Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 6590040 |
MD5 | F4F9AD6F4DECCAB0E594D7C1B3AA2F7A |
SHA-1 | 637592B1B82E44B01D88777B911087FE12BFA859 |
SHA-256 | 1575763FDF2BC70A9703BB7F01B19A5C4B6AB88D264094AA14D202F5F4EAD609 |
SSDEEP | 98304:ZNNv57rKfg43fyGuUf5DE+HQtW7MUKckQRMfkQDOWAZfbRSftV:RRKtvbJ7MEkw0AZEtV |
TLSH | T104664B1BF6560CADC0D69834437F97F25A30B99E8130B87E7484C7391E53EB45B3AAA1 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 2063856 |
MD5 | 95AFC11DA604401DF4F40FFD6D5033D0 |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.5-1+b11 |
SHA-1 | 45E988C0FD57F131D748AE1EF08383FCF32491B9 |
SHA-256 | 637946026DCE7D2D8B7B840CAE8A964B5B0A108FCE820195FEB9AB1579ACBB23 |