IPDebrief

35.203.211.126

IP Intelligence Dossier
Your IP: 216.73.216.123
{ } JSON ๐Ÿ”ง Full Actions API
๐Ÿค– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 35.203.211.126/32

## Executive Summary

Intellectual analysis of IP address 35.203.211.126 identified this as a Google Cloud infrastructure endpoint with moderate risk profile (risk score 40). The IP resolved to googleusercontent.com domain and demonstrated consistent geolocation to London, GB across multiple observation periods. No active threat indicators were detected in the current threat feed scan.

## Technical Profile

The IP address belongs to Google LLC (ASN 396982) within the Google Cloud network infrastructure. Reverse DNS resolution returned 126.211.203.35.bc.googleusercontent.com, confirming legitimate cloud service hosting. No open ports were detected during service scanning, and no TLS certificates or HTTP banners were observed, classifying the endpoint as "Firewalled / No Services" infrastructure.

## Risk Assessment

Current risk assessment scored 40 (Moderate Risk) with the following breakdown:

The IP demonstrated stable ownership characteristics with zero ownership changes recorded in the observation history.

## Observational History

Analysis of 24 historical observations revealed consistent patterns:

Temporal analysis showed threat observation count of 1 with threat persistence days at 0, indicating transient rather than persistent malicious behavior.

## Neighborhood Analysis

The /24 subnet (35.203.211.0/24) contains 46 sibling IP addresses with the following distribution:

Neighborhood analysis indicates this IP shares network infrastructure with multiple other cloud endpoints, which is typical for Google Cloud deployments.

## Relationship Graph

Thirty relationships were identified:

## Security Recommendations

Based on the risk profile, the following defensive measures are recommended:

Firewall Rules

Analyst Notes

The moderate risk score and cloud infrastructure classification warrant monitoring but do not indicate confirmed malicious activity. The IP represents legitimate Google Cloud infrastructure. Blocking should be applied selectively based on specific threat intelligence correlation, as the neighborhood shows mixed risk characteristics typical of large-scale cloud deployments.

Classification: Cloud Infrastructure - Monitor

Status: No immediate threat indicators detected

Recommendation: Review against threat intelligence context before implementing blocking rules

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

๐ŸŒ Geolocation

Country๐Ÿ‡ฌ๐Ÿ‡ง United Kingdom
RegionENG
CityLondon
TimezoneEurope/London
Latitude51.51
Longitude-0.13

๐Ÿข Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network Nameโ€”
CIDR Blockโ€”
RIRARIN
Countryโ€”
Abuse ContactAvailable via RDAP

๐ŸŒ DNS Intelligence

PTR126.211.203.35.bc.googleusercontent.com
Forward ConfirmedYes โ€” FCrDNS verified
Forward Hostnames126.211.203.35.bc.googleusercontent.com

๐Ÿ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

โ˜๏ธ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeFirewalled / No Services
Network TierHosting โ€” Infrastructure provider without advanced routing
CloudHosting

๐Ÿ”Œ Services & Open Ports

PortServiceProtocolBanner
No open ports detected
Closed Ports22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned)
Serverโ€”
HTTP Titleโ€”

๐Ÿ” TLS Certificate

๐Ÿ”’
No certificate
Issued by โ€”
N/A
SANsNone
Valid Fromโ€”
Valid Untilโ€”

๐ŸŽฏ Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
31%
24
routing
8%
11
services
12%
22
ownership
20%
23
reputation
28%
13
geolocation
39%
23
Overall23%1016
Coverage: 6/6 dimensions ยท Data sufficiency: sufficient
Data CoherenceConsistent (100%)
AttributionModerate (70%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid

๐Ÿ“… Observation Timeline ๐Ÿ”„ Live

First Seen2026-05-20 11:46:37 UTC
Last Seen2026-06-28 11:51:01 UTC
Profile Built2026-06-29 05:55:14 UTC
Data FreshnessLive
Signal Types23
Total Observations26
๐Ÿ” 23 signal types ยท 26 observations collected
This report is generated from 23+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API ๐Ÿ”ง Actions API ๐Ÿ“ง Enterprise Access

โ„น๏ธ About This Report

All data shown is publicly available network metadata โ€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.