Threat Intelligence Briefing for IP 35.237.126.101/32
Overview:
The IP address 35.237.126.101/32, which belongs to the range allocated to Google LLC, was observed during a specific period. The address is associated with Google Cloud services, specifically tied to Googleβs cloud infrastructure, often utilized for legitimate enterprise operations.
Observation History:
- The IP address has been actively monitored over multiple observation cycles.
- Historical data indicate consistent patterns typical of cloud service operations, involving data transmission activities between client endpoints and Google's cloud platforms.
Relationships:
- Entity Association: The IP is associated with Google LLC, a prominent multinational technology company known for its cloud computing services.
- Service Utilization: This address is primarily linked to Google Cloud Platform (GCP) services, suggesting its use in hosting, data processing, and cloud application operations.
Neighborhood Data:
- Geographical Location: The IP address is geographically located in the United States.
- Network Neighborhood: The surrounding IP range is predominantly populated by other Google Cloud services, indicative of a robust and extensive cloud infrastructure.
- Traffic Patterns: The traffic observed from this IP address is consistent with normal Google Cloud service operations, characterized by frequent and high-volume data exchanges between client devices and the cloud.
Threat Analysis:
- Behavioral Assessment: The traffic patterns and network activities observed from this IP address align with expected behaviors for a legitimate cloud service provider. There were no anomalies or indicators of compromise during the observation periods.
- Risk Assessment: Given the established and consistent nature of the traffic, there is a low risk of malicious activity associated with this IP address. It is primarily used for legitimate business operations related to cloud services.
Actionable Insights for SOC Teams:
- Monitoring Continuation: Continue monitoring traffic associated with this IP address to ensure ongoing legitimacy and to detect any deviations from expected behavior.
- Access Verification: Ensure that any access or data transmission to or from this IP address is properly authenticated and authorized to maintain security within the network.
- Incident Response Preparedness: While the risk is currently low, remain prepared to investigate any sudden changes in traffic patterns or behavior that may indicate a potential security concern.
This intelligence briefing provides a factual overview based on the observed data, highlighting the legitimate use of the IP address within Googleβs cloud services framework.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | β |
| CIDR Block | β |
| RIR | ARIN |
| Country | β |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 101.126.237.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 101.126.237.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 4 |
| routing | 42% | 1 | 6 |
| services | 15% | 2 | 2 |
| ownership | 20% | 2 | 3 |
| reputation | 28% | 1 | 3 |
| geolocation | 30% | 2 | 3 |
| Overall | 28% | 10 | 21 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-19 21:40:10 UTC |
| Last Seen | 2026-06-28 10:04:19 UTC |
| Profile Built | 2026-06-29 04:10:01 UTC |
| Data Freshness | Live |
| Signal Types | 21 |
| Total Observations | 30 |
Full dossier details are available via our API.