Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 4213924 |
MD5 | DE41FF6C24D497A5D68C2B106DAB4789 |
SHA-1 | 57F9B36C0320EF9AB81C7BB785F4AE38991CA778 |
SHA-256 | E642A124E70CC5DD63F8471DB94A0C0E23CC442C9AC73B2C127773B5E3D3EEE8 |
SSDEEP | 98304:iLBy4zd+zAQGMkkFQAXrvmwHozoYoz2Ej/hwuixlHdlc1:IRp+JhkfAXrvmwHozoYj4wPlc |
TLSH | T11916AE83FE854C5CCDC99D3B2BA76FD10532DE13A094C86E904C5A1E9ED26ED476A3E0 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1744404 |
MD5 | 7BC17945AC1DFA3351E93A507F8BB7EF |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.2-2+b1 |
SHA-1 | 5F3A831C8BAC6BD0F9A982ADCF3679B16AB9BDCA |
SHA-256 | 234571155D377573D62A2EB53F7114B14F994FF4F7ABFFDE80CA167186B75870 |