Whois


Whois is a look-up service that provides information about a domain name or IP address.

  • queries domain registry databases for the name, address, email, phone number, etc. of the person or entity associated with a domain name or IP address
  • can show if domain/IP is:
    • associated to known malicious entities
    • created recently, which are often associated with malware campaigns
  • also available via web from ICANN at https://lookup.icann.org

Example