ET CINS Active Threat Intelligence Poor Reputation IP group 174

7.0.35.0SID: 2403473Rev: 111389EnabledDerived4 views
History
Sourceet/open
Fileciarmy.rules
CreatedOctober 8, 2013
UpdatedAugust 31, 2026
Classificationmisc-attack
alert ip [138.84.54.29,138.94.107.151,138.94.117.37,138.94.138.93,138.94.164.100,138.94.170.51,138.94.220.73,138.94.30.97,138.94.37.9,138.94.38.222,138.94.39.216,138.94.58.182,138.94.7.68,138.97.133.111,138.97.147.33,138.97.205.23,138.97.217.61,138.97.243.42,138.97.54.73,138.99.150.71,138.99.189.154,138.99.189.164,138.99.189.165,138.99.189.219,138.99.56.235,138.99.61.72,139.144.235.132,139.144.239.185,139.144.239.72,139.144.239.78,139.162.113.212,139.162.116.22,139.162.117.40,139.162.120.104,139.162.154.211,139.162.191.192,139.162.44.243,139.162.78.6,139.162.88.198,139.170.72.127,139.170.72.128,139.170.72.176,139.170.72.249,139.170.72.254,139.170.72.40,139.170.72.57,139.170.72.76,139.170.72.99,139.170.73.184,139.170.73.62] any -> $HOME_NET any (msg:"ET CINS Active Threat Intelligence Poor Reputation IP group 174"; reference:url,www.cinsscore.com; threshold:type limit, track by_src, seconds 3600, count 1; classtype:misc-attack; sid:2403473; rev:111389; metadata:affected_product Any, attack_target Any, deployment Perimeter, tag CINS, signature_severity Major, created_at 2013_10_08, updated_at 2026_08_31;)

References

Metadata

affected productAny
attack targetAny
deploymentPerimeter
tagCINS
signature severityMajor
created at2013_10_08
updated at2026_08_31

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!