Result for F36FA89B14ABD76328F023D0DFEEFFB015F2246A

Query result

Key Value
FileName./usr/share/doc/python3-pefile/changelog.Debian.gz
FileSize1085
MD563AB02124A7E674041A1F0A280C4ADE8
SHA-1F36FA89B14ABD76328F023D0DFEEFFB015F2246A
SHA-256BF17219F7E2EE3261A6296BCB903BAA4DFE69F9B391199FC5A835D48FEDED711
SSDEEP24:Xa2+dpR8gCenYGB8UFk0jXkA3cqkqX1aeVmBlme0U2IiKhHALvNmyUOy/lM:Xa2bgR1BXFk0jUABL9VmBlmeIJKBUpX
TLSHT1E411E9A50C8E90ED2410C3A67A036FC695056EAB74123144B0F09EAB18C79CE0C6F5DB
hashlookup:parent-total2
hashlookup:trust60

Network graph view

Parents (Total: 2)

The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
FileSize55652
MD5D7EB461DDF9B85C28526E9945648C194
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython-pefile
PackageSectionpython
PackageVersion2018.8.8-1
SHA-1DA2E42185C94DFEFDFF9CCDF80D2A8CE6E28E5DA
SHA-25659D7E43C054BD9E247159112C6090C679ED3B2D25919EC97A5D140BD3B29C07A
Key Value
FileSize53016
MD52D3AE0102B0B37C8B73195C5FA1F1595
PackageDescriptionPortable Executable (PE) parsing module for Python pefile is a Python module to read and work with Portable Executable (PE) files. Most of the information in the PE header is accessible, as well as all the sections, section information and data. . All the basic PE file structures are available with their default names as attributes of the returned instance. . Processed elements such as the import table are made available with lowercase names, to differentiate them from the upper case basic structure names. . pefile has been tested against the limits of valid PE headers; that is, Windows malware. Lots of packed malware attempt to abuse the format beyond its standard use. . Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header inspection * Section analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD signatures * PEiD signature generation
PackageMaintainerHilko Bengen <bengen@debian.org>
PackageNamepython3-pefile
PackageSectionpython
PackageVersion2018.8.8-1
SHA-1C4A2F9E23C67137879B10BD6BD3A305C872DF314
SHA-25673FF79051A7BF2516AD7A61BAB894641C3D5AAF9DE93683073573EC49D4A40E9