Key | Value |
---|---|
MD5 | 7A81CF33594E81F823CF471FC5B8A777 |
PackageArch | x86_64 |
PackageDescription | Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude modules. It is able to register local or remote agents, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert logging. |
PackageMaintainer | Fedora Project |
PackageName | prelude-manager |
PackageRelease | 1.el7 |
PackageVersion | 5.1.0 |
SHA-1 | 76D1026EE8D9E88756A551CDD5E0E067BDCCC218 |
SHA-256 | D79388B3FBC7535A9D09F35B6CEECFB0BECDD61B9BBBE011B1D2860A2BA50773 |
hashlookup:children-total | 14 |
hashlookup:trust | 50 |
The searched file hash includes 14 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/filters/thresholding.so |
FileSize | 15712 |
MD5 | 7E5946DDC34056B1039F883C92AB576E |
SHA-1 | 212A123394206033DFE657BA86A969A636E4BCB7 |
SHA-256 | ED9474138E42C913B23AD6CEC286E0BC769A08749F6E496D6DF4E94731F61405 |
SSDEEP | 192:Rv/8pDJKdri9i82e/XhBvCLzJdaDEqHyP421BAJx:cwdm9+GXhBvCL9kDEqob1A |
TLSH | T129623B4FB5940EBFC5988334459782B22E76B4C8F792C22FB944B67415827148A6F8FF |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/debug.so |
FileSize | 15520 |
MD5 | 2275E21D628675B8EEF56A9D6D1BEF28 |
SHA-1 | 1B2BCE4FD301B23F4EA77913547EED24F78CC94F |
SHA-256 | BC2184E7208C24ED0CFAE17B96CAD79EA2D25D9DA232485B94D02AA979354176 |
SSDEEP | 192:Rec8pwwm9EdFo1Lj4mgwZo925JkjmrKDwp4p6:kWVQFo1j49sPymywp4E |
TLSH | T1E262085F76A48E7FC0A8CB30448685B09E746488FB63832B258416B414A3B586F6F57F |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/filters/idmef-criteria.so |
FileSize | 11408 |
MD5 | 975C27714EC416DBF73AFDA52BE135B4 |
SHA-1 | CCFEEFEEE0095F5E2805778C01D44701F37BD396 |
SHA-256 | EE712FFB0AD9DB7784F4D948D57F5B47F8D10D6BF5E1E9B79CD11147E7056D96 |
SSDEEP | 96:RFf+FBWBPfMDQ64CbB1D3N0E6IMbAUtBPjcOx4s8LRXgnl8bJK6qaxnDUO5+9/+Q:R9Y8pf6QE1DNT0xTxx4X6pD2Djt |
TLSH | T10032B4CAE1A08B7FC49C9734414B80B52AF075A1DB61C2273158A57C2D83B898F7ADF7 |
Key | Value |
---|---|
FileName | ./usr/sbin/prelude-manager |
FileSize | 119800 |
MD5 | D865F5B113AEB4D75896D0A07E28EC30 |
SHA-1 | D29EF54C0375F66AE65A881DACC398419B969629 |
SHA-256 | 77662668F1FF3A5D052593B59664B9F29D60477829360859A97C2813D85F1F33 |
SSDEEP | 1536:jCmbLBfL6NcjsdqtZWkQ1GIurzHVyCxfND5EGtxw:jLLZQdqHWvcRzHDlSGtS |
TLSH | T155C36C8B71A14CBDC1D3CA3088ABD3506A35B960D611A53F3904AA7C294AF5C6F6F739 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/decodes/normalize.so |
FileSize | 15672 |
MD5 | E4B2EA787F2D6951D5CD51E404B41763 |
SHA-1 | A45FABFBF436235F14A3CF8A211785CA24CDC677 |
SHA-256 | A2E044B1F93AD0E3946E4339B42D6639585116CA278FB2B0BDC8A29E569280D0 |
SSDEEP | 192:ReNG8p0MaEtUA97lquspRAccyThkB6yZ2:fEiA97lqrR8yCBB |
TLSH | T1FB62F64FE5A14DBDC46C273848FE05F11AB459C8F753AB2B2A84A1B468813445B8FDEE |
Key | Value |
---|---|
FileName | ./usr/share/man/man1/prelude-manager.1.gz |
FileSize | 1291 |
MD5 | 8B16E625773ED47B4D5EDF5432BDCE32 |
SHA-1 | EF82D98B2C1B823410B6E5C9AD06BA7F3BFB923F |
SHA-256 | 0A62BEFF4D7BD5C2079E4D688250BA16D1899EDF69B3CA0756C7597340E4FF86 |
SSDEEP | 24:X2AQVXHb7+yIcHvpFNMUopQAQO1Jia1oJMfm6iP7pItbl/obt9XUz+JE7:X2FVXHRPrNMNaOCCov7P7CT/oR9X2Cq |
TLSH | T1D721EA64C5A17567B2019EBB467E86CB161F8020960CC7098F5358BE1ECEFF17C83901 |
Key | Value |
---|---|
FileName | ./usr/lib/systemd/system/prelude-manager.service |
FileSize | 166 |
MD5 | C93F36811D69BBD35FCBB7AF580DC5F2 |
SHA-1 | 984A282C9B19CC344CC9048427BC926F3E251193 |
SHA-256 | 02B97A9B44EFC5B42BDEBDFE5A8E9DCB56C559BC84B869C4196D561668C9E20B |
SSDEEP | 3:zMZa7T9QW85LMHGdeBN0c3AXbvmXTMzdK+aQmMv3AXUSkQmWA1+DRvn:z8cyrLMHGdW0LXbOMzdK+aBzXULQmWAe |
TLSH | T110C0C0D31D60B071CC0B11A7FEF0CBC04C0104411B4CF11036B104F824C05444020817 |
Key | Value |
---|---|
FileName | ./etc/prelude-manager/prelude-manager.conf |
FileSize | 11503 |
MD5 | 1E3C9FB9D39C14EB10D13D39FA458172 |
SHA-1 | D7C681F3975A334A120AE3744275A595C4388769 |
SHA-256 | FEB8138D267B29BF19DC0E2460CB8FD99C7757E4EB4A1676B0564C644BECAC03 |
SSDEEP | 192:WwvQt/0//pGl65m2AEJ585s5lVTVNVEuZphAqL24Sp13WJ:WwIt+pGUm2WuLL24+O |
TLSH | T14B32A551E24ABB3A075203E2A28F91EE7B2951DE6F63682014FCCD5C3604CB5E3B36D4 |
Key | Value |
---|---|
FileName | ./usr/lib/tmpfiles.d/prelude-manager.conf |
FileSize | 38 |
MD5 | 1C83B3AC0148277EE2C4203630A539CA |
SHA-1 | 376747F9ED248FD2D2FC845325B4900910B8224E |
SHA-256 | B2255C7EFAB62F34957B3391E0581F502CB04B94E94BFD527EB9B808536DB48C |
SSDEEP | 3:kQev3AXht3HJ:kQNXht3HJ |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/textmod.so |
FileSize | 33112 |
MD5 | 8752BA1C9D1855E313AB349011B906B8 |
SHA-1 | F33E3FCAE27E3D6BEB3D8D5BA7597E20794D8C54 |
SHA-256 | 203629741B8B7A03F6FD081EDDF53BBA22460BA247ADCB889EFAB094CD828370 |
SSDEEP | 384:83YwR4s3Uoz0k81QhrDKhVrrxUMzgLqFp2736MPzStDDe/gJ:uas3ouh3iVrrx5FpirAve/Y |
TLSH | T127E2B54FA1688EBDC04E2F7802F650D41D702A61EBA2F86DDE0073B9A14D55C5BA3D7E |
Key | Value |
---|---|
CRC32 | 4E46F4A1 |
FileName | ./usr/share/cmake/Templates/fedora/gpl-2.0.txt |
FileSize | 18092 |
KnownMalicious | malshare.com |
MD5 | B234EE4D69F5FCE4486A80FDAF4A4263 |
OpSystemCode | 362 |
ProductCode | 15109 |
RDS:package_id | 313212 |
SHA-1 | 4CC77B90AF91E615A64AE04893FDFFA7939DB84C |
SHA-256 | 8177F97513213526DF2CF6184D8FF986C675AFB514D4E68A404010521B880643 |
SHA-512 | AEE80B1F9F7F4A8A00DCF6E6CE6C41988DCAEDC4DE19D9D04460CBFB05D99829FFE8F9D038468EABBFBA4D65B38E8DBEF5ECF5EB8A1B891D9839CDA6C48EE957 |
SSDEEP | 384:ghUwi5rpL676yV12rPd34ZomzM2FR+dWF7jUI:gmFWixMFzMdm7jUI |
SpecialCode | |
TLSH | T13A82A42E770443F205C202A16A4F68DFA32AD5B9723E1155386DC15E236FE35C3BFA99 |
db | nsrl_legacy |
insert-timestamp | 1728991626.679368 |
mimetype | text/plain |
nsrl-sha256 | rds241-sha256.zip |
source | snap:MmD5jWldYNMNgb2rFFht3FNKGJx1FLLV_613 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/licenses/prelude-manager-devel/HACKING.README |
FileSize | 742 |
MD5 | 6CE72E9EB79B6274DABE251BD4D2C90A |
SHA-1 | 1AEBB9DE6CA4E3B98EABBC4497961E04DEA32BD7 |
SHA-256 | A132C89C04F15769B96F27326F29B771A79D59B449A5D310AEB278088E1E555B |
SSDEEP | 12:hBerOrqL9S41anRF1KOyvcgMevyCmFQMl9Kr1yAHkxbpfgtthcAkU5tDWg2:XvrqL9S41a8ONg5yCmFjqNHkxNEeAvW |
TLSH | T17B01D01FB25C63741C8406A276C2E3E6660B419A8B218431A107D4D433BB96E853F5D8 |
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-manager-devel/README |
FileSize | 2160 |
MD5 | 939BE4D4720E45F8A092158ABA38375B |
SHA-1 | 541D9D9A0F9DE01A140DC71172C7F480969232C2 |
SHA-256 | 1A17A3CC1130CBCBE55E55743482F66115BCF7217DF6D33108025248EBDC1BC1 |
SSDEEP | 48:ze5Bie/VmlO6fbvuKt7X1X3TKKZQmkt8DXJfVsP:zVeQlO2ZZFtkoVs |
TLSH | T1FE4111FFA27832712105018FB215D8EA9B6771FF6A9050B0B89C45ED572375C9377B90 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/smtp.so |
FileSize | 41240 |
MD5 | 7D2B4A9479D8A2EFEF8F30AA1D5C794D |
SHA-1 | 8F4739517B503A680AADE303A49B5CAF1890EE94 |
SHA-256 | 5AAD2AB160AB3D82145250489E985728D02F088A712453B498D0C8D61122980B |
SSDEEP | 768:gRceLqZl4QWbbJz4fnNVkJdOWqgk26nxo5rZ9lvjO78EPyMKXVFkUt0SEHOd8YZP:gRciqZl4QWbbJqnNOwWkn65rGKXKMZnP |
TLSH | T10703094BF51055BDC5D2C7708A9BC2A26DB03448A733A63F7C88A6742A5672C0A1F77F |