IPDebrief

34.120.24.208

IP Intelligence Dossier
Your IP: 216.73.217.34
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

IP Intelligence Briefing: 34.120.24.208/32

Risk Assessment

The target IP registered a Low Risk reputation score of 25. Despite the low risk classification, the system flagged the address as a Suspicious Host due to high-profile signal inconsistencies.

Ownership and Infrastructure

Registry data identifies the address as belonging to Google LLC (ASN 396982, Netname GOOGL-2). The infrastructure is classified as Google Cloud hosting web server services.

Technical Profile

Scans confirmed open ports 80 (HTTP) and 443 (HTTPS). TLS certificates were issued by Sectigo for `*.di.atlas.samsung.com`. HTTP probes returned a 404 status code. DNS resolution confirmed the hostname `208.24.120.34.bc.googleusercontent.com`.

Observations and Anomalies

Three contradictions compromised the profile's coherence:

1. Geographic data lists the US (Kansas City, MO), while the TLS certificate claims a Korean origin (Gyeonggi-do).

2. Geo validation measurements indicated a distance of 7328km with an average RTT of 22.6ms, violating physics minimums for that distance.

3. Geographic sources disagreed on the country of origin.

Operational Recommendation

Due to multiple signal contradictions and an unreliable profile, the recommended action is to Rate-Limit traffic.

* Severity: Medium

* Justification: Unreliable profile data and significant signal contradictions.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionMO
CityKansas City
TimezoneAmerica/Chicago
Latitude38.46
Longitude-92.29

🏒 Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block34.64.0.0/10
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR208.24.120.34.bc.googleusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames208.24.120.34.bc.googleusercontent.com

πŸ” DNS Hygiene

Hygiene Score80% (Excellent)
SPF3/3 domains
DMARC3/3 domains
FCrDNSVerified
DNSSECNot signed
CAAPresent
Domains Checked3 domains

☁️ Network Classification

InfrastructureUnknown
Service PurposeWeb Server
Network TierHosting β€” Infrastructure provider without advanced routing
No specific classification

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
80httptcpβ€”
443httpstcpβ€”
Closed Ports22, 25, 3389, 8080, 8443 (2 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
CN=*.di.atlas.samsung.com, O="SAMSUNG ELECTRONICS CO,.LTD", S=Gyeonggi-do, C=KR
Issued by CN=Sectigo Public Server Authentication CA OV R36, O=Sectigo Limited, C=GB
Self-signed: No
SANs*.di.atlas.samsung.comdi.atlas.samsung.com
Valid From2026-03-18T00:00:00+00:00
Valid Until2026-10-02T23:59:59+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_256_GCM_SHA384
Signature Algorithmsha256RSA
Validity Period198 days
Serial Number21B348C2A338BA9C3441C6782B0DD2BF
ThumbprintB55431E914F36F0C2B507FF3D74801152376ED2D

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
27%
23
routing
13%
11
services
27%
23
ownership
27%
23
reputation
13%
12
geolocation
27%
23
Overall22%1015
Coverage: 4/6 dimensions Β· Data sufficiency: partial
Data CoherenceContradictory (48%) β€” 3 contradiction(s)
AttributionLow (40%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement
⚠ Geo sources disagree on country: KR, US
⚠ TLS certificate claims KR but primary geo says US

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-09-17 03:51:18 UTC
Last Seen2026-09-25 09:52:46 UTC
Profile Built2026-09-25 10:09:11 UTC
Data FreshnessLive
Signal Types25
Total Observations35
πŸ” 25 signal types Β· 35 observations collected
This report is generated from 25+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.