Hacker Bot FreeWebMonitoring SiteChecker/0.1 Pays a Visit
Bad bot “FreeWebMonitoring SiteChecker/0.1 (+http://www.freewebmonitoring.com)” paid a visit to one of my websites yesterday from IP address 18.104.22.168 which belongs to Canadian service provider: Canada Montreal Thst Golf Inc.
The full range of IP’s owned by Canada Montreal Thst Golf Inc. is 22.214.171.124 – 126.96.36.199
This bot is not the bot used by freewebmonitoring.com. Their bot is “FreeWebMonitoring SiteChecker/0.2 (+http://www.freewebmonitoring.com/bot.html)”
Only used by Hackers.
The “FreeWebMonitoring SiteChecker/0.1 (+http://www.freewebmonitoring.com)” User agent is not used by any legitimate bot, it’s now only used by hackers. The bot has been seen in numerous hacking attempts, some of which were successful.
Ban the FreeWebMonitoring SiteChecker/0.1 Bot
The user agent should be denied access to your website or blog. It looks for vulnerabilities in WordPress plugins, tries to exploit un-patched osCommerce and ZenCart e-commerce sites with an old admin login vulnerability.
Warning: Fraudulent Robot from Free Website Monitoring
Free Website Monitoring have posted a warning notice on their bot page about this fake bot masquerading as their web-bot;
GreenWave Online has been informed of someone who is using a robot with a forged user agent of ‘FreeWebMonitoring SiteChecker/0.1 (+http://www.freewebmonitoring.com)’. This fraudulent robot appears to crawl websites looking for vulnerabilities. It is using our old agent name in an effort to make their traffic appear more legitimate. If you see traffic with that user agent name please report it to the owners of the ip that the traffic is coming from. Read More: