Result for 8DCA8120B7B174B76F2D228FD1AA98C0854F63D6

Query result

Key Value
FileName./usr/share/doc/python3-pefile/README.gz
FileSize2632
MD5E3555B400B419F046E0B4C041E7074C3
SHA-18DCA8120B7B174B76F2D228FD1AA98C0854F63D6
SHA-256CF6D5C573BA4F3A0B5F7B303FDFE2FAB7E5E13C525DACE742397421C4A6E38D7
SSDEEP48:XYy7rZ7vtM8j1pxpyeRhj26Mz/6fZ5MqwWu/Sav/gOQ5wCEK7F3f:oy/ZTtMMxYUjRMwRuF/YckR
TLSHT157514C406FD27419C998A96A2FA2CF05B052FA967CED11F483418F382574C383A455CB
hashlookup:parent-total2
hashlookup:trust60

Network graph view

Parents (Total: 2)

The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize57284
MD592786558E6023FEE7A94DF4A15726BDB
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2021.5.24-1
SHA-1E5B70ACA4A2EDF29DD19468BBDCD4BCD482EF6A5
SHA-256748345115E2920B87A3ABF29BF2093E14E13305C7D01B8F6268856FC520D1749
Key Value
FileSize62908
MD5394AFF074C8A9A226B47255E6609D116
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2021.9.3-1
SHA-1C9C89717A41CB560838F93E16ACA2CAA1A4E974A
SHA-256A424EBECDFBA09087002885041DF7AA6DE50CE64FD26CE93121242CF830C8B12