# IP Intelligence Briefing: 34.77.36.89/32
Classification: LOW RISK โ Legitimate Google Cloud Infrastructure
Date Generated: 2026-08-06
Analyst: IPDebrief Intelligence Platform
---
## Executive Summary
IP address 34.77.36.89 is identified as low-risk infrastructure belonging to Google LLC (ASN 396982). The IP operates within Google Cloud's GOOGL-2 network block (34.64.0.0/10) and hosts web server services. No malicious indicators, known campaigns, or threat intelligence matches were detected across all analysis vectors.
---
## Risk Assessment
| Metric | Value | Status |
|---|---|---|
| Overall Risk Score | 15 | Low Risk |
| Provider Score | 0 | N/A |
| Authority Score | 0 | N/A |
| Blacklist Count | 0 | Clean |
| Is Known Attacker | No | Verified |
| Is Tor Exit Node | No | Verified |
---
## Infrastructure Profile
- Organization: Google LLC
- ASN: 396982
- Network: GOOGL-2 (34.64.0.0/10)
- Geolocation: Brussels, Belgium (BE)
- Infrastructure Type: Google Cloud Platform
- Service Purpose: Web Server
- DNS PTR: 89.36.77.34.bc.googleusercontent.com
- Forward Resolution: Confirmed (googleusercontent.com)
---
## Network Services
| Port | Protocol | Service | Status |
|---|---|---|---|
| 443 | TCP | HTTPS | Open |
- TLS Configuration: TLS 1.3, TLS_AES_128_GCM_SHA256 cipher suite
- Certificate Status: Valid, non-self-signed
- HTTP Version: HTTP/2.0 enabled
- Response Code: 403 (Forbidden)
- Response Time: 587ms
---
## Threat Intelligence Indicators
No active threat indicators detected.
- Threat Feeds: No matches
- Known Campaigns: None
- Pulsedive Risk: Not applicable
- Abuse Confidence Score: Not applicable (legitimate infrastructure)
- DNSBL Listings: 1 of 8 lists (control plane data)
---
## Neighborhood Analysis
Subnet: 34.77.36.0/24
Abuse Density: 0 (Clean)
Classification: Clean
| Neighbor IP | Risk Score | Authority Score | Status |
|---|---|---|---|
| 34.77.36.4 | 25 | 90 | Active |
One neighboring IP (34.77.36.4) shows elevated risk scoring (25) with high authority (90). The primary IP (34.77.36.89) remains within normal parameters for Google Cloud infrastructure.
---
## Historical Observations
Total Observations: 19
Analysis Period: Recent (2026-08-06)
Key historical signals:
- HTTP Headers: No HSTS or Content-Security-Policy headers present
- Security Headers: X-Content-Type-Options: nosniff enabled
- TLS: TLS 1.3 with strong cipher suite
- Geolocation: Consistent Belgium placement with 236.8km validation distance
- Threat Persistence: 0 days observed
- Ownership Changes: 0 changes recorded
---
## Control Plane Status
- BGP Prefix: 34.77.32.0/20
- RPKI State: Not validated
- Route Stability: False (0 route changes in 30 days)
- DNSSEC: Valid
- CAA Records: Present
- Operator Score: 0.1304 (Minimal)
---
## Recommended Actions
Security Actions: None required
Risk Level: 15 (Low)
The IP address presents minimal security risk. Standard defensive posture recommendations apply:
- No firewall blocking required โ This is legitimate Google Cloud infrastructure
- Allow HTTPS (443) โ Standard web traffic
- Monitor for changes โ Track for any deviation from baseline behavior
- No threat hunting indicators โ No active campaigns or attacker patterns detected
---
## Intelligence Summary
IP 34.77.36.89 represents normal Google Cloud web server infrastructure with no malicious activity indicators. The IP operates within established Google network boundaries, maintains valid DNS and TLS configurations, and shows no correlation with known threat actors or campaigns. The single DNSBL listing appears to be a control-plane artifact rather than an abuse indicator.
Recommendation: No action required. Treat as legitimate infrastructure. Monitor for behavioral deviations from baseline.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.64.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 89.36.77.34.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 89.36.77.34.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 1/4 domains |
| DMARC | 1/4 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 4 domains |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 โ Basic operator with some routing infrastructure |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | โ |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | kuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.local |
| Valid From | 2026-08-03T00:47:19+00:00 |
| Valid Until | 2027-08-03T00:49:19+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_128_GCM_SHA256 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 05CD3A45B032FB765D5B6E8B21E0A325 |
| Thumbprint | 1E65797FAF0834D761E402B6C337D32D1E96A8A6 |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 42% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 31% | 2 | 3 |
| ownership | 30% | 2 | 3 |
| reputation | 33% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 30% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-08-01 04:25:45 UTC |
| Last Seen | 2026-08-13 06:46:13 UTC |
| Profile Built | 2026-08-13 10:09:06 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 54 |
Full dossier details are available via our API.