SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903207651Rev: 10 views
Sourceabuse.ch/sslbl-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"4e:2e:61:23:3e:1c:74:79:39:01:e4:ee:5d:d8:c1:4b:94:c3:09:48"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/4e2e61233e1c74793901e4ee5dd8c14b94c30948/; sid:903207651; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!