Result for 04BE4C109CA72DF5856B29366CE3737599D59532

Query result

Key Value
FileName./usr/lib/python2.7/dist-packages/plaso/formatters/winlnk.py
FileSize2764
MD56B20B0B53BFD81C2579762119E736FB3
SHA-104BE4C109CA72DF5856B29366CE3737599D59532
SHA-25692A28D5BD051975FC1A66B7F21A3A206251F831878EF9A566C5F7A7CBD077F58
SSDEEP48:c3uwHjc41KkP0411fuvhzbjhGO/VzWGCIuzabGjuUeumUQ9XRoI9:G18vhnFjfCiG2zZXoI9
TLSHT1215150B3D8176492955F479E6BC9A580D33661E309053831FCED0D1C1FA6D4E82F27A6
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize1195000
MD56329D2C6FA5145C5823DD2D0F5527127
PackageDescriptionsuper timeline all the things Plaso (plaso langar að safna öllu) is the Python based back-end engine used by tools such as log2timeline for automatic creation of a super timelines. The goal of log2timeline (and thus plaso) is to provide a single tool that can parse various log files and forensic artifacts from computers and related systems, such as network equipment to produce a single correlated timeline. This timeline can then be easily analysed by forensic investigators/analysts, speeding up investigations by correlating the vast amount of information found on an average computer system.
PackageMaintainerDebian Security Tools <team+pkg-security@tracker.debian.org>
PackageNameplaso
PackageSectionadmin
PackageVersion20190131-1
SHA-12AF36C8B57653236183E6F68DA56B7831595E24B
SHA-256A19521491A92C56B0B35508186DE43E318BA71DC0D8EFB66CC45104AC92E009B