| Key | Value | 
|---|---|
| FileName | ./usr/bin/shed | 
| FileSize | 40452 | 
| MD5 | 5F143F8C0A74AEFA84E02E24C7330CF6 | 
| SHA-1 | 0430791107A5E3F6CBFAFEA1E0F621CEFBAD2DEC | 
| SHA-256 | 7E4861A15AAA9E62E4F8E85EE93721883E25B0DE473566323FA7021B33DF04B8 | 
| SSDEEP | 384:/44QErFBwwjn9CEhqa7sr0B5HhGggJlP/Yf2rHmi2o1j5CrtzWGbYJuXhqcMwwSX:/NQEr/1jAEAa7s0PG7bcMGk6PTEkk | 
| TLSH | T19D03B503FB145EABC4D7CC304A6ED31255BE98EA5185A3FBA29CC6847F0A9654C93D88 | 
| hashlookup:parent-total | 1 | 
| hashlookup:trust | 55 | 
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
| Key | Value | 
|---|---|
| FileSize | 23110 | 
| MD5 | E9143BCC78D4E23E1749ACCA113D69D5 | 
| PackageDescription | simple hex editor with a pico-style interface shed (Simple Hex Editor) is an easy application for viewing and editing files in text mode, using ncurses. The main features are: . - Displays each byte as ascii, hex, decimal, octal and binary; - Allows changes to be input in all of the above displayed modes, with bit toggling in the binary column; - Simple Pico-style interface; - Search resource; - Can dump information to file; - Small memory requirements because file is not loaded into memory; - Large file support. . shed is useful in forensics investigations. | 
| PackageMaintainer | Debian Forensics <forensics-devel@lists.alioth.debian.org> | 
| PackageName | shed | 
| PackageSection | admin | 
| PackageVersion | 1.15-3+b1 | 
| SHA-1 | 8BD2F8073D716013ACBBC60513143B655C9A971E | 
| SHA-256 | F7F766C1964EFF1A13778732C90D8C90EB8645C4B081C365DD021464BA6FDC61 |