# IP INTELLIGENCE BRIEFING
Target IP: 34.181.217.120/32
Report Date: 2026-07-29
Classification: LOW RISK INFRASTRUCTURE
---
## EXECUTIVE SUMMARY
IP 34.181.217.120 is a legitimate Google Cloud Platform infrastructure address with a risk score of 25 (Low Risk). The IP resolves to Google's enterprise network (GOOGL-2) in Ashburn, VA. No active threat indicators detected. Recommended action: Allow with standard logging.
---
## INFRASTRUCTURE PROFILE
| Attribute | Value |
|---|---|
| **IP Address** | 34.181.217.120 |
| **ASN** | AS396982 (Google LLC) |
| **Organization** | GOOGL-2 (Google Cloud) |
| **CIDR Block** | 34.128.0.0/10 |
| **Geolocation** | Ashburn, VA, US |
| **Network Role** | Google Cloud Infrastructure |
| **Risk Score** | 25 (Low Risk) |
---
## THREAT INDICATORS
Current Status: No active threats detected
- Blacklist Count: 0
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
- Known Campaigns: None
- Threat Feeds: No matches
Control Plane:
- DNSBL Listed: 1/8 total lists
- Route Stability: False
- RPKI State: Not reported
---
## NETWORK BEHAVIOR
Services: No open ports detected (Firewalled/No Services)
DNS Resolution: Forward confirmed
- PTR: 120.217.181.34.bc.googleusercontent.com
- Reverse Zone: 120.217.181.34.in-addr.arpa
- DNSSEC: Valid
Infrastructure Classification:
- Cloud Provider: Google Cloud
- Connection Type: Unknown
- Anycast: False
- Hosting/Proxy/Vpn: False
---
## NEIGHBORHOOD ANALYSIS
Subnet: 34.181.217.120/24
- Abuse Density: 0
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 0
Notable Neighbor: 34.181.217.107
- Risk Score: 25
- Authority Score: 90
- Classification: Low Risk
---
## OBSERVATION HISTORY
Total Observations: 17
Recent signals (2026-07-29):
- Geolocation: Consistent Ashburn, VA reporting (0.56 confidence)
- Blacklist Monitoring: 1 high-severity listing detected
- DNS Records: CAA records confirmed, DNSSEC validation active
- ASN Attribution: AS15169 Google LLC confirmed via AlienVault OTX
Temporal Indicators:
- Ownership Changes: 0
- Threat Persistence Days: 0
- Persistently Malicious: False
---
## RELATIONSHIP GRAPH
Identified Relationships:
1. Same Network: GOOGL-2 (Google enterprise network)
2. Same Network: GOOGL-2 (duplicate mapping)
3. DNS Association: 120.217.181.34.bc.googleusercontent.com
Associated Entities: No certificates, hostnames, or external organization links detected.
---
## SECURITY ACTIONS
Recommended Actions: None
- No specific firewall rules or mitigation measures required
- Standard Google Cloud infrastructure traffic allowed
Firewall Rules: Not applicable (low-risk infrastructure)
---
## ANALYST NOTES
This IP address represents standard Google Cloud Platform infrastructure with no malicious activity indicators. The presence of a single high-severity blacklist listing warrants monitoring but does not indicate active compromise. The IP is part of Google's enterprise network with no residential, mobile, or proxy characteristics.
Recommended Handling:
- Allow standard inbound/outbound traffic
- Monitor for behavioral anomalies
- No blocking or mitigation required
---
*Intel generated by IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.128.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 120.217.181.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 120.217.181.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 30% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 27% | 2 | 2 |
| Overall | 25% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-23 13:56:59 UTC |
| Last Seen | 2026-08-12 17:45:07 UTC |
| Profile Built | 2026-08-12 17:52:40 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 25 |
Full dossier details are available via our API.