INTELLIGENCE BRIEFING: 35.233.120.136/32
---
EXECUTIVE SUMMARY
IP address 35.233.120.136 is a Google Cloud infrastructure endpoint with low overall risk (score: 25). The address is geolocated to Belgium (St. Ghislain, WAL region) and operates within the 35.233.0.0/17 BGP prefix (ASN 396982). No active threat indicators or malicious campaigns were identified during analysis.
---
OWNERSHIP & INFRASTRUCTURE
- Organization: Google LLC
- ASN: 396982
- Network Provider: Google Cloud
- Infrastructure Type: CloudCompute
- RIR Registration: ARIN
- Network Role: Hosting provider with firewalled/no services configuration
---
GEOSPATIAL DATA
- Country: Belgium (BE)
- Region: Wallonia (WAL)
- City: St. Ghislain
- Coordinates: 50.45°N, 3.82°E
- Timezone: Europe/Brussels
- GeoValidation: DNSSEC valid, CAA records present, DNSSEC validation successful
---
DNS & RESOLUTION
- PTR Hostname: 136.120.233.35.bc.googleusercontent.com
- Forward Resolution: Confirmed (136.120.233.35.bc.googleusercontent.com)
- Hosted Domain: googleusercontent.com
- Email Authentication: SPF and DMARC records present
- DNSBL Listings: 1 listing out of 8 total lists
---
THREAT INDICATORS
- Abuse Confidence: Not available
- Known Attacker: False
- Spam Source: False
- Tor Exit Node: False
- Blacklist Count: 0
- Threat Feeds: None detected
- Active Campaigns: None correlated
---
NETWORK CLASSIFICATION
- Cloud Infrastructure: Yes (Google Cloud)
- CDN: No
- VPN: No
- Proxy: No
- Tor: No
- Hosting Provider: Yes
- Mobile Carrier: No
- Residential: No
- Bogon: No
- Anycast: No
---
CONTROL PLANE DATA
- Route Stability: False
- MOAS Detection: False
- RPKI State: Not available
- IRR Consistency: Not available
- Route Changes (30d): 0
- Operator Score: 0.3478 (Basic)
- Delegation Age: Not available
---
HISTORICAL OBSERVATIONS (21 total)
Analysis reveals 21 historical observations with signals dating from June 9-20, 2026. Key historical events include:
- June 9, 2026: Alienvault OTX signal showing threats with 3 pulse associations
- June 15, 2026: Cloud infrastructure confirmation (Google Cloud) and geolocation inference (St. Ghislain, BE)
- June 20, 2026: Recent operator score assessment (0.3478, Basic classification)
No persistent malicious behavior detected. Threat observation count: 1. Is persistently malicious: False.
---
RELATIONSHIP GRAPH (31 relationships)
Primary relationships include:
- DNS Associations: Multiple references to 136.120.233.35.bc.googleusercontent.com
- Network Associations: GOOGLE-CLOUD network classification
- Subnet Context: 35.233.0.0/17 BGP prefix membership
---
NEIGHBORHOOD ANALYSIS (35.233.120.0/24)
- Subnet Classification: Mostly clean
- Abuse Density: 1 (low)
- Total Siblings: 1
- Active Siblings: 1
- Threat Siblings: 1
- Inherited Risk Score: 2
No additional neighboring IPs returned in the /24 scan.
---
SERVICE FINGERPRINTING
- Open Ports: None detected
- TLS Certificate: None
- HTTP Title: None
- Server Banner: None
- Status Code: None
- Powered By: None
- HTTP2: False
- HSTS: False
- CSP: False
- Referrer Policy: False
- Permissions Policy: False
---
RECOMMENDED ACTIONS
Based on the low-risk profile and Google Cloud infrastructure classification:
1. No immediate blocking required for this IP
2. Monitor for changes in DNSBL listings (1 current listing)
3. Standard logging recommended for audit purposes
4. Allow traffic with standard Google Cloud reputation policies
---
SOC ANALYST NOTES
This IP represents legitimate Google Cloud infrastructure. The single threat sibling in the /24 subnet warrants periodic review but does not indicate immediate threat. The IP's geolocation to Belgium and connection to googleusercontent.com subdomains are consistent with Google's global CDN and cloud hosting operations. No action required unless behavioral anomalies emerge.
---
Generated: IPDebrief Intelligence Platform
Classification: Defensive Security Intelligence
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | โ |
| CIDR Block | โ |
| RIR | ARIN |
| Country | โ |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 136.120.233.35.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 136.120.233.35.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 26% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 12% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 33% | 2 | 3 |
| Overall | 21% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-20 05:44:42 UTC |
| Last Seen | 2026-06-28 11:14:19 UTC |
| Profile Built | 2026-06-29 05:22:21 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 25 |
Full dossier details are available via our API.