Wide landscape photograph of rolling green hills under a soft overcast sky, with a narrow winding road leading toward distant mountains. Muted greens, pale blues, and earthy browns dominate the scene, conveying calm and open space.

Life in New Zealand, Unfiltered

A personal blog by Mardy — leaving Japan, chasing love, and building a life across the ocean.

How to Check a Domain's Age to Spot Spam Before It Catches You Out

Every week, Australians report thousands of scam attempts to the ACCC's Scamwatch service, and a quiet chunk of them start with a single dodgy link in a text message or email. Whether it is a fake ATO refund notice, a bogus Australia Post delivery alert, or a romance pitch that arrived out of nowhere, the first practical question you can ask is deceptively simple: how long has this website actually been around? A domain that was registered last week is rarely the digital home of a legitimate Australian business, and learning to check a site's age gives you a fast, free first filter before you click, reply, or hand over any details.

The "age" of a domain is the date it was first registered through a domain registrar, not the date the website was launched or last redesigned. That distinction matters because scammers can copy a polished-looking site in an afternoon, but they cannot fake the registration record sitting in the global WHOIS database. In a country where the average loss per reported scam runs into the thousands of dollars, a thirty-second WHOIS check is one of the cheapest due-diligence habits you can build, no matter whether you are sitting in Brisbane, Broome, or Ballarat.

What Domain Age Actually Means and Why Spammers Avoid Old Sites

Domain age is measured from the day a name was first created in the registry, and it lives independently of web hosting, design refreshes, or who currently owns the address. An old domain is, in effect, a name that has survived renewals, possible re-registrations, and the attention of spam filters for years. Because of that, established brands, government services, and small Aussie businesses tend to sit on domains registered years or even decades ago, while a typical phishing kit prefers a name that has only existed since last month.

There are practical reasons scammers lean on fresh registrations. Aged domains are more likely to be already flagged by Google Safe Browsing, Microsoft SmartScreen, or email gateways used by Aussie telcos like Telstra and Optus. A fresh domain, by contrast, usually has a clean reputation and slips past those filters for a short window. Cheap bulk registration, often through offshore registrars at a few dollars per name, lets criminal operators burn through dozens of lookalike addresses, such as mygov-secureau.com or telstra-billing.help, before any of them get blacklisted. If you reverse the lens, that is exactly why domain age is a useful clue when a link lands in your inbox: long-lived, established sites earn their age, while a brand new address waving a familiar logo is the default pattern for a scam.

How to Run a WHOIS Lookup in Under a Minute

WHOIS is the public directory that ties a domain name to its registration record, and almost anyone can query it. The official starting point is the ICANN Lookup tool at lookup.icann.org, which pulls data from the registry of record and shows the creation date, last update, and expiry. For a slightly richer view, community-run mirrors such as who.is and ViewDNS.info return the same core fields in a tidier layout, while commercial services like DomainTools add historical snapshots that show ownership changes over time. If you want a single comparison of which tools handle Australian .au addresses best, this publisher-side roundup of WHOIS utilities is a handy shortcut for picking one to keep bookmarked.

The mechanic is identical everywhere: you type the domain into the search box, solve a captcha if prompted, and read the result. On the page, look for fields called "Created", "Registered On", "Creation Date", or similar. That single line is the domain's birthday. For Australian readers, the auDA-operated WHOIS at whois.auda.org.au is the most accurate source for anything ending in .au, .com.au, .org.au, or .net.au, because those addresses run under Australian policy rather than the global ICANN rules. A small note of realism: results can be slow during peak AEST business hours when the global registries are busy, and a few lookups will simply time out and need a second try.

Tool Cost Shows Creation Date Shows History Best For
ICANN Lookup Free Yes No Quick global lookups
who.is Free Yes Limited General everyday use
ViewDNS.info Free Yes Partial Bulk checks and side tools
DomainTools Paid Yes Full snapshots Investigating old or sold names
auDA WHOIS Free Yes No Australian .au domains

Reading a WHOIS Record Without Getting Lost

Once the result loads, resist the urge to scroll past the dates looking for a smoking gun. The creation date is your headline number, but two other fields give the rest of the story. "Updated Date" tells you when the record was last touched, and "Registry Expiry Date" tells you how far into the future the current owner has paid. Scammers almost always register for the minimum period, which is typically one year, because they do not expect the domain to survive long enough to renew. A legitimate business with a five- or ten-year horizon tends to pre-pay several years to lock in the name and avoid the risk of losing it.

The other detail worth scanning is the registrant block. Under Australian privacy rules, personal details for .au domains are often withheld and replaced with a registry contact, so a missing name and address is not, on its own, a red flag. For international domains, however, a freshly registered name showing a private individual in a country unrelated to the supposed brand is worth a raised eyebrow. Many corporate sites, by contrast, will list a real company, an abuse contact email, and a working phone number, all of which you can sanity-check with a quick search of the Australian Business Register. If the WHOIS data, the listed address, and the ABR result disagree, that is a signal to back away.

Red Flags That Go Beyond the Registration Date

Age is a strong starting signal, but it is not the only one in the WHOIS record, and treating it as a single binary test will create false positives. A few of the surrounding clues carry as much weight as the creation date itself, and reading them together gives a much sharper picture than any single field can. When you run a lookup, keep a mental checklist of the patterns most often linked to disposable scam infrastructure.

The first is registration length. A one-year registration on a site claiming to be a long-standing Australian business is suspicious. The second is rapid ownership change, which you can see if you compare historical WHOIS snapshots: a domain that changed hands three times in six months is almost certainly being recycled for short-term campaigns. Third, look at the name server and the hosting country. A site that claims to be a Melbourne-based tradie but resolves to a server in a jurisdiction with no enforcement ties to Australia is another tell. Remember that domain age only makes sense if you have a working sense of the calendar around it, and this brief look at how months line up is a useful gut-check for converting raw dates into days and weeks.

Why a Domain's Birthday Cannot Prove Legitimacy on Its Own

A common mistake is to treat an old domain as a green light, but age alone can mislead. Established domains get compromised, sold, or parked on expired marketplaces and then reused for malware distribution. Inversely, a brand new domain is not automatically a scam: Australian start-ups launch new sites every day, and a freshly registered address for a small café in Fitzroy or a tradie in Bunbury is completely normal. The age check is one input, not a verdict, and it works best when paired with a quick look at the rest of the page.

Practical heuristics help. If a domain is older than five years, the site has had time to earn search rankings, accumulate reviews, and build a footprint on social media. A quick search of the brand name plus the word "scam" on the ACCC Scamwatch news feed, or a scan of productreview.com.au, will surface complaints if the site has burned Australian shoppers. For newer domains, check whether the site asks for unusual payment methods such as gift cards, cryptocurrency, or direct bank transfers, all of which are hallmarks the ACCC flags in their annual Targeting Scams report. Pairing the WHOIS creation date with these secondary signals turns a single data point into a workable risk score.

Scams Hitting Australians That Lean on Fresh Domains

The pattern is consistent across the most reported scam categories in Australia. ATO impersonation emails usually link to a domain registered within the last sixty days, dressed up with ".gov.au" in the path even though the real address has nothing to do with the actual government. Australia Post and courier smishing texts follow the same play, often using domains a few weeks old to host fake tracking pages that harvest card details. Telstra and Optus impersonators, the NBN "technical support" calls, and the myGov Centrelink bonus scams all rely on a constantly refreshed pool of cheap, throwaway domains because the addresses get burned within days of being reported.

The category where age checks are particularly useful is romance and relationship fraud, which the ACCC consistently ranks among the highest-loss categories. Scammers build convincing profiles on dating apps and then move victims to a personal email or chat platform, eventually pointing them toward a dedicated "relationship" site that often doubles as the next stage of the pitch. Looking at the WHOIS record on that so-called love-themed landing page frequently reveals a domain that is only weeks or months old, sometimes registered in bulk with hundreds of similar names on the same day. The same pattern shows up in the broader lifestyle scam ecosystem, where weight loss, wellness, and crypto trading pitches cycle through fresh domains faster than filters can keep up.

Combining Age Checks With Other Trust Signals

The most reliable approach treats domain age as one tile in a larger mosaic. Run a WHOIS lookup, note the creation date, and then look at three other layers before forming a view. The first layer is technical: does the site have a valid SSL certificate, a real privacy policy, and a working abuse contact that actually responds? The second layer is identity: is there a matching ABN or ACN that resolves in the Australian Business Register, and does the listed address exist on Google Street View? The third layer is reputation: are there independent reviews, and does the site show up on any scam-alert aggregator that consolidates ACCC reports?

Putting it all together, a simple decision tree is enough for everyday use. If the domain is under ninety days old and the site asks for money or credentials, treat it as hostile and leave. If it is over two years old and the identity checks line up, you can usually proceed with normal caution. Everything in between deserves a second look, especially when the message that brought you there created a sense of urgency, such as a missed delivery, a suspended account, or an unexpected refund. Slowing down to check the WHOIS record is the Australian equivalent of stopping to lock the front door: it is not glamorous, but it is the habit that keeps most of the bad days from happening.

Run a WHOIS lookup the next time a link asks you to act fast, share the creation date with the person who sent it if you are unsure, and build the habit into how you browse rather than treating it as a one-off reaction. A thirty-second check is a small price for keeping your details, your money, and your peace of mind out of a scammer's hands.