# IP Intelligence Briefing: 8.235.106.176/32
Date: Current Analysis
Classification: Low Risk / Infrastructure IP
Analyst: IPDebrief Intelligence Team
---
## Executive Summary
IP address 8.235.106.176 is a Google Cloud infrastructure endpoint with a risk score of 25 (Low Risk). The address demonstrates stable ownership characteristics, no known threat associations, and no active malicious indicators. No security blocking or investigation actions are recommended at this time.
---
## Ownership and Network Classification
| Attribute | Value |
|---|---|
| **ASN** | 396982 |
| **Organization** | Google LLC |
| **Netname** | GOOGL-2 |
| **CIDR Block** | 8.228.0.0/14 |
| **Geolocation** | The Dalles, Oregon, US |
| **Network Role** | Google Cloud (Firewalled / No Services) |
The IP is assigned to Google Cloud infrastructure. No bogon classification, proxy, VPN, or residential indicators present. DNS PTR resolves to `176.106.235.8.bc.googleusercontent.com`.
---
## Threat Indicators Assessment
- Risk Score: 25 (Low Risk)
- Abuse Confidence Score: Not applicable
- Blacklist Count: 0
- Known Campaigns: None detected
- Tor Exit Node: No
- Known Attacker: No
- Spam Source: No
No threat indicators, attack signatures, or reputation penalties identified across major threat feeds.
---
## Network Behavior and Services
- Open Ports: None detected (firewalled)
- Active Services: No open HTTP/TLS services
- TLS Certificate: None
- DNSSEC Valid: Yes
- DNSBL Listed: 1 of 8 total lists (likely Google Cloud infrastructure listing)
- Route Stability: False (routing changes observed in 30-day window)
The infrastructure exhibits typical Google Cloud behavior with no exposed services.
---
## Temporal Analysis
| Metric | Value |
|---|---|
| **Ownership Changes** | 0 |
| **Average Ownership Days** | N/A |
| **Threat Persistence Days** | 0 |
| **Threat Observation Count** | 0 |
| **Persistently Malicious** | No |
Sixteen signal observations recorded. Ownership remains stable with no changes. No persistent malicious behavior detected.
---
## Neighborhood Analysis
- Subnet: 8.235.106.0/24
- Neighbor Count: 0
- Abuse Density: 0
- High Risk Neighbors: 0
- Medium Risk Neighbors: 0
- Low Risk Neighbors: 0
The /24 subnet shows no active sibling IPs or threat activity.
---
## Relationships
Six relationship records identified:
- Network Associations: GOOGL-2 (repeated entries)
- DNS Associations: 176.106.235.8.bc.googleusercontent.com
No external or malicious entity associations detected.
---
## Recommended Actions
None required. This IP address is classified as legitimate Google Cloud infrastructure with no threat indicators. Routine monitoring is appropriate.
If traffic to/from this IP is observed in a security monitoring context, it may represent legitimate Google Cloud service traffic (e.g., cloud management APIs, CDN requests, or Google-owned service communications).
This summary was generated by AI and may contain inaccuracies. Verify critical details independently.
π’ Ownership & Registration
| Organization | Google LLC |
| ASN | AS396982 |
| Network Name | GOOGL-2 |
| CIDR Block | 8.228.0.0/14 |
| RIR | ARIN |
| Country | United States |
| Abuse Contact | Available via RDAP |
π DNS Intelligence
| PTR | 176.106.235.8.bc.googleusercontent.com |
| Forward Confirmed | Yes β FCrDNS verified |
| Forward Hostnames | 176.106.235.8.bc.googleusercontent.com |
π DNS Hygiene
| Hygiene Score | 100% (Excellent) |
| SPF | 2/8 domains |
| DMARC | 2/8 domains |
| FCrDNS | Verified |
| DNSSEC | Valid |
| CAA | Present |
| Domains Checked | 8 domains |
βοΈ Network Classification
| Infrastructure | Infrastructure / Datacenter |
| Service Purpose | Web Server |
| Network Tier | Tier 3 β Basic operator with some routing infrastructure |
π Services & Open Ports
| Port | Service | Protocol | Banner |
|---|---|---|---|
| 443 | https | tcp | β |
| Closed Ports | 22, 25, 80, 3389, 8080, 8443 (1 open / 7 scanned) | ||
| Server | β |
| HTTP Title | β |
π TLS Certificate
| SANs | kuberneteskubernetes.defaultkubernetes.default.svckubernetes.default.svc.cluster.local |
| Valid From | 2026-08-25T00:23:25+00:00 |
| Valid Until | 2027-08-25T00:25:25+00:00 |
| TLS Protocol | Tls13 |
| Cipher Suite | TLS_AES_128_GCM_SHA256 |
| Signature Algorithm | sha256RSA |
| Validity Period | 365 days |
| Serial Number | 008B79073AD52BCC82C8374DBC0EC09F70 |
| Thumbprint | 4480E6EDCB0D059DF125360CC3BE56CF5EE3374C |
π― Confidence Breakdown
Per-dimension confidence scores based on source diversity and data freshness
| Dimension | Score | Sources | Observations |
|---|---|---|---|
| threat | 31% | 2 | 3 |
| routing | 13% | 1 | 1 |
| services | 35% | 2 | 3 |
| ownership | 31% | 2 | 3 |
| reputation | 25% | 1 | 3 |
| geolocation | 27% | 2 | 3 |
| Overall | 27% | 10 | 16 |
| Data Coherence | Consistent (100%) |
| Attribution | Moderate (70%) |
| OwnershipFCrDNSGeo ConsensusGeo PlausibleIRR MatchRPKI Valid |
π Observation Timeline π Live
| First Seen | 2026-08-07 07:33:40 UTC |
| Last Seen | 2026-08-30 15:41:54 UTC |
| Profile Built | 2026-08-30 21:07:31 UTC |
| Data Freshness | Live |
| Signal Types | 22 |
| Total Observations | 35 |
Full dossier details are available via our API.