Domain Whois lookup
Registration details, nameservers, and expiry.
| Registered | 1997-09-15 |
| Updated? | 2019-09-09 |
| Expires | 2028-09-14 |
| IANA ID? | 292 |
| Registrar URL? | http://www.markmonitor.com |
| Registrar WHOIS? | whois.markmonitor.com |
| ns1.google.com |
| ns2.google.com |
| ns3.google.com |
| ns4.google.com |
| clientDeleteProhibited |
| clientTransferProhibited |
| clientUpdateProhibited |
| serverDeleteProhibited |
| serverTransferProhibited |
| serverUpdateProhibited |
| clientUpdateProhibited |
| clientTransferProhibited |
| clientDeleteProhibited |
| serverUpdateProhibited |
| serverTransferProhibited |
| serverDeleteProhibited |
| Abuse email? | [email protected] |
| Abuse phone? | +1.2086851750 |
What does each field mean?
Field reference
Registrar
The ICANN-accredited registrar that manages this domain on behalf of the owner. Examples: GoDaddy, Namecheap, Cloudflare. To transfer or renew the domain, you must work through this registrar.
Registrar URL
Direct link to the registrar's public website, useful when filing abuse complaints or transferring the domain. Different from the registrant's own site — this is the company you paid for the registration.
Registrar WHOIS server
The registrar runs its own WHOIS server (TCP/43) that often returns richer data than the registry server: contact info, last-update timestamps, and proprietary status fields. The standard chain is IANA → registry → registrar, with each step adding detail.
IANA registrar ID
IANA assigns each accredited registrar a stable numeric ID (e.g., 1068 for GoDaddy, 1479 for Namecheap). Useful for cross-referencing the registrar in IANA reports or detecting registrar mergers / brand changes.
Abuse contact email
Contact address the registrar must monitor for abuse complaints — phishing, malware, spam, copyright. Under ICANN policy registrars must respond within 24 hours. If the domain is being used maliciously, this is where you report it.
Abuse contact phone
Mandatory phone contact for escalating active abuse cases (live phishing, in-progress fraud). Less commonly used than the email channel, but legally required by ICANN since 2014.
DNSSEC
DNSSEC adds cryptographic signatures to DNS responses so resolvers can detect tampering. "signed" means the zone publishes a DS record at the registry and a chain of trust is anchored at the root. "unsigned" means anyone running a man-in-the-middle attack on DNS can spoof answers.
Name server count
Each domain delegates DNS to one or more authoritative name servers. 2 is the IANA minimum; well-run domains use 4+ across two networks for redundancy. A single NS is a serious availability red flag.
Name servers
The hostnames whose answers are treated as canonical for the domain. They publish A/AAAA/MX/TXT/etc. records. Changing name servers in WHOIS effectively re-delegates the domain — propagation takes minutes to 48 hours depending on registry TTL.
EPP status codes
Extensible Provisioning Protocol (EPP) status codes set by the registrar or registry. Examples: <code>clientTransferProhibited</code> (registrar lock — prevents hijacking), <code>serverHold</code> (registry suspension — DNS is offline), <code>pendingDelete</code> (in deletion grace period). Healthy domains typically show several "Prohibited" codes — those are protective locks, not problems.
Registry WHOIS host
Each TLD has a registry (Verisign for .com/.net, PIR for .org, Nominet for .uk) running an authoritative WHOIS server at port 43. The registry knows registrar + delegation info; richer per-domain data lives at the registrar level.
Last updated
Timestamp of the most recent WHOIS record update. Useful to spot recent ownership transfers, name-server changes, or registrar moves — common during compromise / takeover investigations.
About this tool
A domain whois lookup returns the public registration record for any domain name — who registered it, through which registrar, when it was created, when it expires, and which nameservers it uses. This is the same data registries publish so that network operators and rights holders can trace ownership and contact the right party.
Our tool follows the IANA referral chain automatically. For thin TLDs like .com and .net, we query the registry first and then fetch the full record from the registrar's whois server so you get dates, status codes, and nameservers in one place. Country-code TLDs (.de, .ua, .pl, .fr) are served from their national registries directly.
When to use this tool
- Before buying a domain. Check the current owner and expiry to plan a contact attempt or backorder.
- Diagnosing a broken site. Confirm whether a domain has expired, moved registrars, or switched nameservers.
- Reporting abuse. Find the registrar's abuse contact for domains used in phishing or malware campaigns.
- IDN verification. Enter a Cyrillic or other non-ASCII domain — we convert to punycode and fetch the registry record for you.
What the status codes mean
EPP status codes likeclientTransferProhibited or serverHold tell you what operations are currently allowed on the domain. "Client" codes are set by the registrar; "server" codes by the registry. pendingDelete means the domain is in its grace period and will drop soon; ok means the domain is active with no restrictions.