This visitor has been blocked for previous unacceptable behavior, but it's back again. This is just for your info. Note the many user agents and no referer:
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; America Online Browser 1.1; Windows NT 5.1; SV1; FunWebProducts; .NET CLR 1.1.4322; InfoPath.1; HbTools 4.8.0)"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/5.0 (Macintosh; U; PPC Mac OS X; en) AppleWebKit/125.2 (KHTML, like Gecko) Safari/125.8"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.0.1) Gecko/2008070208 Firefox/3.0.1"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/5.0 (X11; U; Linux i586; en-US; rv:1.7.3) Gecko/20050924 Epiphany/1.4.4 (Ubuntu)"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0 )"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/4.0 (compatible; MSIE 6.0; America Online Browser 1.1; Windows NT 5.1; SV1; FunWebProducts; .NET CLR 1.1.4322; InfoPath.1; HbTools 4.8.0)"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.0.1) Gecko/2008070208 Firefox/3.0.1"
50.58.nnn.nn - - "GET / HTTP/1.1" 403 - "-" "Mozilla/4.0 (compatible; MSIE 5.5; Windows NT 5.0 )"
The IP is from TW Telecom Holdings, Inc. out of Littleton, CO. Just passing the info along for anyone who has had this IP sniffing around their site.