Wtfis: Passive hostname, domain and IP lookup tool for non-robots

98 todsacerdoti 10 5/12/2025, 10:15:12 PM github.com ↗

Comments (10)

yrcyrc · 11m ago
No matter what url I try I get Error fetching data: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/<urlfqdn> Same with -s or --use-shodan
kristel100 · 51m ago
This is going right into my toolbox. Love tools that quietly give you signal without forcing a whole workflow. The passive aspect is especially nice for recon work.
thih9 · 1h ago
Off topic, in case this needs a backronym with no profanity, sharing some ideas; first one is my favorite:

- What's That Funny Internet Site?

- Web Threat Forensic Inspection Service

- Warden That Flags Internet Suspicion

DavideNL · 2h ago
Note that a Virustotal API key is required... so it doesn't seem very privacy friendly.
Briannaj · 6h ago
I'm actually surprised no one built this before this is exactly what soc analyst would need.
1dom · 1h ago
This looks like a really cool little CLI script, and I could see myself using it as a regular CLI tool instead of whois and Googling. It looks really good, it gathers a lot of extra info, and uses a bunch of highly regarded external sources like virustotal, shodan, graynoise and more.

Only criticism is that it does use or need a bunch of accounts and API keys which probably makes the setup a bit tedious: https://github.com/pirxthepilot/wtfis?tab=readme-ov-file#dat... obviously a necessary evil though given what the tool is doing.

buzzergfxkjkl · 5h ago
Really great idea, happy to see this out there!
cchance · 9h ago
Nice i like it ,, stared so i can check it out later
new_user_final · 2h ago
That explains the lowest comment to star ratio I have ever noticed.
VladVladikoff · 10h ago
Pretty!