IPDebrief

34.20.215.214

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 34.20.215.214/32

Classification: Moderate Risk

Date: 2026-08-12

Analyst: IPDebrief Intelligence Team

## Executive Summary

IP address 34.20.215.214 belongs to Google Cloud infrastructure (ASN 396982, GOOGL-2 network) and presents a moderate risk profile. The IP is associated with cloud infrastructure in Los Angeles, California (US) and shows no active open ports or service exposure. Risk indicators include DNSBL listings on 2 of 8 threat intelligence feeds and control plane instability.

## Technical Profile

AttributeValue
**Risk Score**50 (Moderate)
**Organization**Google LLC
**ASN**396982
**CIDR Block**34.20.128.0/17
**Geolocation**Los Angeles, CA, US
**Provider**Google Cloud
**DNS Record**214.215.20.34.bc.googleusercontent.com
**Cloud Infrastructure**Yes
**Open Ports**None detected
**Blacklist Count**2 of 8 threat feeds

## Risk Assessment

The IP received a moderate risk score of 50, primarily driven by control plane instability (route changes observed within 30-day window) and DNSBL presence. No known attacker campaigns, spam source activity, or Tor exit node associations were identified. The IP demonstrates forward DNS confirmation and valid DNSSEC/CAA records.

Key Risk Indicators:

Mitigating Factors:

## Observation History

Signal observation history contains 21 data points, with the most recent observation recorded on 2026-08-12. The IP has demonstrated consistent cloud infrastructure classification throughout the observation period. Operator score remains at basic level (0.3478). No ownership changes have been observed.

## Network Relationships

The IP maintains 14 relationship entries, primarily DNS associations to hostname 214.215.20.34.bc.googleusercontent.com and network associations to GOOGL-2. These relationships confirm legitimate cloud infrastructure deployment.

## Neighborhood Analysis

Subnet 34.20.215.0/24 shows zero active neighbors and zero abuse density. The subnet classification is "mostly_clean" with inherited risk of 2. No threat siblings were identified in the /24 block.

## Recommended Actions

The system generated firewall rules for multiple platforms. Due to the moderate risk score and cloud provider context, analysts should evaluate business requirements before implementing blocking rules. Recommended approach:

1. Monitor traffic patterns for anomalous behavior

2. Block only if correlated with confirmed malicious activity

3. Allow if traffic matches legitimate Google Cloud service patterns

Firewall Rules (for reference):

## Conclusion

IP 34.20.215.214 is a Google Cloud infrastructure address with moderate risk. While no active threats were identified, the DNSBL listings and route instability warrant monitoring. Immediate blocking is not recommended without additional context or correlation with other threat indicators.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionCA
CityLos Angeles
TimezoneAmerica/Los_Angeles
Latitude33.94
Longitude-118.41

🏒 Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block34.4.5.0/24
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR214.215.20.34.bc.googleusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames214.215.20.34.bc.googleusercontent.com

πŸ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 β€” Basic operator with some routing infrastructure
Cloud

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
36%
24
routing
13%
11
services
21%
22
ownership
35%
23
reputation
28%
13
geolocation
35%
23
Overall28%1016
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-29 10:34:11 UTC
Last Seen2026-08-12 23:27:25 UTC
Profile Built2026-08-13 00:08:27 UTC
Data FreshnessLive
Signal Types21
Total Observations22
πŸ” 21 signal types Β· 22 observations collected
This report is generated from 21+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.