Key | Value |
---|---|
MD5 | CE7DECBC2DCF37A4C8D5D9DFF52A9D1E |
PackageArch | noarch |
PackageDescription | The python-oletools is a package of python tools from Philippe Lagadec to analyze Microsoft OLE2 files (also called Structured Storage, Compound File Binary Format or Compound Document File Format), such as Microsoft Office documents or Outlook messages, mainly for malware analysis, forensics and debugging. It is based on the olefile parser. See http://www.decalage.info/python/oletools for more info. Python3 version. |
PackageMaintainer | Fedora Project |
PackageName | python36-oletools |
PackageRelease | 2.el7 |
PackageVersion | 0.54.2 |
SHA-1 | 0EFCF6CEE67FC16EE560F5CB46A3C25473AB11A5 |
SHA-256 | CB51E9A065453EB361ED7B35EED043D1EF37BAE956438B64CECAC27943CD015B |
hashlookup:children-total | 122 |
hashlookup:trust | 50 |
The searched file hash includes 122 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/bin/msodde-3.6 |
FileSize | 386 |
MD5 | 779BE722140567BF725ED496AA67954B |
SHA-1 | 035782AB22825E37F15F43DA1E0235D4743D3B41 |
SHA-256 | E4C3EB8502E4B9A0F107C7E2E9AE0645E747125B3E057400B7CFC96AA76F5291 |
SSDEEP | 12:HsKuL/h02yh01zoi9VrCF2aGNM1m2SfVBh0jWHA:PuLm2ym1oAC0as/mjWHA |
TLSH | T17AE0221289E09D6049F245872430E471226B0EA76E81B20CB1CCCB7ABBC03E10C38A34 |
Key | Value |
---|---|
FileName | ./usr/share/doc/python36-oletools-0.54.2/README.md |
FileSize | 12095 |
MD5 | 63F165E2E149265D7657093686492669 |
SHA-1 | 0714684EDEA178558648355E5D07DE02B2F598F9 |
SHA-256 | 9A9F2C7FF288F8C1EB070D13CCCAEBA4C920E10A55A07DCA81E90CADC78004A0 |
SSDEEP | 192:xS0QWROHZsqPOKuC3A1cj+msSCnJZBxenOrXcrRR3s3FKiYQHTL:xwW0ZN2KuCwHmbMJZTLrsrRB+FG6L |
TLSH | T15B42D4B79FE0076E0F82C9C5B6C5E699F326501FF9E3689854AE8304731A47663BF214 |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/__pycache__/oleobj.cpython-36.opt-1.pyc |
FileSize | 21968 |
MD5 | CAF31276FDDB05CBE9FB1B76E567CC90 |
SHA-1 | 074F4204CC324342CFF4C537C3E5E212E762AF92 |
SHA-256 | A4AA8340D685818BB0C4E2A1C8D4AEE9550E6DEE558256E83343072C19983D71 |
SSDEEP | 384:8gzugYuIivT14G3xFupHDWQwUp+/5XAU3iQrJGYxbVJjjWFCI8ovd8q:8h7Uwt1eZAjEJGYxbTjyFtlv7 |
TLSH | T124A22A876A86E7ABFE91F1F0621C0351A324F17B631B6151384CC22E3F8A1F475B66D9 |
Key | Value |
---|---|
FileName | usr/lib/python3.12/site-packages/oletools-0.60.2-py3.12.egg-info/top_level.txt |
FileSize | 9 |
MD5 | E1328C49604367F16736F85DCD058326 |
RDS:package_id | 294806 |
SHA-1 | 084414AC8CDF7742AF82A7E2E3348A7C2503B7C8 |
SHA-256 | 6D2A30D7D019799DFFA4F33BFA78CD492E6D07D2E961D7E1325CCB7BCB83A2B4 |
SSDEEP | 3:9A:y |
TLSH | |
insert-timestamp | 1696437815.8937707 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/ooxml.py |
FileSize | 25546 |
MD5 | 32DF124A075B72050D10FFE2AD2F3CCA |
SHA-1 | 0BD178FFC5749C17178FCEF2BA2553DA94B4586B |
SHA-256 | 9A318AC9B18944AD6A33FC1096281F0D6A8424C7423D848EF7287CC484C21043 |
SSDEEP | 384:QBTnDnLJHDKqbEWiUNVwfZuivdgl3RF7CNLZ18YuHfdM:QBTnDnlHDKHoNVuZuiv23vWG/dM |
TLSH | T1DBB2B567E8956561874784BC99C3F0033719687B5D4B6674B8FCE2283FC1A2580FAFE8 |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/thirdparty/tablestream/tablestream.py |
FileSize | 13754 |
MD5 | 23AAC80DD3C58E276FF29417BB775364 |
SHA-1 | 0D4E010DEEDF313091E5631866D1B33092AE5330 |
SHA-256 | E84BDC608050A92EFB366B2F9650CB216D5EF00455973E7C930A48A8B0B132A5 |
SSDEEP | 384:mvCrFVGyirSLI7rTNOjhvrwEVBTGbsLdf2:mK/irSLIHTNOjhjLVtGbsLdf2 |
TLSH | T17C526121DD427BA64287DA26D29BE452D30FA45B835A25793E7DC10A2FC0735C4FEDA0 |
Key | Value |
---|---|
FileName | ./usr/bin/olemap-3.6 |
FileSize | 386 |
MD5 | 159749BFA6231157BFACFBF3B044A24C |
SHA-1 | 0EADBB0300C824A1B24EA811D73532E172B73D87 |
SHA-256 | 0E9B30DEA6FF7684027433726F3B9CAC982452F45956308B15A073ED55A62201 |
SSDEEP | 12:HsKuL/h022h01zoi9VrCF2aGNM1m2SfVBh0jWQ:PuLm22m1oAC0as/mjWQ |
TLSH | T183E0D856C9E0DDA4C9B201872974E471225F4EABAB91B30DF5D8C66BBBC17E50C38A34 |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/__pycache__/oleobj.cpython-36.pyc |
FileSize | 22107 |
MD5 | 0806C73EB7904CEF5E0785018C6E3EA0 |
SHA-1 | 0EE7812125BD6396771E0AC3486C0783C8883C2B |
SHA-256 | 4C6F9AAC2117273E979D7B70B319A29A863B80AA1B1400D57C792A9A747EC160 |
SSDEEP | 384:AaHgzugYyIivno4AxxBsOIeAQwUVw/NyU3iumy3GYvrB/jJnEXCa8RYdrt0m/q:AaHh7Te4wNyjA3GYvrpj2XHTBWJ |
TLSH | T1D7A22A876A86E7ABFE92F1F0621C0351A324E17B731AA151384CC32E3F890F475766D9 |
Key | Value |
---|---|
FileName | ./usr/bin/olevba-3 |
FileSize | 10 |
MD5 | 17DE9D14FEB547C47455E1B8F3A8B4CF |
SHA-1 | 101503FDF7E364329D6407EA36523C68DC50ADCC |
SHA-256 | E373D42A8B4BAE9AC49D1CFC5E164162BFA7C588C992440631FE3E52AE81E5A9 |
SSDEEP | 3:/krnn:8rnn |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/thirdparty/DridexUrlDecoder/__pycache__/DridexUrlDecoder.cpython-36.pyc |
FileSize | 1238 |
MD5 | E1503C0A68BB9BA7563E2CF033997369 |
SHA-1 | 112422ACB0C8E91A85290F438F7C2F6442EC7FAC |
SHA-256 | 42B81810BB889B190E685236607F97DB20260722705E3B8C4D8DE6DAED0F2F5B |
SSDEEP | 24:r/gu400U/KY/4ybKOrfOhgEeGRq+mS6MWu5Ien39l/7DbHemiTI:ror0v/KY/4yG2UDHmSpN3X7/CTI |
TLSH | T1DC21E1A146C17796F275B3F943241E0036517329F5458B1F702CE2DE1FCA29489F4B47 |