Looking up IP
Check an IP Address, Domain Name, Subnet, or ASN
31.56.232.197 has a threat confidence score of 97%. This IP address from United Kingdom (AS63473, HostHatch, LLC) has been observed in 150 honeypot sessions targeting SSH protocols. First observed on April 19, 2026, most recently active April 20, 2026.
Identifies the use of SCP in quiet mode (-q) with “to” mode (-t), indicating the remote system is receiving a file. This pattern is commonly associated with post-authentication payload delivery, lateral movement staging, or tool transfer to a compromised host.