WHOIS Data Retrieval

Prev Next

Historical and Live RDAP Queries

Silent Push’s Xperimental Queries provide robust tools for retrieving both historical WHOIS data and live RDAP WHOIS data, enabling security teams to investigate domain ownership, track changes, and enhance cybersecurity efforts. These tools, accessible via the Advanced Query Builder, offer comprehensive insights into domain registration history and current status, helping identify threats like phishing, malware distribution, or domain hijacking.

Historical WHOIS Data Lookup

Historical WHOIS data reveals past ownership and registration details, crucial for verifying website legitimacy, investigating cybercrimes, or detecting patterns in malicious activity. By analyzing changes in registrant names, contact information, or IP addresses, security teams can build attacker profiles and uncover connections between domains or threat actors. This is particularly useful for domains registered before GDPR, which may reveal unredacted ownership details unavailable in current records.

  1. Navigate to Advanced Query Builder > Xperimental Queries > Domain WHOIS History.

  2. Specify a domain.

  3. (Optional) Select a sample interval (Day, Week, Month, Quarter, Year) to retrieve one record per period.

  4. (Optional) Enable changes_only to show only records with changes.

  5. Set a limit for the number of results.

  6. Click Search.

Live RDAP WHOIS Query

The Registration Data Access Protocol (RDAP) WHOIS query retrieves current registration data for domains, IP addresses, or autonomous system numbers (ASNs) in a structured JSON format. RDAP offers improved performance, scalability, and privacy protections compared to traditional WHOIS, including restricted access based on user credentials. This tool is ideal for real-time verification of domain ownership or identifying recent changes that may signal threats.

  1. Navigate to Advanced Query Builder > Xperimental Queries > Tools - Live RDAP WHOIS Lookup.

  2. Select a query type (ASN, Domain, IP, Entity).

  3. Specify a query name.

  4. (Optional for Entity queries) Select a regional registry.

  5. Choose a results format (compact or full RDAP results).

  6. Click Search.

Save Queries

Organizational users can save queries for future use or sharing.

  1. Specify query parameters.

  2. Click Save Query.

  3. Provide a Name and Description for context.

  4. Click Save. The query appears in Private Queries.