SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903208607Rev: 10 views
Sourceabuse.ch/sslbl-blacklist
CreatedDecember 18, 2025
UpdatedDecember 18, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"ac:fa:e6:aa:71:27:6b:da:a0:f8:f7:04:6e:4a:a9:25:4f:08:0c:2c"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/acfae6aa71276bdaa0f8f7046e4aa9254f080c2c/; sid:903208607; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!