IPDebrief

34.77.224.247

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 34.77.224.247/32

Prepared: 2026-07-30 | Classification: Google Cloud Infrastructure | Risk Level: Moderate (40/100)

---

## Executive Summary

IP address 34.77.224.247 is identified as Google Cloud infrastructure (ASN 396982, Org: Google LLC) within the 34.64.0.0/10 CIDR block. The IP resolves to googleusercontent.com domain infrastructure with reverse DNS pointing to 247.224.77.34.bc.googleusercontent.com. No open ports, services, or active threat indicators detected. Listed on 2 of 8 DNSBLs with operator score 0.3478 (Basic). No evidence of persistent malicious activity or campaign associations.

---

## Technical Profile

AttributeValue
**Risk Score**40 (Moderate Risk)
**ASN**396982 (Google LLC)
**Geolocation**BE (Belgium), St. Ghislain, WAL Region
**Network Block**34.64.0.0/10 (GOOGL-2)
**Infrastructure**Google Cloud Provider
**Service Status**Firewalled / No Services Detected
**DNS Records**247.224.77.34.bc.googleusercontent.com
**DNSBL Listings**2/8 lists
**TLS/Services**None detected

---

## Threat Indicators

---

## Neighborhood Analysis

MetricValue
**Subnet**34.77.224.0/24
**Total Siblings**0
**Abuse Density**0%
**High-Risk Neighbors**0
**Threat Siblings**0

The /24 subnet shows no adjacent high-risk activity, suggesting isolated IP behavior.

---

## Temporal Analysis

Historical data indicates stable infrastructure with no escalation in risk profile over the observation window.

---

## Relationships

---

## Recommended Actions

SOC Analyst Guidance:

1. Traffic Classification: Treat as legitimate Google Cloud infrastructure; allow standard cloud traffic patterns

2. DNSBL Evaluation: Review 2 DNSBL listingsβ€”likely false positives for cloud infrastructure

3. Port Scanning: No open ports detected; IP appears properly secured

4. Threat Correlation: No campaign or attack associations found

5. Monitoring: Standard cloud infrastructure monitoring recommended; no enhanced scrutiny required

Firewall Rule (Default):

```

# Allow Google Cloud infrastructure

```

---

## Conclusion

This IP represents legitimate Google Cloud infrastructure with no active threat indicators. The moderate risk score (40) primarily reflects DNSBL listings common for cloud provider IPs. SOC teams should treat this as trusted infrastructure traffic unless specific threat intelligence contradicts this assessment. No immediate blocking or enhanced monitoring recommended.

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡§πŸ‡ͺ Belgium
RegionWAL
CitySt. Ghislain
TimezoneEurope/Brussels
Latitude50.45
Longitude3.82

🏒 Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block34.64.0.0/10
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR247.224.77.34.bc.googleusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames247.224.77.34.bc.googleusercontent.com

πŸ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 β€” Basic operator with some routing infrastructure
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
42%
25
routing
27%
23
services
19%
22
ownership
32%
34
reputation
28%
13
geolocation
27%
22
Overall29%1219
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-25 08:45:28 UTC
Last Seen2026-08-12 19:33:06 UTC
Profile Built2026-08-12 19:44:31 UTC
Data FreshnessLive
Signal Types27
Total Observations28
πŸ” 27 signal types Β· 28 observations collected
This report is generated from 27+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.