Whois
Whois is a look-up service that provides information about a domain name or IP address.
- queries domain registry databases for the name, address, email, phone number, etc. of the person or entity associated with a domain name or IP address
- can show if domain/IP is:
- associated to known malicious entities
- created recently, which are often associated with malware campaigns
- also available via web from ICANN at https://lookup.icann.org
Example
