Complete Report

complete


Comparative Analysis Windows 2000 Small Subnet

This section provides a general information summary of the security analysis.

General Comparative Statistics
Description
Current Scan
Wed Feb 28 22:03:03 2001
Previous Scan
Tue Feb 13 23:59:02 2001
Date & Time This Report was Generated Wed Feb 28 22:04:25 2001 Wed Feb 28 22:04:25 2001
Date & Time This Scan was Completed Wed Feb 28 22:03:03 2001 Tue Feb 13 23:59:02 2001
Total Scan Time 49 min. 52 min.
Test Policy Title Complete Security Analysis Complete Security Analysis
Test Policy Description Run all tests and scan the well-known ports. Run all tests and scan the well-known ports.
Additional Ports to Scan TCP: 1-1050, 1109, 8000, 8080, 12345, 16660, 20034, 27665
UDP: 1-1023, 2049, 31337
TCP: 1-1050, 1109, 8000, 8080, 12345, 16660, 20034, 27665
UDP: 1-1023, 2049, 31337
Number of Hosts Scanned 11 11
Number of Hosts Responding 11 11
Number of Hosts Not Responding 0 0
Number of Vulnerabilities Found 380 357
Number of High Risk Vulnerabilities Found 62 49
Number of Medium Risk Vulnerabilities Found 230 215
Number of Low Risk Vulnerabilities Found 88 93
Number of Services Detected 106 136
Number of User Accounts Detected 8 9
Number of Share Devices Detected 3 2



This table details differences found between two Security Analyzer scans.

Host Status Differences
Contains No Data



This table details differences found between two Security Analyzer scans.

Vulnerabilities Found on New Hosts
Contains No Data



This table details differences found between two Security Analyzer scans.

New Vulnerabilities Found on Previously Scanned Hosts
Hosts
Vulnerabilities
192.168.1.100
Medium - Unidentified UDP ports / Unknown (usually loc-srv)
Medium - Unidentified TCP ports / Unknown (usually netbios-ssn)
Medium - Unidentified TCP ports / Unknown (usually microsoft-ds)
Medium - Unidentified TCP ports / Unknown (usually loc-srv)
Medium - Unidentified TCP ports / Unknown (usually blackjack)
Medium - Unidentified TCP ports / Unknown
Medium - Fragmented IGMP Packet
192.168.1.103
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FrontPageTempDir
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FrontPageTempDir\mstheme
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FtpTree
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FtpTree\DragDrop
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\USSP30
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\0LSAEEP7
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\GHRJK3MW
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\POEHIM5D
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\Z0AKL456
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\NetWork Pro Consultancy Services files
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\latest
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\TITAN
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\computerrel
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\ private
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\ vti cnf
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\ vti pvt
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\images
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\PGP
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\mcplogos
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install\Alis Translation Solutions files
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install\Alis Translation Solutions files\PlayStation2 Neo-Mod-Chip files
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install\Alis Translation Solutions files\gen toolbar frames ui\en files
High - Distributed COM (DCOM) enabled
High - Guest access to application log
High - Guest access to security log
High - Guest access to system log
High - Internet Explorer Server Side Redirect
High - L0phtCrack packet driver
High - Lan Manager authentication
High - MSGINA.DLL checksum / 12341
High - MSV1_0.DLL checksum / 13827
High - Microsoft Office VBA shell/Text-ISAM patch
High - New Variant of Microsoft VM File Read
High - Office 2000 UA Control
High - Remote Access Server configured with modem set to receive calls
High - Scriptlet Rendering
High - Server-side Page Reference Redirect
High - Telnet Server Flooding
High - Unauthorized Application in UserInit / C:\WINNT\system32\userinit.exe
High - Unauthorized entry in NullSessionPipes key / SPOOLSS
High - Unauthorized entry in NullSessionPipes key / TrkSvr
High - Unauthorized entry in NullSessionPipes key / TrkWks
High - Unauthorized packet drivers / L0phtPkt
High - Unauthorized packet drivers / NDIS3Pkt
High - Unauthorized packet drivers / Sniffer
High - Unauthorized program in Run key / "C:\Program Files\Winamp\Winampa.exe"
High - Unauthorized program in Run key / C:\PROGRA~1\Navnt\defalert.exe
High - Unauthorized program in Run key / C:\PROGRA~1\Navnt\npscheck.exe
High - Unauthorized program in Run key / C:\PROGRA~1\ULEADS~1.0\Ussshreg.exe /r
High - Unauthorized program in Run key / C:\Program Files\Navnt\POPROXY.EXE
High - Unauthorized program in Run key / C:\Program Files\The Cleaner\tca.exe
High - Unauthorized program in Run key / mobsync.exe /logon
High - Welcome.exe checksum / 27697
High - \WINNT\Repair directory permissions
Medium - Windows Media Player Skins File Download
Medium - Windows Media Player 6.4/7.0: ASX Buffer Overrun and WMS Script Execution
Medium - Windows 2000: SNMP Parameters
Medium - Windows 2000 Telnet Client NTLM Authentication
Medium - Web Client NTLM Authentication
Medium - User with 'Shut down the system' permissions / Group: Users
Medium - User with 'Shut down the system' permissions / Group: Power Users
Medium - User with 'Shut down the system' permissions / Group: Backup Operators
Medium - User with 'Restore files and directories' permissions / Group: Backup Operators
Medium - User with 'Replace a process level token' permissions / Group: \Everyone
Medium - User with 'Replace a process level token' permissions / Group: Power Users
Medium - User with 'Replace a process level token' permissions / Group: Backup Operators
Medium - User with 'Remove computer from docking station' permissions / Group: Users
Medium - User with 'Remove computer from docking station' permissions / Group: Power Users
Medium - User with 'Profile single process' permissions / Group: Power Users
Medium - User with 'Logon as a service' permissions / Horror
Medium - User with 'Log on locally' permissions / Guest
Medium - User with 'Log on locally' permissions / Group: Users
Medium - User with 'Log on locally' permissions / Group: Power Users
Medium - User with 'Log on locally' permissions / Group: Backup Operators
Medium - User with 'Log on as a batch job' permissions / Horror
Medium - User with 'Change system time' permissions / Group: Power Users
Medium - User with 'Bypass traverse checking' permissions / Group: \Everyone
Medium - User with 'Bypass traverse checking' permissions / Group: Users
Medium - User with 'Bypass traverse checking' permissions / Group: Power Users
Medium - User with 'Bypass traverse checking' permissions / Group: Backup Operators
Medium - User with 'Back up files and directories' permissions / Group: Backup Operators
Medium - User with 'Access this computer from the network' permissions / Group: \Everyone
Medium - User with 'Access this computer from the network' permissions / Group: Users
Medium - User with 'Access this computer from the network' permissions / Group: Power Users
Medium - User with 'Access this computer from the network' permissions / Group: Backup Operators
Medium - User access to Performance Monitor data
Medium - Unidentified TCP ports / Unknown (usually netbios-ssn)
Medium - Unidentified TCP ports / Unknown (usually microsoft-ds)
Medium - Unidentified TCP ports / Unknown (usually loc-srv)
Medium - Unidentified TCP ports / Unknown (usually blackjack)
Medium - Unidentified TCP ports / Unknown
Medium - System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\net.exe
Medium - System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\command.com
Medium - System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\cmd.exe
Medium - Still Image Service Privilege Escalation
Medium - Shutdown system without being logged on
Medium - Shutdown system without being logged on
Medium - Service Control Manager Named Pipe Impersonation
Medium - Remote Access Server configured with modem set to dial out
Medium - Relative Shell Path
Medium - Regedt32 permissions
Medium - Regedt32 permissions
Medium - Regedt32 permissions
Medium - Protected Store Key Length
Medium - PowerPoint 2000 File Parsing
Medium - Network DDE Agent Request
Medium - NetMeeting Desktop Sharing
Medium - NetBIOS Name Server Protocol Spoofing
Medium - Multiple LPC and LPC Ports Vulnerabilities
Medium - Misordered Windows Media Services Handshake
Medium - Microsoft Word Mail Merge
Medium - Microsoft VM ActiveX Component
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Word
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / PowerPoint
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Outlook
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Excel
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Access
Medium - Microsoft Office 2000 HTML Object Tag
Medium - Microsoft Office 2000 HTML Object Tag
Medium - Malformed RPC Packet
Medium - Last username displayed in logon screen(Windows 2000)
Medium - Last username displayed in login dialog
Medium - Java VM Applet
Medium - Invalid RDP Data
Medium - Internet Explorer: Image Source Redirect
Medium - Internet Explorer: Cached Web Credentials
Medium - Internet Explorer: Active Setup Download
Medium - Internet Explorer JavaScript redirect vulnerability
Medium - Indexing Services Cross Site Scripting
Medium - Indexing Service File Enumeration
Medium - Hazardous Registry Permissions: WOW / Group: Power Users
Medium - Hazardous Registry Permissions: WOW / Group: Power Users
Medium - Hazardous Registry Permissions: Uninstall / Group: Power Users
Medium - Hazardous Registry Permissions: Uninstall / Group: Power Users
Medium - Hazardous Registry Permissions: Shell Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: Shell Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: SharedDlls / Group: Power Users
Medium - Hazardous Registry Permissions: SharedDlls / Group: Power Users
Medium - Hazardous Registry Permissions: Setup / Group: Power Users
Medium - Hazardous Registry Permissions: Setup / Group: Power Users
Medium - Hazardous Registry Permissions: Ports / Group: Power Users
Medium - Hazardous Registry Permissions: Ports / Group: Power Users
Medium - Hazardous Registry Permissions: ODBC / Group: Power Users
Medium - Hazardous Registry Permissions: ODBC / Group: Power Users
Medium - Hazardous Registry Permissions: ModuleUsage / Group: Power Users
Medium - Hazardous Registry Permissions: ModuleUsage / Group: Power Users
Medium - Hazardous Registry Permissions: MCI Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: MCI Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: MCI / Group: Power Users
Medium - Hazardous Registry Permissions: MCI / Group: Power Users
Medium - Hazardous Registry Permissions: Internet Settings / Group: Power Users
Medium - Hazardous Registry Permissions: Internet Settings / Group: Power Users
Medium - Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users
Medium - Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users
Medium - Hazardous Registry Permissions: Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: ExtShellViews / Group: Power Users
Medium - Hazardous Registry Permissions: ExtShellViews / Group: Power Users
Medium - Hazardous Registry Permissions: Explorer / Group: Power Users
Medium - Hazardous Registry Permissions: Explorer / Group: Power Users
Medium - Hazardous Registry Permissions: Embedding / Group: Power Users
Medium - Hazardous Registry Permissions: Embedding / Group: Power Users
Medium - Hazardous Registry Permissions: Drivers / Group: Power Users
Medium - Hazardous Registry Permissions: Drivers / Group: Power Users
Medium - Hazardous Registry Permissions: Controls Folder / Group: Power Users
Medium - Hazardous Registry Permissions: Controls Folder / Group: Power Users
Medium - Hazardous Registry Permissions: Compatibility / Group: Power Users
Medium - Hazardous Registry Permissions: Compatibility / Group: Power Users
Medium - Hazardous Registry Permissions: App Paths / Group: Power Users
Medium - Hazardous Registry Permissions: App Paths / Group: Power Users
Medium - Guest account not renamed / Guest
Medium - Frame Domain Verification
Medium - File type with confirm after download disabled / xslfile
Medium - File type with confirm after download disabled / xmlfile
Medium - File type with confirm after download disabled / vcsfile
Medium - File type with confirm after download disabled / rqyfile
Medium - File type with confirm after download disabled / rmocx.RealPlayer G2 Control.1
Medium - File type with confirm after download disabled / rmocx.RealPlayer G2 Control
Medium - File type with confirm after download disabled / msgfile
Medium - File type with confirm after download disabled / mpegfile
Medium - File type with confirm after download disabled / mp3file
Medium - File type with confirm after download disabled / movfile
Medium - File type with confirm after download disabled / m3ufile
Medium - File type with confirm after download disabled / lavsFile
Medium - File type with confirm after download disabled / lavfile
Medium - File type with confirm after download disabled / larFile
Medium - File type with confirm after download disabled / iqyfile
Medium - File type with confirm after download disabled / icsfile
Medium - File type with confirm after download disabled / icquser
Medium - File type with confirm after download disabled / icqsoundscheme
Medium - File type with confirm after download disabled / icqplugin
Medium - File type with confirm after download disabled / icqhomepagefactory
Medium - File type with confirm after download disabled / htmlfile
Medium - File type with confirm after download disabled / cskfile
Medium - File type with confirm after download disabled / cpkfile
Medium - File type with confirm after download disabled / cdafile
Medium - File type with confirm after download disabled / aip_file
Medium - File type with confirm after download disabled / XSetupWizard
Medium - File type with confirm after download disabled / XSetupPlugin
Medium - File type with confirm after download disabled / Word.Wizard.8
Medium - File type with confirm after download disabled / Word.Template.8
Medium - File type with confirm after download disabled / Word.RTF.8
Medium - File type with confirm after download disabled / Word.Picture.8
Medium - File type with confirm after download disabled / Word.Document.8
Medium - File type with confirm after download disabled / Word.Backup.8
Medium - File type with confirm after download disabled / WizMan6.docWizardManager
Medium - File type with confirm after download disabled / Winamp.SkinZip
Medium - File type with confirm after download disabled / Winamp.Playlist
Medium - File type with confirm after download disabled / WVXFile
Medium - File type with confirm after download disabled / WMZFile
Medium - File type with confirm after download disabled / WMVFile
Medium - File type with confirm after download disabled / WMSFile
Medium - File type with confirm after download disabled / WMPlayer.OCX.7
Medium - File type with confirm after download disabled / WMPFile
Medium - File type with confirm after download disabled / WMDFile
Medium - File type with confirm after download disabled / WMAFile
Medium - File type with confirm after download disabled / WAXFile
Medium - File type with confirm after download disabled / VcmMgr.Vcm
Medium - File type with confirm after download disabled / VBDataView.docSQLEdit
Medium - File type with confirm after download disabled / VBDataView.docDataView
Medium - File type with confirm after download disabled / SoundRec
Medium - File type with confirm after download disabled / SSM
Medium - File type with confirm after download disabled / ResEdit6.docResEdit
Medium - File type with confirm after download disabled / RealPlayer.SMIL.6
Medium - File type with confirm after download disabled / RealPlayer.SDP.6
Medium - File type with confirm after download disabled / RealPlayer.RV.6
Medium - File type with confirm after download disabled / RealPlayer.RT.6
Medium - File type with confirm after download disabled / RealPlayer.RSML.6
Medium - File type with confirm after download disabled / RealPlayer.RP.6
Medium - File type with confirm after download disabled / RealPlayer.RM.6
Medium - File type with confirm after download disabled / RealPlayer.RAM.6
Medium - File type with confirm after download disabled / RealPlayer.RA.6
Medium - File type with confirm after download disabled / RealPlayer.PIX.6
Medium - File type with confirm after download disabled / RealPlayer.Flash.6
Medium - File type with confirm after download disabled / RealJukebox.RMX.1
Medium - File type with confirm after download disabled / RealJukebox.RMP.1
Medium - File type with confirm after download disabled / RealJukebox.RJS.1
Medium - File type with confirm after download disabled / PowerPoint.SlideShow.8
Medium - File type with confirm after download disabled / PowerPoint.Slide.8
Medium - File type with confirm after download disabled / PowerPoint.Show.8
Medium - File type with confirm after download disabled / Outlook.Template
Medium - File type with confirm after download disabled / Net2PhoneApp
Medium - File type with confirm after download disabled / Mmedia.AsyncMHandler.1
Medium - File type with confirm after download disabled / MediaPlayer.MediaPlayer.1
Medium - File type with confirm after download disabled / MSGraph.Chart.8
Medium - File type with confirm after download disabled / MIDFile
Medium - File type with confirm after download disabled / IVFfile
Medium - File type with confirm after download disabled / HTTfile
Medium - File type with confirm after download disabled / GSASkin.Document
Medium - File type with confirm after download disabled / GSAPak.Document
Medium - File type with confirm after download disabled / GSALaunch.Document
Medium - File type with confirm after download disabled / Excel.Sheet.8
Medium - File type with confirm after download disabled / Excel.Chart.8
Medium - File type with confirm after download disabled / Excel.Chart.5
Medium - File type with confirm after download disabled / ConferenceLink
Medium - File type with confirm after download disabled / ClipGalleryDownloadPackage
Medium - File type with confirm after download disabled / ChannelFile
Medium - File type with confirm after download disabled / CSSfile
Medium - File type with confirm after download disabled / AVIFile
Medium - File type with confirm after download disabled / AUFile
Medium - File type with confirm after download disabled / ASXFile
Medium - File type with confirm after download disabled / ASFFile
Medium - File type with confirm after download disabled / AMOVIE.ActiveMovieControl.1
Medium - File type with confirm after download disabled / AMOVIE.ActiveMovie Control.2
Medium - File type with confirm after download disabled / AMOVIE.ActiveMovie Control.1
Medium - File type with confirm after download disabled / AIFFFile
Medium - Excel and PowerPoint 2000 HTML Script Vulnerability
Medium - Excel 2000 XLM Text Macro
Medium - Excel 2000 REGISTER.ID Function
Medium - Domain Account Lockout
Medium - DCOM Access permissions insecure / DCOM Object: VB T-SQL Debugger Object, Config Key: SOFTWARE\Classes\AppID\{124765AA-7866-11CF-BF3B-00A0D10003FA}
Medium - Clip Art Buffer Overrun
Medium - Browser Print Template and File Upload via Form
Medium - Additional Restrictions for anonymous connections
Medium - ActiveX Parameter Validation
Medium - .REG Association modification by non-administrators / Group: Power Users
Medium - .REG Association modification by non-administrators / Group: Power Users
Low - Word 97 Template macro
Low - Windows NT legal notice banner
Low - Windows NT AutoShare server/workstation
Low - User's password never expires / Horror
Low - User's password never expires / Guest
Low - User never logged in / Guest
Low - User has not logged on in specified number of days / Guest
Low - User cannot change password / Guest
Low - Unsigned driver installation behavior
Low - Unauthorized ODBC Driver found / Microsoft dBase-Treiber (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft dBase VFP Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft dBase Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft Visual FoxPro-Treiber
Low - Unauthorized ODBC Driver found / Microsoft Visual FoxPro Driver
Low - Unauthorized ODBC Driver found / Microsoft Text-Treiber (*.txt; *.csv)
Low - Unauthorized ODBC Driver found / Microsoft Text Driver (*.txt; *.csv)
Low - Unauthorized ODBC Driver found / Microsoft Paradox-Treiber (*.db )
Low - Unauthorized ODBC Driver found / Microsoft Paradox Driver (*.db )
Low - Unauthorized ODBC Driver found / Microsoft ODBC for Oracle
Low - Unauthorized ODBC Driver found / Microsoft FoxPro VFP Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft FoxPro Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft Excel-Treiber (*.xls)
Low - Unauthorized ODBC Driver found / Microsoft Excel Driver (*.xls)
Low - Unauthorized ODBC Driver found / Microsoft Access-Treiber (*.mdb)
Low - Unauthorized ODBC Driver found / Microsoft Access Driver (*.mdb)
Low - Unauthorized ODBC Driver found / Driver para o Microsoft Visual FoxPro
Low - Unauthorized ODBC Driver found / Driver do Microsoft dBase (*.dbf)
Low - Unauthorized ODBC Driver found / Driver do Microsoft Paradox (*.db )
Low - Unauthorized ODBC Driver found / Driver do Microsoft Excel(*.xls)
Low - Unauthorized ODBC Driver found / Driver do Microsoft Access (*.mdb)
Low - Unauthorized ODBC Driver found / Driver da Microsoft para arquivos texto (*.txt; *.csv)
Low - TCP/IP Security not enabled
Low - Smart card removal behavior
Low - Shut down system immediately if unable to log security audits
Low - Security Analyzer applications / WebTrends Security Analyzer
Low - Secure Channel: Require strong(Windows 2000 or later) session key
Low - Secure Channel: Digitally encrypt or sign secure channel data(always)
Low - Schedule service
Low - Schedule service
Low - Save password enabled for Dial-up Networking and Remote Access Server
Low - Remote Access Server logging
Low - Remote Access Server configured with Modem
Low - Printer driver installation restrictions
Low - Prevent system maintenance of computer account password
Low - Posix subsystem
Low - Policy: Minimum password size less than 6 characters
Low - Policy: Minimum password history length
Low - Policy: Minimum password age less than policy
Low - Policy: Logon to change password requirements
Low - Policy: Account lockout
Low - Password Change Prompt / The current Password Change Propmt time is set to: 14 days
Low - OS2 subsystem
Low - NTFS 8.3 naming convention
Low - NT/2000 ResetBrowser and HostAnnouncement Flooding
Low - Modem installed
Low - Messenger service
Low - Malformed Rich Text
Low - Logon credential caching
Low - File System Object Registered
Low - Exported registry files associated with REGEDIT.EXE
Low - Event Auditing: Audit of successful system events
Low - Event Auditing: Audit of successful process tracking
Low - Event Auditing: Audit of successful privilege use
Low - Event Auditing: Audit of successful policy change
Low - Event Auditing: Audit of successful object access
Low - Event Auditing: Audit of successful logon events
Low - Event Auditing: Audit of successful directory service access
Low - Event Auditing: Audit of successful account management
Low - Event Auditing: Audit of successful account logon events
Low - Event Auditing: Audit of failed system events
Low - Event Auditing: Audit of failed process tracking
Low - Event Auditing: Audit of failed privilege use
Low - Event Auditing: Audit of failed policy change
Low - Event Auditing: Audit of failed object access
Low - Event Auditing: Audit of failed logon events
Low - Event Auditing: Audit of failed directory service access
Low - Event Auditing: Audit of failed account management
Low - Event Auditing: Audit of failed account logon events
Low - Digitally sign server communication(when possible)
Low - Digitally sign server communication(always)
Low - Digitally sign client communication(always)
Low - Clear pagefile at shutdown
Low - CONFIG.SYS file permissions
Low - Auditing Global System Objects
Low - Audit use of Backup and Restore privilege
Low - Allocation of floppy drives
Low - Allocation of CR-ROM drives
Low - AUTOEXEC.BAT file permissions



This table details differences found between two Security Analyzer scans.

Previously Found Vulnerabilities Which No Longer Exists
Hosts
Vulnerabilities
192.168.1.102
High - Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\0LSAEEP7
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\GHRJK3MW
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\POEHIM5D
High - Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\Z0AKL456
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\NetWork Pro Consultancy Services files
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\latest
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\TITAN
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\computerrel
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\PGP
High - Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\mcplogos
High - Distributed COM (DCOM) enabled
High - Guest access to application log
High - Guest access to security log
High - Guest access to system log
High - Internet Explorer Server Side Redirect
High - L0phtCrack packet driver
High - Lan Manager authentication
High - MSGINA.DLL checksum / 12341
High - MSV1_0.DLL checksum / 13827
High - Microsoft Office VBA shell/Text-ISAM patch
High - New Variant of Microsoft VM File Read
High - Office 2000 UA Control
High - Remote Access Server configured with modem set to receive calls
High - Scriptlet Rendering
High - Server-side Page Reference Redirect
High - Telnet Server Flooding
High - Unauthorized Application in UserInit / C:\WINNT\system32\userinit.exe
High - Unauthorized entry in NullSessionPipes key / SPOOLSS
High - Unauthorized entry in NullSessionPipes key / TrkSvr
High - Unauthorized entry in NullSessionPipes key / TrkWks
High - Unauthorized packet drivers / L0phtPkt
High - Unauthorized packet drivers / NDIS3Pkt
High - Unauthorized packet drivers / Sniffer
High - Unauthorized program in Run key / "C:\Program Files\Winamp\Winampa.exe"
High - Unauthorized program in Run key / C:\PROGRA~1\Adaptec\EASYCD~1\CreateCD\CreateCD.exe -r
High - Unauthorized program in Run key / C:\PROGRA~1\Navnt\defalert.exe
High - Unauthorized program in Run key / C:\PROGRA~1\Navnt\npscheck.exe
High - Unauthorized program in Run key / C:\Program Files\Navnt\POPROXY.EXE
High - Unauthorized program in Run key / C:\Program Files\The Cleaner\tca.exe
High - Unauthorized program in Run key / mobsync.exe /logon
High - Welcome.exe checksum / 27697
High - \WINNT\Repair directory permissions
Medium - Windows 2000: SNMP Parameters
Medium - Windows 2000 Telnet Client NTLM Authentication
Medium - Web Client NTLM Authentication
Medium - User with 'Shut down the system' permissions / Group: Users
Medium - User with 'Shut down the system' permissions / Group: Power Users
Medium - User with 'Shut down the system' permissions / Group: Backup Operators
Medium - User with 'Restore files and directories' permissions / Group: Backup Operators
Medium - User with 'Replace a process level token' permissions / Group: \Everyone
Medium - User with 'Replace a process level token' permissions / Group: Power Users
Medium - User with 'Replace a process level token' permissions / Group: Backup Operators
Medium - User with 'Remove computer from docking station' permissions / Group: Users
Medium - User with 'Remove computer from docking station' permissions / Group: Power Users
Medium - User with 'Profile single process' permissions / Group: Power Users
Medium - User with 'Logon as a service' permissions / Horror111
Medium - User with 'Log on locally' permissions / Guest
Medium - User with 'Log on locally' permissions / Group: Users
Medium - User with 'Log on locally' permissions / Group: Power Users
Medium - User with 'Log on locally' permissions / Group: Backup Operators
Medium - User with 'Log on as a batch job' permissions / Horror111
Medium - User with 'Change system time' permissions / Group: Power Users
Medium - User with 'Bypass traverse checking' permissions / Group: \Everyone
Medium - User with 'Bypass traverse checking' permissions / Group: Users
Medium - User with 'Bypass traverse checking' permissions / Group: Power Users
Medium - User with 'Bypass traverse checking' permissions / Group: Backup Operators
Medium - User with 'Back up files and directories' permissions / Group: Backup Operators
Medium - User with 'Access this computer from the network' permissions / Group: \Everyone
Medium - User with 'Access this computer from the network' permissions / Group: Users
Medium - User with 'Access this computer from the network' permissions / Group: Power Users
Medium - User with 'Access this computer from the network' permissions / Group: Backup Operators
Medium - User access to Performance Monitor data
Medium - Unidentified TCP ports / Unknown (usually netbios-ssn)
Medium - Unidentified TCP ports / Unknown (usually microsoft-ds)
Medium - Unidentified TCP ports / Unknown (usually loc-srv)
Medium - Unidentified TCP ports / Unknown (usually blackjack)
Medium - Unidentified TCP ports / Unknown
Medium - System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\net.exe
Medium - System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\command.com
Medium - System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\cmd.exe
Medium - Still Image Service Privilege Escalation
Medium - Shutdown system without being logged on
Medium - Shutdown system without being logged on
Medium - Service Control Manager Named Pipe Impersonation
Medium - Remote Access Server configured with modem set to dial out
Medium - Relative Shell Path
Medium - Regedt32 permissions
Medium - Regedt32 permissions
Medium - Regedt32 permissions
Medium - Protected Store Key Length
Medium - NetMeeting Desktop Sharing
Medium - NetBIOS Name Server Protocol Spoofing
Medium - Multiple LPC and LPC Ports Vulnerabilities
Medium - Misordered Windows Media Services Handshake
Medium - Microsoft Word Mail Merge
Medium - Microsoft VM ActiveX Component
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Word
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / PowerPoint
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Outlook
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Excel
Medium - Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Access
Medium - Microsoft Office 2000 HTML Object Tag
Medium - Microsoft Office 2000 HTML Object Tag
Medium - Malformed RPC Packet
Medium - Last username displayed in logon screen(Windows 2000)
Medium - Last username displayed in login dialog
Medium - Java VM Applet
Medium - Internet Explorer: Image Source Redirect
Medium - Internet Explorer: Cached Web Credentials
Medium - Internet Explorer: Active Setup Download
Medium - Internet Explorer JavaScript redirect vulnerability
Medium - Indexing Services Cross Site Scripting
Medium - Indexing Service File Enumeration
Medium - Hazardous Registry Permissions: WOW / Group: Power Users
Medium - Hazardous Registry Permissions: WOW / Group: Power Users
Medium - Hazardous Registry Permissions: Uninstall / Group: Power Users
Medium - Hazardous Registry Permissions: Uninstall / Group: Power Users
Medium - Hazardous Registry Permissions: Shell Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: Shell Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: SharedDlls / Group: Power Users
Medium - Hazardous Registry Permissions: SharedDlls / Group: Power Users
Medium - Hazardous Registry Permissions: Setup / Group: Power Users
Medium - Hazardous Registry Permissions: Setup / Group: Power Users
Medium - Hazardous Registry Permissions: Ports / Group: Power Users
Medium - Hazardous Registry Permissions: Ports / Group: Power Users
Medium - Hazardous Registry Permissions: ODBC / Group: Power Users
Medium - Hazardous Registry Permissions: ODBC / Group: Power Users
Medium - Hazardous Registry Permissions: ModuleUsage / Group: Power Users
Medium - Hazardous Registry Permissions: ModuleUsage / Group: Power Users
Medium - Hazardous Registry Permissions: MCI Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: MCI Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: MCI / Group: Power Users
Medium - Hazardous Registry Permissions: MCI / Group: Power Users
Medium - Hazardous Registry Permissions: Internet Settings / Group: Power Users
Medium - Hazardous Registry Permissions: Internet Settings / Group: Power Users
Medium - Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users
Medium - Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users
Medium - Hazardous Registry Permissions: Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: Extensions / Group: Power Users
Medium - Hazardous Registry Permissions: ExtShellViews / Group: Power Users
Medium - Hazardous Registry Permissions: ExtShellViews / Group: Power Users
Medium - Hazardous Registry Permissions: Explorer / Group: Power Users
Medium - Hazardous Registry Permissions: Explorer / Group: Power Users
Medium - Hazardous Registry Permissions: Embedding / Group: Power Users
Medium - Hazardous Registry Permissions: Embedding / Group: Power Users
Medium - Hazardous Registry Permissions: Drivers / Group: Power Users
Medium - Hazardous Registry Permissions: Drivers / Group: Power Users
Medium - Hazardous Registry Permissions: Controls Folder / Group: Power Users
Medium - Hazardous Registry Permissions: Controls Folder / Group: Power Users
Medium - Hazardous Registry Permissions: Compatibility / Group: Power Users
Medium - Hazardous Registry Permissions: Compatibility / Group: Power Users
Medium - Hazardous Registry Permissions: App Paths / Group: Power Users
Medium - Hazardous Registry Permissions: App Paths / Group: Power Users
Medium - Guest account not renamed / Guest
Medium - Frame Domain Verification
Medium - File type with confirm after download disabled / xslfile
Medium - File type with confirm after download disabled / xmlfile
Medium - File type with confirm after download disabled / vcsfile
Medium - File type with confirm after download disabled / rqyfile
Medium - File type with confirm after download disabled / rmocx.RealPlayer G2 Control.1
Medium - File type with confirm after download disabled / rmocx.RealPlayer G2 Control
Medium - File type with confirm after download disabled / msgfile
Medium - File type with confirm after download disabled / mpegfile
Medium - File type with confirm after download disabled / mp3file
Medium - File type with confirm after download disabled / movfile
Medium - File type with confirm after download disabled / m3ufile
Medium - File type with confirm after download disabled / lavsFile
Medium - File type with confirm after download disabled / lavfile
Medium - File type with confirm after download disabled / larFile
Medium - File type with confirm after download disabled / iqyfile
Medium - File type with confirm after download disabled / icsfile
Medium - File type with confirm after download disabled / htmlfile
Medium - File type with confirm after download disabled / cskfile
Medium - File type with confirm after download disabled / cpkfile
Medium - File type with confirm after download disabled / cdafile
Medium - File type with confirm after download disabled / aip_file
Medium - File type with confirm after download disabled / XSetupWizard
Medium - File type with confirm after download disabled / XSetupPlugin
Medium - File type with confirm after download disabled / Word.Wizard.8
Medium - File type with confirm after download disabled / Word.Template.8
Medium - File type with confirm after download disabled / Word.RTF.8
Medium - File type with confirm after download disabled / Word.Picture.8
Medium - File type with confirm after download disabled / Word.Document.8
Medium - File type with confirm after download disabled / Word.Backup.8
Medium - File type with confirm after download disabled / WizMan6.docWizardManager
Medium - File type with confirm after download disabled / Winamp.SkinZip
Medium - File type with confirm after download disabled / Winamp.Playlist
Medium - File type with confirm after download disabled / WVXFile
Medium - File type with confirm after download disabled / WMZFile
Medium - File type with confirm after download disabled / WMVFile
Medium - File type with confirm after download disabled / WMSFile
Medium - File type with confirm after download disabled / WMPlayer.OCX.7
Medium - File type with confirm after download disabled / WMPFile
Medium - File type with confirm after download disabled / WMDFile
Medium - File type with confirm after download disabled / WMAFile
Medium - File type with confirm after download disabled / WAXFile
Medium - File type with confirm after download disabled / VcmMgr.Vcm
Medium - File type with confirm after download disabled / VBDataView.docSQLEdit
Medium - File type with confirm after download disabled / VBDataView.docDataView
Medium - File type with confirm after download disabled / SoundRec
Medium - File type with confirm after download disabled / SSM
Medium - File type with confirm after download disabled / ResEdit6.docResEdit
Medium - File type with confirm after download disabled / RealPlayer.SMIL.6
Medium - File type with confirm after download disabled / RealPlayer.SDP.6
Medium - File type with confirm after download disabled / RealPlayer.RV.6
Medium - File type with confirm after download disabled / RealPlayer.RT.6
Medium - File type with confirm after download disabled / RealPlayer.RSML.6
Medium - File type with confirm after download disabled / RealPlayer.RP.6
Medium - File type with confirm after download disabled / RealPlayer.RM.6
Medium - File type with confirm after download disabled / RealPlayer.RAM.6
Medium - File type with confirm after download disabled / RealPlayer.RA.6
Medium - File type with confirm after download disabled / RealPlayer.PIX.6
Medium - File type with confirm after download disabled / RealPlayer.Flash.6
Medium - File type with confirm after download disabled / RealJukebox.RMX.1
Medium - File type with confirm after download disabled / RealJukebox.RMP.1
Medium - File type with confirm after download disabled / RealJukebox.RJS.1
Medium - File type with confirm after download disabled / PowerPoint.SlideShow.8
Medium - File type with confirm after download disabled / PowerPoint.Slide.8
Medium - File type with confirm after download disabled / PowerPoint.Show.8
Medium - File type with confirm after download disabled / Outlook.Template
Medium - File type with confirm after download disabled / Net2PhoneApp
Medium - File type with confirm after download disabled / Mmedia.AsyncMHandler.1
Medium - File type with confirm after download disabled / MediaPlayer.MediaPlayer.1
Medium - File type with confirm after download disabled / MSGraph.Chart.8
Medium - File type with confirm after download disabled / MIDFile
Medium - File type with confirm after download disabled / IVFfile
Medium - File type with confirm after download disabled / HTTfile
Medium - File type with confirm after download disabled / GSASkin.Document
Medium - File type with confirm after download disabled / GSAPak.Document
Medium - File type with confirm after download disabled / GSALaunch.Document
Medium - File type with confirm after download disabled / Excel.Sheet.8
Medium - File type with confirm after download disabled / Excel.Chart.8
Medium - File type with confirm after download disabled / Excel.Chart.5
Medium - File type with confirm after download disabled / ConferenceLink
Medium - File type with confirm after download disabled / ClipGalleryDownloadPackage
Medium - File type with confirm after download disabled / ChannelFile
Medium - File type with confirm after download disabled / CSSfile
Medium - File type with confirm after download disabled / AVIFile
Medium - File type with confirm after download disabled / AUFile
Medium - File type with confirm after download disabled / ASXFile
Medium - File type with confirm after download disabled / ASFFile
Medium - File type with confirm after download disabled / AMOVIE.ActiveMovieControl.1
Medium - File type with confirm after download disabled / AMOVIE.ActiveMovie Control.2
Medium - File type with confirm after download disabled / AMOVIE.ActiveMovie Control.1
Medium - File type with confirm after download disabled / AIFFFile
Medium - Excel and PowerPoint 2000 HTML Script Vulnerability
Medium - Excel 2000 XLM Text Macro
Medium - Excel 2000 REGISTER.ID Function
Medium - Domain Account Lockout
Medium - DCOM Access permissions insecure / DCOM Object: VB T-SQL Debugger Object, Config Key: SOFTWARE\Classes\AppID\{124765AA-7866-11CF-BF3B-00A0D10003FA}
Medium - Clip Art Buffer Overrun
Medium - Browser Print Template and File Upload via Form
Medium - Additional Restrictions for anonymous connections
Medium - ActiveX Parameter Validation
Medium - .REG Association modification by non-administrators / Group: Power Users
Medium - .REG Association modification by non-administrators / Group: Power Users
Low - Word 97 Template macro
Low - Windows NT legal notice banner
Low - Windows NT AutoShare server/workstation
Low - User's password never expires / Horror
Low - User's password never expires / Guest
Low - User never logged in / Guest
Low - User has not logged on in specified number of days / Guest
Low - User cannot change password / Guest
Low - Unsigned driver installation behavior
Low - Unauthorized ODBC Driver found / Microsoft dBase-Treiber (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft dBase VFP Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft dBase Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft Visual FoxPro-Treiber
Low - Unauthorized ODBC Driver found / Microsoft Visual FoxPro Driver
Low - Unauthorized ODBC Driver found / Microsoft Text-Treiber (*.txt; *.csv)
Low - Unauthorized ODBC Driver found / Microsoft Text Driver (*.txt; *.csv)
Low - Unauthorized ODBC Driver found / Microsoft Paradox-Treiber (*.db )
Low - Unauthorized ODBC Driver found / Microsoft Paradox Driver (*.db )
Low - Unauthorized ODBC Driver found / Microsoft ODBC for Oracle
Low - Unauthorized ODBC Driver found / Microsoft FoxPro VFP Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft FoxPro Driver (*.dbf)
Low - Unauthorized ODBC Driver found / Microsoft Excel-Treiber (*.xls)
Low - Unauthorized ODBC Driver found / Microsoft Excel Driver (*.xls)
Low - Unauthorized ODBC Driver found / Microsoft Access-Treiber (*.mdb)
Low - Unauthorized ODBC Driver found / Microsoft Access Driver (*.mdb)
Low - Unauthorized ODBC Driver found / Driver para o Microsoft Visual FoxPro
Low - Unauthorized ODBC Driver found / Driver do Microsoft dBase (*.dbf)
Low - Unauthorized ODBC Driver found / Driver do Microsoft Paradox (*.db )
Low - Unauthorized ODBC Driver found / Driver do Microsoft Excel(*.xls)
Low - Unauthorized ODBC Driver found / Driver do Microsoft Access (*.mdb)
Low - Unauthorized ODBC Driver found / Driver da Microsoft para arquivos texto (*.txt; *.csv)
Low - TCP/IP Security not enabled
Low - Smart card removal behavior
Low - Shut down system immediately if unable to log security audits
Low - Security Analyzer applications / WebTrends Security Analyzer
Low - Secure Channel: Require strong(Windows 2000 or later) session key
Low - Secure Channel: Digitally encrypt or sign secure channel data(always)
Low - Schedule service
Low - Schedule service
Low - Save password enabled for Dial-up Networking and Remote Access Server
Low - Remote Access Server logging
Low - Remote Access Server configured with Modem
Low - Printer driver installation restrictions
Low - Prevent system maintenance of computer account password
Low - Posix subsystem
Low - Policy: Minimum password size less than 6 characters
Low - Policy: Minimum password history length
Low - Policy: Minimum password age less than policy
Low - Policy: Logon to change password requirements
Low - Policy: Account lockout
Low - Password Change Prompt / The current Password Change Propmt time is set to: 14 days
Low - OS2 subsystem
Low - NTFS 8.3 naming convention
Low - NT/2000 ResetBrowser and HostAnnouncement Flooding
Low - Modem installed
Low - Malformed Rich Text
Low - Logon credential caching
Low - File System Object Registered
Low - Exported registry files associated with REGEDIT.EXE
Low - Event Auditing: Audit of successful system events
Low - Event Auditing: Audit of successful process tracking
Low - Event Auditing: Audit of successful privilege use
Low - Event Auditing: Audit of successful policy change
Low - Event Auditing: Audit of successful object access
Low - Event Auditing: Audit of successful logon events
Low - Event Auditing: Audit of successful directory service access
Low - Event Auditing: Audit of successful account management
Low - Event Auditing: Audit of successful account logon events
Low - Event Auditing: Audit of failed system events
Low - Event Auditing: Audit of failed process tracking
Low - Event Auditing: Audit of failed privilege use
Low - Event Auditing: Audit of failed policy change
Low - Event Auditing: Audit of failed object access
Low - Event Auditing: Audit of failed logon events
Low - Event Auditing: Audit of failed directory service access
Low - Event Auditing: Audit of failed account management
Low - Event Auditing: Audit of failed account logon events
Low - Digitally sign server communication(when possible)
Low - Digitally sign server communication(always)
Low - Digitally sign client communication(always)
Low - Clear pagefile at shutdown
Low - CONFIG.SYS file permissions
Low - Auditing Global System Objects
Low - Audit use of Backup and Restore privilege
Low - Allocation of floppy drives
Low - Allocation of CR-ROM drives
Low - AUTOEXEC.BAT file permissions
192.168.1.110
High - Directly accessible command interpreters / www-http
Medium - SMTP mail relay / smtp
Low - SMTP service enabled / smtp
Low - NNTP service enabled / nntp
Low - HTTP (Web) service enabled / www-http
Low - FTP service enabled / ftp
Low - Echo service enabled / echo
Low - CHARGEN service enabled / chargen



This table details differences found between two Security Analyzer scans.

Policy Differences
Test Groups
Tests
Current Scan
Wed Feb 28 22:03:03 2001
Previous Scan
Tue Feb 13 23:59:02 2001
Applications PowerPoint 2000 File Parsing Enabled Disabled
Windows Media Player 6.4/7.0: ASX Buffer Overrun and WMS Script Execution Enabled Disabled
Windows Media Player Skins File Download Enabled Disabled
Unix RedHat Linux 6.0 php-ldap package update Enabled Disabled
RedHat Linux 6.x inetd package update Enabled Disabled
RedHat Linux 7.0 glibc package update Enabled Disabled
RedHat Linux 7.0 glibc-common package update Enabled Disabled
RedHat Linux 7.0 glibc-devel package update Enabled Disabled
RedHat Linux 7.0 glibc-profile package update Enabled Disabled
RedHat Linux 7.0 kernel package update Enabled Disabled
RedHat Linux 7.0 kernel-boot package update Enabled Disabled
RedHat Linux 7.0 kernel-doc package update Enabled Disabled
RedHat Linux 7.0 kernel-enterprise package update Enabled Disabled
RedHat Linux 7.0 kernel-ibcs package update Enabled Disabled
RedHat Linux 7.0 kernel-pcmcia-cs package update Enabled Disabled
RedHat Linux 7.0 kernel-smp package update Enabled Disabled
RedHat Linux 7.0 kernel-source package update Enabled Disabled
RedHat Linux 7.0 kernel-utils package update Enabled Disabled
RedHat Linux 7.0 mysql package update Enabled Disabled
RedHat Linux 7.0 mysql-devel package update Enabled Disabled
RedHat Linux 7.0 mysql-server package update Enabled Disabled
RedHat Linux 7.0 mysqlclient package update Enabled Disabled
RedHat Linux 7.0 nscd package update Enabled Disabled
RedHat Linux 7.0 xemacs package update Enabled Disabled
RedHat Linux 7.0 xemacs-el package update Enabled Disabled
RedHat Linux 7.0 xemacs-info package update Enabled Disabled
Web Server New Variant of File Fragment Reading via .HTR Enabled Disabled
Workstation Hardening Hotfix Packaging Anomalies Enabled Disabled
Invalid RDP Data Enabled Disabled
Malformed Request to Domain Controller can Cause Denial of Service Enabled Disabled
NTLMSSP Privilege Elevation Enabled Disabled
Network DDE Agent Request Enabled Disabled
Winsock Mutex Enabled Disabled



This table details differences found between two Security Analyzer scans.

Vulnerability Differences
Host
Vulnerabilities
Current Scan
Wed Feb 28 22:03:03 2001
Previous Scan
Tue Feb 13 23:59:02 2001
192.168.1.100 Fragmented IGMP Packet Found Not Found
Unidentified TCP ports / Unknown Found Not Found
Unidentified TCP ports / Unknown (usually blackjack) Found Not Found
Unidentified TCP ports / Unknown (usually loc-srv) Found Not Found
Unidentified TCP ports / Unknown (usually microsoft-ds) Found Not Found
Unidentified TCP ports / Unknown (usually netbios-ssn) Found Not Found
Unidentified UDP ports / Unknown (usually loc-srv) Found Not Found
192.168.1.102 .REG Association modification by non-administrators / Group: Power Users Not Found Found
.REG Association modification by non-administrators / Group: Power Users Not Found Found
AUTOEXEC.BAT file permissions Not Found Found
ActiveX Parameter Validation Not Found Found
Additional Restrictions for anonymous connections Not Found Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp Not Found Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files Not Found Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5 Not Found Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\0LSAEEP7 Not Found Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\GHRJK3MW Not Found Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\POEHIM5D Not Found Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\Z0AKL456 Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\NetWork Pro Consultancy Services files Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\latest Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\TITAN Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\computerrel Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\PGP Not Found Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\mcplogos Not Found Found
Allocation of CR-ROM drives Not Found Found
Allocation of floppy drives Not Found Found
Audit use of Backup and Restore privilege Not Found Found
Auditing Global System Objects Not Found Found
Browser Print Template and File Upload via Form Not Found Found
CONFIG.SYS file permissions Not Found Found
Clear pagefile at shutdown Not Found Found
Clip Art Buffer Overrun Not Found Found
DCOM Access permissions insecure / DCOM Object: VB T-SQL Debugger Object, Config Key: SOFTWARE\Classes\AppID\{124765AA-7866-11CF-BF3B-00A0D10003FA} Not Found Found
Digitally sign client communication(always) Not Found Found
Digitally sign server communication(always) Not Found Found
Digitally sign server communication(when possible) Not Found Found
Distributed COM (DCOM) enabled Not Found Found
Domain Account Lockout Not Found Found
Event Auditing: Audit of failed account logon events Not Found Found
Event Auditing: Audit of failed account management Not Found Found
Event Auditing: Audit of failed directory service access Not Found Found
Event Auditing: Audit of failed logon events Not Found Found
Event Auditing: Audit of failed object access Not Found Found
Event Auditing: Audit of failed policy change Not Found Found
Event Auditing: Audit of failed privilege use Not Found Found
Event Auditing: Audit of failed process tracking Not Found Found
Event Auditing: Audit of failed system events Not Found Found
Event Auditing: Audit of successful account logon events Not Found Found
Event Auditing: Audit of successful account management Not Found Found
Event Auditing: Audit of successful directory service access Not Found Found
Event Auditing: Audit of successful logon events Not Found Found
Event Auditing: Audit of successful object access Not Found Found
Event Auditing: Audit of successful policy change Not Found Found
Event Auditing: Audit of successful privilege use Not Found Found
Event Auditing: Audit of successful process tracking Not Found Found
Event Auditing: Audit of successful system events Not Found Found
Excel 2000 REGISTER.ID Function Not Found Found
Excel 2000 XLM Text Macro Not Found Found
Excel and PowerPoint 2000 HTML Script Vulnerability Not Found Found
Exported registry files associated with REGEDIT.EXE Not Found Found
File System Object Registered Not Found Found
File type with confirm after download disabled / AIFFFile Not Found Found
File type with confirm after download disabled / AMOVIE.ActiveMovie Control.1 Not Found Found
File type with confirm after download disabled / AMOVIE.ActiveMovie Control.2 Not Found Found
File type with confirm after download disabled / AMOVIE.ActiveMovieControl.1 Not Found Found
File type with confirm after download disabled / ASFFile Not Found Found
File type with confirm after download disabled / ASXFile Not Found Found
File type with confirm after download disabled / AUFile Not Found Found
File type with confirm after download disabled / AVIFile Not Found Found
File type with confirm after download disabled / CSSfile Not Found Found
File type with confirm after download disabled / ChannelFile Not Found Found
File type with confirm after download disabled / ClipGalleryDownloadPackage Not Found Found
File type with confirm after download disabled / ConferenceLink Not Found Found
File type with confirm after download disabled / Excel.Chart.5 Not Found Found
File type with confirm after download disabled / Excel.Chart.8 Not Found Found
File type with confirm after download disabled / Excel.Sheet.8 Not Found Found
File type with confirm after download disabled / GSALaunch.Document Not Found Found
File type with confirm after download disabled / GSAPak.Document Not Found Found
File type with confirm after download disabled / GSASkin.Document Not Found Found
File type with confirm after download disabled / HTTfile Not Found Found
File type with confirm after download disabled / IVFfile Not Found Found
File type with confirm after download disabled / MIDFile Not Found Found
File type with confirm after download disabled / MSGraph.Chart.8 Not Found Found
File type with confirm after download disabled / MediaPlayer.MediaPlayer.1 Not Found Found
File type with confirm after download disabled / Mmedia.AsyncMHandler.1 Not Found Found
File type with confirm after download disabled / Net2PhoneApp Not Found Found
File type with confirm after download disabled / Outlook.Template Not Found Found
File type with confirm after download disabled / PowerPoint.Show.8 Not Found Found
File type with confirm after download disabled / PowerPoint.Slide.8 Not Found Found
File type with confirm after download disabled / PowerPoint.SlideShow.8 Not Found Found
File type with confirm after download disabled / RealJukebox.RJS.1 Not Found Found
File type with confirm after download disabled / RealJukebox.RMP.1 Not Found Found
File type with confirm after download disabled / RealJukebox.RMX.1 Not Found Found
File type with confirm after download disabled / RealPlayer.Flash.6 Not Found Found
File type with confirm after download disabled / RealPlayer.PIX.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RA.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RAM.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RM.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RP.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RSML.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RT.6 Not Found Found
File type with confirm after download disabled / RealPlayer.RV.6 Not Found Found
File type with confirm after download disabled / RealPlayer.SDP.6 Not Found Found
File type with confirm after download disabled / RealPlayer.SMIL.6 Not Found Found
File type with confirm after download disabled / ResEdit6.docResEdit Not Found Found
File type with confirm after download disabled / SSM Not Found Found
File type with confirm after download disabled / SoundRec Not Found Found
File type with confirm after download disabled / VBDataView.docDataView Not Found Found
File type with confirm after download disabled / VBDataView.docSQLEdit Not Found Found
File type with confirm after download disabled / VcmMgr.Vcm Not Found Found
File type with confirm after download disabled / WAXFile Not Found Found
File type with confirm after download disabled / WMAFile Not Found Found
File type with confirm after download disabled / WMDFile Not Found Found
File type with confirm after download disabled / WMPFile Not Found Found
File type with confirm after download disabled / WMPlayer.OCX.7 Not Found Found
File type with confirm after download disabled / WMSFile Not Found Found
File type with confirm after download disabled / WMVFile Not Found Found
File type with confirm after download disabled / WMZFile Not Found Found
File type with confirm after download disabled / WVXFile Not Found Found
File type with confirm after download disabled / Winamp.Playlist Not Found Found
File type with confirm after download disabled / Winamp.SkinZip Not Found Found
File type with confirm after download disabled / WizMan6.docWizardManager Not Found Found
File type with confirm after download disabled / Word.Backup.8 Not Found Found
File type with confirm after download disabled / Word.Document.8 Not Found Found
File type with confirm after download disabled / Word.Picture.8 Not Found Found
File type with confirm after download disabled / Word.RTF.8 Not Found Found
File type with confirm after download disabled / Word.Template.8 Not Found Found
File type with confirm after download disabled / Word.Wizard.8 Not Found Found
File type with confirm after download disabled / XSetupPlugin Not Found Found
File type with confirm after download disabled / XSetupWizard Not Found Found
File type with confirm after download disabled / aip_file Not Found Found
File type with confirm after download disabled / cdafile Not Found Found
File type with confirm after download disabled / cpkfile Not Found Found
File type with confirm after download disabled / cskfile Not Found Found
File type with confirm after download disabled / htmlfile Not Found Found
File type with confirm after download disabled / icsfile Not Found Found
File type with confirm after download disabled / iqyfile Not Found Found
File type with confirm after download disabled / larFile Not Found Found
File type with confirm after download disabled / lavfile Not Found Found
File type with confirm after download disabled / lavsFile Not Found Found
File type with confirm after download disabled / m3ufile Not Found Found
File type with confirm after download disabled / movfile Not Found Found
File type with confirm after download disabled / mp3file Not Found Found
File type with confirm after download disabled / mpegfile Not Found Found
File type with confirm after download disabled / msgfile Not Found Found
File type with confirm after download disabled / rmocx.RealPlayer G2 Control Not Found Found
File type with confirm after download disabled / rmocx.RealPlayer G2 Control.1 Not Found Found
File type with confirm after download disabled / rqyfile Not Found Found
File type with confirm after download disabled / vcsfile Not Found Found
File type with confirm after download disabled / xmlfile Not Found Found
File type with confirm after download disabled / xslfile Not Found Found
Frame Domain Verification Not Found Found
Guest access to application log Not Found Found
Guest access to security log Not Found Found
Guest access to system log Not Found Found
Guest account not renamed / Guest Not Found Found
Hazardous Registry Permissions: App Paths / Group: Power Users Not Found Found
Hazardous Registry Permissions: App Paths / Group: Power Users Not Found Found
Hazardous Registry Permissions: Compatibility / Group: Power Users Not Found Found
Hazardous Registry Permissions: Compatibility / Group: Power Users Not Found Found
Hazardous Registry Permissions: Controls Folder / Group: Power Users Not Found Found
Hazardous Registry Permissions: Controls Folder / Group: Power Users Not Found Found
Hazardous Registry Permissions: Drivers / Group: Power Users Not Found Found
Hazardous Registry Permissions: Drivers / Group: Power Users Not Found Found
Hazardous Registry Permissions: Embedding / Group: Power Users Not Found Found
Hazardous Registry Permissions: Embedding / Group: Power Users Not Found Found
Hazardous Registry Permissions: Explorer / Group: Power Users Not Found Found
Hazardous Registry Permissions: Explorer / Group: Power Users Not Found Found
Hazardous Registry Permissions: ExtShellViews / Group: Power Users Not Found Found
Hazardous Registry Permissions: ExtShellViews / Group: Power Users Not Found Found
Hazardous Registry Permissions: Extensions / Group: Power Users Not Found Found
Hazardous Registry Permissions: Extensions / Group: Power Users Not Found Found
Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users Not Found Found
Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users Not Found Found
Hazardous Registry Permissions: Internet Settings / Group: Power Users Not Found Found
Hazardous Registry Permissions: Internet Settings / Group: Power Users Not Found Found
Hazardous Registry Permissions: MCI / Group: Power Users Not Found Found
Hazardous Registry Permissions: MCI / Group: Power Users Not Found Found
Hazardous Registry Permissions: MCI Extensions / Group: Power Users Not Found Found
Hazardous Registry Permissions: MCI Extensions / Group: Power Users Not Found Found
Hazardous Registry Permissions: ModuleUsage / Group: Power Users Not Found Found
Hazardous Registry Permissions: ModuleUsage / Group: Power Users Not Found Found
Hazardous Registry Permissions: ODBC / Group: Power Users Not Found Found
Hazardous Registry Permissions: ODBC / Group: Power Users Not Found Found
Hazardous Registry Permissions: Ports / Group: Power Users Not Found Found
Hazardous Registry Permissions: Ports / Group: Power Users Not Found Found
Hazardous Registry Permissions: Setup / Group: Power Users Not Found Found
Hazardous Registry Permissions: Setup / Group: Power Users Not Found Found
Hazardous Registry Permissions: SharedDlls / Group: Power Users Not Found Found
Hazardous Registry Permissions: SharedDlls / Group: Power Users Not Found Found
Hazardous Registry Permissions: Shell Extensions / Group: Power Users Not Found Found
Hazardous Registry Permissions: Shell Extensions / Group: Power Users Not Found Found
Hazardous Registry Permissions: Uninstall / Group: Power Users Not Found Found
Hazardous Registry Permissions: Uninstall / Group: Power Users Not Found Found
Hazardous Registry Permissions: WOW / Group: Power Users Not Found Found
Hazardous Registry Permissions: WOW / Group: Power Users Not Found Found
Indexing Service File Enumeration Not Found Found
Indexing Services Cross Site Scripting Not Found Found
Internet Explorer JavaScript redirect vulnerability Not Found Found
Internet Explorer Server Side Redirect Not Found Found
Internet Explorer: Active Setup Download Not Found Found
Internet Explorer: Cached Web Credentials Not Found Found
Internet Explorer: Image Source Redirect Not Found Found
Java VM Applet Not Found Found
L0phtCrack packet driver Not Found Found
Lan Manager authentication Not Found Found
Last username displayed in login dialog Not Found Found
Last username displayed in logon screen(Windows 2000) Not Found Found
Logon credential caching Not Found Found
MSGINA.DLL checksum / 12341 Not Found Found
MSV1_0.DLL checksum / 13827 Not Found Found
Malformed RPC Packet Not Found Found
Malformed Rich Text Not Found Found
Microsoft Office 2000 HTML Object Tag Not Found Found
Microsoft Office 2000 HTML Object Tag Not Found Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Access Not Found Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Excel Not Found Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Outlook Not Found Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / PowerPoint Not Found Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Word Not Found Found
Microsoft Office VBA shell/Text-ISAM patch Not Found Found
Microsoft VM ActiveX Component Not Found Found
Microsoft Word Mail Merge Not Found Found
Misordered Windows Media Services Handshake Not Found Found
Modem installed Not Found Found
Multiple LPC and LPC Ports Vulnerabilities Not Found Found
NT/2000 ResetBrowser and HostAnnouncement Flooding Not Found Found
NTFS 8.3 naming convention Not Found Found
NetBIOS Name Server Protocol Spoofing Not Found Found
NetMeeting Desktop Sharing Not Found Found
New Variant of Microsoft VM File Read Not Found Found
OS2 subsystem Not Found Found
Office 2000 UA Control Not Found Found
Password Change Prompt / The current Password Change Propmt time is set to: 14 days Not Found Found
Policy: Account lockout Not Found Found
Policy: Logon to change password requirements Not Found Found
Policy: Minimum password age less than policy Not Found Found
Policy: Minimum password history length Not Found Found
Policy: Minimum password size less than 6 characters Not Found Found
Posix subsystem Not Found Found
Prevent system maintenance of computer account password Not Found Found
Printer driver installation restrictions Not Found Found
Protected Store Key Length Not Found Found
Regedt32 permissions Not Found Found
Regedt32 permissions Not Found Found
Regedt32 permissions Not Found Found
Relative Shell Path Not Found Found
Remote Access Server configured with Modem Not Found Found
Remote Access Server configured with modem set to dial out Not Found Found
Remote Access Server configured with modem set to receive calls Not Found Found
Remote Access Server logging Not Found Found
Save password enabled for Dial-up Networking and Remote Access Server Not Found Found
Schedule service Not Found Found
Schedule service Not Found Found
Scriptlet Rendering Not Found Found
Secure Channel: Digitally encrypt or sign secure channel data(always) Not Found Found
Secure Channel: Require strong(Windows 2000 or later) session key Not Found Found
Security Analyzer applications / WebTrends Security Analyzer Not Found Found
Server-side Page Reference Redirect Not Found Found
Service Control Manager Named Pipe Impersonation Not Found Found
Shut down system immediately if unable to log security audits Not Found Found
Shutdown system without being logged on Not Found Found
Shutdown system without being logged on Not Found Found
Smart card removal behavior Not Found Found
Still Image Service Privilege Escalation Not Found Found
System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\cmd.exe Not Found Found
System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\command.com Not Found Found
System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\net.exe Not Found Found
TCP/IP Security not enabled Not Found Found
Telnet Server Flooding Not Found Found
Unauthorized Application in UserInit / C:\WINNT\system32\userinit.exe Not Found Found
Unauthorized ODBC Driver found / Driver da Microsoft para arquivos texto (*.txt; *.csv) Not Found Found
Unauthorized ODBC Driver found / Driver do Microsoft Access (*.mdb) Not Found Found
Unauthorized ODBC Driver found / Driver do Microsoft Excel(*.xls) Not Found Found
Unauthorized ODBC Driver found / Driver do Microsoft Paradox (*.db ) Not Found Found
Unauthorized ODBC Driver found / Driver do Microsoft dBase (*.dbf) Not Found Found
Unauthorized ODBC Driver found / Driver para o Microsoft Visual FoxPro Not Found Found
Unauthorized ODBC Driver found / Microsoft Access Driver (*.mdb) Not Found Found
Unauthorized ODBC Driver found / Microsoft Access-Treiber (*.mdb) Not Found Found
Unauthorized ODBC Driver found / Microsoft Excel Driver (*.xls) Not Found Found
Unauthorized ODBC Driver found / Microsoft Excel-Treiber (*.xls) Not Found Found
Unauthorized ODBC Driver found / Microsoft FoxPro Driver (*.dbf) Not Found Found
Unauthorized ODBC Driver found / Microsoft FoxPro VFP Driver (*.dbf) Not Found Found
Unauthorized ODBC Driver found / Microsoft ODBC for Oracle Not Found Found
Unauthorized ODBC Driver found / Microsoft Paradox Driver (*.db ) Not Found Found
Unauthorized ODBC Driver found / Microsoft Paradox-Treiber (*.db ) Not Found Found
Unauthorized ODBC Driver found / Microsoft Text Driver (*.txt; *.csv) Not Found Found
Unauthorized ODBC Driver found / Microsoft Text-Treiber (*.txt; *.csv) Not Found Found
Unauthorized ODBC Driver found / Microsoft Visual FoxPro Driver Not Found Found
Unauthorized ODBC Driver found / Microsoft Visual FoxPro-Treiber Not Found Found
Unauthorized ODBC Driver found / Microsoft dBase Driver (*.dbf) Not Found Found
Unauthorized ODBC Driver found / Microsoft dBase VFP Driver (*.dbf) Not Found Found
Unauthorized ODBC Driver found / Microsoft dBase-Treiber (*.dbf) Not Found Found
Unauthorized entry in NullSessionPipes key / SPOOLSS Not Found Found
Unauthorized entry in NullSessionPipes key / TrkSvr Not Found Found
Unauthorized entry in NullSessionPipes key / TrkWks Not Found Found
Unauthorized packet drivers / L0phtPkt Not Found Found
Unauthorized packet drivers / NDIS3Pkt Not Found Found
Unauthorized packet drivers / Sniffer Not Found Found
Unauthorized program in Run key / "C:\Program Files\Winamp\Winampa.exe" Not Found Found
Unauthorized program in Run key / C:\PROGRA~1\Adaptec\EASYCD~1\CreateCD\CreateCD.exe -r Not Found Found
Unauthorized program in Run key / C:\PROGRA~1\Navnt\defalert.exe Not Found Found
Unauthorized program in Run key / C:\PROGRA~1\Navnt\npscheck.exe Not Found Found
Unauthorized program in Run key / C:\Program Files\Navnt\POPROXY.EXE Not Found Found
Unauthorized program in Run key / C:\Program Files\The Cleaner\tca.exe Not Found Found
Unauthorized program in Run key / mobsync.exe /logon Not Found Found
Unidentified TCP ports / Unknown Not Found Found
Unidentified TCP ports / Unknown (usually blackjack) Not Found Found
Unidentified TCP ports / Unknown (usually loc-srv) Not Found Found
Unidentified TCP ports / Unknown (usually microsoft-ds) Not Found Found
Unidentified TCP ports / Unknown (usually netbios-ssn) Not Found Found
Unsigned driver installation behavior Not Found Found
User access to Performance Monitor data Not Found Found
User cannot change password / Guest Not Found Found
User has not logged on in specified number of days / Guest Not Found Found
User never logged in / Guest Not Found Found
User with 'Access this computer from the network' permissions / Group: Backup Operators Not Found Found
User with 'Access this computer from the network' permissions / Group: Power Users Not Found Found
User with 'Access this computer from the network' permissions / Group: Users Not Found Found
User with 'Access this computer from the network' permissions / Group: \Everyone Not Found Found
User with 'Back up files and directories' permissions / Group: Backup Operators Not Found Found
User with 'Bypass traverse checking' permissions / Group: Backup Operators Not Found Found
User with 'Bypass traverse checking' permissions / Group: Power Users Not Found Found
User with 'Bypass traverse checking' permissions / Group: Users Not Found Found
User with 'Bypass traverse checking' permissions / Group: \Everyone Not Found Found
User with 'Change system time' permissions / Group: Power Users Not Found Found
User with 'Log on as a batch job' permissions / Horror111 Not Found Found
User with 'Log on locally' permissions / Group: Backup Operators Not Found Found
User with 'Log on locally' permissions / Group: Power Users Not Found Found
User with 'Log on locally' permissions / Group: Users Not Found Found
User with 'Log on locally' permissions / Guest Not Found Found
User with 'Logon as a service' permissions / Horror111 Not Found Found
User with 'Profile single process' permissions / Group: Power Users Not Found Found
User with 'Remove computer from docking station' permissions / Group: Power Users Not Found Found
User with 'Remove computer from docking station' permissions / Group: Users Not Found Found
User with 'Replace a process level token' permissions / Group: Backup Operators Not Found Found
User with 'Replace a process level token' permissions / Group: Power Users Not Found Found
User with 'Replace a process level token' permissions / Group: \Everyone Not Found Found
User with 'Restore files and directories' permissions / Group: Backup Operators Not Found Found
User with 'Shut down the system' permissions / Group: Backup Operators Not Found Found
User with 'Shut down the system' permissions / Group: Power Users Not Found Found
User with 'Shut down the system' permissions / Group: Users Not Found Found
User's password never expires / Guest Not Found Found
User's password never expires / Horror Not Found Found
Web Client NTLM Authentication Not Found Found
Welcome.exe checksum / 27697 Not Found Found
Windows 2000 Telnet Client NTLM Authentication Not Found Found
Windows 2000: SNMP Parameters Not Found Found
Windows NT AutoShare server/workstation Not Found Found
Windows NT legal notice banner Not Found Found
Word 97 Template macro Not Found Found
\WINNT\Repair directory permissions Not Found Found
192.168.1.103 .REG Association modification by non-administrators / Group: Power Users Found Not Found
.REG Association modification by non-administrators / Group: Power Users Found Not Found
AUTOEXEC.BAT file permissions Found Not Found
ActiveX Parameter Validation Found Not Found
Additional Restrictions for anonymous connections Found Not Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp Found Not Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FrontPageTempDir Found Not Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FrontPageTempDir\mstheme Found Not Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FtpTree Found Not Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\FtpTree\DragDrop Found Not Found
Adminstrator "Local Settings\Temp" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temp\USSP30 Found Not Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files Found Not Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5 Found Not Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\0LSAEEP7 Found Not Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\GHRJK3MW Found Not Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\POEHIM5D Found Not Found
Adminstrator "Local Settings\Temporary Internet Files" Directory Not Encrypted / MOBILEONE\C$\documents and settings\administrator\Local Settings\Temporary Internet Files\Content\IE5\Z0AKL456 Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\NetWork Pro Consultancy Services files Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\BusinessDocs\latest Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\TITAN Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Pictures\computerrel Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\ private Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\ vti cnf Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\ vti pvt Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\My Webs\images Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\PGP Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\mcplogos Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install\Alis Translation Solutions files Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install\Alis Translation Solutions files\PlayStation2 Neo-Mod-Chip files Found Not Found
Adminstrator "My Documents" Directory Encrypted / MOBILEONE\C\dollar\documents and settings\administrator\my documents\ps2install\Alis Translation Solutions files\gen toolbar frames ui\en files Found Not Found
Allocation of CR-ROM drives Found Not Found
Allocation of floppy drives Found Not Found
Audit use of Backup and Restore privilege Found Not Found
Auditing Global System Objects Found Not Found
Browser Print Template and File Upload via Form Found Not Found
CONFIG.SYS file permissions Found Not Found
Clear pagefile at shutdown Found Not Found
Clip Art Buffer Overrun Found Not Found
DCOM Access permissions insecure / DCOM Object: VB T-SQL Debugger Object, Config Key: SOFTWARE\Classes\AppID\{124765AA-7866-11CF-BF3B-00A0D10003FA} Found Not Found
Digitally sign client communication(always) Found Not Found
Digitally sign server communication(always) Found Not Found
Digitally sign server communication(when possible) Found Not Found
Distributed COM (DCOM) enabled Found Not Found
Domain Account Lockout Found Not Found
Event Auditing: Audit of failed account logon events Found Not Found
Event Auditing: Audit of failed account management Found Not Found
Event Auditing: Audit of failed directory service access Found Not Found
Event Auditing: Audit of failed logon events Found Not Found
Event Auditing: Audit of failed object access Found Not Found
Event Auditing: Audit of failed policy change Found Not Found
Event Auditing: Audit of failed privilege use Found Not Found
Event Auditing: Audit of failed process tracking Found Not Found
Event Auditing: Audit of failed system events Found Not Found
Event Auditing: Audit of successful account logon events Found Not Found
Event Auditing: Audit of successful account management Found Not Found
Event Auditing: Audit of successful directory service access Found Not Found
Event Auditing: Audit of successful logon events Found Not Found
Event Auditing: Audit of successful object access Found Not Found
Event Auditing: Audit of successful policy change Found Not Found
Event Auditing: Audit of successful privilege use Found Not Found
Event Auditing: Audit of successful process tracking Found Not Found
Event Auditing: Audit of successful system events Found Not Found
Excel 2000 REGISTER.ID Function Found Not Found
Excel 2000 XLM Text Macro Found Not Found
Excel and PowerPoint 2000 HTML Script Vulnerability Found Not Found
Exported registry files associated with REGEDIT.EXE Found Not Found
File System Object Registered Found Not Found
File type with confirm after download disabled / AIFFFile Found Not Found
File type with confirm after download disabled / AMOVIE.ActiveMovie Control.1 Found Not Found
File type with confirm after download disabled / AMOVIE.ActiveMovie Control.2 Found Not Found
File type with confirm after download disabled / AMOVIE.ActiveMovieControl.1 Found Not Found
File type with confirm after download disabled / ASFFile Found Not Found
File type with confirm after download disabled / ASXFile Found Not Found
File type with confirm after download disabled / AUFile Found Not Found
File type with confirm after download disabled / AVIFile Found Not Found
File type with confirm after download disabled / CSSfile Found Not Found
File type with confirm after download disabled / ChannelFile Found Not Found
File type with confirm after download disabled / ClipGalleryDownloadPackage Found Not Found
File type with confirm after download disabled / ConferenceLink Found Not Found
File type with confirm after download disabled / Excel.Chart.5 Found Not Found
File type with confirm after download disabled / Excel.Chart.8 Found Not Found
File type with confirm after download disabled / Excel.Sheet.8 Found Not Found
File type with confirm after download disabled / GSALaunch.Document Found Not Found
File type with confirm after download disabled / GSAPak.Document Found Not Found
File type with confirm after download disabled / GSASkin.Document Found Not Found
File type with confirm after download disabled / HTTfile Found Not Found
File type with confirm after download disabled / IVFfile Found Not Found
File type with confirm after download disabled / MIDFile Found Not Found
File type with confirm after download disabled / MSGraph.Chart.8 Found Not Found
File type with confirm after download disabled / MediaPlayer.MediaPlayer.1 Found Not Found
File type with confirm after download disabled / Mmedia.AsyncMHandler.1 Found Not Found
File type with confirm after download disabled / Net2PhoneApp Found Not Found
File type with confirm after download disabled / Outlook.Template Found Not Found
File type with confirm after download disabled / PowerPoint.Show.8 Found Not Found
File type with confirm after download disabled / PowerPoint.Slide.8 Found Not Found
File type with confirm after download disabled / PowerPoint.SlideShow.8 Found Not Found
File type with confirm after download disabled / RealJukebox.RJS.1 Found Not Found
File type with confirm after download disabled / RealJukebox.RMP.1 Found Not Found
File type with confirm after download disabled / RealJukebox.RMX.1 Found Not Found
File type with confirm after download disabled / RealPlayer.Flash.6 Found Not Found
File type with confirm after download disabled / RealPlayer.PIX.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RA.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RAM.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RM.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RP.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RSML.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RT.6 Found Not Found
File type with confirm after download disabled / RealPlayer.RV.6 Found Not Found
File type with confirm after download disabled / RealPlayer.SDP.6 Found Not Found
File type with confirm after download disabled / RealPlayer.SMIL.6 Found Not Found
File type with confirm after download disabled / ResEdit6.docResEdit Found Not Found
File type with confirm after download disabled / SSM Found Not Found
File type with confirm after download disabled / SoundRec Found Not Found
File type with confirm after download disabled / VBDataView.docDataView Found Not Found
File type with confirm after download disabled / VBDataView.docSQLEdit Found Not Found
File type with confirm after download disabled / VcmMgr.Vcm Found Not Found
File type with confirm after download disabled / WAXFile Found Not Found
File type with confirm after download disabled / WMAFile Found Not Found
File type with confirm after download disabled / WMDFile Found Not Found
File type with confirm after download disabled / WMPFile Found Not Found
File type with confirm after download disabled / WMPlayer.OCX.7 Found Not Found
File type with confirm after download disabled / WMSFile Found Not Found
File type with confirm after download disabled / WMVFile Found Not Found
File type with confirm after download disabled / WMZFile Found Not Found
File type with confirm after download disabled / WVXFile Found Not Found
File type with confirm after download disabled / Winamp.Playlist Found Not Found
File type with confirm after download disabled / Winamp.SkinZip Found Not Found
File type with confirm after download disabled / WizMan6.docWizardManager Found Not Found
File type with confirm after download disabled / Word.Backup.8 Found Not Found
File type with confirm after download disabled / Word.Document.8 Found Not Found
File type with confirm after download disabled / Word.Picture.8 Found Not Found
File type with confirm after download disabled / Word.RTF.8 Found Not Found
File type with confirm after download disabled / Word.Template.8 Found Not Found
File type with confirm after download disabled / Word.Wizard.8 Found Not Found
File type with confirm after download disabled / XSetupPlugin Found Not Found
File type with confirm after download disabled / XSetupWizard Found Not Found
File type with confirm after download disabled / aip_file Found Not Found
File type with confirm after download disabled / cdafile Found Not Found
File type with confirm after download disabled / cpkfile Found Not Found
File type with confirm after download disabled / cskfile Found Not Found
File type with confirm after download disabled / htmlfile Found Not Found
File type with confirm after download disabled / icqhomepagefactory Found Not Found
File type with confirm after download disabled / icqplugin Found Not Found
File type with confirm after download disabled / icqsoundscheme Found Not Found
File type with confirm after download disabled / icquser Found Not Found
File type with confirm after download disabled / icsfile Found Not Found
File type with confirm after download disabled / iqyfile Found Not Found
File type with confirm after download disabled / larFile Found Not Found
File type with confirm after download disabled / lavfile Found Not Found
File type with confirm after download disabled / lavsFile Found Not Found
File type with confirm after download disabled / m3ufile Found Not Found
File type with confirm after download disabled / movfile Found Not Found
File type with confirm after download disabled / mp3file Found Not Found
File type with confirm after download disabled / mpegfile Found Not Found
File type with confirm after download disabled / msgfile Found Not Found
File type with confirm after download disabled / rmocx.RealPlayer G2 Control Found Not Found
File type with confirm after download disabled / rmocx.RealPlayer G2 Control.1 Found Not Found
File type with confirm after download disabled / rqyfile Found Not Found
File type with confirm after download disabled / vcsfile Found Not Found
File type with confirm after download disabled / xmlfile Found Not Found
File type with confirm after download disabled / xslfile Found Not Found
Frame Domain Verification Found Not Found
Guest access to application log Found Not Found
Guest access to security log Found Not Found
Guest access to system log Found Not Found
Guest account not renamed / Guest Found Not Found
Hazardous Registry Permissions: App Paths / Group: Power Users Found Not Found
Hazardous Registry Permissions: App Paths / Group: Power Users Found Not Found
Hazardous Registry Permissions: Compatibility / Group: Power Users Found Not Found
Hazardous Registry Permissions: Compatibility / Group: Power Users Found Not Found
Hazardous Registry Permissions: Controls Folder / Group: Power Users Found Not Found
Hazardous Registry Permissions: Controls Folder / Group: Power Users Found Not Found
Hazardous Registry Permissions: Drivers / Group: Power Users Found Not Found
Hazardous Registry Permissions: Drivers / Group: Power Users Found Not Found
Hazardous Registry Permissions: Embedding / Group: Power Users Found Not Found
Hazardous Registry Permissions: Embedding / Group: Power Users Found Not Found
Hazardous Registry Permissions: Explorer / Group: Power Users Found Not Found
Hazardous Registry Permissions: Explorer / Group: Power Users Found Not Found
Hazardous Registry Permissions: ExtShellViews / Group: Power Users Found Not Found
Hazardous Registry Permissions: ExtShellViews / Group: Power Users Found Not Found
Hazardous Registry Permissions: Extensions / Group: Power Users Found Not Found
Hazardous Registry Permissions: Extensions / Group: Power Users Found Not Found
Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users Found Not Found
Hazardous Registry Permissions: HKEY_CLASSES_ROOT / Group: Power Users Found Not Found
Hazardous Registry Permissions: Internet Settings / Group: Power Users Found Not Found
Hazardous Registry Permissions: Internet Settings / Group: Power Users Found Not Found
Hazardous Registry Permissions: MCI / Group: Power Users Found Not Found
Hazardous Registry Permissions: MCI / Group: Power Users Found Not Found
Hazardous Registry Permissions: MCI Extensions / Group: Power Users Found Not Found
Hazardous Registry Permissions: MCI Extensions / Group: Power Users Found Not Found
Hazardous Registry Permissions: ModuleUsage / Group: Power Users Found Not Found
Hazardous Registry Permissions: ModuleUsage / Group: Power Users Found Not Found
Hazardous Registry Permissions: ODBC / Group: Power Users Found Not Found
Hazardous Registry Permissions: ODBC / Group: Power Users Found Not Found
Hazardous Registry Permissions: Ports / Group: Power Users Found Not Found
Hazardous Registry Permissions: Ports / Group: Power Users Found Not Found
Hazardous Registry Permissions: Setup / Group: Power Users Found Not Found
Hazardous Registry Permissions: Setup / Group: Power Users Found Not Found
Hazardous Registry Permissions: SharedDlls / Group: Power Users Found Not Found
Hazardous Registry Permissions: SharedDlls / Group: Power Users Found Not Found
Hazardous Registry Permissions: Shell Extensions / Group: Power Users Found Not Found
Hazardous Registry Permissions: Shell Extensions / Group: Power Users Found Not Found
Hazardous Registry Permissions: Uninstall / Group: Power Users Found Not Found
Hazardous Registry Permissions: Uninstall / Group: Power Users Found Not Found
Hazardous Registry Permissions: WOW / Group: Power Users Found Not Found
Hazardous Registry Permissions: WOW / Group: Power Users Found Not Found
Indexing Service File Enumeration Found Not Found
Indexing Services Cross Site Scripting Found Not Found
Internet Explorer JavaScript redirect vulnerability Found Not Found
Internet Explorer Server Side Redirect Found Not Found
Internet Explorer: Active Setup Download Found Not Found
Internet Explorer: Cached Web Credentials Found Not Found
Internet Explorer: Image Source Redirect Found Not Found
Invalid RDP Data Found Not Found
Java VM Applet Found Not Found
L0phtCrack packet driver Found Not Found
Lan Manager authentication Found Not Found
Last username displayed in login dialog Found Not Found
Last username displayed in logon screen(Windows 2000) Found Not Found
Logon credential caching Found Not Found
MSGINA.DLL checksum / 12341 Found Not Found
MSV1_0.DLL checksum / 13827 Found Not Found
Malformed RPC Packet Found Not Found
Malformed Rich Text Found Not Found
Messenger service Found Not Found
Microsoft Office 2000 HTML Object Tag Found Not Found
Microsoft Office 2000 HTML Object Tag Found Not Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Access Found Not Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Excel Found Not Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Outlook Found Not Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / PowerPoint Found Not Found
Microsoft Office 2000 global security through HKEY_LOCAL_MACHINE / Word Found Not Found
Microsoft Office VBA shell/Text-ISAM patch Found Not Found
Microsoft VM ActiveX Component Found Not Found
Microsoft Word Mail Merge Found Not Found
Misordered Windows Media Services Handshake Found Not Found
Modem installed Found Not Found
Multiple LPC and LPC Ports Vulnerabilities Found Not Found
NT/2000 ResetBrowser and HostAnnouncement Flooding Found Not Found
NTFS 8.3 naming convention Found Not Found
NetBIOS Name Server Protocol Spoofing Found Not Found
NetMeeting Desktop Sharing Found Not Found
Network DDE Agent Request Found Not Found
New Variant of Microsoft VM File Read Found Not Found
OS2 subsystem Found Not Found
Office 2000 UA Control Found Not Found
Password Change Prompt / The current Password Change Propmt time is set to: 14 days Found Not Found
Policy: Account lockout Found Not Found
Policy: Logon to change password requirements Found Not Found
Policy: Minimum password age less than policy Found Not Found
Policy: Minimum password history length Found Not Found
Policy: Minimum password size less than 6 characters Found Not Found
Posix subsystem Found Not Found
PowerPoint 2000 File Parsing Found Not Found
Prevent system maintenance of computer account password Found Not Found
Printer driver installation restrictions Found Not Found
Protected Store Key Length Found Not Found
Regedt32 permissions Found Not Found
Regedt32 permissions Found Not Found
Regedt32 permissions Found Not Found
Relative Shell Path Found Not Found
Remote Access Server configured with Modem Found Not Found
Remote Access Server configured with modem set to dial out Found Not Found
Remote Access Server configured with modem set to receive calls Found Not Found
Remote Access Server logging Found Not Found
Save password enabled for Dial-up Networking and Remote Access Server Found Not Found
Schedule service Found Not Found
Schedule service Found Not Found
Scriptlet Rendering Found Not Found
Secure Channel: Digitally encrypt or sign secure channel data(always) Found Not Found
Secure Channel: Require strong(Windows 2000 or later) session key Found Not Found
Security Analyzer applications / WebTrends Security Analyzer Found Not Found
Server-side Page Reference Redirect Found Not Found
Service Control Manager Named Pipe Impersonation Found Not Found
Shut down system immediately if unable to log security audits Found Not Found
Shutdown system without being logged on Found Not Found
Shutdown system without being logged on Found Not Found
Smart card removal behavior Found Not Found
Still Image Service Privilege Escalation Found Not Found
System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\cmd.exe Found Not Found
System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\command.com Found Not Found
System Access to sensitive applications / \\MOBILEONE\ADMIN$\system32\net.exe Found Not Found
TCP/IP Security not enabled Found Not Found
Telnet Server Flooding Found Not Found
Unauthorized Application in UserInit / C:\WINNT\system32\userinit.exe Found Not Found
Unauthorized ODBC Driver found / Driver da Microsoft para arquivos texto (*.txt; *.csv) Found Not Found
Unauthorized ODBC Driver found / Driver do Microsoft Access (*.mdb) Found Not Found
Unauthorized ODBC Driver found / Driver do Microsoft Excel(*.xls) Found Not Found
Unauthorized ODBC Driver found / Driver do Microsoft Paradox (*.db ) Found Not Found
Unauthorized ODBC Driver found / Driver do Microsoft dBase (*.dbf) Found Not Found
Unauthorized ODBC Driver found / Driver para o Microsoft Visual FoxPro Found Not Found
Unauthorized ODBC Driver found / Microsoft Access Driver (*.mdb) Found Not Found
Unauthorized ODBC Driver found / Microsoft Access-Treiber (*.mdb) Found Not Found
Unauthorized ODBC Driver found / Microsoft Excel Driver (*.xls) Found Not Found
Unauthorized ODBC Driver found / Microsoft Excel-Treiber (*.xls) Found Not Found
Unauthorized ODBC Driver found / Microsoft FoxPro Driver (*.dbf) Found Not Found
Unauthorized ODBC Driver found / Microsoft FoxPro VFP Driver (*.dbf) Found Not Found
Unauthorized ODBC Driver found / Microsoft ODBC for Oracle Found Not Found
Unauthorized ODBC Driver found / Microsoft Paradox Driver (*.db ) Found Not Found
Unauthorized ODBC Driver found / Microsoft Paradox-Treiber (*.db ) Found Not Found
Unauthorized ODBC Driver found / Microsoft Text Driver (*.txt; *.csv) Found Not Found
Unauthorized ODBC Driver found / Microsoft Text-Treiber (*.txt; *.csv) Found Not Found
Unauthorized ODBC Driver found / Microsoft Visual FoxPro Driver Found Not Found
Unauthorized ODBC Driver found / Microsoft Visual FoxPro-Treiber Found Not Found
Unauthorized ODBC Driver found / Microsoft dBase Driver (*.dbf) Found Not Found
Unauthorized ODBC Driver found / Microsoft dBase VFP Driver (*.dbf) Found Not Found
Unauthorized ODBC Driver found / Microsoft dBase-Treiber (*.dbf) Found Not Found
Unauthorized entry in NullSessionPipes key / SPOOLSS Found Not Found
Unauthorized entry in NullSessionPipes key / TrkSvr Found Not Found
Unauthorized entry in NullSessionPipes key / TrkWks Found Not Found
Unauthorized packet drivers / L0phtPkt Found Not Found
Unauthorized packet drivers / NDIS3Pkt Found Not Found
Unauthorized packet drivers / Sniffer Found Not Found
Unauthorized program in Run key / "C:\Program Files\Winamp\Winampa.exe" Found Not Found
Unauthorized program in Run key / C:\PROGRA~1\Navnt\defalert.exe Found Not Found
Unauthorized program in Run key / C:\PROGRA~1\Navnt\npscheck.exe Found Not Found
Unauthorized program in Run key / C:\PROGRA~1\ULEADS~1.0\Ussshreg.exe /r Found Not Found
Unauthorized program in Run key / C:\Program Files\Navnt\POPROXY.EXE Found Not Found
Unauthorized program in Run key / C:\Program Files\The Cleaner\tca.exe Found Not Found
Unauthorized program in Run key / mobsync.exe /logon Found Not Found
Unidentified TCP ports / Unknown Found Not Found
Unidentified TCP ports / Unknown (usually blackjack) Found Not Found
Unidentified TCP ports / Unknown (usually loc-srv) Found Not Found
Unidentified TCP ports / Unknown (usually microsoft-ds) Found Not Found
Unidentified TCP ports / Unknown (usually netbios-ssn) Found Not Found
Unsigned driver installation behavior Found Not Found
User access to Performance Monitor data Found Not Found
User cannot change password / Guest Found Not Found
User has not logged on in specified number of days / Guest Found Not Found
User never logged in / Guest Found Not Found
User with 'Access this computer from the network' permissions / Group: Backup Operators Found Not Found
User with 'Access this computer from the network' permissions / Group: Power Users Found Not Found
User with 'Access this computer from the network' permissions / Group: Users Found Not Found
User with 'Access this computer from the network' permissions / Group: \Everyone Found Not Found
User with 'Back up files and directories' permissions / Group: Backup Operators Found Not Found
User with 'Bypass traverse checking' permissions / Group: Backup Operators Found Not Found
User with 'Bypass traverse checking' permissions / Group: Power Users Found Not Found
User with 'Bypass traverse checking' permissions / Group: Users Found Not Found
User with 'Bypass traverse checking' permissions / Group: \Everyone Found Not Found
User with 'Change system time' permissions / Group: Power Users Found Not Found
User with 'Log on as a batch job' permissions / Horror Found Not Found
User with 'Log on locally' permissions / Group: Backup Operators Found Not Found
User with 'Log on locally' permissions / Group: Power Users Found Not Found
User with 'Log on locally' permissions / Group: Users Found Not Found
User with 'Log on locally' permissions / Guest Found Not Found
User with 'Logon as a service' permissions / Horror Found Not Found
User with 'Profile single process' permissions / Group: Power Users Found Not Found
User with 'Remove computer from docking station' permissions / Group: Power Users Found Not Found
User with 'Remove computer from docking station' permissions / Group: Users Found Not Found
User with 'Replace a process level token' permissions / Group: Backup Operators Found Not Found
User with 'Replace a process level token' permissions / Group: Power Users Found Not Found
User with 'Replace a process level token' permissions / Group: \Everyone Found Not Found
User with 'Restore files and directories' permissions / Group: Backup Operators Found Not Found
User with 'Shut down the system' permissions / Group: Backup Operators Found Not Found
User with 'Shut down the system' permissions / Group: Power Users Found Not Found
User with 'Shut down the system' permissions / Group: Users Found Not Found
User's password never expires / Guest Found Not Found
User's password never expires / Horror Found Not Found
Web Client NTLM Authentication Found Not Found
Welcome.exe checksum / 27697 Found Not Found
Windows 2000 Telnet Client NTLM Authentication Found Not Found
Windows 2000: SNMP Parameters Found Not Found
Windows Media Player 6.4/7.0: ASX Buffer Overrun and WMS Script Execution Found Not Found
Windows Media Player Skins File Download Found Not Found
Windows NT AutoShare server/workstation Found Not Found
Windows NT legal notice banner Found Not Found
Word 97 Template macro Found Not Found
\WINNT\Repair directory permissions Found Not Found
192.168.1.110 CHARGEN service enabled / chargen Not Found Found
Directly accessible command interpreters / www-http Not Found Found
Echo service enabled / echo Not Found Found
FTP service enabled / ftp Not Found Found
HTTP (Web) service enabled / www-http Not Found Found
NNTP service enabled / nntp Not Found Found
SMTP mail relay / smtp Not Found Found
SMTP service enabled / smtp Not Found Found



This table details differences found between two Security Analyzer scans.

Service Differences
Host
Services
Current Scan
Wed Feb 28 22:03:03 2001
Previous Scan
Tue Feb 13 23:59:02 2001
192.168.1.102 ACPI Not Detected Detected
ACPIEC Not Detected Detected
AFD Not Detected Detected
AdminsServerMonitor Not Detected Detected
AmosNT Not Detected Detected
Aspi32 Not Detected Detected
Atmarpc Not Detected Detected
Beep Not Detected Detected
Cdr4vsd Not Detected Detected
Cdrom Not Detected Detected
Compbatt Not Detected Detected
Dhcp Not Detected Detected
Disk Not Detected Detected
Diskperf Not Detected Detected
Dnscache Not Detected Detected
EventSystem Not Detected Detected
Eventlog Not Detected Detected
Fallback Not Detected Detected
Fsks Not Detected Detected
Ftdisk Not Detected Detected
K56 Not Detected Detected
KSecDD Not Detected Detected
Kbdclass Not Detected Detected
LmHosts Not Detected Detected
MRxSmb Not Detected Detected
Mouclass Not Detected Detected
MountMgr Not Detected Detected
Msfs Not Detected Detected
Mup Not Detected Detected
NAV Alert Not Detected Detected
NAV Auto-Protect Not Detected Detected
NAVAP Not Detected Detected
NAVENG Not Detected Detected
NAVEX15 Not Detected Detected
NDIS Not Detected Detected
NetBIOS Not Detected Detected
NetBT Not Detected Detected
Netman Not Detected Detected
Norton Program Scheduler Not Detected Detected
Npfs Not Detected Detected
NtmsSvc Not Detected Detected
Null Not Detected Detected
PCI Not Detected Detected
PCIIde Not Detected Detected
PGPCFG Not Detected Detected
PGPService Not Detected Detected
PGPdisk Not Detected Detected
PGPsdkDriver Not Detected Detected
PGPsdkServ Not Detected Detected
Packet Not Detected Detected
ParVdm Not Detected Detected
Parport Not Detected Detected
PartMgr Not Detected Detected
Pcmcia Not Detected Detected
PlugPlay Not Detected Detected
ProtectedStorage Not Detected Detected
RET35 Not Detected Detected
RasAcd Not Detected Detected
Rdbss Not Detected Detected
RemoteRegistry Not Detected Detected
Rksample Not Detected Detected
RpcSs Not Detected Detected
SENS Not Detected Detected
SamSs Not Detected Detected
Schedule Not Detected Detected
Sentinel Not Detected Detected
Serial Not Detected Detected
SoftFax Not Detected Detected
Spooler Not Detected Detected
SymEvent Not Detected Detected
TDIMSYS Not Detected Detected
TapiSrv Not Detected Detected
Tcpip Not Detected Detected
Tones Not Detected Detected
TrkWks Not Detected Detected
Unknown (usually blackjack) / TCP:1025 Not Detected Detected
Unknown (usually loc-srv) / TCP:135 Not Detected Detected
Unknown (usually microsoft-ds) / TCP:445 Not Detected Detected
Unknown (usually netbios-ssn) / TCP:139 Not Detected Detected
Unknown / TCP:1026 Not Detected Detected
V124 Not Detected Detected
VgaSave Not Detected Detected
WMDM PMSP Service Not Detected Detected
WinMgmt Not Detected Detected
Wmi Not Detected Detected
alim1541 Not Detected Detected
atapi Not Detected Detected
basic2 Not Detected Detected
cpuidlep Not Detected Detected
cvintdrv Not Detected Detected
dmio Not Detected Detected
dmload Not Detected Detected
dmserver Not Detected Detected
el575nd5 Not Detected Detected
i8042prt Not Detected Detected
isapnp Not Detected Detected
lanmanserver Not Detected Detected
lanmanworkstation Not Detected Detected
mnmdd Not Detected Detected
seclogon Not Detected Detected
192.168.1.103 ACPI Detected Not Detected
ACPIEC Detected Not Detected
AFD Detected Not Detected
AdminsServerMonitor Detected Not Detected
AmosNT Detected Not Detected
Aspi32 Detected Not Detected
Atmarpc Detected Not Detected
Beep Detected Not Detected
Cdr4vsd Detected Not Detected
Cdrom Detected Not Detected
Compbatt Detected Not Detected
Dhcp Detected Not Detected
Disk Detected Not Detected
Diskperf Detected Not Detected
Dnscache Detected Not Detected
EventSystem Detected Not Detected
Eventlog Detected Not Detected
Fallback Detected Not Detected
Fsks Detected Not Detected
Ftdisk Detected Not Detected
K56 Detected Not Detected
KSecDD Detected Not Detected
Kbdclass Detected Not Detected
LmHosts Detected Not Detected
MRxSmb Detected Not Detected
Messenger Detected Not Detected
Mouclass Detected Not Detected
MountMgr Detected Not Detected
Msfs Detected Not Detected
Mup Detected Not Detected
NAV Alert Detected Not Detected
NAV Auto-Protect Detected Not Detected
NAVAP Detected Not Detected
NAVENG Detected Not Detected
NAVEX15 Detected Not Detected
NDIS Detected Not Detected
NetBIOS Detected Not Detected
NetBT Detected Not Detected
Netman Detected Not Detected
Norton Program Scheduler Detected Not Detected
Npfs Detected Not Detected
NtmsSvc Detected Not Detected
Null Detected Not Detected
PCI Detected Not Detected
PCIIde Detected Not Detected
PGPCFG Detected Not Detected
PGPService Detected Not Detected
PGPdisk Detected Not Detected
PGPsdkDriver Detected Not Detected
PGPsdkServ Detected Not Detected
Packet Detected Not Detected
ParVdm Detected Not Detected
Parport Detected Not Detected
PartMgr Detected Not Detected
Pcmcia Detected Not Detected
PlugPlay Detected Not Detected
ProtectedStorage Detected Not Detected
RasAcd Detected Not Detected
Rdbss Detected Not Detected
RemoteRegistry Detected Not Detected
Rksample Detected Not Detected
RpcSs Detected Not Detected
SENS Detected Not Detected
SamSs Detected Not Detected
Schedule Detected Not Detected
Sentinel Detected Not Detected
Serial Detected Not Detected
SoftFax Detected Not Detected
Spooler Detected Not Detected
SymEvent Detected Not Detected
TDIMSYS Detected Not Detected
TapiSrv Detected Not Detected
Tcpip Detected Not Detected
Tones Detected Not Detected
TrkWks Detected Not Detected
Unknown (usually blackjack) / TCP:1025 Detected Not Detected
Unknown (usually loc-srv) / TCP:135 Detected Not Detected
Unknown (usually microsoft-ds) / TCP:445 Detected Not Detected
Unknown (usually netbios-ssn) / TCP:139 Detected Not Detected
Unknown / TCP:1027 Detected Not Detected
V124 Detected Not Detected
VgaSave Detected Not Detected
WMDM PMSP Service Detected Not Detected
WinMgmt Detected Not Detected
Wmi Detected Not Detected
alim1541 Detected Not Detected
atapi Detected Not Detected
basic2 Detected Not Detected
cpuidlep Detected Not Detected
cvintdrv Detected Not Detected
dmio Detected Not Detected
dmload Detected Not Detected
dmserver Detected Not Detected
el575nd5 Detected Not Detected
i8042prt Detected Not Detected
isapnp Detected Not Detected
lanmanserver Detected Not Detected
lanmanworkstation Detected Not Detected
mnmdd Detected Not Detected
seclogon Detected Not Detected
192.168.1.110 Unknown (usually daytime) / TCP:13 Not Detected Detected
Unknown (usually daytime) / UDP:13 Not Detected Detected
Unknown (usually discard) / TCP:9 Not Detected Detected
Unknown (usually domain) / TCP:53 Not Detected Detected
Unknown (usually domain) / UDP:53 Not Detected Detected
Unknown (usually echo) / UDP:7 Not Detected Detected
Unknown (usually https) / TCP:443 Not Detected Detected
Unknown (usually kerberos) / TCP:88 Not Detected Detected
Unknown (usually ldap) / TCP:389 Not Detected Detected
Unknown (usually loc-srv) / TCP:135 Not Detected Detected
Unknown (usually loc-srv) / UDP:135 Not Detected Detected
Unknown (usually microsoft-ds) / TCP:445 Not Detected Detected
Unknown (usually nameserver) / TCP:42 Not Detected Detected
Unknown (usually netbios-ssn) / TCP:139 Not Detected Detected
Unknown (usually qotd) / TCP:17 Not Detected Detected
Unknown (usually qotd) / UDP:17 Not Detected Detected
Unknown / TCP:1026 Not Detected Detected
Unknown / TCP:1029 Not Detected Detected
Unknown / TCP:464 Not Detected Detected
Unknown / TCP:563 Not Detected Detected
Unknown / TCP:593 Not Detected Detected
Unknown / TCP:636 Not Detected Detected
Unknown / TCP:691 Not Detected Detected
Unknown / UDP:464 Not Detected Detected
chargen / TCP:19 Not Detected Detected
echo / TCP:7 Not Detected Detected
ftp / TCP:21 Not Detected Detected
nntp / TCP:119 Not Detected Detected
smtp / TCP:25 Not Detected Detected
www-http / TCP:80 Not Detected Detected


[NetProUK.Com Security Services]

This report was generated by NetProUK.