WHOIS命令未返回有用信息?


9

每当您使用WHOIS命令时,都不会返回任何有用的信息。我通常必须去Godaddy,Dnsstuff或其他服务来获取数据。我了解原因主要是垃圾邮件。

我只是想知道其他服务如何获取此数据。他们使用不同类型的WHOIS命令吗?还有些困惑,从WHOIS命令生成的数据只是垃圾邮件。whois google.com举个例子,例如垃圾邮件网站GOOGLE.COM.ZZZZZZ.THE.BEST.WEBHOSTING.AT.WWW.FATUCH.COM。这些数据从哪里来?

范例:

Whois Server Version 2.0

Domain names in the .com and .net domains can now be registered
with many different competing registrars. Go to http://www.internic.net
for detailed information.

GOOGLE.COM.ZZZZZZ.THE.BEST.WEBHOSTING.AT.WWW.FATUCH.COM
GOOGLE.COM.WORDT.DOOR.VEEL.WHTERS.GEBRUIKT.SERVERTJE.NET
GOOGLE.COM.UY
GOOGLE.COM.UA
GOOGLE.COM.TW
GOOGLE.COM.TR
GOOGLE.COM.SA
GOOGLE.COM.PE
GOOGLE.COM.MX
GOOGLE.COM.DO
GOOGLE.COM.CO
GOOGLE.COM.CN
GOOGLE.COM.BR
GOOGLE.COM.AU
GOOGLE.COM.AR
GOOGLE.COM.AFRICANBATS.ORG
GOOGLE.COM

To single out one record, look it up with "xxx", where xxx is one of the
of the records displayed above. If the records are the same, look them up
with "=xxx" to receive a full display for each record.

>>> Last update of whois database: Wed, 30 Mar 2011 03:07:59 UTC <<<

NOTICE: The expiration date displayed in this record is the date the
registrar's sponsorship of the domain name registration in the registry is
currently set to expire. This date does not necessarily reflect the expiration
date of the domain name registrant's agreement with the sponsoring
registrar.  Users may consult the sponsoring registrar's Whois database to
view the registrar's reported date of expiration for this registration.

TERMS OF USE: You are not authorized to access or query our Whois
database through the use of electronic processes that are high-volume and
automated except as reasonably necessary to register domain names or
modify existing registrations; the Data in VeriSign Global Registry
Services' ("VeriSign") Whois database is provided by VeriSign for
information purposes only, and to assist persons in obtaining information
about or related to a domain name registration record. VeriSign does not
guarantee its accuracy. By submitting a Whois query, you agree to abide
by the following terms of use: You agree that you may use this Data only
for lawful purposes and that under no circumstances will you use this Data
to: (1) allow, enable, or otherwise support the transmission of mass
unsolicited, commercial advertising or solicitations via e-mail, telephone,
or facsimile; or (2) enable high volume, automated, electronic processes
that apply to VeriSign (or its computer systems). The compilation,
repackaging, dissemination or other use of this Data is expressly
prohibited without the prior written consent of VeriSign. You agree not to
use electronic processes that are automated and high-volume to access or
query the Whois database except as reasonably necessary to register
domain names or modify existing registrations. VeriSign reserves the right
to restrict your access to the Whois database in its sole discretion to ensure
operational stability.  VeriSign may restrict or terminate your access to the
Whois database for failure to abide by these terms of use. VeriSign
reserves the right to modify these terms at any time.

The Registry database contains ONLY .COM, .NET, .EDU domains and
Registrars.

Answers:


10

假设您正在使用debian / ubuntu whois库,则对问题的简短回答是使用

$ whois -h whois.crsnic.net "domain google.com"

这是很长的答案。

.COM TLD是一个瘦的WHOIS。在执行WHOIS查询时,WHOIS工具首先将WHOIS查询发送到Verisign(主机名whois.crsnic.net),然后从响应中提取引荐。

默认情况下,当您从域名example.com中查询Verisign时,Whois在包括域名,注册服务商名称和名称服务器在内的多个不同对象中对字符串“ example.com”进行非常广泛的搜索。

您可以通过指定关键字来优化查询,如Verisign文档中所述。 http://registrar.verisign-grs.com/whois/iframe/help.html?ppath=www.verisigninc.com/products-and-services/domain-name-services/whois&

上面的命令正是我所解释的。它将完整查询“ domain google.com”发送给Verisign而不是google.com。您必须显式传递-h标志,因为Whois会尝试从查询中猜测要查询的主机名,但是由于无法将查询“ domain google.com”识别为有效域,因此它将失败。

这是命令的结果。

$ whois -h whois.crsnic.net "domain google.com"

Whois Server Version 2.0

Domain names in the .com and .net domains can now be registered
with many different competing registrars. Go to http://www.internic.net
for detailed information.

   Domain Name: GOOGLE.COM
   Registrar: MARKMONITOR INC.
   Whois Server: whois.markmonitor.com
   Referral URL: http://www.markmonitor.com
   Name Server: NS1.GOOGLE.COM
   Name Server: NS2.GOOGLE.COM
   Name Server: NS3.GOOGLE.COM
   Name Server: NS4.GOOGLE.COM
   Status: clientDeleteProhibited
   Status: clientTransferProhibited
   Status: clientUpdateProhibited
   Status: serverDeleteProhibited
   Status: serverTransferProhibited
   Status: serverUpdateProhibited
   Updated Date: 15-sep-2010
   Creation Date: 15-sep-1997
   Expiration Date: 14-sep-2011

>>> Last update of whois database: Wed, 30 Mar 2011 08:50:16 UTC <<<

NOTICE: The expiration date displayed in this record is the date the 
registrar's sponsorship of the domain name registration in the registry is 
currently set to expire. This date does not necessarily reflect the expiration 
date of the domain name registrant's agreement with the sponsoring 
registrar.  Users may consult the sponsoring registrar's Whois database to 
view the registrar's reported date of expiration for this registration.

TERMS OF USE: You are not authorized to access or query our Whois 
database through the use of electronic processes that are high-volume and 
automated except as reasonably necessary to register domain names or 
modify existing registrations; the Data in VeriSign Global Registry 
Services' ("VeriSign") Whois database is provided by VeriSign for 
information purposes only, and to assist persons in obtaining information 
about or related to a domain name registration record. VeriSign does not 
guarantee its accuracy. By submitting a Whois query, you agree to abide 
by the following terms of use: You agree that you may use this Data only 
for lawful purposes and that under no circumstances will you use this Data 
to: (1) allow, enable, or otherwise support the transmission of mass 
unsolicited, commercial advertising or solicitations via e-mail, telephone, 
or facsimile; or (2) enable high volume, automated, electronic processes 
that apply to VeriSign (or its computer systems). The compilation, 
repackaging, dissemination or other use of this Data is expressly 
prohibited without the prior written consent of VeriSign. You agree not to 
use electronic processes that are automated and high-volume to access or 
query the Whois database except as reasonably necessary to register 
domain names or modify existing registrations. VeriSign reserves the right 
to restrict your access to the Whois database in its sole discretion to ensure 
operational stability.  VeriSign may restrict or terminate your access to the 
Whois database for failure to abide by these terms of use. VeriSign 
reserves the right to modify these terms at any time. 

The Registry database contains ONLY .COM, .NET, .EDU domains and
Registrars.

1
当前,.COM域名的权威Whois服务器是whois.verisign-grs.com。因此,该命令应更新为:whois -h whois.verisign-grs.com "domain google.com"
iglvzx 2014年

2

您要查询所有记录类型,而不仅仅是domain记录。从whois help

默认情况下,WHOIS会进行非常广泛的搜索,在所有记录类型中查找以下字段中与您的查询匹配的内容:域名,名称服务器名称,名称服务器IP地址和注册商名称。使用关键字来缩小搜索范围。

以下关键字将搜索限制为数据库中某个字段的类型:domain查找域记录。找出域名,注册商名称,whois服务器和URL,名称服务器名称和IP地址以及更新日期。

有两个可能的修复:

1.明确设置域选项:

 whois "domain google.com"

2.使用仅返回“域”结果的whois主机

whois -h geektools.com google.com 

请参阅为什么Whois结果中有垃圾,以及如何摆脱它以获取更多信息。


1

当您请求google.com的WHOIS信息时,它将在所有记录中搜索“ google.com”,而不是按您期望的那样将模式锚定在末尾。

而且取决于WHOIS客户端以及配置使用的服务器。几年前,我就建立内部WHOIS服务进行了一些研究(我在大学里工作,所以我们有很多小领地和很多网络),据我所知,数据中几乎没有一致的结构格式,因此客户必须使用大量启发式方法来找出引荐等。我的猜测是dnsstuff和godaddy可能只是调整了更多的启发式方法。因此,您可以尝试其他客户端。


By using our site, you acknowledge that you have read and understand our Cookie Policy and Privacy Policy.
Licensed under cc by-sa 3.0 with attribution required.