The risk score for this supernet indicates elevated risk at the aggregated network level. Higher scores reflect stronger signals identified across related subnets.
The supernet (185.185.0.0/16) exhibits suspicious behavior characterized by repetitive, low-interaction visits to the same domain across multiple IPs, with a notable lack of legitimate RDNS and forward DNS matches. The presence of various user agents, some of which are outdated or inconsistent, suggests potential automation or scraping activities rather than legitimate browsing.
The following signals are generated automatically and do not override the overall risk score shown above.