Selasa, 05 April 2016

Information gathering (ping , arping , fping)

So today i'm gonna give a tutorial about information gathering with these following tools:
-ping
-arping
-fping

Ping:
most all of the computer scientist student about ping total we can use ping as testing to see the reachability of the network. ping command is available to all operating system. open your command prompt (windows) or terminal (linux). Ping operate by using ICMP (internet control message protocol) echo request to the target.


well most of the people only care about about the time, the smaller the time, faster the internet connection. But do you know the rest of the parameter like TTL and icmp_seq?.

according to searchnetworking.techtarget.com TTL is, again, the number of seconds for which cached information can be returned before the Web server is required to check again that it is still "fresh." and did you know from TTL we can determine what kind of OS that is used by the system.



Operating System (OS)IP Initial TTLTCP window size
FreeBSD6465535
Windows XP12865535
Windows 7, Vista and Server 20081288192
Cisco Router (IOS 12.4)2554128  

(source:www.netresec.com)

for the icmp_seq:
http://www.faqs.org/rfcs/rfc792.html

0                   1                   2                   3
    0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1
   +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
   |     Type      |     Code      |          Checksum             |
   +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
   |           Identifier          |        Sequence Number        |
   +-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
   |     Data ...
   +-+-+-+-+-

   IP Fields:

   Addresses

      The address of the source in an echo message will be the
      destination of the echo reply message.  To form an echo reply
      message, the source and destination addresses are simply reversed,
      the type code changed to 0, and the checksum recomputed.

   IP Fields:

   Type

      8 for echo message;

      0 for echo reply message.

   Code

      0

   Checksum

      The checksum is the 16-bit ones's complement of the one's
      complement sum of the ICMP message starting with the ICMP Type.
      For computing the checksum , the checksum field should be zero.
      If the total length is odd, the received data is padded with one
      octet of zeros for computing the checksum.  This checksum may be
      replaced in the future.

   Identifier

      If code = 0, an identifier to aid in matching echos and replies,
      may be zero.

   Sequence Number


      If code = 0, a sequence number to aid in matching echos and
      replies, may be zero.

   Description

      The data received in the echo message must be returned in the echo
      reply message.

      The identifier and sequence number may be used by the echo sender
      to aid in matching the replies with the echo requests.  For
      example, the identifier might be used like a port in TCP or UDP to
      identify a session, and the sequence number might be incremented
      on each echo request sent.  The echoer returns these same values
      in the echo reply.

 Arping:
 
The arping tool is used to ping a destination host in the Local Area Network (LAN) using the ARP (Address Resolution Protocol) request. The arping is useful to test whether a particular IP address is in use in the network. you can use Arping or Arping2.


arping -c 3 -I wlan0 binus.ac.id
ARPING 202.58.182.119 from 192.168.31.68 wlan0
Unicast reply from 202.58.x.x [D4:CA:6D:x:x:x]  1.751ms
Unicast reply from 202.58.x.x [D4:CA:6D:x:x:x]  2.698ms
Unicast reply from 202.58.x.x [D4:CA:6D:x:x:x]  3.316ms
Sent 3 probes (1 broadcast(s))
Received 3 response(s)















this is the result that can show if you do the arping within the Local area network

Image 

and this is what happen if you arping the target outside the local area network it will not get any response

Fping:

according to fping.org:

fping is a program to send ICMP echo probes to network hosts, similar to ping, but much better performing when pinging multiple hosts.

i will try to check if the target is alive

fping -A binus.ac.id binuscareer.com binus.tv
202.58.x.x is alive
202.58.x.x is alive
202.58.x.x is alive

as you can see i can send icmp packet to a multiple host

and with fping you can ping multiple host in a range of ip address

ex= fping -g 202.58.x.x/24

it means i send icmp packet to the all c block.

so that's all that i can give you if you want to know more about Arping and fping check (  http://fping.org/fping.1.html and http://linux-ip.net/html/tools-arping.html)

Have a lovely day ^_^









2 komentar:

  1. **Contact 24/7**
    Telegram > @killhacks
    ICQ > 752822040
    Skype > Peeterhacks
    Wicker me > peeterhacks

    **HIGH CREDIT SCORES SSN FULLZ AVAILABLE**

    >For tax filling/return
    >SSN DOB Dl all info included
    >For SBA & PUA
    >Fresh spammed & Fresh database

    **TOOLS & TUTORIALS AVAILABLE FOR HACKING SPAMMING
    CARDING CASHOUT CLONING SCRIPTING**

    Fullz info included
    NAME+SSN+DOB+DL+DL-STATE+ADDRESS
    Employee & Bank details included
    High credit fullz with DL 700+
    (bulk order preferable)
    **Payment in all crypto currencies will be accepted**

    ->You can buy few for testing
    ->Invalid or wrong info will be replaced
    ->Serious buyers contact me for long term business & excellent profit
    ->Genuine & Verified stuff

    TOOLS & TUTORIALS AVAILABLE:

    "SPAMMING" "HACKING" "CARDING" "CASH OUT"
    "KALI LINUX" "BLOCKCHAIN BLUE PRINTS" "SCRIPTING"

    **TOOLS & TUTORIALS LIST**

    =>US CC Fullz
    =>Ethical Hacking Tools & Tutorials
    =>Bitcoin Hacking
    =>Kali Linux
    =>Keylogger & Keystroke Logger
    =>Bulk SMS Sender
    =>Facebook & Google Hacking
    =>Bitcoin Flasher
    =>SQL Injector
    =>Logins Premium (PayPal/Amazon/Coinbase/Netflix/FedEx/Banks)
    =>Bitcoin Cracker
    =>SMTP Linux Root
    =>Shell Scripting
    =>DUMPS with pins track 1 and 2 with & without pin
    =>SMTP's, Safe Socks, Rdp's brute
    =>PHP mailer
    =>SMS Sender & Email Blaster
    =>Cpanel
    =>Server I.P's & Proxies
    =>Viruses & VPN's
    =>HQ Email Combo (Gmail, Yahoo, Hotmail, MSN, AOL, etc)

    ==>Contact 24/7<==
    Telegram> @killhacks
    ICQ> 752822040
    Skype> Peeterhacks
    Wicker me > peeterhacks

    *Serious buyers are always welcome
    *Big Discount in bulk order
    *Offer gives monthly, quarterly, half yearly & yearly
    *Hope we do a great business together

    **You should try at least once**

    BalasHapus
  2. Hey Guyz!!!

    Selling Spamming tools Like,
    inbox SMTP
    SMS Leads-Phone Number
    Email Leads
    Office 365 Email Leads
    Bulk Phone Number
    Residential Proxy
    Email Extractor
    Bank logs Of All countries
    Fullz Debit/Credit Card
    cPanel hosting
    WHM
    Windows RDP

    And Many More Spamming Tools And Scam Pages Are Available here.

    Contact Me For More Details And for a Quick Deal:
    Tele Gram : @cpanelmaster
    icq : @cpanelmaster
    My Site : https://toolz.store

    24/7 assistance Available
    All Tools are Available on Reasonable Prices.

    Thanks!!!

    BalasHapus