IPDebrief

8.229.172.118

IP Intelligence Dossier
Your IP: 216.73.216.5
{ } JSON πŸ”§ Full Actions API
πŸ€– Witness AIThis summary was generated by AI and may contain inaccuracies. Verify critical details independently.

# IP Intelligence Briefing: 8.229.172.118

Date: 2026-07-30

Status: LOW RISK

Risk Score: 15/100

---

## Executive Summary

IP 8.229.172.118 is a low-risk address owned by Google LLC, part of the GOOGL-2 cloud infrastructure network (8.228.0.0/14). The IP is geolocated to The Dalles, Oregon, US, and operates within Google Cloud provider infrastructure. No active threat indicators, open services, or malicious behavior observed. Recommended action: Allow traffic with standard logging.

---

## Technical Profile

AttributeValue
**Organization**Google LLC (ASN 396982)
**Network Block**8.228.0.0/14 (GOOGL-2)
**Geolocation**The Dalles, OR, US (Lat: 45.60, Lon: -121.18)
**Infrastructure Type**Google Cloud Platform
**Risk Score**15 (Low)
**Abuse Confidence**Not applicable
**Blacklist Count**0

---

## Threat Assessment

Threat Indicators: None detected

Service Exposure: None

Control Plane Signals:

---

## Historical Analysis (15 Observations)

Recent signal history from 2026-07-30 confirms:

The IP demonstrates stable ownership and infrastructure characteristics with no evidence of malicious activity over the observation period.

---

## Relationship Graph

DNS Associations:

Network Associations:

No external organizational or campaign-level relationships identified.

---

## Neighborhood Analysis (/24: 8.229.172.0.0/24)

Abuse Density: 0%

Subnet Classification: Low Risk

Neighbor IP: 8.229.172.91

The /24 subnet exhibits minimal abuse activity with only one neighboring IP showing elevated risk. The target IP 8.229.172.118 maintains a risk profile independent of adjacent addresses.

---

## Recommended Actions

1. Firewall: Allow traffic with standard logging. No blocking required.

2. Monitoring: No special monitoring required for this IP.

3. Threat Intelligence: No indicators for IOC feeds or threat sharing platforms.

4. Blocklist Status: Not recommended for inclusion in threat blocklists.

---

Classification: LEGITIMATE INFRASTRUCTURE

Confidence Level: HIGH

Source: IPDebrief Intelligence Platform

*This briefing is based on automated analysis of IP 8.229.172.118. SOC analysts should correlate with local telemetry for operational decision-making.*

This summary was generated by AI and may contain inaccuracies. Verify critical details independently.

🌍 Geolocation

CountryπŸ‡ΊπŸ‡Έ United States
RegionOR
CityThe Dalles
TimezoneAmerica/Los_Angeles
Latitude45.60
Longitude-121.18

🏒 Ownership & Registration

OrganizationGoogle LLC
ASNAS396982
Network NameGOOGL-2
CIDR Block8.228.0.0/14
RIRARIN
CountryUnited States
Abuse ContactAvailable via RDAP

🌐 DNS Intelligence

PTR118.172.229.8.bc.googleusercontent.com
Forward ConfirmedYes β€” FCrDNS verified
Forward Hostnames118.172.229.8.bc.googleusercontent.com

πŸ” DNS Hygiene

Hygiene Score100% (Excellent)
SPFPresent
DMARCPresent
FCrDNSVerified
DNSSECValid
CAAPresent

☁️ Network Classification

InfrastructureInfrastructure / Datacenter
Service PurposeSingle-Service Host
Network TierTier 3 β€” Basic operator with some routing infrastructure
CloudHosting

πŸ”Œ Services & Open Ports

PortServiceProtocolBanner
22sshtcp
Closed Ports25, 80, 443, 3389, 8080, 8443 (1 open / 7 scanned)
Serverβ€”
HTTP Titleβ€”
SSH VersionSSH-2.0-OpenSSH_9.6p1 r4

πŸ” TLS Certificate

πŸ”’
No certificate
Issued by β€”
N/A
SANsNone
Valid Fromβ€”
Valid Untilβ€”

🎯 Confidence Breakdown

Per-dimension confidence scores based on source diversity and data freshness

DimensionScoreSourcesObservations
threat
35%
24
routing
13%
11
services
19%
22
ownership
27%
23
reputation
17%
12
geolocation
27%
23
Overall23%1015
Coverage: 6/6 dimensions Β· Data sufficiency: sufficient
Data CoherenceMixed Signals (65%) β€” 2 contradiction(s)
AttributionModerate (55%)
OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid
⚠ Claimed geolocation contradicts RTT physics measurement
⚠ High authority score (90) but appears on threat lists (risk 40)

πŸ“… Observation Timeline πŸ”„ Live

First Seen2026-07-27 09:39:47 UTC
Last Seen2026-08-12 21:31:25 UTC
Profile Built2026-08-12 21:59:56 UTC
Data FreshnessLive
Signal Types23
Total Observations29
πŸ” 23 signal types Β· 29 observations collected
This report is generated from 23+ independent intelligence signals including ownership records, DNS analysis, BGP routing, TLS certificates, port scanning, threat feeds, behavioral fingerprinting, and more.
Full dossier details are available via our API.
{ } JSON API πŸ”§ Actions API πŸ“§ Enterprise Access

ℹ️ About This Report

All data shown is publicly available network metadata β€” IP addresses do not reliably identify individuals. Assessments are probabilistic and should not be used as sole basis for access control decisions. To report an issue or request data review, contact admin@ipdebrief.com.