Result for 33F3DA12F62EF0025F850E5568D0ED5FF1AB0723

Query result

Key Value
FileName./usr/lib/i386-linux-gnu/prelude-manager/filters/idmef-criteria.so
FileSize13704
MD5CC68C55F319680347F00C5BF130D58AA
SHA-133F3DA12F62EF0025F850E5568D0ED5FF1AB0723
SHA-2563A1479AAEB8FBE3B895C82A8438DF50E278ED5280C78E7B5854F59F747F208F0
SSDEEP192:fAsgl8g6VvFH7X3Qgc2EwjHwQZycPJk7SA3XidUXxg:fAJF6VhggTj5y77jX8U
TLSHT15A52095BBED5EAB7E0910278854346A671325445E3B3C252FA9C339878F7298DF32374
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize263484
MD5474B56D2613B2289DD8864F22DF73A26
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion5.2.0-2
SHA-1A0B69085286148E696B2B129002C0B3FB35700E8
SHA-2561C85DC8D26699D4223A8802BA5E5C699D3F595892CD55A8EE26396F91373F2DC