Anda di halaman 1dari 14

Security assessment: Incomplete Scan (Could not complete one or more requested checks.

) Computer name: IP address: Security report name: Scan date: Catalog synchronization date: Security update catalog: Security Updates Score Issue Result HOME\DELL-XPS-M1210192.168.10.106 HOME - DELL-XPS-M1210- (11-28-2010 4-54 PM) 11/28/2010 4:54 PM

Microsoft Update

Developer 4 security updates are missing. Tools, Runtimes, and Security Updates Redistributables Score ID Description Security Updates Missing MS09-035 Security Update for Microsoft Visual C++ 2008 Redistributable Package (KB973924) Missing MS09-035 Security Update for Microsoft Visual Studio 2008 (KB971091) Missing MS09-035 Security Update for Microsoft Visual Studio 2008 ATL for Smart Devices (KB973674) Missing MS09-062 Security Update for Microsoft Visual Studio 2008 (KB972221)

Maximum Severity Moderate

Moderate Moderate

Low

Office Security 20 security updates are missing. 1 service packs or update rollups are Updates missing. Security Updates Score ID Description Maximum Severity Important

Missing MS07-036 Security Update for Microsoft Office Excel 2007 (KB936509) Missing MS07-037 Security Update for Microsoft Important Office Publisher 2007 (KB936646)

Missing MS07-036 Security Update for the 2007 Microsoft Office System (KB936514) Missing MS07-042 Security Update for the 2007 Microsoft Office System (KB936960) Missing MS08-015 Security Update for Microsoft Office Outlook 2007 (KB946983) Missing MS08-027 Security Update for Microsoft Office Publisher 2007 (KB950114) Missing MS08-051 Security Update for Microsoft Office PowerPoint 2007 (KB951338) Missing MS08-052 Security Update for the 2007 Microsoft Office System (KB954326) Missing MS08-055 Security Update for Microsoft Office OneNote 2007 (KB950130) Missing MS08-072 Security Update for Microsoft Office Word 2007 (KB956358) Missing MS09-005 Security Update for Microsoft Office Visio 2007 (KB957831) Missing MS08-072 Security Update for the 2007 Microsoft Office System (KB956828) Missing MS09-009 Security Update for Microsoft Office Excel 2007 (KB959997) Missing MS09-009 Security Update for 2007 Microsoft Office System (KB960003) Missing MS09-060 Security Update for the 2007 Microsoft Office System (KB974234) Missing MS09-062 Security Update for the 2007 Microsoft Office System (KB972581) Missing MS08-069 Security Update for Microsoft Office 2007 (KB951550) Missing MS08-070 Security Update for Microsoft Office Project 2007 (KB949046) Missing MS10-063 Security Update for the 2007

Important

Important

Critical Important Important

Critical

Critical Important Important Important

Important Important

Important

Important

Important Critical Important

Microsoft Office System (KB2288621) Missing MS10-087 Security Update for Microsoft Critical Office 2007 System (KB2289158) Update Rollups and Service Packs Score ID Description Missing 953195 The 2007 Microsoft Office Suite Service Pack 2 (SP2) Current Update Compliance Maximum Score ID Description Severity Installed 949426 Microsoft Office Accounting 2008 UK Service Pack 1 (KB949426) Installed 949426 Microsoft Office Accounting 2008 US Service Pack 1 (KB949426) SQL Server Security Updates 1 security updates are missing. 1 service packs or update rollups are missing. Security Updates Score ID Description Maximum Severity Critical

Missing MS09-062 Security Update for SQL Server 2005 Service Pack 2 (KB970895) Update Rollups and Service Packs Score ID Description Missing 955706 Microsoft SQL Server 2005 Express Edition Service Pack 3 (KB955706) Current Update Compliance Maximum Score ID Description Severity Installed MS06-061 MSXML 6.0 RTM Security Critical Update (925673) Silverlight Security Updates 1 security updates are missing. 1 service packs or update rollups are missing. Security Updates Score ID Description Maximum Severity Critical

Missing MS10-060 Security Update for Microsoft

Silverlight (KB978464) Update Rollups and Service Packs Score ID Description Missing 2416427 Update for Microsoft Silverlight (KB2416427) Windows Security Updates 66 security updates are missing. 4 service packs or update rollups are missing. Security Updates Score ID Maximum Severity Security Update for Windows Vista Critical (KB925902) Security Update for Windows Vista Critical (KB930178) Security Update for Windows Vista Moderate (KB931213) Cumulative Security Update for Critical Windows Mail for Windows Vista (KB929123) Security Update for Windows Vista Important (KB938123) Security Update for Windows Vista Critical (KB938127) Security Update for Windows Vista Moderate (KB935807) Security Update for Windows Vista Critical (KB941569) Security Update for Windows Vista Important (KB942624) Security Update for Windows Vista Critical (KB946026) Security Update for Windows Vista Important (KB946456) Security Update for Windows Vista Critical (KB943055) Security Update for Windows Vista Important (KB945553) Security Update for Windows Vista Critical (KB951376) Security Update for Windows Vista Moderate Description

Missing MS07-017 Missing MS07-021 Missing MS07-032 Missing MS07-034

Missing MS07-048 Missing MS07-050 Missing MS07-038 Missing MS07-068 Missing MS07-063 Missing MS08-007 Missing MS08-004 Missing MS08-008 Missing MS08-020 Missing MS08-030 Missing MS08-036

Missing MS08-048 Missing MS08-047 Missing MS08-054 Missing MS08-067 Missing MS08-062 Missing MS08-069 Missing MS08-069 Missing MS08-076 Missing MS08-071 Missing MS08-075 Missing MS08-075 Missing MS09-007 Missing MS09-012 Missing MS09-012 Missing MS09-013 Missing MS09-015 Missing MS09-022 Missing MS09-026 Missing MS09-037 Missing MS09-044

(KB950762) Security Update for Windows Mail for Windows Vista (KB951066) Security Update for Windows Vista (KB953733) Security Update for Windows Vista (KB954154) Security Update for Windows Vista (KB958644) Security Update for Windows Vista (KB953155) Security Update for Windows Vista (KB955069) Security Update for Windows Vista (KB954459) Security Update for Windows Vista (KB952069) Security Update for Windows Vista (KB956802) Security Update for Windows Vista (KB958624) Security Update for Windows Vista (KB958623) Security Update for Windows Vista (KB960225) Security Update for Windows Vista (KB956572) Security Update for Windows Vista (KB952004) Security Update for Windows Vista (KB960803) Security Update for Windows Vista (KB959426) Security Update for Windows Vista (KB961501) Security Update for Windows Vista (KB970238) Security Update for Windows Vista (KB973540) Security Update for Windows Vista

Important Important Critical Important Low Critical Important Important Critical Critical Important Important Important Important Critical Moderate Important Important Critical Critical

Missing MS09-037 Missing MS09-041 Missing MS09-042 Missing MS09-037 Missing MS09-048 Missing MS09-049 Missing MS09-045 Missing MS09-047

Missing MS09-061

Missing MS09-059 Missing MS09-051

Missing MS09-056 Missing MS09-062 Missing MS09-050 Missing MS08-069

Missing MS09-065 Missing MS09-063 Missing MS09-071

(KB956744) Security Update for Windows Vista (KB973507) Security Update for Windows Vista (KB971657) Security Update for Windows Vista (KB960859) Security Update for Windows Vista (KB973768) Security Update for Windows Vista (KB967723) Security Update for Windows Vista (KB970710) Security Update for Jscript 5.7 for Windows Vista (KB971961) Security Update for Windows Media Format Runtime 11 for Windows Vista (KB968816) Microsoft .NET Framework 2.0 Service Pack 1 Security Update for Windows Vista (KB974292) Security Update for Windows Vista (KB975467) Security Update for Windows Media Format Runtime 11 for Windows Vista (KB954155) Security Update for Windows Vista (KB974571) Security Update for Windows Vista (KB958869) Security Update for Windows Vista (KB975517) Security Update for Microsoft XML Core Services 4.0 Service Pack 2 (KB954430) Security Update for Windows Vista (KB969947) Security Update for Windows Vista (KB973565) Security Update for Windows Vista (KB974318)

Critical Moderate Moderate Critical Critical Critical Critical Critical

Critical

Important Critical

Important Critical Critical Important

Important Critical Important

Missing MS10-001 Security Update for Windows Vista Low (KB972270) Missing MS10-002 Cumulative Security Update for Critical Internet Explorer 7 for Windows Vista (KB978207) Missing MS10-013 Security Update for Windows Vista Critical (KB975560) Missing MS10-008 Cumulative Security Update for Important ActiveX Killbits for Windows Vista (KB978262) Missing MS10-012 Security Update for Windows Vista Important (KB971468) Missing MS10-016 Security Update for Movie Maker Important 6.0 for Windows Vista (KB975561) Missing MS10-020 Security Update for Windows Vista Critical (KB980232) Missing MS10-026 Security Update for Windows Vista Important (KB977816) Missing MS10-019 Security Update for Windows Vista Critical (KB979309) Missing MS10-029 Security Update for Windows Vista Moderate (KB978338) Missing MS10-021 Security Update for Windows Vista Important (KB979683) Missing MS10-022 Security Update for Windows Vista Low (KB981349) Missing MS10-019 Security Update for Windows Vista Critical (KB978601) Update Rollups and Service Packs Score ID Description Missing 957388 Update for Windows Vista (KB957388) Missing 951847 Microsoft .NET Framework 3.5 Service Pack 1 and .NET Framework 3.5 Family Update (KB951847) x86 Missing 979306 Update for Windows Vista (KB979306) Missing 890830 Windows Malicious Software Removal Tool November 2010 (KB890830) SDK Components Security No security updates are missing. Current Update Compliance

Updates

Score

ID

Description

Installed MS07-028 Security Update for CAPICOM (KB931906)

Maximum Severity Critical

Windows Scan Results Administrative Vulnerabilities Score Issue Guest Account Result The Guest account is not disabled on this computer. The Automatic Updates feature has not been configured on this computer. Please upgrade to the latest Service Pack to obtain the latest version of this feature and then use the Control Panel to configure Automatic Updates.

Automatic Updates

Some user accounts (4 of 4) have blank or simple passwords, or could not be analyzed. Weak Password Locked Out Disabled Local Account User Administrator Error 1721 Disabled Password Test Guest Error 1721 Sui_X_Generis Error 1721 __vmware_user__ Error 1721 Some user accounts (3 of 4) have non-expiring passwords. User Administrator Guest Sui_X_Generis A previous software update installation was not completed. You must restart your computer to finish the installation. If the incomplete installation was a security update, then the computer may be at risk until the computer is restarted. Windows Firewall is disabled and has exceptions configured. Connection Name Firewall Exceptions All Connections Off Ports, Programs, Services

Password Expiration

Incomplete Updates

Windows Firewall

Bluetooth Network Connection Local Area Connection Local Area Connection 10 Local Area Connection 7 Local Area Connection 8 Local Area Connection 9 Wireless Network Connection File System

Off* Off* Off* Off* Off* Off* Off*

Ports*, Programs*, Services* Ports*, Programs*, Services* Ports*, Programs*, Services* Ports*, Programs*, Services* Ports*, Programs*, Services* Ports*, Programs*, Services* Ports*, Programs*, Services*

All hard drives (1) are using the NTFS file system. Drive Letter File System C: NTFS Autologon is not configured on this computer.

Autologon Restrict Anonymous

Computer is properly restricting anonymous access.

No more than 2 Administrators were found on this computer. Administrators User Administrator Sui_X_Generis

Additional System Information Sco Issue Result re Wind ows Versi Computer is running Microsoft Windows Vista. on

Auditi Neither Logon Success nor Logon Failure auditing are enabled. Enable auditing and ng turn on auditing for specific events such as logon and logoff. Be sure to monitor your event log to watch for unauthorized access. 7 share(s) are present on your computer. Share Directory Share ACL ADMI C:\Windows Admin Share N$

C$

C:\

Admin Share

Share s

Public

C:\Users\Public

Administrators - F, Everyone - F

Users

C:\Users

Administrators - F, NT AUTHORITY\Aut henticated Users F

Directory ACL NT SERVICE\TrustedIn staller - F, NT AUTHORITY\SYS TEM - RWXD, BUILTIN\Administr ators - RWXD, BUILTIN\Users RX BUILTIN\Administr ators - F, NT AUTHORITY\SYS TEM - F, BUILTIN\Users RX, NT AUTHORITY\Auth enticated Users - D BUILTIN\Administr ators - F, CREATOR OWNER - F, NT AUTHORITY\SYS TEM - F, NT AUTHORITY\INTE RACTIVE RWXDR, NT AUTHORITY\SER VICE - RWXDR, NT AUTHORITY\BAT CH - RWXDR, Everyone - F NT AUTHORITY\SYS TEM - F, BUILTIN\Administr ators - F, BUILTIN\Users RX, Everyone - RX

docum ents

c:\users\sui_x_generis \documents

Everyone - F

music

c:\users\sui_x_generis \music

Everyone - F

picture s

c:\users\sui_x_generis \pictures

Everyone - F

Everyone - F, NT AUTHORITY\SYS TEM - F, BUILTIN\Administr ators - F, DELLXPS-M1210\Sui_X_Generis - F Everyone - F, NT SERVICE\WMPNet workSvc - R, NT AUTHORITY\SYS TEM - F, BUILTIN\Administr ators - F, DELLXPS-M1210\Sui_X_Generis - F Everyone - F, NT SERVICE\WMPNet workSvc - R, NT AUTHORITY\SYS TEM - F, BUILTIN\Administr ators - F, DELLXPS-M1210\Sui_X_Generis - F

Servic es No potentially unnecessary services were found.

Internet Information Services (IIS) Scan Results Score Issue Result IIS Status IIS is not running on this computer.

SQL Server Scan Results: Instance SQLEXPRESS Administrative Vulnerabilities Scor Issue e Result

SQL Server, SQL Server Agent, MSDE and/or MSDE Agent service accounts should not be members of the local Administrators group or run as LocalSystem. Instance Service Account Issue SQLEXPR MSSQL$SQLEXP NT This is ESS RESS AUTHORITY\NetworkS a ervice Domain Accoun t. Baselin e Securit y Analyz er cannot determi ne whether Service it Accounts belongs to the Domain Admins group due to the followi ng error: 1212 The format of the specifie d domain name is invalid. . Folder Permissions on the SQL Server and/or MSDE installation folders are not set Permissio properly. ns Instance Folder User SQLEXPR c:\Program BUILTIN\Users

ESS

SQLEXPR ESS

SQLEXPR ESS

SQLEXPR ESS

SQLEXPR ESS

SQLEXPR ESS

SQLEXPR ESS

SQLEXPR ESS

Files\Microsoft SQL Server\MSSQL.1\MS SQL\Binn c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Binn c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Binn c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Binn c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Binn c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Data c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Data c:\Program Files\Microsoft SQL Server\MSSQL.1\MS SQL\Data

BUILTIN\Performance Log Users

BUILTIN\Performance Monitor Users

DELL-XPS-M1210\SQLServer2005MSSQLUser$SUI _X_GENERI-PC$SQLEXPRESS \CREATOR OWNER

DELL-XPS-M1210\SQLServer2005MSSQLUser$SUI _X_GENERI-PC$SQLEXPRESS DELL-XPS-M1210\SQLServer2005MSSQLUser$SUI _X_GENERI-PC$SQLEXPRESS \CREATOR OWNER

SQL Server/M SDE SQL Server and/or MSDE authentication mode is set to Windows Only. Security Mode CmdExec role CmdExec is restricted to sysadmin only. Registry The Everyone group does not have more than Read access to the SQL Server Permissio

ns

and/or MSDE registry keys.

Sysadmin role [Microsoft][ODBC SQL Server Driver]Timeout expired members Guest Account [Microsoft][ODBC SQL Server Driver]Timeout expired Sysadmin s [Microsoft][ODBC SQL Server Driver]Timeout expired Password Policy [Microsoft][ODBC SQL Server Driver]Timeout expired SSIS Roles Sysdtslog

[Microsoft][ODBC SQL Server Driver]Timeout expired

[Microsoft][ODBC SQL Server Driver]Timeout expired

Desktop Application Scan Results Administrative Vulnerabilities Score Issue IE Zones Macro Security Result Internet Explorer zones have secure settings for all users.

No supported Microsoft Office products are installed.

Anda mungkin juga menyukai