# INTELLIGENCE BRIEFING: 34.73.199.143/32
Classification: LOW RISK
Date: Current
Analyst: IPDebrief Intelligence Team
---
## EXECUTIVE SUMMARY
IP address 34.73.199.143 is a Google Cloud infrastructure endpoint operating from Moncks Corner, South Carolina, US. The IP maintains a low-risk profile (score: 25/100) with no known association with active threat campaigns. The endpoint hosts SSH service and is part of a mostly clean /24 subnet with minimal abuse density.
---
## OWNERSHIP & INFRASTRUCTURE
- Organization: Google LLC
- ASN: 396982
- Network Role: Google Cloud Compute (CloudCompute)
- Infrastructure Type: Cloud-hosted
- Geolocation: Moncks Corner, SC, US (33.21°N, 80.17°W)
- Timezone: America/New_York
- Geolocation Consensus: Validated across 1 source
---
## NETWORK SIGNATURES
- PTR Hostname: 143.199.73.34.bc.googleusercontent.com
- Domain: googleusercontent.com
- Open Ports: TCP/22 (SSH - OpenSSH_10.0)
- HTTP Status: 403
- TLS Cipher Suite: None detected
- Certificate Authority Records: Present (CAA validated)
- DNSSEC: Valid
---
## THREAT ASSESSMENT
| Metric | Value |
|---|---|
| Overall Risk Score | 25 (Low Risk) |
| Abuse Confidence Score | N/A |
| Blacklist Count | 1 of 8 DNSBLs |
| Known Attacker | No |
| Tor Exit Node | No |
| Spam Source | No |
| Persistent Malicious Activity | No |
Threat Indicators: None identified. No active threat campaigns or known malicious activity detected.
---
## SUBNET ANALYSIS (34.73.199.0/24)
- Abuse Density: 1 (Low)
- Classification: Mostly Clean
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
- Inherited Risk: 2
The endpoint operates within a low-abuse-density subnet with minimal threat concentration.
---
## OBSERVATION HISTORY
- Total Observations: 22
- Threat Persistence Days: 0
- Ownership Changes: 0
- Recent Activity: Signals observed from June 2026 timeframe
- Stability: No persistent malicious behavior detected
Historical telemetry indicates stable infrastructure operation with no escalation in threat indicators over the observation period.
---
## RELATIONSHIP ANALYSIS
- Total Relationships: 41
- Network Associations: GOOGL-2 (Same Network)
- DNS Associations: 143.199.73.34.bc.googleusercontent.com (repeated)
- Campaign Correlation: None identified
- Cert Matches: 0
The IP maintains standard Google Cloud infrastructure relationships with no anomalous external associations.
---
## CONTROL PLANE DATA
- BGP Prefix: 34.73.192.0/20
- Route Stability: Stable
- RPKI State: Validated
- DNSSEC Validation: Active
- Operator Score: 0.3478 (Basic)
- Delegation Age: Standard
---
## SECURITY RECOMMENDATIONS
ACCEPTABLE FOR ALLOW LISTING
Given the low-risk profile and confirmed Google Cloud infrastructure:
- Allow traffic if the IP is part of expected legitimate Google Cloud operations
- No immediate firewall blocking recommended based on current threat profile
MONITORING RECOMMENDATIONS
- Monitor SSH (port 22) traffic for unauthorized access attempts
- Track DNS queries to googleusercontent.com for expected patterns
- Continue routine monitoring for any reputation score escalation
NOT RECOMMENDED FOR BLOCKING
- No evidence of malicious activity
- Legitimate cloud infrastructure with validated security controls
- Low abuse density in parent subnet
---
## CONCLUSION
IP 34.73.199.143 represents standard Google Cloud infrastructure with no indicators of malicious activity. The endpoint maintains a stable operational profile with validated security controls. No immediate defensive action required beyond routine traffic monitoring.
---
*Intelligence generated by IPDebriefβ’ Threat Intelligence Platform*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 143.199.73.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 143.199.73.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 24% | 2 | 3 |
| ownership | 24% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 25% | 2 | 2 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-24 12:34:56 UTC |
| Last Seen | 2026-06-29 00:11:07 UTC |
| Profile Built | 2026-06-29 06:13:42 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.