Threat Intelligence Briefing: IP Address 35.189.195.1/32
Overview:
The IP address 35.189.195.1/32, belonging to the network range 35.189.195.0/24, was analyzed for potential security risks. This analysis aimed to provide a comprehensive profile, including historical activity, relationships, and neighborhood data.
Profile Summary:
1. Geolocation:
- The IP address is located in the United States, specifically within Google's infrastructure. Google's data centers are known for their robust security measures, which generally implies a lower risk of malicious activity originating from these IP addresses.
2. ASN Information:
- The IP is associated with Google LLC under the ASN 15169. Google's extensive network is typically monitored for security purposes, reducing the likelihood of this IP being used for malicious activities.
3. Historical Activity:
- Historical data indicates no significant malicious activity associated with this IP. Googleβs network is frequently scanned for vulnerabilities, and any anomalies are usually addressed promptly.
4. Relationships:
- The IP is part of a network segment managed by Google, suggesting it is used for legitimate services such as cloud computing, advertising, or data processing. No known malicious relationships or associations with threat actors were identified.
5. Neighborhood Data:
- The surrounding IP range (35.189.195.0/24) is similarly associated with Google infrastructure. The network environment is characterized by high security and monitoring standards, typical of major cloud service providers.
Actionable Insights:
- Risk Assessment: Given the IP's association with Google and lack of historical malicious activity, the risk of this IP being used for malicious purposes is low.
- Monitoring: Continue standard monitoring practices. Any unusual activity originating from this IP should be investigated, but the inherent security measures of Google's network reduce the likelihood of such occurrences.
- Incident Response: In the event of an alert involving this IP, verify the legitimacy of the traffic through Google's public resources or directly with Google support if necessary.
Conclusion:
The IP address 35.189.195.1/32 is part of Google's secure infrastructure, with no historical indicators of malicious activity. It is recommended to maintain routine monitoring while relying on Google's security protocols to mitigate potential threats.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | 35.189.192.0/20 |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 1.195.189.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 1.195.189.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 57% | 2 | 15 |
| services | 12% | 2 | 2 |
| ownership | 22% | 3 | 4 |
| reputation | 27% | 1 | 3 |
| geolocation | 31% | 2 | 3 |
| Overall | 29% | 12 | 31 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-12 03:43:53 UTC |
| Last Seen | 2026-06-27 20:57:10 UTC |
| Profile Built | 2026-06-28 15:02:51 UTC |
| Data Freshness | Live |
| Signal Types | 27 |
| Total Observations | 43 |
Full dossier details are available via our API.