Looking up IP
Check an IP Address, Domain Name, Subnet, or ASN
66.175.212.125 has a threat confidence score of 93%. This IP address from United States (AS63949, Akamai Connected Cloud) has been observed in 102 honeypot sessions targeting SSH, SMTP protocols. First observed on February 22, 2026, most recently active March 27, 2026.
Identifies the use of SCP in quiet mode (-q) with “to” mode (-t), indicating the remote system is receiving a file. This pattern is commonly associated with post-authentication payload delivery, lateral movement staging, or tool transfer to a compromised host.