Key | Value |
---|---|
MD5 | 2644F571D86428B0FE0A8DBF0B146047 |
PackageArch | armv7hl |
PackageDescription | The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports log files in the BSD syslog format and is able to analyze any log file by using the PCRE library. It can apply log file specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected. |
PackageMaintainer | Fedora Project |
PackageName | prelude-lml |
PackageRelease | 2.fc32 |
PackageVersion | 5.1.0 |
SHA-1 | 29B1753750E0CA6E06E8C70E17523F892090117B |
SHA-256 | 38D43F8EDFC936C486D2AF66386E2F618FF487238C1A5256F237ECB4C72FF308 |
hashlookup:children-total | 13 |
hashlookup:trust | 50 |
The searched file hash includes 13 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-lml/HACKING.README |
FileSize | 756 |
MD5 | 1475976CC703D5CACF83483486774A0B |
SHA-1 | 2FCBA98BFEAFCEA21E12CAD85F979583F9B51DA0 |
SHA-256 | 1DB2E6985C825EB5742271954E017E2F8DDEE0A11A022EDDA6F9A00C19F7846C |
SSDEEP | 12:hBe+oVOrqLRh1y4AvoInFbyE0MevyCmFQMl9Kr1yAHkxbpfgtthcAkU5tDWg2:XywrqLvw49IxM5yCmFjqNHkxNEeAvW |
TLSH | T19D01D01EF26C62A4198105E17682E3F2660F41DACB324432E257D4C533BBA7E853F5DD |
Key | Value |
---|---|
FileName | ./usr/lib/prelude-lml/debug.so |
FileSize | 10780 |
MD5 | 482BBAD4BDA6F2A17342C38B8646C430 |
SHA-1 | 5EDC72ECF5FCB0F5772C52D61F89849B8C1795D8 |
SHA-256 | 9CFF138C2AF0FE5B415550169B9E3DE6E1017EFAEB47E4F373EDBB2D07EAF480 |
SSDEEP | 96:WEauBWBc+9KbKvm27mo1qcFH+h9IUV0NvcHh3qD8Ui46XIIDNB1MKz:pau8iKvhqc09IUSJw3j6yJB |
TLSH | T1AC22DA9EF2735FB7C09052B8617B8E643355D8A652E78F03864462782F232989F37E19 |
Key | Value |
---|---|
FileName | ./etc/prelude-lml/plugins.rules |
FileSize | 836 |
MD5 | 446480A94DE7E09917ACD9C48361234B |
SHA-1 | CCC52AC2BE9F8DCFFA54115CD8F46FC7995DC8D5 |
SHA-256 | 6E009A53AD344BD1563EA2A2B79A8D3F53886948567979355EA3FCCD2C3F6BF9 |
SSDEEP | 24:SslZ+0CJBxd1ayS3EPSR0LSjTWdEkoF7lS5EPgLRSaAgm:S++0CJBX1ayS3yS+LSncEnS5ygLqgm |
TLSH | T172014C1F878D253101E584E23099E1D9462AD2D9ABF0E091F7DE855C6B3497E51A9D40 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/systemd/system/prelude-lml.service |
FileSize | 138 |
MD5 | 6418C224E5053F6383BDB625BB5AB03F |
SHA-1 | 213258946530DD5C99AD5F1030A6620935523DE7 |
SHA-256 | 1BF3E17E9BF20FD5E70A41860F89C56381512EBBC3487F767031422136046939 |
SSDEEP | 3:zMZa7+rUSXABlRVGmDMzdK+aQmMSv2rSkQmWA1+DRvn:z8tU6wlzGmDMzdK+aBJcLQmWA4Rv |
TLSH | T14DC02B25F440B0B1980B2EABCE3247A849104648EF8CF4207AB2142D06C450A94300BD |
Key | Value |
---|---|
FileName | ./etc/prelude-lml/prelude-lml.conf |
FileSize | 6976 |
MD5 | F5183E2F0F05CC917DECDC23F1954FC8 |
SHA-1 | AD3DE09C3934AB13B43FF7EA82F10826BCA92B4D |
SHA-256 | 700BD25142068064FD3B9417CC5928C0CDBD21A9E96F822E8AA7ABE5E4297DCA |
SSDEEP | 192:mKqkehijEnNUiMyB0Xus6vzGogpcNadlO25e:mkSkUsWiOP |
TLSH | T182E17466D24D3A3B13CF07A150AEE1DDDB3D904D6E63241262DD98683201E7892FBBE5 |
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-lml/README |
FileSize | 1728 |
MD5 | 05E12D515E6B5F984C8B880E9A9D5009 |
SHA-1 | E187FDE5A267DC18E07A31E90A4738422A14958F |
SHA-256 | 64826052D54C20F3E93CCE7E6BDC00D2BCBE96D6E850C1955C5D06EEE6BB9FEF |
SSDEEP | 24:yAwdzTaLVNECo7w5QlXlunfy1XICIrYKZQaIJkt8MswCHJfVKcDwaq+ygXA:kwECo7Hlua1XtKZQ3kt8DXJfVsP |
TLSH | T16A3116FFA2687270734525C87216E4F7CB6375AFA26025B1BCDC84D5632A39C4132B85 |
Key | Value |
---|---|
CRC32 | 4E46F4A1 |
FileName | ./usr/share/cmake/Templates/fedora/gpl-2.0.txt |
FileSize | 18092 |
KnownMalicious | malshare.com |
MD5 | B234EE4D69F5FCE4486A80FDAF4A4263 |
OpSystemCode | 362 |
ProductCode | 15109 |
RDS:package_id | 313212 |
SHA-1 | 4CC77B90AF91E615A64AE04893FDFFA7939DB84C |
SHA-256 | 8177F97513213526DF2CF6184D8FF986C675AFB514D4E68A404010521B880643 |
SHA-512 | AEE80B1F9F7F4A8A00DCF6E6CE6C41988DCAEDC4DE19D9D04460CBFB05D99829FFE8F9D038468EABBFBA4D65B38E8DBEF5ECF5EB8A1B891D9839CDA6C48EE957 |
SSDEEP | 384:ghUwi5rpL676yV12rPd34ZomzM2FR+dWF7jUI:gmFWixMFzMdm7jUI |
SpecialCode | |
TLSH | T13A82A42E770443F205C202A16A4F68DFA32AD5B9723E1155386DC15E236FE35C3BFA99 |
db | nsrl_legacy |
insert-timestamp | 1728991626.679368 |
mimetype | text/plain |
nsrl-sha256 | rds241-sha256.zip |
source | snap:MmD5jWldYNMNgb2rFFht3FNKGJx1FLLV_613 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/sbin/prelude-lml |
FileSize | 116708 |
MD5 | A93FB840E26686FD712CF218B869C5AB |
SHA-1 | C3A51C05E2E82F1815252D796318EF25A41B909E |
SHA-256 | FBB0CC9741E0D5B848E668A209C4ABC979F219F2763E859919E4A6FD7D8D72DC |
SSDEEP | 1536:gyB7H5PD47m76GI5iO5Lv2faCe9xDo7Bdej8+zO3hlTHNGBYBETeWNF0TXrJX9Ii:gyHP345ar4oluyFEeT2HK/ |
TLSH | T1F7B32BAAF041D76AC5D402F4730B8B79722346B8D3DB670AD90992343EA756C8937B4F |
Key | Value |
---|---|
FileName | ./usr/lib/tmpfiles.d/prelude-lml.conf |
FileSize | 36 |
MD5 | 6E1EE4B44ECA83D673275BFBAAC16AEE |
SHA-1 | 6DB5DE0E9DCA111560CF6026AFE4E1D873F90E62 |
SHA-256 | 65B86C577B7A26A43656ACC949EF66D04844AA7EF114CF8428019DD33D182953 |
SSDEEP | 3:kQe4VjP3HWn:kQldP3HW |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib/.build-id/f6/26592f65c719541dad587990993c382e698b90 |
FileSize | 40 |
MD5 | 58499137AF55413F1A790DF1276475BE |
SHA-1 | F8A28EE6FC70F1DCF6281DC75C135E4437D25341 |
SHA-256 | D384406137AF099CE08DE644E5C71F51BC6011AE0C5F0B2706F94E0ADCAF0177 |
SSDEEP | 3:gCD/43BEN:X/cEN |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib/prelude-lml/pcre.so |
FileSize | 32004 |
MD5 | 65BC37111DFBA23F2E8F2B89CAF8AA06 |
SHA-1 | 4022C833305D9099DA15C8963690413ED99279C6 |
SHA-256 | B5B5D8697BB07614473BD041D6780F2F4FB962894031C1F0613491A7F2AEC229 |
SSDEEP | 768:Ta12hpGccTAcFh3cAGgJHsTYETgiUpPyv3vz0vOUimJKfS0FlaxLGCo:bpGccTAcFh3cABJHk0NPyfvAvOUiffNt |
TLSH | T1B0E21ADBF0538A72C5C056B5F72A8B5C323353B8D2CBA706C91885B46AA75AC4C77E06 |
Key | Value |
---|---|
FileName | ./usr/lib/.build-id/42/11fcc96abda84a0084958a012692ab7b290626 |
FileSize | 39 |
MD5 | 6F87625166C749D56E7DE47B4540D9CC |
SHA-1 | 1B8FB5D8F908ADA66F834EAF2300867BED10D070 |
SHA-256 | 177A01BD24FE3F54F653D5C1345A4FF32C40BD456E7A6B7E414B37051AB1B1E8 |
SSDEEP | 3:gCD/43VwKn:X/IwK |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib/.build-id/63/02b6bfc25846d647ba4dec993ff3f4dd83ed58 |
FileSize | 32 |
MD5 | 5E93B0CD1DA9245551389EFF574F33AD |
SHA-1 | AD0C142622AB684C99FF78FF69DF971427E5E5BF |
SHA-256 | 38BEDF3DAE95EA1618C2076D21DAA4468A8F3E85C5C777CC68A612ADED4C6F78 |
SSDEEP | 3:gCD2MI:X2R |
TLSH |