Key | Value |
---|---|
FileSize | 1890156 |
MD5 | 82CF9A463EE8A7DE834DDA76721BFF0C |
PackageDescription | Next Generation Intrusion Detection and Prevention Tool Suricata is a network Intrusion Detection System (IDS). It is based on rules (and is fully compatible with snort rules) to detect a variety of attacks / probes by searching packet content. . It can also be used as Intrusion Prevention System (IPS), and as higher layer firewall. . This new Engine supports Multi-Threading, Automatic Protocol Detection (IP, TCP, UDP, ICMP, HTTP, TLS, FTP and SMB), Gzip Decompression, Fast IP Matching and coming soon hardware acceleration on CUDA and OpenCL GPU cards. . This version has inline (NFQUEUE) support enabled. |
PackageMaintainer | Pierre Chifflier <pollux@debian.org> |
PackageName | suricata |
PackageSection | net |
PackageVersion | 1:6.0.3-2 |
SHA-1 | 7C0911C3175A43F8B7452F8C8472BE19C4CF4DAE |
SHA-256 | 8B1373387A8DD2C0EBA57F0F3C56F3D4AEFEC6225629A3B3E03A12DD8E2F9858 |
hashlookup:children-total | 53 |
hashlookup:trust | 50 |
The searched file hash includes 53 children files known and seen by metalookup. A sample is included below:
Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/lb.bpf |
FileSize | 1880 |
MD5 | DA21E32ECD7E5A93BAA726518D0E4C9D |
SHA-1 | 0101786DA5C465CF6BC73D68103A64C336B147C8 |
SHA-256 | 439EF3B642A12E4719AB2188DF6B6DA6EFB30245E960C67C86651ED1534B50AE |
SSDEEP | 12:Bs41WlmGSa3fgl2CW+FWUVcCwbI4/My2d2IC2h2sfQXSI2dhC2h2sfQXwdhzrTLo:24DavgbFWUVqiZYgZYOO2FtJX6ttF |
TLSH | T1E7415C8D73819B25CDC885314336D3702B7D600EEB968397E1243E4158635800E93DB8 |
Key | Value |
---|---|
FileName | ./usr/lib/python3/dist-packages/suricata/config/defaults.py |
FileSize | 101 |
MD5 | 2F344BB70EA225374D235F204BE3FDD5 |
SHA-1 | 062F7184AAB85081B42DE8EB50B91B2FE1964D1E |
SHA-256 | 6000739BB3A3028E1CAC768E3C5274998907678A0CA215F8DBF071EE3AE17B34 |
SSDEEP | 3:ghHK0IvBEREsz6XwKDGvs6JAWHnTey9KqK9vn:0HIJs+AiF6Znqy9E9v |
TLSH | T12EB012E910015CFCCC49D0B8F955816F3FC576D011042890A3CCDF00440003A36F9300 |
Key | Value |
---|---|
FileName | usr/lib/suricata/python/suricata/ctl/filestore.py |
FileSize | 4080 |
MD5 | 78AFF2D5DC92B41FDD492FB5715AFADA |
SHA-1 | 085DBF217A2613E905FDC9414E4CBCF8E2F7469D |
SHA-256 | 27062EE7DB7AA5CECB744E54053570D5F616211C183D996CCEB2F68A524EF8E7 |
SSDEEP | 96:tlBzlZ+161Pi1ubnWRAw7C2SQg2yKkRmvQ:tzpZ+161K1Sn2AwG2SQgZmvQ |
TLSH | T1AF81B84AA9DD20526B83455D3D0AAE14673AE9E7130D7938B2DC83643F49C3583F95FC |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./etc/suricata/suricata.yaml |
FileSize | 72577 |
MD5 | B1A4F12E285BAEBBA4AA0D292AB81C27 |
SHA-1 | 0935DB708900BAD891340BE0F28D5DFF9F5317CC |
SHA-256 | C6E509F96D33334E0B65E5E1868F6E0A23E11EE73C2706E2539EDFA197D0991E |
SSDEEP | 1536:uvGtVcaKqAFpw26drIEfO2JLeAhM+L7F+:uvGUa/AFpwddrzDM+XF+ |
TLSH | T1AD63E717760D327D0A4141B5A6AEE2C2A32991AF13F2687C70DEC16C1F0A97493F7AF5 |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/dhcp-events.rules |
FileSize | 468 |
MD5 | 75B578A0D69FEA2DFF55FD563DD11FDB |
SHA-1 | 0EC7C604D63A6D5F0D13DE233A7082AEA82F0F2A |
SHA-256 | 5933091963637E6E3CE784AB1656B189A29528D1ABD1C69F5E792BD581E7DFCF |
SSDEEP | 12:2VfFYLnTm8zOx0t9p0W0wG+c82dx020W4G+c80:yfqLLzm0t9p0W0wT27020W4T0 |
TLSH | T151F02E6583F0196613CB61D8C6CA28D8653F8743BD182840BCF0BD58D388120927211B |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/tls-events.rules |
FileSize | 6861 |
MD5 | 024345CE860EEFA8F52E2AD048CFA28B |
SHA-1 | 0EE805D5DD1986CA4D0702FA7A30D200924C39AA |
SHA-256 | 55ECADA06F608DE57345C839B284D336915A47DE070DFC0ADB06C6E9308C13A9 |
SSDEEP | 96:aAa+0CtO0wtnh0Ytw0ytI0dutr0jtS0+bt/0i1tZ0WtH0gtk05BQN0vQa0CQr/0g:atbMbfEEN |
TLSH | T18EE13A468FA048BD0BCA512C41AEE9E276FD4793796929416DF97E1C83C8BF051342E6 |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/modbus-events.rules |
FileSize | 2078 |
MD5 | 64FD31BB768F6850C9AD506ECEF18260 |
SHA-1 | 14EC79C026093406155CAA093B47AD65B27BC78E |
SHA-256 | 9AA717E2DCA317271E7A484E14C38CB8E666BA5716E9B5FBC413EB18F85BB632 |
SSDEEP | 48:H030ag920TTWo0Km0YO0BFMD09WhL09t20IdvtB0eXO0V5UT:H0kagU0TTN0Km0YO0B2D09Wx09t20IdG |
TLSH | T1A9412815DFF408F90BC3815895AEA4E626BE52C1BA1D55B1FEB0BE48E38C970C23214A |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | usr/share/suricata/rules/ipsec-events.rules |
FileSize | 2717 |
MD5 | 0856D4EE46CE8F22DFB2B2D639582195 |
SHA-1 | 1DDFD89E5CBAED2FC94330BEB2750F728A150607 |
SHA-256 | 0FE51C04FA33E4B2B2E536C7E7F56861A7F5E84F80534DEB0A6304FB3367945A |
SSDEEP | 48:zeRg0iH3L0kSL0G9L0zZKL0lzhA04/0RFpL0RtF6L0Rn08vL0FXKL0AXIL0dPBN3:aRg02b0k80G10zZ00lNA04/0RFx0Rtyu |
TLSH | T157516D59CFD94CB70ADBD11497ADB8F126BE4340B82B1A91B9F0FD6CC3895B1827520B |
tar:gname | root |
tar:uname | root |
Key | Value |
---|---|
FileName | ./usr/share/doc/suricata/README.Debian |
FileSize | 2764 |
MD5 | 1944D6053424944A81BC6A2FA3EE4BDF |
SHA-1 | 2103A4D04021FF3A17260BD285CB91D04D37A370 |
SHA-256 | 36FF0F6B1C568D2A3D2B63AFA3FF20D1A91D12AC959D1FD277155B13DB086A75 |
SSDEEP | 48:aGFZLEUU+Tpb0Ifz380i0ss3nAIbRDQ+DIZFpkKYj450BwB1xYwEZd2z:lbf9Tss3pRQDka7Id2z |
TLSH | T1335156C31E0086F58412FA7EDA4E11E4EB1978BC32A67C321BEDA844B41553433FDA65 |
Key | Value |
---|---|
FileName | ./usr/lib/suricata/ebpf/bypass_filter.bpf |
FileSize | 2472 |
MD5 | C71F1AEA704F7C42F00F7DD19A172BAC |
SHA-1 | 25E6AFE441962CE7AFCCB957BB6DAE0DD019756E |
SHA-256 | E99E01A74F407603EA23039A27895901ED3032399A39A54A66820E3E1ABE870E |
SSDEEP | 24:24Wj98akGenAEWR0cFHFSWJaoTK6hMj33/dU/a5VxDk4BTjO0u8:kR8V1Ah0cF48a+hgPd159u8 |
TLSH | T1FB51598AB3D1DF21C81982315667C36576B97865FEA1075BF2102F468CB3E408D73E94 |