ET CINS Active Threat Intelligence Poor Reputation IP group 173

7.0.35.0SID: 2403472Rev: 111317EnabledDerived9 views
History
Sourceet/open
Fileciarmy.rules
CreatedOctober 8, 2013
UpdatedAugust 28, 2026
Classificationmisc-attack
alert ip [131.0.31.97,131.0.51.237,131.100.11.229,131.100.131.25,131.100.254.45,131.100.41.178,131.123.42.114,131.161.1.88,131.161.217.10,131.161.65.211,131.196.200.77,131.196.43.52,131.196.77.108,131.221.50.39,131.222.247.123,131.222.253.87,131.255.101.190,131.255.118.7,131.255.152.2,131.255.203.223,131.255.46.53,131.72.60.67,131.72.87.115,131.72.87.26,132.243.204.109,132.255.129.238,132.255.181.178,132.255.181.241,132.255.65.60,132.255.67.229,132.255.74.163,134.122.113.81,134.122.117.129,134.122.118.164,134.122.119.167,134.122.125.153,134.122.127.211,134.122.21.172,134.122.22.61,134.122.28.72,134.122.38.73,134.122.56.75,134.122.62.251,134.122.90.50,134.19.229.146,134.199.159.238,134.199.163.192,134.199.173.165,134.199.209.2,134.199.225.161] any -> $HOME_NET any (msg:"ET CINS Active Threat Intelligence Poor Reputation IP group 173"; reference:url,www.cinsscore.com; threshold:type limit, track by_src, seconds 3600, count 1; classtype:misc-attack; sid:2403472; rev:111317; metadata:affected_product Any, attack_target Any, deployment Perimeter, tag CINS, signature_severity Major, created_at 2013_10_08, updated_at 2026_08_28;)

References

Metadata

affected productAny
attack targetAny
deploymentPerimeter
tagCINS
signature severityMajor
created at2013_10_08
updated at2026_08_28

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!