Key | Value |
---|---|
MD5 | 4820C7BF51730411692670D0BC42EB28 |
PackageArch | x86_64 |
PackageDescription | YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families based on textual or binary patterns contained on samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. Let's see an example: |
PackageMaintainer | https://bugs.opensuse.org |
PackageName | libyara-devel |
PackageRelease | lp151.2.3 |
PackageVersion | 3.6.1 |
SHA-1 | 60952BC19A5D6C8549B6B881B0C377181B1E823B |
SHA-256 | FEDD8F964D17CC2064FCEC84511E2081E7BB1F307070F4EA7F5262125E15CEE7 |
hashlookup:children-total | 29 |
hashlookup:trust | 50 |
The searched file hash includes 29 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib64/libyara.so.3 |
FileSize | 16 |
MD5 | 4E56FA020CAE3708B2ABD91BE86F344E |
SHA-1 | 01DC26DAC6AC3F6029A350919342E5BB80321E81 |
SHA-256 | A6196201B1F3AA0B4D38D5A18F1D195E5687D8E9F689E7FBB06F22889619C770 |
SSDEEP | 3:EcEXELoLTgn:EcEXEMngn |
TLSH |
Key | Value |
---|---|
FileName | ./usr/share/doc/yara-3.7.1/CONTRIBUTORS |
FileSize | 1508 |
MD5 | 502A04F26F15A3D09BD1A9A514687424 |
SHA-1 | 0AB7000490C07C3A84F276EE1585859B033286CB |
SHA-256 | DBAF5C266376A540ADD9C992DD22725E2AB9979FA8F461DDF047CCBC0365E7C1 |
SSDEEP | 24:q0J6h41xNbEIU2cUQoMWH6lIUWWPnQvf+y4f9WHk0EBbzPJnecJjlEy2KdKMO2na:ZYhQx5EIYGXKo+y4fQElzPocEy2KDhQj |
TLSH | T1A331B787BD4F3B564C8C44293A1FB0EE1A34E47D5268D490745C665C2B8585893E78E0 |
Key | Value |
---|---|
FileName | ./usr/include/yara/limits.h |
FileSize | 3112 |
MD5 | 5CAE9E83AA5DEFDF8334A33C97EBFFE6 |
SHA-1 | 0BC6D6EE4996EC6109B2C3D699C1F665A674330B |
SHA-256 | C41A03E8C02D64A3B7044E3D49EE4542146E427F9CB2715303CA291315C1423E |
SSDEEP | 96:KOrpoJrJzuZR3A3zVfa3fJU8+MwIRQbmOump:KOrp8t6ZR3A3Za3fsORQNjp |
TLSH | T13D51813F5E8002A266F666605C3E7580604AE43F7667428C385DF6DC4F2352E89FE09E |
Key | Value |
---|---|
FileName | include/yara/types.h |
FileSize | 12401 |
MD5 | E638AF8F4427C166814D39B12BBACBBD |
SHA-1 | 21E968834507868444868420149D491C6289DF46 |
SHA-256 | 22F7250B7166F5CE79A375AEE238E4F492060ABE36A9D906846BCE641B666D93 |
SSDEEP | 384:dritOBaZB4IbdHad07MB0ecn+uLF58vu8tRaWTZmus3XzoXj:dpaZNmalnzoT |
TLSH | T1364233522FB1E68611E3092091CB30D81653D13F22BCAE4D348EDBA62F9155DDBF27AD |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/rules.h |
FileSize | 4161 |
MD5 | 0B9390803A5F39652C3F33A71C4BB383 |
SHA-1 | 31B7C5A71F38038A1DE576585C470CE0F4C3F1BD |
SHA-256 | BD2C43E4D38A26587559EDE6A4B51C566657251E6DEC63584022268905DFEEA4 |
SSDEEP | 96:HOrpoJrJzuZR3A3zVfaERRvkkRer3bswCiueSTppP:HOrp8t6ZR3A3Zawnimn |
TLSH | T13981619A8E6012828DD07A61DC0EB1107809E43F3FB1B8957DEEF1544FA903EA8FA148 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/yara/AUTHORS |
FileSize | 563 |
MD5 | 2204A7F7E86FEA045978AD97F369A032 |
SHA-1 | 4356F97067D25D246B74AB86A7B06EA14D8B668A |
SHA-256 | BF79E76DB1F1B88D6CF4387BA6B8B880B364E9B7E7013742BABA55BCCB854380 |
SSDEEP | 12:q0xBi95VNZTnVGTQ/GL5cVidsFmLKTklgMnYc5WRMTR8g1BL:q0xU/PZTnVGTQ/CyWEXKgQJWsP |
TLSH | T106F0E187E3DF3919A11819BB320EC9878F1DE9DD8738F054D4AC52991A8A805B99B9C0 |
Key | Value |
---|---|
FileName | include/yara/compiler.h |
FileSize | 5784 |
MD5 | 189979D95AC7055EDD89939E0E62905C |
SHA-1 | 54D763676B4A22A1A32A05DA10E0A65088905F26 |
SHA-256 | 57B405A58468B5B4590E37A1B632CAB9DC8A59BF34FA54D57DAD66283413878E |
SSDEEP | 96:KOrpoJrJzuZR3A3zVfaoJ0vTi6P2aV8VWCb0QIx+VTJR0ncUyEYDHjTGVfmQZ4CO:KOrp8t6ZR3A3ZahF/8VWv7om6 |
TLSH | T1F4C1531D5E6C0963C29106916A9A71C2510AE02F3E61F8487B9FB23C9F7701F85F79EC |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | stream.h |
FileSize | 2123 |
MD5 | A950889A997B783AEDD0FC4594039FB4 |
RDS:package_id | 222721 |
SHA-1 | 5A698C565BA3F5E7397D805B2BFA95886860C013 |
SHA-256 | 0FC070610F9394C0E34BB6A0E8E3F5F6213909BBA4AB6925D7C03A4387349CA2 |
SSDEEP | 48:6AOOrpoJrJzuzP96432sv832s3EsIq3tYHUCoyyQF6FSs:MOrpoJrJzuZR3A3zVfa0CoyHF6Fb |
TLSH | T1B9414497121417A33CD50A92AA8BF6C0644BA11B3F2BAF043AD5E2512F6F01DE8B6570 |
insert-timestamp | 1727040688.9120274 |
source | RDS.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara.h |
FileSize | 1771 |
MD5 | 38347066562727AEB76CF41E117EA489 |
SHA-1 | 5ADA3FB48586F64ECC746C678814A1D5E418EAE7 |
SHA-256 | B8DC751C1EB73811922C9B8E3A0F7589800C20A42D0673124FC8C2A9C4186842 |
SSDEEP | 48:MAOOrpoJrJzuzP96432sv832s3EsIq3tYHJ5I1hE88mIFd:WOrpoJrJzuZR3A3zVfaFn |
TLSH | T1B331553695580B6BC5A206E17197A5C0A08EE01F3B375901189DF384A7674BEB8FB185 |
tar:gname | bin |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/include/yara/exec.h |
FileSize | 6197 |
MD5 | 83156EAA0C81966482801513EC1E3D07 |
SHA-1 | 5EDCA268E236F1F988AACA3564053014767D2133 |
SHA-256 | CFA14E5135A5E081AC5699A95562F4AAA1862A221753ECB12567ABA6CC021D72 |
SSDEEP | 192:kOrp8t6ZR3A3ZayVWJOj4HNwQs3iua3Vc:TritOBaZLEdc |
TLSH | T11AD123066CC5560609316219242D4BE51A39ED3B271166CC306C5FACDFFA82B1EFADEF |
tar:gname | bin |
tar:uname | root |