The risk score for this supernet indicates elevated risk at the aggregated network level. Higher scores reflect stronger signals identified across related subnets.
The supernet (217.217.0.0/16) exhibits suspicious behavior characterized by repetitive, low-interaction visits with a mix of legitimate and potentially malicious user agents. The presence of multiple IPs utilizing identical or crawler-like user agents, along with DNS mismatches and a focus on specific endpoints, suggests coordinated automation likely aimed at scraping or probing for vulnerabilities.
The following signals are generated automatically and do not override the overall risk score shown above.