SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903209014Rev: 10 views
Sourcesslbl/ssl-fp-blacklist
CreatedFebruary 23, 2026
UpdatedFebruary 23, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"a4:9a:d7:00:b0:04:2b:6d:1e:20:15:3a:62:53:bc:c8:ff:17:cf:f2"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/a49ad700b0042b6d1e20153a6253bcc8ff17cff2/; sid:903209014; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!