# IP Intelligence Briefing: 34.24.238.93/32
## Executive Summary
IP address 34.24.238.93 is a Google Cloud infrastructure endpoint with a low-risk classification. The asset shows no malicious activity, maintains clean reputation across threat intelligence sources, and operates within a benign subnet environment.
## Host Profile
| Attribute | Value |
|---|---|
| **IP Address** | 34.24.238.93/32 |
| **Organization** | Google LLC (ASN: 396982) |
| **Network** | GOOGL-2 (34.4.5.0/24) |
| **Geolocation** | United States, South Carolina, Moncks Corner |
| **Classification** | CloudCompute / Web Server |
| **Infrastructure** | Google Cloud Platform |
## Risk Assessment
- Overall Risk Score: 0 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Blacklist Count: 0
- Known Threat Indicators: None
- Abuse Confidence: Not applicable
## Network Behavior
- Open Ports: TCP/443 (HTTPS)
- DNS Resolution: 93.238.24.34.bc.googleusercontent.com
- TLS Certificate: Issued for Kubernetes services (kubernetes.default)
- HTTP Response: Status 403 (Forbidden)
- HTTP/2: Enabled
- Security Headers: Content-Type Options (nosniff) present
## Historical Analysis
Analysis of 28 observations reveals stable, benign behavior:
- No persistent malicious activity detected
- Single threat observation recorded (likely routine scan)
- Recent activity timestamped 2026-08-12
- Ownership stability: No changes
- Threat persistence: 0 days
## Subnet Intelligence
Subnet 34.24.238.93/24 analysis:
- Abuse Density: 0%
- Classification: Clean
- Total Siblings: 2
- Active Siblings: 1
- High Risk Neighbors: 0
- Neighbor Profile: 34.24.238.158 (Risk Score: 25, Authority Score: 90)
## Entity Relationships
- Primary DNS Hostname: 93.238.24.34.bc.googleusercontent.com
- Network Association: GOOGL-2 (Google Cloud)
- No external threat correlations or campaign links identified
## Security Actions
No specific firewall rules or blocking recommendations are warranted based on the current risk profile. The IP is a legitimate Google Cloud infrastructure asset serving web traffic.
## Intelligence Conclusion
The IP 34.24.238.93/32 operates as a normal Google Cloud web server with no malicious indicators. The subnet demonstrates low abuse density, and the host maintains clean reputation across all threat intelligence feeds. No defensive action is required beyond standard monitoring of Google Cloud infrastructure.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.4.5.0/24 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 93.238.24.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 93.238.24.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 2/5 domains |
| DMARC | 2/5 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 5 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | kuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.localc7d66fc12fa64bc988bd.us-east1.cloud-gke.goog |
| Valid From | 2026-07-30T05:38:52+00:00 |
| Valid Until | 2027-07-30T05:40:52+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_128_GCM_SHA256 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 00EEDBEB3586C8FA32AAFF7F40ED278057 |
| Thumbprint | EE9BC6B0C60A03CEC378525BF0A41F7E90818A5B |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 32% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 15% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 25% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-22 13:24:24 UTC |
| Last Seen | 2026-08-12 16:55:40 UTC |
| Profile Built | 2026-08-12 17:09:16 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 30 |
Full dossier details are available via our API.