Result for 645916C40E0104F405300182BA9EA59DB4E0A3A4

Query result

Key Value
FileName./usr/lib/python3.6/site-packages/pefile.py
FileSize236671
MD5810FAA134F873C49BE1E9E5B48D8B206
SHA-1645916C40E0104F405300182BA9EA59DB4E0A3A4
SHA-256ECDB99D66C373E5E6D0BE7AD595EDB4C28C78A5C63A57E2BC014B53FC03AC821
SSDEEP6144:tqDZO4zxvKbzATeMLaqtnEuAoV/DYiISlKb6rDE2:tqM4zdKaTANm
TLSHT17634D723B92126A29293D46E49D7E0035775784B058C643CBDFC81642FA85B8DAF3FF9
hashlookup:parent-total3
hashlookup:trust65

Network graph view

Parents (Total: 3)

The searched file hash is included in 3 parent files which include package known and seen by metalookup. A sample is included below:

Key Value
MD5AE4DC72474C48FEAC66AF196BE32C03B
PackageArchnoarch
PackageDescriptionpefile is a multi-platform Python module to read and work with Portable Executable (aka PE) files. Most of the information in the PE Header is accessible, as well as all the sections, section's information and data. pefile requires some basic understanding of the layout of a PE file. Armed with it it's possible to explore nearly every single feature of the file. Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header Inspection * Sections analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD’s signatures * PEiD signature generation
PackageMaintainerFedora Project
PackageNamepython3-pefile
PackageRelease1.el8
PackageVersion2021.5.13
SHA-186DF100692B8C5B3EDE674FB5A4314CB36DC960C
SHA-2562002BE60F599EF59EE19C45BF4D4721A9EC8FF15FFF5D755DED0B206510A3FBC
Key Value
MD554FBA202E4B4D58F849CB4A1006B459C
PackageArchnoarch
PackageDescriptionpefile is a multi-platform Python module to read and work with Portable Executable (aka PE) files. Most of the information in the PE Header is accessible, as well as all the sections, section's information and data. pefile requires some basic understanding of the layout of a PE file. Armed with it it's possible to explore nearly every single feature of the file. Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header Inspection * Sections analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD’s signatures * PEiD signature generation
PackageMaintainerFedora Project
PackageNamepython36-pefile
PackageRelease1.el7
PackageVersion2021.5.13
SHA-1D7E8AD4E0F487E063F84116ACB2204A8353C6D85
SHA-2569FB65EA5F1DBDBAA0901CA6FB7A114F8B3BF05B187557C614F51539511C35D70
Key Value
MD533D026B2613851719DF92D86F9780E1D
PackageArchnoarch
PackageDescriptionpefile is a multi-platform Python module to read and work with Portable Executable (aka PE) files. Most of the information in the PE Header is accessible, as well as all the sections, section's information and data. pefile requires some basic understanding of the layout of a PE file. Armed with it it's possible to explore nearly every single feature of the file. Some of the tasks that pefile makes possible are: * Modifying and writing back to the PE image * Header Inspection * Sections analysis * Retrieving data * Warnings for suspicious and malformed values * Packer detection with PEiD’s signatures * PEiD signature generation
PackageMaintainerFedora Project
PackageNamepython3-pefile
PackageRelease1.epel8.playground
PackageVersion2021.5.13
SHA-1F2933C5A658058F48264B7E479A137ADEDD9A6BB
SHA-2562D64B2B1BDC125C6866BAFF7ED4A2D4E6E7737607D603BB5CC80BC53D58E678E