Result for 72C2A4CB5E4DF77F9E231B85EC7FBEE5C87AF42E

Query result

Key Value
FileName./usr/lib/prelude-lml/pcre.so
FileSize44036
MD597C24AEF670A3E26506F6548E8E27F8E
SHA-172C2A4CB5E4DF77F9E231B85EC7FBEE5C87AF42E
SHA-256C0C788AFF3E49A35DBFBBCFDE3BA3D484A2A3A36B47D400875AE89A4ECA7F75E
SSDEEP768:sIjZsWR0SBDx9+TP0CvOg0pPjCrj5DkRR2AImXLOzrjtaHi0n5S:7zR0SBDxWP0jrGrFQDd9XCtch5S
TLSHT111135D5FB793CCBAE05256B64B6F9964102000068253F9B3FB04E37AB8F9756963353E
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD55A82819C22387652D0B35349F910A96C
PackageArchi686
PackageDescriptionThe Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports log files in the BSD syslog format and is able to analyze any log file by using the PCRE library. It can apply log file specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerFedora Project
PackageNameprelude-lml
PackageRelease3.fc34
PackageVersion5.2.0
SHA-14A547915BE958CC04FDF48F88316AE633CBE19A1
SHA-2560C5AE18646DF6EE3429B1085D7D90CB1B8826D25DB49B417044D04DB1393F835