Result for BBC2A1E7497516B6C4EABF4D050C95DC6518EC87

Query result

Key Value
FileSize11175504
MD5B18BC8BB4966E95DBB7EEAE0B23C5E2D
PackageDescriptionPowerful, efficient and modular digital forensic framework DFF is a simple but powerful open source tool with a flexible module system which will help you in your digital forensics works, including files recovery due to error or crash, evidence research and analysis, etc. The source code is written in C++ and Python, allowing performances and great extensibility.
PackageMaintainerUbuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com>
PackageNamedff
PackageSectionadmin
PackageVersion1.2.0+dfsg.1-1
SHA-1BBC2A1E7497516B6C4EABF4D050C95DC6518EC87
SHA-25672B3592F627169354793A8FAD9CAD750CDB336164747C8C39FCBEA0386C3E3DD
hashlookup:children-total357
hashlookup:trust50

Network graph view

Children (Total: 357)

The searched file hash includes 357 children files known and seen by metalookup. A sample is included below:

Key Value
FileName./usr/share/pyshared/dff/ui/gui/resources/ui_shell.py
FileSize2487
MD51E762055F8FC7D6116D63C2932CCB6BA
SHA-100B51711F99588041E640B0D6217896B665C150E
SHA-2565AB7C12C349AF1EF872E1A0383B56D6595CA076144F58E5A9362393B076ED85E
SSDEEP48:O7twCrnaZtQ2Wrm0XyLVyLbyLoyL5HyLpkyL9ul9QcGVToWI:ErnaTb0XyZyPyEypy2yByQcGVQ
TLSHT17751C8949202BAA54797CD8E432D9CDAFF2E709FD661581A335DC0B49F682F359C881C
Key Value
CRC320520AA57
FileNamefind.py
FileSize14772
MD54A11D45F23AB4DA2209ED9ED4A4218B3
OpSystemCode362
ProductCode13792
SHA-1020BC371BB99093DD21668828745C82ACB38F0D4
SHA-256E64B9388B0F486FB39AA5579F7FCF398467537A1DBCDA690B571C180A8EA7388
SSDEEP96:tEumemcIRVPs8CBP6XInnGxDb83ChEXRF3ydAgH5CA7U3q1odn586ZoYBV1+Debi:tEuLmsvPfSf3hEBNym1dnvi
SpecialCode
TLSHT1EE62412894511871EA13885DF9EAD007273ABE4399096438F9FD96A57F06938C1F4FFC
dbnsrl_modern_rds
insert-timestamp1646978603.316221
sourceNSRL
Key Value
CRC326E576D29
FileName__init__.py
FileSize686
MD57CF8DA753B12E8BD45D539DDC8C4CF1B
OpSystemCode362
ProductCode13792
SHA-1024F7274A9CCA11D2E9EF4283177D9AB7F1F0777
SHA-2561DFDDCF705789B3B3A1EF61A2A0FA5B565F3DED5F3EF1927266A0B3DA88E1675
SSDEEP12:0dE3fWEs/viYKaed0HywOXS8Ct9YaRJEoSsJVUYY:6R/niLp0H8XSvh1SsJmR
SpecialCode
TLSHT1AE01F439FB20C53314808BC6FB468FC5E24E4A2067DCFC161459C0554248E2D61AE5ED
dbnsrl_modern_rds
insert-timestamp1646978701.0819125
sourceNSRL
Key Value
FileName./usr/share/pyshared/dff/ui/gui/resources/ui_is_file_or_folder.py
FileSize1708
MD5ACAAD2E5311999320ABD5DAB3546B5C4
SHA-103256BD0ACFC5C561419649A01C272B530D34FCD
SHA-256CA0A45E82135A19A14B523E1D30AF712E4D34B292D01743A9873A56D48F70FC0
SSDEEP48:O7V9rnaZtQ2WLT+zvmzQI6xmShSvm7APO5m5DaDeH+U:c9naTAzzOy5DL
TLSHT19E314C100011B1E50B57FE5343ED6E9AE90E744EFA3C746CB1BCC891ABBC5A512D6CE6
Key Value
FileName./usr/lib/python2.7/dist-packages/dff/modules/fs/ntfs/_NTFS.so
FileSize156996
MD5A886206E29010F18F192FE6A5818ACE2
SHA-10424FCDF6476EB013DC361D0022BDCC078BB1EB8
SHA-256A9D696D484B14F23FC4A2950EA4322060FC4B16B81F7907A2F21219224EFE3A7
SSDEEP3072:L8E7M7le4ekcGln8wFrar9HjUEueudlz7T1/ACTeMAUvSmjihobU5E+9G84mqLFL:L8E7M744ekcGln3Far9DUEueudlz7T1N
TLSHT1BBE37CF967858B33DCBB8BF8B0931E434534C0A96BD70F53685E9B35ED8A224563B190
Key Value
FileName./usr/share/pyshared/dff/api/search/libsearch.py
FileSize11009
MD5A00F64F6D8343E425D2AAE3D88639039
SHA-104C6B1CA90152F33ECE2AA450A81714692A4210B
SHA-256429BAD015F739E93AD9F2924A0ECE4C42EEE84BCA33421536B46D96CD2449A01
SSDEEP192:9oqJUiqwCQB8JHv8q9wRITwJ1FfSKYwZwuwqwWwswVwFwVw/wqHqwpxwAwRwWwDV:9oqaxM6kdfFWgLb5rWW+E3HqYxB0nirJ
TLSHT1AC32E257C869DC26963FC17888936466BA081C9351D8147CBDBC7BB8BF33C2587E588D
Key Value
CRC32BF021295
FileName__init__.py
FileSize648
MD524CC72B8746785F1DFE72B8D972C7FDB
OpSystemCode362
ProductCode13792
SHA-105758A55ADC08A6CB0BE7449928DDD2ED9D6CB55
SHA-2561538BC18A09BE3578297CA8A072CB77071F282DBB64B16E2FC986F34122F47F1
SSDEEP12:0dE3fWEs/viYKaed0HywOXS8CDSAFYP9Yq6deRJ1n:6R/niLp0H8XSnSEmr6w9n
SpecialCode
TLSHT15FF09E1A7650853225015BC7EB578FC6A34E8E2066D8BC065455C046839192DA6DA2ED
dbnsrl_modern_rds
insert-timestamp1646979809.1941512
sourceNSRL
Key Value
CRC320599ADB2
FileNamecomplete_raw_input.py
FileSize8463
MD550F10B462C9B22A295F49778584E3B5D
OpSystemCode362
ProductCode13792
SHA-10585CC28EAB6DD448D4D7B5BC9D0AF86FFB80E74
SHA-2567902AB9FA75C45457BF43C4C0342D090F66E8F1C77164487D9747B085B3E2BE3
SSDEEP96:uEumLzYJR+7Q/eZB719ANCMzx8+hb7huM5lm0McmTxJbWzk576bre4FU7Xdc:uEuY0JwZvis0MJTFB6Xe4FUbdc
SpecialCode
TLSHT1C80221112A285831D347C92AA997B8472A1FBD93190CD434FCFC80D46FA266483F5EF6
dbnsrl_modern_rds
insert-timestamp1646979831.429575
sourceNSRL
Key Value
CRC3243B8B838
FileName./usr/lib/python2.7/dist-packages/dff/modules/ram/volatility/memory_plugins/example1.py
FileSize4347
MD5C26FAC5A2748D87AAB7D7A139FA1B3B2
OpSystemCode362
ProductCode13792
SHA-1078F8DC20BF579095AF4962DFDE64EBCB62448F2
SHA-256CA74C7A453BFCDFB0B716076B031BDEF4B715315E83E8F172DCD25DD349AB269
SSDEEP48:HYyUjoSoZXlnXZFYOJRx7qfRu3B7Bhlwq7x65PpMsVUvUoIOn1qPzlBNQaz3HBY1:PlTPJdhlv4ZpMsxin1qPz5Qaz3HBY1
SpecialCode
TLSHT1EA918205997CD07A40E7069A78C3D0CAD3DED79742046BA83D2DD2584F52E3982B7EE5
dbnsrl_modern_rds
insert-timestamp1646980554.7894726
sourceNSRL
Key Value
CRC328C5ECC59
FileNamestring.py
FileSize2619
MD5BABC2311AAC513BC468AACCD54D509BB
OpSystemCode362
ProductCode13792
SHA-107ABAA328CCBE152D6408D4F447715694EA62BFA
SHA-2567E7304DE1EC51E490E07F030B37861A11A0B87D650F8765211A6F7A657448A22
SSDEEP48:iJcLp0mvXVAANmiGhBenPgTkAOj6QQiCnzm3PdsM:igumPmAKBent7JCnzmaM
SpecialCode
TLSHT1E551E026290689514647EE27E4D7DE47E70F6907A93CB8A0B8FE91000F51475C1E5EF9
dbnsrl_modern_rds
insert-timestamp1646980594.4889178
sourceNSRL