Result for 476F5AB08E0BD8266918F3E62A36E040B74C64D6

Query result

Key Value
FileName./usr/lib/x86_64-linux-gnu/prelude-manager/reports/xmlmod.so
FileSize38752
MD5C2157AF3961FD396CFF736D1AA451BE9
SHA-1476F5AB08E0BD8266918F3E62A36E040B74C64D6
SHA-256F6A56EF0B316B0156882D843AA31284F52546E364106D07F8EB672D3B4CFCA09
SSDEEP384:SfZ5sfClsBoEO1SRu1VnMnpVVPfQeNfNkfjnkk/:QfsfMEOUwFWLPfv9Nkfh
TLSHT1860309AF61A999BDC15D6F7C47F6508518B02B00DFA2FD289D80AB78E50251C4FA3E3D
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize240972
MD5ED49B2ECEA304A8141D99FDCE1B3C7EF
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion4.1.1-2
SHA-1B939BED30FC4AAB6A757162C7467172FF74200E8
SHA-2564007FE2880342C51C27C0305539F905BEC1113C798C9145BE18C338A0B593F55