我们的历史 DNS 记录数据库是同类数据库中最大的数据库之一,拥有数十亿个记录事件,用户可深入了解网络资源的 DNS 历史和关联性。
我们的DNS 数据库下载可通过 CSV 文件访问获取。我们的 DNS 大事记API 易于集成,并支持流行的编程语言和平台。
选择最适合消费模式(查询、API 或数据库下载),满足用户的独特需求。
通过发现用于特定 Web 应用程序和服务的关联或隐藏域名和子域名,从而保持资产清单的最新状态。
识别不寻常的 DNS 解析模式,这些模式可能表明存在僵尸网络活动或用于托管或传播恶意软件的被攻陷的基础设施。
对已知威胁行为者相关的 DNS 解析、可能为恶意活动的模式或异常保持警惕。
监测DNS记录变化,以检测域名劫持尝试,并评估相关域名如何影响品牌声誉。
使用 DNS 数据来跟踪域名配置变化,识别相关联的基础设施,监测与供应商和其他第三方相关的可疑活动。
通过分析 DNS 模式、域名所有权变更以及与恶意服务器的先前关联来揭露欺诈行为。
“WhoisXML API 的被动 DNS 数据库,即便是用于学术目的精简版,与其他商业和免费数据库相比,都具有更好的子域名数据覆盖率。”
"WhoisXML 改变了我们的游戏规则,可快速识别所有那些为网络犯罪分子提供物质支持的供应商,这些犯罪分子使用看似合法实则使用非常复杂的网站,从而彻底颠覆了我们在过程中侦破网络犯罪的能力。通过快速识别这些在不知情的情况下位犯罪分子提供支持的供应商,可协助其以公共利益为目的,摧毁犯罪分子的基础设施。”
"经过全面测试,我们欣喜地发现,高级版 DNS 365 所识别的'活跃'子域名可比市场上其他产品多出 10 倍"。
A DNS record is a data record stored in the Domain Name System (DNS) that maps domain names to specific resources, such as IP addresses, mail servers, or other services. A DNS server resolves those records to direct internet traffic and manage domain-related services. Common DNS record types include:
To get information about a domain’s current DNS records, you can use our DNS lookup tool or DNS lookup API.
The DNS history of a domain name is a list of past DNS configurations, including changes to IP addresses, name servers, mail servers, and other DNS records over time. It provides insight into how a domain's infrastructure has evolved and can reveal ownership changes, migrations, or potential misuse.
Unlike a sizable portion of WHOIS data, DNS data is not redacted for privacy, so historical DNS records can be quite useful for cybersecurity purposes.
The Domain Name System was not engineered to keep track of historical records, but with them holding a lot of value, it’s natural that independent vendors have begun creating and maintaining DNS history databases.
Domain’s DNS history typically includes details such as:
This information provides a detailed timeline of a domain's DNS activity and helps uncover patterns, infrastructure changes, potential links to malicious actors, and more.
Here’s an example of using our historical DNS lookup tool for example.com that pulls historical IP to domain or domain to IP information:
Historical DNS data has a wide range of practical applications across cybersecurity, threat intelligence, and asset management. You can use it to:
These capabilities make historical DNS data a very useful resource for improving security posture and gaining deeper insights into domain activity and associated risks.
To check DNS history:
Alternatively, you can refer to the WhoisXMLAPI's DNS Database Download service or use the DNS Chronicle API. These data delivery models provide detailed, time-stamped DNS records and could come in handy when you need to automate requests for historical DNS records.
DNS history can help identify suspicious activity or patterns, such as:
By analyzing DNS history, security teams can detect and respond to potential threats proactively.
DNS history can reveal connections between domains and threat actors by:
This helps cybersecurity providers keep tabs on threat actors' evolving tactics and infrastructure.
DNS history aids fraud detection by uncovering:
These insights help investigators trace and mitigate fraudulent schemes.
DNS history provides a comprehensive view of domain activity, which can:
By leveraging DNS history, organizations can improve visibility and security of their digital assets.
DNS history supports brand protection by allowing you to detect:
We recommend using DNS history together with predictive threat intelligence feeds for better results and correlation when it comes to brand protection efforts. Read our blog post to learn more about using DNS history for brand attack prevention.