IP Intelligence Briefing: 35.255.98.227
Date: 2026-06-11
---
**1. Core Profile**
- Risk Score: Moderate (50/100)
- Provider: Google Cloud (ASN 396982)
- Ownership: Google LLC (GOOGL-2)
- Geolocation: Council Bluffs, Iowa, US (MaxMind geolocation)
- Network Role: CloudCompute (firewalled, no public services)
- Threat Indicators: No malicious activity detected (no indicators, blacklist entries, or campaigns).
---
**2. Observation History**
- Recent Activity (2026-06-11):
- Consistent geolocation data (Council Bluffs, IA).
- DNS associations linked to `googleusercontent.com` (likely Google Cloud storage).
- Network stability: No significant changes in routing or ownership.
- No spikes in threat signals (abuse confidence, DNSBL listings, or campaigns).
---
**3. Relationships**
- DNS Associations:
- Resolves to `227.98.255.35.bc.googleusercontent.com` (Google Cloud infrastructure).
- Network Relationships:
- Part of the `GOOGL-2` ASN (Google LLC).
- No connections to known malicious subnets or organizations.
---
**4. Neighborhood Analysis**
- Subnet: 35.255.98.227/24
- Abuse Density: 0% (clean subnet).
- Neighbors: No active sibling IPs detected.
---
**5. Security Recommendations**
- Firewall Rules (Sample):
- iptables: `iptables -A INPUT -s 35.255.98.227 -j DROP`
- Cloudflare WAF: Block IP with rule `{ "action": "block", "expression": "ip.src eq 35.255.98.227" }`
- AWS WAF: Add `35.255.98.227/32` to a custom rule.
- Note: Given the IP's association with Google Cloud and lack of malicious signals, blocking may be premature. Monitor for deviations from expected behavior.
---
**6. Summary**
This IP is part of Google's cloud infrastructure, resolving to a Google Cloud Storage endpoint. While flagged as "Moderate Risk," no malicious activity or threats were detected. The subnet is clean, and no suspicious relationships were found. SOC teams should treat this as a legitimate cloud asset but monitor for unexpected behavior or deviations from baseline activity.
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 35.252.0.0/14 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 227.98.255.35.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 227.98.255.35.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | Present |
| DMARC | Present |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Firewalled / No Services |
| Network Tier | Hosting β Infrastructure provider without advanced routing |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| No open ports detected | |||
| Closed Ports | 22, 25, 80, 443, 3389, 8080, 8443 (0 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | None |
| Valid From | β |
| Valid Until | β |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 27% | 2 | 4 |
| routing | 27% | 2 | 3 |
| services | 15% | 2 | 2 |
| ownership | 35% | 3 | 5 |
| reputation | 22% | 1 | 3 |
| geolocation | 19% | 2 | 2 |
| Overall | 24% | 12 | 19 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-05-27 19:22:38 UTC |
| Last Seen | 2026-06-29 04:49:04 UTC |
| Profile Built | 2026-06-29 05:07:33 UTC |
| Data Freshness | Live |
| Signal Types | 26 |
| Total Observations | 32 |
Full dossier details are available via our API.