# IP Intelligence Briefing: 34.26.136.102/32
## Executive Summary
IP address 34.26.136.102 is a Google Cloud infrastructure endpoint located in North Charleston, South Carolina. The IP exhibits moderate risk scoring (50) with no active threat indicators, no known malicious campaigns, and no threat siblings in the neighborhood. No immediate blocking action is recommended; monitor for contextual correlation with other signals.
## Technical Profile
Ownership & Infrastructure:
- ASN: 396982 (Google LLC)
- Organization: Google LLC
- Network: GOOGL-2 (34.4.5.0/24)
- RIR: ARIN
- Infrastructure Type: Google Cloud provider
Geolocation:
- Country: United States (US)
- Region: South Carolina
- City: North Charleston
- Accuracy Radius: 2500km
Network Characteristics:
- DNS PTR: 102.136.26.34.bc.googleusercontent.com
- Forward Resolution: googleusercontent.com (confirmed)
- Email Auth: SPF and DMARC records present
- Open Ports: None detected
- Service State: Firewalled / No Services
- TLS Certificate: Not detected
Threat Indicators:
- Risk Score: 50 (Moderate Risk)
- Blacklist Count: 0
- Pulsedive Risk: Not detected
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
- Known Campaigns: None
- Abuse Confidence Score: Not applicable
Control Plane:
- BGP Prefix: 34.26.0.0/16
- Origin ASN: 396982
- Route Stability: False
- DNSBL Listed: 2 of 8 total lists
- Operator Score: 0.3478 (Basic)
- DNSSEC Valid: Yes
- CAA Records: Yes
## Observation History Analysis
19 observations recorded as of 2026-07-31. No persistent malicious behavior detected. Ownership has remained stable with zero ownership changes. No threat persistence days observed. Recent signals indicate:
- Subnet classification: Clean
- Abused density: 0
- Threat siblings: 0
- No campaign correlations
## Neighborhood Analysis
Subnet: 34.26.136.102/24
- Abuse Density: 0
- Classification: Clean
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 0
- High/Medium/Low Risk Neighbors: 0/0/0
The surrounding subnet exhibits no abuse indicators, suggesting this IP is operating within a benign Google Cloud environment.
## Relationship Graph
12 relationships identified:
- DNS Associations: 102.136.26.34.bc.googleusercontent.com (multiple entries)
- Same Network: GOOGL-2 (multiple entries)
- No external organizational or hostname relationships beyond Google infrastructure
## Recommended Actions
Current Risk Level: Moderate Risk (50) - Monitor
Recommended Firewall Rules:
- iptables: `iptables -A INPUT -s 34.26.136.102 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 34.26.136.102 drop`
- nginx: `deny 34.26.136.102;`
- pfSense: `34.26.136.102/32`
- Cloudflare WAF: Block with expression `ip.src eq 34.26.136.102`
- AWS WAF: `["Addresses":["34.26.136.102/32"]]`
Operational Recommendation:
The IP is associated with Google Cloud infrastructure with no active threat indicators. The moderate risk score (50) likely reflects general infrastructure risk rather than specific malicious activity. No immediate blocking is required. Monitor for:
- Outbound connections from internal systems to this IP
- Anomalous traffic patterns from this IP to your network
- Correlation with other Google Cloud IPs in the 34.26.0.0/16 prefix
If this IP appears in traffic logs, investigate the context of connections. Default allow or block policies should be adjusted based on your organization's threat tolerance and existing Google Cloud connectivity.
---
*Generated by IPDebrief Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.4.5.0/24 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 102.136.26.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 102.136.26.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 30% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 25% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-30 17:12:06 UTC |
| Last Seen | 2026-08-13 00:59:04 UTC |
| Profile Built | 2026-08-13 01:24:47 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 28 |
Full dossier details are available via our API.