
Hands-on Zmap Scanner with Proxy IPs!
Network scanning friends know, Zmap this thing as fast as a rocket, but the direct bare run is easy to be the target of IP blocking, today we will nag how to give it a proxy IP on the "cloak of invisibility", the focus of the recommended!ipipgoPractical solutions for the home.
I. Why Zmap should be given a "vest"?
For example, if the security guard (firewall) in your neighborhood finds out that the same courier (IP) makes 100 trips a day, he will definitely check your credentials. Proxy IP is like a different courier delivery every day, the security simply can not feel the pattern. Especially for those who do security testing, using a proxy pool can effectively avoid being blacklisted.
II. Pre-configuration preparations
Don't be in a hurry. Have three magic weapons ready first:
1. proxy server address (example: socks5://123.45.67.89:1080)
2. authentication account password (important! Do not use free proxies)
3. local proxy tool (recommended proxychains)
Here's a cracking suggestion.Static residential IP for ipipgo, their IPs are all real home broadband, much more hidden than server room IPs. The actual test with their TK dedicated line to do the scan, the survival rate can be more than 92%.
Third, the actual configuration of the three-step
Step 1: Change proxychains configuration
sudo vim /etc/proxychains.conf
Add at the end (don't copy it, replace it with your own)
socks5 ip ipgo.proxy.com 32000 user123 pass456
dynamic_chain
quiet_mode
Step 2: Bind the Zmap command
Add proxychains before the original command:
proxychains zmap -p 80 -o results.csv
Step 3: Verify that it is in effect
Run a test command to see the exit IP:
proxychains curl ipinfo.io/ip
IV. Guidelines for avoiding pitfalls (blood and tears experience)
1. Don't save money on traffic.: Used a certain cheap proxy and ended up with 8 out of 10 IPs blocked. Then I changed ip ipgoEnterprise-class Dynamic ResidentialThe 1GB of traffic is just over $9. Stability takes off straight away.
2. The agreement has to be the right way: The scanner is recommended to use the socks5 protocol, which has a lower latency than the http proxy of about 301 TP3T.
3. The number of threads should be controlled: Proxies are not fairies, it is recommended that concurrency does not exceed 500 threads.
V. Frequently Asked Questions QA
Q: What should I do if the agent suddenly fails to connect?
A: First check the package balance on the ipipgo backend, their API status codes are spot on: 200 Normal/403 Outstanding/500 Service Abnormal
Q: There is packet loss in the scanning result?
A: Eighty percent of the proxy node quality is not good, change theStatic Residential IPImmediately see the effect. Last test with a $35/month package, packet loss dropped from 15% to 3%
Q: How to switch between multiple agents automatically?
A: Configure multiple proxy addresses in proxychains, using random_chain mode. ipipgo's API can extract IPs in bulk, and stuff them directly into the configuration file.
VI. Tips for choosing a package
Choose according to business needs (table data from the official website):
| Business Type | Recommended Packages | average daily cost |
|---|---|---|
| Mini-Scan | Dynamic Standard Edition | ≈ $2.5 |
| Enterprise Scanning | Dynamic Enterprise Edition | ≈$3.1 |
| accurate detection | Static Residential IP | ≈$1.1/IP |
Speaking from personal experience, doing port scans withDynamic Enterprise EditionThe most cost-effective. The last time I swept the entire network on port 80, 100GB of traffic only cost $947, which translates to $0.0003 per valid result.
VII. Say something heartfelt
I've seen too many people use free proxies for cheap, and as a result, the scanning data leaks like a sieve. Professional things should be left to professional agents, ipipgo's1v1 Customized SolutionsIt does save lives. Last time a financial customer wanted to do global node probing, they gave it intelligent route optimization, and the scanning efficiency was directly doubled.
As a final reminder, when configuring, remember to open the ipipgo client'sAutomatic IP changeFunction, set 10 minutes to change the IP, personally test the best anti-blocking effect. What do not understand directly to their technical small brother, the response speed than the takeaway catalytic orders faster...

