Key | Value |
---|---|
FileName | ./usr/bin/regfreport |
FileSize | 801376 |
MD5 | 35281EE1BD1DB91A0138C0C6B247CD61 |
SHA-1 | EC8EE3CEC35E8190363B7E8135193904054DA755 |
SHA-256 | F6F68058C1DBF77B4CABAADF27DCA7C5EFCFFD55A6712C19844D704777F54993 |
SSDEEP | 12288:+Ej0iD7LsyaWUQ5+rM1hfNSiFZHIlrMXvb8YNHVXdyC82uv5WOeHKhe:+rizsyaWp+rM1SuB1X |
TLSH | T195051A36D8F3869CD5EAC670379E1292EDF0F06B1035206B4591B3D0376DBA519EA8BC |
hashlookup:parent-total | 1 |
hashlookup:trust | 55 |
The searched file hash is included in 1 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 295684 |
MD5 | 9376E579A2DDFBBDBA87DCB4BE6AFA75 |
PackageDescription | libregf -- Utilities libregf is a library to access the Windows NT Registry File (REGF) format. . This package contains a few tools to work with data stored in registry files: regfexport, regfinfo, regfmount, regfreport. |
PackageMaintainer | Debian Forensics <forensics-devel@lists.alioth.debian.org> |
PackageName | libregf-utils |
PackageSection | otherosfs |
PackageVersion | 20160424-1 |
SHA-1 | B147636F660678F78585DD48662A5159128A8E0D |
SHA-256 | BBEC9EFF169C329CA43B5E6AC63ECD4F225DC98CF50AD07CC2507E14E752D208 |