Key | Value |
---|---|
MD5 | 9A3D1B8981963E489AE4A67BFD1B1839 |
PackageArch | x86_64 |
PackageDescription | Prelude-Correlator allows conducting multi-stream correlations thanks to a powerful programming language for writing correlation rules. With any type of alert able to be correlated, event analysis becomes simpler, quicker and more incisive. This correlation alert then appears within the Prewikka interface and indicates the potential target information via the set of correlation rules. |
PackageMaintainer | Fedora Project |
PackageName | prelude-correlator |
PackageRelease | 1.el7 |
PackageVersion | 5.1.0 |
SHA-1 | AD24572D0D3969926FD9BF4ADB9788B586C1A8AB |
SHA-256 | F64F2D16CA5565F2CB1F720E8A6D141308973ADA79B1B9493F2744790FC7B898 |
hashlookup:children-total | 34 |
hashlookup:trust | 50 |
The searched file hash includes 34 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/BruteForcePlugin.pyo |
FileSize | 2851 |
MD5 | 1CB48A68EFA47B5BBFC7EEB89BA2DAB0 |
SHA-1 | 085A835D16C6526D0CEC7821B4BF917F25A29367 |
SHA-256 | 6E759C70FCD81FECACCA4AD96D808576E620F1B8C66B618E04B0F58AC86E7BF8 |
SSDEEP | 48:gKQAKqAWhvkBNXqD8T0PkRFwQXOeyS96CKwHZYLO/QtMKckiQzMQP5PQT:kqk9qD8gcRFxXWM6hoUOo60pxYT |
TLSH | T13251F0D4A3B8C90BD9B20370F4E9115ABE65F1FB0A405B2425BAA4B97DC43F5C51E3A1 |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/EventSweepPlugin.py |
FileSize | 2557 |
MD5 | 438F3FBF4D84969AD190217F9BF1C5ED |
SHA-1 | 0F343FF6FAE76228E447377A03EFBCD68F62A9A2 |
SHA-256 | 9CF39AC46A292F147E979EAD9E564AB97D9153E588C1D84C4EF1ACD768B1A798 |
SSDEEP | 48:efyajvqCgHDg4yUjHTYyZVY1ZN8HFoTJc7ICsPlZGUA3:efy8QHEwT/ZMZGoc7ItPTGp3 |
TLSH | T1D851CA4E5520DEB0190906B5118BA1D9332549D3EA6F5C1CBC2EC24EAFE9EB782715EC |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/CIArmyPlugin.pyo |
FileSize | 3232 |
MD5 | EB8890F6E35B9C493E30BA91E5D0DCD3 |
SHA-1 | 1645CE85BD8AAE577F5226DE3BBF4A0510A47630 |
SHA-256 | 8B05A771F3089358BBCA72F3C06BB33B8B7B36353A72AC3862408A1B388FC257 |
SSDEEP | 96:NAN8jR4i65K7OjJH076i8nK/WFE8FUbGzaw:ON81B2K7mWR/E |
TLSH | T12361BAC4E3E44847E8B413B8E8F8518BBD66F2F35204971125ACA4BA3DDE2E5D91E3C1 |
Key | Value |
---|---|
FileName | ./var/lib/prelude-correlator/prelude-correlator/spamhaus_drop.dat |
FileSize | 23462 |
MD5 | 2E8B0769E7870B126E9443938EF8DBF2 |
SHA-1 | 19CB1831C2D535E48F682AF417260AAB7C958A90 |
SHA-256 | BA1C8C20EAD1C3F2806E33C5395C7F2C1AA3AEB5DA2FD103092C21D60350DE9E |
SSDEEP | 384:jmrtXIiAhWpChsVsSuTlejtz5mupgJWGt8r/KB9dsv/Tef80mLuIVC3qKclFe6Tn:jg4PPNJz/u |
TLSH | T1C5B235F1AEF51AFF88E0609BD63FC639B117A5C1B1E2B7525F4F2214781A480762F918 |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/WormPlugin.py |
FileSize | 3357 |
MD5 | B3C6B0D1AB042B4E768EBAAEC4FEC5F0 |
SHA-1 | 1D31FBF8F13ECB795099849F589E2C8F005BB4E2 |
SHA-256 | 41034847A0810EF3406111A67CB61CCD4D487DBD7FA27C19C72B49E5D3013441 |
SSDEEP | 96:efy8mEwT+xpn31ZQKhz/r7/N/Kv9OZGFB:Ay8LwT+731xjV/i4c |
TLSH | T1B961A85D1320DFB6668302B2208BB2E67315C6E3461B6C2C796DC29C6FA2DB541739F8 |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/EventSweepPlugin.pyo |
FileSize | 1623 |
MD5 | 683A1AC1C2AFEE6E91EE1D36C8646773 |
SHA-1 | 1F3AD2B47B5E1AAA550932BA265D8C7C4764BF78 |
SHA-256 | 11943F919154481DD9B2DB152AB60515FDA2CDC5B55DAC5AA6659BEA7D0C9FAE |
SSDEEP | 24:g9Ialq+m9tFtZezB1qjC06QLYe7ksPuJVCAL9sSuFFMthikQMGNblyQMf0QMe+Jp:g90vboeLYAksPQVHLyChikQJ/yQhQ0 |
TLSH | T1113153E053F08816E9B61234F1B802A77F11F4F752514B2633B9D49A3EC67B1C91C1C9 |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/FirewallPlugin.pyo |
FileSize | 3720 |
MD5 | A050FDC591C6656495B3C6661D805EE7 |
SHA-1 | 23F02B81FF6BD51CA10C03318F5CB20A8392DC53 |
SHA-256 | A68EC678C52E5B7BF6C408A8D3E583BEDA17422045AE7D3996C3710FBB8C6F7C |
SSDEEP | 96:2sBzFpbq9uou8MLXrt8nAj+oZthJF8QnpT:7zm99zM1/+oZthk6 |
TLSH | T11771FFD0A7E0898BD5B82374E4B45797BE25F5F26142672026F8E0BABCD43B1C92C2D1 |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/prelude-correlator/NEWS |
FileSize | 17216 |
MD5 | 9FA57560F9FF7B1748AE4854386DDDB6 |
SHA-1 | 28C2D3930919BC88533EAE50F21B6225B6F32965 |
SHA-256 | 23B119EF5E18826502B1ACFDE8A9FF71E0FE10F3DD1DDF347A3FFAC581BFAE85 |
SSDEEP | 384:MAQJMpN4mtKUdLA+pR+Y9DQFBKmWOgyrx:7+wHvWmOgw |
TLSH | T16072A8E277343722799227A6D2CB41D97718A1EB9233D0347B9895C87A03063D3776CB |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/DshieldPlugin.py |
FileSize | 3536 |
MD5 | 911A6228F1B4C7F0AC711DC78102B526 |
SHA-1 | 2A3C499F9B005C9DAA00E17F8612BE60FE1573E6 |
SHA-256 | FD25F1CCE4332857A9F62D2F7EC6AACEFFF3926C03F567C81916994567616970 |
SSDEEP | 96:efy/lHEwTATFd08rQQBfTO1MMpy686PHiH:AySwTJ8RipPrviH |
TLSH | T12C71B7BF157AC9929783528665CA20C1332DB6C3801F8044FEBCE288BFA4D71C2B1DD5 |
Key | Value |
---|---|
FileName | ./etc/prelude-correlator/rules/python/DshieldPlugin.pyo |
FileSize | 3493 |
MD5 | 3ADAA422DD3CEE41663D042609B21CBE |
SHA-1 | 2C1B1C99604B97EC93FF77DBBEA54CF9082F3896 |
SHA-256 | E29D46A622B07F4F0F80272CF554341B4D36C120DD91973899344DFF10FCBD27 |
SSDEEP | 96:NdNzId4iFOKXzajBjAEmaCl8nG5X6A0H0X8FgbpM:LNz0BwKX6I360Xg |
TLSH | T118711FC093E08847E8F41275E9F8918BBF65F2F75200971122BCA4BA3DD83B6D51D385 |