Inspired by my own issues with referrer spam, I’ve implemented a patch to AWStats which will cause it to ignore referer URLs which match the MT-Blacklist Comment Spam blacklist.
Grab the patch from SourceForge.

More on referrer spam here, something on the proposal to eliminate this sort of spam here. Why do people do this, well this is why !

By now the spammers use a scanning robot to find websites with awstats, this is what I found in my access-log:
"GET //cgi-bin/awstats/awstats.pl HTTP/1.1" 404 233 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //cgi-bin/awstats.pl HTTP/1.1" 404 225 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //cgi/awstats.pl HTTP/1.1" 404 3006 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //awstats/awstats.pl HTTP/1.1" 403 217 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //cgi-bin/stats/awstats.pl HTTP/1.1" 404 219 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //stats/awstats.pl HTTP/1.1" 404 3067 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //awstats.pl HTTP/1.1" 404 3007 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"
"GET //cgi/stats/awstats.pl HTTP/1.1" 404 3005 "-" "Mozilla/4.0 (compatible; MSIE 6.0; Windows 98)"


So even though the awstats web-page isn't accessible, I still get spammed.

And, just to explain: it’s traffic from bots that impersonate a referral link. The pseudo traffic is designed to make their domain show up in your site analytics so that you’ll visit the site. And also to make that site rise up in the search results of search engines (see pagerank), so other people get lured too.

p.s. This page is the most visited page, that by itself must meen that visiting pages like this is also a way to spread the evil links around the internet. This page gets hit more than 10 times per day, mostly by bots attempting to show up in the stats. And it's probably because I've posted part of the access-log.