Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 5479824 |
MD5 | C3651BF4D0CF4FB32B01BEFE61E96DD9 |
SHA-1 | 3F6B984A6A9D56F2912492EF9ECE4DD10070853A |
SHA-256 | 226052170D79A05785F2825E682F07D3FF31BFB58775EC2264F63F9410BF5523 |
SSDEEP | 98304:tDxskdiJxicL6CY7OKnYR74O59cq0blE7wUyQw5c:Vxs02wcO1OKfxUwza |
TLSH | T134464B47F4809B61C9C43B72B75E779932232F3AD0DA72069C248A287FD74EF063A595 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1720832 |
MD5 | 4F6AB7EAD0B3A1C951C1CE3E659D5EEC |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.2-1+b2 |
SHA-1 | 31FC092718AB4D3ABC1CC86B3A7B7DA30CCA82D2 |
SHA-256 | A108182BE4C80BAFAD80615A00EDF8564907DF03401CDE1FC069168287B3865A |