IP Intelligence Briefing: 34.27.17.97
Date: 2026-06-15
---
**1. Core Profile**
- Risk Assessment:
- Overall Risk Score: Low (25/100)
- Provider Score: 0 (Google LLC, ARIN-registed)
- Threat Indicators: No malicious activity detected (no blacklists, spam, or campaigns).
- Network Role: Google Cloud Compute instance (firewalled, no open services).
- Ownership & Geolocation:
- ASN: AS396982 (Google LLC)
- Country: United States (US)
- Region: Iowa (IA)
- City: Council Bluffs (geolocation inferred with 830km accuracy).
- Services:
- No open ports, TLS certs, or HTTP services detected.
- DNS: Linked to `googleusercontent.com` (bucket/storage service).
---
**2. Observation History (30-Day Window)**
- Activity Trends:
- Consistent Google Cloud infrastructure signals (AS396982, 34.16.0.0/12).
- No spikes in threat indicators or DNS anomalies.
- Geolocation remains stable (Council Bluffs, IA).
- Key Observations:
- 21 total signals (DNS, geolocation, network role).
- No changes in risk profile or abuse density.
---
**3. Relationships & Dependencies**
- Network Associations:
- Linked to Google Cloud network `GOOGL-2` (repeatedly observed).
- DNS: Resolves to `97.17.27.34.bc.googleusercontent.com` (likely a Google Cloud Storage bucket).
- Threat Context:
- No correlated malicious IPs, campaigns, or certificates.
- No email or TLS misconfigurations detected.
---
**4. Neighborhood Analysis**
- Subnet: 34.27.17.0/24
- Abuse Density: 0% (no malicious neighbors).
- Neighbors: No active or risky sibling IPs in the subnet.
---
**5. Actionable Insights**
- SOC Focus:
- Monitor for unexpected outbound traffic from this Cloud instance (e.g., data exfiltration).
- Verify access controls and security configurations for Google Cloud resources.
- No immediate mitigation required due to low risk.
- Recommendations:
- Use IPDebriefβs actions tool to generate firewall rules for further segmentation.
- Track long-term trends for any shifts in network behavior.
---
Conclusion: 34.27.17.97 is a legitimate Google Cloud Compute instance with no malicious activity detected. Focus on securing cloud infrastructure and monitoring for anomalies.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 97.17.27.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 97.17.27.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 30% | 2 | 3 |
| routing | 45% | 1 | 6 |
| services | 21% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 39% | 2 | 3 |
| Overall | 30% | 10 | 20 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-15 20:47:55 UTC |
| Last Seen | 2026-06-28 02:51:40 UTC |
| Profile Built | 2026-06-28 20:58:19 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 31 |
Full dossier details are available via our API.