Fake MJ12bot/v1.0.8

User-Agentとして, MJ12bot/v1.0.8 (http://majestic12.co.uk/bot.php?+) を騙る相手からDoS攻撃かと思えるような大量のアクセスをくらった. これまで,MJ12botはきちんとrobots.txtを読んで帰っていた1し,アクセス元のIPアドレスもおかしい2ので調べてみたら,"Majestic-12 : DSearch : MJ12bot“に,Fake MJ12bot v1.0.8 20 Oct 2007 - in the last few days it has been brought to our attention that a number of fake MJ12bots appeared on the Net. These bots are not ours but they use fake MJ12bot user-agent - this is something we can’t do anything about just like with email spammers who fake email addresses so we all get spammed supposedly from our own emails or someone elses. :( (snip) 28 Dec 2007 - we continue to get reports from people about fake bot. It has now became certain that this bot is actually a virus of some kind that installs itself on end user computers and turns them into botnet - currently anti-virus vendors do not appear to catch this malware, however we are working very hard trying to collect data that will help develop a cure against this virus. Yet again we stress that we have nothing whatsoever to do with those people - our software is not used, they just use fake user-agent that we started using more than 3 years ago.という説明があった.どうも,User-Agentとして"MJ12bot/v1.0.8"を騙るbotが存在するらしい.とりあえず,.htaccessでも拒否しておくことにする… ...

December 29, 2007 · Ryusuke KIKUCHI <ryusuke.kikuchi@gmail.com>