Check an IP Address, Domain Name, Subnet, or ASN
193.46.255.46 has a threat confidence score of 88%. This IP address from Romania (AS47890, Unmanaged Ltd) has been observed in 101 honeypot sessions targeting SIP protocols. First observed on April 10, 2026, most recently active April 26, 2026.
Identifies SIP scanning or probing activity where an attacker sends INVITE requests directly to a target IP address using randomly generated Call-ID tokens. This pattern is commonly associated with VoIP reconnaissance, SIP endpoint discovery, and automated dialer or PBX attack tooling attempting to enumerate reachable SIP services.
SIP activity where the Call-ID follows a token@IP format, a pattern commonly generated by automated scanners and SIP tooling rather than standard client implementations, indicating non-human or enumeration-driven behavior.