Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 4218060 |
MD5 | 161F59A7C099F6C4ED77937390C6D33A |
SHA-1 | 0D85247BA2BBD1E167CCA586A69257EF3E2D98C9 |
SHA-256 | E8AD4716D813A9779B545840DF25587B9F508674FCD679412B7E1B24FB1AC394 |
SSDEEP | 98304:4IEBy4zd+OKqotTRUB+bqOyDXZ3yTifGKwRu4Pi:l2Rp+eobUB+bqOyDXZfw |
TLSH | T1CD16AE83FAC54C6DCDC99E3B2BA79FD10532DE13A094C46E904C4A1E9ED26ED17663E0 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1744968 |
MD5 | C1C2CF2C75A49186857DBDE024A52CF7 |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.2-1+b1 |
SHA-1 | BA76DCBAC2AFCB69EF0C5F95A65F3484C6A1FA1A |
SHA-256 | B038075E865F92911B84EA3EB74AB4EC1A36BE94C0B4937E65BF5A453FB6BA90 |