我有一个工作项目,我需要对Whois管理员/代理后面的域注册人进行分析,并弄清他们是谁(他们大多数是使用域进行恶意软件攻击的坏人)。
作为演示,如果我在test.com上运行whois查找(出于明显的原因,我不会在此处使用恶意域)
whois test.com -h whois.networksolutions.com
我得到以下结果:
[Querying whois.networksolutions.com]
[whois.networksolutions.com]
Domain Name: TEST.COM
Registry Domain ID: 5429075_DOMAIN_COM-VRSN
Registrar WHOIS Server: whois.networksolutions.com
Registrar URL: http://networksolutions.com
Updated Date: 2018-07-21T07:22:47Z
Creation Date: 1997-06-18T04:00:00Z
Registrar Registration Expiration Date: 2019-06-17T04:00:00Z
Registrar: NETWORK SOLUTIONS, LLC.
Registrar IANA ID: 2
Reseller:
Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited
Registry Registrant ID:
Registrant Name: PERFECT PRIVACY, LLC
Registrant Organization:
Registrant Street: 12808 Gran Bay Parkway West
Registrant City: Jacksonville
Registrant State/Province: FL
Registrant Postal Code: 32258
Registrant Country: US
Registrant Phone: +1.5707088780
Registrant Phone Ext:
Registrant Fax:
Registrant Fax Ext:
Registrant Email: qq9tq6x63es@networksolutionsprivateregistration.com
Registry Admin ID:
Admin Name: PERFECT PRIVACY, LLC
Admin Organization:
Admin Street: 12808 Gran Bay Parkway West
Admin City: Jacksonville
Admin State/Province: FL
Admin Postal Code: 32258
Admin Country: US
Admin Phone: +1.5707088780
Admin Phone Ext:
Admin Fax:
Admin Fax Ext:
Admin Email: qq9tq6x63es@networksolutionsprivateregistration.com
Registry Tech ID:
Tech Name: PERFECT PRIVACY, LLC
Tech Organization:
Tech Street: 12808 Gran Bay Parkway West
Tech City: Jacksonville
Tech State/Province: FL
Tech Postal Code: 32258
Tech Country: US
Tech Phone: +1.5707088780
Tech Phone Ext:
Tech Fax:
Tech Fax Ext:
Tech Email: t96nb4x48wg@networksolutionsprivateregistration.com
Name Server: NS65.WORLDNIC.COM
Name Server: NS66.WORLDNIC.COM
DNSSEC: unsigned
Registrar Abuse Contact Email: abuse@web.com
Registrar Abuse Contact Phone: +1.8003337680
URL of the ICANN WHOIS Data Problem Reporting System: http://wdprs.internic.net/
>>> Last update of WHOIS database: 2018-10-17T23:18:12Z <<<]
您将看到它在whois代理后面。为了弄清楚该域背后的真正注册人,我需要访问所有域的集合并在其上运行我的模型。但是,如果我反复执行查找,大多数Whois服务器都会很快限制我。
有办法解决这个问题吗?还是拥有通过whois记录完全访问整个域名的更好选择?我将如何请求这种访问权限?