Result for 4BE3D3DE7942AA388F893212EF3B1F4DB408A013

Query result

Key Value
FileName./usr/lib/powerpc64le-linux-gnu/prelude-lml/pcre.so
FileSize67672
MD53815DABD2EAD7DD23C8FE02B17163073
SHA-14BE3D3DE7942AA388F893212EF3B1F4DB408A013
SHA-2563F2B21849D61ADB2989869A7209B66FBBFE3E6D39C93544742C271ED9B17D73C
SSDEEP1536:tWcE/vTAcHPIZ9q7kVe3XAh67qmEF+fhKsDs7G3ghP2+jZjB1tHzrB:gcE/LAcCjZd7p
TLSHT19663A7B7321C571AEB42597E8AFE962173567D0F03708703B610435F5EDBB29CE5680A
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize224488
MD510BD1C36F62D854A53704C0F73428200
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion4.1.0-2
SHA-1DB08DA6630676EFBC8278688B9154E8F9925BBE7
SHA-256CE01443C15B166C422705320BEF8EF49B410BF8C36F4F15A6B2D7E1B8CBD2797