Result for 5B4FFE932957ACB17A8A89E89ED6DF5C39B07EDE

Query result

Key Value
FileName./usr/bin/prelude-lml
FileSize148952
MD50CCF2CE2B0429F92D9D80884C3B17EEA
SHA-15B4FFE932957ACB17A8A89E89ED6DF5C39B07EDE
SHA-256D4367AD17B67ECBEE47B6B63D768BA12DC143112FEF8667780DBA0B93B2F42ED
SSDEEP3072:PQ09g1WyAgXFPP93iQwob8pDhPHIlduAfZpx+V:Prg1pAg1PP93fw6iJHIldPxw
TLSHT174E34A49F796C8B0F2E245F8061B83A26A20550DD263F6A2FF4C7768787635DBE12335
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize223324
MD5E54E9CAC07E54DDD1F6FA6C87ACA39E5
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion4.1.0-2
SHA-13531F4763EEB2D0682C5CD25BF4CE05DAE1A48A8
SHA-256A304AD66EB6A1B1EFCBA13B3D87D62C537534D3462165F9AA0F0164B7332316A