## Threat Intelligence Briefing: 34.65.86.19/32
Classification: Cloud Infrastructure IP (Low Threat Confidence)
Report Date: August 2026
Analyst: IPDebrief Intelligence
---
Executive Summary
IP 34.65.86.19 is a Google Cloud infrastructure endpoint with a moderate risk score of 50. No active threat indicators were detected. The IP is associated with legitimate cloud services and shows no evidence of malicious activity. The /24 subnet demonstrates clean abuse density (0.0) with no neighboring IPs flagged as threats.
---
Infrastructure Profile
| Attribute | Value |
|---|---|
| **Risk Score** | 50 (Moderate) |
| **Organization** | Google LLC |
| **ASN** | 396982 |
| **CIDR Block** | 34.64.0.0/10 |
| **Infrastructure Type** | Google Cloud (CloudCompute) |
| **Geolocation** | US (Multiple reports: Zurich, New York) |
| **DNS Resolution** | 19.86.65.34.bc.googleusercontent.com |
---
Threat Assessment
Indicators:
- Blacklist Count: 0
- Abuse Confidence: None reported
- Tor/Proxy/VPN: Negative
- Known Attacker: No
- Spam Source: No
- Campaigns: No associated campaigns detected
DNSBL Presence:
- Listed on 2 of 8 DNSBL feeds
- Operator Score: 0.3478 (Basic)
Services:
- No open ports detected
- No active HTTP/HTTPS services
- No TLS certificates registered
---
Historical Analysis
Observation Count: 23 signals over monitored period
Key Timeline Events:
- 2026-08-13: Multiple signals confirmed cloud infrastructure (Google Cloud, CloudCompute). Operator score recorded at 0.3478 (Basic).
- 2026-08-10: Geolocation signal indicated New York region via Comcast transit network (hop: 96.110.42.5).
Temporal Indicators:
- No ownership changes detected
- Zero threat persistence days
- No persistently malicious classification
---
Network Relationships
DNS Associations:
- 19.86.65.34.bc.googleusercontent.com (primary reverse DNS target)
Network Associations:
- GOOGL-2 network (same network relationships)
- 18 relationship records total
---
Neighborhood Analysis
Subnet: 34.65.86.0/24
- Abuse Density: 0.0 (Clean)
- Active Siblings: 0
- Threat Siblings: 0
- Total Siblings: 1
Conclusion: No adjacent IPs in the /24 subnet exhibit malicious behavior.
---
Recommended Actions
SOC Analyst Guidance:
1. Traffic Handling: No immediate blocking required. IP is legitimate Google Cloud infrastructure.
2. Monitoring: Standard logging recommended for inbound connections to internal services.
3. Egress Policy: If outbound connections from this IP are observed, verify they align with legitimate Google Cloud service usage patterns.
4. Firewall Rules: No specific firewall rules recommended beyond standard cloud provider allow-list practices.
5. Threat Hunting: No threat hunting indicators present. Focus on behavioral anomalies rather than IP reputation.
Note: The moderate risk score reflects the IP's classification as cloud infrastructure, which carries inherent risk potential due to shared infrastructure models. However, no actual malicious activity has been observed.
---
Intelligence Confidence: High
Data Sources: 4 tool queries, 23 historical observations, 18 relationship records
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.64.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 19.86.65.34.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 19.86.65.34.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 2 |
| routing | 17% | 1 | 1 |
| services | 40% | 2 | 3 |
| ownership | 35% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 35% | 2 | 3 |
| Overall | 28% | 10 | 14 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-08-05 06:12:21 UTC |
| Last Seen | 2026-08-13 07:21:54 UTC |
| Profile Built | 2026-08-13 07:39:58 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 24 |
Full dossier details are available via our API.