ET CINS Active Threat Intelligence Poor Reputation IP group 138

7.0.35.0SID: 2403437Rev: 111389EnabledDerived4 views
History
Sourceet/open
Fileciarmy.rules
CreatedOctober 8, 2013
UpdatedAugust 31, 2026
Classificationmisc-attack
alert ip [102.209.181.193,102.209.79.193,102.210.24.6,102.210.40.158,102.212.40.196,102.214.50.140,102.215.212.88,102.215.242.10,102.215.242.87,102.216.212.122,102.219.163.108,102.219.209.58,102.220.158.188,102.221.250.175,102.223.234.19,102.45.189.83,102.66.132.184,102.66.135.5,102.67.1.95,102.68.76.225,102.88.167.109,102.90.124.4,103.100.209.214,103.1.210.25,103.105.67.170,103.106.78.53,103.109.244.113,103.110.9.241,103.111.39.135,103.115.126.28,103.123.175.6,103.124.136.68,103.124.136.69,103.125.155.185,103.125.177.119,103.131.102.152,103.132.236.30,103.133.196.156,103.134.217.193,103.139.226.234,103.14.32.224,103.148.128.158,103.149.26.230,103.151.140.79,103.151.42.15,103.151.4.32,103.151.47.116,103.153.225.30,103.154.187.134,103.158.11.132] any -> $HOME_NET any (msg:"ET CINS Active Threat Intelligence Poor Reputation IP group 138"; reference:url,www.cinsscore.com; threshold:type limit, track by_src, seconds 3600, count 1; classtype:misc-attack; sid:2403437; rev:111389; metadata:affected_product Any, attack_target Any, deployment Perimeter, tag CINS, signature_severity Major, created_at 2013_10_08, updated_at 2026_08_31;)

References

Metadata

affected productAny
attack targetAny
deploymentPerimeter
tagCINS
signature severityMajor
created at2013_10_08
updated at2026_08_31

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!