Result for 38EFD8B6033FEDBA44219A6514E25FD081312B35

Query result

Key Value
FileName./usr/sbin/kmsgsd
FileSize17820
MD5FC17026A5B612B74BD4710E47596C01D
SHA-138EFD8B6033FEDBA44219A6514E25FD081312B35
SHA-2560D3FE0C278619C24BDBC8E91E17CD902CAE7261BB97310BB1A89838423A2575A
SSDEEP384:FNY8qAisFkFwHwd1hwX6CQAUzk4lvOH+c:/SnmkFmm1hwKCQAh4A5
TLSHT1B682D887A5A27AA3C1C60376730F8335333345E5D28B7707F86C56203BA266D5FA6586
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize176088
MD5BC850BBA156EA5BC7B60F954E6A8ED83
PackageDescriptionPort Scan Attack Detector PSAD is a collection of four lightweight system daemons (in Perl and C) designed to work with iptables to detect port scans. It features: * a set of highly configurable danger thresholds (with sensible defaults provided); * verbose alert messages that include the source, destination, scanned port range, beginning and end times, TCP flags, and corresponding Nmap options; * reverse DNS information; * alerts via email; * automatic blocking of offending IP addresses via dynamic firewall configuration. . When combined with fwsnort and the iptables string match extension, PSAD is capable of detecting many attacks described in the Snort rule set that involve application layer data.
PackageMaintainerDebian QA Group <packages@qa.debian.org>
PackageNamepsad
PackageSectionadmin
PackageVersion2.4.6-1
SHA-1B61D0F18C974A5FC7EDD284661E638F6EC94B82B
SHA-2564DBD2FDAE0E8CF5D5B58D4220772929CAE63E5A6FDD1B65B19532EB8E151F5D1