## IP INTELLIGENCE BRIEFING: 136.109.94.197/32
Classification: Google Cloud Infrastructure - Low Risk
Generated: [Current Date]
Executive Summary
IP address 136.109.94.197 was analyzed on 2026-06-14 and classified as low-risk infrastructure. The endpoint belongs to Google LLC (ASN 396982) operating within Google Cloud infrastructure. No active threat indicators were detected during the investigation.
Technical Profile
- Organization: Google LLC
- ASN: 396982
- Location: The Dalles, Oregon, US
- Infrastructure Type: CloudCompute
- Risk Score: 25 (Low)
- Network Role: Provider/Cloud Hosting
- DNS Resolution: 197.94.109.136.bc.googleusercontent.com
- Services: Firewalled/No open ports detected
Threat Assessment
- Abuse Confidence: Not flagged
- Blacklist Status: 0 blacklist entries
- Tor Exit Node: False
- Known Attacker: False
- Spam Source: False
- Threat Indicators: None detected
The control plane analysis showed the IP is associated with BGP prefix 136.109.0.0/17. Route stability was not confirmed, and the IP appeared on 1 of 8 DNSBL lists.
Neighborhood Analysis
The /24 subnet (136.109.94.0.0/24) was examined and classified as "mostly_clean" with an abuse density of 1. Of 27 sibling relationships, 1 threat sibling was identified. The IP itself showed no active threat activity in the neighborhood context.
Historical Context
Eighteen signal observations were recorded. The most recent signals (2026-06-14) confirmed consistent geolocation to Oregon, cloud infrastructure classification, and no ownership changes. The IP demonstrates stable behavior with zero persistent malicious activity observed over the observation period.
Relationship Mapping
Twenty-seven relationship entries were documented, primarily consisting of DNS associations to the same hostname (197.94.109.136.bc.googleusercontent.com) and network associations to GOOGL-2. All relationships indicate legitimate infrastructure interconnections.
Recommendations
No immediate security actions required. The IP represents standard Google Cloud infrastructure with low-risk characteristics. Continue normal monitoring procedures. If traffic patterns indicate anomalous behavior, investigate for potential compromise of the underlying cloud tenant rather than the IP itself.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 197.94.109.136.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 197.94.109.136.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 30% | 1 | 3 |
| geolocation | 35% | 2 | 3 |
| Overall | 24% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-12 09:40:06 UTC |
| Last Seen | 2026-06-27 21:08:05 UTC |
| Profile Built | 2026-06-28 21:14:24 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 28 |
Full dossier details are available via our API.