## IP Intelligence Briefing: 34.85.230.120/32
Executive Summary
IP address 34.85.230.120 is a Google Cloud Platform (GCP) infrastructure address with a low-risk profile (risk score: 25). The IP is classified as Google LLC infrastructure, hosted in Ashburn, Virginia, and operates as a cloud computing resource with no known malicious indicators.
Technical Profile
- Organization: Google LLC (AS396982)
- Network: GOOGL-2 (34.64.0.0/10)
- Location: Ashburn, Virginia, US (39.04°N, 77.49°W)
- Infrastructure Type: Cloud Compute (GCP)
- DNS Resolution: 120.230.85.34.bc.googleusercontent.com
- Risk Score: 25 (Low Risk)
- Abuse Confidence: Not applicable (Google infrastructure)
Threat Indicators
- Known Campaigns: None identified
- Blacklist Status: 0 blacklist entries
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Threat Feeds: No active threat feed matches
- Control Plane: DNSBL listed on 1 of 8 total lists (likely benign GCP infrastructure listing)
Network Context
- Subnet Classification: Mostly clean
- Abuse Density: 1 (low)
- Inherited Risk: 2 (low)
- Threat Siblings: 1 (isolated threat neighbor in /24)
- Service Status: Firewalled / No active services detected
Historical Analysis
Twenty-three observations recorded across multiple signal types. Recent activity includes:
- June 16, 2026: Subnet abuse density signal (mostly clean classification)
- June 16, 2026: AlienVault OTX geolocation signal with threat presence in vicinity (Washington, DC area)
- June 21, 2026: Operator score signals (0.3478, "Basic" classification)
Observation count indicates normal operational monitoring with no persistent malicious behavior.
Relationship Graph
- Network Associations: Multiple "Same Network" relationships to GOOGL-2
- DNS Associations: Consistent resolution to bc.googleusercontent.com hostnames
- Infrastructure: All relationships indicate legitimate Google Cloud infrastructure
Recommended Actions
- Block/Allow: No immediate action required. Low-risk GCP infrastructure.
- Monitoring: Standard monitoring recommended; no specific firewall rules needed
- Classification: Benign cloud infrastructure; whitelist if traffic is expected
Conclusion
The IP address 34.85.230.120 represents legitimate Google Cloud infrastructure with no credible threat indicators. The single threat sibling in the /24 subnet is isolated and does not indicate coordinated malicious activity. No blocking or defensive measures are recommended beyond standard operational monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.64.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 120.230.85.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 120.230.85.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 32% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 30% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 22% | 9 | 13 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-06-02 18:13:23 UTC |
| Last Seen | 2026-06-21 09:09:39 UTC |
| Profile Built | 2026-06-21 09:17:21 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 23 |
Full dossier details are available via our API.