| Key | Value |
|---|---|
| FileSize | 62908 |
| MD5 | 394AFF074C8A9A226B47255E6609D116 |
| PackageDescription | Portable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation |
| PackageMaintainer | Hilko Bengen <bengen@debian.org> |
| PackageName | python3-pefile |
| PackageSection | python |
| PackageVersion | 2021.9.3-1 |
| SHA-1 | C9C89717A41CB560838F93E16ACA2CAA1A4E974A |
| SHA-256 | A424EBECDFBA09087002885041DF7AA6DE50CE64FD26CE93121242CF830C8B12 |
| hashlookup:children-total | 14 |
| hashlookup:trust | 50 |
The searched file hash includes 14 children files known and seen by metalookup. A sample is included below:
| Key | Value |
|---|---|
| CRC32 | F2621C42 |
| FileName | snap-hashlookup-import/lib/python3.6/site-packages/pefile-2022.5.30.dist-info/top_level.txt |
| FileSize | 25 |
| MD5 | DC5F0DFE2194FB970D0A6A91B0F9B170 |
| OpSystemCode | 362 |
| ProductCode | 163709 |
| RDS:package_id | 304063 |
| SHA-1 | A7B4A27413A312D8B74FCDD82954951E251F87F5 |
| SHA-256 | 7BF125792B9950E40A7171C92ECDAC49E1A4C46E0E6608542DC09CFEFEA441BA |
| SHA-512 | B90028F6A4058220677261D933690FFF7630501EBF2ACDD3234243B280EA973DD7BD281D5A7D515BC7A7009C76B2A57DC74100EBD35C5EBEC1DE5E6B5280938A |
| SSDEEP | 3:sKAkAQR7n:sKGkn |
| SpecialCode | |
| TLSH | |
| db | nsrl_modern_rds |
| insert-timestamp | 1762443985.4726129 |
| mimetype | text/plain |
| source | snap:SC6TII5ojBXqoHT62SI2u4uFnwbHDzMb_2 |
| tar:gname | root |
| tar:uname | root |
| Key | Value |
|---|---|
| FileName | peutils.py |
| FileSize | 18554 |
| MD5 | 4586A691C23F23415113D8E82E7481AB |
| RDS:package_id | 294775 |
| SHA-1 | 413834B18CE2EE31D9383DC60BB3C539DF20A4AC |
| SHA-256 | E0BDEAEDB4D732FD6BD17352F9854AA9AA038EE68CE186C5F1C2B863EF309302 |
| SSDEEP | 384:71o4Y3g6i9MPSZkn2ozg2orT6prYAvpz/u:5o4hfiZn2Qg2AIYoW |
| TLSH | T19A82326EF504222C829354B69C8B90A56F26B8EB11D0143CBCFDD2583F5873497F1AFA |
| insert-timestamp | 1696448944.9123077 |
| source | db.sqlite |
| Key | Value |
|---|---|
| CRC32 | 32D70693 |
| FileName | ./usr/src/linux-gke-headers-4.4.0-1034/arch/microblaze/include/asm/user.h |
| FileSize | 1 |
| MD5 | 68B329DA9893E34099C7D8AD5CB9C940 |
| OpSystemCode | 362 |
| ProductCode | 623 |
| RDS:package_id | 304063 |
| SHA-1 | ADC83B19E793491B1C6EA0FD8B46CD9F32E592FC |
| SHA-256 | 01BA4719C80B6FE911B091A7C05124B64EEECE964E09C058EF8F9805DACA546B |
| SHA-512 | BE688838CA8686E5C90689BF2AB585CEF1137C999B48C70B92F67A5C34DC15697B5D11C982ED6D71BE1E1E7F7B4E0733884AA97C3F7A339A8ED03577CF74BE09 |
| SSDEEP | 3:v:v |
| SpecialCode | |
| TLSH | |
| db | nsrl_legacy |
| insert-timestamp | 1763484313.4919622 |
| mimetype | application/octet-stream |
| nsrl-sha256 | rds241-sha256.zip |
| source | snap:cOhcnGRuLnrE191PeBJfVqxy4SchgsIV_2 |
| tar:gname | root |
| tar:uname | root |
| Key | Value |
|---|---|
| FileName | snap-hashlookup-import/lib/python3.6/site-packages/ordlookup/__init__.py |
| FileSize | 958 |
| MD5 | 861E7F634655762405CB6B099B65AEDC |
| RDS:package_id | 294775 |
| SHA-1 | FD75CE0F71DFC3388E66579E23C08A9AEE70FC0C |
| SHA-256 | E1123E393975D681C1A6798514D5A27AD65D85288C2E5A8C75B86B02F3FB4A41 |
| SHA-512 | ECA25572FA4BB6A290C984EEE173A20EB375F05EF19CBBE07AE41FCCD922761B071C4F0E9093A52C0233218E333278CE04C2973A3576DF2A660065457475C043 |
| SSDEEP | 24:1R2mrHEFN6zQhU8DwMdrWy+H6osQgAGvrlLPpZYieoY7gn:P9rHEFYzQVh5WbFsQPGBDpZU1Mn |
| TLSH | T1DC111059EC946C438321C1E854CB72026B5E32233A0A2836FDDD61657F00E2AC4B064D |
| insert-timestamp | 1762444016.1859055 |
| mimetype | text/x-python |
| source | snap:SC6TII5ojBXqoHT62SI2u4uFnwbHDzMb_2 |
| Key | Value |
|---|---|
| FileName | ./usr/share/doc/python3-pefile/changelog.Debian.gz |
| FileSize | 1326 |
| MD5 | 4BE831086D5EFD194A738DFBA1EED520 |
| SHA-1 | 4FE135CE299FBEDAF46C9A3FF9F242E14A2CD1F1 |
| SHA-256 | C35169C1AEBB35EED81DC40AD51F849BA1EC6952C5E219870EF708AC323ABF73 |
| SSDEEP | 24:XXaKslwobFdOPIaaCZPh0qDhVlf1HwT1UCR8AsNrf8ZA4R8d1u1KwA/RSm8+aS8C:XXaNlZbFdOwaaCph0qpgCCRqB2zC1wDG |
| TLSH | T12D21CB17A6D214A94C66EC0BD5443FA4F11ABF50D467E3A3DCB4567FBCA9904D016C31 |
| Key | Value |
|---|---|
| FileName | ./usr/share/doc/python3-pefile/README.Debian |
| FileSize | 330 |
| MD5 | 21B045F3BC1F1E9BBBA0DDCF7C546A3F |
| RDS:package_id | 304063 |
| SHA-1 | 6D116E829F3A55A697B2FCAC7C72B4F8608C8FCD |
| SHA-256 | 4CBAE2CF68D616C86C9163EFAD683D2EA1D5A19B2BEDDCD62CA883116CCC80DA |
| SSDEEP | 6:fxFQFqm1cLFyZLkW0gKgouuDA3FFv2cmRrOhAgs4CAANpGz4arP8dwhd3Y6:JFFyZLfbBo30F8cmFOq4ZZhdT |
| TLSH | T1E4E0EBCE3E913A9288C3F20230FF2004CF2EE42725438094E81ACA08BF44806B30F9C4 |
| insert-timestamp | 1751766800.6553576 |
| source | RDS_2025.03.1_android.db |
| Key | Value |
|---|---|
| FileName | ./usr/share/doc/python3-pefile/README.gz |
| FileSize | 2632 |
| MD5 | E3555B400B419F046E0B4C041E7074C3 |
| SHA-1 | 8DCA8120B7B174B76F2D228FD1AA98C0854F63D6 |
| SHA-256 | CF6D5C573BA4F3A0B5F7B303FDFE2FAB7E5E13C525DACE742397421C4A6E38D7 |
| SSDEEP | 48:XYy7rZ7vtM8j1pxpyeRhj26Mz/6fZ5MqwWu/Sav/gOQ5wCEK7F3f:oy/ZTtMMxYUjRMwRuF/YckR |
| TLSH | T157514C406FD27419C998A96A2FA2CF05B052FA967CED11F483418F382574C383A455CB |
| Key | Value |
|---|---|
| FileName | pefile.py |
| FileSize | 274146 |
| MD5 | 6C684411F245B6500854B851E0BFB0B1 |
| RDS:package_id | 294775 |
| SHA-1 | BB54D5934A8732709F03D45BE96E62D79437BF36 |
| SHA-256 | 2EF2F4FB9055A07DFCDDE9B51F83F6D9B4731EDE7ABD81D418AF8ABB7EED965A |
| SSDEEP | 6144:nnV4+gjPliR12B0DEgikfieS69HZYSIsHWlURlEm:n/gjPBNdk |
| TLSH | T19644B653E9205DA69393D47D4C8BE0435736784B094C683CBDFC81682FA85789AF3EE9 |
| insert-timestamp | 1696448944.9179232 |
| source | db.sqlite |
| Key | Value |
|---|---|
| FileName | ./usr/share/doc/python3-pefile/copyright |
| FileSize | 2638 |
| MD5 | 9BF5D30A716281317ED8EF6A6FF8A753 |
| RDS:package_id | 304063 |
| SHA-1 | BA859ABDA699BF30D5C202DC9217EFC0D37D49A4 |
| SHA-256 | CABE2CD6C09C2F32633F11B2E561B15542DF469EA917F06D00717855DE3D4607 |
| SSDEEP | 48:olOYrYJ0rYJ1DP4a2r43lSrj32sBEtIz3tolHZeyoyvHqonxtn:o4YrYJ0rYJ1T53orj3NlKl5zrdjn |
| TLSH | T1C151978B214087B74AC013803956A9C9F25B903E3B7A9405286EA345DF1B92F55F7494 |
| insert-timestamp | 1751766800.6572556 |
| source | RDS_2025.03.1_android.db |
| Key | Value |
|---|---|
| FileName | snap-hashlookup-import/lib/python3.6/site-packages/ordlookup/ws2_32.py |
| FileSize | 3265 |
| MD5 | 34E6BE9F69931AA8B9E1F655415188F9 |
| RDS:package_id | 304063 |
| SHA-1 | 53EF62E97767F15E45EC73901A6D4495789B65A8 |
| SHA-256 | 832F959EBB7AC959B337CB1BA8B40449A370167676A238782EC880AB9203AEE0 |
| SHA-512 | 16FCFE3D10D284BFBC5CB79A0681CB0FB4046435B58A802A30EF1AA1BE801A2BBFD4DFE20E44083C5FFA058D71CED12E631AD2EA99F5BE568DB459B98CFF34F9 |
| SSDEEP | 96:BDAzD66/Ql0A2rHE0zYk3KF/d+P9QrM9ny:Nz6/QlzG7Mk3KFl+P9Qr8y |
| TLSH | T1536135A444828FA80F0DBB051CE6684659445C479F227866BBCA19C34FBE91F71FE62F |
| insert-timestamp | 1762444016.1760612 |
| mimetype | text/plain |
| source | snap:SC6TII5ojBXqoHT62SI2u4uFnwbHDzMb_2 |
| tar:gname | root |
| tar:uname | root |
| Key | Value |
|---|---|
| CRC32 | 00000000 |
| FileName | ./usr/src/linux-headers-5.15.0-1030-gkeop/include/config/ZSWAP_ZPOOL_DEFAULT_ZBUD |
| FileSize | 0 |
| MD5 | D41D8CD98F00B204E9800998ECF8427E |
| OpSystemCode | 362 |
| ProductCode | 15758 |
| RDS:package_id | 304062 |
| SHA-1 | DA39A3EE5E6B4B0D3255BFEF95601890AFD80709 |
| SHA-256 | E3B0C44298FC1C149AFBF4C8996FB92427AE41E4649B934CA495991B7852B855 |
| SHA-512 | CF83E1357EEFB8BDF1542850D66D8007D620E4050B5715DC83F4A921D36CE9CE47D0D13C5D85F2B0FF8318D2877EEC2F63B931BD47417A81A538327AF927DA3E |
| SSDEEP | 3:: |
| SpecialCode | |
| TLSH | |
| db | nsrl_legacy |
| insert-timestamp | 1763484319.2628374 |
| mimetype | inode/x-empty |
| source | snap:cOhcnGRuLnrE191PeBJfVqxy4SchgsIV_2 |
| tar:gname | root |
| tar:uname | root |
| Key | Value |
|---|---|
| FileName | ./usr/lib/python3/dist-packages/pefile-2021.9.3.egg-info/PKG-INFO |
| FileSize | 1464 |
| MD5 | 726EEC5390B539C4C3B7386BA4CFAF5E |
| SHA-1 | E4C549BD2BEFDFEFC9AAF82F590ED57BFCA1A88A |
| SHA-256 | 6213B8ED6AAA0EBF1C311C9FDC1830D62952985464B6997208B93F1E3352869A |
| SSDEEP | 24:DsjcdV+JlqLsXGbWYoGw/PX++fHFLjCQgKRzPP4gQ6kQIF3A13f:DsjcrsXthGw/PXFdXnb4/QIO13f |
| TLSH | T19D3186C734C079E44DDF4ADDE40CC25A9C56CA028ADF987870BE010DAF06962D2BE5BD |
| Key | Value |
|---|---|
| FileName | ./usr/share/doc/python3-pefile/examples/pefile-match |
| FileSize | 1195 |
| MD5 | 8F2F1BDB1399E8C90C9BCD9523DBE515 |
| RDS:package_id | 304063 |
| SHA-1 | 81118A190DC70795E69BD9FD2DF08D6225A66C8F |
| SHA-256 | D57A634F512C64FAA82B97E6D2511436B7990995F32A9135BAB3E569B1DF5465 |
| SSDEEP | 12:HuV2FyaAw5jcjbs1KXN4EkKIlK2D4lmKio6te04973VotodPzQGNtfIoAXHC2aQm:OqLlcUkXNIXsLihefZotUvf0aqzNyYij |
| TLSH | T16F217BA78C093410CFC78B5DC986D8D2260ABCF749157038F8DC4555DF88D595BECEA8 |
| insert-timestamp | 1751766800.6533427 |
| source | RDS_2025.03.1_android.db |
| Key | Value |
|---|---|
| FileName | snap-hashlookup-import/lib/python3.6/site-packages/ordlookup/oleaut32.py |
| FileSize | 10877 |
| MD5 | 89DD54DF90276F06DA15F26165B608EE |
| RDS:package_id | 304063 |
| SHA-1 | A64BFBD5F95E5ED94B52C40BB89A8EF72FAD19FF |
| SHA-256 | 8346CD7072D1B87FE75BBE71A996ED6593564EB39505B74457C5BBBF1CF43AE7 |
| SHA-512 | 375CB8C42F56169CDAF4064A45DEDFEC329FB34982B5796A1A88DCDC96BEA8F96B15EE3A486E10D1FC6E12E2AD7BC8D8DD257377F98C9B4FA0E957E5F7294CCB |
| SSDEEP | 192:cEoahhUHfbqL1kcEX2k/TNwc8H2vpNbXc4u5MvTTl1i9YusfTR:m/bqqMVfe7vffT |
| TLSH | T12D22CE99AC0719C8036DD9901BD1650B9800AE63DCA4B418BB4ADDCE4F0C7CF6AF91FE |
| insert-timestamp | 1762444016.1606483 |
| mimetype | text/plain |
| source | snap:SC6TII5ojBXqoHT62SI2u4uFnwbHDzMb_2 |
| tar:gname | root |
| tar:uname | root |