SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)

SID: 903208073Rev: 11 views
Sourceabuse.ch/sslbl-blacklist
CreatedSeptember 15, 2025
UpdatedSeptember 15, 2025
alert tls $EXTERNAL_NET any -> $HOME_NET any (msg:"SSLBL: Malicious SSL certificate detected (QuasarRAT C&C)"; tls_cert_fingerprint; content:"29:ed:49:d6:10:78:ab:17:2e:5b:f0:30:31:80:41:1f:47:1b:fb:bc"; reference:url, sslbl.abuse.ch/ssl-certificates/sha1/29ed49d61078ab172e5bf0303180411f471bfbbc/; sid:903208073; rev:1;)

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!