Key | Value |
---|---|
MD5 | D928A647E9D0FF19E8F0800C774BF7DB |
PackageArch | aarch64 |
PackageDescription | Prelude Manager is the main program of the Prelude SIEM suite. It is a multithreaded server which handles connections from the Prelude modules. It is able to register local or remote agents, let the operator configure them remotely, receive alerts, and store alerts in a database or any format supported by reporting plugins, thus providing centralized logging and analysis. The IDMEF standard is used for alert representation. Support for filtering plugins allows you to hook in different places in the Manager to define custom criteria for alert logging. |
PackageMaintainer | Fedora Project |
PackageName | prelude-manager |
PackageRelease | 2.el7 |
PackageVersion | 4.1.1 |
SHA-1 | E151E7D5AFE5B9E3DA0A7248A6D4E46B70200ACD |
SHA-256 | 39AFBFBDAA609D824E5B9C88DE102C87DF0D39BF73DD4F5A32516DDD65CC0515 |
hashlookup:children-total | 14 |
hashlookup:trust | 50 |
The searched file hash includes 14 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/sbin/prelude-manager |
FileSize | 136176 |
MD5 | 420BCF28000801229859596C0850F852 |
SHA-1 | 0B4192CA0EFB9AF814458B6BC191F09B7CFC1854 |
SHA-256 | 97BC4619A774F99E9015A2517E7FB9454665C9EAE450E65CE0E14D4F0230448F |
SSDEEP | 1536:k6zL53u8viUs9NvlPCowcBMcuEyjz9nRPfaR:N5eUil7lPCowLcxyH9ns |
TLSH | T1B6D32A6BB14C29ABD686C778A6CFC7B0B527B06CD30690D37806439D9BC766DCBB9500 |
Key | Value |
---|---|
FileName | ./etc/prelude-manager/prelude-manager.conf |
FileSize | 12200 |
MD5 | C1A6C0916D8C567C403DBEAB8E4040FF |
SHA-1 | 1FA42D17779ABC00A4E58C34755C67AA82A33A5A |
SHA-256 | 7C9E110CE0B1BFF2A036C80A94ECB3C1A05E52A13AA9DE1A7AE8A2D059E1B385 |
SSDEEP | 192:WwvQt/0//pGlRW5m2dhEJ585s5lVTV/VEuZphA13pM3WJ:WwIt+pGGm2dFuQZJ |
TLSH | T146429552E24ABB3A075603D2B18F91EE7B2951DE6F63682018FCCD5C7604CB5A3B36D4 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/filters/idmef-criteria.so |
FileSize | 68744 |
MD5 | CDF0BE568AE63E356DB23EDCC94D4C9B |
SHA-1 | A20D13ABBC5F4E3D43B51D498C6125DF37FC4E9D |
SHA-256 | F4B5AABC1245C5A003DCFCC361EFD84D63C27ACEE41AAC7EC9DE9A43262A90F0 |
SSDEEP | 192:f36G8pfJQgDlVcYkPFM2o0xJXgBJk2NI:fqrJQsH+JJwPN |
TLSH | T19A63A519F19C9D6FD94DA73844EA07B0B272D80A97638793751403B53F8F6A98F3209D |
Key | Value |
---|---|
FileName | ./usr/lib/systemd/system/prelude-manager.service |
FileSize | 166 |
MD5 | C93F36811D69BBD35FCBB7AF580DC5F2 |
SHA-1 | 984A282C9B19CC344CC9048427BC926F3E251193 |
SHA-256 | 02B97A9B44EFC5B42BDEBDFE5A8E9DCB56C559BC84B869C4196D561668C9E20B |
SSDEEP | 3:zMZa7T9QW85LMHGdeBN0c3AXbvmXTMzdK+aQmMv3AXUSkQmWA1+DRvn:z8cyrLMHGdW0LXbOMzdK+aBzXULQmWAe |
TLSH | T110C0C0D31D60B071CC0B11A7FEF0CBC04C0104411B4CF11036B104F824C05444020817 |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/filters/thresholding.so |
FileSize | 68952 |
MD5 | 9D4249C0434F8DF6098BA64FAE596767 |
SHA-1 | 4E9D81F12552D80C9179587C0E188E77157F86BD |
SHA-256 | DF13B533FB8AE0414D8ADAB112534590724B04E8A11211ABFB9A1834CF038795 |
SSDEEP | 192:IX63sg/O8poJKdMWVBGYIvYSW9qcYTu6GruDEu0mRHQi8xkJK:R3s68wdM4+pgKDE4oxUK |
TLSH | T14363D75DF60C9C7FD648A37854ED47A0B2339466E3864AA37C1902B43BDA5A9CF7308D |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/debug.so |
FileSize | 68752 |
MD5 | 061B6FF7CA16C9E235A085165571EE98 |
SHA-1 | 14FC5394FDF87A05B6975B59279168987B81939D |
SHA-256 | 192FCF58BB1F264D98256CDBEB2E1021917B1FBF3A6FFB66E8CC882100247970 |
SSDEEP | 192:P8pvwm9LhVBFiLYEqSr+Ki3azs/ZhUcKCCO:6VL7S3m3ZZFC |
TLSH | T1D4638319B24CDD3FD619973848EE43A8B636C10A83539793B50487F03F971A99E7248E |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/textmod.so |
FileSize | 69960 |
MD5 | 33E87525DCC7C9020D5A20B3BFF2FF2E |
SHA-1 | 83DD6AA3789643A51EBBAD7E25798467E354A49E |
SHA-256 | FF281BB5EA2C154A280E5D0B564BF0BF1B3485A3922BD0429B9C0C0039D6AEC7 |
SSDEEP | 384:POAs3Uozz8EhlgytXbBzlvnbr9Mkm4QBZGLbyZc:PHs3kEDnrB5HqkmhZGPyZc |
TLSH | T16363410CF20CEC7FD40EE67E0AAB07D1B931494653E695E1BB38356C6B4C64965AB88C |
Key | Value |
---|---|
FileName | ./usr/lib/tmpfiles.d/prelude-manager.conf |
FileSize | 38 |
MD5 | 1C83B3AC0148277EE2C4203630A539CA |
SHA-1 | 376747F9ED248FD2D2FC845325B4900910B8224E |
SHA-256 | B2255C7EFAB62F34957B3391E0581F502CB04B94E94BFD527EB9B808536DB48C |
SSDEEP | 3:kQev3AXht3HJ:kQNXht3HJ |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/decodes/normalize.so |
FileSize | 68912 |
MD5 | B1BF3A0B5242CE3EC6758F9F7DE3F812 |
SHA-1 | 88D1C13C0110A1A1E0A10762670A9C2D467C6C3E |
SHA-256 | 31D0852C6F763882C8F20BACDCDB0C8DC8F18DF517B6C3CACC6231314DD19768 |
SSDEEP | 192:fg8pFvJUZTVBKYMmKNAiQf0AxtSL7toSJW:dUZZbHcoQz |
TLSH | T1F163A648F31CCCBFC4455B3C89FE03E0B772894693925B93A628D9A43B8916D5E7248D |
Key | Value |
---|---|
FileName | ./usr/lib64/prelude-manager/reports/smtp.so |
FileSize | 69912 |
MD5 | CB197033D824FD9E55D52E632ACA7036 |
SHA-1 | B63242C52B9DCB52CF0CF2A5EA13B9939B5AD3F5 |
SHA-256 | 6C503207E031D6556C79C134531C83C414A89494ABF22580676F34E1EB4E9BFA |
SSDEEP | 768:gGlqZl4QWbbJKAwX7pfSY6/anRgt04969yEd8tUHWN6Gyf:g4qZl4QWbbJId9U09VzHf |
TLSH | T140630944F10CE51FD587933C97ED8AD2F037540BD323A683B85A8778368E61D8ABA58D |
Key | Value |
---|---|
CRC32 | 4E46F4A1 |
FileName | ./usr/share/cmake/Templates/fedora/gpl-2.0.txt |
FileSize | 18092 |
KnownMalicious | malshare.com |
MD5 | B234EE4D69F5FCE4486A80FDAF4A4263 |
OpSystemCode | 362 |
ProductCode | 15109 |
RDS:package_id | 313212 |
SHA-1 | 4CC77B90AF91E615A64AE04893FDFFA7939DB84C |
SHA-256 | 8177F97513213526DF2CF6184D8FF986C675AFB514D4E68A404010521B880643 |
SHA-512 | AEE80B1F9F7F4A8A00DCF6E6CE6C41988DCAEDC4DE19D9D04460CBFB05D99829FFE8F9D038468EABBFBA4D65B38E8DBEF5ECF5EB8A1B891D9839CDA6C48EE957 |
SSDEEP | 384:ghUwi5rpL676yV12rPd34ZomzM2FR+dWF7jUI:gmFWixMFzMdm7jUI |
SpecialCode | |
TLSH | T13A82A42E770443F205C202A16A4F68DFA32AD5B9723E1155386DC15E236FE35C3BFA99 |
db | nsrl_legacy |
insert-timestamp | 1728991626.679368 |
mimetype | text/plain |
nsrl-sha256 | rds241-sha256.zip |
source | snap:MmD5jWldYNMNgb2rFFht3FNKGJx1FLLV_613 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/licenses/prelude-manager-devel/HACKING.README |
FileSize | 742 |
MD5 | 6CE72E9EB79B6274DABE251BD4D2C90A |
SHA-1 | 1AEBB9DE6CA4E3B98EABBC4497961E04DEA32BD7 |
SHA-256 | A132C89C04F15769B96F27326F29B771A79D59B449A5D310AEB278088E1E555B |
SSDEEP | 12:hBerOrqL9S41anRF1KOyvcgMevyCmFQMl9Kr1yAHkxbpfgtthcAkU5tDWg2:XvrqL9S41a8ONg5yCmFjqNHkxNEeAvW |
TLSH | T17B01D01FB25C63741C8406A276C2E3E6660B419A8B218431A107D4D433BB96E853F5D8 |
Key | Value |
---|---|
FileName | ./usr/share/doc/prelude-manager-devel/README |
FileSize | 2160 |
MD5 | 939BE4D4720E45F8A092158ABA38375B |
SHA-1 | 541D9D9A0F9DE01A140DC71172C7F480969232C2 |
SHA-256 | 1A17A3CC1130CBCBE55E55743482F66115BCF7217DF6D33108025248EBDC1BC1 |
SSDEEP | 48:ze5Bie/VmlO6fbvuKt7X1X3TKKZQmkt8DXJfVsP:zVeQlO2ZZFtkoVs |
TLSH | T1FE4111FFA27832712105018FB215D8EA9B6771FF6A9050B0B89C45ED572375C9377B90 |
Key | Value |
---|---|
FileName | ./usr/share/man/man1/prelude-manager.1.gz |
FileSize | 1382 |
MD5 | 93CFED66F304B068C263F1053893B294 |
SHA-1 | 74C94076A738F4AE30EE281AE8DFDFA5CD380BE6 |
SHA-256 | 090D369DA08F2219093A04F6B7298C4515F5D3D52BFC7B260CA1095BDF5477FD |
SSDEEP | 24:X7UVVqAk9lKPB6ULxOlSniqr24XAbw7BUiRVhkXny/zmi7hUsaZFZmgvj3P8hbcA:X7aqAke3xOyiQ2h7iDhkXAF0cmQb3 |
TLSH | T13C21B62B14C34325C5214CB0229BBDE334A2A3C01F171878331559B8761AA9858A5EA2 |