Result for 3DA64C82F02D8123899020057ACC2DD3E2C2E0EA

Query result

Key Value
FileName./usr/sbin/kmsgsd
FileSize24096
MD5C6181F81111B30653FBBCB531ACE0FC6
SHA-13DA64C82F02D8123899020057ACC2DD3E2C2E0EA
SHA-25611E979358BA3B193A15785A0852D69D76D2833DA096D25DF7F43A83D49EBC4E3
SSDEEP192:vKHnD8X+2M+civ9/OalxV9V7oDX9rNtuvIuhJkDYQOFD6LWsmZcBWL16G:yq+3+4WINtuAuYDYQ1WtaW5
TLSHT1C1B2A687DF052D17D4E7CF35459E9279273C28A2B3629327BE8C42B41F57ACC9EA104A
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize178136
MD5D72F4450F016071E0F7F95B86D5020FA
PackageDescriptionPort Scan Attack Detector PSAD is a collection of four lightweight system daemons (in Perl and C) designed to work with iptables to detect port scans. It features: * a set of highly configurable danger thresholds (with sensible defaults provided); * verbose alert messages that include the source, destination, scanned port range, beginning and end times, TCP flags, and corresponding Nmap options; * reverse DNS information; * alerts via email; * automatic blocking of offending IP addresses via dynamic firewall configuration. . When combined with fwsnort and the iptables string match extension, PSAD is capable of detecting many attacks described in the Snort rule set that involve application layer data.
PackageMaintainerDebian QA Group <packages@qa.debian.org>
PackageNamepsad
PackageSectionadmin
PackageVersion2.4.6-1
SHA-14F2327A8A8FBCC2FC22FEF1D8D1F26B4D8B2758F
SHA-2563B0BF844CCF2B9D4588155223021B2C5A2B020679218940D1AF656710BA21B0B