Result for 5C78B7629052325B82AD060ABE1D5434BC6DB7BE

Query result

Key Value
FileName./usr/lib/s390x-linux-gnu/prelude-manager/decodes/normalize.so
FileSize18264
MD563CA5E382602BFC02340B2AEADBE73FC
SHA-15C78B7629052325B82AD060ABE1D5434BC6DB7BE
SHA-256EB55949FFEF4C51B5D47ECA7031679D1ED55E7889C7A23045A5DF8B3FF92490E
SSDEEP192:E51ZXR8V2UEjjScPK4jw+pbMcIRIWvGwqRjKZMVmmuxfL:E3ZXPU8j5i4jFgcIR6wUjEMEdf
TLSHT14B82846FDB399CB9C4B87F7882BEC1B8A2771E7572C91914BFACD34119537048E60924
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize235268
MD5B6F60DE49C739C63735D60571B9864CB
PackageDescriptionSecurity Information and Events Management System [ Manager ] Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude sensors. It is able to register local or remote sensors, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert relaying and logging. . This package provides the Prelude Manager, which is a high availability server that accepts secured connections from distributed sensors or other managers and saves received events to a media specified by the user (database, log files, mail, etc).
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-manager
PackageSectionadmin
PackageVersion4.1.1-2
SHA-133D451217489CC4C42C7175C923E2EFC32316126
SHA-2565C97670A6737A0ED815966AF0594972EBB4131FBF23563362A110ED7D089B0AB