Result for BB54D5934A8732709F03D45BE96E62D79437BF36

Query result

Key Value
FileNamepefile.py
FileSize274146
MD56C684411F245B6500854B851E0BFB0B1
RDS:package_id294775
SHA-1BB54D5934A8732709F03D45BE96E62D79437BF36
SHA-2562EF2F4FB9055A07DFCDDE9B51F83F6D9B4731EDE7ABD81D418AF8ABB7EED965A
SSDEEP6144:nnV4+gjPliR12B0DEgikfieS69HZYSIsHWlURlEm:n/gjPBNdk
TLSHT19644B653E9205DA69393D47D4C8BE0435736784B094C683CBDFC81682FA85789AF3EE9
insert-timestamp1696448944.9179232
sourcedb.sqlite
hashlookup:parent-total1
hashlookup:trust55

Network graph view

Parents (Total: 1)

The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize62908
MD5394AFF074C8A9A226B47255E6609D116
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2021.9.3-1
SHA-1C9C89717A41CB560838F93E16ACA2CAA1A4E974A
SHA-256A424EBECDFBA09087002885041DF7AA6DE50CE64FD26CE93121242CF830C8B12