SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903209560Rev: 10 views
Sourcesslbl/ssl-fp-blacklist
CreatedApril 16, 2026
UpdatedApril 16, 2026
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"e0:12:7c:b0:29:c9:d3:77:8d:15:d3:94:8b:41:ec:dc:8b:44:fb:03"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/e0127cb029c9d3778d15d3948b41ecdc8b44fb03/; sid:903209560; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!