Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 6508960 |
MD5 | C3FE8020B9CA2B843A2FD87BD5B637B6 |
SHA-1 | 5D673A36FEA8E0C4AE19A979C35B1A7628D384DB |
SHA-256 | 32344B67D1C235E0C951C78082808F227F267C356BCE5E4F11AF2AE6CB3855D2 |
SSDEEP | 196608:pw+fogs09EEwSptJcfc8Q+WUFqgswAmfN:bsADtCfc8Q+BIm |
TLSH | T17D665C0BFB029871F2E315B20787ABF10D246A2B4053C07AEE0EEB6C757A5D69F455B4 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 2069892 |
MD5 | B05F33B731F26AE5BE011FAEF8940B1D |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.2-2+b1 |
SHA-1 | B06FA159541030AE2B31AEAD5322E70A4995D829 |
SHA-256 | 7E2F6A7C1CCC4C7F822B52131D0989C22DEAD92ECAEC066102EB443256EB519A |