB2D48A7FC48C5B7040AF41F4A6B4B481DBA192035244A6B47D8779C4F2B97B |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/decodes/normalize.so |
FileSize | 15184 |
MD5 | 1BFF079850A5717B4C03E6689E345073 |
SHA-1 | 17C71F27616482391E9EE7CE6298D1205B10030F |
SHA-256 | 2477D9374826E1884DEDB84828DB693EDAC90FEB1B7D66CE5F8022FAECE3C077 |
SSDEEP | 192:Rfm58p0csEgj27PfQ8sUwka/83VjtRu9vilpp+bqsYa:sEI27PfwUwB8ZIKlGbc |
TLSH | T1F562D54FE1A48A7FC0DC577409BE12F266B449C4EBE1A7272640E5B07A907440F9BD9E |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/debug.so |
FileSize | 15088 |
MD5 | 29B1CF636EF37C4125416AB8ECC906C4 |
SHA-1 | 7F6E3DA71C116D37D6A96974A4DE47F97B788900 |
SHA-256 | 4DE8137CC500786BAA63BCF3C009BF134690005E176E67F267029C2914E46F86 |
SSDEEP | 192:Rn468pswo9Rwwj4x//oLvOZXepgpZW8NDS/:1JTuwjU/6mX22WE |
TLSH | T1DF62F94FB2A4897FC4D85B30808A85F09EB8A046DBA2D367154075B43993B785F7F87B |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/smtp.so |
FileSize | 40184 |
MD5 | A6B7F6F85A7E00B65B3F648F052673D7 |
SHA-1 | 800D598C25AB202C623E2A19C8634536AC4FE619 |
SHA-256 | 941249AA8A5FFD3C867FA4C89074B2CEA82CCA5B2E21A0A9A2125370BD0262C6 |
SSDEEP | 768:6qdqZl4QWbbJcbFghEkfky0xvZLkVANTCXVhbY4EsTk7Gt0SEHOd86RmgFULq:nqZl4QWbbJy134UZamgFUL |
TLSH | T108031C8BB11155BDC1D6C7B086BBC191AD7034089732EA3F7D84E6746A11B2C4E2FA7B |
Key | Value |
---|---|
FileName | ./usr/lib/systemd/system/prelude-manager.service |
FileSize | 166 |
MD5 | C93F36811D69BBD35FCBB7AF580DC5F2 |
SHA-1 | 984A282C9B19CC344CC9048427BC926F3E251193 |
SHA-256 | 02B97A9B44EFC5B42BDEBDFE5A8E9DCB56C559BC84B869C4196D561668C9E20B |
SSDEEP | 3:zMZa7T9QW85LMHGdeBN0c3AXbvmXTMzdK+aQmMv3AXUSkQmWA1+DRvn:z8cyrLMHGdW0LXbOMzdK+aBzXULQmWAe |
TLSH | T110C0C0D31D60B071CC0B11A7FEF0CBC04C0104411B4CF11036B104F824C05444020817 |
Key | Value |
---|---|
FileName | ./usr/share/licenses/prelude-manager-devel/HACKING.README |
FileSize | 766 |
MD5 | 2997147E163AAA6ABE3DBBAB5CF8B612 |
SHA-1 | 7F3D8D28D3E08271FBAF3968C233FBCFED8C4E4E |
SHA-256 | D8DAFE39DFFDB4D901EC23C8DEB4658883449C60C7AB8F72B73AE7DAF23C5319 |
SSDEEP | 12:hBerOrqL9ZXXanRF1Kb2yvcgMevyCmFQMl9Kr1yAHkxbpfgtthcAkU5tDWg2:XvrqL9Zna8b2Ng5yCmFjqNHkxNEeAvW |
TLSH | T1A601D51F736C62B818850D9272C2E3F7A50F41D6CB214431E106D4D533BB97E853F599 |
Key | Value |
---|---|
FileName | ./etc/prelude-manager/prelude-manager.conf |
FileSize | 13541 |
MD5 | 9170F71F44C8BECF16D86AD7BE1E9F4D |
SHA-1 | 015B042BF4D51407A8DD5704EB7683A9B0E511DF |
SHA-256 | 68BCCCC059083A1D286CAD996778B8F4EB95EA643FF5581334C9CF66BD26FA8C |
SSDEEP | 192:WwvQt/0//pGlRW5m2dhEJ585s5lVxVRVq9kuZph08VV33pM3WJ:WwIt+pGGm2dNkuW8zZJ |
TLSH | T1D152A451E24ABB36075603D2B18F91EE7B2951DE6F63A82014FCCD5C3604CB5A3B36D5 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/filters/thresholding.so |
FileSize | 15208 |
MD5 | D7A4CF5C27165DE280DB4809B15ACE35 |
SHA-1 | 10DD73C2D96AC87AE462017F99CE008FDEA9B38D |
SHA-256 | 46ABAEBAC3C5D3487B7A3E0E668A20F7DC9E7BB96648569A087B4A1AA5A0E9C2 |
SSDEEP | 192:RTl8pD0hyOdLO0XfXcHxXakVr540xKlU8DEqHVerhh83Qb:+0h5dLDXUHlVr540xKW8DEq6hh6Q |
TLSH | T192621A5FB0944BBBC5C88730404797F26AB2B048F7D1856BB290E6B43955B644F2B8BB |
Key | Value |
---|---|
FileName | ./usr/lib/tmpfiles.d/prelude-manager.conf |
FileSize | 38 |
MD5 | 1C83B3AC0148277EE2C4203630A539CA |
SHA-1 | 376747F9ED248FD2D2FC845325B4900910B8224E |
SHA-256 | B2255C7EFAB62F34957B3391E0581F502CB04B94E94BFD527EB9B808536DB48C |
SSDEEP | 3:kQev3AXht3HJ:kQNXht3HJ |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/textmod.so |
FileSize | 35704 |
MD5 | CFE8F0958BCA3F797024C8FE033E9B9A |
SHA-1 | 41B672CA4A52B7FB1EBB0CAAF271118543CE9600 |
SHA-256 | 198B0CF338B6C96E9548DDAED812FF3C557F0CC20CA08459F233CD5E33457AAE |
SSDEEP | 384:fBmbH3UozQ3uBbCv1sediU9K5kxQVIcPzOStDDjAKk:cL3MetCeqoIwxvg |
TLSH | T11EF2C64F61699E7CC04A2FB846EA11D41D702A51EFE1FC6DCA0077B9A19D60C4BA3C6E |
Key | Value |
---|---|
FileName | ./usr/share/man/man1/prelude-manager.1.gz |
FileSize | 1381 |
MD5 | 107ACEA08F5FB6F7C83F6C6D391C8900 |
SHA-1 | D939D222C3860440C97926F8C8F2A7A1DEA496E9 |
SHA-256 | 95C0B2A72354F962E4AB3D7270CC292CF43AA21B00F907BEFF45B8E141D5EA75 |
SSDEEP | 24:Xv+VliOIUkkLMT/5x6TokJ2v3EtulUfZAGg1+2TW84NquzaBl:XviiOI8L2x6j4vEglUfyWkHBl |
TLSH | T1A9210B477857103283F878805DF308598596D5A402C38756178C5F371561B9E7E13B79 |
Key | Value |
---|---|
CRC32 | 4E46F4A1 |
FileName | ./usr/share/cmake/Templates/fedora/gpl-2.0.txt |
FileSize | 18092 |
KnownMalicious | malshare.com |
MD5 | B234EE4D69F5FCE4486A80FDAF4A4263 |
OpSystemCode | 362 |
ProductCode | 15109 |
RDS:package_id | 313212 |
SHA-1 | 4CC77B90AF91E615A64AE04893FDFFA7939DB84C |
SHA-256 | 8177F97513213526DF2CF6184D8FF986C675AFB514D4E68A404010521B880643 |
SHA-512 | AEE80B1F9F7F4A8A00DCF6E6CE6C41988DCAEDC4DE19D9D04460CBFB05D99829FFE8F9D038468EABBFBA4D65B38E8DBEF5ECF5EB8A1B891D9839CDA6C48EE957 |
SSDEEP | 384:ghUwi5rpL676yV12rPd34ZomzM2FR+dWF7jUI:gmFWixMFzMdm7jUI |
SpecialCode | |
TLSH | T13A82A42E770443F205C202A16A4F68DFA32AD5B9723E1155386DC15E236FE35C3BFA99 |
db | nsrl_legacy |
insert-timestamp | 1728991626.679368 |
mimetype | text/plain |
nsrl-sha256 | rds241-sha256.zip |
source | snap:MmD5jWldYNMNgb2rFFht3FNKGJx1FLLV_613 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/sbin/prelude-manager |
FileSize | 119720 |
MD5 | 50229F6BD6B480FF4DC5C1E2BB3C80B8 |
SHA-1 | 179B3E3E626BDCD3867C7122069A298B1B896087 |
SHA-256 | 3005D843DE54BC364F92395CEE6BC17C628E51D2277C5D6F34CDB6720571BFE6 |
SSDEEP | 1536:iKCVNteTrmlUrSDGvhM8uN3MXnnJv5LHJ6P5vti9A+FO:iKCV2rAUrPvhM8uMJv5VKVJ+F |
TLSH | T17BC37C8B71A14CBEC0D3CA70846BD2916A75B620D711A53B3601AB7C2D0AF6C5F6F739 |
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-manager-devel/README |
FileSize | 2251 |
MD5 | D9DCAD7F22BC279AFF70412096E93AEE |
SHA-1 | 44E6825DAFC3352E09A8325D27F54714708F55D0 |
SHA-256 | 92C2CBFC55A1819D564CAE429AF544AC2BBAA4FAC58DBFA531F9A563508F08A7 |
SSDEEP | 48:ve5Bie/dmlO6fbv/Kt7lm1XrKZog1kt8DXJfVsP:vVeIlO2yZlrkoVs |
TLSH | T1224151FFA27832712105018AB205D8EB8BA771BFAA9010A0B8AC49EC172335C5377B90 |