This IP address has been reported a total of
245
times from
220 distinct
sources.
20.206.67.15 was first reported on
, and the most recent report was
.
Recent Reports:
We have received reports of abusive activity from this IP address within the last week. It is
potentially still actively engaged in abusive activities.
time="2026-07-21T07:05:50Z" level=info msg="Access to https://portainer.sw0ok.dev/wp-content/plugins ...
show moretime="2026-07-21T07:05:50Z" level=info msg="Access to https://portainer.sw0ok.dev/wp-content/plugins/hellopress/wp_filemanager.php (method GET) is not authorized to user <anonymous>, responding with status code 401 with location redirect to https://auth.sw0ok.dev/?rd=https%3A%2F%2Fportainer.sw0ok.dev%2Fwp-content%2Fplugins%2Fhellopress%2Fwp_filemanager.php&rm=GET" method=GET path=/api/authz/forward-auth remote_ip=20.206.67.15
time="2026-07-21T07:05:50Z" level=info msg="Access to https://portainer.sw0ok.dev/this_is_a_new_hello_world.php (method GET) is not authorized to user <anonymous>, responding with status code 401 with location redirect to https://auth.sw0ok.dev/?rd=https%3A%2F%2Fportainer.sw0ok.dev%2Fthis_is_a_new_hello_world.php&rm=GET" method=GET path=/api/authz/forward-auth remote_ip=20.206.67.15
time="2026-07-21T07:05:50Z" level=info msg="Access to https://portainer.sw0ok.dev/sql.php (method GET) is not authorized to user <anonymous>, responding with status code 401 with locat
...
show less
Multiple WAF violations. (Scanning for credential files, nonexistent PHP files, other hacker files, ...
show moreMultiple WAF violations. (Scanning for credential files, nonexistent PHP files, other hacker files, using fake and/or empty UserAgent values.)
show less
[OGWAF] bad_reputation attack blocked | severity: high | GET /wp-content/plugins/hellopress/wp_filem ...
show more[OGWAF] bad_reputation attack blocked | severity: high | GET /wp-content/plugins/hellopress/wp_filemanager.php
show less