IP Intelligence Briefing: 34.138.223.239
Date: 2026-06-08
---
**1. Core Profile**
- Risk Score: 25 (Low Risk)
- Provider: Google Cloud (ASN 396982)
- Geolocation:
- Country: United States (US)
- Region: South Carolina
- City: Moncks Corner
- Coordinates: 33.21°N, -80.17°W
- Network Role: CloudCompute infrastructure (Google Hosting)
- Ownership:
- Organization: Google LLC
- Registry: ARIN
---
**2. Threat Indicators**
- Malicious Activity: None detected.
- Blacklists: No entries.
- Known Campaigns: Not associated with any.
- DNS:
- PTR Hostname: `239.223.138.34.bc.googleusercontent.com`
- Email Auth: SPF and DMARC records present.
- Services: No open ports or TLS certificates observed.
---
**3. Observation History**
- Geo Validation:
- RTT Anomaly: Observed RTT of 35ms for 6,958km distance (minimum possible RTT: 139ms).
- Plausibility: Marked as geo-impossible (likely false positive or routing anomaly).
- Network Stability:
- BGP: Route stability score: 0.3478 (Basic operator).
- Subnet: No abuse density or risky siblings in /24 subnet.
---
**4. Relationships**
- DNS Associations: Linked to `googleusercontent.com` (legitimate).
- Network Peers:
- Same network: `GOOGL-2` (Google Cloud subnet).
- No malicious connections or correlated IPs detected.
---
**5. Neighborhood Analysis**
- Subnet: `34.138.223.239/24`
- Neighbor Risk: 0% abuse density; no active or threatening siblings.
---
**6. Recommended Actions**
- Firewall Rules: No actionable rules required (low risk).
- Monitoring: Track geo-validation anomalies and network stability metrics.
- Context: Likely benign Google Cloud infrastructure with no immediate threat indicators.
---
Conclusion: This IP is part of Google's cloud infrastructure with no evidence of malicious activity. The geo-validation discrepancy may require further investigation but does not indicate active threats. No defensive action is needed at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 239.223.138.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 239.223.138.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 2/2 domains |
| DMARC | 2/2 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 2 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 80 | http | tcp | β |
| 443 | https | tcp | β |
| 3389 | rdp | tcp | β |
| Closed Ports | 22, 25, 8080, 8443 (3 open / 7 scanned) | ||
| Server | Microsoft-IIS/10.0 |
| HTTP Title | β |
π TLS Certificate
| SANs | order.universitywafer.com |
| Valid From | 2026-06-22T11:39:03+00:00 |
| Valid Until | 2026-09-20T11:39:02+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_256_GCM_SHA384 |
| Signature Algorithm | sha256RSA |
| Validity Period | 89 days |
| Serial Number | 05BBFF3F23E26B236430918E2E01586C424E |
| Thumbprint | E3849E4B5D6BC4C44F3C457C645255E16A06EC00 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 29% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 31% | 2 | 4 |
| ownership | 17% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 24% | 10 | 18 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-17 09:10:48 UTC |
| Last Seen | 2026-06-28 04:52:55 UTC |
| Profile Built | 2026-06-28 22:57:55 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 27 |
Full dossier details are available via our API.