Result for 41BDBA417593E95502820D7A787CAA2D2801EC86

Query result

Key Value
FileName./usr/lib/python3/dist-packages/pefile.py
FileSize224703
MD5ACD655B5C2E3F606958699B480F058DE
SHA-141BDBA417593E95502820D7A787CAA2D2801EC86
SHA-2561DBB304D6CB2C8A08204B959609AB1B3BB17B7E472AAC6EFAC31D6F6A88A3A17
SSDEEP6144:BvZgC4zvvKczAitMLGi13EuAoV/DYiIglKb6rDExU:Bvd4zXKkuiNA
TLSHT15A24D623B92126A29293986E48DBE0035765744B059C643CBDFC81542FA85BCDBF3FF9
tar:gnamebin
tar:unameroot
hashlookup:parent-total16
hashlookup:trust100

Network graph view

Parents (Total: 16)

The searched file hash is included in 16 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//powerpc//py3-pefile-2017.11.5.tgz
MD54E181DE6A979841C07023BF18873FFBA
SHA-10A7274177135BF03328F24FF0D0DF99FE1144773
SHA-2569DDC664C0490430C5E06C292C44E182724AE65D773B0802C57382D4B2803DDF3
SSDEEP3072:nRtRj9Th9f9wq+fLOxN1LolLt9QnMuAeFkTrN:nrTh91so0luk8kTrN
TLSHT167C312AD76F8A0C8EBDFF88F696280DAD1112DF09A11C5411B8025F472957CD6027EBB
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//arm//py-pefile-2017.11.5.tgz
MD550913C9E42ED18BFE4A2646DEAA31699
SHA-112C5927E960553D8B9A20B38AD2D26542780C849
SHA-256EB33CEC98E33828127D4C62F86BFF4F2A7A138ED961AB2CBFF825EC64A286DCA
SSDEEP3072:1ym3XdUZ1xMJYl7R/81rmMd5v0tIB/kzMl/vAoA:1pHdXJWZ81Dd5rBczMl/vK
TLSHT1B4C31228F935EC7E7C3C31E25DF0AB27EBB1A19711293416A6F903D1551626B91BE1C0
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//sparc64//py3-pefile-2017.11.5.tgz
MD5952237A4473BE6B2DD86FE3A7883E45C
SHA-117AB706134A166238771B6098723E92138FF09A6
SHA-256EA13720FCF1CCF89E37691BC17AD0F6647F8531A781BFF56A3FD345640564391
SSDEEP3072:vVTEqcdhJXhnM1ImYjwlRmafRuYRJMfMyk:vVTBc4ymYAfRuma4
TLSHT1FAC3137A1D7CFA7DD61A08E3BF51E9FD02229B2B30C2E8883D8D14597B556221F44A4E
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//amd64//py-pefile-2017.11.5.tgz
MD5D07ADBCE8CF9BFF7950F89691D53927D
SHA-132A08CFF03ED5F5B562B22719AB81029BFD5AD0D
SHA-2564EA785359585E6353C90E701ABD50EF448FD4F55267A86895428EF6F10D5543C
SSDEEP3072:820Ji2KxRSEzyw3obI6gbPDxH49q1Tj3BhkvYONKlVBqO+RtXYdBS:cJwehuDBcE/RexNKlD7+RBYzS
TLSHT162C3124B6C76F05D182EA1936BB039C71056038F35A71A4257A1DB6F316F29FCA66338
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//mips64//py-pefile-2017.11.5.tgz
MD5A2933B32B0C5D43A5563CF57845CF386
SHA-13B2E674F39EE63F07EAA52FB4F09E6B1ECA35508
SHA-256EE391142B79A293977BEBD301E54841D0DF6434BDDF7EB6A590BEAF64BDE5B4A
SSDEEP3072:eI/dHKxkcONt64wo1bMhZ5z7b2BhkvYONKlVBqOu37vxJ:B/dS0Nt5wo1bMF7bSexNKlD7G3
TLSHT161C3129C46B35534425B517F47CA2543983CB74F3623C8F391E9D70EBE9B3A98BA0928
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//arm//py3-pefile-2017.11.5.tgz
MD52DAE5949FC25464047BFEDFFCD0E7A43
SHA-1463CB9E44DAD3C385CB221BE8C83B5FBCBDE1390
SHA-256F163A86F2ADB59A089337F4ED314BB05930B1D30E673617F694DEBC6C4A6EBC1
SSDEEP1536:EANz+6XJDkVGHwbI+Aynb9nf3YmMxUQiOYGJaQY5hq5CDdrXbXPLQHhqWITRQx:h+qJDRSBXnxnfOxvi+itXbXUBvITRY
TLSHT1FFC31289ED3554F947578D29BCBB0204813A9546FD04E428A7E49A7E6C703B2C98D4EE
Key Value
FileSize52220
MD563FF9448EABA6820E60D675DD84904B0
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2017.11.5-2
SHA-14D0C4027F1FA127F764AD95BD1A4B49EA60ABF23
SHA-25655A733206EE4FD96AEAF17C70B4555F0563F55E59A2419D6B004DEA8C6D3E4C1
Key Value
FileSize54712
MD5C05AA587AFDEB74111116113F030011C
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepython-pefile
PackageSectionpython
PackageVersion2017.11.5-2
SHA-1707A95225D749B8683FC0E881A84C5E811E1356C
SHA-2566D07D98B659B643E1BD413272DFC52032C5966E012F37C094A5BA0F11DF8108D
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//powerpc//py-pefile-2017.11.5.tgz
MD565D4DFBE47CC43249324AB06460ACAB5
SHA-174E632BCD54F621A65BDC43C0955A56144FE09CD
SHA-2563A3DDDC316CCFC8989F26A2CD327CF2A7BC7E6ABC4FE6197A3DA765A9D393AC6
SSDEEP3072:kj2Q3TNhYVwYZ71AVBSzumhioDHeOFY5sHQC:O2K74wYZ7qVkioreJC
TLSHT129C31277E7928096D53A041C2FBE6C167B869F9713CA360BC36D7904B61B609F05EF44
Key Value
FileNamehttps://ftp.lysator.liu.se/pub/OpenBSD/6.3/packages//mips64//py3-pefile-2017.11.5.tgz
MD5214B6AE1C970C24D29DBB51DE3FC2D68
SHA-1778DA337BCB112B4920548F2D1E606671F55C4DD
SHA-256EE9C893CF923A24FC7C68C8E7263129811F03015D8483AD4875D3C759B357C61
SSDEEP3072:Pe+EtfHiOP1t/HWBRuwhQJCn5o/WP5AfRgbQ:UfCIz/2Xtpo/suGbQ
TLSHT188C3232132E40EC2F09CE118E26B0AEE52B55AF184DFF4559B62965A3A286FDD13C335