# IPDEBRIEF INTELLIGENCE BRIEFING
Target IP: 35.197.80.134/32
Date: 2026-08-05
Classification: Low Risk - Cloud Infrastructure
---
## EXECUTIVE SUMMARY
IP 35.197.80.134 is a Google Cloud Compute instance with an overall low-risk profile (Risk Score: 25/100). The IP operates within the GOOGLE-CLOUD network (ASN 396982) in The Dalles, Oregon, USA. No active malicious indicators were detected, though historical DNS blacklist listings warrant monitoring. The subnet exhibits clean abuse characteristics with no neighboring threat activity.
---
## OWNERSHIP & INFRASTRUCTURE
| Attribute | Value |
|---|---|
| Organization | Google LLC |
| ASN | 396982 |
| Network | 35.192.0.0/12 |
| CIDR Block | 35.197.80.0/20 |
| Provider | Google Cloud |
| Infrastructure Type | CloudCompute |
| Service Purpose | Single-Service Host |
---
## GEOLOCATION
- Country: United States (US)
- Region: Oregon (OR)
- City: The Dalles
- Coordinates: 45.6°N, -121.18°W
- Timezone: America/Los_Angeles
- Geo Validation: ICMP validation blocked; distance 8,032.6 km from probe origin
---
## THREAT INDICATORS
- Abuse Confidence Score: Null
- Known Attacker: No
- Spam Source: No
- Tor Exit Node: No
- Blacklist Count: 0
- Threat Feeds: None detected
- Active Malicious Campaigns: None
---
## NETWORK SERVICES
- Open Ports: TCP/22 (SSH - OpenSSH_9.6p1 Ubuntu-3ubuntu13.15)
- Forward Resolution: 134.80.197.35.bc.googleusercontent.com
- DNS Records:
- SPF: Present
- DMARC: Present
- CAA: Present
---
## OBSERVATION HISTORY
Total observations: 24
Recent Signals (2026-08-05):
- DNS Listings: 8 DNS blacklist lists detected; 1 listing with high severity
- Network Classification: Confirmed Google Cloud infrastructure
- Operator Score: 0.3478 (Basic classification)
- Route Stability: Flagged as unstable (route changes observed)
Temporal Analysis:
- Ownership changes: 0
- Threat observation count: 0
- Is persistently malicious: No
---
## RELATIONSHIP ANALYSIS
Total Relationships: 17
- Same Network (GOOGLE-CLOUD): 9 relationships
- DNS Associations: 8 relationships pointing to 134.80.197.35.bc.googleusercontent.com
All relationships confirm consistent Google Cloud infrastructure with no cross-organization or third-party associations.
---
## NEIGHBORHOOD ASSESSMENT
Subnet: 35.197.80.0/24
- Total Siblings: 1
- Active Siblings: 0
- Threat Siblings: 0
- Abuse Density: 0 (Clean)
- Classification: Clean
The /24 subnet demonstrates no malicious activity or threat concentration.
---
## SECURITY ACTIONS & RECOMMENDATIONS
Risk Score: 25 (Low)
Generated Firewall Rules: None (IP classified as low-risk infrastructure)
Assessment: No immediate blocking or allow-listing action required based on current risk profile. Standard Google Cloud traffic handling protocols apply.
---
## THREAT INTELLIGENCE NARRATIVE
IP 35.197.80.134 represents Google Cloud infrastructure with minimal threat indicators. The IP resolves to a legitimate Google Cloud hostname and operates within a clean subnet with no malicious neighbors. Historical data shows isolated DNS blacklist listings but no correlation with active threat campaigns. The open SSH port is consistent with standard cloud server configurations.
Threat Level: LOW
Recommended Action: Monitor; no immediate mitigation required
IOC Status: No IOCs generated
---
*Report generated by IPDebrief Intelligence Platform. Data reflects observations through 2026-08-05.*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGLE-CLOUD |
| CIDR Block | 35.192.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 134.80.197.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 134.80.197.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 38% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 21% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 17% | 1 | 2 |
| geolocation | 30% | 2 | 3 |
| Overall | 24% | 10 | 15 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-07-21 19:03:28 UTC |
| Last Seen | 2026-08-12 16:25:21 UTC |
| Profile Built | 2026-08-12 16:37:17 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 25 |
Full dossier details are available via our API.