Result for 0FB08C1AF96AB155EC2AEDB9CF408FD646CD298A

Query result

Key Value
FileName./usr/lib/i386-linux-gnu/prelude-lml/pcre.so
FileSize34232
MD5B29FA3CB9BC4B0A8EED351412A52886A
SHA-10FB08C1AF96AB155EC2AEDB9CF408FD646CD298A
SHA-256DE374DAD29D98C4CF24703A35F4B71E71E6BD7777E1A31D59CC9064C218EDB15
SSDEEP768:NKtca/w7HXAfTRlHCc2DQlSkrjycEslCrdWO2aSTch870/3JGFKnJ8eXCiO:ctca/w7HXAtXoGbwrdHhwkM8vX
TLSHT1DCE2195BB383C9B1F6E302F50A478739E1705106825BF2B1FB08B39CB476615AD2627E
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize91540
MD5AAAC6105988BB64E8D6AD4446596A689
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion4.1.0-1
SHA-1B529241C7BAFD7F22BD483D0294C7528A1AC7FFA
SHA-256869105C031050B15147AF3A4D7445AA0EAB422C1828817AEE72663E4FD6B5DF7