SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903207458Rev: 10 views
Sourcesslbl/ssl-fp-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"1e:d7:45:94:11:17:89:27:ae:b6:a1:df:24:47:24:b0:d8:63:8e:4d"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/1ed7459411178927aeb6a1df244724b0d8638e4d/; sid:903207458; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!