Key | Value |
---|---|
FileName | ./usr/share/man/man1/yara.1.gz |
FileSize | 1462 |
MD5 | F5D70938EE1E9F160C1EF70A6AF641AE |
SHA-1 | C0B9AD6DA8A3DDC6170DC1A18205D854BB6A6A2E |
SHA-256 | BE9F48A8607DFDFB0790C85CEBE1186C430190BAC4F8676476D4CC7769B40419 |
SSDEEP | 24:XOzsUIXql/JBCB3V8pKBWJWQ/qaz/OQDsqOJECx09RQdLb0X8YFCwz9DHppUPgsb:XTXqR6B3V8WWJ8RwGTH0vFztppaNXI+ |
TLSH | T152311B089D908975EA20BC7243B9070B7F6697932D58C4218F72DAF0C27D59840E57EF |
tar:gname | root |
tar:uname | root |
hashlookup:parent-total | 50 |
hashlookup:trust | 100 |
The searched file hash is included in 50 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 158604 |
KnownMalicious | malshare.com |
MD5 | 4C81A36952BC89F730D889D0A26F377B |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.0.5-1 |
SHA-1 | 0441918C1DB6F26A12A90BD47A3B3BA594BA7BB4 |
SHA-256 | DB7BD895CFC2B7DD7D459FFADE5FA6807A43F639B2E834670CED35CE08A07DA6 |
SSDEEP | 3072:1F+/P1P1MBKSLTMSL+WKQQHOACPBQRU8LPPIQ8AUVTUIXELBBL5A2VK:1FSP1P1ONMSL1XSOAC4RUMETAUVTBOBQ |
Key | Value |
---|---|
MD5 | 974CD0E2676D8511D632E7F6720277FB |
PackageArch | x86_64 |
PackageDescription | YARA is a tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families (or whatever you want to describe) based on textual or binary patterns. Each description, a.k.a rule, consists of a set of strings and a Boolean expression which determine its logic. |
PackageMaintainer | Fedora Project |
PackageName | yara |
PackageRelease | 1.el7 |
PackageVersion | 4.1.0 |
SHA-1 | 061C124480C3664C1ED3E8F0A8B6EEA6EB5DD5BB |
SHA-256 | 58A716390B44B7AED8E0558B1B176E0D686261F541886B409A263237465D6335 |
Key | Value |
---|---|
FileSize | 144172 |
MD5 | C04662BED3A0E92B7DE3443FCE4953A8 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.0.5-1 |
SHA-1 | 0749B2E5269733EFF154E6469B9376FE03EEBA5B |
SHA-256 | 065EF60F5905545CB00D01862E55EF63567945AB98710C30D1E7486E12D03CDB |
Key | Value |
---|---|
FileSize | 28292 |
MD5 | 8584BA1D34045575D495DCEC44CA2ED5 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.1.2-1 |
SHA-1 | 0C26DB5291A709BF630368DB23A3F194AC52A947 |
SHA-256 | 7ED5E5B3D7E9D19DBD049724B8442B98CA806D5CC66BEB5AF2E5534A39FC833A |
Key | Value |
---|---|
FileSize | 151020 |
MD5 | 72A50145F8C318950FE97777BC6A3CC2 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.0.2-1~bpo10+1 |
SHA-1 | 0CC35839BE53E294329C2F76CD30301D31156FE5 |
SHA-256 | 02347A87FD9D86AA177BC99661926E66826716ED8955D8575226A67981E0A791 |
Key | Value |
---|---|
FileSize | 147660 |
MD5 | D3B60F3325E238C91FC402ECA9E7ABA8 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.0.5-1 |
SHA-1 | 17C25D7A890C0F6B6205AF399D9E2C23C7704D58 |
SHA-256 | FA320634183902B6C13581A4CABEDB9E30BF137088A07E6A29401697BF70013E |
Key | Value |
---|---|
MD5 | 5BA0C3262414B75417CFE62E2739C97B |
PackageArch | x86_64 |
PackageDescription | YARA is a tool aimed at (but not limited to) helping malware researchers to identify and classify malware samples. With YARA you can create descriptions of malware families (or whatever you want to describe) based on textual or binary patterns. Each description, a.k.a rule, consists of a set of strings and a Boolean expression which determine its logic. |
PackageMaintainer | Fedora Project |
PackageName | yara |
PackageRelease | 1.epel8.playground |
PackageVersion | 4.0.2 |
SHA-1 | 193EFCE23BD1CE18A444E029900E745C1D6A8639 |
SHA-256 | 811B5CDF51A9ABBB99D14CB10AE343909883615C452B8693856B3804B24705BA |
Key | Value |
---|---|
FileSize | 153816 |
MD5 | 2D493948316655B54DFCEB35E42AC214 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.0.5-1build1 |
SHA-1 | 1A4B56BB1F5A7F329AD69523807D4EF0C6758974 |
SHA-256 | 96D0A31B228D7F315AD304C84586EAE017978C9AE824E8214F38346F87DC3867 |
Key | Value |
---|---|
FileSize | 25504 |
MD5 | 12CE3DD82205EC1F5F34287AC9037272 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.1.2-1 |
SHA-1 | 1C879293219924493615B7C00BABCD8EEF7A52A6 |
SHA-256 | C1D9D67FDF98B860A8D3AAF7381B8729F6A59F966016F178C1A4BED1E08B08F9 |
Key | Value |
---|---|
FileSize | 26624 |
MD5 | 2BD4395B1A9B9E5741D4CFF684E4DDF7 |
PackageDescription | Pattern matching swiss knife for malware researchers YARA is a tool aimed at helping malware researchers to identify and classify malware samples. With YARA, it is possible to create descriptions of malware families based on textual or binary patterns contained in samples of those families. Each description consists of a set of strings and a Boolean expression which determines its logic. . Complex and powerful rules can be created by using binary strings with wild-cards, case-insensitive text strings, special operators, regular expressions and many other features. |
PackageMaintainer | Debian Security Tools <team+pkg-security@tracker.debian.org> |
PackageName | yara |
PackageSection | utils |
PackageVersion | 4.1.2-1 |
SHA-1 | 200D2B957C5C76A21D4C084391FEDF37EDFEC286 |
SHA-256 | 9E4519DA15DFA3F35B00737227BD6FB1D1DF11983287C2A0F90774F53C8FCADD |