The risk score for this supernet indicates elevated risk at the aggregated network level. Higher scores reflect stronger signals identified across related subnets.
The supernet (103.112.0.0/16) exhibits suspicious behavior characterized by repetitive low-interaction visits, a variety of user agents, and a lack of DNS legitimacy. The presence of multiple IPs accessing the same site with similar patterns suggests potential automation or scraping activities, raising concerns about coordinated stealth operations.
The following signals are generated automatically and do not override the overall risk score shown above.