Site Monitoring

Finding domain and IP address ownership

If your site is being bombarded by requests from a computer you'll want to know who is doing this and where they are located. Similarly if a new web site is offering a very similar web service to your own then you may well want to find out who is behind the operation.

The only real source of information online about ownership IP addresses and Domain names is in the WhoIs service. This has changed recently so that there are many sources of Whois information not just a single one. To find out about a name you need to know where to look. For domain names this means following a trail from the top level WhoIs server at Internic down to registrars for domain names. For IP addresses the registry is split up on a geographical basis.

When Site Vigil displays domain names and IP addresses it doesn't just leave it there. Beside each one is a WhoIs button to request further information about the owner of the domain or IP address. There's no longer any need for cutting and pasting. The full Whois reply is presented in a convenient pop-up window.

There follows two examples (they do not reflect real contact information) copied from Site Vigil screens.

Example Whois for Detron.com

Lookup for information about domain name 'www.detron.com'
Using information read from 'whois.internic.net,whois.networksolutions.com'

Registrant: Retro Aerospace (RETRO2-DOM)
7600 Belfast Ave
Oakland, CA 94719
US

Domain Name: RETRO.COM
Administrative Contact:
Rupert Bushell (38456655P) [email protected]
24672 Santa Clara St
Hayward, CA 94544
US
510-521-3650

Technical Contact:
Hamish McCall (3823255P) [email protected]
24672 Santa Clara St
Hayward, CA 94544
US
510-521-3650


Record expires on 21-Mar-2008.
Record created on 20-Mar-1994.
Database last updated on 29-Dec-2005 11:47:28 EST.

Domain servers in listed order:
KW.RETRO.COM 205.179.156.5
GATEWAY.RETRO.COM 64.81.61.130
NS1.DSL.NET 209.87.64.70
NS2.DSL.NET 209.87.79.232
site monitoring

Example Whois for 205.179.166.15

Lookup for information about IP address '205.179.166.15'
Using information read from 'whois.arin.net'

OrgName: DSN.net, Inc.
OrgID: FTCI
Address: 541 Long Wharf Drive
City: New Haven
StateProv: CT
PostalCode: 06612
Country: US

NetRange: 205.179.0.0 - 205.179.255.255
CIDR: 205.179.0.0/16
NetName: DSL-NET-21
NetHandle: NET-205-179-0-0-1
Parent: NET-205-0-0-0-0
NetType: Direct Allocation
NameServer: NS1.DSN.NET
NameServer: NS2.DSN.NET

Comment: ADDRESSES WITHIN THIS BLOCK ARE NON-PORTABLE
Comment: rwhois.scruz.net 4321

RegDate: 1995-03-20
Updated: 2006-07-29
OrgAbuseHandle: ABUSE177-ARIN
OrgAbuseName: Abuse
OrgAbusePhone: +1-203-778-1000
OrgAbuseEmail: [email protected]
OrgNOCHandle: NOC291-ARIN
OrgNOCName: Network Operations Center
OrgNOCPhone: +1-203-778-1000
OrgNOCEmail: [email protected]
OrgTechHandle: IPADM54-ARIN
OrgTechName: IP Administration
OrgTechPhone: +1-203-772-1000
OrgTechEmail: [email protected]