Result for A82988963B8958CD7EC09D243105D0096E597B07

Query result

Key Value
FileName./usr/share/doc/python-pefile/README.gz
FileSize2286
MD507325583A4440A76FBC9AE8496DBE099
SHA-1A82988963B8958CD7EC09D243105D0096E597B07
SHA-2567E0410A733A73426BBD0A0327942B150232F845DBC34AEE192C2FB47086A9E80
SSDEEP48:XjfZ90jdW7qeJvn0tHbmh1gkvUH3kRnAi26Dn4Jml:TR9auvn0dz+jAF04Jml
TLSHT13F412D0BC1CE859096B474C2F3AA015B5399307AB9519F99175BACDD04827312B56E19
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize52792
MD5B0268C147DE5BAA6B7F701AED5936784
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython-pefile
PackageSectionpython
PackageVersion2016.3.28-4
SHA-104057B14EE2E55772297D797ACC01D23260D83D6
SHA-256E4EF0530E8F958905E7D2C23B99FCD2554FF925A68E14831FB27B38DDAF826D3