| Key | Value | 
|---|---|
| FileName | ./usr/lib/python2.7/dist-packages/dff/modules/fs/ntfs/_NTFS.so | 
| FileSize | 156996 | 
| MD5 | A886206E29010F18F192FE6A5818ACE2 | 
| SHA-1 | 0424FCDF6476EB013DC361D0022BDCC078BB1EB8 | 
| SHA-256 | A9D696D484B14F23FC4A2950EA4322060FC4B16B81F7907A2F21219224EFE3A7 | 
| SSDEEP | 3072:L8E7M7le4ekcGln8wFrar9HjUEueudlz7T1/ACTeMAUvSmjihobU5E+9G84mqLFL:L8E7M744ekcGln3Far9DUEueudlz7T1N | 
| TLSH | T1BBE37CF967858B33DCBB8BF8B0931E434534C0A96BD70F53685E9B35ED8A224563B190 | 
| hashlookup:parent-total | 1 | 
| hashlookup:trust | 55 | 
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
| Key | Value | 
|---|---|
| FileSize | 11175504 | 
| MD5 | B18BC8BB4966E95DBB7EEAE0B23C5E2D | 
| PackageDescription | Powerful, efficient and modular digital forensic framework DFF is a simple but powerful open source tool with a flexible module system which will help you in your digital forensics works, including files recovery due to error or crash, evidence research and analysis, etc. The source code is written in C++ and Python, allowing performances and great extensibility. | 
| PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> | 
| PackageName | dff | 
| PackageSection | admin | 
| PackageVersion | 1.2.0+dfsg.1-1 | 
| SHA-1 | BBC2A1E7497516B6C4EABF4D050C95DC6518EC87 | 
| SHA-256 | 72B3592F627169354793A8FAD9CAD750CDB336164747C8C39FCBEA0386C3E3DD |