AVG disguises fake traffic as IE6
theregister.co.uk
theregister.co.uk
And how are you going to improve if you don't know what's wrong?
It took seconds to figure out a way that could cloak malware against this AVG check.
Malware is a problem.
This is not a solution.
This is another botnet.
</tongue_in_cheek>
I'm also ignoring IE6, crappy old corporate computers be damned. It's just not worth my sanity.
Also, once enough people start redirecting the AVG robot to the AVG website, they'll just update the robot to ignore those redirects. It's antivirus software so it gets updated very often.
Convoluted? Yes. Will it work? It should, unless AVG decides to implement a full Javascript engine and DOM stack in their http fetcher. Also, the initial re-direct doesn't have to go to Grisoft, it could go each time to a randomly selected site from a list of their competitors <evil grin>.
I think AVG is really playing with fire, it's really only a matter of time before things like this start popping up as defense mechanisms.
Remember that the desired outcome here is to see fewer AVG hits, not to "screen them out" just because they're not a human being (although they are a necessary condition for a human hit coming later). Try reducing the unique URL count on your site (basically: make it more RESTful and eliminate all the query strings on broadly identical content) so they have fewer URLs to crawl. Set your caching headers properly so that they don't have an excuse to recrawl you too often. That won't force them to hit you less, but it will "help them to help you" by reducing the total bandwidth. Remember they don't want to pull any more than they have to either.
Then shouldn't AVG report the same User-Agent that the user's browser is reporting?