The risk score for this supernet indicates elevated risk at the aggregated network level. Higher scores reflect stronger signals identified across related subnets.
The supernet (103.108.0.0/16) exhibits suspicious behavior characterized by repetitive, low-interaction visits to a specific site, with multiple IPs using identical or similar user agents. The lack of matching forward DNS records and the presence of diverse user agents suggest potential automation or scraping activity, raising concerns about coordinated stealth operations.
The following signals are generated automatically and do not override the overall risk score shown above.