IP Address

179.43.150.26

IPv4 Public
CH CH
AS51852
Private Layer INC
380 Reports
This IP is on the Blacklist High confidence threat - blocking recommended
8/10 Threat
76% Confidence
380 Reports

Threat Intelligence Analysis

AI-generated security assessment based on aggregated threat data

Above Average Risk
CH
CH Location
Private Layer INC ASN 51852
380 Reports
Honeypot Data Source

Significant Threat

179.43.150.26 is a high-risk IP address with a threat level of 8/10 that has been linked to VoIP fraud activity, with 379 total reports filed through automated honeypot sensors and community reports since March 2026. The address originates from Switzerland and operates within the AS51852 autonomous system managed by Private Layer INC, a network operator whose infrastructure has now been associated with sustained abusive behavior targeting voice-over-IP systems.

Analysis of the available intelligence reveals consistent engagement with honeypot infrastructure designed to capture telephony exploits, with 379 separate incident reports logged across the March to April 2026 reporting window. The confidence score of 91 percent indicates a highly reliable attribution of malicious intent, while the activity frequency rating of 1/10 suggests this IP conducts attacks intermittently rather than continuously. The dominant threat category of VoIP fraud accounts for the plurality of reported incidents, with multiple independent sensor sources corroborating the same attack pattern against exposed phone systems.

VoIP fraud represents a significant financial threat vector where attackers exploit unprotected telephony infrastructure to route unauthorized calls, frequently directed toward premium-rate numbers to generate illicit revenue. An IP with this reputation, actively probing or attacking phone systems, poses a concrete risk to any organization running SIP-based services, Asterisk deployments, or poorly secured VoIP gateways. The fraudsters behind such activity typically seek to compromise call routing, establish dial-through schemes, or bill premium services to a victim's infrastructure, resulting in substantial unexpected charges and potential legal liability.

Organizations running VoIP services should implement immediate defensive measures including blocking this IP at the network perimeter firewall and applying geographic or protocol-based restrictions on SIP traffic from untrusted sources. Call authentication standards such as STIR/SHAKEN should be deployed to verify caller legitimacy, while monitoring systems should be configured to flag anomalous call patterns, unusual destination numbers, or off-hours telephony activity. Rate limiting on outbound calling and restricting premium-rate and international dial destinations provide additional layers of protection against this category of abuse. Tools such as fail2ban can supplement network-level blocks by automatically banning repeated offenders at the application layer.

More threatening than 80% of monitored IPs

Threat Categories

Fraud VoIP 24
Hacking 6

Technical Details

VoIP fraud exploits phone systems to make unauthorized calls, often to premium rate numbers for financial gain.

Recommended Mitigations

Implement call authentication, monitor call patterns, and restrict international/premium rate dialing.

Behavioral Analysis

Activity Pattern: Consistent Activity

Steady malicious activity over less than a day indicates persistent threat actor operations.

First Observed 2. June 2026
Last Activity 2. June 2026
Recent (7 days) 0 incidents

Reputable Network

This IP is hosted on a network (ASN 51852) with generally good reputation. The ISP Private Layer INC maintains standard security practices.

The malicious activity may represent an isolated compromised system rather than systematic abuse.

Security Recommendations

Long-term blocking recommended.

This analysis is automatically generated from aggregated, anonymized threat intelligence data. No personal information is displayed or stored. Assessment accuracy depends on available data volume and diversity.

Reputation Summary

Threat Level 8/10 High
Critical
Activity Frequency 2/10 Very Low
Confidence Score 72% High Confidence

Confidence History

4. Apr 2026 - 2. Jun 2026
76% Current
Stable Trend

The confidence score shows the reliability of the threat assessment based on the number and quality of reports.

Security Reports (30)

Date Categories Source Confidence
Hacking Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Fraud VoIP Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Fraud VoIP Honeypot 75%
Hacking Honeypot 75%
Hacking Honeypot 75%
Fraud VoIP Honeypot 75%

Technical Details

Basic Information

IP Address
179.43.150.26
IP Version
IPv4
Network Type
Public
Tor Network
No
Network Class
Class B

Geolocation

Country
CH CH
ASN
AS51852
ISP
Private Layer INC

DNS Information

Reverse DNS
hostedby.privatelayer.com
PTR Record
Yes
Connection Type
Static

Statistics

Total Reports
380
First Reported
20 Mar 2026
Last Reported
2 Jun 2026, 15:01

Network Reputation

Analysis of the entire network (ASN) that this IP address belongs to, providing context about the hosting provider and network-wide threat patterns.

Network Identity

AS51852
Private Layer INC
CH CH

Network Threat Assessment

2/10
This network appears to be relatively clean with very low threat indicators.

Network Statistics

33
Total IPs Monitored
6,369
Total Reports
193
Reports per IP

Network Context

This IP address belongs to Private Layer INC (AS51852), which manages 33 IP addresses in our monitoring system. Out of these, 6,369 have been reported for suspicious activities, resulting in a network-wide threat level of 2/10.

Network status: This network appears to be well-maintained with low threat indicators.

Comparative Analysis

How this IP compares to others in our threat intelligence database

80 %

Global Threat Ranking

This IP is more threatening than 80% of all IPs in our database.

High Threat Percentile

Global Comparison

Compared against 199,384 reported IPs worldwide

Threat Level 8/10 avg: 5.3 ++
Total Reports 380 avg: 23 ++

Network Comparison

Compared against 49 IPs in ASN 51852

Threat Level 8/10 network avg: 6.6 +
Total Reports 380 network avg: 176 ++
Network Private Layer INC has overall threat level 2/10

Geographic Comparison

Compared against 396 IPs in CH

Threat Level 8/10 country avg: 5.5 +
Total Reports 380 country avg: 45 ++
Indicators:
++ Much Higher + Higher = Similar - Lower -- Much Lower

Geographic Threat Distribution

187,017 threat incidents tracked globally • Last 24h: 18,967 Logs

FEED

Top Threat Sources

  1. 01
    US
    United States US
    38,426 20.5%
  2. 02
    IN
    India IN
    28,977 15.5%
  3. 03
    CN
    China CN
    26,016 13.9%
  4. 04
    BR
    Brazil BR
    10,249 5.5%
  5. 05
    DE
    Germany DE
    7,139 3.8%
  6. 06
    SG
    Singapore SG
    6,475 3.5%
  7. 07
    ID
    Indonesia ID
    5,533 3%
  8. 08
    RU
    Russia RU
    4,701 2.5%
  9. 09
    PK
    Pakistan PK
    4,647 2.5%
  10. 10
    NL
    Netherlands NL
    4,355 2.3%

+40 more countries

THREAT LEVEL
LOW MED HIGH

Geographic data is aggregated and anonymized. No personal information displayed.

Map: simplemaps.com (MIT License)

Related IPs

Other IPs associated with this address through network or behavioral similarity

IPs from the same Autonomous System (AS) network provider.

20 Related IPs
9/10 Avg Threat
75% Avg Confidence
19 High Threat
High-risk network: Majority of related IPs are flagged

Export & Firewall Rules

Download threat data or generate firewall rules to block this IP

JSON Report

Structured data format for integration with security tools and SIEM systems.

{
    "ip_address": "179.43.150.26",
    "threat_level": 8,
    "confidence_score": 76,
    "total_reports": 380,
    "country_code": "CH",
    "isp_name": "Private Layer INC",
    "asn": "51852",
    "first_reported": "2026-03-20 06:12:52",
    "last_reported": "2026-06-02 15:01:12",
    "exported_at": "2026-06-09T08:16:42+02:00",
    "source": "https://reportedip.de/ip/179.43.150.26/"
}

GDPR Compliant: Exports contain only IP-related threat data. No personal information or reporter details are included.