IPDebrief

35.200.126.118

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

INTELLIGENCE BRIEFING: 35.200.126.118/32

Classification: LOW RISK โ€” Cloud Infrastructure

Date: 2026-06-19

Analysis ID: IP-2026-06-19-118

---

EXECUTIVE SUMMARY

IP 35.200.126.118 is a Google Cloud infrastructure endpoint located in Tokyo, Japan. The asset demonstrates a low-risk profile (Risk Score: 25/100) with no active threat indicators. Analysis confirms this is legitimate cloud compute infrastructure associated with Google's cloud services network. No immediate defensive action required beyond standard cloud infrastructure monitoring.

---

OWNERSHIP AND ATTRIBUTION

AttributeValue
**Organization**Google LLC
**ASN**396982
**Network Provider**Google Cloud
**Infrastructure Type**CloudCompute
**Geographic Location**Tokyo, Japan (JP)
**Coordinates**35.68°N, 139.69°E
**CIDR Block**35.200.112.0/20 (BGP Prefix)

The IP resolves to the Google Cloud provider network with ownership registration confirmed via RDAP abuse contact channels.

---

THREAT ASSESSMENT

Risk Score: 25 (Low Risk)

Threat Indicators:

Network Classification Flags:

---

NETWORK BEHAVIOR AND SERVICES

Service Profile:

DNS Resolution:

Control Plane Data:

---

OBSERVATION HISTORY (Last 23 Signals)

Temporal Analysis:

Key Historical Observations:

The IP demonstrates stable ownership and consistent cloud infrastructure classification throughout the observation window. No escalation in threat indicators detected.

---

RELATIONSHIP GRAPH (52 Entities)

Connected Entities:

Analysis: All relationships indicate DNS associations to the same googleusercontent.com hostname. No external organization links or certificate associations detected. This pattern is consistent with Google Cloud's internal IP management practices.

---

SUBNET NEIGHBORHOOD ANALYSIS

Subnet: 35.200.126.118/24

MetricValue
Abuse Density0
ClassificationMostly Clean
Total Siblings1
Active Siblings1
Threat Siblings1
Inherited Risk2

The /24 subnet shows minimal abuse activity, confirming this is part of a clean cloud infrastructure block.

---

RECOMMENDED ACTIONS

Security Posture: No Immediate Action Required

Recommended Firewall Rules: None

Monitoring Guidance: Standard cloud infrastructure monitoring protocols apply. No blocking or rate-limiting recommendations based on current risk profile.

Action Items:

---

INTELLIGENCE CONCLUSION

IP 35.200.126.118 is a legitimate Google Cloud infrastructure resource with low-risk characteristics. The IP demonstrates consistent cloud compute behavior, proper DNS configuration, and no association with known malicious activity. SOC analysts should treat this as benign cloud infrastructure and monitor for any anomalous behavior patterns that deviate from typical cloud service usage.

Confidence Level: High

Risk Rating: Low

Priority: Normal

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฏ๐Ÿ‡ต Japan
Region13
CityTokyo
TimezoneAsia/Tokyo
Latitude35.68
Longitude139.69

๐Ÿข Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network Nameโ€”
CIDR Blockโ€”
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR118.126.200.35.bc.googleusercontent.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnames118.126.200.35.bc.googleusercontent.com

๐Ÿ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
27%
24
routing
8%
11
services
12%
22
ownership
24%
23
reputation
26%
13
geolocation
31%
23
Overall21%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-11 08:58:46 UTC
Last Seen2026-06-27 19:17:55 UTC
Profile Built2026-06-28 13:24:32 UTC
Data FreshnessLive
Signal Types22
Total Observations27
๐Ÿ” 22 signal types ยท 27 observations collected
This report is generated from 22+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.