ET DROP Spamhaus DROP Listed Traffic Inbound group 2

7.0.35.0SID: 2400001Rev: 4813EnabledDerived13 views
History
Sourceet/open
Filedrop.rules
CreatedDecember 30, 2010
UpdatedAugust 28, 2026
Classificationmisc-attack
alert ip [23.129.252.0/23,23.132.164.0/24,23.137.100.0/24,23.142.16.0/24,23.143.16.0/24,23.146.240.0/24,23.146.241.0/24,23.146.242.0/24,23.147.52.0/24,23.147.148.0/24,23.147.156.0/24,23.147.164.0/24,23.148.144.0/24,23.164.152.0/24,23.164.153.0/24,23.172.112.0/24,23.176.184.0/24,23.235.128.0/19,23.247.176.0/22,24.137.16.0/20] any -> $HOME_NET any (msg:"ET DROP Spamhaus DROP Listed Traffic Inbound group 2"; reference:url,www.spamhaus.org/drop/drop.txt; threshold:type limit, track by_src, seconds 3600, count 1; classtype:misc-attack; flowbits:set,ET.Evil; flowbits:set,ET.DROPIP; sid:2400001; rev:4813; metadata:affected_product Any, attack_target Any, deployment Perimeter, tag Dshield, signature_severity Minor, created_at 2010_12_30, updated_at 2026_08_28;)

Metadata

affected productAny
attack targetAny
deploymentPerimeter
tagDshield
signature severityMinor
created at2010_12_30
updated at2026_08_28

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!