Result for 364472DE37125C6DED0B35518432BE6114D09797

Query result

Key Value
FileName./usr/bin/prelude-lml
FileSize149544
MD5D6625F7346838960C6625733C4B45B98
SHA-1364472DE37125C6DED0B35518432BE6114D09797
SHA-2568E8C42B5C63E7F8584F3E5BC5840139E159B0BB8EF26B1E7D40F3BDEFE7FC06B
SSDEEP3072:LttXQtAdV5ddtFd6VVTdjmT6tdGNPHLV5bPNRNmMIpvNbw4bEvjOOF53IfZpuE:LBBHjmpNFEvjBFlIP
TLSHT145E31A43BB0D6E26D4D6CF31847AC2620F3C3CEBA2514B637A9C59A86D0F5CE0ED6549
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize213408
MD52452E0C04C1CCE71ED41C787506E48F1
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion4.1.0-2
SHA-1104CA582AEE75274E483167EEC0B31EB1062A7B8
SHA-256E33FAAE2DF4B1D01A129C58E6466F67F67DAEF2050DF1383894909312D7090AE