IP Intelligence Briefing: 34.86.213.47
*Generated for SOC Analysts*
---
**1. Core Profile**
- Provider: Google LLC (ASN 396982, Network: GOOGL-2)
- Risk Score: Moderate (50/100)
- Geolocation: Washington, DC, US (geo-plausibility: false)
- Network Role: Google Cloud Compute (firewalled, no public services)
- Threat Indicators: No malicious activity detected (no blacklists, spam, or campaigns).
---
**2. Observation History**
- Latest Signals (June 16, 2026):
- DNSSEC & CAA Valid: Confirmed.
- RTT Anomaly: 23ms measured vs. expected 125.9ms for 6,296km distance (potential spoofed location or CDN optimization).
- No Threat Persistence: No observed malicious persistence or campaigns.
---
**3. Relationships**
- Linked Entities:
- Google Cloud network (GOOGL-2).
- DNS hostname: `47.213.86.34.bc.googleusercontent.com` (Googleusercontent domain).
- No External Threat Associations: No linked malicious domains, organizations, or certificates.
---
**4. Neighborhood Analysis**
- Subnet: 34.86.213.47/24
- Neighbor Count: 0 active IPs in subnet (isolated).
- Abuse Density: 0% (clean subnet).
---
**5. Recommendations**
- Monitor RTT Discrepancy: Investigate potential spoofing or CDN routing anomalies.
- Verify Geolocation: Cross-check with other geolocation sources due to geo-plausibility flag.
- No Blocking Required: Legitimate Google Cloud resource with no threat indicators.
Conclusion: This IP is a legitimate Google Cloud Compute instance with no current malicious activity. The RTT anomaly warrants further investigation but does not indicate immediate risk.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 34.64.0.0/10 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 47.213.86.34.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 47.213.86.34.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 21% | 2 | 2 |
| routing | 13% | 1 | 1 |
| services | 13% | 1 | 1 |
| ownership | 27% | 2 | 3 |
| reputation | 15% | 1 | 2 |
| geolocation | 30% | 2 | 3 |
| Overall | 20% | 9 | 12 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-30 10:59:04 UTC |
| Last Seen | 2026-06-21 05:31:45 UTC |
| Profile Built | 2026-06-21 05:33:08 UTC |
| Data Freshness | Live |
| Signal Types | 20 |
| Total Observations | 22 |
Full dossier details are available via our API.