Forum Moderators: open
I don't see any mention of it on this forum or elsewhere, except in two access logs and, most interestingly, in a guestbook which seems to exist almost only to record UA strings of spam bots. A very interesting idea.
IP also has been 80.58.13.44 but same ForFarX/HttpClientIP
Almost every day for last 10 days and only asks for 1 page.
GeorgeGG
Good, bad, or ugly?
Oaf,
Either they haven't honored me with their presence or they did and I wasn't alarmed.
Usually my alarm goes off most-especially when there is a solitary line entry in my logs. My procedure is that I do a WHOIS and mark that line as a "snoop," not taking any action at that point.
There was a time when I was denying HEAD requests from future access in order to reduce spam. I no longer do that. Rather deal with the spam in mail filters.
Sorry I couldn't help you.
every day and grabbing about 200+/-
bhartzer
If you do NOT deisire it to continue visiting? Just stop it with htaccess.
There are a variety of ways to do this.
deny from 80.58.13.
will work (were it me however I'd take the entire 80.58.)
SetEnvIf User-Agent Rainbow keep_out
order allow,deny
deny from 80.58.13.
allow from all
deny from env=keep_out
as part of a more complete htaccess will also work.
I saw "Under+the+Rainbow+2.2" from "80.58.13.42" also; It visited twice: On June 21st it requested my home page only. On June 22nd it requested my links page, only. That's all -- not the 200+ pages like others experienced, but without requesting the various images, flash, etc. that are on those pages. Also, both requests were GET, not HEAD. I'm allowing it, for now.