Nmap Development mailing list archives

Question about nmap (nping) and Record Route option


From: Kevin Wilson <wkevils () gmail com>
Date: Sun, 16 Jun 2013 23:17:29 +0300

Hello,
following:
http://seclists.org/nmap-dev/2006/q3/52
I tried this:
nping --ip-options "R" scanme.insecure.org
And I got:
Starting Nping 0.6.25 ( http://nmap.org/nping ) at 2013-06-17 02:05 IDT
SENT (0.1653s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=52304 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
RCVD (0.4292s) ICMP 74.207.244.221 > 192.168.2.10 Echo reply
(type=0/code=0) ttl=52 id=45126 iplen=68 ipopts={ RR{ 79.177.1.134
212.179.37.1 212.179.160.186 62.219.189.202 80.81.192.191
184.105.213.161 184.105.213.94 184.105.213.178 184.105.222.90#} EOL}
SENT (1.1656s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=52304 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
SENT (2.1667s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=52304 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
RCVD (2.4270s) ICMP 74.207.244.221 > 192.168.2.10 Echo reply
(type=0/code=0) ttl=52 id=45127 iplen=68 ipopts={ RR{ 79.177.1.134
212.179.37.1 212.179.160.186 62.219.189.202 80.81.192.191
184.105.213.161 184.105.213.94 184.105.213.178 184.105.222.90#} EOL}
SENT (3.1670s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=52304 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
SENT (4.1676s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=52304 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}

Max rtt: 263.812ms | Min rtt: 260.246ms | Avg rtt: 262.029ms
Raw packets sent: 5 (340B) | Rcvd: 2 (136B) | Lost: 3 (60.00%)
Tx time: 4.00356s | Tx bytes/s: 84.92 | Tx pkts/s: 1.25
Rx time: 5.00442s | Rx bytes/s: 27.18 | Rx pkts/s: 0.40
Nping done: 1 IP address pinged in 5.18 seconds


It seems that in this example , nping did its job great, as I see IP
addresses in the echo reply.

A few minutes I tried again:
nping --ip-options "R" scanme.insecure.org

This time, as you can see below, no results! (I mean no Echo reply at all).
ping works:
ping scanme.insecure.org
PING scanme.insecure.org (74.207.244.221) 56(84) bytes of data.
64 bytes from scanme.nmap.org (74.207.244.221): icmp_seq=1 ttl=50 time=216 ms
64 bytes from scanme.nmap.org (74.207.244.221): icmp_seq=2 ttl=50 time=216 ms

nping works:
 nping scanme.insecure.org

Starting Nping 0.6.25 ( http://nmap.org/nping ) at 2013-06-17 02:15 IDT
SENT (0.1570s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=10105 iplen=28
RCVD (0.4175s) ICMP 74.207.244.221 > 192.168.2.10 Echo reply
(type=0/code=0) ttl=50 id=45140 iplen=28

An ideas ? I tried a couple time more, I verified that the iptables
service is not running and yet the same.
Below is the log of the second time, with no results, of:
nping --ip-options "R" scanme.insecure.org


Starting Nping 0.6.25 ( http://nmap.org/nping ) at 2013-06-17 02:12 IDT
SENT (0.1541s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=50339 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
SENT (1.1544s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=50339 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
SENT (2.1556s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=50339 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
SENT (3.1568s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=50339 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}
SENT (4.1579s) ICMP 192.168.2.10 > 74.207.244.221 Echo request
(type=8/code=0) ttl=64 id=50339 iplen=68 ipopts={ NOP RR{#0.0.0.0
0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0}}

Max rtt: N/A | Min rtt: N/A | Avg rtt: N/A
Raw packets sent: 5 (340B) | Rcvd: 0 (0B) | Lost: 5 (100.00%)
Tx time: 4.00505s | Tx bytes/s: 84.89 | Tx pkts/s: 1.25
Rx time: 5.00612s | Rx bytes/s: 0.00 | Rx pkts/s: 0.00
Nping done: 1 IP address pinged in 5.17 seconds


regards,
Kevin
_______________________________________________
Sent through the dev mailing list
http://nmap.org/mailman/listinfo/dev
Archived at http://seclists.org/nmap-dev/


Current thread: