Key | Value |
---|---|
FileName | ./usr/bin/regfexport |
FileSize | 43648 |
MD5 | 1D38C44ABCFB12C541983EC649FFAF77 |
SHA-1 | 4CDC3771B3300ED3F3D8310EE3FFA7A5B5145323 |
SHA-256 | 2A98A572A96007B3D636C8AE81B2CA13BDE3141E784C211F7738652F05C64E18 |
SSDEEP | 384:ZA2WjS3kUXvSzA/ggVFwGCNn2Nvl25V1y5JxvUCEn+C:ZA2WjS3kUKzAoD3N8s2RM1f |
TLSH | T10613A59B9A0E36C5E7C3933497DA8F33F076946843C3017E56024AD8A1DEB5DFD19292 |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 278170 |
MD5 | 09EBEB3174FC19CD81C12989DA30B083 |
PackageDescription | libregf -- Utilities libregf is a library to access the Windows NT Registry File (REGF) format. . This package contains a few tools to work with data stored in registry files: regfexport, regfinfo, regfmount, regfreport. |
PackageMaintainer | Debian Forensics <forensics-devel@lists.alioth.debian.org> |
PackageName | libregf-utils |
PackageSection | otherosfs |
PackageVersion | 20160424-1 |
SHA-1 | 81418728D2E110EEFD53F9A63737F7B6702875E3 |
SHA-256 | 8ACB811C63C069760FC1A238C9E22636DDF44549AB900A41ECA9079ECE32C597 |