# IP INTELLIGENCE BRIEFING
Target: 35.231.74.47/32
Report Date: 2026-06-21
Classification: LOW RISK - Legitimate Cloud Infrastructure
---
## EXECUTIVE SUMMARY
IP 35.231.74.47 is identified as Google Cloud infrastructure with a low risk score (25/100). The address is classified as a clean cloud compute resource with no active threat indicators. No immediate blocking action is recommended; monitoring is advised for any behavioral changes.
---
## OWNERSHIP & INFRASTRUCTURE
| Attribute | Value |
|---|---|
| Organization | Google LLC |
| ASN | 396982 |
| Network | GOOGLE-CLOUD (35.208.0.0/12) |
| Infrastructure Type | CloudCompute |
| Region | North Charleston, SC, US |
| Service Purpose | Firewalled / No Services |
DNS Analysis:
- PTR Hostname: 47.74.231.35.bc.googleusercontent.com
- Forward Resolution: Confirmed
- Email Auth: SPF and DMARC records present
- Hosted Domain Count: 0
---
## RISK ASSESSMENT
| Metric | Score | Status |
|---|---|---|
| Overall Risk Score | 25 | Low Risk |
| Provider Score | 0 | N/A |
| Authority Score | 0 | N/A |
| Abuse Confidence | N/A | Not assessed |
| Blacklist Count | 0 | Clean |
Threat Indicators:
- Is Tor Exit: No
- Is Known Attacker: No
- Is Spam Source: No
- Known Campaigns: None
- Threat Feeds: Empty
---
## NETWORK CHARACTERISTICS
- Cloud Classification: Confirmed Google Cloud
- Open Ports: None detected (firewalled)
- Anycast: No
- Proxy/VPN: No
- Mobile/Residential: No
Control Plane Data:
- BGP Prefix: 35.231.0.0/17
- Route Stability: Unstable (changing)
- DNSBL Listed: 1 of 8 total lists
- RPKI State: Not assessed
---
## NEIGHBORHOOD ANALYSIS
Subnet: 35.231.74.47/24
- Abuse Density: 0 (Clean)
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 0
No neighboring IPs in the /24 subnet exhibit malicious characteristics. The subnet is classified as clean with no inherited risk.
---
## OBSERVATION HISTORY
Total Observations: 27
Key temporal signals:
- Infrastructure Classification: Consistently identified as Google Cloud (confidence 0.90)
- Geolocation: Claims North Charleston, SC, US with RTT validation anomaly (46ms observed vs 139.2ms minimum for claimed distance)
- Ownership: No changes detected
- Threat Persistence: 0 days (no persistent malicious activity)
The IP has maintained a stable cloud infrastructure profile with no degradation in reputation signals over the observation period.
---
## RELATIONSHIP GRAPH
Associated Entities (20 total):
- Same Network: Multiple GOOGLE-CLOUD network associations
- DNS Associations: 47.74.231.35.bc.googleusercontent.com (repeated)
All relationships point to legitimate Google Cloud infrastructure components. No suspicious external associations detected.
---
## SECURITY RECOMMENDATIONS
Current Risk Level: LOW
Recommended Action: Monitor / Allow
| Action Category | Recommendation |
|---|---|
| Firewall Rules | No blocking recommended |
| WAF Rules | No specific rules required |
| Monitoring | Continue standard monitoring |
| Investigation | No active investigation warranted |
Note: IP 35.231.74.47 represents legitimate Google Cloud infrastructure. The absence of open ports and threat indicators suggests this is a backend or firewalled service. No immediate security action is required beyond standard logging.
---
## INTELLIGENCE VALIDATION
- GeoValidation: Anomaly detected (RTT 46ms < minimum 139.2ms for claimed 6,958km distance). This is a known characteristic of cloud infrastructure with optimized routing paths.
- Evidence Sources: Limited data sufficiency (1/6 dimensions covered in recent observations)
- Fingerprinting: No HTTP services detected; server fingerprint unavailable
Assessment: The IP is a legitimate Google Cloud compute resource with no malicious indicators. The observed anomalies are consistent with cloud infrastructure behavior rather than malicious activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGLE-CLOUD |
| CIDR Block | 35.208.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 47.74.231.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 47.74.231.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 13% | 1 | 1 |
| services | 19% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 22% | 10 | 16 |
| Data Coherence | Mostly Consistent (80%) β 1 contradiction(s) |
| Attribution | Moderate (55%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-30 23:04:31 UTC |
| Last Seen | 2026-06-29 08:08:53 UTC |
| Profile Built | 2026-06-29 08:30:35 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 25 |
Full dossier details are available via our API.