Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/lb.bpf |
FileSize | 1880 |
MD5 | DA21E32ECD7E5A93BAA726518D0E4C9D |
SHA-1 | 0101786DA5C465CF6BC73D68103A64C336B147C8 |
SHA-256 | 439EF3B642A12E4719AB2188DF6B6DA6EFB30245E960C67C86651ED1534B50AE |
SSDEEP | 12:Bs41WlmGSa3fgl2CW+FWUVcCwbI4/My2d2IC2h2sfQXSI2dhC2h2sfQXwdhzrTLo:24DavgbFWUVqiZYgZYOO2FtJX6ttF |
TLSH | T1E7415C8D73819B25CDC885314336D3702B7D600EEB968397E1243E4158635800E93DB8 |
hashlookup:parent-total | 2 |
hashlookup:trust | 60 |
The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1891340 |
MD5 | 1A60EAFD85915AE5D59BFE232115F083 |
PackageDescription | Next Generation Intrusion Detection and Prevention Tool Suricata is a network Intrusion Detection System (IDS). It is based on rules (and is fully compatible with snort rules) to detect a variety of attacks / probes by searching packet content. . It can also be used as Intrusion Prevention System (IPS), and as higher layer firewall. . This new Engine supports Multi-Threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB), Gzip Decompression, Fast IP Matching and coming soon hardware acceleration on CUDA and OpenCL GPU cards. . This version has inline (NFQUEUE) support enabled. |
PackageMaintainer | Pierre Chifflier <pollux@debian.org> |
PackageName | suricata |
PackageSection | net |
PackageVersion | 1:6.0.1-3 |
SHA-1 | 4C6E7442095D9F5868AACA804E5C7CAE4CA853E1 |
SHA-256 | 58E5C893D3AAFB0D9A13CCE4C8E4B73393F23E2CC4E724D5C418C64373552466 |
Key | Value |
---|---|
FileSize | 1890156 |
MD5 | 82CF9A463EE8A7DE834DDA76721BFF0C |
PackageDescription | Next Generation Intrusion Detection and Prevention Tool Suricata is a network Intrusion Detection System (IDS). It is based on rules (and is fully compatible with snort rules) to detect a variety of attacks / probes by searching packet content. . It can also be used as Intrusion Prevention System (IPS), and as higher layer firewall. . This new Engine supports Multi-Threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB), Gzip Decompression, Fast IP Matching and coming soon hardware acceleration on CUDA and OpenCL GPU cards. . This version has inline (NFQUEUE) support enabled. |
PackageMaintainer | Pierre Chifflier <pollux@debian.org> |
PackageName | suricata |
PackageSection | net |
PackageVersion | 1:6.0.3-2 |
SHA-1 | 7C0911C3175A43F8B7452F8C8472BE19C4CF4DAE |
SHA-256 | 8B1373387A8DD2C0EBA57F0F3C56F3D4AEFEC6225629A3B3E03A12DD8E2F9858 |