Result for 002D3BE4487A70B7E9DEE2A887C76ABE734A877B

Query result

Key Value
FileName./usr/lib/python2.7/dist-packages/plaso/engine/knowledge_base.py
FileSize3627
MD5BDA0EFDD768F5C6B42983442A1F2711B
SHA-1002D3BE4487A70B7E9DEE2A887C76ABE734A877B
SHA-2563E31D4F8545584C06DBA516AA218052CC46D4718CD759880636FC762B0B124BE
SSDEEP96:CxPICiEFn1tZx6NzUXpyr+NnUgcS4z1eqW20CTdMomTfpqRVXvZlCIZehf0:CxPICtndxxEr+NnUgc1BeqW20CT9Qfm1
TLSHT17371D037F6BAEEA08D1789F578C6E8467B9C1E230324B1783CFD844D5F12A5281E29D5
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize1133048
MD58B1EF8100B2A967661C5808AB3011D8D
PackageDescriptionsuper timeline all the things Plaso (plaso langar að safna öllu) is the Python based back-end engine used by tools such as log2timeline for automatic creation of a super timelines. The goal of log2timeline (and thus plaso) is to provide a single tool that can parse various log files and forensic artifacts from computers and related systems, such as network equipment to produce a single correlated timeline. This timeline can then be easily analysed by forensic investigators/analysts, speeding up investigations by correlating the vast amount of information found on an average computer system.
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNameplaso
PackageSectionadmin
PackageVersion1.4.0+dfsg-2
SHA-17E3FE51A7A96628C31490742D671A883B852CB64
SHA-2569E12F110FF3D76B37AC55A0B99802FEC8A76B1D918F213AE76529A01CDC24008