Key | Value |
---|---|
FileSize | 126996 |
MD5 | 80A70C9CC9E87408643AA10037DC8520 |
PackageDescription | YARA development libraries and headers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. . This package provides development libraries and headers. |
PackageMaintainer | Debian Forensics <forensics-devel@lists.alioth.debian.org> |
PackageName | libyara-dev |
PackageSection | libdevel |
PackageVersion | 3.5.0+dfsg-9 |
SHA-1 | 02193379C557DB76F32835376ECA17DAAEE24020 |
SHA-256 | 1C131B7D78C77DB8BA6B155AEB5EE97BAAC34CB95B88096DFB7BE6FFF175A16B |
hashlookup:children-total | 29 |
hashlookup:trust | 50 |
The searched file hash includes 29 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/share/doc/yara/changelog.Debian.gz |
FileSize | 2757 |
MD5 | DCB4DD838E33C2916ED10A9A8B2A8ED4 |
SHA-1 | 0DA149E944A6A9E686BA6FC08D0DDC34832F1E23 |
SHA-256 | A6DD1D6DC92C9A3F93F28E63B337FF9001678F7A16944E495EC5F7010E63554D |
SSDEEP | 48:XoRYWxs0aP+2KLxf9U8dQnb6rVJyfBScGhnv5mpqoNDlGZ8h8oVf8jYctWC:Y+W20aSVf9U8ansVOB7GuIiGqOoV0jYs |
TLSH | T156517CB51404CC1E5EB38B30413F61DDBDB1F14FD020EEDC656CA1399429AB2EA11076 |
Key | Value |
---|---|
FileName | ./usr/include/yara/rules.h |
FileSize | 4161 |
MD5 | 0B9390803A5F39652C3F33A71C4BB383 |
SHA-1 | 31B7C5A71F38038A1DE576585C470CE0F4C3F1BD |
SHA-256 | BD2C43E4D38A26587559EDE6A4B51C566657251E6DEC63584022268905DFEEA4 |
SSDEEP | 96:HOrpoJrJzuZR3A3zVfaERRvkkRer3bswCiueSTppP:HOrp8t6ZR3A3Zawnimn |
TLSH | T13981619A8E6012828DD07A61DC0EB1107809E43F3FB1B8957DEEF1544FA903EA8FA148 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/arena.h |
FileSize | 3441 |
MD5 | 4EA204B852998B75340517134E653C4D |
SHA-1 | 4E5FE83547CB846CD35E32F8D4AEE6488B8573A5 |
SHA-256 | C408CE0FBC8DA58E7567830DAA8D888FDDFB82197E4BE4942702F089CF1F5DBD |
SSDEEP | 48:4AOOrpoJrJzuzP96432sv832s3EsIq3tYHt6N3KW2v7WwUv1bzqnrgyPZTK5Xhs:KOrpoJrJzuZR3A3zVfaN6RePZTwXS |
TLSH | T1336151C67638F1B3A5D21DB16D8E31C411C3922BBF5BF900B6CA52002FBA45CDAB7264 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | changelog.gz |
FileSize | 125 |
MD5 | FC5045E27038E5F27D6A0C3E4577969C |
RDS:package_id | 302126 |
SHA-1 | 5198BE117FC28A5C7FA1CE678A2F7EA41063C32A |
SHA-256 | 782108A2CC4664424CD8C09DE50E8252D04B3DACCC34A6BC47930E744933F98C |
SSDEEP | 3:FttcawaL+58W1O7P30489t/T8Kvo+1jy8Gtn:Xt/u1Uc4etM+9yzn |
TLSH | T159B02BD100187150C809C130849E05FE03E49041060240500E6013CC3A540ECD474A04 |
insert-timestamp | 1712771666.5378067 |
source | db.sqlite |
Key | Value |
---|---|
FileName | ./usr/include/yara/strutils.h |
FileSize | 2480 |
MD5 | 804672492DC3FE59825C361F30683ADF |
SHA-1 | 5942184FA3EDF0E378EF7526AAAA9260829B2708 |
SHA-256 | D3E03341D37A6C2BF82A7F7E8F50CA4C05D36C5E78789C6A7B1C587A8C5A359B |
SSDEEP | 48:ZAOOrpoJrJzuzP96432sv832s3EsIq3tYHwomg3xkLcEJH/RHuzX006rs:bOrpoJrJzuZR3A3zVfa9mYDURfU |
TLSH | T136517613663403A358E543C5955BB8C0504AD12F3B32AE91299AF1CC7E2F41FE8F799D |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | stream.h |
FileSize | 2123 |
MD5 | A950889A997B783AEDD0FC4594039FB4 |
RDS:package_id | 222721 |
SHA-1 | 5A698C565BA3F5E7397D805B2BFA95886860C013 |
SHA-256 | 0FC070610F9394C0E34BB6A0E8E3F5F6213909BBA4AB6925D7C03A4387349CA2 |
SSDEEP | 48:6AOOrpoJrJzuzP96432sv832s3EsIq3tYHUCoyyQF6FSs:MOrpoJrJzuZR3A3zVfa0CoyHF6Fb |
TLSH | T1B9414497121417A33CD50A92AA8BF6C0644BA11B3F2BAF043AD5E2512F6F01DE8B6570 |
insert-timestamp | 1727040688.9120274 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/modules.h |
FileSize | 10986 |
MD5 | D49ABA39AF729D1AF7A366187F47E7F7 |
SHA-1 | 5A8105FEACFE5ECA5D66D291BA0BC0FFCA08EEFF |
SHA-256 | C8C7CC7E8F298AEE04AC82489DF24E12EED9AFD3E646C16AC00AD1A3A0287CAA |
SSDEEP | 192:HOrp8t6ZR3A3ZaqEl98SNn25s1GT7w5D0+W0CbHTc0/ng:uritOBaZzybNn25sMT7w5YUsJY |
TLSH | T18432854CACB1F1A5095600A35A657819D282871321982EC170FEC6FCBFB245E68FB6FD |
Key | Value |
---|---|
FileName | ./usr/include/yara.h |
FileSize | 1771 |
MD5 | 38347066562727AEB76CF41E117EA489 |
SHA-1 | 5ADA3FB48586F64ECC746C678814A1D5E418EAE7 |
SHA-256 | B8DC751C1EB73811922C9B8E3A0F7589800C20A42D0673124FC8C2A9C4186842 |
SSDEEP | 48:MAOOrpoJrJzuzP96432sv832s3EsIq3tYHJ5I1hE88mIFd:WOrpoJrJzuZR3A3zVfaFn |
TLSH | T1B331553695580B6BC5A206E17197A5C0A08EE01F3B375901189DF384A7674BEB8FB185 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/object.h |
FileSize | 3939 |
MD5 | B48ADD57FA5D65D4E2885F6E628CE83D |
SHA-1 | 5BA79C3AB2D45DD83EFA5A11790F172ACB757F86 |
SHA-256 | F9358C5F95B3FEAB22ED2B61BBE9BA9D1B8E14C162259E3343F068277F7F0467 |
SSDEEP | 48:tAOOrpoJrJzuzP96432sv832s3EsIq3tYHAE+SJ1Pgr7thd4Dr+0m23R/yE6:HOrpoJrJzuZR3A3zVfag2PcCW0m23pU |
TLSH | T1CA810E86AF60D33658B245A0484B7408D00691377FB6F848B4D9EF95AFFE40D4CB73AA |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/s390x-linux-gnu/pkgconfig/yara.pc |
FileSize | 223 |
MD5 | 5CCFDDEF181AE4F3854D785D7413FC4C |
SHA-1 | 5F445F25E26404756EDDBCD93917CFD050EC8317 |
SHA-256 | 6302BC5BA8FF2C5259CD77CEA3A9F7609AFB555FFE048C8E1B2E74472E13DA47 |
SSDEEP | 6:iD5iOa6XYpeAv1C0XAPGWRdJDfEPKLa6XCi10cr:iKJUAv1sPvfsyLaE0cr |
TLSH | T18DD02308E00F54D0D9849F7580918DC04CEB1169F23BEB18C3D23B40C2621CCE433B83 |