SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903208333Rev: 10 views
Sourceabuse.ch/sslbl-blacklist
CreatedOctober 26, 2025
UpdatedOctober 26, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"ec:25:c6:48:fc:25:44:bb:a7:a5:7d:59:de:6c:05:ed:f5:80:a3:77"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/ec25c648fc2544bba7a57d59de6c05edf580a377/; sid:903208333; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!