Elevated Risk
IP 45.148.9.200 is a high-risk address associated with VoIP fraud activity, exhibiting an 8/10 threat level with a substantial 238 abuse reports filed through automated honeypot detection systems during April–May 2026.
The IP resides within AS47890, operated by Unmanaged Ltd, and is geolocated to the United States. With a confidence score of 91% and activity frequency rated at 8/10, all 20 most recent threat reports specifically categorize the activity as VoIP fraud, with the same volume of distinct automated honeypot sensors contributing detections. The clustering of reports across a two-month window indicates sustained, deliberate targeting rather than opportunistic scanning.
VoIP fraud exploits voice-over-internet-protocol infrastructure to route unauthorized calls, frequently through premium-rate numbers or international destinations, generating illicit revenue for threat actors. An exposed VoIP service or telephony gateway associated with this address could be leveraged to relay fraudulent calls, accumulate unauthorized charges, or serve as a staging point for larger telephony-based financial crimes. The high report volume and activity frequency suggest this address has been systematically tested against multiple targets.
Network defenders should immediately block or rate-limit traffic originating from this address at the firewall level, implement call-authentication protocols such as STIR/SHAKEN on any VoIP infrastructure, and monitor call records for anomalous patterns including unexpected premium-rate or international dialing. Deploying fail2ban or similar dynamic blocking tools can automate the response to repeated suspicious connection attempts. Regular audit of telephony access credentials and restriction of international or premium-rate dialing destinations will further reduce exposure to this threat vector.