| Key | Value | 
|---|---|
| FileName | ./usr/sbin/tcpdump | 
| FileSize | 1001644 | 
| MD5 | 8F72867F0D96D2D7E0EE8BBA62103BCB | 
| SHA-1 | 7C368028C3EAC6A457215E0DB8D524B228DD7BDA | 
| SHA-256 | A118E5171DE2164C77A225A3CE893518C985BC23E97A63F353AB20273F89376D | 
| SSDEEP | 24576:Rvp9NctCbS/yhE6NUaNi4Hf1rldwFopnBda:5p9NctCbS/yhE6NDNi4Hf1wmpnB4 | 
| TLSH | T10F251743BA2E075FCF460F70497D1AA3A26E9E8A6FD0407612C5B39B2557D688433F8D | 
| hashlookup:parent-total | 1 | 
| hashlookup:trust | 55 | 
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
| Key | Value | 
|---|---|
| FileSize | 303218 | 
| MD5 | 239AD78E8F6799845794471D3CD4715F | 
| PackageDescription | command-line network traffic analyzer This program allows you to dump the traffic on a network. tcpdump is able to examine IPv4, ICMPv4, IPv6, ICMPv6, UDP, TCP, SNMP, AFS BGP, RIP, PIM, DVMRP, IGMP, SMB, OSPF, NFS and many other packet types. . It can be used to print out the headers of packets on a network interface, filter packets that match a certain expression. You can use this tool to track down network problems, to detect attacks or to monitor network activities. | 
| PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> | 
| PackageName | tcpdump | 
| PackageSection | net | 
| PackageVersion | 4.6.2-1ubuntu1.2 | 
| SHA-1 | F3EDD2E2DAE9797712EC26D0804C962CEC34F61D | 
| SHA-256 | 00BAA0F9F04852A650013666B4A653403B9377BFEF46DDB38538DB25B5A0F84B |