Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 5397764 |
MD5 | D3E716C16432E23E69FC89F36AB025E3 |
SHA-1 | 6A4065DC99A861D70FE9AE58EAD5B993C2EE165F |
SHA-256 | 2C8DFEE42076460E3448486A48BCEA9E38F4420A01CCD6C83585A778DD51F4B4 |
SSDEEP | 98304:wvAmpyIJ9lxZMbxwg6Z1M1X6TpPjUzmw8/MO:wtDLl4ag67kX6TZjtw |
TLSH | T13A463A47F480AA60CEC42A77F65E679872232B7AD0DA7107C91407287FD75EB073A2D6 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1707436 |
MD5 | 678EFD23440993DA8A535F6FCDB69B9A |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.5-1+b1 |
SHA-1 | 56908C9B5252A9EA9AF732B1E69A14D5ABB2504A |
SHA-256 | F0F702F879131647FBF3AD8D483A6898CE2EE80517492D7C65FA0BD1B792D689 |