Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 6340480 |
MD5 | 55B7170D4E88BD1C675549FE83107434 |
SHA-1 | 145487F341731AEE790B870A0318CC852C3EBF2E |
SHA-256 | 62313ECFE00AC49D6310CF6CDE7C5E4F0FBAF9F118283211E419775608F0439D |
SSDEEP | 98304:QGnrdFKn74w3+Q7vowlQRO7otQvsUv0TkbAUHiEj/:Q6B4cwN7gduZAfy |
TLSH | T103565D0BFA921CADC5D5D930037FA7F65A30B89E4130B87F2844D5345E62FB55B2ABA0 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1990710 |
MD5 | 67C5965A8F3B595934A1BDCE577FDFD6 |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5-1 |
SHA-1 | 5AB595E008D8DD53DF6F680B35F3B9A861745F79 |
SHA-256 | AF7ED68EACD510288AD91082E0719D2BF1FD8EB329AEAAE62725976EB015FA09 |