INTELLIGENCE BRIEFING: IP Address 34.76.119.193/32
Classification: LOW RISK โ Cloud Infrastructure
Date of Analysis: Current
Risk Score: 25/100
---
EXECUTIVE SUMMARY
IP address 34.76.119.193 is a Google Cloud infrastructure endpoint classified as low risk with a risk score of 25. The address is geolocated to St. Ghislain, Belgium, and operates within the Google Cloud provider network (ASN 396982). No active threat indicators were detected during the intelligence assessment.
---
NETWORK CLASSIFICATION & OWNERSHIP
The IP address belongs to Google LLC (Organization: Google LLC, ASN: 396982). Control plane data indicates the address is part of the bgpPrefix 34.76.112.0/20, with route stability confirmed (isRouteStable: true, routeChanges30d: 0). The infrastructure is identified as cloud-based (isCloud: true) with service purpose described as "Firewalled / No Services." DNS resolution confirms the address resolves to googleusercontent.com domain (ptrHostnames: 193.119.76.34.bc.googleusercontent.com), with forward resolution confirmed.
---
GEOLLOCATION DATA
Geolocation data places the IP address in Belgium (BE), region WAL, city St. Ghislain. Coordinates: latitude 50.45, longitude 3.82, timezone Europe/Brussels. Geo validation shows geoPlausible: true with 150km accuracy radius. Distance from reference point: 236.8km.
---
THREAT INDICATORS & BLACKLIST STATUS
No threat indicators were identified during the current assessment. Specific findings include:
- IsTorExit: false
- IsKnownAttacker: false
- IsSpamSource: false
- BlacklistCount: 0 (current)
- DNSBL Listed Count: 1 out of 8 total lists checked
- Abuse Confidence Score: null
Historical data from 2026-06-19 indicates the IP was listed on 8 blacklists with 1 high severity listing at that time. Current profile shows no active threat feed matches or known campaign correlations.
---
NETWORK INFRASTRUCTURE & SERVICES
Network role assessment confirms Google Cloud infrastructure with cloud compute type (Infrastructure Type: CloudCompute). No open ports were detected, and no TLS certificates or HTTP services are exposed on this endpoint. The network classification flags indicate isHosting: false, isProxy: false, isMobile: false, isResidential: false.
---
OBSERVATION HISTORY ANALYSIS
Thirty signal observations were tracked over the monitoring period. Key temporal findings:
- 2026-06-25: Confirmed cloud infrastructure, not CDN, Tor, VPN, proxy, or hosting
- 2026-06-19: Listed on 8 blacklists with max severity high
- 2026-06-14: Cloud infrastructure identified within 34.76.0.0/14 block
- Ownership changes: 0
- Threat persistence days: 0
- IsPersistentlyMalicious: false
---
NEIGHBORHOOD ANALYSIS
The /24 subnet (34.76.119.0/24) shows an abuse density of 1 with classification "mostly_clean." The subnet contains 1 active sibling IP and 1 threat sibling. Inherited risk score: 2. Current neighborhood risk assessment indicates the broader subnet maintains clean classification.
---
RELATIONSHIP GRAPH
Two hundred sixteen relationships were identified for this IP address. Primary relationship types include:
- DNS Associations: 193.119.76.34.bc.googleusercontent.com (multiple entries)
- Network Associations: GOOGL-2 (same network)
- Additional relationships: 211 more entries (likely related infrastructure)
---
RECOMMENDED ACTIONS
Based on the low risk score (25/100) and confirmed Google Cloud infrastructure classification, no specific firewall rules or blocking actions were recommended. The IP address operates as a firewalled endpoint with no exposed services. Standard egress filtering and monitoring apply.
---
INTELLIGENCE CONCLUSION
IP address 34.76.119.193 represents normal Google Cloud infrastructure activity with no current malicious indicators. The historical blacklist activity from 2026-06-19 appears to have been resolved. SOC analysts should monitor for changes in threat indicators, but the IP currently does not require blocking or elevated scrutiny. Standard network hygiene measures are sufficient for this asset.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | โ |
| CIDR Block | 34.76.112.0/20 |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 193.119.76.34.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 193.119.76.34.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 38% | 2 | 5 |
| routing | 24% | 2 | 3 |
| services | 12% | 2 | 2 |
| ownership | 27% | 3 | 4 |
| reputation | 26% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 26% | 12 | 20 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:05:38 UTC |
| Last Seen | 2026-06-27 12:10:52 UTC |
| Profile Built | 2026-06-28 06:15:36 UTC |
| Data Freshness | Live |
| Signal Types | 29 |
| Total Observations | 34 |
Full dossier details are available via our API.