IPDebrief

34.106.111.119

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 34.106.111.119/32

Date: July 30, 2026

Classification: Low Risk - Google Cloud Infrastructure

---

## EXECUTIVE SUMMARY

The target IP 34.106.111.119 is identified as Google Cloud infrastructure with a low-risk profile. No malicious indicators were observed across threat feeds, blacklist databases, or behavioral analysis. The IP demonstrates stable ownership under Google LLC (ASN 396982) and operates from Salt Lake City, Utah. No security actions are currently recommended.

---

## OWNERSHIP AND INFRASTRUCTURE

AttributeValue
**Organization**Google LLC
**ASN**396982 (GOOGL-2)
**CIDR Block**34.64.0.0/10
**Geolocation**Salt Lake City, UT, US
**Network Role**Google Cloud Provider
**Service Purpose**Firewalled / No Services Detected
**Risk Score**25 (Low Risk)

The IP is registered under Google's RIR allocation with ARIN. The network prefix 34.106.96.0/20 shows route stability with origin ASN 396982, traversing AS7018 (AT&T) and AS15169 (Google). BGP path analysis confirmed the route with 30-day stability metrics showing one route change.

---

## THREAT ASSESSMENT

Threat Indicators

Reputation Sources

No threat indicators were identified across monitored threat feeds. The IP maintains clean reputation status with no associations to known malicious actors or campaigns.

---

## OBSERVATION HISTORY

Signal observation history reveals 24 data points captured across multiple categories:

The IP demonstrates persistent benign behavior with no threat observation count. Ownership changes recorded at zero, indicating stable infrastructure assignment.

---

## NETWORK RELATIONSHIPS

DNS associations reveal the IP resolves to:

The same network (GOOGL-2) shows multiple relationship entries, confirming the IP operates within Google's content delivery network infrastructure. No suspicious peer relationships or command-and-control associations were identified.

---

## NEIGHBORHOOD ANALYSIS

Subnet 34.106.111.119/24 assessment:

The surrounding subnet demonstrates no abuse activity. The IP inherits zero risk from neighboring addresses, confirming isolated benign operation.

---

## SECURITY RECOMMENDATIONS

Based on comprehensive threat intelligence analysis:

1. No blocking required - Risk score of 25 indicates low risk

2. Allow traffic - Legitimate Google Cloud infrastructure

3. Monitor for changes - Standard baseline monitoring recommended

4. No firewall rules - Actions recommendations list empty due to low risk profile

---

## CONCLUSION

IP 34.106.111.119 represents legitimate Google Cloud infrastructure with no observed malicious activity. The IP is suitable for normal network operations without special handling. SOC analysts may treat this as trusted infrastructure consistent with Google Cloud service patterns.

Final Classification: LOW RISK - APPROVED FOR NORMAL OPERATIONS

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionUT
CitySalt Lake City
TimezoneAmerica/Denver
Latitude40.76
Longitude-111.89

🏒 Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block34.64.0.0/10
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR119.111.106.34.bc.googleusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames119.111.106.34.bc.googleusercontent.com

πŸ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeSingle-Service Host
Network TierTier 3 β€” Basic operator with some routing infrastructure
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcp
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.18

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
24
routing
27%
23
services
21%
22
ownership
30%
34
reputation
17%
12
geolocation
27%
22
Overall26%1217
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceMostly Consistent (80%) β€” 1 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-25 08:45:26 UTC
Last Seen2026-08-12 19:28:33 UTC
Profile Built2026-08-12 19:34:31 UTC
Data FreshnessLive
Signal Types27
Total Observations28
πŸ” 27 signal types Β· 28 observations collected
This report is generated from 27+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.