Key | Value |
---|---|
FileSize | 1742704 |
MD5 | A08637C770878AF3906D9C770560201F |
PackageDescription | Next Generation Intrusion Detection and Prevention Tool Suricata is a network Intrusion Detection System (IDS). It is based on rules (and is fully compatible with snort rules) to detect a variety of attacks / probes by searching packet content. . It can also be used as Intrusion Prevention System (IPS), and as higher layer firewall. . This new Engine supports Multi-Threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB), Gzip Decompression, Fast IP Matching and coming soon hardware acceleration on CUDA and OpenCL GPU cards. . This version has inline (NFQUEUE) support enabled. |
PackageMaintainer | Pierre Chifflier <pollux@debian.org> |
PackageName | suricata |
PackageSection | net |
PackageVersion | 1:6.0.3-2 |
SHA-1 | 288B9C6B312DE2ABAC5D0184BD651D0ED4756CC9 |
SHA-256 | 5805BBA242A0FD0F367364F6D0F2F96EC1ED5C73BB22A812147E28BA63748B82 |
hashlookup:children-total | 53 |
hashlookup:trust | 50 |
The searched file hash includes 53 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib/python3/dist-packages/suricata/config/defaults.py |
FileSize | 101 |
MD5 | 2F344BB70EA225374D235F204BE3FDD5 |
SHA-1 | 062F7184AAB85081B42DE8EB50B91B2FE1964D1E |
SHA-256 | 6000739BB3A3028E1CAC768E3C5274998907678A0CA215F8DBF071EE3AE17B34 |
SSDEEP | 3:ghHK0IvBEREsz6XwKDGvs6JAWHnTey9KqK9vn:0HIJs+AiF6Znqy9E9v |
TLSH | T12EB012E910015CFCCC49D0B8F955816F3FC576D011042890A3CCDF00440003A36F9300 |
Key | Value |
---|---|
FileName | usr/lib/suricata/python/suricata/ctl/filestore.py |
FileSize | 4080 |
MD5 | 78AFF2D5DC92B41FDD492FB5715AFADA |
SHA-1 | 085DBF217A2613E905FDC9414E4CBCF8E2F7469D |
SHA-256 | 27062EE7DB7AA5CECB744E54053570D5F616211C183D996CCEB2F68A524EF8E7 |
SSDEEP | 96:tlBzlZ+161Pi1ubnWRAw7C2SQg2yKkRmvQ:tzpZ+161K1Sn2AwG2SQgZmvQ |
TLSH | T1AF81B84AA9DD20526B83455D3D0AAE14673AE9E7130D7938B2DC83643F49C3583F95FC |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./etc/suricata/suricata.yaml |
FileSize | 72577 |
MD5 | B1A4F12E285BAEBBA4AA0D292AB81C27 |
SHA-1 | 0935DB708900BAD891340BE0F28D5DFF9F5317CC |
SHA-256 | C6E509F96D33334E0B65E5E1868F6E0A23E11EE73C2706E2539EDFA197D0991E |
SSDEEP | 1536:uvGtVcaKqAFpw26drIEfO2JLeAhM+L7F+:uvGUa/AFpwddrzDM+XF+ |
TLSH | T1AD63E717760D327D0A4141B5A6AEE2C2A32991AF13F2687C70DEC16C1F0A97493F7AF5 |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/dhcp-events.rules |
FileSize | 468 |
MD5 | 75B578A0D69FEA2DFF55FD563DD11FDB |
SHA-1 | 0EC7C604D63A6D5F0D13DE233A7082AEA82F0F2A |
SHA-256 | 5933091963637E6E3CE784AB1656B189A29528D1ABD1C69F5E792BD581E7DFCF |
SSDEEP | 12:2VfFYLnTm8zOx0t9p0W0wG+c82dx020W4G+c80:yfqLLzm0t9p0W0wT27020W4T0 |
TLSH | T151F02E6583F0196613CB61D8C6CA28D8653F8743BD182840BCF0BD58D388120927211B |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/tls-events.rules |
FileSize | 6861 |
MD5 | 024345CE860EEFA8F52E2AD048CFA28B |
SHA-1 | 0EE805D5DD1986CA4D0702FA7A30D200924C39AA |
SHA-256 | 55ECADA06F608DE57345C839B284D336915A47DE070DFC0ADB06C6E9308C13A9 |
SSDEEP | 96:aAa+0CtO0wtnh0Ytw0ytI0dutr0jtS0+bt/0i1tZ0WtH0gtk05BQN0vQa0CQr/0g:atbMbfEEN |
TLSH | T18EE13A468FA048BD0BCA512C41AEE9E276FD4793796929416DF97E1C83C8BF051342E6 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/modbus-events.rules |
FileSize | 2078 |
MD5 | 64FD31BB768F6850C9AD506ECEF18260 |
SHA-1 | 14EC79C026093406155CAA093B47AD65B27BC78E |
SHA-256 | 9AA717E2DCA317271E7A484E14C38CB8E666BA5716E9B5FBC413EB18F85BB632 |
SSDEEP | 48:H030ag920TTWo0Km0YO0BFMD09WhL09t20IdvtB0eXO0V5UT:H0kagU0TTN0Km0YO0B2D09Wx09t20IdG |
TLSH | T1A9412815DFF408F90BC3815895AEA4E626BE52C1BA1D55B1FEB0BE48E38C970C23214A |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/bypass_filter.bpf |
FileSize | 2488 |
MD5 | E91F6916B8D44E348F966E2C6D434D57 |
SHA-1 | 1953CF0BF2EB454C090D38CF7F258A03629E1DB6 |
SHA-256 | FE02902EAB79CDE3BB16CB511B4105E78AC6C827456888E1555F45DBB16F5E47 |
SSDEEP | 48:NLc2VcHBv8WQqVVLWuFrjVNl/N9l8IGE51A/r:NLEHBv8WQqHLWuFrjVNl19lhGS1gr |
TLSH | T1A851464ABB91CEA5CC540631667FC35423B8F4797C418B2BB1C86A1B1C63A48AD97D2C |
Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/vlan_filter.bpf |
FileSize | 808 |
MD5 | 228ED9756EAEF4CA7F1D4FDF71A6E2A1 |
SHA-1 | 1D2E06156152DFB14F0605A07B921BD3EE33E0F1 |
SHA-256 | FBC7F9E622ED3D82E5B0865BC3729160217F81CC839A9FEC187F59FAA478E23D |
SSDEEP | 6:BnX//Oq/7L1tp+glXo6NlYIlz/ym6rXdWrVBwW27t4lKfNDmG5Grn:Bvmqzh2aNlfryzrXQBBj27t4Uf8GGrn |
TLSH | T116012B06F3E4EDD1CC680138607FC7781372C5A958814707BA18960E3F133C95D43081 |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/ipsec-events.rules |
FileSize | 2717 |
MD5 | 0856D4EE46CE8F22DFB2B2D639582195 |
SHA-1 | 1DDFD89E5CBAED2FC94330BEB2750F728A150607 |
SHA-256 | 0FE51C04FA33E4B2B2E536C7E7F56861A7F5E84F80534DEB0A6304FB3367945A |
SSDEEP | 48:zeRg0iH3L0kSL0G9L0zZKL0lzhA04/0RFpL0RtF6L0Rn08vL0FXKL0AXIL0dPBN3:aRg02b0k80G10zZ00lNA04/0RFx0Rtyu |
TLSH | T157516D59CFD94CB70ADBD11497ADB8F126BE4340B82B1A91B9F0FD6CC3895B1827520B |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/lb.bpf |
FileSize | 1880 |
MD5 | 4A4F5E38387CD628C159C8CCD0F3A8EB |
SHA-1 | 1F1A1AE80B6BCFE150022FBABE044D9567E32924 |
SHA-256 | 74AA1132671FBC3423EDBCD929E525B67148CFF12FD96A9621DE44E75B09CCE1 |
SSDEEP | 24:H+0P8V+twN7f11dN/7ozf9T1dN/7DlIIRJJX62aWCFt:H+48V+qN7fjdN/szf9xdN/qIbaW |
TLSH | T14641D28C7B939FF4CD65033253BAC26006B8B44DB845825BF1862C832463A9C4D97D7C |