Check an IP Address, Domain Name, Subnet, or ASN
91.207.57.182 has a threat confidence score of 64%. This IP address from Belgium (AS9009, M247 Europe SRL) has been observed in 4 honeypot sessions targeting SIP protocols. First observed on April 17, 2026, most recently active April 17, 2026.
Represents an unsolicited SIP INVITE request targeting a long numeric destination, with the request accepted for processing by the SIP server (100 Trying). While the Call-ID format appears consistent with legitimate SIP implementations, the absence of prior registration and the use of a PSTN-style numeric target indicate probing of call routing or gateway behavior rather than normal call setup. This behavior is commonly observed during early-stage toll-fraud reconnaissance or PBX routing validation.