Quantcast
Channel: Hacker News 50
Viewing all articles
Browse latest Browse all 9433

The result of pinging all the Internet IP addresses | Security Art Work

$
0
0

Comments:"The result of pinging all the Internet IP addresses | Security Art Work"

URL:http://www.securityartwork.es/2013/02/07/the-result-of-pinging-all-the-internet-ip-addresses/?lang=en


In the previous post we considered the theoretical cost and feasibility of scanning all Internet IP addresses and it resulted to be very low. Therefore, we decided to conduct a little experiment: see if it was possible to scan the entire Internet, of course without doing anything harmful.

While the action may not be completely harmless (some may have IDS complaning), we have tried to do the experiment as innocuous as possible. In this sense, the safest action we thought was to launch a ping (ICMP echo) to each and every one of the Internet IP addresses. Although we have sent just a single packet per IP, we messed the scans to prevent a network receiving a high number of consecutive packets.

To do so we prepared two threads, in which work I have had the invaluable help of Nacho López, an experienced C programmer. The source code of ping could have been a good source of inspiration also:

Envia_echo-icmp ()
Recibe_echo_icmp ()

The process works in stateless mode: one thread sends the packets blindly, and the second one simply writes down the response packets received, so the connections do not consume any amount of memory.

The increased complexity came from the disk storage resources; it was necessary to adjust well and program the threads considering the disk performance, so the results received were not lost. After 10 hours, we got the following results:

Ping overall results answered: 284,401,158 IP addresses responded to the ping, i.e. 7% of systems. Graphically:

If we group the results in /8 networks we see the following percentages:

NETWORK /8pongs answered% pongs answered
NETWORK /8pongs answered% pongs answered
0.X.X.X00,00%IANA – Local IdentificationRESERVED
1.X.X.X194582211,60%APNICwhois.apnic.netALLOCATED
2.X.X.X306072418,24%RIPE NCCwhois.ripe.netALLOCATED
3.X.X.X30,00%General Electric CompanyLEGACY
4.X.X.X479990,29%Level 3 Communications, Inc.LEGACY
5.X.X.X14767158,80%RIPE NCCwhois.ripe.netALLOCATED
6.X.X.X410,00%Army Information Systems CenterLEGACY
7.X.X.X00,00%Administered by ARINwhois.arin.netLEGACY
8.X.X.X764290,46%Level 3 Communications, Inc.LEGACY
9.X.X.X00,00%IBMLEGACY
10.X.X.X30,00%IANA – Private UseRESERVED
11.X.X.X00,00%DoD Intel Information SystemsLEGACY
12.X.X.X4016462,39%AT&T Bell LaboratoriesLEGACY
13.X.X.X6350,00%Xerox CorporationLEGACY
14.X.X.X206666912,32%APNICwhois.apnic.netALLOCATED
15.X.X.X103120,06%Hewlett-Packard CompanyLEGACY
16.X.X.X180,00%Digital Equipment CorporationLEGACY
17.X.X.X18970,01%Apple Computer Inc.LEGACY
18.X.X.X252810,15%MITLEGACY
19.X.X.X00,00%Ford Motor CompanyLEGACY
20.X.X.X20690,01%Computer Sciences CorporationLEGACY
21.X.X.X00,00%DDN-RVNLEGACY
22.X.X.X00,00%Defense Information Systems AgencyLEGACY
23.X.X.X211984112,64%ARINwhois.arin.netALLOCATED
24.X.X.X285416217,01%ARINwhois.arin.netALLOCATED
25.X.X.X00,00%UK Ministry of Defencewhois.ripe.netLEGACY
26.X.X.X00,00%Defense Information Systems AgencyLEGACY
27.X.X.X184699811,01%APNICwhois.apnic.netALLOCATED
28.X.X.X00,00%DSI-NorthLEGACY
29.X.X.X20,00%Defense Information Systems AgencyLEGACY
30.X.X.X30,00%Defense Information Systems AgencyLEGACY
31.X.X.X14448058,61%RIPE NCCwhois.ripe.netALLOCATED
32.X.X.X67910,04%AT&T Global Network ServicesLEGACY
33.X.X.X00,00%DLA Systems Automation CenterLEGACY
34.X.X.X730,00%Halliburton CompanyLEGACY
35.X.X.X306370,18%Administered by ARINwhois.arin.netLEGACY
36.X.X.X4472302,67%APNICwhois.apnic.netALLOCATED
37.X.X.X190972011,38%RIPE NCCwhois.ripe.netALLOCATED
38.X.X.X1765231,05%PSINet, Inc.LEGACY
39.X.X.X3934762,35%APNICwhois.apnic.netALLOCATED
40.X.X.X11650,01%Administered by ARINwhois.arin.netLEGACY
41.X.X.X178584610,64%AFRINICwhois.afrinic.netALLOCATED
42.X.X.X9050395,39%APNICwhois.apnic.netALLOCATED
43.X.X.X134470,08%Administered by APNICwhois.apnic.netLEGACY
44.X.X.X700,00%Amateur Radio Digital CommunicationsLEGACY
45.X.X.X10,00%Administered by ARINwhois.arin.netLEGACY
46.X.X.X265807215,84%RIPE NCCwhois.ripe.netALLOCATED
47.X.X.X117290,07%Administered by ARINwhois.arin.netLEGACY
48.X.X.X00,00%Prudential Securities Inc.LEGACY
49.X.X.X16430979,79%APNICwhois.apnic.netALLOCATED
50.X.X.X208630412,44%ARINwhois.arin.netALLOCATED
51.X.X.X00,00%UK Government Department for Work and Pensionswhois.ripe.netLEGACY
52.X.X.X1020,00%E.I. duPont de Nemours and Co., Inc.LEGACY
53.X.X.X30,00%Cap Debis CCSLEGACY
54.X.X.X220920,13%Merck and Co., Inc.LEGACY
55.X.X.X00,00%DoD Network Information CenterLEGACY
56.X.X.X220,00%US Postal ServiceLEGACY
57.X.X.X66530,04%SITALEGACY
58.X.X.X258360215,40%APNICwhois.apnic.netALLOCATED
59.X.X.X15080868,99%APNICwhois.apnic.netALLOCATED
60.X.X.X179887610,72%APNICwhois.apnic.netALLOCATED
61.X.X.X16521249,85%APNICwhois.apnic.netALLOCATED
62.X.X.X15610859,30%RIPE NCCwhois.ripe.netALLOCATED
63.X.X.X5692083,39%ARINwhois.arin.netALLOCATED
64.X.X.X13729408,18%ARINwhois.arin.netALLOCATED
65.X.X.X11363976,77%ARINwhois.arin.netALLOCATED
66.X.X.X183526610,94%ARINwhois.arin.netALLOCATED
67.X.X.X262327715,64%ARINwhois.arin.netALLOCATED
68.X.X.X211711312,62%ARINwhois.arin.netALLOCATED
69.X.X.X233509313,92%ARINwhois.arin.netALLOCATED
70.X.X.X184137810,98%ARINwhois.arin.netALLOCATED
71.X.X.X451170126,89%ARINwhois.arin.netALLOCATED
72.X.X.X328736919,59%ARINwhois.arin.netALLOCATED
73.X.X.X358911821,39%ARINwhois.arin.netALLOCATED
74.X.X.X297656517,74%ARINwhois.arin.netALLOCATED
75.X.X.X334167319,92%ARINwhois.arin.netALLOCATED
76.X.X.X272768116,26%ARINwhois.arin.netALLOCATED
77.X.X.X363974621,69%RIPE NCCwhois.ripe.netALLOCATED
78.X.X.X350504820,89%RIPE NCCwhois.ripe.netALLOCATED
79.X.X.X399192123,79%RIPE NCCwhois.ripe.netALLOCATED
80.X.X.X232544413,86%RIPE NCCwhois.ripe.netALLOCATED
81.X.X.X238061914,19%RIPE NCCwhois.ripe.netALLOCATED
82.X.X.X354010821,10%RIPE NCCwhois.ripe.netALLOCATED
83.X.X.X317066918,90%RIPE NCCwhois.ripe.netALLOCATED
84.X.X.X327664519,53%RIPE NCCwhois.ripe.netALLOCATED
85.X.X.X265170515,81%RIPE NCCwhois.ripe.netALLOCATED
86.X.X.X174046710,37%RIPE NCCwhois.ripe.netALLOCATED
87.X.X.X325177619,38%RIPE NCCwhois.ripe.netALLOCATED
88.X.X.X435611625,96%RIPE NCCwhois.ripe.netALLOCATED
89.X.X.X272447616,24%RIPE NCCwhois.ripe.netALLOCATED
90.X.X.X234432013,97%RIPE NCCwhois.ripe.netALLOCATED
91.X.X.X240468814,33%RIPE NCCwhois.ripe.netALLOCATED
92.X.X.X255607415,24%RIPE NCCwhois.ripe.netALLOCATED
93.X.X.X287813917,16%RIPE NCCwhois.ripe.netALLOCATED
94.X.X.X316521818,87%RIPE NCCwhois.ripe.netALLOCATED
95.X.X.X351288320,94%RIPE NCCwhois.ripe.netALLOCATED
96.X.X.X349034020,80%ARINwhois.arin.netALLOCATED
97.X.X.X9703265,78%ARINwhois.arin.netALLOCATED
98.X.X.X454920927,12%ARINwhois.arin.netALLOCATED
99.X.X.X13921148,30%ARINwhois.arin.netALLOCATED
100.X.X.X1287630,77%ARINwhois.arin.netALLOCATED
101.X.X.X12908007,69%APNICwhois.apnic.netALLOCATED
102.X.X.X00,00%AFRINICwhois.afrinic.netALLOCATED
103.X.X.X937890,56%APNICwhois.apnic.netALLOCATED
104.X.X.X00,00%ARINwhois.arin.netALLOCATED
105.X.X.X4621112,75%AFRINICwhois.afrinic.netALLOCATED
106.X.X.X11977327,14%APNICwhois.apnic.netALLOCATED
107.X.X.X3004991,79%ARINwhois.arin.netALLOCATED
108.X.X.X242690814,47%ARINwhois.arin.netALLOCATED
109.X.X.X246936314,72%RIPE NCCwhois.ripe.netALLOCATED
110.X.X.X245477814,63%APNICwhois.apnic.netALLOCATED
111.X.X.X190373511,35%APNICwhois.apnic.netALLOCATED
112.X.X.X296838617,69%APNICwhois.apnic.netALLOCATED
113.X.X.X307970618,36%APNICwhois.apnic.netALLOCATED
114.X.X.X280047816,69%APNICwhois.apnic.netALLOCATED
115.X.X.X283760216,91%APNICwhois.apnic.netALLOCATED
116.X.X.X191586311,42%APNICwhois.apnic.netALLOCATED
117.X.X.X212806312,68%APNICwhois.apnic.netALLOCATED
118.X.X.X289671117,27%APNICwhois.apnic.netALLOCATED
119.X.X.X306006418,24%APNICwhois.apnic.netALLOCATED
120.X.X.X11998057,15%APNICwhois.apnic.netALLOCATED
121.X.X.X266512515,89%APNICwhois.apnic.netALLOCATED
122.X.X.X216885212,93%APNICwhois.apnic.netALLOCATED
123.X.X.X268765716,02%APNICwhois.apnic.netALLOCATED
124.X.X.X249310414,86%APNICwhois.apnic.netALLOCATED
125.X.X.X300288517,90%APNICwhois.apnic.netALLOCATED
126.X.X.X9521865,68%APNICwhois.apnic.netALLOCATED
127.X.X.X00,00%IANA – LoopbackRESERVED
128.X.X.X7736694,61%Administered by ARINwhois.arin.netLEGACY
129.X.X.X3350982,00%Administered by ARINwhois.arin.netLEGACY
130.X.X.X4802772,86%Administered by ARINwhois.arin.netLEGACY
131.X.X.X1810651,08%Administered by ARINwhois.arin.netLEGACY
132.X.X.X2356301,40%Administered by ARINwhois.arin.netLEGACY
133.X.X.X492420,29%Administered by APNICwhois.apnic.netLEGACY
134.X.X.X2885721,72%Administered by ARINwhois.arin.netLEGACY
135.X.X.X239720,14%Administered by ARINwhois.arin.netLEGACY
136.X.X.X1163820,69%Administered by ARINwhois.arin.netLEGACY
137.X.X.X1785801,06%Administered by ARINwhois.arin.netLEGACY
138.X.X.X813330,48%Administered by ARINwhois.arin.netLEGACY
139.X.X.X1677981,00%Administered by ARINwhois.arin.netLEGACY
140.X.X.X2932041,75%Administered by ARINwhois.arin.netLEGACY
141.X.X.X2885971,72%Administered by RIPE NCCwhois.ripe.netLEGACY
142.X.X.X3446872,05%Administered by ARINwhois.arin.netLEGACY
143.X.X.X813790,49%Administered by ARINwhois.arin.netLEGACY
144.X.X.X904220,54%Administered by ARINwhois.arin.netLEGACY
145.X.X.X2006731,20%Administered by RIPE NCCwhois.ripe.netLEGACY
146.X.X.X2576741,54%Administered by ARINwhois.arin.netLEGACY
147.X.X.X1481890,88%Administered by ARINwhois.arin.netLEGACY
148.X.X.X780530,47%Administered by ARINwhois.arin.netLEGACY
149.X.X.X3019461,80%Administered by ARINwhois.arin.netLEGACY
150.X.X.X967940,58%Administered by APNICwhois.apnic.netLEGACY
151.X.X.X9547735,69%Administered by RIPE NCCwhois.ripe.netLEGACY
152.X.X.X1478250,88%Administered by ARINwhois.arin.netLEGACY
153.X.X.X444300,26%Administered by APNICwhois.apnic.netLEGACY
154.X.X.X256620,15%Administered by AFRINICwhois.afrinic.netLEGACY
155.X.X.X649350,39%Administered by ARINwhois.arin.netLEGACY
156.X.X.X539510,32%Administered by ARINwhois.arin.netLEGACY
157.X.X.X787520,47%Administered by ARINwhois.arin.netLEGACY
158.X.X.X1061780,63%Administered by ARINwhois.arin.netLEGACY
159.X.X.X1599200,95%Administered by ARINwhois.arin.netLEGACY
160.X.X.X1200770,72%Administered by ARINwhois.arin.netLEGACY
161.X.X.X830810,50%Administered by ARINwhois.arin.netLEGACY
162.X.X.X435210,26%Administered by ARINwhois.arin.netLEGACY
163.X.X.X1610350,96%Administered by APNICwhois.apnic.netLEGACY
164.X.X.X1242440,74%Administered by ARINwhois.arin.netLEGACY
165.X.X.X1308030,78%Administered by ARINwhois.arin.netLEGACY
166.X.X.X2561891,53%Administered by ARINwhois.arin.netLEGACY
167.X.X.X465540,28%Administered by ARINwhois.arin.netLEGACY
168.X.X.X1876541,12%Administered by ARINwhois.arin.netLEGACY
169.X.X.X795200,47%Administered by ARINwhois.arin.netLEGACY
170.X.X.X885940,53%Administered by ARINwhois.arin.netLEGACY
171.X.X.X8554415,10%Administered by APNICwhois.apnic.netLEGACY
172.X.X.X415710,25%Administered by ARINwhois.arin.netLEGACY
173.X.X.X350167720,87%ARINwhois.arin.netALLOCATED
174.X.X.X285302517,01%ARINwhois.arin.netALLOCATED
175.X.X.X249812814,89%APNICwhois.apnic.netALLOCATED
176.X.X.X203679212,14%RIPE NCCwhois.ripe.netALLOCATED
177.X.X.X375934322,41%LACNICwhois.lacnic.netALLOCATED
178.X.X.X400435523,87%RIPE NCCwhois.ripe.netALLOCATED
179.X.X.X00,00%LACNICwhois.lacnic.netALLOCATED
180.X.X.X259873815,49%APNICwhois.apnic.netALLOCATED
181.X.X.X8747335,21%LACNICwhois.lacnic.netALLOCATED
182.X.X.X216728512,92%APNICwhois.apnic.netALLOCATED
183.X.X.X307437618,32%APNICwhois.apnic.netALLOCATED
184.X.X.X308266918,37%ARINwhois.arin.netALLOCATED
185.X.X.X38060,02%RIPE NCCwhois.ripe.netALLOCATED
186.X.X.X365059921,76%LACNICwhois.lacnic.netALLOCATED
187.X.X.X441915826,34%LACNICwhois.lacnic.netALLOCATED
188.X.X.X396674123,64%Administered by RIPE NCCwhois.ripe.netLEGACY
189.X.X.X583652634,79%LACNICwhois.lacnic.netALLOCATED
190.X.X.X362822021,63%LACNICwhois.lacnic.netALLOCATED
191.X.X.X10,00%Administered by LACNICwhois.lacnic.netLEGACY
192.X.X.X1804701,08%Administered by ARINwhois.arin.netLEGACY
193.X.X.X6277093,74%RIPE NCCwhois.ripe.netALLOCATED
194.X.X.X5261293,14%RIPE NCCwhois.ripe.netALLOCATED
195.X.X.X8995775,36%RIPE NCCwhois.ripe.netALLOCATED
196.X.X.X2306041,37%Administered by AFRINICwhois.afrinic.netLEGACY
197.X.X.X3489812,08%AFRINICwhois.afrinic.netALLOCATED
198.X.X.X4994962,98%Administered by ARINwhois.arin.netLEGACY
199.X.X.X4485302,67%ARINwhois.arin.netALLOCATED
200.X.X.X12380907,38%LACNICwhois.lacnic.netALLOCATED
201.X.X.X291065217,35%LACNICwhois.lacnic.netALLOCATED
202.X.X.X8505515,07%APNICwhois.apnic.netALLOCATED
203.X.X.X8638425,15%APNICwhois.apnic.netALLOCATED
204.X.X.X5060843,02%ARINwhois.arin.netALLOCATED
205.X.X.X2557581,52%ARINwhois.arin.netALLOCATED
206.X.X.X4362372,60%ARINwhois.arin.netALLOCATED
207.X.X.X7180854,28%ARINwhois.arin.netALLOCATED
208.X.X.X9352395,57%ARINwhois.arin.netALLOCATED
209.X.X.X9413525,61%ARINwhois.arin.netALLOCATED
210.X.X.X8920035,32%APNICwhois.apnic.netALLOCATED
211.X.X.X14755328,79%APNICwhois.apnic.netALLOCATED
212.X.X.X12852517,66%RIPE NCCwhois.ripe.netALLOCATED
213.X.X.X14894978,88%RIPE NCCwhois.ripe.netALLOCATED
214.X.X.X150,00%US-DODLEGACY
215.X.X.X00,00%US-DODLEGACY
216.X.X.X13913248,29%ARINwhois.arin.netALLOCATED
217.X.X.X172102910,26%RIPE NCCwhois.ripe.netALLOCATED
218.X.X.X185931411,08%APNICwhois.apnic.netALLOCATED
219.X.X.X16343489,74%APNICwhois.apnic.netALLOCATED
220.X.X.X171454610,22%APNICwhois.apnic.netALLOCATED
221.X.X.X207667912,38%APNICwhois.apnic.netALLOCATED
222.X.X.X248453314,81%APNICwhois.apnic.netALLOCATED
223.X.X.X180384910,75%APNICwhois.apnic.netALLOCATED
224.X.X.X00,00%MulticastRESERVED
225.X.X.X00,00%MulticastRESERVED
226.X.X.X00,00%MulticastRESERVED
227.X.X.X00,00%MulticastRESERVED
228.X.X.X00,00%MulticastRESERVED
229.X.X.X00,00%MulticastRESERVED
230.X.X.X00,00%MulticastRESERVED
231.X.X.X00,00%MulticastRESERVED
232.X.X.X00,00%MulticastRESERVED
233.X.X.X00,00%MulticastRESERVED
234.X.X.X00,00%MulticastRESERVED
235.X.X.X00,00%MulticastRESERVED
236.X.X.X00,00%MulticastRESERVED
237.X.X.X00,00%MulticastRESERVED
238.X.X.X00,00%MulticastRESERVED
239.X.X.X00,00%MulticastRESERVED
240.X.X.X00,00%Future useRESERVED
241.X.X.X00,00%Future useRESERVED
242.X.X.X00,00%Future useRESERVED
243.X.X.X00,00%Future useRESERVED
244.X.X.X00,00%Future useRESERVED
245.X.X.X00,00%Future useRESERVED
246.X.X.X00,00%Future useRESERVED
247.X.X.X00,00%Future useRESERVED
248.X.X.X00,00%Future useRESERVED
249.X.X.X00,00%Future useRESERVED
250.X.X.X00,00%Future useRESERVED
251.X.X.X00,00%Future useRESERVED
252.X.X.X00,00%Future useRESERVED
253.X.X.X00,00%Future useRESERVED
254.X.X.X00,00%Future useRESERVED
255.X.X.X00,00%Future useRESERVED

Grafically:

We need to keep in mind that we have scanned the entire address space without deleting reserved private addresses or networks. Obviously we see that the reserved addresses do not answer, which fits with what IANA says about the reserved networks.

We have also grouped the number of pongs that each /24 (class C) network has answered, so we can see the density level of IP addresses in these networks: From many C class networks did we receive 20 pongs?

Number of pongs answeredNumber of /24 networks
1238877
2138291
3103826
484879
570612
668622
763042
862594
958333
1055617
1153531
1252186
1349189
1447076
1545662
1644469
1742722
1841154
1940506
2041286
2144013
2239223
2336442
2435545
2534471
2633956
2732876
2832421
2931634
3031588
3130484
3230885
3329614
3429713
3529065
3628964
3728204
3828012
3927586
4027011
4126751
4226370
4325801
4425580
4525302
4625233
4724642
4824709
4924396
5024408
5124086
5224367
5324158
5424105
5523730
5623858
5723725
5823582
5923626
6023498
6123583
6223277
6322940
6422582
6522202
6622071
6721547
6821415
6920912
7020511
7120155
7219725
7319194
7418860
7518930
7618241
7717725
7817604
7917134
8017140
8116573
8216306
8316177
8415855
8515660
8615476
8715457
8815386
8915039
9014900
9114802
9214500
9314100
9414079
9514019
9613751
9713409
9813443
9913240
10013052
10112727
10212745
10312143
10412175
10511793
10611567
10711502
10811237
10911088
11010677
11110621
11210524
11310353
11410306
11510048
1169987
1179798
1189673
1199747
1209606
1219398
1229441
1238991
1249181
1259095
1268888
1278556
1288522
1298406
1308406
1318267
1328194
1338252
1348023
1357910
1367692
1377643
1387764
1397566
1407431
1417403
1427382
1437512
1447330
1457261
1467044
1477078
1487158
1497210
1506878
1516941
1526921
1537072
1546965
1556919
1566894
1576909
1587043
1596816
1606844
1616892
1626868
1636958
1646836
1656905
1666954
1676917
1687053
1697005
1706867
1716931
1726887
1736849
1746817
1756781
1766635
1776630
1786657
1796514
1806255
1816310
1826330
1836134
1845864
1855680
1865714
1875559
1885445
1895415
1905325
1915211
1925122
1935110
1944984
1954939
1964712
1974549
1984727
1994582
2004517
2014550
2024488
2034442
2044413
2054210
2064228
2074182
2084158
2094137
2104020
2114013
2123982
2133941
2143958
2153978
2163980
2173924
2183670
2193690
2203696
2213620
2223447
2233483
2243406
2253387
2263391
2273193
2283116
2293233
2303157
2313123
2323118
2333278
2343285
2353430
2363714
2373922
2384333
2394594
2405207
2415740
2426262
2436736
2447136
2458169
2469244
24710536
24811591
24912330
25012567
25112092
2529378
2536096
2543192
2551481
256467

Grafically:

We can see that many networks do not answer anything, mainly because they are reserved networks. Also, there are blocks with many IPs answering.

We have also performed the analysis on the least significant byte of the IP address, taking into account that we have treated them as if they were all normal IP addresses. It is clear that IP addresses finishing in .0 and .255 reply to the ping to a lesser amount. On the other hand we can also see that the IP ending in .1 is the one most answering the pings, because it usually corresponds to the router, and from there to inside the traffic is usually filtered. This can be seen by comparing the X% with the average. We see also some stripes corresponding to networks /25, /26, /27, etc.

Less significative byte of ip addressCount of pongs
x.x.x.0749789
x.x.x.12188704
x.x.x.21432608
x.x.x.31312164
x.x.x.41260519
x.x.x.51344259
x.x.x.61317523
x.x.x.71226345
x.x.x.81210025
x.x.x.91396354
x.x.x.101338214
x.x.x.111253251
x.x.x.121225913
x.x.x.131297186
x.x.x.141290901
x.x.x.151194033
x.x.x.161177008
x.x.x.171424293
x.x.x.181297307
x.x.x.191210971
x.x.x.201208820
x.x.x.211274382
x.x.x.221258630
x.x.x.231171451
x.x.x.241157615
x.x.x.251346065
x.x.x.261247689
x.x.x.271172728
x.x.x.281160244
x.x.x.291232213
x.x.x.301252088
x.x.x.311133193
x.x.x.321129206
x.x.x.331438811
x.x.x.341273545
x.x.x.351191265
x.x.x.361166209
x.x.x.371232786
x.x.x.381222823
x.x.x.391132063
x.x.x.401128406
x.x.x.411308812
x.x.x.421220378
x.x.x.431142863
x.x.x.441130136
x.x.x.451203766
x.x.x.461192938
x.x.x.471108922
x.x.x.481097390
x.x.x.491328159
x.x.x.501225132
x.x.x.511143527
x.x.x.521120597
x.x.x.531186295
x.x.x.541176274
x.x.x.551103437
x.x.x.561089146
x.x.x.571253521
x.x.x.581173048
x.x.x.591104981
x.x.x.601106008
x.x.x.611169959
x.x.x.621192879
x.x.x.631048740
x.x.x.641048258
x.x.x.651425598
x.x.x.661229128
x.x.x.671142903
x.x.x.681118736
x.x.x.691183038
x.x.x.701183928
x.x.x.711099966
x.x.x.721087771
x.x.x.731259314
x.x.x.741168810
x.x.x.751102380
x.x.x.761085211
x.x.x.771155721
x.x.x.781151672
x.x.x.791065110
x.x.x.801062766
x.x.x.811285575
x.x.x.821166756
x.x.x.831092135
x.x.x.841073821
x.x.x.851141621
x.x.x.861133532
x.x.x.871058285
x.x.x.881048255
x.x.x.891209209
x.x.x.901136792
x.x.x.911069963
x.x.x.921057058
x.x.x.931121637
x.x.x.941128962
x.x.x.951031653
x.x.x.961030381
x.x.x.971311889
x.x.x.981160407
x.x.x.991088350
x.x.x.1001090587
x.x.x.1011146524
x.x.x.1021134417
x.x.x.1031054936
x.x.x.1041044601
x.x.x.1051206107
x.x.x.1061126080
x.x.x.1071060212
x.x.x.1081046358
x.x.x.1091110790
x.x.x.1101119034
x.x.x.1111036203
x.x.x.1121025151
x.x.x.1131239712
x.x.x.1141125907
x.x.x.1151059326
x.x.x.1161041760
x.x.x.1171100008
x.x.x.1181095607
x.x.x.1191023199
x.x.x.1201025290
x.x.x.1211194711
x.x.x.1221107546
x.x.x.1231046629
x.x.x.1241040910
x.x.x.1251105172
x.x.x.1261145872
x.x.x.127985964
x.x.x.128986104
x.x.x.1291442315
x.x.x.1301204525
x.x.x.1311115891
x.x.x.1321086213
x.x.x.1331148537
x.x.x.1341135487
x.x.x.1351061941
x.x.x.1361047919
x.x.x.1371210584
x.x.x.1381130277
x.x.x.1391064659
x.x.x.1401059272
x.x.x.1411120880
x.x.x.1421117912
x.x.x.1431033455
x.x.x.1441024556
x.x.x.1451245701
x.x.x.1461129222
x.x.x.1471058225
x.x.x.1481042170
x.x.x.1491102226
x.x.x.1501108112
x.x.x.1511033029
x.x.x.1521018604
x.x.x.1531175163
x.x.x.1541097739
x.x.x.1551038438
x.x.x.1561023688
x.x.x.1571086790
x.x.x.1581095228
x.x.x.159996251
x.x.x.1601001094
x.x.x.1611276329
x.x.x.1621128019
x.x.x.1631050767
x.x.x.1641031524
x.x.x.1651092194
x.x.x.1661086726
x.x.x.1671013206
x.x.x.1681002480
x.x.x.1691166589
x.x.x.1701087625
x.x.x.1711023086
x.x.x.1721007972
x.x.x.1731071052
x.x.x.1741072040
x.x.x.175993387
x.x.x.176983700
x.x.x.1771193184
x.x.x.1781081461
x.x.x.1791014492
x.x.x.1801007535
x.x.x.1811063379
x.x.x.1821056237
x.x.x.183986611
x.x.x.184974867
x.x.x.1851130743
x.x.x.1861054739
x.x.x.187993950
x.x.x.188988367
x.x.x.1891047415
x.x.x.1901076031
x.x.x.191948336
x.x.x.192946319
x.x.x.1931293959
x.x.x.1941108300
x.x.x.1951036982
x.x.x.1961012541
x.x.x.1971070404
x.x.x.1981062760
x.x.x.199994345
x.x.x.2001000985
x.x.x.2011150214
x.x.x.2021070547
x.x.x.2031005395
x.x.x.204990207
x.x.x.2051055065
x.x.x.2061053152
x.x.x.207973577
x.x.x.208964460
x.x.x.2091173406
x.x.x.2101070650
x.x.x.2111002023
x.x.x.212983619
x.x.x.2131039752
x.x.x.2141035196
x.x.x.215969089
x.x.x.216957765
x.x.x.2171115906
x.x.x.2181035071
x.x.x.219972473
x.x.x.220971376
x.x.x.2211027993
x.x.x.2221039586
x.x.x.223943255
x.x.x.224942572
x.x.x.2251214697
x.x.x.2261067487
x.x.x.227995786
x.x.x.228978545
x.x.x.2291036333
x.x.x.2301039868
x.x.x.231973194
x.x.x.232962046
x.x.x.2331112893
x.x.x.2341036105
x.x.x.235976903
x.x.x.236964068
x.x.x.2371024653
x.x.x.2381025546
x.x.x.239948607
x.x.x.240948034
x.x.x.2411157102
x.x.x.2421046467
x.x.x.243977487
x.x.x.244962750
x.x.x.2451017034
x.x.x.2461011215
x.x.x.247948181
x.x.x.248944969
x.x.x.2491108805
x.x.x.2501039464
x.x.x.251995880
x.x.x.252981302
x.x.x.2531024893
x.x.x.2541226421
x.x.x.255679518

Grafically:

Obviously from the number of answers it is not possible to draw conclusions about the density of IP population, as they may be conveniently filtered.

The % of IP addresses answering to ping seems reasonable, given that it is logical that the external equipment answers to this protocol to aid troubleshooting. It is also normal that many others do not answer, but in any case IPv4 does not appear to be so saturated as usually it is said.

This experiment is a proof of concept of how easy it is to make a global action against all Internet, with almost no cost, short time and basic knowledge. We can see that it would be possible to scan a TCP port, or even do some intrusion attack globally (always stateless), for which any UDP attack could be very effective (as it did with slammer). In any case these actions are and would be considered as attacks, so as expected we will not go further and evolve this project.

Probed that IPv4 is really small, we have another argument to answer the usual question: Why would somebody want to attack me? With IPv6, the attack vector is many orders of magnitude higher, preventing scans “so brute”.

Curiously, we did not have any counter response, or received hostile activity in response. However, we were receiving traffic from a server that sent us the pong for hours continuously and repeatedly (DUP!), we think that due to a IP error that we could not determine.

Although the experiment has been the most innocuous and harmless we could thought about, during the experiment we have received some complaints from organizations related to the the scan. However, taking into account the number of “attacked” sites, the complaints have been few and the hosting provider that received the pings acted in any case time communicating the complaint after the end of the experiment, which shows that such a global attack would be really unstoppable.

With the extracted data more interesting analysis can be done, that we leave for next entries, such as the issue with network and broadcast addresses (.0 and .255). I hope you liked the experiment, and in any case I apologize if I annoyed you with my ping.


Viewing all articles
Browse latest Browse all 9433

Trending Articles