Looking up IP
Check an IP Address, Domain Name, Subnet, or ASN
159.223.181.212 has a threat confidence score of 88%. This IP address from United States (AS14061, DigitalOcean, LLC) has been observed in 20 honeypot sessions targeting SSH protocols. First observed on March 16, 2026, most recently active March 16, 2026.
Identifies the use of SCP in quiet mode (-q) with “to” mode (-t), indicating the remote system is receiving a file. This pattern is commonly associated with post-authentication payload delivery, lateral movement staging, or tool transfer to a compromised host.