WHOIS vs RDAP for Domain and IP Investigation
WHOIS remains common for domain registration records, while RDAP gives you structured registry ownership data that often fits IP and ASN investigation better.
ComUtil की डोमेन लुकअप WHOIS और SSL रिकॉर्ड लौटाती है। इसकी IP लुकअप WHOIS फ़ॉलबैक के साथ RDAP रजिस्ट्री डेटा लौटाती है। पूर्ण-डोमेन RDAP शामिल नहीं है।
Use this page when
आपके पास होस्टनाम या IP है और आपको जानना है कि कौन-सी लुकअप आपके सवाल का जवाब देती है।
ComUtil boundary
Use the live domain workflow for registrar, nameserver, and certificate facts. Use the live IP workflow for ASN, registry, and network-range context.
गार्डरेल
कोई भी प्रोटोकॉल यह नहीं बताता कि डोमेन या पता दुर्भावनापूर्ण है या नहीं। दोनों केवल पंजीकरण तथ्य लौटाते हैं।
Start from a suspicious login domain
कुछ दिन पहले पंजीकृत डोमेन जिसका प्रमाणपत्र उसी दिन जारी हुआ हो, उसे और करीब से देखना चाहिए।
1. Check a domain
2. Review registrar, expiration, and nameservers
3. Compare certificate timing before you pivot to IP ownership
Start from a source IP or ASN question
यदि पता आपके अपेक्षित ISP के बजाय किसी होस्टिंग प्रदाता का निकलता है, तो उस ट्रैफ़िक का अर्थ बदल जाता है।
1. Lookup an IP
2. Compare registry, ASN owner, and network range
3. Escalate with those ownership facts
Use both when the investigation pivots
A domain can lead you into IP ownership, but the two jobs still answer different questions.
Domain facts -> WHOIS/SSL workflow
Infrastructure ownership -> IP workflow
Range scope -> CIDR guide if the question expands
WHOIS रजिस्ट्रार, निर्माण और समाप्ति तिथियाँ, नेमसर्वर, और जहाँ रजिस्ट्री प्रकाशित करती है वहाँ पंजीकरणकर्ता के संपर्क फ़ील्ड लौटाता है।
- Use the domain workflow when the investigation starts from a hostname, login URL, or registrable domain.
- हाल में पंजीकृत डोमेन और प्राइवेसी-सुरक्षित पंजीकरणकर्ता फ़ील्ड ध्यान देने योग्य संकेत हैं, निर्णय नहीं।
RDAP मुक्त-रूप टेक्स्ट के बजाय JSON लौटाता है, इसलिए रजिस्ट्री, ASN स्वामी और नेटवर्क रेंज भरोसेमंद ढंग से पार्स होते हैं। RDAP उपलब्ध न होने पर IP वर्कफ़्लो WHOIS पर लौट आता है।
- Use the IP workflow when the question is who owns this address, which registry allocated it, and what network range it belongs to.
- Treat RDAP as ownership context, not as a maliciousness verdict or a replacement for deeper investigation.