How to add supicious IP to address-list then reject/drop this connection?

These days, I found suspicious connections in my RouterBoard (more than 10-15 connection using protocol TCP port 5816). I suspect this is a port scanner. You can see the picture below.
I’m using firewall filter in https://wiki.mikrotik.com/wiki/Drop_port_scanners, but it is not working. Please help me, How to add this supicious IP to address-list? Then how to reject/drop this IP Address?
port scanner.png

Just make a simple drop rule in input direction with this source.