IPDebrief

34.163.92.31

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP INTELLIGENCE BRIEFING

Target: 34.163.92.31/32

Date: Current

Classification: Cloud Infrastructure IP (Google Cloud)

Risk Score: 50/100 (Moderate Risk)

---

## EXECUTIVE SUMMARY

IP 34.163.92.31 is a Google Cloud infrastructure address within the GOOGL-2 network block (34.128.0.0/10). The IP demonstrates moderate risk scoring (50) despite being part of Google Cloud's public infrastructure. No active malicious campaigns, threat indicators, or blacklist listings detected. The subnet shows clean classification with zero abuse density and no threat siblings.

---

## INFRASTRUCTURE PROFILE

AttributeValue
**Organization**Google LLC (ASN 396982)
**Network Name**GOOGL-2
**CIDR Block**34.128.0.0/10
**Geolocation**France (FR), Île-de-France, Paris
**RIR**ARIN
**Network Type**Google Cloud (Cloud Infrastructure)
**DNS**31.92.163.34.bc.googleusercontent.com

---

## THREAT ASSESSMENT

Threat Indicators: None detected

Risk Scoring:

---

## NETWORK BEHAVIOR & SERVICES

Control Plane Data:

---

## GEOGRAPHIC OBSERVATIONS

Primary consensus location indicates France (Paris), though historical observations show coordinate variance. Geographic validation shows incomplete data with accuracy radius of 2500km. This variance is typical for cloud infrastructure that may route through multiple edge locations.

Geolocation Confidence: Low to Moderate

Consensus Location: Paris, France

---

## OBSERVATION HISTORY (17 Signals)

Temporal Analysis:

Signal Distribution:

Trend Analysis: No evidence of escalating risk behavior. IP demonstrates stability with no observed threat persistence patterns.

---

## NETWORK RELATIONSHIPS (8 Relations)

Correlated Entities: None detected outside of expected Google Cloud infrastructure relationships.

---

## NEIGHBORHOOD ANALYSIS (34.163.92.0/24)

The /24 subnet shows no adjacent malicious activity, suggesting isolated risk scoring rather than coordinated abuse.

---

## RECOMMENDED ACTIONS

Risk-Based Recommendations: Despite being Google Cloud infrastructure, the moderate risk score triggers defensive recommendations:

Firewall Rules Generated:

Contextual Note: Blocking this IP will impact legitimate Google Cloud traffic. Recommended only if the IP is observed in conjunction with other suspicious activity from the same source.

---

## INTELLIGENCE CONCLUSION

IP 34.163.92.31 represents Google Cloud infrastructure with moderate risk scoring. The lack of threat indicators, clean neighborhood classification, and stable ownership suggest this is a legitimate cloud endpoint. The moderate risk score may result from DNSBL listings (2 of 8) or routing instability rather than malicious activity.

Action Priority: LOW

Recommended Monitoring: Continue monitoring for behavioral changes

Blocking Recommended: No, unless contextual threat intelligence indicates abuse

---

*Report generated from IPDebrief intelligence platform data. Recommendations are probabilistic and should be validated with additional threat context before implementation.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ซ๐Ÿ‡ท France
RegionIDF
CityParis
TimezoneEurope/Paris
Latitude48.86
Longitude2.35

๐Ÿข Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block34.128.0.0/10
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR31.92.163.34.bc.googleusercontent.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnames31.92.163.34.bc.googleusercontent.com

๐Ÿ” DNS Hygiene

Hygiene Score100% (Excellent)
SPF1/4 domains
DMARC1/4 domains
FCrDNSVerified
DNSSECValid
CAAPresent
Domains Checked4 domains

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeWeb Server
Network TierTier 3 โ€” Basic operator with some routing infrastructure
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
443httpstcpโ€”
Closed Ports22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
CN=34.155.36.107
Issued by CN=664cc2da-4a50-4cd6-9334-ec7a86dfebc2
Self-signed: No
SANskuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.local
Valid From2026-08-11T17:04:09+00:00
Valid Until2027-08-11T17:06:09+00:00
TLS ProtocolTls13
Cipher SuiteTLS_AES_128_GCM_SHA256
Signature Algorithmsha256RSA
Validity Period365 days
Serial Number1CE91E78CAC6A1A74DAE0BF59029771D
Thumbprint94BAB28851D66BC062B86F8CD763A8D81F585616

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
23
routing
17%
11
services
24%
22
ownership
35%
23
reputation
17%
12
geolocation
17%
11
Overall24%912
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-08-05 00:08:23 UTC
Last Seen2026-08-13 07:02:57 UTC
Profile Built2026-08-13 07:21:50 UTC
Data FreshnessLive
Signal Types24
Total Observations27
๐Ÿ” 24 signal types ยท 27 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.