Result for 839490487366CDBC1B370B8E6ADD88F9F9EC2B99

Query result

Key Value
FileName./usr/lib/arm-linux-gnueabihf/prelude-lml/pcre.so
FileSize26156
MD5470998F018C44E3FAB56998FE292DD3C
SHA-1839490487366CDBC1B370B8E6ADD88F9F9EC2B99
SHA-2568C7DAF1C68FA7DF30E4AC3B6D137CD7D6338A9FD7119AFFD1A0E03E0220E0792
SSDEEP384:W0axpGcCTAc20sZP5PRgLuvHiWQrHRaweLqklNJw+1Xdccdkt0lYevLV:faxpGcCTAcwPhqZrHEwt+1gAL
TLSHT138C2F8D4B02F8E27CDD062B9DF6A4F4066E0818F4296DF21AD28D1B41FCD56C8D67D26
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize214832
MD592FAB738DA8A2F4305D21FA1C7A193DC
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion5.2.0-2
SHA-1B5B03266447515CC81654341B1E24FE0078CC071
SHA-2561E404D413CF92BF83C2AE1B956089FF1A2E6DC286DB2F469FABAFFC29FF50AD4