Result for 2BBF3AA7FF6627B539DAE18EA1D2FAE36D7017A2

Query result

Key Value
FileName./usr/lib/aarch64-linux-gnu/prelude-manager/decodes/normalize.so
FileSize18424
MD5595FBDADE5FAF3F3E33E482F21D8A760
SHA-12BBF3AA7FF6627B539DAE18EA1D2FAE36D7017A2
SHA-256EDB66CAAE66D809D0164D927B4423C60D52F1C7F82F4716F68E833B8ECBBB047
SSDEEP384:AOUcug4AnGNk7KBYv+18jipwXWdUrawH2tkrqUZ5QemDtA:A0h7QeUe
TLSHT1BD82A31FF519DE3FC99D67F806EE42F0B332564C939A07D32618E9886F8125A1DB088C
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize252800
MD57AAD48EFD298F44D734031D9C4F498BA
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion5.2.0-2
SHA-174066A63271DEEBAA580DF2C8571F222A38DB26F
SHA-256902127293F037D5F3361525CA3CCBD80FAE1F0B200ABC1AB95FCF85497C46E0A