I think the network folks could probably block traffic to the hardcoded IP address after monitoring it.
They can they just need the tools to discover it
The newest HIPAA rules coming into effect mandate network topology management, segmentation and other controls that will eliminate the vast majority of these risks if properly implemented