Result for 419E580A956E82DECBEF2C50F747F845494048A8

Query result

Key Value
FileName./etc/prelude-correlator/rules/python/EventScanPlugin.py
FileSize2014
MD5803EEBAF4857B457795BF915104247FE
SHA-1419E580A956E82DECBEF2C50F747F845494048A8
SHA-256773064E6F45505B21F38BB87056B6D59DB26A3CB926E5BD40A2ECC4B96C6A305
SSDEEP24:QsJ4Z+HK2ahJiyUVOkHxHqTbVloY5w7qas+wirAKC0s8ux4XFF2TtWCUoLQBsFLg:tI+HDg4yUjHTYyFIZN8rF2TtWSCsFEP
TLSHT1C241A94E9620DAF0680507A5214B95EC73294BC3556EAC08B91CC38DBFE5EB281725EC
hashlookup:parent-total4
hashlookup:trust70

Network graph view

Parents (Total: 4)

The searched file hash is included in 4 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD56FD6449E3CCDE14E26CDAA61BD1B1DF1
PackageArchppc64le
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.0.1
SHA-1D339D16D769D0849DC6C91578B4A86655AC824EC
SHA-25647E2DC4502C4F8AFEFCBDAC43FAF9B2237F2689A0C3610DAAB84B14895E531FE
Key Value
MD54F9646B899B5B6DFF0F590805A2594DF
PackageArchx86_64
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.0.1
SHA-136C7297479583D48960F0166F516E39B2F6C70E4
SHA-256678BA29BBAFC8AE6F7C23D53D172CB63A65AF90D4EA64AB6C4CE008E852616B7
Key Value
MD5B7FD6019EF4D20C9A5E087CA2D859D32
PackageArchnoarch
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerdaviddavid <daviddavid>
PackageNameprelude-correlator
PackageRelease1.mga7
PackageVersion5.0.1
SHA-1A37CEFBB43B18568EE13D14C8B9109DDBDABD455
SHA-256749934170293619538760899808A6F5549C573B7F9D71582F313366D704A2AC5
Key Value
MD5C43A05A34456ABE75E9AAE9961397FBD
PackageArchaarch64
PackageDescriptionPrelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules.
PackageMaintainerFedora Project
PackageNameprelude-correlator
PackageRelease1.el7
PackageVersion5.0.1
SHA-18BD71B844A72B2C29E4524F8D85C6D3434556007
SHA-256C4422E999FF9E8BCE9B960E2938224DD2CF33B28C9B8ADD1FC03F6020C488C2E