Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/bypass_filter.bpf |
FileSize | 2472 |
MD5 | C71F1AEA704F7C42F00F7DD19A172BAC |
SHA-1 | 25E6AFE441962CE7AFCCB957BB6DAE0DD019756E |
SHA-256 | E99E01A74F407603EA23039A27895901ED3032399A39A54A66820E3E1ABE870E |
SSDEEP | 24:24Wj98akGenAEWR0cFHFSWJaoTK6hMj33/dU/a5VxDk4BTjO0u8:kR8V1Ah0cF48a+hgPd159u8 |
TLSH | T1FB51598AB3D1DF21C81982315667C36576B97865FEA1075BF2102F468CB3E408D73E94 |
hashlookup:parent-total | 2 |
hashlookup:trust | 60 |
The searched file hash is included in 2 parent files which include package known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileSize | 1891340 |
MD5 | 1A60EAFD85915AE5D59BFE232115F083 |
PackageDescription | Next Generation Intrusion Detection and Prevention Tool Suricata is a network Intrusion Detection System (IDS). It is based on rules (and is fully compatible with snort rules) to detect a variety of attacks / probes by searching packet content. . It can also be used as Intrusion Prevention System (IPS), and as higher layer firewall. . This new Engine supports Multi-Threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB), Gzip Decompression, Fast IP Matching and coming soon hardware acceleration on CUDA and OpenCL GPU cards. . This version has inline (NFQUEUE) support enabled. |
PackageMaintainer | Pierre Chifflier <pollux@debian.org> |
PackageName | suricata |
PackageSection | net |
PackageVersion | 1:6.0.1-3 |
SHA-1 | 4C6E7442095D9F5868AACA804E5C7CAE4CA853E1 |
SHA-256 | 58E5C893D3AAFB0D9A13CCE4C8E4B73393F23E2CC4E724D5C418C64373552466 |
Key | Value |
---|---|
FileSize | 1890156 |
MD5 | 82CF9A463EE8A7DE834DDA76721BFF0C |
PackageDescription | Next Generation Intrusion Detection and Prevention Tool Suricata is a network Intrusion Detection System (IDS). It is based on rules (and is fully compatible with snort rules) to detect a variety of attacks / probes by searching packet content. . It can also be used as Intrusion Prevention System (IPS), and as higher layer firewall. . This new Engine supports Multi-Threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB), Gzip Decompression, Fast IP Matching and coming soon hardware acceleration on CUDA and OpenCL GPU cards. . This version has inline (NFQUEUE) support enabled. |
PackageMaintainer | Pierre Chifflier <pollux@debian.org> |
PackageName | suricata |
PackageSection | net |
PackageVersion | 1:6.0.3-2 |
SHA-1 | 7C0911C3175A43F8B7452F8C8472BE19C4CF4DAE |
SHA-256 | 8B1373387A8DD2C0EBA57F0F3C56F3D4AEFEC6225629A3B3E03A12DD8E2F9858 |