Result for 26229C9D05628DFFA1AE594EDC3985CB18AD1975

Query result

Key Value
CRC32775F1402
FileName./usr/lib/python2.7/dist-packages/peframe/modules/magic.py
FileSize8831
MD5C871D57393D1ADA2812BCB7E9CA9175A
OpSystemCode{'MfgCode': '1006', 'OpSystemCode': '362', 'OpSystemName': 'TBD', 'OpSystemVersion': 'none'}
ProductCode{'ApplicationType': 'Operating System', 'Language': 'English', 'MfgCode': '1722', 'OpSystemCode': '599', 'ProductCode': '163709', 'ProductName': 'BlackArch Linux', 'ProductVersion': '2017.03.01'}
SHA-126229C9D05628DFFA1AE594EDC3985CB18AD1975
SHA-256AE9C45CEFE9CF7EC11DBD55FE2E31B98E032AA3749CE49765DFDD8C079C1EE08
SSDEEP192:aQFtmetx+n41ikTGQu75MIr7YLxP/BFLks0/gzRUsRXl/Rt/Lj:aQFtmetx+nKikTGF5NPMxHBxks0/gNUg
SpecialCode
TLSHT1E502A536DD852264EF9264150503B00DEF1DB803D6582A68BCEC62357F30D2DCAEBBD9
dbnsrl_modern_rds
insert-timestamp1646992663.3296187
sourceNSRL
hashlookup:parent-total2
hashlookup:trust60

Network graph view

Parents (Total: 2)

The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize144884
MD5D79C047AE73AF45F9F79C5195D291A87
PackageDescriptionopen source tool to perform static analysis on PE malware PEframe is a open source tool to perform static analysis on Portable Executable malware and generic suspicious files. It can help malware researchers to detect packer, xor, digital signature, mutex, anti debug, anti virtual machine, suspicious sections and functions, and much more information about the suspicious files.
PackageMaintainerSascha Steinbiss <satta@debian.org>
PackageNamepeframe
PackageSectionutils
PackageVersion5.0.1+git20170303.0.e482def+dfsg-1~bpo9+1
SHA-13E6A89FD597C0E4465AD3273DC429749AAB1218E
SHA-256B46773004D3784164A8ADD3F55A845FB4738275B4803666F400D8B5374C4BF9B
Key Value
FileSize144248
MD58E285E04DFF0C3DCF15864F8B39B2DB9
PackageDescriptionopen source tool to perform static analysis on PE malware PEframe is a open source tool to perform static analysis on Portable Executable malware and generic suspicious files. It can help malware researchers to detect packer, xor, digital signature, mutex, anti debug, anti virtual machine, suspicious sections and functions, and much more information about the suspicious files.
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepeframe
PackageSectionutils
PackageVersion5.0.1+git20170303.0.e482def+dfsg-1
SHA-164D201C7AACD3E9924501C4A4ACD4192FEA04892
SHA-2562E70D9D84F9258B20DBABE4CD5C520EE15C729261A4662BFA45671C012318D89