# Intelligence Briefing: IP 34.76.2.52/32
Classification: LOW RISK β Google Cloud Infrastructure
Date: Intelligence Summary
Source: IPDebrief Threat Intelligence Platform
---
## Executive Summary
IP 34.76.2.52 is a Google Cloud Compute resource with a risk score of 25 (Low Risk). The address belongs to Google LLC (ASN 396982) within the GOOGL-2 CIDR block (34.64.0.0/10). No active threat indicators, campaigns, or malicious activity have been observed. The IP is classified as cloud infrastructure with hosting capabilities and is part of Google's firewalled network environment.
---
## Infrastructure Profile
| Attribute | Value |
|---|---|
| **Organization** | Google LLC |
| **ASN** | 396982 |
| **Network** | GOOGL-2 (34.64.0.0/10) |
| **BGP Prefix** | 34.76.0.0/20 |
| **Infrastructure Type** | Cloud Compute (Google Cloud) |
| **Geolocation** | US (Brussels Capital region) |
| **DNS Resolution** | 52.2.76.34.bc.googleusercontent.com |
| **Email Reputation** | SPF and DMARC configured |
---
## Threat Assessment
Overall Risk Score: 25 (Low)
Threat Indicators:
- No known attacker signatures detected
- No Tor exit node activity
- Not listed as spam source
- Zero blacklist entries
- No associated threat campaigns
- No open ports or active services detected
Control Plane Analysis:
- BGP routing stable (route changes: 0 in 30 days)
- DNSSEC valid
- CAA records present
- 1 DNSBL listing among 8 total lists (minimal impact)
- Operator score: 0.3478 (Basic classification)
---
## Neighborhood Analysis
Subnet: 34.76.2.0.0/24
Abuse Density: 1 (Minimal)
Classification: Mostly Clean
Threat Siblings: 1
Active Siblings: 1
The surrounding /24 subnet shows minimal abuse activity consistent with Google Cloud infrastructure patterns. No significant risk distribution anomalies detected.
---
## Historical Observation Summary
Total Observations: 51
Observation Period: Recent timeframe
Threat Persistence: 0 days (No persistent malicious activity)
Ownership Changes: 0
Historical signals indicate consistent cloud infrastructure behavior with stable DNS and operator scores. No escalating threat patterns observed across the observation window.
---
## Relationship Graph
Total Relationships: 189
Key Associations:
- Multiple same-network references to GOOGL-2
- DNS hostname associations: 52.2.76.34.bc.googleusercontent.com
- Infrastructure network clustering within Google's cloud ecosystem
---
## Recommended Actions
Current Status: No immediate action required
Risk Level: Low β Standard monitoring advised
Suggested Measures:
- Monitor for any sudden changes in reputation scores
- Standard cloud infrastructure monitoring applies
- No firewall blocking recommended (Google Cloud infrastructure)
- Log traffic for forensic completeness
---
## Intelligence Conclusion
IP 34.76.2.52 is legitimate Google Cloud infrastructure with no active threat indicators. The low risk score (25) reflects standard cloud compute characteristics. No defensive action is required beyond routine monitoring. The IP's behavior aligns with normal Google Cloud operational patterns, including DNS resolution to Googleusercontent domains and firewalled service delivery.
Final Classification: LOW RISK β Continue Standard Monitoring
---
*This briefing was generated using IPDebrief threat intelligence tools. All data points are derived from observed network signals and should be validated against additional security context as appropriate for organizational security policies.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.64.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 52.2.76.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 52.2.76.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 38% | 2 | 5 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 25% | 1 | 3 |
| geolocation | 28% | 2 | 3 |
| Overall | 25% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-29 05:55:22 UTC |
| Last Seen | 2026-06-29 06:13:23 UTC |
| Profile Built | 2026-06-29 06:25:06 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 46 |
Full dossier details are available via our API.