IPDebrief

34.105.168.162

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 34.105.168.162/32

Classification: Google Cloud Infrastructure

Risk Assessment: LOW RISK (Score: 25/100)

Date: Current Analysis

---

## OWNERSHIP & INFRASTRUCTURE

The IP address 34.105.168.162 is owned by Google LLC (ASN: 396982, Network: GOOGL-2) and operates within the 34.64.0.0/10 CIDR block. The infrastructure is classified as Google Cloud infrastructure. Reverse DNS resolves to 162.168.105.34.bc.googleusercontent.com, confirming legitimate cloud service operation.

---

## GEOLOCATION

Geolocation data indicates London, England (GB) with coordinates 51.51°N, -0.13°E. Multiple geo-source records show consensus on European placement. RTT validation was incomplete due to ICMP blocking, though geo-plausibility assessment rated as valid.

---

## THREAT ANALYSIS

Threat Indicators: None detected

Blacklist Count: 0

Abuse Confidence Score: Not applicable

Known Campaigns: None

Tor Exit Node: No

Known Attacker: No

Spam Source: No

The IP demonstrates zero threat indicators across all monitored threat feeds and reputation sources. No malicious activity patterns have been observed.

---

## NETWORK PROFILE

Services: No open ports detected; service banner analysis returned null.

DNS Configuration: Valid SPF and DMARC records present; DNSSEC validation active.

Control Plane: BGP prefix 34.105.160.0/20; route stability assessed as false. One DNS blacklist listing detected across 8 total lists.

Network Classification: Fingerprint indicates firewalled/no services.

---

## OBSERVATION HISTORY

Analysis of 24 historical observations (through August 2026) reveals consistent benign behavior:

Temporal analysis confirms stable, non-malicious operation with no risk escalation over time.

---

## NEIGHBORHOOD ANALYSIS

Subnet: 34.105.168.162/24

Abuse Density: 0.0

Risk Classification: Clean

Sibling IP Risk: 0 threats among 1 active sibling

Risk Distribution: No high, medium, or low-risk neighbors detected

The surrounding /24 subnet demonstrates clean operational characteristics with no neighboring abuse activity.

---

## RELATIONSHIP GRAPH

The IP maintains 16 documented relationships, consisting of:

Relationship patterns confirm legitimate cloud infrastructure operation within Google's ecosystem.

---

## RECOMMENDED ACTIONS

Action Level: Monitor / Allow

Firewall Policy: No blocking required; standard allow rules for Google Cloud services

Additional Mitigation: None required

Given the low-risk profile, Google Cloud ownership, absence of threat indicators, and clean neighborhood classification, no defensive blocking measures are recommended. Standard network policies for cloud infrastructure apply.

---

Analyst Notes: This IP represents legitimate Google Cloud infrastructure with no observed malicious activity. Historical data confirms sustained benign operation. No immediate threat intelligence concerns warrant investigation or blocking.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฌ๐Ÿ‡ง United Kingdom
RegionENG
CityLondon
TimezoneEurope/London
Latitude51.51
Longitude-0.13

๐Ÿข Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block34.64.0.0/10
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR162.168.105.34.bc.googleusercontent.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnames162.168.105.34.bc.googleusercontent.com

๐Ÿ” DNS Hygiene

Hygiene Score100% (Excellent)
SPF1/4 domains
DMARC1/4 domains
FCrDNSVerified
DNSSECValid
CAAPresent
Domains Checked4 domains

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierTier 3 โ€” Basic operator with some routing infrastructure
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpโ€”
Closed Ports22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=34.142.6.101
Issued by CN=ed0169a5-96f5-4a67-ad27-99de1c94940c
Self-signed: No
SANskuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.local
Valid From2026-08-07T01:14:15+00:00
Valid Until2027-08-07T01:16:15+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period365 days
Serial Number00F655F62B5BAC54A780E976FE4D79AA40
Thumbprint6F8730CD01395F0D327D503B785F1846222634EC

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
24
routing
13%
11
services
19%
22
ownership
27%
23
reputation
17%
12
geolocation
27%
23
Overall23%1015
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-26 15:20:40 UTC
Last Seen2026-08-12 20:40:08 UTC
Profile Built2026-08-12 20:55:37 UTC
Data FreshnessLive
Signal Types24
Total Observations27
๐Ÿ” 24 signal types ยท 27 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.