Result for CB48FB4A0B332F84AFCD8A32DD757CCC155F6058

Query result

Key Value
FileName./usr/lib/mipsel-linux-gnu/prelude-lml/pcre.so
FileSize36908
MD5CF98961EA8FF6DE9F75F750576A9E191
SHA-1CB48FB4A0B332F84AFCD8A32DD757CCC155F6058
SHA-256A676212957BDEA2F925499FD2A1A5D06E4D6A3CE08607415BF29E6BDE78FA43D
SSDEEP768:/UpGcr5AcC/HAx3w8hvbppexGTfzBUjo8ydRP/0WAop4Lk+l6VGab95LASsyuy0u:8pGcr5AcC/AxZhTp8Grzuo8ydRP/0WAe
TLSHT1ACF2D612BF140E67D4C3CC714E3ED70225EE9D8E9184BB17F56C858C2A82B1E5DE798A
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize217760
MD5C893F14FCC01C089E3DBC16B6012708E
PackageDescriptionSecurity Information and Events Management System [ Log Agent ] The Prelude Log Monitoring Lackey (LML) is the host-based sensor program part of the Prelude SIEM suite. It can act as a centralized log collector for local or remote systems, or as a simple log analyzer (such as swatch). It can run as a network server listening on a syslog port or analyze log files. It supports logfiles in the BSD syslog format and is able to analyze any logfile by using the PCRE library. It can apply logfile-specific analysis through plugins such as PAX. It can send an alert to the Prelude Manager when a suspicious log entry is detected.
PackageMaintainerPierre Chifflier <pollux@debian.org>
PackageNameprelude-lml
PackageSectionadmin
PackageVersion5.2.0-2
SHA-1720AD836C1F215A64FB8CD2227D34734AE5F6BFC
SHA-256A5496FF593567695E587B21BDCF0C04D8DD3790AF6D8F70E7EB510AFB855987A