Result for F187CFEDF3D4896263AC7DAE567E69261197584B

Query result

Key Value
FileName./usr/share/doc/python3-pefile/copyright
FileSize2637
MD531E53949357E39872319C54F6BFD291B
SHA-1F187CFEDF3D4896263AC7DAE567E69261197584B
SHA-2561970263CAEF194AF3601E8EB6C5B61AA7195417D9C3B02DC6063FCF77F5A7CC1
SSDEEP48:9ROYrYJ0rYJ1DP4a2r43lSrj32sBEtIz3tolHZeyoyvHqonxtn:9kYrYJ0rYJ1T53orj3NlKl5zrdjn
TLSHT11651A88F214087B799C017803957A9C9F35AD03E3B7A94052C6EA345DF1B92F65F7494
hashlookup:parent-total2
hashlookup:trust60

Network graph view

Parents (Total: 2)

The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize52792
MD5B0268C147DE5BAA6B7F701AED5936784
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython-pefile
PackageSectionpython
PackageVersion2016.3.28-4
SHA-104057B14EE2E55772297D797ACC01D23260D83D6
SHA-256E4EF0530E8F958905E7D2C23B99FCD2554FF925A68E14831FB27B38DDAF826D3
Key Value
FileSize50306
MD5BD67BAC7C2E4D0D4B26DC193BD1ED9F5
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2016.3.28-4
SHA-124A8BAF74F36E6950816B955FAE89698724A6697
SHA-256AFE30350802059FDD4A22BB7F8A51C6A7B1E8CF24FE9DB2C125C381FE8F3CDA0