Result for 13DD3F35135498DB6802AA58A2DD9C9F48698DB1

Query result

Key Value
FileName./usr/bin/img_stat
FileSize9576
MD5DF1927EA1EF6CB006FA5BF188C6C1D01
SHA-113DD3F35135498DB6802AA58A2DD9C9F48698DB1
SHA-2566C077F351ACB2633B8F9A85B67D7C2F10DD8291867E159626BD311BE4BAF1A2A
SSDEEP96:a0NXB+Bgi1y2Eqp9tF1RnsKniQldg1ZGcyH+ZrZmOycGysdgiILc5:9NXw+ifE4tBfH/gvvyeTmOmRg
TLSHT16012B7A5BA62E333C2D3473D40CF9B1DA6B2CC0183AA9763661936642E935FC5F13E15
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize264344
MD5CD69ED2D9C5FC3B25B3E294BC91F896E
PackageDescriptiontools for forensics analysis on volume and filesystem data The Sleuth Kit, also known as TSK, is a collection of UNIX-based command line file and volume system forensic analysis tools. The filesystem tools allow you to examine filesystems of a suspect computer in a non-intrusive fashion. Because the tools do not rely on the operating system to process the filesystems, deleted and hidden content is shown. . The volume system (media management) tools allow you to examine the layout of disks and other media. You can also recover deleted files, get information stored in slack spaces, examine filesystems journal, see partitions layout on disks or images etc. But is very important clarify that the TSK acts over the current filesystem only. . The Sleuth Kit supports DOS partitions, BSD partitions (disk labels), Mac partitions, Sun slices (Volume Table of Contents), and GPT disks. With these tools, you can identify where partitions are located and extract them so that they can be analyzed with filesystem analysis tools. . Currently, TSK supports several filesystems, as NTFS, FAT, exFAT, HFS+, Ext3, Ext4, UFS and YAFFS2. . This package contains the set of command line tools in The Sleuth Kit.
PackageMaintainerDebian Forensics <forensics-devel@lists.alioth.debian.org>
PackageNamesleuthkit
PackageSectionadmin
PackageVersion4.4.0-5
SHA-10AB4AE46F1F67159E0E6D701AD00526995CB2FB7
SHA-256726B44EB77983B11F5D72814452EE7218CE18600CDD4D0DEDE08DDB00686A40B