# IP INTELLIGENCE BRIEFING
IP Address: 34.14.29.189/32
Date: 2026-06-19
Classification: Low Risk โ Google Cloud Infrastructure
---
## EXECUTIVE SUMMARY
IP 34.14.29.189 is a low-risk Google Cloud infrastructure endpoint located in Belgium. The address exhibits minimal threat indicators with a risk score of 25/100. No active malicious campaigns, known attacker associations, or spam source activity have been detected. The IP is classified as cloud hosting infrastructure and appears to serve Google Cloud Storage or CDN functions.
---
## INFRASTRUCTURE PROFILE
| Attribute | Value |
|---|---|
| **Risk Score** | 25 (Low Risk) |
| **ASN** | 396982 (Google LLC) |
| **Organization** | Google LLC |
| **Infrastructure Type** | CloudCompute |
| **Geolocation** | St. Ghislain, Belgium (WAL region) |
| **Network Role** | Google Cloud Provider |
| **Hosting** | Yes |
| **CDN/Proxy/Vpn** | No |
---
## THREAT INDICATORS
Current Threat Status: CLEAN
- Known Attacker: False
- Tor Exit Node: False
- Spam Source: False
- Blacklist Count: 0
- Threat Persistence Days: 0
- Campaign Likelihood: None
- Open Ports: None detected
DNSBL Status: Listed on 1 of 8 DNSBLs (dnsblListedCount: 1) โ requires contextual review but does not indicate active compromise.
---
## NETWORK CONTEXT
Neighborhood Analysis (34.14.29.0/24):
- Abuse Density: 0
- Classification: mostly_clean
- Threat Siblings: 1
- Active Siblings: 1
- Total Siblings: 1
Control Plane:
- BGP Prefix: 34.14.0.0/17
- Route Stability: False
- RPKI State: Not available
- DNSSEC: Valid
- Operator Score: 0.3478 (Basic)
---
## OBSERVATION HISTORY
Total Observations: 20 signals recorded
Recent Signal Timeline:
- 2026-06-19: Basic operator score signals (confidence 0.22โ0.60)
- 2026-06-14: Geolocation inference for Belgium/St. Ghislain (confidence 0.56); Cloud infrastructure classification (confidence 0.90)
- 2026-05-31: Campaign likelihood signals (none detected)
Temporal Indicators:
- Ownership Changes: 0
- Threat Observation Count: 1
- Is Persistently Malicious: False
---
## RELATIONSHIP MAPPING
DNS Associations:
- 189.29.14.34.bc.googleusercontent.com (repeated associations)
Network Associations:
- GOOGL-2 (same network)
Correlated Entities: 0 additional IPs correlated to campaigns or banners
---
## SERVICE ANALYSIS
HTTP/HTTPS:
- No open ports detected
- No TLS certificates observed
- No HTTP title/banner data
Email Authentication:
- SPF: Not detected
- DMARC: Not detected
- TXT Record Count: 0
---
## RECOMMENDED ACTIONS
Risk-Based Classification: LOW โ NO IMMEDIATE ACTION REQUIRED
Firewall Rules: None recommended (risk score below threshold)
Monitoring Guidance:
1. Standard traffic monitoring advised โ no blocking required
2. Verify DNSBL listing context (1/8 lists) โ likely non-malicious false positive
3. Monitor for changes in open ports or service banners
4. No immediate threat mitigation actions warranted
---
## CONCLUSION
IP 34.14.29.189 represents legitimate Google Cloud infrastructure with minimal risk exposure. The low risk score (25), absence of threat indicators, and clean neighborhood profile support routine monitoring without intervention. No evidence of malicious activity, command-and-control, or abuse patterns was detected in available data sources.
SOC Analyst Action: Continue standard traffic monitoring. No blocking or alerting required at this time.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 189.29.14.34.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 189.29.14.34.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 24% | 2 | 3 |
| reputation | 24% | 1 | 3 |
| geolocation | 39% | 2 | 3 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) โ 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-13 06:38:21 UTC |
| Last Seen | 2026-06-27 22:49:50 UTC |
| Profile Built | 2026-06-28 16:53:42 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 26 |
Full dossier details are available via our API.