Result for 6D650E1BC0AE0261DA30E9480AC042BC77422217

Query result

Key Value
FileName./usr/share/doc/python-pefile/README.gz
FileSize2603
MD5C5AAA81BE516B9B1A24EEAB4CF371097
SHA-16D650E1BC0AE0261DA30E9480AC042BC77422217
SHA-2565D34BA76ED84704606094D2BE1F299684408C685A4B0E44F4E9E02DD968B4A14
SSDEEP48:XE3f6w6/uXylBeS0DAE1WRMXF4lwX04jejDGT645xvTT9xfUr3SG5xx:GSw8gylBeSYWRsWlwE4jePGu45xLjMrP
TLSHT164512B4B42969C08AE9983FD76BC208FB03CE62C4E19F86300929594E79D37468F2859
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize55652
MD5D7EB461DDF9B85C28526E9945648C194
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython-pefile
PackageSectionpython
PackageVersion2018.8.8-1
SHA-1DA2E42185C94DFEFDFF9CCDF80D2A8CE6E28E5DA
SHA-25659D7E43C054BD9E247159112C6090C679ED3B2D25919EC97A5D140BD3B29C07A