The risk score for this supernet indicates elevated risk at the aggregated network level. Higher scores reflect stronger signals identified across related subnets.
The supernet (123.30.0.0/16) exhibits suspicious behavior characterized by low-interaction, one-page visits across multiple IPs, with a mix of user agents that suggest potential automation or scraping activities. The lack of matching forward DNS records raises concerns about the legitimacy of the traffic, indicating possible misuse of infrastructure.
The following signals are generated automatically and do not override the overall risk score shown above.