# IP INTELLIGENCE BRIEFING
Target: 35.201.223.213/32
Classification: Low Risk โ Google Cloud Infrastructure
Date: Current Assessment
Status: Active Monitoring Recommended
---
## Executive Summary
IP address 35.201.223.213 resolves to Google Cloud infrastructure in Changhua, Taiwan (AS396982). Risk score of 25 indicates low risk with no active threat indicators. Infrastructure is classified as cloud compute with no open services detected. No malicious activity observed in recent signal history.
---
## Technical Profile
Ownership & Network
- Organization: Google LLC
- ASN: 396982
- Infrastructure Type: CloudCompute (Google Cloud)
- CIDR Block: 35.201.208.0/20
- BGP Prefix: 35.201.208.0/20
Geolocation
- Country: Taiwan (TW)
- Region: TXG
- City: Changhua
- Coordinates: 24.05°N, 120.55°E
- Accuracy Radius: 150km
- Validation: Geo plausible with distance validation
DNS Resolution
- PTR Hostname: 213.223.201.35.bc.googleusercontent.com
- Domain: googleusercontent.com
- Forward Resolution: Confirmed (1 record)
- Email Auth: SPF and DMARC records present
---
## Threat Assessment
Risk Indicators
- Risk Score: 25 (Low Risk)
- Abuse Confidence: None detected
- Blacklist Status: Clean (0 entries)
- Threat Feeds: No indicators
- Campaign Association: None detected
Infrastructure Classification
- Is Cloud: Yes (Google Cloud)
- Is CDN: No
- Is VPN/Proxy: No
- Is Tor Exit: No
- Open Ports: None detected
- Service Status: Firewalled / No Services
Temporal Analysis
- Observation Count: 19 signals over monitoring period
- Threat Persistence: 0 days
- Ownership Changes: 0
- Is Persistently Malicious: No
---
## Neighborhood Analysis
Subnet: 35.201.223.213/24
- Abuse Density: 0.0 (Clean)
- Classification: Mostly Clean
- Total Siblings: 1
- Active Siblings: 0
- Threat Siblings: 0
- High Risk Neighbors: 0
- Medium Risk Neighbors: 0
- Low Risk Neighbors: 0
The /24 subnet shows minimal abuse activity with no neighboring IPs flagged as threats.
---
## Relationship Graph
Total Relationships: 38
Key Associations:
- Network Affiliations: Multiple GOOGLE-CLOUD network relationships
- DNS Associations: googleusercontent.com hostnames
- External Threat Links: None detected
Relationship graph indicates legitimate cloud infrastructure with no malicious correlations.
---
## Historical Signals
- Total Observations: 19
- Recent Activity: Signals from June 2026 period
- Geo Validation: ICMP blocked but geolocation plausible
- Operator Score: 0.3478 (Basic)
- Route Stability: Not stable (route changes detected)
- DNSSEC Valid: Yes
- CAA Records: Present
---
## Recommended Actions
Security Posture
- Firewall Rules: None required (low risk)
- Monitoring Level: Standard monitoring recommended
- Block Recommendation: No action required
- Investigation Priority: Low
Notes
- IP belongs to legitimate Google Cloud infrastructure
- No services exposed (firewalled)
- No historical malicious activity detected
- Neighborhood analysis confirms clean subnet environment
- Standard cloud security protocols apply
---
## Intelligence Conclusion
IP 35.201.223.213 is a legitimate Google Cloud infrastructure address with low risk profile. No immediate threat indicators present. Standard cloud provider security posture applies. No defensive actions required beyond routine network monitoring.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 213.223.201.35.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 213.223.201.35.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 18% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-07 23:04:16 UTC |
| Last Seen | 2026-06-27 04:54:13 UTC |
| Profile Built | 2026-06-27 23:00:38 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 27 |
Full dossier details are available via our API.