सबडोमेन खोजक

DNS-over-HTTPS का उपयोग करके 24 सामान्य सबडोमेन जांचें। किसी भी डोमेन के सक्रिय सबडोमेन खोजें — SEO साइट संरचना विश्लेषण और सुरक्षा ऑडिट के लिए उपयोगी।

अपडेट किया गया

Share:
Home/Domain Tools/Subdomain Finder

Subdomain Finder

Check 24 common subdomains using DNS-over-HTTPS. Find active subdomains for any domain — useful for security audits and SEO structure analysis.

Subdomain Scanner

Subdomain Security Considerations

Secure exposed admin panels

Subdomains like admin., dashboard., or portal. should be protected with strong authentication, IP allowlists, or VPN access only.

Take down unused subdomains

Abandoned subdomains can be hijacked if the underlying service (e.g., a deleted GitHub Pages or Heroku app) is no longer active. Regularly audit and remove unused DNS records.

HTTPS for all subdomains

Ensure every active subdomain has a valid SSL certificate. A wildcard certificate (*.example.com) makes this easier to manage.

Subdomain takeover risks

If a CNAME points to an unclaimed external service, attackers can register that service and take over your subdomain. Use CAA records and monitor DNS regularly.

This tool checks 24 common subdomains using DNS-over-HTTPS. For comprehensive subdomain enumeration, use specialized tools like Subfinder, Amass, or SecurityTrails.

अक्सर पूछे जाने वाले प्रश्न

Subdomain Finder क्या है?

Subdomain Finder एक मुफ़्त ऑनलाइन टूल है जो DNS-over-HTTPS का उपयोग करके 24 सामान्य सबडोमेन की जाँच करता है। यह किसी भी डोमेन के सक्रिय सबडोमेन खोजता है, जो SEO के लिए साइट संरचना विश्लेषण और सुरक्षा ऑडिट में उपयोगी है। यह पूरी तरह आपके ब्राउज़र में चलता है, बिना किसी इंस्टॉलेशन या साइन-अप के।

सबडोमेन खोज कैसे काम करती है?

यह टूल 24 सामान्य सबडोमेन नामों (www, mail, api, blog, shop, admin आदि) की जाँच करता है, इसके लिए यह Cloudflare के माध्यम से DNS-over-HTTPS का उपयोग करके उनके DNS A और CNAME रिकॉर्ड देखता है।

क्या सबडोमेन टेकओवर एक वास्तविक जोखिम है?

हाँ। अगर कोई CNAME रिकॉर्ड किसी अनक्लेम्ड बाहरी सेवा (जैसे हटाए गए Heroku ऐप या GitHub Pages) की ओर इशारा करता है, तो एक हमलावर उस सेवा को रजिस्टर करके आपके सबडोमेन पर कब्ज़ा कर सकता है।

अधिक व्यापक स्कैनिंग के लिए?

यह टूल 24 सामान्य सबडोमेन की जाँच करता है। पूर्ण गणना के लिए Subfinder, Amass या SecurityTrails जैसे टूल का उपयोग करें, जो हज़ारों सबडोमेन पैटर्न की जाँच करते हैं।

क्या Subdomain Finder उपयोग करने के लिए मुफ़्त है?

हाँ, Subdomain Finder 100% मुफ़्त है, बिना किसी रजिस्ट्रेशन, छिपे शुल्क या उपयोग सीमा के। सारी प्रोसेसिंग आपके ब्राउज़र में स्थानीय रूप से होती है, जिससे पूर्ण गोपनीयता सुनिश्चित होती है।

क्या इस टूल के साथ मेरा डेटा सुरक्षित है?

बिल्कुल। Subdomain Finder सब कुछ आपके ब्राउज़र में क्लाइंट-साइड प्रोसेस करता है। कोई भी डेटा किसी सर्वर पर अपलोड या संग्रहीत नहीं किया जाता। आपकी सामग्री हर समय आपके डिवाइस पर निजी रहती है।

क्या Subdomain Finder मोबाइल डिवाइस पर काम करता है?

हाँ, Subdomain Finder पूरी तरह रिस्पॉन्सिव है और स्मार्टफोन व टैबलेट पर काम करता है। आप इसे आधुनिक वेब ब्राउज़र वाले किसी भी डिवाइस पर इस्तेमाल कर सकते हैं, बिना कोई ऐप डाउनलोड किए।

क्या इस टूल का उपयोग करने के लिए मुझे खाता बनाना होगा?

किसी खाते या रजिस्ट्रेशन की ज़रूरत नहीं है। बस अपने ब्राउज़र में Subdomain Finder खोलें और तुरंत उपयोग शुरू करें। कोई साइन-अप बाधा या उपयोग प्रतिबंध नहीं है।

मैं Subdomain Finder का उपयोग कैसे करूँ?

बस दिए गए फ़ील्ड में अपना इनपुट दर्ज करें, अपनी पसंद के अनुसार कोई भी सेटिंग समायोजित करें, और टूल इसे तुरंत प्रोसेस कर देगा। फिर आप परिणाम को अपने क्लिपबोर्ड पर कॉपी या डाउनलोड कर सकते हैं।

कौन-कौन से ब्राउज़र समर्थित हैं?

Subdomain Finder सभी आधुनिक ब्राउज़रों में काम करता है, जिनमें Chrome, Firefox, Safari, Edge और Opera शामिल हैं। बेहतरीन अनुभव के लिए अपने पसंदीदा ब्राउज़र के नवीनतम संस्करण का उपयोग करें।

Subdomain और subdirectory में क्या अंतर है?

एक subdomain एक prefix है जो एक distinct host की ओर point करता है, जैसे blog.example.com, जबकि एक subdirectory एक ही host पर एक path है, जैसे example.com/blog। मुख्य अंतर technical है: एक subdomain का अपना DNS record होता है और यह एक अलग server, IP, या platform पर live हो सकता है, जबकि एक subdirectory root domain का server और configuration share करता है। SEO के लिए यह मायने रखता है क्योंकि search engines अक्सर subdomains को कुछ हद तक अलग साइटों के रूप में treat करते हैं, इसलिए authority हमेशा उतनी स्वतंत्र रूप से flow नहीं होती जितनी एक ही domain पर folders के बीच होती है। Subdirectories आम तौर पर उस content के लिए पसंद किए जाते हैं जिसे आप एक brand के अंतर्गत consolidate करना चाहते हैं, जबकि subdomains genuinely अलग services जैसे apps, status pages, या staging environments के लिए उपयुग्त हैं। यह टूल DNS lookup द्वारा active subdomains detect करता है, ताकि आप सटीक रूप से map कर सकें कि एक domain किन prefixes को run कर रहा है अपनी structure plan करने से पहले।

A record और CNAME record में क्या अंतर है?

एक A record एक hostname को सीधे एक IPv4 address पर map करता है, इसलिए www.example.com पर एक A record का मतलब है वह सीधे एक numeric IP पर resolve होता है। एक CNAME record इसके बजाय एक hostname को दूसरे hostname का alias बनाता है, इसलिए app.example.com पर एक CNAME एक hosting provider जैसे platform की ओर point कर सकता है, जो फिर final IP पर resolve होता है। यह टूल हर subdomain के लिए पहले A record check करता है और अगर कोई A record नहीं होता तो CNAME पर fall back करता है; या तो response का मतलब subdomain active है। यह distinction उपयोगी है क्योंकि एक CNAME target अक्सर reveal करता है कि कौन सा external service एक subdomain के पीछे है, जैसे एक status-page host या एक deployment platform, जबकि एक A record बस IP दिखाता है। ऊपर एक domain डालें और results हर active subdomain के लिए resolved IP या CNAME target display करते हैं।

एक subdomain जो मुझे मौजूद पता है वह not found क्यों दिखाता है?

सबसे आम reason यह है कि यह टूल 24 common subdomain names की एक curated सूची check करता है, इसलिए उस सूची के बाहर कोई भी prefix, जैसे internal-billing या एक custom label, test नहीं होगा और इसलिए appear नहीं होगा। एक subdomain not found तब भी दिख सकता है अगर उसका कोई public A या CNAME record नहीं है, उदाहरण के लिए एक जो केवल एक internal network पर resolve होता है, या अगर यह एक ऐसा record type इस्तेमाल करता है जो scan query नहीं करता, जैसे एक AAAA-only IPv6 host। Temporary DNS propagation delays या resolver caching भी कभी-कभी एक बहुत हाल ही में बनाया गया record hide कर सकते हैं। अगर आपको एक ऐसा नाम चाहिए जो common सूची पर नहीं है, तो एक dedicated enumeration tool जैसे Subfinder या Amass जो certificate-transparency logs से pull करते हैं वे ज़्यादा गहराई तक जाएँगे। आम suspects पर एक तेज़ first pass के लिए, अपना domain ऊपर scanner से चलाएँ।

क्या subdomains SEO को नुक़सान पहुँचाते हैं या एक साइट की ranking authority split करते हैं?

Subdomains स्वतः SEO को नुक़सान नहीं पहुँचाते, लेकिन लापरवाही से इस्तेमाल होने पर results dilute कर सकते हैं। Search engines एक subdomain को एक related फिर भी कुछ हद तक अलग entity मानते हैं, इसलिए links और authority जैसे signals blog.example.com और root domain के बीच हमेशा उतने साफ़ पास नहीं होते जितने एक ही host पर folders के बीच होते हैं। बड़ा practical risk एक forgotten staging या dev subdomain है जो accidentally indexable है, जो duplicate content leak कर सकता है और crawl budget waste कर सकता है। Fix यह है कि उन hosts को find करें, फिर एक noindex rule add करें या उन्हें robots.txt में block करें। Genuinely distinct services जैसे एक app, store, या support portal के लिए legitimate subdomains बिल्कुल ठीक हैं जब हर एक intentional और सही ढंग से configure हो। अपना domain यहाँ scan करने से आपको हर live subdomain की एक तेज़ inventory मिलती है ताकि आप तय कर सकें कि किसे consolidate, secure, या de-index करना है।

एक CNAME target मुझे एक subdomain के बारे में क्या बता सकती है?

एक CNAME target अक्सर एक subdomain की DNS record का सबसे revealing line होती है क्योंकि यह उस external service का नाम बताती है जिसे subdomain point करता है न कि सिर्फ़ एक anonymous IP। अगर status.example.com का CNAME एक hosted status-page provider की ओर point करता है, या app.example.com एक deployment platform का alias है, तो target तुरंत बताती है कि कौन सा third party उस host के पीछे run हो रहा है। यह दो reasons से valuable है। Infrastructure mapping के लिए, यह बिना किसी guesswork के दिखाती है कि एक domain किन services पर depend करता है। Security के लिए, एक unclaimed या deleted external service की ओर point करता CNAME subdomain takeover का classic setup है, जहाँ एक attacker उस service को re-register करता है और आपके subdomain से content serve करता है। यह टूल हर active subdomain के साथ CNAME target surface करता है, इसलिए ऊपर एक domain डालें ताकि आप देख सकें कि इसके aliases कहाँ lead करते हैं।

संबंधित टूल

मुफ़्त WHOIS लुकअप टूल

डोमेन पंजीकरण जानकारी और स्वामित्व विवरण देखें। मुफ़्त, तेज़ और बिना साइन-अप के पूरी तरह आपके ब्राउज़र में चलता है।

मुफ़्त डोमेन आयु जाँचक

जानें कि कोई डोमेन कितना पुराना है और इसे पहली बार कब पंजीकृत किया गया था। मुफ़्त, तेज़ और बिना साइन-अप के पूरी तरह आपके ब्राउज़र में चलता है।

मुफ़्त SSL प्रमाणपत्र जाँचक

SSL प्रमाणपत्र सत्यापित करें, समाप्ति तिथियाँ जाँचें और प्रमाणपत्र शृंखला के विवरण की समीक्षा करें। मुफ़्त, तेज़ और बिना साइन-अप के पूरी तरह आपके ब्राउज़र में चलता है।

मुफ़्त डोमेन उपलब्धता जाँचक

जाँचें कि कोई डोमेन नाम पंजीकरण के लिए उपलब्ध है या नहीं। मुफ़्त, तेज़ और बिना साइन-अप के पूरी तरह आपके ब्राउज़र में चलता है।

Subdomain Finder के बारे में

Subdomain Finder एक free टूल है जो check करता है कि आप जो domain enter करते हैं उसके लिए common subdomains exist करते हैं या नहीं। example.com जैसा domain टाइप करें और यह सबसे ज़्यादा इस्तेमाल होने वाले 24 subdomain names test करता है — www, mail, api, blog, shop, admin, dev, staging, और और भी — फिर report करता है कि कौन से live हैं, साथ में वह IP address या CNAME जिस पर हर एक resolve होता है। यह SEO specialists के लिए बनाया गया है जो एक साइट की असली structure map कर रहे हैं, developers जो अपने infrastructure audit कर रहे हैं, और security-minded teams जो forgotten या exposed hosts खोज रहे हैं।

एक subdomain एक domain पर एक prefix है जो एक distinct host या service की ओर point करता है: blog.example.com और shop.example.com example.com के अलग subdomains हैं। Organizations उन्हें marketing साइटों, APIs, staging environments, status pages, और customer portals के लिए spin up करते हैं — और अक्सर यह track खो देते हैं कि कितने अभी भी वास्तव में run हो रहे हैं।

Scan कैसे काम करता है

टूल हर candidate subdomain को public DNS query करके check करता है, target साइट crawl करके नहीं। हर नाम के लिए यह पहले A record lookup करता है (जिस IPv4 address पर एक host resolve होता है); अगर कोई A record नहीं होता, तो यह CNAME record पर fall back करता है (एक alias जो दूसरे hostname की ओर point करता है)। या तो response होने का मतलब subdomain active है। तेज़ और responsive रहने के लिए, 24 नाम five के batches में check किए जाते हैं, एक progress bar के साथ।

एक detail जिस पर सटीक होना चाहिए: ये DNS lookups सीधे आपके browser से Cloudflare के DNS-over-HTTPS resolver (cloudflare-dns.com) पर भेजे जाते हैं। इसलिए जबकि कोई sign-up, account, या हमारे servers पर कुछ store नहीं, lookups खुद एक third-party resolver को encrypted DNS queries हैं बजाय purely local computation के। केवल आप जो domain enter करते हैं वही query होता है — कोई और डेटा आपका browser नहीं छोड़ता।

अपने results पढ़ना

Results दो groups में split होते हैं ताकि आप अपना live footprint एक नज़र में देख सकें:

  • Active subdomains found — हर एक में full hostname और इसका resolved IP (A record से) या इसका CNAME target दिखता है।
  • Not found — ऐसे नाम जिनका कोई DNS record नहीं, जिसका आम तौर पर मतलब है कि वह subdomain बस इस्तेमाल में नहीं है।

एक CNAME target अक्सर सबसे revealing line होती है। अगर status.example.com एक hosted status-page provider की ओर point करता है, या app.example.com Heroku या GitHub Pages जैसे platform पर resolve होता है, तो CNAME आपको बताती है कि कौन सा external service इसके पीछे है।

Subdomain discovery क्यों मायने रखता है

SEO के लिए, हर live subdomain जानना मायने रखता है क्योंकि search engines अक्सर उन्हें अलग entities मानते हैं। एक neglected staging. या dev. host जो accidentally indexable है, duplicate content leak या crawl budget dilute कर सकता है, इसलिए इसे find करना एक noindex rule add या robots.txt में block करने का पहला step है।

Security के लिए, abandoned subdomains एक real liability हैं। अगर एक CNAME अभी भी एक unclaimed external service — एक deleted GitHub Pages site या एक cancelled app — की ओर point करता है, तो एक attacker उस service को re-register कर सकता है और आपके subdomain से content serve कर सकता है, जिसे subdomain takeover कहा जाता है। वही scan exposed admin., dashboard., और portal. hosts surface करती है जिन्हें authentication, एक IP allowlist, या एक VPN के पीछे होना चाहिए, और remind करती है कि हर active subdomain को एक valid SSL certificate चाहिए (एक wildcard cert जो *.example.com cover करता है उसे manage करना आसान बनाता है)।

Scope और limits

यह एक तेज़ reconnaissance टूल है, एक exhaustive enumerator नहीं। यह 24 common नामों की एक curated सूची test करता है, इसलिए एक असामान्य label वाला subdomain — जैसे internal-billing.example.com — appear नहीं होगा बस इसलिए कि वह सूची पर नहीं है। हज़ारों patterns check करने वाले और certificate-transparency logs से pull करने वाले full enumeration के लिए, Subfinder, Amass, या SecurityTrails जैसे dedicated tools कहीं ज़्यादा गहराई तक जाते हैं। एक तेज़, free first pass के लिए Subdomain Finder इस्तेमाल करें, फिर complete coverage चाहिए हो तो उन तक पहुँचें।