SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903207470Rev: 10 views
Sourceabuse.ch/sslbl-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"35:36:e1:5d:f2:6b:bc:1f:1e:07:a8:ec:8e:1e:7f:79:39:ca:be:a6"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/3536e15df26bbc1f1e07a8ec8e1e7f7939cabea6/; sid:903207470; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!