Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 5389604 |
MD5 | B9C864CC4C3BD8C743A663F9E44550D9 |
SHA-1 | 566F4CC41813040109DCB47175F7173EEB8DAFF8 |
SHA-256 | 539FF1103A33759C0FE34A936E0CDC6C596E682F9DF5281412D365FE4A684A77 |
SSDEEP | 98304:AuWjNCpVkvJlZCvUjxNUfPgXmupifYUrwCxWv0:A962RlEGPUXqmupifYuwT |
TLSH | T1A4463A47F480AA60CEC41B77F65E6798B2332B7AD0DA7107891407287FDB5EB073A295 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1706048 |
MD5 | 5CF7275C963DF56F671F2BB1219A0261 |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.5-1+b11 |
SHA-1 | 00DDECB8964052995561156B668DBFC7A1B18D16 |
SHA-256 | 9CDDAD025BF286D63B57179A09F9073F9B537B32BC6631544C0C7E11BB710534 |