SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903208024Rev: 10 views
Sourceabuse.ch/sslbl-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"df:a8:a4:b8:4b:91:b4:32:b1:b0:2b:12:5a:ed:32:bc:23:42:8a:84"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/dfa8a4b84b91b432b1b02b125aed32bc23428a84/; sid:903208024; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!