# IP INTELLIGENCE BRIEFING
IP Address: 35.203.211.62/32
Date: 2024
Classification: LOW RISK INFRASTRUCTURE
---
## EXECUTIVE SUMMARY
Target IP 35.203.211.62 is a Google Cloud Platform (GCP) compute instance with a low-risk profile (Risk Score: 25/100). The IP exhibits legitimate cloud infrastructure characteristics with no active malicious indicators. No immediate security action required, but contextual monitoring of the associated /24 subnet is recommended due to mixed abuse density.
---
## INFRASTRUCTURE PROFILE
| Attribute | Value |
|---|---|
| **Organization** | Google LLC (AS396982) |
| **Network** | GOOGLE-CLOUD (35.192.0.0/12) |
| **Location** | London, England, GB |
| **Geolocation Confidence** | 90% |
| **Infrastructure Type** | CloudCompute |
| **Reverse DNS** | 62.211.203.35.bc.googleusercontent.com |
---
## THREAT ASSESSMENT
Current Risk Score: 25/100 (LOW)
Threat Indicators:
- Blacklist Count: 0
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
- Known Campaigns: None
Network Services:
- Open Ports: None detected
- HTTP Services: None active
- TLS Certificates: None exposed
- Status: Firewalled/No Services
Control Plane:
- Route Stability: Stable
- DNSSEC: Valid
- RPKI State: Present
- DNSBL Listings: 1/8 total lists
---
## NEIGHBORHOOD ANALYSIS
Subnet: 35.203.211.0/24
- Total Siblings: 47
- Active Siblings: 32
- Threat Siblings: 23
- Abuse Density: 0.4894 (MIXED)
- Inherited Risk: 19/100
Risk Distribution in Subnet:
- High Risk: 0
- Medium Risk: 23
- Low Risk: 23
Notable High-Risk Neighbors:
- 35.203.211.184 (Risk: 50)
- 35.203.211.4, 35.203.211.14, 35.203.211.34, 35.203.211.41, 35.203.211.45, 35.203.211.63, 35.203.211.67, 35.203.211.75, 35.203.211.82, 35.203.211.104, 35.203.211.108, 35.203.211.109, 35.203.211.135, 35.203.211.139, 35.203.211.151, 35.203.211.165, 35.203.211.178, 35.203.211.184, 35.203.211.199, 35.203.211.209, 35.203.211.215, 35.203.211.236, 35.203.211.245, 35.203.211.253 (Risk: 40)
---
## OBSERVATION HISTORY
Total Observations: 22 signals over monitoring period
Recent Activity:
- June 29, 2026: Confirmed Google Cloud infrastructure (is_cloud=true, is_hosting=true)
- June 20, 2026: Mixed subnet classification with inherited risk 19/100
- June 20, 2026: Geolocation confirmed as London, GB (51.51°N, -0.13°W)
Temporal Analysis:
- Ownership Changes: 0
- Threat Persistence: 0 days
- Persistently Malicious: False
- Threat Observation Count: 1 (historical)
---
## RELATIONSHIP GRAPH
Total Relationships: 39
- DNS Associations: 6 entries (all resolving to 62.211.203.35.bc.googleusercontent.com)
- Network Relationships: 1 (GOOGLE-CLOUD)
- Related Entities: Primarily DNS and network-level associations
---
## SECURITY ACTIONS & RECOMMENDATIONS
Current Risk Level: LOW
Action Required: NONE
Rationale:
- No active threat indicators
- Legitimate Google Cloud infrastructure
- No services exposed (firewalled)
- No blacklist presence
- No historical malicious activity detected
Monitoring Recommendation:
While the target IP itself poses minimal risk, the associated /24 subnet exhibits elevated abuse density (0.4894) with 23 threat-sibling IPs. SOC teams should maintain contextual awareness of this subnet for potential lateral movement or shared infrastructure compromise scenarios.
---
## INTELLIGENCE SUMMARY
The IP address 35.203.211.62 represents legitimate Google Cloud infrastructure with no current malicious indicators. The IP is properly geolocated to London, GB, and maintains consistent cloud compute characteristics across all observations. No firewall rules or blocking actions are recommended at this time. However, awareness of the mixed-risk neighborhood and the presence of 23 threat-sibling IPs in the /24 subnet is advised for comprehensive threat visibility.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGLE-CLOUD |
| CIDR Block | 35.192.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 62.211.203.35.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 62.211.203.35.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 31% | 1 | 3 |
| geolocation | 40% | 2 | 3 |
| Overall | 25% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-25 00:41:18 UTC |
| Last Seen | 2026-06-29 00:59:11 UTC |
| Profile Built | 2026-06-29 07:02:11 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 24 |
Full dossier details are available via our API.