Key | Value |
---|---|
MD5 | C67041AB1557EC05355CB988C64EA412 |
PackageArch | x86_64 |
PackageDescription | YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families based on textual or binary patterns contained on samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. Let's see an example: |
PackageMaintainer | https://bugs.opensuse.org |
PackageName | yara |
PackageRelease | lp151.2.3 |
PackageVersion | 3.6.1 |
SHA-1 | 84F90597A82BA01D0D51EB833E08645D84E44E95 |
SHA-256 | 83F130E4FAD3EFD31413F4125622B7EEFF92C6F94526CE5CFDA209D6C8FA314C |
hashlookup:children-total | 8 |
hashlookup:trust | 50 |
The searched file hash includes 8 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/bin/yara |
FileSize | 292376 |
MD5 | 0A9009A8C08DE6E1109420E5830B80AE |
SHA-1 | C850E46387F6E8C5E6303D7D856DB468A7E9CAE1 |
SHA-256 | E34CF2DB4AAD450AD0E219156E7DFB75CB83D716249C812A706F401E474149F0 |
SSDEEP | 6144:AdWJx0Ro5n03ph2mGP+aDqdzCXQ3l5s7Z:A8q3ph2mYDGdzCXG |
TLSH | T17B543C07B3964CBCC5F9C93005FA9631A5B1B4A85331B9BF29C499711E52E303B2EB79 |
Key | Value |
---|---|
FileName | ./usr/share/doc/yara-3.7.1/CONTRIBUTORS |
FileSize | 1508 |
MD5 | 502A04F26F15A3D09BD1A9A514687424 |
SHA-1 | 0AB7000490C07C3A84F276EE1585859B033286CB |
SHA-256 | DBAF5C266376A540ADD9C992DD22725E2AB9979FA8F461DDF047CCBC0365E7C1 |
SSDEEP | 24:q0J6h41xNbEIU2cUQoMWH6lIUWWPnQvf+y4f9WHk0EBbzPJnecJjlEy2KdKMO2na:ZYhQx5EIYGXKo+y4fQElzPocEy2KDhQj |
TLSH | T1A331B787BD4F3B564C8C44293A1FB0EE1A34E47D5268D490745C665C2B8585893E78E0 |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/yara/AUTHORS |
FileSize | 563 |
MD5 | 2204A7F7E86FEA045978AD97F369A032 |
SHA-1 | 4356F97067D25D246B74AB86A7B06EA14D8B668A |
SHA-256 | BF79E76DB1F1B88D6CF4387BA6B8B880B364E9B7E7013742BABA55BCCB854380 |
SSDEEP | 12:q0xBi95VNZTnVGTQ/GL5cVidsFmLKTklgMnYc5WRMTR8g1BL:q0xU/PZTnVGTQ/CyWEXKgQJWsP |
TLSH | T106F0E187E3DF3919A11819BB320EC9878F1DE9DD8738F054D4AC52991A8A805B99B9C0 |
Key | Value |
---|---|
FileName | ./usr/share/man/man1/yara.1.gz |
FileSize | 1237 |
MD5 | 9C6F9D7426F6EDEB50D2B313E9976F05 |
SHA-1 | A5C7651AFB2972480F4D6B6B7EAD5015E6820C14 |
SHA-256 | B3D42A46EF7BE13102F6CE7F43E41418ECDA19DD44823B8D46969BE9A5FB5326 |
SSDEEP | 24:X9RYPrwjl3QhZs0rbK/qP4Pf4EXS2BKzJjvp61MnNeXStDLz6v+:XzGQlYrsW44EXDwI1MNeXStDiv+ |
TLSH | T1E221E424180D50AAEF333A748AD03B2AE35D68174B08E5F227E25C7BCCFA4284C641AC |
Key | Value |
---|---|
FileName | usr/share/man/man1/yarac.1.gz |
FileSize | 905 |
MD5 | 286A30436C238DBC7ED85C027F64E00E |
SHA-1 | F1148F4A1703E858678E1F8C8CD68F50CF9A615C |
SHA-256 | 55C0002F06508E4762441FB092F03391C64F7CCE576739795620273F557BA29A |
SSDEEP | 24:X7R3ffh0oiMUOERlkxda7WUA/adtddWhYADJ8TsfaiB5KwiIO:X7R3fJ0o1ilkxdGRVyDDJjxB5iZ |
TLSH | T14711B7F67C157C99FD75B8378965B16D5101C4412BB6DA80EE0A4C9CDCAA814AC8C22A |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/packages/yara/README.md |
FileSize | 4548 |
MD5 | 1809581DE89F2098E9B3902FC46A8873 |
SHA-1 | 6338693CE267A7F6D1E97FD9FC1C1DEDAF3EBB7C |
SHA-256 | 36023924FCF661E8D10C8D29E1F2B08BC41485962B62B477BEAFB62615FE8CB2 |
SSDEEP | 96:Vnd16lMowLicvCFWf4OwHhzZ2t+7tMNXGM0Y+49MOezb+J9YAB8y:p369ivCFWg7t2EWZA49AqJ9niy |
TLSH | T1E79150EF562499A14F76C8823CB8F24CFA2725EDD6DDD4E8F458896463C0067B1B7E08 |
Key | Value |
---|---|
FileName | ./usr/bin/yarac |
FileSize | 283192 |
MD5 | 083D9AAFDA981EFFA58F927F13ED63CA |
SHA-1 | 683C5768A408378FA12B8CDC09275E3D2D8527D4 |
SHA-256 | CFD091EF3CAC0A8E7CAF6EC1E05C41C201AE367C3C1FE70D92636097BBCE488F |
SSDEEP | 6144:wt1D0hZKx//JkSZJ8yXelEzmFBzCQLQKS:wLP//JkSZJTeGzmDz/L |
TLSH | T117544D17B3974CBCC5F9C83046EA5632A9B5B0A94231B97F29C499311F52E303B2EB75 |
Key | Value |
---|---|
FileName | usr/share/licenses/yara/COPYING |
FileSize | 1493 |
MD5 | 541962F9DACF27C928F57E3A7BA9E1F2 |
RDS:package_id | 299536 |
SHA-1 | 90838DBE7CD144671C3EDE0900D14F1C5E6AE041 |
SHA-256 | EFDABC1C1F655528B8C3A59B03668D446746D87273FAB76F8AF800B6E8891BD2 |
SSDEEP | 24:8UneZXoLbOOrpoFT5JjFTzSw6pxBTPn96432s4EOkUs8QROJ32s3yxsITf+3t1oB:aAOOrpoJrJzuzP96432sv832s3EsIq32 |
TLSH | T15E31625721400BA759E21796A56ABAC0B48DD02D3F236E011CA9F3845B7B82EC8BB095 |
insert-timestamp | 1696482365.9643657 |
source | db.sqlite |
tar:gname | root |
tar:uname | root |