# INTELLIGENCE BRIEFING: 136.117.72.194/32
## Executive Summary
IP address 136.117.72.194 is classified as Low Risk (Risk Score: 25) with ownership attributed to Google LLC (ASN 396982, GOOGL-46). The endpoint operates within Google's cloud infrastructure and presents a benign profile with no active threat indicators.
## Ownership and Infrastructure
- Organization: Google LLC
- ASN: 396982 (GOOGL-46)
- CIDR Block: 136.112.0.0/12
- Network Role: Provider infrastructure (Google Cloud)
- Classification: Cloud infrastructure endpoint
## Geolocation
- Country: United States (US)
- Region: Oregon
- City: The Dalles
- Coordinates: 45.6°N, -121.18°W
- Timezone: America/Los_Angeles
- Geo Source Count: 2 (consensus confirmed)
## DNS and Network Services
- PTR Hostname: 194.72.117.136.bc.googleusercontent.com
- Domain: googleusercontent.com
- Forward Resolution: Confirmed
- Email Authentication: SPF and DMARC records present
- Open Ports: None detected
- HTTP Services: None detected (firewalled/no services)
## Threat Intelligence Assessment
- Abuse Confidence Score: Not available
- Blacklist Count: 0
- Known Campaigns: None identified
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- DNSBL Listings: 1 of 8 total lists
## Control Plane Analysis
- BGP Prefix: 136.117.0.0/17
- Origin ASN: 396982
- DNSSEC Valid: Yes
- CAA Records: Present
- Route Stability: Unstable
- Operator Score: 0.3478 (Basic)
- Route Changes (30d): 0
## Neighborhood Analysis (136.117.72.0/24)
- Abuse Density: 0.5 (Moderate)
- Classification: Mostly Clean
- Total Siblings: 2
- Active Siblings: 2
- Threat Siblings: 1
- Neighboring IP: 136.117.72.6 (Risk Score: 20, Authority Score: 90)
## Signal History (22 Observations)
- Latest Signal: 2026-08-05 (Subnet abuse density: 0.5, Classification: mostly_clean)
- Previous Signal: 2026-07-30 (Geolocation discrepancy noted - New York, NY via Comcast routing)
- Threat Persistence Days: 0
- Ownership Changes: 0
## Key Relationships
- Primary Association: GOOGL-46 network (Google infrastructure)
- DNS Associations: 194.72.117.136.bc.googleusercontent.com
- Network Type: Google Cloud infrastructure
## Recommended Actions
No immediate security actions recommended. The IP presents as legitimate Google Cloud infrastructure with no active threat indicators. Standard monitoring practices apply.
## Intelligence Assessment
This IP belongs to Google's cloud infrastructure and maintains a low-risk profile. The endpoint is firewalled with no active services exposed. The subnet shows moderate abuse density, with one threat sibling detected. No historical malicious activity observed. Recommend continued monitoring but no immediate mitigation actions required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-46 |
| CIDR Block | 136.112.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 194.72.117.136.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 194.72.117.136.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 1/2 domains |
| DMARC | 1/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 3389, 8080, 8443 (2 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.15 |
π TLS Certificate
| SANs | 09317a14998f0645ebd0c267fd200a8b.eca88a698992a29866f01fb02d4abd7c.traefik.default |
| Valid From | 2026-08-05T20:52:34+00:00 |
| Valid Until | 2027-08-05T20:52:34+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_128_GCM_SHA256 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 0088312C55E35E86B6388F2005661893AF |
| Thumbprint | 58208D5F9855FFF26815FD3F72474594CF3FA821 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 32% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 33% | 2 | 4 |
| Overall | 26% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-26 15:19:56 UTC |
| Last Seen | 2026-08-12 20:31:36 UTC |
| Profile Built | 2026-08-12 20:45:35 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 27 |
Full dossier details are available via our API.