# IP Intelligence Briefing: 136.109.147.20
Classification: Low Risk β Google Cloud Infrastructure
Date: 2026-06-16
Prepared By: IPDebrief Threat Intelligence
---
## Executive Summary
IP 136.109.147.20/32 operates within Google Cloud infrastructure and presents a low-risk profile. The address resolves to legitimate Google Cloud Compute infrastructure with no active threat indicators, blacklist listings, or malicious campaign associations. No immediate defensive actions are recommended based on current intelligence.
---
## Ownership and Registration
| Attribute | Value |
|---|---|
| Organization | Google LLC |
| ASN | 396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 136.107.0.0/16 |
| RIR | ARIN |
| Registration | Corporate data center |
DNS Resolution: The IP resolves to `20.147.109.136.bc.googleusercontent.com`, confirming association with Google's infrastructure.
---
## Network Classification
| Attribute | Value |
|---|---|
| Infrastructure Type | Cloud Compute |
| Cloud Provider | Google Cloud |
| Hosting Provider | Yes |
| Anycast | No |
| Residential | No |
| Proxy/VPN/Tor | No |
---
## Geolocation Data
| Attribute | Value |
|---|---|
| Country | United States (US) |
| Region | Oregon (OR) |
| City | The Dalles |
| Coordinates | 45.6°N, 121.18°W |
| Timezone | America/Los_Angeles |
| Geo Source Count | 2 |
| Geo Consensus | Yes |
---
## Threat Assessment
| Metric | Value |
|---|---|
| Risk Score | 25 (Low) |
| Reputation | Low Risk |
| Abuse Confidence Score | N/A |
| Blacklist Count | 0 |
| Known Attacker | No |
| Spam Source | No |
| Tor Exit Node | No |
| Threat Persistence Days | 0 |
| Is Persistently Malicious | No |
Control Plane Signals:
- BGP Prefix: 136.109.128.0/17
- Route Stability: Not stable
- DNSBL Listings: 1 of 8 lists
- Operator Score: 0.3478 (Basic)
---
## Network Neighborhood Analysis
Subnet: 136.109.147.20/24
- Abuse Density: 0 (clean)
- Classification: Mostly Clean
- Total Siblings: 1
- Threat Siblings: 1 (historical)
- Active Threat Siblings: 0
The /24 subnet demonstrates minimal abuse activity with no currently active threats.
---
## Service and Port Analysis
- Open Ports: None detected
- HTTP Services: None active
- TLS Certificates: None detected
- Server Banner: No response
- Service Status: Firewalled / No Services
---
## Historical Observation Timeline
Total Observations: 17 signals over monitoring period
| Date | Signal Type | Confidence | Key Indicators |
|---|---|---|---|
| 2026-06-16 | Control Plane | 0.60 | Basic operator score 0.3478 |
| 2026-06-16 | Full Profile | 0.25 | 6/6 dimensions covered |
| 2026-06-13 | Ownership | 0.85 | No ownership changes |
| 2026-06-13 | Subnet | 0.40 | Abuse density 1, mostly_clean |
| 2026-06-13 | Reputation | 0.75 | Alienvault-OTX threat feed match |
Trend Analysis: The IP demonstrates stable characteristics with no escalation in threat posture. One historical threat observation recorded on 2026-06-13 from Alienvault-OTX, but no persistent malicious activity detected.
---
## Relationship Graph
DNS Associations:
- `20.147.109.136.bc.googleusercontent.com` (multiple records)
Network Associations:
- GOOGL-2 network (multiple records)
---
## Defensive Recommendations
Based on current risk profile (Score: 25), no specific firewall rules or blocking actions are recommended. The IP operates within legitimate Google Cloud infrastructure with no active threat indicators.
Suggested Monitoring Approach:
- Continue standard traffic monitoring
- No blocking required
- Allow standard cloud traffic patterns
- Monitor for changes in DNS resolution or network behavior
---
## Conclusion
IP 136.109.147.20/32 represents standard Google Cloud infrastructure with low-risk characteristics. The address shows no evidence of malicious activity, abuse, or threat campaigns. SOC teams should permit normal traffic flows while maintaining standard monitoring practices. No immediate incident response actions are warranted.
---
*Intel generated by IPDebrief Platform | Authorized for Defensive Security Operations*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 136.107.0.0/16 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 20.147.109.136.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 20.147.109.136.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 24% | 1 | 3 |
| geolocation | 13% | 1 | 1 |
| Overall | 20% | 8 | 12 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-05 19:23:01 UTC |
| Last Seen | 2026-06-21 12:31:20 UTC |
| Profile Built | 2026-06-21 12:34:27 UTC |
| Data Freshness | Live |
| Signal Types | 19 |
| Total Observations | 21 |
Full dossier details are available via our API.