IP Intelligence Briefing: 35.253.1.210
Date: 2026-06-11
---
**1. Profile Summary**
- Risk Score: Moderate (50/100)
- Provider: Google Cloud (ASN 396982)
- Geolocation: Council Bluffs, IA, US (latitude: 40.8248, longitude: -96.6878)
- Network Role: CloudCompute (firewalled, no public services)
- Threat Indicators: No malicious activity detected (no blacklists, campaigns, or known attackers).
---
**2. Observation History**
- Recent Activity (Last 30 Days):
- DNS Associations: Linked to `googleusercontent.com` (likely cloud storage/CDN).
- Network Scans: Detected open ports (no specific services identified).
- Geolocation: Plausible but low accuracy (830 km radius).
- Ownership Stability: No changes in ownership or risk persistence.
---
**3. Relationships**
- Key Associations:
- DNS: Resolves to `210.1.253.35.bc.googleusercontent.com`.
- Network: Subnet `35.253.1.210/24` (part of Google's `GOOGL-2` ASN).
- Certificates: No TLS/SSL certificates detected.
---
**4. Neighborhood Analysis**
- Subnet: `35.253.1.210/24`
- Abuse Density: 0% (no malicious neighbors).
- Active Siblings: 0 (no other IPs in the subnet observed).
---
**5. Threat Assessment**
- No Immediate Threats:
- IP is associated with Google Cloud infrastructure, which is generally benign.
- No malicious indicators, blacklists, or anomalous behavior detected.
- Recommendation:
- Monitor for unexpected service changes or unauthorized access attempts.
- Validate DNS resolution and ensure no misconfigurations in cloud security settings.
---
Conclusion: This IP is part of Google's cloud infrastructure and shows no signs of malicious activity. However, its moderate risk score suggests ongoing monitoring is advisable, particularly for unusual network behavior or configuration changes.
SOC Action: No immediate mitigation required. Document as a legitimate cloud asset.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 35.252.0.0/14 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 210.1.253.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 210.1.253.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 1/4 domains |
| DMARC | 1/4 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 4 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | kuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.local |
| Valid From | 2026-06-13T19:47:44+00:00 |
| Valid Until | 2027-06-13T19:49:44+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_128_GCM_SHA256 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 00FB3DD3CA16A2033C299CDC48A8E7700C |
| Thumbprint | 6C16F3013A13CA6696E6CE8F041771B5623A9FD8 |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 22% | 1 | 1 |
| services | 30% | 2 | 3 |
| ownership | 27% | 2 | 3 |
| reputation | 26% | 1 | 3 |
| geolocation | 34% | 2 | 3 |
| Overall | 28% | 10 | 17 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-26 18:57:47 UTC |
| Last Seen | 2026-06-29 03:23:45 UTC |
| Profile Built | 2026-06-29 09:26:39 UTC |
| Data Freshness | Live |
| Signal Types | 25 |
| Total Observations | 30 |
Full dossier details are available via our API.