Result for 091D7B1D5DE2735E8E56FF2BEF915F8261B0B396

Query result

Key Value
CRC327689CCBA
FileName./usr/lib/python2.7/dist-packages/peframe-5.0.1.egg-info/top_level.txt
FileSize8
MD51B61C7688A5A736661D1E55BF7AAADDD
OpSystemCode{'MfgCode': '1006', 'OpSystemCode': '362', 'OpSystemName': 'TBD', 'OpSystemVersion': 'none'}
ProductCode{'ApplicationType': 'Operating System', 'Language': 'English', 'MfgCode': '1722', 'OpSystemCode': '599', 'ProductCode': '163709', 'ProductName': 'BlackArch Linux', 'ProductVersion': '2017.03.01'}
RDS:package_id294806
SHA-1091D7B1D5DE2735E8E56FF2BEF915F8261B0B396
SHA-256BF6A379FBA1F51EAD6604F27E88E5F733CA1522DC86F8202E0CBBB98C5B423DF
SSDEEP3:aon:l
SpecialCode
TLSH
dbnsrl_modern_rds
insert-timestamp1696437670.156451
sourcedb.sqlite
tar:gnameroot
tar:unameroot
hashlookup:parent-total4
hashlookup:trust70

Network graph view

Parents (Total: 4)

The searched file hash is included in 4 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize144884
MD5D79C047AE73AF45F9F79C5195D291A87
PackageDescriptionopen source tool to perform static analysis on PE malware PEframe is a open source tool to perform static analysis on Portable Executable malware and generic suspicious files. It can help malware researchers to detect packer, xor, digital signature, mutex, anti debug, anti virtual machine, suspicious sections and functions, and much more information about the suspicious files.
PackageMaintainerSascha Steinbiss <satta@debian.org>
PackageNamepeframe
PackageSectionutils
PackageVersion5.0.1+git20170303.0.e482def+dfsg-1~bpo9+1
SHA-13E6A89FD597C0E4465AD3273DC429749AAB1218E
SHA-256B46773004D3784164A8ADD3F55A845FB4738275B4803666F400D8B5374C4BF9B
Key Value
FileSize142620
MD59A35E73A7BB58C6F99583A446371AE90
PackageDescriptionopen source tool to perform static analysis on PE malware PEframe is a open source tool to perform static analysis on Portable Executable malware and generic suspicious files. It can help malware researchers to detect packer, xor, digital signature, mutex, anti debug, anti virtual machine, suspicious sections and functions, and much more information about the suspicious files.
PackageMaintainerSascha Steinbiss <satta@debian.org>
PackageNamepeframe
PackageSectionutils
PackageVersion5.0.1+git20170303.0.e482def+dfsg-3
SHA-1069C86B4EEC137A3E48211BD3A93AE6C45DF8E4C
SHA-256A48E808D942DD7CA332699E35E0B25EC1DD451F81F55EB0F72BD6F9DFBC08015
Key Value
FileSize144248
MD58E285E04DFF0C3DCF15864F8B39B2DB9
PackageDescriptionopen source tool to perform static analysis on PE malware PEframe is a open source tool to perform static analysis on Portable Executable malware and generic suspicious files. It can help malware researchers to detect packer, xor, digital signature, mutex, anti debug, anti virtual machine, suspicious sections and functions, and much more information about the suspicious files.
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepeframe
PackageSectionutils
PackageVersion5.0.1+git20170303.0.e482def+dfsg-1
SHA-164D201C7AACD3E9924501C4A4ACD4192FEA04892
SHA-2562E70D9D84F9258B20DBABE4CD5C520EE15C729261A4662BFA45671C012318D89
Key Value
FileNamehttp://mirror.math.princeton.edu/pub/blackarch/blackarch/os//x86_64//peframe-135.70683b6-1-any.pkg.tar.zst
MD50DB77CB00E95201F2C5E87158927C0F6
SHA-183E497B35755C6583254B266E053E735B65F5972
SHA-256DC03D4B030DEBED32E6200B688845EB140446ACBA552902411F7B087E6A6A333
SSDEEP6144:JaSR4MauI2pGWNMK+YN7elqy/C7eFHP9LC3DD7aQNiT/jqFNNogqb1+:oSRrrpPNj+m7e0y0r3H7UzjGNNo51+
TLSHT1F164237327C515B94E9C4A2C178351769248D3F012BFEF14B296D83B33B6DF5A2261B2