Result for A6359DA2FB1145634AFFEBC941E98B5F4EDBD994

Query result

Key Value
FileName./usr/lib/arm-linux-gnueabihf/prelude-lml/pcre.so
FileSize21928
MD5C59059D72303D7E8E27DB5033A89D8C8
SHA-1A6359DA2FB1145634AFFEBC941E98B5F4EDBD994
SHA-256E8E795B74B690F4DC17A20852D339FD573D306E3D47BD1693A6F506B0192C7C0
SSDEEP384:wpjRcH/jTAc2aDkjRHNLWTWeroDopZf3wHZjDCODgVzpuS4W+CrktPeI2L/:8cH/jTAcaN4Wes8psiOUzAW1rk6L
TLSHT14BA21AE5A37AD51FC88023BD995A9E4636108189824C7F92E55C40ECBF4FB78CDE7D12
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize209952
MD5F61C8E31F43B27D45C665107C822C23F
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion4.1.0-2
SHA-1227C3249695174B2081FCC40C0FE1DE9F3F31024
SHA-256CB7CCCCB89DE0089015507ED96565DDFC5787B6D141C65413D452178330E606B