# IP Intelligence Briefing: 35.193.118.14/32
## Executive Summary
IP address 35.193.118.14 is identified as Low Risk infrastructure hosted on Google Cloud Platform. The address exhibits legitimate cloud compute characteristics with no active threat indicators detected. Risk score of 25 indicates minimal threat posture, with ownership attributed to Google LLC (ASN 396982).
---
## Technical Profile
Ownership & Infrastructure
- Organization: Google LLC
- ASN: 396982
- Network: Google Cloud Infrastructure
- Infrastructure Type: Cloud Compute
- Registration RIR: ARIN
- BGP Prefix: 35.193.112.0/20
Geolocation
- Country: United States (US)
- Region: Iowa (IA)
- City: Council Bluffs
- Timezone: America/Chicago
- GeoValidation: Plausible with 830km accuracy radius
Network Services
- Open Ports: TCP/443 (HTTPS)
- TLS Certificate: Self-signed certificate issued for Kubernetes services
- Hostname Resolution: 14.118.193.35.bc.googleusercontent.com
- Domain: googleusercontent.com
---
## Threat Assessment
Risk Indicators
- Overall Risk Score: 25 (Low Risk)
- Provider Score: 0
- Authority Score: 0
- Stability Score: 0
- Blacklist Count: 0
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
Control Plane Analysis
- Route Stability: Unstable
- Operator Score: 0.3478 (Basic Classification)
- DNSBL Listed: 1 out of 8 total lists
- DNSSEC Valid: Yes
- CAA Records: Present
---
## Observation History
Temporal Analysis
- Total Observations: 26 signals over monitoring period
- Threat Persistence Days: 0
- Malicious Activity: None detected
- Ownership Changes: 0
- Recent Signal Confidence: 0.21-0.60 range
Signal Timeline
- 2026-06-27: Minimal threat signals observed (confidence 0.30)
- 2026-06-19: Basic DNSSEC and CAA validation signals (confidence 0.60)
- No escalation in threat posture detected
---
## Relationship Mapping
Network Associations
- Same Network: 51 relationships identified
- Primary Association: GOOGLE-CLOUD network (multiple instances)
- DNS Associations: 14.118.193.35.bc.googleusercontent.com
Related Entities
- Multiple Google Cloud infrastructure relationships
- No direct malicious entity associations
- Standard cloud infrastructure networking patterns observed
---
## Neighborhood Analysis
/24 Subnet (35.193.118.0/24)
- Total Siblings: 1 active sibling
- Abuse Density: 1 (classified as "mostly_clean")
- Inherited Risk: 2
- Threat Siblings: 1
- Risk Distribution: Low abuse density in immediate neighborhood
---
## Recommended Actions
Security Posture
1. Traffic Classification: Allow inbound HTTPS (443) traffic from Google Cloud
2. Firewall Rules: No blocking recommended for this IP
3. Monitoring: Standard cloud infrastructure monitoring applies
Mitigation Considerations
- Monitor TLS certificate rotation (self-signed certificate detected)
- Review DNSBL listing for 1 of 8 lists
- Standard cloud provider traffic patterns expected
---
## Conclusion
IP 35.193.118.14 is classified as low-risk Google Cloud infrastructure with legitimate web server deployment. No active threat indicators, no malicious relationships, and standard cloud infrastructure behavior observed. Recommended treatment as legitimate cloud service traffic with standard monitoring procedures.
Classification: LOW RISK β LEGITIMATE CLOUD INFRASTRUCTURE
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 14.118.193.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 14.118.193.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 60% (Good) |
| SPF | Not configured |
| DMARC | Not configured |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | kuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.local |
| Valid From | 2026-05-15T05:06:16+00:00 |
| Valid Until | 2027-05-15T05:08:16+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_128_GCM_SHA256 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 00B7863BB05822CE8BDC1FCF243B4ACB3C |
| Thumbprint | AD06D80D63A1B06B27F2AEEA54B2071493DA72D2 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 25% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 17% | 2 | 3 |
| ownership | 17% | 2 | 3 |
| reputation | 27% | 1 | 3 |
| geolocation | 31% | 2 | 3 |
| Overall | 21% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-13 19:05:08 UTC |
| Last Seen | 2026-06-27 23:50:52 UTC |
| Profile Built | 2026-06-28 23:56:52 UTC |
| Data Freshness | Live |
| Signal Types | 24 |
| Total Observations | 28 |
Full dossier details are available via our API.