Result for 452ABEB6E5EDBF7D289CF70DE22703B7C9E3A516

Query result

Key Value
FileName./usr/bin/prelude-lml
FileSize129240
MD59F34EA4E6E768C91BB6C739A62882334
SHA-1452ABEB6E5EDBF7D289CF70DE22703B7C9E3A516
SHA-256AE057DBA5727923785D64F7A355CDFBBFD3874C5B30CC799948C2AFEF56B836A
SSDEEP3072:JUy38GMwkzHr/j3bvi+62Suqmlx9JVht58IUgs4EQnTfLXDP7pdRlZNBVWaeiGKp:8GMwkzHr/j3bvi+62Suqmlx9JVht58IH
TLSHT135C329DBF80D2DA3DAC9C37499CB9771B2332088D753A183790283AC97CA79DC6B5954
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize219160
MD55349F52785A22ED02E035ED3725F08C2
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion5.2.0-2
SHA-1CBB867283EA1FA5A9F6C44ACD78989BAF7EBAF11
SHA-25640C55F4F66EC40D7F8BDB18D5CF56A794C6FB6A634EBD738F56EBC3B12B72B3F