SSLBL: Malicious SSL certificate detected (PureRAT C&C)

SID: 903210511Rev: 1EnabledDerived1 views
Filesslblacklist_tls_cert.rules
CreatedAugust 27, 2026
UpdatedAugust 27, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (PureRAT C&C)"; tls_cert_fingerprint; content:"53:e5:a7:3e:14:b1:6d:41:40:42:14:66:79:5a:21:96:a5:3e:2b:bc"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/53e5a73e14b16d4140421466795a2196a53e2bbc/; sid:903210511; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!