File: //var/lib/modsecurity/audit/20251018/20251018-2031/20251018-203153-aPQxebhenDUAACU07eIAAAAb
--3cf16f5a-A--
[18/Oct/2025:20:31:53 --0400] aPQxebhenDUAACU07eIAAAAb 4.240.98.173 33176 127.0.1.98 80
--3cf16f5a-B--
GET /wp-admin/css/colors/blue/file.php HTTP/1.1
X-Real-IP: 4.240.98.173
Host: suirt.com
Connection: close
User-Agent: Mozilla/5.0 (Linux; Android 7.0; SM-G892A Build/NRD90M; wv) AppleWebKit/537.36 (KHTML, like Gecko) Version/4.0 Chrome/60.0.3112.107 Mobile Safari/537.36
Accept-Encoding: gzip, deflate
Accept: */*
--3cf16f5a-F--
HTTP/1.1 401 Authorization Required
WWW-Authenticate: Basic realm="Restricted"
Content-Length: 460
Connection: close
Content-Type: text/html; charset=iso-8859-1
--3cf16f5a-E--
--3cf16f5a-H--
Stopwatch: 1760833913552855 1422 (- - -)
Stopwatch2: 1760833913552855 1422; combined=49, p1=46, p2=0, p3=3, p4=0, p5=0, sr=31, sw=0, l=0, gc=0
Response-Body-Transformed: Dechunked
Producer: ModSecurity for Apache/2.9.1 (http://www.modsecurity.org/); 200911012341.
Server: Apache/2.2.31 (Unix) mod_ssl/2.2.31 OpenSSL/1.0.2k-fips PHP/5.3.29 mod_fastcgi/2.4.6
Engine-Mode: "ENABLED"
--3cf16f5a-Z--