We use pf and tables here to block as well. I have huge CIDR blocks as we don't communicate directly with anyone outside the USA either.
Spam has fallen seriously. The only ones we typically see now are the residential IP blocks from Verizon or RoadRunner.. -- J.D. Bronson