Result for 1E8C58863F3BEB47276387482F9E067E225A7D17

Query result

Key Value
FileName./usr/lib/i386-linux-gnu/prelude-manager/filters/idmef-criteria.so
FileSize9468
MD538158158E9DF355E6DA6C19ECA0C8183
SHA-11E8C58863F3BEB47276387482F9E067E225A7D17
SHA-2560EA849CB46991F310B44DA57C7A0AC31CB0F33482790473615E2DBC428CA6331
SSDEEP192:a3umh8g6001RfIFX3Qgc2EwjH9a152A/CC39tXeXzf6UfPjpG:aea60DdggTjda1cCneXzSUd
TLSHT12012E74BBAD6CBB7E19203BC1193437A61355044EBE3C293B948739879A3298CF72375
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize247236
MD5E54E6CB3307D53190A66592F4890BF59
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion4.1.1-2
SHA-1827B51EE6A95072A16F99A930AA2F2B5F2F1AB1A
SHA-2564E7C04750EE53BC806E19E491987977B359F07F6C6F2FFD2A7212542424DFEC0