TalkTalk and its scanning bot have been discussed here* before, but it appears to be newly cloaking itself. (That, or I just caught on to it.) For example:
IPs:
89.242.96.191
89.242.100.205
UA:
Mozilla/5.0 (Windows NT 6.1; WOW64) AppleWebKit/534.30 (KHTML, like Gecko) Chrome/12.0.742.112 Safari/534.30
MORE (stupidly coded, log-spamming) UAs:
(TalkTalk Virus Alerts Scanning Engine)
(compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR ; http
://www
.talktalk
.co
.uk/products/virus-alerts/)
HuaweiSymantecSpider/1.0+DSE-support
@huaweisymantec
.com+(compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; .NET CLR 2.0.50727; .NET CLR 3.0.4506.2152; .NET CLR ; http
://www
.huaweisymantec
.com/en/IRL/spider)
NOTES:
robots.txt? NO
Graphics? Externals? NO
403-Savvy? NO --
07/05 09:32:50/ 403
07/05 09:41:24/ 403
07/05 09:41:25/ 403
07/05 09:41:33/ 403
07/05 09:41:36/ 403
07/05 09:41:37/ 403
For more of its misbehaviors see:
Calling .js files directly [
webmasterworld.com...]
FYI:
For your "centralised website blocking"**, t
i
t-for-tat, convenience, the inetnum for the preceding "London TalkTalk Communications Limited" cloaked-UA+IP hits is --
89.241.0.0 - 89.243.255.255
(a.k.a.)
deny from 89.241.0.0/16
deny from 89.242.0.0/15
: )
*HuaweiSymantecSpider | Privacy, ethics [
webmasterworld.com...]
**UK: TalkTalk To Offer Centralised Site Blocking [
webmasterworld.com...]