# Domain Dossier

| **Domain Dossier** | **Quick Overview**                                                                                                                                               |
| ------------------ | ---------------------------------------------------------------------------------------------------------------------------------------------------------------- |
| URL                | <https://centralops.net/co/DomainDossier.aspx>                                                                                                                   |
| What it does       | Gathers publicly available information about a domain or IP address, such as WHOIS records, DNS data, and network details.                                       |
| How to use it      | Simply enter a domain name, IP address, or hostname, and the tool returns a selection of technical reports showing how the website is connected to the internet. |
| Cost               | Free.                                                                                                                                                            |
| Account required   | No.                                                                                                                                                              |
| Cookies            | Yes - basic session and security cookies.                                                                                                                        |
| Ownership          | Hosted on the website CentralOps, which is operated by the technology company Hexillion.                                                                         |
| Use in Reporting   | To identify domain ownership clues, hosting providers, and network infrastructure, which can help link websites together/identify suspicious online activity.    |

### **What does Domain Dossier do?**&#x20;

Domain Dossier generates reports about domain names or IP addresses using publicly available internet records.&#x20;

It allows users to perform lookups such as WHOIS searches, DNS record checks, IP address lookups, and traceroutes, to understand where a website is hosted and how it is connected to other systems.

**The lowdown:** It’s a quick and easy tool for investigating the technical background of a website/domain. However, results are based on publicly available network records, so some information may be limited or hidden due to privacy protection services or recent changes.<br>

### How to Use:

**1. Go to the** [**Domain Dossier webpage.**](https://centralops.net/co/DomainDossier.aspx) **Enter a domain name, IP address or hostname into the search box, eg osint.industries**

**2. Select the type of report you want (WHOIS record, DNS records, traceroute etc.)**

*E.g. We selected the WHOIS record to display the below. Press ‘Go’ to generate the report.*

<figure><img src="https://2429831402-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2F3YeRsjw1gI6xxIP4cuOd%2Fuploads%2FwbDp2AqnxRma0JSBzEWK%2Funknown.png?alt=media&#x26;token=2225ddf1-8fe4-4047-ae4d-5425e55684b9" alt=""><figcaption></figcaption></figure>

**3. Review the results to see info about the domain registration, hosting provider, IP address, and network details.**

### Cost:

* [ ] Paid
* [ ] Partially Free
* [x] Free

## Data Processing

### Account required:

* [ ] Yes
* [x] No

### Cookies:&#x20;

The website uses basic session and security cookies for session management, website functionality, and security.\ <br>

### Use in Reporting

Domain Dossier can support OSINT and cybersecurity reporting by helping investigators:

* Identify domain registration details
* Find hosting providers or network owners
* Trace the network route to a server
* Investigate suspicious or malicious websites
* Link different domains that share the same infrastructure

This information can help build a technical picture of how websites or online services are connected.&#x20;

In real-world terms Domain Dossier is regularly cited in digital infrastructure investigation guides as a recommended tool for performing WHOIS lookups and gathering domain ownership and DNS data. A[ cybercrime investigator course lab](https://elhacker.info/Cursos/IFCI%20Expert%20Cybercrime%20Investigator/01%20-%20Computer%20Forensics%20Core%20Concepts/IFCI_CCICF_Lab%2013%20-%20Domain%20Investigation/Lab%2013%20-%20Domain%20investigations.pdf) also uses Domain Dossier as a practical example.

| **Capabilities**                                                                     | **Limitations**                                                                              |
| ------------------------------------------------------------------------------------ | -------------------------------------------------------------------------------------------- |
| Performs WHOIS lookups.                                                              | WHOIS information may be hidden by privacy protection services.                              |
| Retrieves DNS records.                                                               | Some data may be outdated or cached temporarily.                                             |
| Analyses network infrastructure of websites.                                         | Whilst it provides technical infrastructure data, it doesn’t provide info about individuals. |
| Locates IP addresses geographically.                                                 | Requires some understanding of network terminology to interpret results correctly.           |
| Provides access to domain registration information and identifies hosting providers. | <p><br></p>                                                                                  |

### Summary

Domain Dossier is a simple and effective OSINT tool for investigating the technical infrastructure behind websites and domains. Whilst it cannot always reveal the real owner of a domain, it's a valuable starting point for online investigations.

### Ownership

Domain Dossier is provided by the website CentralOps, which is operated by privately held technology company [Hexillion](https://hexillion.com/), based in Plano, Texas, USA.

### Ethical Considerations:

* Domain investigations should only use publicly available information and avoid intrusive techniques.
* Technical data should not be used to target or harass website owners.
* Ensure your investigation complies with cybersecurity and data protection laws.
* Results should be verified with additional sources before making claims about ownership or attribution.

### Related Tools:

* ViewDNS
* Security Trails
* DNSdumpster

#### Sources:

<https://centralops.net/co/DomainDossier.aspx>&#x20;

<https://find-and-update.company-information.service.gov.uk/company/08055289/officers>&#x20;

<https://jamesmills.co.uk/2008/05/27/domain-dossier/>&#x20;

<https://osintbay.com/tool/domain-dossier>&#x20;

<https://gijn.org/resource/guide-to-investigating-digital-threats-digital-infrastructure/>&#x20;

<https://hexillion.com/>
