Maltego: Getting started
This page walks through installing the updated DomainTools integration in Maltego and running a first transform.
Before you start
Section titled “Before you start”You need:
- A Maltego client, version 4.10.0 or later. Both commercial editions (Professional, Classic, XL) and Maltego Community Edition can run the DomainTools transforms; the transforms are served from a DomainTools-hosted transform server and distributed via Maltego’s public TDS. CE returns fewer entities per transform than commercial editions — see the Community Edition caveats.
- Maltego Graph (Desktop) on Windows, Linux, or macOS. See the Maltego downloads page.
- A 64-bit Java 8, 11, or 17 runtime on the machine running Maltego.
- A DomainTools account with API access. You will use the API username and API key from your account.
- Entitlement to the DomainTools APIs backing the transforms you want to run. If you’re unsure which APIs your account includes, contact your DomainTools representative.
If you don’t yet have API credentials or don’t know what your account covers, contact your DomainTools representative or EnterpriseSupport@domaintools.com.
Install from the Maltego Transform Hub
Section titled “Install from the Maltego Transform Hub”The DomainTools integration ships as a single DomainTools listing in the Transform Hub that bundles the Iris Investigate, WHOIS/WHOIS History, and RDAP transform families. You don’t install three separate listings.
- Open your Maltego client.
- Go to the Transform Hub.
- Locate the DomainTools listing and click Install. Accept any prompts for terms of use.
- When prompted, enter your DomainTools API username and API key. These are stored as global transform settings and are reused across all DomainTools transforms.
Upgrading from the previous DomainTools integration
Section titled “Upgrading from the previous DomainTools integration”The older DomainTools Iris and DomainTools Enterprise listings in the Transform Hub show a deprecation notice and will be retired on September 30, 2026. If you have either installed, you can continue using them until that date.
To upgrade, install the new DomainTools listing from the Transform Hub. You don’t need to uninstall the older listings first — both can coexist during the transition period.
Configure credentials
Section titled “Configure credentials”The integration uses two required global settings:
| Setting | Description |
|---|---|
API Username | Your DomainTools API username. |
API Key | Your DomainTools API key. |
Both settings are shared by every DomainTools transform. You can update them at any time from the Maltego client’s transform settings.
Run your first transform
Section titled “Run your first transform”- Create a new Maltego graph.
- Drop a Domain entity onto the graph and set its value to a domain you’d like to investigate.
- Right-click the entity and choose a DomainTools transform — for example, Domain Profile or Domain to IP Addresses.
- Review the resulting entities on the graph. Counts and other enrichments surface in the entity properties panel.
From the resulting entities, you can continue to pivot with additional DomainTools transforms. See:
- Iris Investigate transforms for enrichment and pivoting across the Iris attribute model.
- WHOIS, History, and Reputation transforms for current/parsed WHOIS, history, reverse lookups, hosting history, and reputation.
- RDAP transforms for parsed RDAP lookups.
If something goes wrong
Section titled “If something goes wrong”See Troubleshooting for common errors (authorization denied, data not found, slow responses).