# IP Intelligence Briefing: 34.22.206.213/32
## Executive Summary
IP 34.22.206.213 is classified as Low Risk with a risk score of 25. The address is Google Cloud infrastructure operating from Belgium (St. Ghislain). The IP exhibits minimal threat indicators and no active services, though historical observations indicate some geolocation inconsistency and prior threat associations. No immediate blocking is required, but monitoring is recommended due to historical volatility.
---
## Current Profile Assessment
Ownership & Classification:
- Provider: Google LLC (AS396982)
- Infrastructure Type: Google Cloud Platform
- Network Role: Firewalled / No Active Services
- Classification: Cloud infrastructure, not CDN, proxy, or Tor exit
Geolocation:
- Country: Belgium (BE)
- Region/City: WAL, St. Ghislain
- Coordinates: 50.45°N, 3.82°E
- Accuracy Radius: 150 km
- Geolocation Consensus: Inconsistent across sources
Network Signals:
- DNS Resolution: 213.206.22.34.bc.googleusercontent.com (forward confirmed)
- Reverse DNS: 213.206.22.34.bc.googleusercontent.com
- Open Ports: None detected
- TLS Certificates: None
- HTTP Services: None active
Threat Indicators:
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Blacklist Count: 0
- Pulsedive Risk: Not scored
---
## Historical Observation Analysis
Observation Period: 30 signals tracked (2026-06-19 through 2026-06-23)
Key Historical Signals:
1. 2026-06-23: Recent observation shows Google Cloud infrastructure with minimal risk profile, no cloud hosting flags, and low operator score (0)
2. 2026-06-19: Earlier observation revealed US geolocation (Kansas, 37.751°N, -97.822°W) with threat indicators from AlienVault OTX, including 8 named pulses
3. DNSSEC: Valid (dnssecValid: true)
4. GeoPlausible: Yes (236.8 km from expected location)
Risk Trend: The IP demonstrates temporal inconsistency with geolocation shifting from US to Belgium and threat presence detected in earlier observations but absent in recent scans.
---
## Relationship Graph
Total Relationships: 273 entities
Primary Associations:
- Same Network: Multiple associations with GOOGL-2 network (Google infrastructure)
- DNS Associations: 213.206.22.34.bc.googleusercontent.com (hostname resolution)
- Control Plane: BGP prefix 34.22.128.0/17, AS path includes 34549, 15169, 396982
- IRR Consistency: No violations detected
Campaign Correlation: None detected (0 cert matches, 0 banner matches, 0 correlated IPs)
---
## Neighborhood Analysis
Subnet: 34.22.206.213/24
- Abuse Density: 0.0 (no abuse in immediate /24)
- Classification: Mostly clean
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
Assessment: The immediate subnet environment is clean with minimal threat activity.
---
## Recommended Security Actions
Risk Score: 25 (Low)
Immediate Actions: None required
- No firewall rules recommended
- No WAF rules required
- No blocking advised
Monitoring Recommendations:
1. Geolocation Monitoring: The IP shows inconsistent geolocation (US vs Belgium). Continue monitoring for location stability.
2. Historical Volatility: Earlier threat indicators have not resurfaced. Monitor for recurrence of threat associations.
3. Service Detection: IP is currently firewalled with no open services. Monitor for service emergence.
---
## Conclusion
IP 34.22.206.213 is low-risk Google Cloud infrastructure currently showing no active threat indicators. The IP operates from Belgium with no open services and a clean immediate subnet environment. Historical volatility (geolocation shifts, prior threat associations) warrants continued monitoring but does not justify immediate blocking. Recommend standard traffic logging and periodic reassessment.
Classification: Low Risk - Monitor
Action Required: None
Next Review: Standard periodic review recommended
---
*Intelligence generated from IPDebrief platform data. Data reflects observations as of current query time.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | โ |
| CIDR Block | 34.22.128.0/17 |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 213.206.22.34.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 213.206.22.34.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 4 |
| routing | 12% | 2 | 2 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 21% | 11 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:16 UTC |
| Last Seen | 2026-06-27 04:32:14 UTC |
| Profile Built | 2026-06-27 22:38:49 UTC |
| Data Freshness | Live |
| Signal Types | 27 |
| Total Observations | 31 |
Full dossier details are available via our API.