Result for 3DEE0D097274AF973DA1CFC546938995BB711F2C

Query result

Key Value
FileName./etc/prelude-correlator/rules/python/CIArmyPlugin.pyo
FileSize3232
MD596BE7A7E2DD364B1856C006248A625A4
SHA-13DEE0D097274AF973DA1CFC546938995BB711F2C
SHA-25612DC7097CBA5B061A42850C4293A76BFC7877042B34D8FBFE25065180FCBAD2B
SSDEEP96:aAN8jY4i6WK7OjJHf7Ji8nK/5FE8FUbRzdvz:HN8EBZK7mARIh
TLSHT10F61AAC4E3E44847D8B413B8E8F4518BBD66F2F35604971125ACA4BA3DDE2A5D91E3C1
hashlookup:parent-total3
hashlookup:trust65

Network graph view

Parents (Total: 3)

The searched file hash is included in 3 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD56FD6449E3CCDE14E26CDAA61BD1B1DF1
PackageArchppc64le
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.0.1
SHA-1D339D16D769D0849DC6C91578B4A86655AC824EC
SHA-25647E2DC4502C4F8AFEFCBDAC43FAF9B2237F2689A0C3610DAAB84B14895E531FE
Key Value
MD54F9646B899B5B6DFF0F590805A2594DF
PackageArchx86_64
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.0.1
SHA-136C7297479583D48960F0166F516E39B2F6C70E4
SHA-256678BA29BBAFC8AE6F7C23D53D172CB63A65AF90D4EA64AB6C4CE008E852616B7
Key Value
MD5C43A05A34456ABE75E9AAE9961397FBD
PackageArchaarch64
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.0.1
SHA-18BD71B844A72B2C29E4524F8D85C6D3434556007
SHA-256C4422E999FF9E8BCE9B960E2938224DD2CF33B28C9B8ADD1FC03F6020C488C2E