Gathering and validating domain and IP information
When a person or corporate entity registers a domain name there is a lot of information that is gathered. Depending on the registration privacy settings, you can collect this information and use it to verify your IP space, find information about other sites owned by the same individual or corporation, or even phone numbers and addresses of key employees. This type of reconnaissance is considered passive as it does not directly contact client-owned assets to pull information.
We will need to locate the registrar that the domain has been registered with to obtain useful information. Here is a listing of the top registrars.
AFRINIC | |
APNIC | |
ARIN | |
IANA | |
ICANN | |
LACNIC | |
NRO | |
RIPE | |
InterNic |
Gathering information with whois
Domain...