Result for 23B020DD80FEF5F6F3BD498601484B38CBF6D124

Query result

Key Value
FileName./usr/lib/aarch64-linux-gnu/prelude-manager/filters/thresholding.so
FileSize18408
MD5133769B750B7239DC8D1D77228D48E0B
SHA-123B020DD80FEF5F6F3BD498601484B38CBF6D124
SHA-256FE27ED138EF25566B2307A788665A3A120D4BB544AFC389FA9AE3B43BBDAD00D
SSDEEP384:AbYLgxnWNELKgQ4/+lsjSpgXGdU76YVa3zGmDEhN+0e:Vo5mDEh
TLSHT19082B35BF00CA8ABC5C953B455CD42F4B337944CE3254BD376089B986F423A9EDB86C9
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize252800
MD57AAD48EFD298F44D734031D9C4F498BA
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion5.2.0-2
SHA-174066A63271DEEBAA580DF2C8571F222A38DB26F
SHA-256902127293F037D5F3361525CA3CCBD80FAE1F0B200ABC1AB95FCF85497C46E0A