IPDebrief

35.201.172.32

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

## IP Intelligence Briefing: 35.201.172.32/32

Date: July 29, 2026

Classification: Low Risk / Clean

Status: Active Monitoring Recommended

---

Executive Summary

IP 35.201.172.32 is a Google Cloud infrastructure address with a risk score of 0. No threat indicators, blacklists, or malicious activity observed. The subnet (35.201.172.0/24) demonstrates zero abuse density. This IP is considered a false positive candidate for threat filtering.

---

Technical Profile

Risk Assessment:

Infrastructure Identification:

Geolocation Data:

DNS Resolution:

---

Service Analysis

Open Ports: None detected

HTTP/HTTPS: No services running

TLS Certificates: None observed

Banner Grabbing: No server banners captured

Status: Port 80/443 and common ports blocked or not responding

---

Neighborhood Analysis

Subnet: 35.201.172.32/24

Assessment: Subnet shows no malicious activity patterns. Neighbor analysis confirms clean classification.

---

Threat Indicators

Abuse Indicators:

Campaign Association:

Threat Persistence:

---

Historical Observations

Observation Count: 16 signals recorded

Recent Activity:

Trend Analysis: No escalation in risk profile. Consistent low-risk classification maintained across observation window.

---

Relationships Graph

DNS Association:

No Additional Relationships: No organizational, certificate, or subnet relationships detected beyond DNS infrastructure.

---

Recommended Actions

SOC Analyst Guidance:

1. No Blocking Required: IP demonstrates legitimate Google Cloud infrastructure behavior

2. Monitor for Changes: Track for any deviation from clean classification

3. Geo-Validation: Acknowledge location inconsistencies as expected for cloud infrastructure

4. Allow Traffic: No firewall rules recommended; traffic should pass normal inspection

Action Score: 0 (No action required)

---

Control Plane Data

---

Conclusion: IP 35.201.172.32 is a benign Google Cloud infrastructure endpoint with no malicious indicators. No security actions recommended.

Generated by: IPDebrief Intelligence Platform

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡น๐Ÿ‡ผ Taiwan
RegionTXG
CityChanghua
TimezoneAsia/Taipei
Latitude24.05
Longitude120.55

๐Ÿข Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGLE-CLOUD
CIDR Block35.192.0.0/12
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR32.172.201.35.bc.googleusercontent.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnames32.172.201.35.bc.googleusercontent.com

๐Ÿ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierTier 3 โ€” Basic operator with some routing infrastructure
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
32%
23
routing
13%
11
services
19%
22
ownership
27%
23
reputation
17%
12
geolocation
30%
23
Overall23%1014
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-07-21 06:47:25 UTC
Last Seen2026-08-12 15:42:46 UTC
Profile Built2026-08-12 15:57:21 UTC
Data FreshnessLive
Signal Types24
Total Observations26
๐Ÿ” 24 signal types ยท 26 observations collected
This report is generated from 24+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.