Key | Value |
---|---|
MD5 | DC6E95191DA799738710C001956DC6B0 |
PackageArch | noarch |
PackageDescription | The python-oletools is a package of python tools from Philippe Lagadec to analyze Microsoft OLE2 files (also called Structured Storage, Compound File Binary Format or Compound Document File Format), such as Microsoft Office documents or Outlook messages, mainly for malware analysis, forensics and debugging. It is based on the olefile parser. See http://www.decalage.info/python/oletools for more info. Python3 version. |
PackageMaintainer | Fedora Project |
PackageName | python3-oletools |
PackageRelease | 2.fc32 |
PackageVersion | 0.55 |
SHA-1 | 3719FFABD45796AFFA9F9315FC7A800DF2AA17D3 |
SHA-256 | C2710FADBE83E01BC00B0DAE342FD848C534E66C93394690D0B84BD9E0E4D4A7 |
hashlookup:children-total | 125 |
hashlookup:trust | 50 |
The searched file hash includes 125 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib/python3.8/site-packages/oletools/thirdparty/xglob/__pycache__/__init__.cpython-38.pyc |
FileSize | 183 |
MD5 | 3AD4091CB1BCD90B25F1A7A3573705B9 |
SHA-1 | 001A43715BF72F9DA817E12F0E893E0114340B47 |
SHA-256 | 64FF0FB1DD6745DC46096F559DE83C6132102CDA4DF884B97E229A008E9612BE |
SSDEEP | 3:UtyVoK/VlGptBl6ljQll+28lgdCJ9Nm8m9YAKWMmoWrzoW4mAnLQRkcTit:cyVoK/epzsWlV8T90f9YvLorKsD6 |
TLSH | T14AC08081455D43D3DC65557D3154823D54E95873B72B4446760653A57C5E7301419650 |
Key | Value |
---|---|
FileName | ./usr/bin/olevba-3 |
FileSize | 10 |
MD5 | DBF75F511E989ECB3B82A05C75C465F9 |
SHA-1 | 005A8F4332387FA854CC1B1D4E7E3ADA212EC743 |
SHA-256 | 9FAC82C77B127F399FC1EED22DACD6D8FEDF59D6D25D1F11D376AC1CD4FE0296 |
SSDEEP | 3:/krpn:8rpn |
TLSH |
Key | Value |
---|---|
FileName | ./usr/lib/python3.8/site-packages/oletools/__pycache__/olevba3.cpython-38.pyc |
FileSize | 585 |
MD5 | A65081DAD0829B8D4AA773B2ACC326F3 |
SHA-1 | 05C63B65332930B1CDBF535FD09DA74A5D6F6613 |
SHA-256 | 483DBE65E7547B674292A645E30D3183C740B77BFE07A50E4C4FBB7BAF71FED2 |
SSDEEP | 12:cyGTbVbwnaa48uGHMczcUh47EG3mY3wrrh8X8Tw50wU5kCM:cfwaa4RGsczcQEgrrhG8TwxU5dM |
TLSH | T101F020A630F008A5ED50B3F87030421702E02EDAF36D05863F0CEBC52C4CCA48B8E768 |
Key | Value |
---|---|
FileName | ./usr/lib/python3.8/site-packages/oletools/__pycache__/record_base.cpython-38.pyc |
FileSize | 9956 |
MD5 | 66FCBE659844F5EE728F4DDE1DAA63DD |
SHA-1 | 07C477561DA6647DE9575556A01D38C6A860A4CE |
SHA-256 | 26AC8AB3864783C1460D6754FFBBBE388717BDBB2F835F137A50D37C2047EEC5 |
SSDEEP | 192:jtyzRagb0lSEwOCAwDkq+wqqjtplq2h2D/pqciJA6AAfrlFqD2Iq/1qqdVSbqDEY:q88vvzkq1qqRplqZRq/ZLqSIqNqqybqR |
TLSH | T17922F7CB420C6DA3FCBAF3FA609617907B549237630C441B346EC2B93F8EAC56472690 |
Key | Value |
---|---|
FileName | usr/lib/python3.12/site-packages/oletools-0.60.2-py3.12.egg-info/top_level.txt |
FileSize | 9 |
MD5 | E1328C49604367F16736F85DCD058326 |
RDS:package_id | 294806 |
SHA-1 | 084414AC8CDF7742AF82A7E2E3348A7C2503B7C8 |
SHA-256 | 6D2A30D7D019799DFFA4F33BFA78CD492E6D07D2E961D7E1325CCB7BCB83A2B4 |
SSDEEP | 3:9A:y |
TLSH | |
insert-timestamp | 1696437815.8937707 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/thirdparty/tablestream/tablestream.py |
FileSize | 13754 |
MD5 | 23AAC80DD3C58E276FF29417BB775364 |
SHA-1 | 0D4E010DEEDF313091E5631866D1B33092AE5330 |
SHA-256 | E84BDC608050A92EFB366B2F9650CB216D5EF00455973E7C930A48A8B0B132A5 |
SSDEEP | 384:mvCrFVGyirSLI7rTNOjhvrwEVBTGbsLdf2:mK/irSLIHTNOjhjLVtGbsLdf2 |
TLSH | T17C526121DD427BA64287DA26D29BE452D30FA45B835A25793E7DC10A2FC0735C4FEDA0 |
Key | Value |
---|---|
FileName | ./usr/bin/olebrowse-3.8 |
FileSize | 386 |
MD5 | 938C63E100F964E275E5B5B5CB9899FC |
SHA-1 | 0E5A6B590227F2297FFEA127BBD0B89C8539037B |
SHA-256 | DDA11487B4D9E9A4F137D01E4FE985E1F5F812B80AF64B4011BE2EE3E1397244 |
SSDEEP | 12:HsKuL/h4ngxTh4Moi9VrCF2aGNM1m2SfVBh4t+Ke:PuLin0TiMoAC0as/ithe |
TLSH | T124E06159C990DD944EF145872430E47122070E7BE6817308B1C8867BBBD03D20C38A74 |
Key | Value |
---|---|
FileName | ./usr/lib/python3.6/site-packages/oletools/common/log_helper/_json_formatter.py |
FileSize | 992 |
MD5 | 6832037E5DDBB3D207673653C0499CA9 |
SHA-1 | 0E7E0ABABE61B204451E77676D5E37EEE88990B8 |
SHA-256 | 8B5B0FFAB54B1D1785FD06488F698E3EAAD6F68DA64044F6DACE6655C12F45E3 |
SSDEEP | 24:iKRLpPiwCEKN9EIYYvzmOqZrPYw5+jnra1PCQJ:XRdPNC5EIYY6OIr95+ra1t |
TLSH | T1801144A3C44A4E199107059E3647A045F71868235908627BF5AC43746F44EB462A27ED |
Key | Value |
---|---|
CRC32 | E37C0363 |
FileName | usr/lib/python3.12/site-packages/oletools/thirdparty/xglob/LICENSE.txt |
FileSize | 1376 |
MD5 | 5B56C05CBFE684241D66EB7AD02E1DD0 |
OpSystemCode | 362 |
ProductCode | 163709 |
RDS:package_id | 294806 |
SHA-1 | 1991F427EDB0C92FDC2BD30C3BF9B0E181F2BE28 |
SHA-256 | E49B9488A651EDD1BD00D5E3BEC0BA279BD095FD04F84171B529F3DA2EEEFAB7 |
SSDEEP | 24:Hg3Unemvol+bOOrmSFTL+JcFTzA79B432sVvEOkDs8nROk32s3yetTfj13tQpzZ4:pOOrLJjJzAB432sVoH32s39t313tuzTS |
SpecialCode | |
TLSH | T11421838B12004FEA4AF24A8536A5AA84F0CDD02D3E277D00287EF388677F02ED5BB454 |
db | nsrl_modern_rds |
insert-timestamp | 1696437344.3430562 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/python3.8/site-packages/oletools/common/__pycache__/io_encoding.cpython-38.pyc |
FileSize | 4435 |
MD5 | F9E5E7D7928B1EBC899AE7002678BF97 |
SHA-1 | 1AC23DF71B8D1862FDD8D8CF1549627283A09E3E |
SHA-256 | F05FB54670A3E8FE0A56EBB437AF87CCE4CB80CB2387091D39B4249F30AEF21D |
SSDEEP | 96:Tm/JDsXlRgdxxXX3p2Eod7H+7PbbY8+nc3JdX8W7TXWx425TpUCM8p:TQDesdxNXkEA7HMYlwhz8BpbMk |
TLSH | T14F91C793C3011251EF91F0B4D54FA66C937D67AB13A6BAECB554815C2F8266101B23F6 |