Looking up IP
Check an IP Address, Domain Name, Subnet, or ASN
159.89.227.171 has a threat confidence score of 84%. This IP address from United States (AS14061, DigitalOcean, LLC) has been observed in 17 honeypot sessions targeting SSH protocols. First observed on March 20, 2026, most recently active March 20, 2026.
Identifies the use of SCP in quiet mode (-q) with “to” mode (-t), indicating the remote system is receiving a file. This pattern is commonly associated with post-authentication payload delivery, lateral movement staging, or tool transfer to a compromised host.