Result for 1638DCF6C6C95792BD03B19BB6E837CD55C7C99B

Query result

Key Value
FileName./usr/lib/python3/dist-packages/pefile-2021.5.24.egg-info/PKG-INFO
FileSize1471
MD54711D8870A8BD4BC3CA914F872DAFAD9
SHA-11638DCF6C6C95792BD03B19BB6E837CD55C7C99B
SHA-2561528C257C4739AA5208BECE177FA51F659B1C66C00A0AA705D09C73B241437F7
SSDEEP24:DsMcdVE5qmXGbWYoGw/PX++fHFLjCQgKRzPP4gQ6kQIF3A13f:DsMcYhXthGw/PXFdXnb4/QIO13f
TLSHT19D31B8C734C079E50DDB4ADDD00CC2958C16C602CA9EA46830BE000DAF05923D2FE5BD
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize57284
MD592786558E6023FEE7A94DF4A15726BDB
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2021.5.24-1
SHA-1E5B70ACA4A2EDF29DD19468BBDCD4BCD482EF6A5
SHA-256748345115E2920B87A3ABF29BF2093E14E13305C7D01B8F6268856FC520D1749