Key | Value |
---|---|
MD5 | B39A03B0B572D6192662B021712FCEBE |
PackageArch | x86_64 |
PackageDescription | The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports log files in the BSD syslog format and is able to analyze any log file by using the PCRE library. It can apply log file specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected. |
PackageMaintainer | Fedora Project |
PackageName | prelude-lml |
PackageRelease | 3.fc34 |
PackageVersion | 5.2.0 |
SHA-1 | 29E81F02DF9FC25DF5E6CF227855A55B491B14AF |
SHA-256 | 517ABD70E981143C1BCF0BACF533812742E244E1FCBD93E6618667F7C72AC250 |
hashlookup:children-total | 13 |
hashlookup:trust | 50 |
The searched file hash includes 13 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib/.build-id/73/008682bbfd6717f853ba56336beb17af7dcfeb |
FileSize | 42 |
MD5 | 83A09CC9E1318FF663FAEC349DE2E924 |
SHA-1 | 399C3DD3056EBF404749B476C5E081C9A83DB1B0 |
SHA-256 | A1B883781E6908127CA0C76C01EDAACF7B37590C88EFE0D023C4E638F7059C29 |
SSDEEP | 3:gCD/i3BEN:X/eEN |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-lml/pcre.so |
FileSize | 44880 |
MD5 | DA04015B1C03DB95245158B3804C0039 |
SHA-1 | 2BB325DB0E4BE9971C8ED28C0DC1581DC374A6EC |
SHA-256 | 5547220D4CB508C23172F9EB2FFC3ADE7230A095E657ED55498BE38B5C37666D |
SSDEEP | 768:gsWR0SBNHYT/nvXfHP3/nvXfHP3/nvXfHS6CqyaiKS6CqyaiKS6CqyaiKS6CqyaU:gzR0SBNI+hvP23SFWi3aJsoy |
TLSH | T17513F81FB161487CC4D4A271CBDBD5226630B058AA31192F6F8093BE2EE76354BBBD35 |
Key | Value |
---|---|
FileName | ./etc/prelude-lml/plugins.rules |
FileSize | 836 |
MD5 | 446480A94DE7E09917ACD9C48361234B |
SHA-1 | CCC52AC2BE9F8DCFFA54115CD8F46FC7995DC8D5 |
SHA-256 | 6E009A53AD344BD1563EA2A2B79A8D3F53886948567979355EA3FCCD2C3F6BF9 |
SSDEEP | 24:SslZ+0CJBxd1ayS3EPSR0LSjTWdEkoF7lS5EPgLRSaAgm:S++0CJBX1ayS3yS+LSncEnS5ygLqgm |
TLSH | T172014C1F878D253101E584E23099E1D9462AD2D9ABF0E091F7DE855C6B3497E51A9D40 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/systemd/system/prelude-lml.service |
FileSize | 138 |
MD5 | 6418C224E5053F6383BDB625BB5AB03F |
SHA-1 | 213258946530DD5C99AD5F1030A6620935523DE7 |
SHA-256 | 1BF3E17E9BF20FD5E70A41860F89C56381512EBBC3487F767031422136046939 |
SSDEEP | 3:zMZa7+rUSXABlRVGmDMzdK+aQmMSv2rSkQmWA1+DRvn:z8tU6wlzGmDMzdK+aBJcLQmWA4Rv |
TLSH | T14DC02B25F440B0B1980B2EABCE3247A849104648EF8CF4207AB2142D06C450A94300BD |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/prelude-lml/HACKING.README |
FileSize | 780 |
MD5 | CE979EC4C4C9FD55949BA6867F0EB356 |
SHA-1 | 2D6ACFF0197B79132F46DBE5FAFAC14975C0E1F0 |
SHA-256 | 5CE75927A9FE75588107C5E2A7BF5979807A22A5AA9F21DFB3EB7497F9FB6DDB |
SSDEEP | 12:hBe+oVOrqLRh15X2voInFi2yE0MevyCmFQMl9Kr1yAHkxbpfgtthcAkU5tDWg2:XywrqLvzHIE2M5yCmFjqNHkxNEeAvW |
TLSH | T13E01F11EF36C62A8254609917282E3F6A20F41DACB214431E116D4C533BAA7E853F5DD |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-lml/debug.so |
FileSize | 15336 |
MD5 | D5ED6C8DD4E7D1E1AFDAC41085A0FAB6 |
SHA-1 | 5E5B24178C5DA1A6578871A8527D0EEFB344307F |
SHA-256 | F3FA7DBDCC9E144B95C8AB0CDD6C7EFF29D6B15A354A7C7A3B7BD11576D7545D |
SSDEEP | 384:vE8nvn/3PHfXvn/3PHfayqC6SKm4p59Phb:vVvn/3PHfXvn/3PHfayqC6SKLXb |
TLSH | T11162A51ED160DE3EC8F89371C5BF4AB16271A05866B1123F2F20D1763DE73288676D99 |
Key | Value |
---|---|
FileName | ./usr/lib/tmpfiles.d/prelude-lml.conf |
FileSize | 36 |
MD5 | 6E1EE4B44ECA83D673275BFBAAC16AEE |
SHA-1 | 6DB5DE0E9DCA111560CF6026AFE4E1D873F90E62 |
SHA-256 | 65B86C577B7A26A43656ACC949EF66D04844AA7EF114CF8428019DD33D182953 |
SSDEEP | 3:kQe4VjP3HWn:kQldP3HW |
TLSH |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/prelude-lml/README |
FileSize | 1742 |
MD5 | A5924B09DE4B82B6F15A5BE943CA79F2 |
SHA-1 | CBF9D34C6A6077CE6250E1E681663EBFF1E19795 |
SHA-256 | E36B8D95200965696F8FB79B0338C070E7A370B6B52F1227F7187AC201B3B4E0 |
SSDEEP | 24:ykwdzTaLVNECo7w5QlXlunfy1XICIrYKZQgDnJkt8MswCHJfVKcDwaq+ygXA:SwECo7Hlua1XtKZQg1kt8DXJfVsP |
TLSH | T1AE3116FFA2687270734525C87216E0FBCBA375AEE2602571FC9C94D5632A39C4236B85 |
Key | Value |
---|---|
FileName | ./etc/prelude-lml/prelude-lml.conf |
FileSize | 7191 |
MD5 | 9F413DD828C3D401762CECA4E2CFC919 |
SHA-1 | 3200F3F42A0E4F69CADCE4AF0D8E14A8675C0503 |
SHA-256 | FC654F5231D96AEB077CD59B575F729FD8BCE12F7D216BD4316727488150E851 |
SSDEEP | 192:mKqkehijEnNUiMyB0Xus6vzGogpcNadGSO25e:mkSkUsW+OP |
TLSH | T12DE17566D24D363B13CF13A150AEE2DD9B3D904D6E73302162DD98687201E7892FBBE5 |
Key | Value |
---|---|
FileName | ./usr/sbin/prelude-lml |
FileSize | 150560 |
MD5 | FCBFDB604D56D4BCBE0B8312CF354268 |
SHA-1 | 47D6161E0D36CC0678C1CE3EBB28D5D6B7E8AB9B |
SHA-256 | 17CDEFB5F84B9C2D58F0888C66880AB82F4C05324AA1F5204DEB50A18509A7D1 |
SSDEEP | 3072:XW6286q4UEqoV9xHXeEqwDsOmc4mBkxs+LLZR3zRqqq9tWox:XW6o2xoV3Xe1lNmKPLLZR3zRqqq9tWox |
TLSH | T18CE31A0BB1924D7CC4C0E571CA9BE1122770B418A731262F3E4497792EA6B7C5ABFB35 |
Key | Value |
---|---|
CRC32 | 4E46F4A1 |
FileName | ./usr/share/cmake/Templates/fedora/gpl-2.0.txt |
FileSize | 18092 |
KnownMalicious | malshare.com |
MD5 | B234EE4D69F5FCE4486A80FDAF4A4263 |
OpSystemCode | 362 |
ProductCode | 15109 |
RDS:package_id | 313212 |
SHA-1 | 4CC77B90AF91E615A64AE04893FDFFA7939DB84C |
SHA-256 | 8177F97513213526DF2CF6184D8FF986C675AFB514D4E68A404010521B880643 |
SHA-512 | AEE80B1F9F7F4A8A00DCF6E6CE6C41988DCAEDC4DE19D9D04460CBFB05D99829FFE8F9D038468EABBFBA4D65B38E8DBEF5ECF5EB8A1B891D9839CDA6C48EE957 |
SSDEEP | 384:ghUwi5rpL676yV12rPd34ZomzM2FR+dWF7jUI:gmFWixMFzMdm7jUI |
SpecialCode | |
TLSH | T13A82A42E770443F205C202A16A4F68DFA32AD5B9723E1155386DC15E236FE35C3BFA99 |
db | nsrl_legacy |
insert-timestamp | 1728991626.679368 |
mimetype | text/plain |
nsrl-sha256 | rds241-sha256.zip |
source | snap:MmD5jWldYNMNgb2rFFht3FNKGJx1FLLV_613 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/.build-id/63/02b6bfc25846d647ba4dec993ff3f4dd83ed58 |
FileSize | 32 |
MD5 | 5E93B0CD1DA9245551389EFF574F33AD |
SHA-1 | AD0C142622AB684C99FF78FF69DF971427E5E5BF |
SHA-256 | 38BEDF3DAE95EA1618C2076D21DAA4468A8F3E85C5C777CC68A612ADED4C6F78 |
SSDEEP | 3:gCD2MI:X2R |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib/.build-id/85/756436b74653da9e36a9552b78efe60cc7b787 |
FileSize | 41 |
MD5 | 20CAD69C5CC986874FF1A1934FAC0645 |
SHA-1 | 05B3907EC4C0AC1EF88F6CADD58D2BBE08E3CE6E |
SHA-256 | 4D14A20139E1BC210FBDDE16BCA08EFCD629D767F6BCF0FD12D6A50EDDDDFD83 |
SSDEEP | 3:gCD/i3VwKn:X/KwK |
TLSH |