Result for 67C7ECF74F77D78D4D06F58A76816293251D1692

Query result

Key Value
FileName./usr/lib/i386-linux-gnu/prelude-lml/pcre.so
FileSize42560
MD56176213C02C8B9FA8257F09F41580984
SHA-167C7ECF74F77D78D4D06F58A76816293251D1692
SHA-256C40A82D9D4530C72AE2E9617DCE06FE4AFE91A442BC4FB00516849450AB961FE
SSDEEP768:J3vqGcyTAc92fTRlHCcbnBzc1ri5AYHMPjwgF0xAhH0anFe:tvqGcyTAcwtXbnBari5AYsrfqZ0
TLSHT12013195BB3C2C8F5F5A307F98E1B8279A574810691A3F1E1FE0973997472318E936239
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize226532
MD5F860DB4F29765A31B225789F8955368C
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion5.2.0-2
SHA-15E99D0083267BB7627FE18C920D1DEE65975C3D5
SHA-256A770E8A2A3EB42345A6D05AE7192B95C17572C1FFAE06D04A940916D78179FB7