Result for 0EEE521C90050A4266D11A5DC79FB79CEFC99390

Query result

Key Value
FileName./usr/share/doc/python-pefile/README
FileSize2817
MD5CFE9BB50FC026F67F24ECA3393BD6B67
SHA-10EEE521C90050A4266D11A5DC79FB79CEFC99390
SHA-2560154FFABB46F1BBF2D9156B427450B23955ACA430B6A6283A9A7308AE063F08A
SSDEEP48:aIylX3pU+GR+YGul0qWEnF80IzUbuHL946kEQIH8OtosKgIVi/X18fb:aHlnpU/vZWEnF809be946kEjH5c6gb
TLSHT18151960B7F6833B60FB2D1D4B20F5399E796C4BC23766165285C801D37468BDA1FEA98
hashlookup:parent-total20
hashlookup:trust100

Network graph view

Parents (Total: 20)

The searched file hash is included in 20 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD5A471D01F19AAC92E73B6616E16816BD1
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease3.fc14
PackageVersion1.2.10_63
SHA-10F9DF1D5C51F67C216A856846A4331B68F4EADFB
SHA-2561962A491E534A950B61D5A311F17A3683DB3C212699108B478BB2FC19B163528
Key Value
FileSize37830
MD549487AC4DDE6337EF5807297528B9DEF
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepython-pefile
PackageSectionpython
PackageVersion1.2.9.1-1.1
SHA-152EDB52945D255D8EC388BB2591BF139128794DA
SHA-25668D9F6730C8722BD1038E73CB7CFF0302B7D7117C824BAB41F155069BEE0F1D7
Key Value
MD5270DCCF86BC85C796A14063245799CAE
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease7.fc19
PackageVersion1.2.10_63
SHA-15851363E1C30D4345A45CF633A2D89D0C07CF1BC
SHA-256C91521ECE9B6D6340D9FE9DFFB0937AA134811A145BDED2C4A1BBEED5CA3578B
Key Value
MD57245E94608E32B733BC207709909D46F
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease5.fc17
PackageVersion1.2.10_63
SHA-15C747233D2EB3534AAF41F1B3AA894EF77023861
SHA-256BBCB1C917DD4E3505E5FF2DE7AF6053980A910BE2530960A83EEF4897FB7BF31
Key Value
MD59F9B2055AF5AD55E3C8CC10C9AAB8893
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease5.fc17
PackageVersion1.2.10_63
SHA-16603A342D3EFDB15DEF60F959B0B27FA682C3388
SHA-2569D642DE5AAAB5C502BF8C4C96666460A7C40047D77E1A752BBB68FB482EFB547
Key Value
MD5ABD226890662882A69B45B10FAE2056D
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease7.fc19
PackageVersion1.2.10_63
SHA-16A8825FEA823F82A47D37B0259C993D48F5905C6
SHA-256EED214DCD6F00615D1CC448A3817D37B9FCD0E22EC26D22784FB3A45CA8D989A
Key Value
MD5E96C13DCD8DCE4916F94C90FBBFE8BA5
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease4.fc15
PackageVersion1.2.10_63
SHA-173C0846A4B04EB09040CE8F841B846124BBD273F
SHA-25673614D572747481F0B9306A6A5C4CCBEA6E689422CFE19CBAD0EDF1BC4CB8921
Key Value
MD522D41B8257FDC3E8BDB4E51EF58E4DB6
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease6.fc18
PackageVersion1.2.10_63
SHA-18DB7C64452B1D16A21665A143396B0077B8334D1
SHA-256A3712082A117DF9E351731981488D74202C26A71D232AA0EA6B207D0DDB5FACF
Key Value
MD57BAD66441D96141FF29BAD5E55C4796E
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease6.fc18
PackageVersion1.2.10_63
SHA-190909383183BD5F6C71EE291A0F686E776C731F2
SHA-256551410ACB1660DCB1954FE4305E6C6DCB06030D736958F5CD8C817AB4788DA14
Key Value
MD58DE55DD35F841DB0DCA2A8D25F5AC40D
PackageArchnoarch
PackageDescriptionpefile is a platform-independent Python module for reading and working with Portable Executable (aka PE) files, most commonly known as .exe and .dll files.
PackageMaintainerFedora Project
PackageNamepython-pefile
PackageRelease4.fc15
PackageVersion1.2.10_63
SHA-19A3B58337F6F103DF427BF75971D051D73C8BCBA
SHA-256076A18BEA219E0607F00CC70EDA349D4ECB78B6775381E8BF78F356217061411