# IP Intelligence Briefing: 34.69.250.33/32
## Executive Summary
IP 34.69.250.33 is a Google Cloud infrastructure address classified as Moderate Risk (Risk Score: 50). The address resolves to Google Cloud infrastructure in Council Bluffs, Iowa, with DNS records pointing to googleusercontent.com. The IP exhibits minimal malicious activity but appears on 2 of 8 DNSBL lists.
## Technical Profile
| Attribute | Value |
|---|---|
| **Organization** | Google LLC (ASN 396982, GOOGL-2) |
| **Network Block** | 34.64.0.0/10 |
| **Geolocation** | Council Bluffs, Iowa, US |
| **DNS Record** | 33.250.69.34.bc.googleusercontent.com |
| **Open Ports** | 22/TCP (SSH - OpenSSH_9.2p1) |
| **DNSBL Listings** | 2 of 8 lists |
| **TLS/Certificate** | None detected |
| **Route Stability** | Unstable (isRouteStable: false) |
## Threat Indicators
- Risk Score: 50/100 (Moderate)
- Known Attacker: No
- Tor Exit Node: No
- Spam Source: No
- Campaign Correlation: None identified
- Persistence: Not persistently malicious
## Historical Activity
The IP has accumulated 23 signal observations with the most recent activity recorded in August 2026. Historical data shows:
- Occasional subnet abuse density signals (abuse_density: 1 at one point)
- Single threat observation recorded
- No sustained malicious behavior pattern detected
- DNSSEC validation confirmed
## Network Neighborhood Analysis
The /24 subnet (34.69.250.33/24) shows:
- Abuse Density: 0 (clean classification)
- Total Siblings: 1
- Active Threat Siblings: 0
- No neighboring IP addresses with elevated risk profiles identified
## Relationship Graph
The IP maintains 17 relationship entities:
- Multiple DNS associations to 33.250.69.34.bc.googleusercontent.com
- Network-level associations to GOOGL-2
- No connections to suspicious external entities
## Recommended Actions
Given the moderate risk classification and minimal threat indicators, the following actions are recommended based on current risk assessment:
If blocking is required:
- iptables: `iptables -A INPUT -s 34.69.250.33 -j DROP`
- nftables: `nft add rule inet filter input ip saddr 34.69.250.33 drop`
- Cloudflare WAF: Block IP with expression `ip.src eq 34.69.250.33`
- AWS WAF: Add 34.69.250.33/32 to block list
Alternative Approach:
Given Google Cloud infrastructure origin and clean neighborhood classification, consider monitoring rather than blocking. The IP lacks active threat indicators but maintains DNSBL presence that warrants observation.
## Conclusion
IP 34.69.250.33 represents a Google Cloud infrastructure address with moderate risk classification primarily driven by limited DNSBL listings. No active malicious campaigns or persistent threat behavior observed. SOC teams should evaluate blocking requirements based on organizational policy and observed traffic patterns rather than inherent IP risk alone.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.64.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 33.250.69.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 33.250.69.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 43% | 2 | 5 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 30% | 1 | 3 |
| geolocation | 38% | 2 | 4 |
| Overall | 28% | 10 | 18 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-30 23:20:37 UTC |
| Last Seen | 2026-08-13 01:12:58 UTC |
| Profile Built | 2026-08-13 01:21:24 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 21 |
Full dossier details are available via our API.