@ Victor – What I am looking for is the Security Log entry for this. It will look something like this example log entry below. Check your Security Log and look for a Security Log entry that looks like the example I posted. The key thing to look for is hello.php in one of the Security Log entries. Once you find the Security Log entry then copy and paste it in your forum reply.
[403 GET / HEAD Request: July 20, 2015 - 8:56 pm] Event Code: BFHS - Blocked/Forbidden Hacker or Spammer Solution: N/A - Hacker/Spammer Blocked/Forbidden REMOTE_ADDR: 52.8.249.75 Host Name: ec2-52-8-249-75.us-west-1.compute.amazonaws.com SERVER_PROTOCOL: HTTP/1.1 HTTP_CLIENT_IP: HTTP_FORWARDED: HTTP_X_FORWARDED_FOR: HTTP_X_CLUSTER_CLIENT_IP: REQUEST_METHOD: GET HTTP_REFERER: REQUEST_URI: /hello.php QUERY_STRING: HTTP_USER_AGENT: Opera/9.80 (Windows NT 6.0) Presto/2.12.388 Version/12.14