## IP Intelligence Briefing: 162.216.149.54/32
Classification: Low Risk Cloud Infrastructure
Date: 2026-07-20
Analyst: IPDebrief Intelligence
Executive Summary
IP address 162.216.149.54 operates as Google Cloud Platform infrastructure with an overall risk score of 25 (Low Risk). The IP shows no active threat indicators, no open services, and belongs to a mixed-risk subnet environment. No immediate security actions are required, though the subnet context warrants monitoring.
Infrastructure Profile
Ownership and Network:
- Organization: Google LLC (ASN 396982)
- Network Name: GOOGLE-CLOUD-PLATFORM
- Registration: RIR: ARIN, Allocated: 2013-07-02
- Infrastructure Type: CloudCompute (Cloud Hosting)
- Network Role: Firewalled / No Services Detected
Geolocation:
- Country: United States (US)
- Region: South Carolina (SC)
- City: Moncks Corner
- Coordinates: 33.21°N, 80.17°W
- Timezone: America/New_York
DNS Resolution:
- PTR Record: 54.149.216.162.bc.googleusercontent.com
- Forward Resolution: Confirmed (1 hostname)
- Domain: googleusercontent.com
- Email Authentication: SPF and DMARC records present
Threat Assessment
Current Risk Score: 25 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Abuse Confidence Score: Not Available
- Threat Indicators: None Detected
- Blacklist Count: 0
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
Known Campaigns: None
Cert Matches: 0
Control Plane Signals:
- BGP Prefix: 162.216.148.0/22
- Route Stability: Unstable (non-routable prefix)
- DNSBL Listed: 1 of 8 lists
- Operator Score: 0.3478 (Basic)
- RPKI State: Not Available
Observation History
Total Observations: 21
Recent Activity (June 2026):
- ASN consistently identified as GOOGLE-CLOUD-PLATFORM (ASN 396982)
- Geolocation validation issues noted (RTT 37ms vs minimum 139.2ms for claimed distance of 6,958km)
- Subnet abuse density: 0.42 (Mixed Classification)
- No persistent malicious behavior observed
- Threat persistence days: 0
Temporal Analysis:
- Ownership changes: 0
- Not persistently malicious
- Single threat observation recorded
Neighborhood Analysis
Subnet: 162.216.149.0/24
- Total Siblings: 50
- Active Siblings: 28
- Threat Siblings: 21
- Abuse Density: 0 (Profile shows 0.42)
- Classification: Mixed
Risk Distribution in Subnet:
- High Risk: 0
- Medium Risk: 19
- Low Risk: 34
Notable Neighbors:
- 162.216.149.14 (Risk: 25, Authority: 90)
- 162.216.149.19 (Risk: 0, Authority: 50)
- 162.216.149.26 (Risk: 25, Authority: 90)
- 162.216.149.29 (Risk: 40, Authority: 90)
- 162.216.149.30 (Risk: 25, Authority: 90)
Relationships
Total Relationships: 151
Primary Relationship Types:
- DNS Associations: Multiple hostnames resolving to 54.149.216.162.bc.googleusercontent.com
- Same Network: GOOGLE-CLOUD
- Network Associations: Consistent with Google Cloud infrastructure
Security Recommendations
Current Recommendations: None
Rationale:
- Low risk profile (Score: 25)
- Google Cloud Platform infrastructure with legitimate enterprise use
- No active threat indicators or malicious activity detected
- No firewall rules required at this time
Monitoring Considerations:
- Monitor subnet 162.216.149.0/24 for abuse density changes
- 21 threat siblings in /24 warrant continued observation
- Review geolocation validation discrepancies in future observations
Conclusion
IP 162.216.149.54 represents standard Google Cloud Platform infrastructure with no immediate threat indicators. The IP shows legitimate cloud hosting characteristics, proper email authentication, and no evidence of malicious activity. While the subnet contains 21 threat-sibling IPs, this target IP itself maintains a low-risk profile. SOC analysts may monitor the subnet context but no blocking or alerting actions are warranted at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 54.149.216.162.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 54.149.216.162.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 33% | 2 | 3 |
| routing | 54% | 1 | 22 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 31% | 10 | 36 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-23 06:21:18 UTC |
| Last Seen | 2026-06-28 20:30:51 UTC |
| Profile Built | 2026-06-29 08:34:05 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 44 |
Full dossier details are available via our API.