All rulesets

abuse.ch/feodotracker

Abuse.ch Feodo Tracker Botnet C2 IP ruleset

The Suricata Botnet C2 IP Ruleset contains botnet C2s tracked by Feodo Tracker and can be used for both, Suricata and Snort open source IDS/IPS. If you are running Suricata or Snort, you can use this ruleset to detect and/or block network connections towards hostline servers (IP address:port combination).