IP Intelligence Briefing: 35.242.178.47
Date: 2026-06-11
---
**1. Profile Summary**
- Risk Score: Moderate (50/100)
- Ownership:
- Provider: Google LLC (ASN 396982)
- Network: GOOGLE-CLOUD (35.208.0.0/12)
- Geolocation: London, England (GB), Latitude 51.51, Longitude -0.13
- Threat Indicators: Clean. No malicious activity, blacklists, or known attacker associations.
- Network Role:
- Type: Cloud Compute (Google Cloud)
- Services: SSH (port 22) with banner "SSH-2.0-OpenSSH_9.6p1".
- DNS: Resolves to `47.178.242.35.bc.googleusercontent.com` (Google Cloud infrastructure).
---
**2. Observation History**
- Recent Activity (June 2026):
- No significant changes in risk scores or threat indicators.
- DNS records and SSH service remain stable.
- No signs of scanning, exploitation, or anomalous traffic.
- Long-Term Trends:
- Consistently classified as "clean" with no persistent malicious behavior.
---
**3. Relationships**
- DNS Associations:
- Linked to `googleusercontent.com` (Google Cloud storage or CDN).
- Network Affiliations:
- Same ASN (Google LLC) and subnet (GOOGLE-CLOUD).
- No External Threat Connections:
- No ties to known malicious domains, organizations, or campaigns.
---
**4. Neighborhood Analysis**
- Subnet: 35.242.178.47/24 (no active neighbors detected).
- Abuse Density: 0% (clean subnet).
- No Sibling IPs: No other IPs in the subnet were identified.
---
**5. Recommendations**
- Monitoring: Track SSH activity for unauthorized access attempts.
- Context: Legitimate Google Cloud VM; no immediate threat.
- Action: No firewall rules or blocking required.
Conclusion: This IP is a standard Google Cloud Compute instance with no malicious indicators. SOC teams should monitor for unexpected configuration changes but do not require immediate action.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
๐ข Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGLE-CLOUD |
| CIDR Block | 35.208.0.0/12 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
๐ DNS Intelligence
| PTR | 47.178.242.35.bc.googleusercontent.com |
| Forward Confirmed | Yes โ FCrDNS verified |
| Forward Hostnames | 47.178.242.35.bc.googleusercontent.com |
๐ DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
โ๏ธ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Single-Service Host |
| Network Tier | Hosting โ Infrastructure provider without advanced routing |
๐ Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 22 | ssh | tcp | |
| Closed Ports | 25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | โ |
| HTTP Title | โ |
| SSH Version | SSH-2.0-OpenSSH_9.6p1 Ubuntu-3ubuntu13.16 |
๐ TLS Certificate
| SANs | None |
| Valid From | โ |
| Valid Until | โ |
๐ฏ Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 8% | 1 | 1 |
| services | 15% | 2 | 2 |
| ownership | 27% | 2 | 3 |
| reputation | 22% | 1 | 3 |
| geolocation | 33% | 2 | 4 |
| Overall | 22% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
๐ Observation Timeline ๐ Live
| First Seen | 2026-05-27 07:17:39 UTC |
| Last Seen | 2026-06-29 04:06:53 UTC |
| Profile Built | 2026-06-29 04:14:36 UTC |
| Data Freshness | Live |
| Signal Types | 23 |
| Total Observations | 24 |
Full dossier details are available via our API.