Angry IP Scanner: What It Does, How to Install It and How to Use It

Angry IP Scanner is a fast, lightweight, and open-source network scanner used for IP address and port scanning. It is essential for network management, cybersecurity assessments, and identifying unauthorized devices. Compatible with Windows, macOS, and Linux, it offers customizable scanning and easy-to-export results. With both GUI and CLI support, it caters to users of all skill levels.

Jan 18, 2025 - 14:11
Updated: 7 days ago
112.9k
Angry IP Scanner: What It Does, How to Install It and How to Use It

Quick answer: Angry IP Scanner is a free, open-source network scanner for Windows, macOS and Linux. You give it an IP range, and it pings each address and reports which hosts are alive, with optional hostname, MAC address and open-port details. Results export to CSV, TXT or XML. It is fast and simple, but it does not detect service versions or vulnerabilities like Nmap does.

Key takeaways

  • Use Angry IP Scanner to answer "what is on this network?" quickly, for example to find a device's IP or spot unknown hosts.
  • It checks one thing per column, called a fetcher: ping, hostname, ports, MAC and more. You choose which to enable.
  • A host that blocks ping can look dead. Switch the ping method or add a port check before concluding nothing is there.
  • Scan only networks you own or have written permission to test. Unauthorised scanning can break the law under India's IT Act, 2000.

What Angry IP Scanner does

Angry IP Scanner, also called ipscan, sends probes to every address in a range and shows the results in a table. It was written in Java, uses multiple threads to scan quickly, and is distributed from its official site, angryip.org. It has a graphical interface and a command-line mode.

It answers three simple questions: which addresses respond, what are they called, and which ports are open. For anything deeper, such as OS detection, service versions or scripted checks, use Nmap. See what Nmap is and how it is used.

Main features

FeatureWhat it gives you
Ping scanShows which addresses answer, with response time
Hostname fetcherReverse DNS name where one exists
Port scanOpen ports from a list or range you choose
MAC address fetcherHardware address for hosts on your local subnet
NetBIOS and other fetchersWindows names and extra details, depending on the version
ExportCSV, TXT, XML and IP-port lists
PluginsExtra fetchers and exporters from the community

The set of fetchers varies by release, so open the fetcher selector in the tool to see what your version offers.

How to install it

Download only from the official site and check the file matches the release listed there.

Windows

Download the installer, run it and follow the wizard. A portable ZIP version is also available, which you can run from a folder without installing.

macOS

Download the macOS package and drag the app into Applications. If macOS blocks it, open System Settings, then Privacy and Security, and allow it. Do this only for a download you trust.

Linux

Download the .deb (Debian, Ubuntu, Kali) or .rpm (RHEL family) package and install it with your package manager, so that dependencies are handled for you.

# Debian, Ubuntu, Kali
sudo apt install./ipscan_*_amd64.deb

# RHEL, Rocky, AlmaLinux, Fedora
sudo dnf install./ipscan-*.rpm

ipscan

Recent packages include or pull in the Java runtime they need. If yours does not, install a current JRE first. Some ping modes need elevated privileges on Linux, so if ICMP results look empty, try running with sudo in your lab.

How to run your first scan

  1. Find your own range first. On Linux, run ip -4 addr. A typical home network is 192.168.1.0/24.
  2. Open Angry IP Scanner and enter the start and end IP, or choose the netmask option.
  3. Open Tools, then Preferences, to pick the ping method and the ports to check, for example 22, 80, 443 and 3389.
  4. Click Start and wait for the progress bar.
  5. Sort by status. Live hosts are marked, and the other columns fill in.
  6. Export with Scan, then Export all, to keep a record.

Reading the results

  • Alive with a hostname: a managed device, probably known to you.
  • Alive with no hostname: common for phones and IoT devices. Check the MAC vendor and compare against your device list.
  • Open port 3389 or 22 on something unexpected: investigate. Remote access ports on unknown hosts are worth a closer look.
  • Dead but you know it exists: a firewall may be dropping ping. Try a TCP or UDP method, or scan its known port.

Where it is useful

  • Home or lab: find the IP of a printer, camera or Raspberry Pi.
  • Network inventory: a quick list of live hosts to compare against an asset register.
  • Troubleshooting: check whether a server responds after a change, or hunt for an IP conflict.
  • Security checks on your own network: spot rogue devices and unexpected open ports.

Limits and cautions

  • It does not identify service versions or vulnerabilities, so it is a discovery tool, not an assessment tool.
  • Quick, wide scans can alert IDS tools and annoy administrators. Tell the network owner first.
  • MAC addresses show only for hosts on the same Layer 2 segment.
  • Scanning ranges you do not own is unauthorised. Use your own network or lab VMs.

Angry IP Scanner or Nmap?

Angry IP ScannerNmap
InterfaceSimple graphical tableCommand line, with Zenmap GUI available separately
Best forQuick "who is on my network" checksDeep discovery, service and OS detection, scripting
Learning curveMinutesDays to weeks
Security testing depthLightExtensive

Most professionals use both: Angry IP Scanner for a quick look, Nmap when they need answers. The Nmap reference guide is the best next read.

Next steps

Once discovery feels easy, learn what to do with the results in network scanning in cybersecurity. For structured hands-on practice, see the Computer Network course.

Related reading

Frequently Asked Questions

It scans an IP range to find which hosts are alive and optionally which ports are open, adding hostname and MAC address where available. People use it for quick network inventory, troubleshooting and basic security checks on their own networks.

Yes. It is free and open source, and you can download it from its official site. Always download from the official site to avoid modified copies.

Yes. It runs on Windows, macOS and Linux. On Linux it is offered as deb and rpm packages, and a portable version is also available. Some ping modes may need elevated privileges.

They suit different jobs. Angry IP Scanner is quicker to learn for simple host discovery. Nmap does deeper work such as service and OS detection and scripting, so it is the better choice for security assessments.

Scanning your own network or one you have written permission to test is legal. Scanning networks you do not own or administer can count as unauthorised access under India's IT Act, 2000. Get permission first.

The device or its firewall may block ping. Try a different ping method such as TCP, or add a port check for a port the device is known to use, before deciding it is offline.

What's Your Reaction?

Like Like 0
Dislike Dislike 0
Love Love 0
Funny Funny 0
Wow Wow 0
Sad Sad 0
Angry Angry 0
Vaishnavi

Vaishnavi is a skilled tech professional at the Ethical Hacking Training Institute in Pune, responsible for managing and optimizing the technical infrastructure that supports advanced cybersecurity education. With deep expertise in network security, backend operations, and system performance, she ensures that practical labs, online modules, and assessments run smoothly and securely. Her behind-the-scenes contributions play a vital role in delivering a seamless and secure learning experience for aspiring ethical hackers.