INTELLIGENCE BRIEFING: 35.197.94.227/32
CLASSIFICATION: LOW RISK / LEGITIMATE INFRASTRUCTURE
DATE GENERATED: 2026-06-14
ANALYST: IPDebrief Intelligence Unit
---
**EXECUTIVE SUMMARY**
IP 35.197.94.227 is identified as legitimate Google Cloud infrastructure with no malicious indicators. Risk score of 25 (Low Risk). No immediate threat action required. SOC teams may monitor for unusual activity patterns but no blocking or investigation is warranted.
---
**INFRASTRUCTURE PROFILE**
- Owner: Google LLC (ASN 396982)
- Location: The Dalles, Oregon, US (45.6°N, -121.18°W)
- Infrastructure Type: CloudCompute / Google Cloud Platform
- Network Role: Cloud Provider Infrastructure
- Service Status: Firewalled / No Publicly Accessible Services
---
**THREAT ASSESSMENT**
Risk Score: 25 (Low Risk)
Threat Indicators: None detected
- Not a Tor exit node
- Not a known attacker
- Not a spam source
- Blacklist count: 0
- No known campaign associations
Control Plane:
- BGP Prefix: 35.197.80.0/20
- Route Stability: Unstable
- DNSBL Listed: 1 of 8 lists (potential false positive for cloud infrastructure)
- DNSSEC Valid: Yes
---
**NETWORK CONTEXT**
Neighborhood Analysis (35.197.94.0/24):
- Abuse Density: Low
- Classification: Mostly Clean
- Total Siblings: 1
- Threat Siblings: 1 (single related threat)
Relationship Graph:
- 46 total relationships identified
- Primary associations: Google Cloud network infrastructure
- DNS associations: 227.94.197.35.bc.googleusercontent.com (googleusercontent.com)
---
**OBSERVATION HISTORY**
Total Observations: 22
Recent Activity: Multiple observations recorded on 2026-06-14
- Operator Score: 0.3478 (Basic classification)
- Network Role: CloudCompute confirmed
- Geolocation: US/OR/The Dalles (56% confidence)
- No persistent malicious activity detected
---
**DNS & EMAIL**
- PTR Record: 227.94.197.35.bc.googleusercontent.com
- Forward Resolution: Confirmed
- Email Authentication: SPF and DMARC configured for associated domains
- Certificate Count: 0 (no public TLS services)
---
**RECOMMENDED ACTIONS**
No immediate action required. This IP represents standard Google Cloud infrastructure.
Recommended SOC Behavior:
1. Allow traffic from/to this IP unless specific threat intelligence indicates otherwise
2. Monitor for unusual traffic patterns (not a baseline for malicious activity)
3. No firewall blocking recommended
4. No investigation warranted without additional corroborating evidence
---
**INTELLIGENCE NOTES**
This IP belongs to Google's cloud infrastructure and is associated with legitimate service operations. The single DNSBL listing is likely a false positive common with cloud provider ranges. No evidence of abuse, command-and-control, or malicious activity.
Confidence Level: HIGH
Last Updated: 2026-06-14 12:57:51 UTC
---
*End of Briefing*
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 227.94.197.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 227.94.197.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 24% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 32% | 2 | 3 |
| Overall | 21% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-09 05:26:07 UTC |
| Last Seen | 2026-06-27 15:03:11 UTC |
| Profile Built | 2026-06-28 15:09:36 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 29 |
Full dossier details are available via our API.