File: //var/lib/modsecurity/audit/20260103/20260103-0353/20260103-035304-aVjY8LhenDUAAArtORAAAAAX
--4a07742f-A--
[03/Jan/2026:03:53:04 --0500] aVjY8LhenDUAAArtORAAAAAX 91.84.116.83 60648 127.0.1.50 80
--4a07742f-B--
GET /wp-admin/edit.php HTTP/1.1
X-Real-IP: 91.84.116.83
Host: www.coroasnet.com
Connection: close
User-Agent: Mozilla/5.0 (X11; Ubuntu; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/122.0.6261.57 Safari/537.36
Accept-Encoding: gzip, deflate, br
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/avif,image/webp,image/apng,*/*;q=0.8,application/signed-exchange;v=b3;q=0.7
Accept-Language: pt-BR,pt;q=0.9,en;q=0.8
Sec-Ch-Ua: "Not_A Brand";v="8", "Chromium";v="122", "Google Chrome";v="122"
Sec-Ch-Ua-Mobile: ?0
Sec-Ch-Ua-Platform: "Linux"
Sec-Ch-Ua-Platform-Version: "12.0.0"
Sec-Fetch-Dest: document
Sec-Fetch-Mode: navigate
Sec-Fetch-Site: same-origin
Sec-Fetch-User: ?1
Upgrade-Insecure-Requests: 1
Cache-Control: no-cache
DNT: 1
Pragma: no-cache
Referer: http://www.coroasnet.com/wp-login.php
Content-Type: application/x-www-form-urlencoded
Origin: http://www.coroasnet.com
Cookie: wordpress_test_cookie=WP+Cookie+check
--4a07742f-F--
HTTP/1.1 401 Authorization Required
WWW-Authenticate: Basic realm="Restricted"
Content-Length: 468
Connection: close
Content-Type: text/html; charset=iso-8859-1
--4a07742f-E--
--4a07742f-H--
Stopwatch: 1767430384743085 642 (- - -)
Stopwatch2: 1767430384743085 642; combined=44, p1=39, p2=0, p3=4, p4=0, p5=1, sr=29, sw=0, l=0, gc=0
Response-Body-Transformed: Dechunked
Producer: ModSecurity for Apache/2.9.1 (http://www.modsecurity.org/); 200911012341.
Server: Apache/2.2.31 (Unix) mod_ssl/2.2.31 OpenSSL/1.0.2k-fips PHP/5.3.29 mod_fastcgi/2.4.6
Engine-Mode: "ENABLED"
--4a07742f-Z--