IP Intelligence Briefing: 34.62.127.133
Date: 2026-06-17
---
**1. Core Profile**
- Reputation: Moderate Risk (Risk Score: 50)
- Ownership:
- ASN: 396982 (Google LLC)
- Network: GOOGL-2 (Google Cloud)
- Geolocation: New York, US (Google's infrastructure)
- Network Role:
- Type: Cloud Compute (Google Cloud)
- Classification: Firewalled / No Services
- Infrastructure: Hosting, CDN, and CloudCompute flagged as active
---
**2. Threat Indicators**
- DNSBL Listings:
- Flagged in 2/8 DNSBLs (likely benign due to cloud provider context).
- Threat Observations:
- No active malicious indicators (no malware, phishing, or C&C activity).
- BGP Prefix: 34.62.0.0/17 (Google-owned, stable).
- DNSSEC: Valid; CAA records present (secure configuration).
---
**3. Observation History**
- Recent Activity (Last 30 Days):
- DNS Resolution: Confirmed for `googleusercontent.com` (legitimate domain).
- BGP Stability: No route changes; stable for 30 days.
- Risk Trends: No significant spikes in threat signals.
- Key Metrics:
- Abuse Confidence Score: Not applicable (no abuse reports).
- Tor/Spam/Attacker Flags: All negative.
---
**4. Relationships & Network Context**
- Connected Entities:
- DNS Hostname: `133.127.62.34.bc.googleusercontent.com` (Google Cloud subdomain).
- Network: Shared subnet with `GOOGL-2` (Google's ASN 396982).
- Subnet Analysis:
- /24 Subnet: 34.62.127.0/24.
- Neighbor Risk: 1 active sibling IP (risk score: 25).
- Abuse Density: 0% (low risk in subnet).
---
**5. Actionable Insights**
- SOC Recommendations:
- Monitor: Track DNSBL listings for potential false positives or misconfigurations.
- Verify: Confirm if the IP is part of legitimate Google Cloud operations (e.g., VMs, services).
- Firewall: Allow traffic based on Google Cloud's infrastructure policies; no immediate blocking required.
- Next Steps:
- Cross-reference with internal threat feeds to validate DNSBL flags.
- Ensure no unauthorized services are exposed on this IP (though no open ports were detected).
---
Conclusion:
This IP is part of Google Cloud infrastructure and shows no direct malicious activity. The DNSBL flags may relate to cloud provider misconfigurations or benign traffic. Continue monitoring for anomalies, but no immediate defensive action is required.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.4.5.0/24 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 133.127.62.34.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 133.127.62.34.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 17% | 1 | 1 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 17% | 1 | 1 |
| Overall | 21% | 8 | 10 |
| Data Coherence | Mostly Consistent (85%) โ 1 contradiction(s) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-06-16 18:32:41 UTC |
| Last Seen | 2026-06-22 00:46:51 UTC |
| Profile Built | 2026-06-22 00:53:48 UTC |
| Data Freshness | Live |
| Signal Types | 18 |
| Total Observations | 20 |
Full dossier details are available via our API.