Key | Value |
---|---|
FileSize | 180498 |
MD5 | 5E82916F880523A6C1363A34FBC1ADAC |
PackageDescription | Port Scan Attack Detector PSAD is a collection of four lightweight system daemons (in Perl and C) designed to work with iptables to detect port scans. It features: * a set of highly configurable danger thresholds (with sensible defaults provided); * verbose alert messages that include the source, destination, scanned port range, beginning and end times, TCP flags, and corresponding Nmap options; * reverse DNS information; * alerts via email; * automatic blocking of offending IP addresses via dynamic firewall configuration. . When combined with fwsnort and the iptables string match extension, PSAD is capable of detecting many attacks described in the Snort rule set that involve application layer data. |
PackageMaintainer | Ubuntu Developers <ubuntu-devel-discuss@lists.ubuntu.com> |
PackageName | psad |
PackageSection | admin |
PackageVersion | 2.2.1-2.1 |
SHA-1 | 278BCED840253A522A2BDB8689CAC1F72ED85517 |
SHA-256 | 7CF28862BFFC2631EEB27995B7E3CD644081EE222A18AA7F2F642255B3D18F6C |
hashlookup:children-total | 32 |
hashlookup:trust | 50 |
The searched file hash includes 32 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
CRC32 | 08289A7B |
FileName | ./usr/share/doc/psad/BENCHMARK |
FileSize | 3563 |
MD5 | AE6C8419113F6B32A13048505A37F7F0 |
OpSystemCode | 362 |
ProductCode | 10075 |
RDS:package_id | 10075 |
SHA-1 | 063DA4A16B4EB1AE35B10B1EF335E688B98DD522 |
SHA-256 | E5CF54FFE87CD7E3F4F68C29314B75F5545C2CC93098F809F9160CEBE52DB2AA |
SSDEEP | 96:KX+SisMnDdD0RsYwZQY3ZV3jsH1a/T9+Ul5g9:KOSGLMo/TgUA9 |
SpecialCode | |
TLSH | T1DF718301BDBC3BA6318366323B3C7270C788A77D93242252D58DB1352349D6913F6B82 |
db | nsrl_legacy |
insert-timestamp | 1648735417.0709713 |
source | RDS_2022.03.1_legacy.db |
Key | Value |
---|---|
FileName | ./usr/share/doc/psad/NEWS.Debian.gz |
FileSize | 522 |
MD5 | C9A9EF5C8C20C4D85E1096842EDF3D88 |
SHA-1 | 075BF33C3D43949C0538A9CC8692148BB3273DCD |
SHA-256 | B1CEE761F8F6EE612BB0A3B17F098EF3C96855D4D543AD6DD54C291F2760DCB0 |
SSDEEP | 12:XJYdSPxylUBS0sEBpUHZYQq/Z+sheEcbpjr:XJYdSglUDs+28fh6bN |
TLSH | T181F0206A4BBB4A629801E4B5E52BB870E047741109028ABA4CDD2A8E35C0180E34D690 |
Key | Value |
---|---|
FileName | ./usr/share/man/man1/nf2csv.1.gz |
FileSize | 2044 |
MD5 | 66DC228967993E7290FBFE055F87C611 |
SHA-1 | 08BC2CDCA83C5663A50E893737870C355A3298A0 |
SHA-256 | DFFD590472A4C3AC7915BD62C17EE549632D15D0CE8414A23D131977B5AC0BCB |
SSDEEP | 48:XBcAQnJvfOJcI2PqVjWKw78l58jI/gfbJlVLkfV4Dckwg:XQnkJcI2MS97052IyrKVmF |
TLSH | T184412A3794A8433CDD11F91264E8D2EDFB191BB11679CB803BA24C92EE25DCE42D3785 |
Key | Value |
---|---|
FileName | ./usr/share/doc/psad/SCAN_LOG |
FileSize | 1827 |
MD5 | BC6E539FCA350458B7473032126DA6EE |
SHA-1 | 0D15E5442C124C1D7BC1CDDD9433E9C0C2801D1B |
SHA-256 | 992014A60F4C226D7804B85F192722769F162C7A80B23A6F1872EACA734ED9C5 |
SSDEEP | 48:2l31P6SM8jprApG3YZMtO8FufV7lAJATWyVejpM8R:+1gWApgbuNE+U |
TLSH | T153314F0BBF0171A9E316C6B105B26152D73963A352570828F5DD83F08F93D72B362BA9 |
Key | Value |
---|---|
CRC32 | 984B9036 |
FileName | etc/psad/protocols |
FileSize | 2933 |
MD5 | 2E1E463038CC62E7110E33E21552751F |
OpSystemCode | 362 |
ProductCode | 17075 |
RDS:package_id | 17075 |
SHA-1 | 0E79926BC6DD519321D563978AA865AEE7467024 |
SHA-256 | 234998A1403E45E1B3F263EFB79F7C21E32032B1F7DC65054746DC28F69D2A28 |
SSDEEP | 48:ZzxmX2i8fBK/B1TMSKWhRQs0KxHJFvD74FAMrxAWaW/TTVlsz7Acg6ozHBzc0RW5:7Q2TBCB1ZDd0KjAxAWv//VlWAcab1c8Y |
SpecialCode | |
TLSH | T1475163AED74B17AC01A1D6FAE17D7514DA1F9614D1C0B10C74B0F9DB22830A8C72A1E9 |
db | nsrl_legacy |
insert-timestamp | 1648670115.9078636 |
source | RDS_2022.03.1_legacy.db |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/psad/copyright |
FileSize | 3268 |
MD5 | CCAE4659652C01583D3D341A9C4E016F |
SHA-1 | 2D70C56509967B4C85B06A88CF8D53D9220C41C6 |
SHA-256 | DC758F4FDDBE8E1154167B5031074119713F8BF28D0B356659F73969E3F63DB5 |
SSDEEP | 96:BDnuieqzeRJYrYJ8rYJ6yW3l3jTyjs81G:EZqzOJYrs8rs6yW3l3Xas81G |
TLSH | T19D6109CF615487E76AD227D27CA2EDC4A355B13E3913C904609DE299EF3712F90F6091 |
Key | Value |
---|---|
FileName | ./usr/sbin/fwcheck_psad |
FileSize | 21105 |
MD5 | C30606CA91DBFE7579D436A584592B78 |
SHA-1 | 33638B6123CBD53F4DB525D8B84D09B04570522A |
SHA-256 | 3B23FEF1F78D9270B913A7912759560444E2FBE232A6B8E823D35062CD734AEA |
SSDEEP | 192:hsEmf43QX2a7BvTVeUZmxpf6iDQSaiiV0ovgbyoEtF+yEiQWcJUfp4CvDHyK8U5s:mfWQX2a7BrlZwzkRh5qnIWEiI3S3on4 |
TLSH | T1C292970659DB2D2352A2F438ABCD9124362F41EB5E1FFD297C8CA248AF44974D4F26CD |
Key | Value |
---|---|
FileName | ./usr/bin/nf2csv |
FileSize | 18796 |
MD5 | C9DE4793C6C36A640923EA93CA116150 |
SHA-1 | 36518363258F14185547E2896A774858FA70F874 |
SHA-256 | A96B756006587CEC079AA63999E5244A7463CA57586AEBF13ED23C9F4C21E79B |
SSDEEP | 192:m3hmf/zM6YT76+d/cfwhKga9OPWfs3shC3iApOgx4/LJ50tEMyXQtnVViJNHSzUb:9f/w6YT71dJLoA7VaLFx |
TLSH | T15D8272DA09D3A2D88A92E4D957DD905066AAC07738DBBC18BD7FC2D80F41538D3B23E5 |
Key | Value |
---|---|
FileName | ./usr/sbin/psadwatchd |
FileSize | 22488 |
MD5 | 561043A89F1F2A0B116DFFBF32520C3E |
SHA-1 | 38DB115D99C979E019A8E0A9E013B274AE3431C2 |
SHA-256 | 5B3E57B8F1F8CA793AE19D2E1201E1193F045849671AA199B82EB02760D35D49 |
SSDEEP | 384:l1XQ5MxAlBhd4CQ16z3DHM+ZIJWzsxEsn9GkxRbPf3YT1m/tOn8c:TXQ5MxAlBhd4t2TsFSQ9tRbPf3y1n8 |
TLSH | T1F3A2A79A7172583DC480C339C70BE6351D72B89DA2217B6F7F4C56382F52A542F2EA36 |
Key | Value |
---|---|
FileName | ./usr/share/man/man8/fwcheck_psad.8.gz |
FileSize | 742 |
MD5 | 98A7083B154F40F52888F59D019F7D3E |
SHA-1 | 3FF82CE6936C47E6E12A4ED4B8C5C20EAB7EFA04 |
SHA-256 | 71921BED7E0B9024243A5512101F6F8E7CDBB494DA0530F2F3D97551E1713832 |
SSDEEP | 12:XHi2BQ7KSPuaYzRuyhglEfXYRyHP77bGVlwqybbBr0q9UyptJV4HO:XC29S2aYdRSYP7bGPw7PBr6OtJ+u |
TLSH | T1E801657BB5AC35D757C46A5C71D1028B7280AD4441FAF6C30BD1C32484A08FAD0C0C7E |