/ip firewall filter 

add chain=forward protocol=tcp dst-port=25 src-address-list=spammer action=drop

add chain=forward protocol=tcp dst-port=25 connection-limit=30,32 limit=50,5 src-address-list=!spammer action=add-src-to-address-list address-list=spammer address-list-timeout=1d
