Network-level abuse protection

Protect Your Network.
Block Abuse. Automatically.

ScamFilter helps ISPs and hosting providers stop phishing, scam, malware and reported abusive domains before they reach customers.

01
Real-time intelligenceThreat sources and abuse reports
02
Automated policyCentralized rule distribution
03
Network enforcementApplied before customer access
04
Flexible deploymentAppliance, BGP or feed
ScamFilter network visualization across a world map
ScamFilter NetworkThreat policy distribution active
ApplianceTraffic stays in your network
BGP / GRERemote filtering & clean return
Threat FeedAPI / RPZ integration
Multi-tenantPer-network policies
Deployment options

Fit ScamFilter into your network architecture

Deploy inline in your own data center or route selected prefixes through the ScamFilter filtering network.

On-premise

ScamFilter Appliance

A managed Dell C6400-based node placed in your data center. Policies are controlled centrally while traffic stays local.

  • L2 transparent or L3 routed
  • Local forwarding path
  • Central policy updates
  • 10G, 100G and 400G classes
See appliance models
Internet
ISP Edge Router
ScamFilter appliance
Customer Network
Remote filtering

ScamFilter Cloud / BGP

Your selected prefixes are announced by ScamFilter, filtered at the network edge, then returned to your router over a tunnel.

  • BGP-based prefix onboarding
  • GRE / IPIP return tunnel
  • No local filtering hardware
  • Suitable for multi-site networks
Discuss BGP onboarding
Internet
SFScamFilter Network
GRE / IPIP
Customer Router
Customer Network
ScamFilter appliances

Three performance classes. One control plane.

Dell C6400-based appliances built for different traffic and policy sizes.

SF-10GEdge
SF-10G appliance
10 Gbit/sTraffic class
100,000Domain capacity

For smaller ISPs, hosting networks and initial deployments.

Request SF-10G
SF-400GScale
SF-400G appliance
400 Gbit/sTraffic class
UnlimitedDomain capacity

For high-throughput filtering and very large policy sets.

Request SF-400G

Published capacities describe the product classes offered by ScamFilter. Final throughput depends on deployment design, traffic profile and selected filtering functions.

Customers

Networks using ScamFilter technology

AS199242
Malakmadzeweb Network & Hosting
AS197328
Istanbuldc Data Center & ISP
AS199899
Rashost Network & Hosting
Control plane

From abuse report to network policy

ScamFilter combines external threat intelligence, abuse reports and customer policy into a centralized enforcement workflow.

01
Collect

Threat feeds, reports and customer submissions.

02
Analyze

Normalize domains, classify threats and apply reputation signals.

03
Decide

Apply global intelligence with customer-specific policy.

04
Deploy

Distribute policy to appliances, BGP filtering or feed consumers.

policy-engine
REPORT abusive-domain.example CHECK reputation + tenant policy CLASS scam / phishing RULE tenant: AS199242 → block SYNC edge policies updated
Technical review

Discuss your network with ScamFilter

Tell us your ASN, approximate traffic class and preferred deployment model. The form sends directly to the ScamFilter technical team.

DeploymentAppliance / BGP / Threat Feed
Appliance classes10G / 100G / 400G
Policy modelManaged & multi-tenant