Key | Value |
---|---|
FileName | ./usr/bin/bro |
FileSize | 6528840 |
MD5 | C2011278FAD4E39E8C4D1997CFBB5D8D |
SHA-1 | 97C23A59ED06B01148A6216436BAC13F73F847C8 |
SHA-256 | 6CA1EF3985ACEE7FECFCD1F37B728D7E58503321C3BFB659FB4786DAE7A459FF |
SSDEEP | 98304:d0vow0GMQPt4HoNNip0VcemKedPdr/QAYaoTuqizXDBD8PM:yAdoPt4HoNNipYcemAA5zDBD80 |
TLSH | T16D665B9BEE0C7C01EACBE63D5F8E8BB2353B6D9AC265C0767426111CA9C36D8C375590 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1892800 |
MD5 | A2A2B728ABD9262B0E6DB9C10CCDCD77 |
PackageDescription | passive network traffic analyzer Bro is primarily a security monitor that inspects all traffic on a link in depth for signs of suspicious activity. More generally, however, Bro supports a wide range of traffic analysis tasks even outside of the security domain, including performance measurements and helping with trouble-shooting. . Bro comes with built-in functionality for a range of analysis and detection tasks, including detecting malware by interfacing to external registries, reporting vulnerable versions of software seen on the network, identifying popular web applications, detecting SSH brute-forcing, validating SSL certificate chains, among others. |
PackageMaintainer | Hilko Bengen <bengen@debian.org> |
PackageName | bro |
PackageSection | net |
PackageVersion | 2.5.2-1+b1 |
SHA-1 | 0CEAF4D08483013ECC545E9AFB4FEE11E3020A60 |
SHA-256 | A3A0C27D065FB7B6E729B8F3D6BF4001BC56E7799D58AA15B5770C29B50D2A2B |