Network Assessment Sample
Network Assessment Sample
Assessment
CONFIDENTIALITY NOTE: The information contained in this report document is for the
exclusive use of the client specified above and may contain confidential, privileged and
non-disclosable information. If the recipient of this report is not the client or Prepared for:
addressee, such recipient is strictly prohibited from reading, photocopying,
distributing or otherwise using this report or its contents in any way.
SAMPLE
Prepared by:
Scan Date: 01/01/1959
SAMPLE
Network Management Plan
NETWORK ASSESSMENT
Focus of Assessment
o Define - Definition of the business and user requirements for the network.
o Discover - Discovery of devices on the network. A Fidelis Communications engineer will gather
high-level/global information on the network.
o Analyze - In the analysis phase a comparison of the network design to the business and user
requirements is made. The result is a list of deltas.
o Recommend – Using issues identified in analyze phase, consultants focus on those that require
prompt attention and have a significant impact on the network and the business. The
recommendations are influenced by timeliness, ability to manage technology, cost, and future
plans.
o Pressing Concerns:
o Wireless security
o User account security
o Lack of backup solution
o Speed of IT services
o Upcoming Projects
o Two new locations
Main Application Discovery Overview
o Critical line-of-business application: Point of Sale (Point of Sale System), MS Office, QuickBooks,
DropBox (File Server), Spectrum (Accounting), and ADP (Time Keeping).
o Antivirus: AVG Free (Server) and Microsoft Security Essentials (Workstations).
o Backups – None identified as active.
o Email: Google Apps.
Recommendations
Security - Server
Critical Issues
Approve waiting updates on server for deployment.
Set schedule for Windows / 3rd Party Application Updates.
Centralized Anti-Virus. Replace current free version (AVG Free)
Disable / remove remote access and management software from previous IT service
provider.
Clean up old user and computer accounts from Active Directory (Multiple users and
workstations in Active Directory that have not been on the network for >6 months).
Fix Active Directory replication issue (Server2 not replicating)
Future Considerations
Servers are currently 44 Months old. Plan for replacement.
Virtualization of second server (possible).
Add all employees to network for tracking purposes.
Implement a centralized patch management for Windows and 3 rd party applications.
Security – Workstations
Critical Issues
Perform regular security updates on workstations.
Add Anti-Virus to workstations currently missing AV.
Disable / remove remote access and management software from previous IT service
provider.
Join all workstations to server domain.
2 workstations currently out of Dell Warranty Support.
Future Considerations
Replace workstations older than 3-4 years old.
Standardize local administrator passwords.
Rename workstations to standard naming convention.
Performance
Critical Issues
None
Future Considerations
Cable management and cleanup.
Locking patch cords on critical systems.
Color code patch cords for easy identification of systems.
Network / Infrastructure
Critical Issues
Replace current NetGear (better web filtering, controlling bandwidth)
Add new firewall to each location (Except Yelm Store)
Replace 10/100 Switches with 48 Port Gb Switch (Yelm)
Create site to site VPN for domain network connectivity
Consolidate Admin switches
Install UPS for all network equipment
Update firmware on router and managed switches
Replace all wireless device with business grade device.
Future Considerations
If install date of current batteries on UPS unknown, replace batteries.
Consider restricting access to non-business relates sites (malware, port, etc.)
Add Tripp Lite Rack to Yelm Location.
Install network rack to organize and protect network equipment.
Backup
Critical Issues
No current backup. Previous backups inactive.
Implement backup solutions.
Future Considerations
None
Wireless
Critical Issues
Update Firmware
Future Considerations
Standardize SSID / Passwords.
Other
Critical Issues
None
Future Considerations
Implement Office365 Solution.
Transition from DropBox to OneDrive or server based file share.
Implement 24x7 Managed Services for workstations and servers.
Fidelis #1
Fidelis #2
Fidelis #3
Fidelis #4 and #5
Risk Report
Discovery Tasks
The following discovery tasks were performed:
Risk Score
The Risk Score is a value from 1 to 100, where 100 represents significant risk and potential issues.
Several critical issues were identified. Identified issues should be investigated and addressed according
to the Management Plan.
Issues Summary
This section contains a summary of issues detected during the Network Assessment process, and is
based on industry-wide best practices for network health, performance, and security. The Overall Issue
Score grades the level of issues in the environment. An Overall Issue score of zero (0) means no issues
were detected in the environment. It may not always be possible to achieve a zero score in all
environments due to specific circumstances.
Server Aging
Workstation Aging
1 - Discovery Tasks
This table contains a listing of all tasks which were performed as part of this assessment. Items which
do not contain a check were not performed.
Task Description
Detect Domain Controllers Identifies Domain Controllers and Online status
FSMO Role Analysis Enumerates FSMO roles at the site
Enumerate Organization Units and Lists the Organizational units and Security Groups with members
Security Groups
User Analysis List of users in AD, status, and last login/use, which helps identify
potential security risks
Detect Local Mail Servers Mail server(s) found on the network
Detect Time Servers Time server(s) found on the network
Discover Network Shares Comprehensive list of Network Shares by Server
Detect Major Applications Major apps / versions and count of installations
Detailed Domain Controller Event Log List of event log entries from the past 24 hours for the Directory
Analysis Service, DNS Server and File Replication Service event logs
Web Server Discovery and List of web servers and type
Identification
Network Discovery for Non-A/D List of Non-Active Directory devices responding to network
Devices requests
Internet Access and Speed Test Test of internet access and performance
SQL Server Analysis List of SQL Servers and associated database(s)
Internet Domain Analysis “WHOIS” check for company domain(s)
Password Strength Analysis Uses MBSA to identify computers with weak passwords that may
pose a security risk
Missing Security Updates Uses MBSA to identify computers missing security updates
System by System Event Log Analysis Last 5 System and App Event Log errors for servers
External Security Vulnerabilities List of Security Holes and Warnings from External Vulnerability Scan
2 - Assessment Summary
Domain
Domain Controllers 2
Number of Organizational Units 1
Users
# Enabled 24
Last Login within 30 days 9
Last Login older than 30 days 15
# Disabled 10
Last Login within 30 days 0
Last Login older than 30 days 10
Security Group
Groups with Users 32
# Total Groups 62
Computers in Domain
Total Computers 37
Last Login within 30 days 19
Last Login older than 30 days 18
Other 1
Windows 7 Professional 16
Windows 7 Ultimate 18
Windows Server 2008 R2 Standard 1
Windows Small Business Server 2011 Essentials 1
Miscellaneous
Non-A/D Systems 9
MX Records 0
MS SQL Servers 1
Web Servers 10
Printers 40
Exchange Servers 0
Network Shares 106
Installed Applications 308
Potential or Severe Security Risks 0
Potential Insecure Listening Ports 4
External Network Security (High Risk) 0
External Network Security (Medium Risk) 0
3 - Workgroup: WORKGROUP
This section and corresponding sub-sections contain a comprehensive view of the workgroup.
3.5 - Users
This section contains a list of accounts from Active Directory with information on each account. Disabled
accounts are highlighted gray. Users that have not logged in in the past 30 days are marked as Inactive
Users and highlighted in red.
This section contains a list of Service Accounts from Active Directory with information on each account.
Disabled accounts are highlighted gray.
This section contains a listing of all computers from Workgroup. Computers which have not logged in
for over 30 days are highlighted in red.
Active Computers
Computer Name IP Address(es) DNS Entry Operating System Last Login
SAMPLE 111.222.333.444 Samplepc Windows 7 10/5/2015 2:58:22
Professional PM
SAMPLE 111.222.333.444 Samplepc Windows 7 Ultimate 10/5/2015 2:21:42
PM
4 - Domain: FIDELIS.LOCAL
This section and corresponding sub-sections contain a comprehensive view of the domain.
This section contains a listing of all Domain Controllers and their corresponding status.
This section contains a listing of all FSMO (Flexible Single Master Operation) roles, which are needed to
operate a Windows domain.
This section contains a hierarchical view of all organizational units from within Active Directory.
● fidelis.local
o Domain Controllers
This section contains a hierarchical view of all group policy objects from within Active Directory. Policies
highlighted in green represent enabled policies.
● fidelis.local
o Builtin
o Computers
o Default Domain Controllers Policy
o Default Domain Policy
o Domain Controllers
o ForeignSecurityPrincipals
o Managed Service Accounts
o System
o PSPs
o Users
4.5 - Users
This section contains a list of accounts from Active Directory with information on each account. Disabled
accounts are highlighted gray. Users that have not logged in in the past 30 days are marked as Inactive
Users and highlighted in red.
Active Users
User Name Display Name Enabled Password Last Set Password Expires Last Login
Sample Sample.Sample enabled 8/6/2015 2/2/2016 10/5/2015
12:46:33 PM 12:47:49 PM 7:34:38 AM
Sample Sample.Sample enabled 1/20/2015 <never> 10/5/2015
9:42:32 AM 8:15:12 AM
Sample Sample.Sample enabled 4/8/2015 2:56:54 10/5/2015 10/5/2015
PM 2:58:10 PM 7:32:21 AM
Sample Sample.Sample enabled 8/22/2012 <never> 10/5/2015
7:57:07 AM 6:14:18 AM
Sample Sample.Sample enabled 9/16/2015 <never> 10/1/2015
4:44:48 PM 8:26:14 AM
Sample Sample.Sample enabled 4/14/2015 10/11/2015 10/5/2015
6:59:45 AM 7:01:01 AM 7:12:37 AM
Sample Sample.Sample enabled 8/1/2013 <never> 10/1/2015
10:56:06 AM 9:47:57 AM
Sample Sample.Sample enabled 8/25/2014 <never> 10/2/2015
7:25:48 AM 9:45:05 AM
Sample Sample.Sample enabled 7/15/2015 <never> 10/5/2015
5:20:50 PM 9:23:31 AM
Inactive Users
User Name Display Name Enabled Password Last Set Password Expires Last Login
Sample Sample.Sample disabled 8/25/2014 2/21/2015 10/3/2014
7:01:59 AM 7:03:15 AM 8:35:25 PM
Administrator Administrator disabled 4/26/2012 <never> 1/2/2012 6:51:36
4:38:30 PM AM
Sample Sample.Sample enabled <never> <never> 8/22/2014
12:58:42 PM
Sample Sample.Sample enabled 11/19/2012 <never> 7/12/2013
9:13:13 AM 10:42:02 AM
Sample Sample.Sample enabled 5/8/2012 9:57:02 <never> 7/12/2013
AM 11:16:58 AM
Sample Sample.Sample disabled 6/25/2012 <never> 9/30/2013
11:10:46 AM 9:36:34 AM
Sample Sample.Sample enabled 8/29/2013 <never> 8/4/2015
7:27:27 AM 6:43:14 AM
Sample Sample.Sample enabled 10/30/2012 <never> 5/6/2013
7:40:40 AM 7:48:38 AM
User Name Display Name Enabled Password Last Set Password Expires Last Login
Guest Guest disabled <never> <never> <never>
Sample Sample.Sample disabled <never> <never> <never>
Sample Sample.Sample enabled 3/30/2012 <never> 6/29/2012
2:15:51 PM 7:06:25 AM
Sample Sample.Sample disabled 10/31/2012 <never> 8/12/2013
8:17:27 AM 7:42:56 AM
Sample Sample.Sample enabled 11/6/2012 <never> 7/12/2013
7:49:35 AM 11:05:34 AM
Sample Sample.Sample enabled 1/14/2013 <never> 10/21/2013
10:15:27 AM 8:13:48 AM
Sample Sample.Sample disabled 9/26/2012 <never> 4/30/2013
8:46:43 AM 12:01:39 PM
Sample Sample.Sample disabled 10/9/2012 <never> 10/9/2012
8:40:52 AM 8:41:04 AM
Sample Sample.Sample disabled 10/12/2012 <never> 10/12/2012
2:46:02 PM 2:40:54 PM
Sample Sample.Sample enabled 9/9/2014 3:08:38 3/8/2015 9/9/2014
PM 3:09:54 PM 3:14:18 PM
Sample Sample.Sample enabled 8/27/2013 2/23/2014 8/27/2013
2:30:48 PM 2:32:04 PM 2:31:31 PM
Sample Sample.Sample enabled 3/17/2014 9/13/2014 3/21/2014
9:23:02 AM 9:24:18 AM 12:57:32 PM
Sample Sample.Sample disabled 4/3/2013 2:31:31 <never> 4/3/2013 2:35:21
PM PM
Sample Sample.Sample enabled 9/25/2012 <never> 7/8/2013
10:12:08 AM 8:16:38 AM
Sample Sample.Sample enabled 1/2/2012 1:43:02 <never> 4/2/2012
PM 7:24:58 PM
Sample Sample.Sample enabled <never> <never> <never>
This section contains a list of Service Accounts from Active Directory with information on each account.
Disabled accounts are highlighted gray.
This section contains a listing of all security groups from Active Directory with detailed information on
group membership by user account.
Backup Operators
(fidelis.local/Builtin/Backup Operators)
0 Total: 0 Enabled, 0 Disabled
Cert Publishers
(fidelis.local/Users/Cert Publishers)
0 Total: 0 Enabled, 0 Disabled, 1 Status Unknown (due to OU filtering)
Cryptographic Operators
(fidelis.local/Builtin/Cryptographic Operators)
0 Total: 0 Enabled, 0 Disabled
DHCP Administrators
(fidelis.local/Users/DHCP Administrators)
0 Total: 0 Enabled, 0 Disabled
DHCP Users
(fidelis.local/Users/DHCP Users)
0 Total: 0 Enabled, 0 Disabled
DnsAdmins
(fidelis.local/Users/DnsAdmins)
0 Total: 0 Enabled, 0 Disabled
DnsUpdateProxy
(fidelis.local/Users/DnsUpdateProxy)
0 Total: 0 Enabled, 0 Disabled
Domain Computers
(fidelis.local/Users/Domain Computers)
0 Total: 0 Enabled, 0 Disabled, 27 Status Unknown (due to OU filtering)
Domain Controllers
(fidelis.local/Users/Domain Controllers)
0 Total: 0 Enabled, 0 Disabled, 2 Status Unknown (due to OU filtering)
IIS_IUSRS
(fidelis.local/Builtin/IIS_IUSRS)
0 Total: 0 Enabled, 0 Disabled
Print Operators
(fidelis.local/Builtin/Print Operators)
0 Total: 0 Enabled, 0 Disabled
RDP_MAPPING_S-1-5-21-2210379948-3449297139-1488856323-1610
(fidelis.local/Users/RDP_MAPPING_S-1-5-21-2210379948-3449297139-1488856323-
1610)
0 Total: 0 Enabled, 0 Disabled
Replicator
(fidelis.local/Builtin/Replicator)
0 Total: 0 Enabled, 0 Disabled
Server Operators
(fidelis.local/Builtin/Server Operators)
0 Total: 0 Enabled, 0 Disabled
SophosDomainPowerUser
(fidelis.local/Users/SophosDomainPowerUser)
0 Total: 0 Enabled, 0 Disabled
SophosDomainUser
(fidelis.local/Users/SophosDomainUser)
0 Total: 0 Enabled, 0 Disabled
SophosOnAccess
(fidelis.local/Users/SophosOnAccess)
0 Total: 0 Enabled, 0 Disabled
SophosPowerUser
(fidelis.local/Users/SophosPowerUser)
0 Total: 0 Enabled, 0 Disabled, 1 Status Unknown (due to OU filtering)
SophosUser
(fidelis.local/Users/SophosUser)
0 Total: 0 Enabled, 0 Disabled, 2 Status Unknown (due to OU filtering)
SQLServer2005SQLBrowserUser$SERVER2
(fidelis.local/Users/SQLServer2005SQLBrowserUser$SERVER2)
0 Total: 0 Enabled, 0 Disabled
SQLServerDTSUser$SERVER2
(fidelis.local/Users/SQLServerDTSUser$SERVER2)
0 Total: 0 Enabled, 0 Disabled
SQLServerFDHostUser$server2$MSSQLSERVER
(fidelis.local/Users/SQLServerFDHostUser$server2$MSSQLSERVER)
0 Total: 0 Enabled, 0 Disabled
SQLServerMSSQLServerADHelperUser$SERVER2
(fidelis.local/Users/SQLServerMSSQLServerADHelperUser$SERVER2)
0 Total: 0 Enabled, 0 Disabled
Users
(fidelis.local/Builtin/Users)
0 Total: 0 Enabled, 0 Disabled, 3 Status Unknown (due to OU filtering)
This section contains a listing of all computers from Active Directory. Computers which have not logged
in for over 30 days are marked as Inactive Computers and highlighted in red.
Active Computers
Computer Name IP Address(es) DNS Entry Operating System Last Login
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate9/29/2015 3:12:08
cal PM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/5/2015 8:03:09
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/5/2015 8:14:59
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/5/2015 4:24:41
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 9:55:42
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 10/1/2015 12:58:20
cal Professional PM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 10:21:10
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 10/5/2015 9:15:48
cal Professional AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 1:54:26
cal PM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 2:27:09
cal PM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 1:12:00
cal PM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 9:49:15
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/6/2015 11:33:29
cal AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 10/5/2015 7:55:54
cal Professional AM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows Small 10/5/2015 3:17:30
cal Business Server 2011 AM
Essentials
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows Server 9/26/2015 7:16:20
cal 2008 R2 Standard PM
SAMPLEPC 111.222.333.444 Samplepc.fidelis.lo Windows 7 Ultimate 10/5/2015 4:37:45
cal AM
Inactive Computers
This section is in indicator of the age of the listed servers based on the date their operating system was
installed. The actual age of the server may vary if the operating system was re-installed for any reason.
Older systems are highlighted in red and much older systems are bolded.
This section is in indicator of the age of the listed workstations based on the date their operating system
was installed. The actual age of the workstation may vary if the operating system was re-installed for
any reason. Older systems are highlighted in red and much older systems are bolded.
This section contains a listing of all IP addresses and hostnames from DNS, with conflicting entries
highlighted in red.
IP Address Hostname
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
111.222.333.444 samplepc.fidelis.local
This section contains a listing of all devices which were not joined to a domain or workgroup.
6 - Servers
This section and corresponding sub-sections contain a comprehensive listing of servers by type, which
are then categorized by domain or workgroup membership.
FIDELIS.LOCAL
MS SQL Server Instance Version # of Databases Active SQL Agent
Name Jobs?
SERVER2 <unknown> <unknown>
FIDELIS.LOCAL
IP Address Web Server Name Listening Port(s) Server Type
111.222.333.44 SERVER1 80/TCP, 443/TCP Microsoft-IIS/7.5
4
111.222.333.44 SERVER2 80/TCP Microsoft-IIS/7.5
4
No Domain
IP Address Web Server Name Listening Port(s) Server Type
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP lighttpd/1.4.35
4
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP, HP HTTP Server; HP Officejet Pro
4 8080/TCP 6230 - E3E03A; Serial Number:
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP, HP HTTP Server; HP HP Officejet Pro
4 8080/TCP 8610 - A7F64A; Serial Number:
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP, HP HTTP Server; HP Officejet Pro
4 8080/TCP 6230 - E3E03A; Serial Number:
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP, HP HTTP Server; HP Officejet Pro
4 8080/TCP 6230 - E3E03A; Serial Number:
111.222.333.44 SAMPLEPC 80/TCP GoAhead-Webs
4
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP GoAhead-Webs
4
111.222.333.44 SAMPLEPC 80/TCP, 443/TCP Rapid Logic/1.1
4
FIDELIS.LOCAL
Time Server Name IP Address
SERVER1 111.222.333.444
WORKGROUP
IP Address(es) Server Name Errors (last 24 hours)
::1, server1.fidelis.local
111.222.333.444
FIDELIS.LOCAL
IP Address(es) Server Name Errors (last 24 hours)
::1, server1.fidelis.local
111.222.333.444
7 - Printers
This section contains a listing of all printers categorized by a combination of domain or workgroup
membership and method of access. Alerts for SNMP-enabled printers are also displayed in red.
8 - Network Shares
This section contains a listing of all network shares categorized first by domain or workgroup
membership, and then by machine.
FIDELIS.LOCAL
Hosted By Share UNC
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\BIYALL-PC\ADMIN$, \\BIYALL-PC\C$, \\BIYALL-PC\IPC$, \\BIYALL-
PC\Users
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
WORKGROUP
Hosted By Share UNC
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
SAMPLE PC \\SAMPLEPC\ADMIN$, \\SAMPLEPC-LAPTOP\C$, \\SAMPLE\IPC$
9 - Major Applications
This section contains a listing of major applications with corresponding version numbers and number of
computers the application was detected on. Applications that appear on more than 3 computers are
highlighted for easy recognition.
WORKGROUP
Windows Applications
Application Name Version # Computers
Computers
Adobe Acrobat DC 15.006 1 SAMPLEPC
Adobe Flash Player 19 ActiveX 19.0 2 SAMPLEPC
Adobe Flash Player 19 NPAPI 19.0 1 SAMPLEPC
Adobe Reader XI MUI 11.0 1 SAMPLEPC
Adobe Reader XI (11.0.12) 11.0 1 SAMPLEPC
Backblaze 1 SAMPLEPC
Citrix Online Launcher 1.0 2 SAMPLEPC
Dell Backup and Recovery 1.8 1 SAMPLEPC
Dell Command | Update 2.0 1 SAMPLEPC
Dell Digital Delivery 3.1 1 SAMPLEPC
Dell Edoc Viewer 1.0 1 SAMPLEPC
Dell Foundation Services 2.2 1 SAMPLEPC
Dell Protected Workspace 4.0 1 SAMPLEPC
Google Apps Migration For Microsoft Outlook 3.4.27.52 3.4 1 SAMPLEPC
Google Apps Sync for Microsoft Outlook 3.7.410.1100 3.7 1 SAMPLEPC
Google Chrome 45.0 2 SAMPLEPC
HP Support Solutions Framework 12.0 1 SAMPLEPC
Intel(R) Management Engine Components 10.0 1 SAMPLEPC
Intel(R) Network Connections 19.2.104.00 19.2 1 SAMPLEPC
Intel(R) Network Connections Drivers 19.2 1 SAMPLEPC
Intel(R) Processor Graphics 10.18 2 SAMPLEPC
Intel(R) Rapid Storage Technology 13.0 1 SAMPLEPC
Intel(R) USB 3.0 eXtensible Host Controller Driver 2.5 2 SAMPLEPC
Intel(R) WiDi 4.2 1 SAMPLEPC
Intel PROSet/Wireless Software 17.0 1 SAMPLEPC
Java 8 Update 31 (64-bit) 8.0 1 SAMPLEPC
LogMeIn 4.1 1 SAMPLEPC
Microsoft .NET Framework 4.5 4.5 1 SAMPLEPC
Microsoft .NET Framework 4.5.2 4.5 1 SAMPLEPC
Microsoft Office Home and Business 2013 - en-us 15.0 1 SAMPLEPC
Microsoft Security Essentials 4.8 1 SAMPLEPC
Microsoft Silverlight 5.1 1 SAMPLEPC
Microsoft Visual C++ 2008 Redistributable - x86 9.0 1 SAMPLEPC
9.0.30729.17
Microsoft Visual C++ 2008 Redistributable - x86 9.0 1 SAMPLEPC
9.0.30729.6161
Microsoft Visual C++ 2010 x64 Redistributable - 10.0 1 SAMPLEPC
10.0.40219
Microsoft Visual C++ 2010 x86 Redistributable - 10.0 1 SAMPLEPC
10.0.40219
Microsoft Visual Studio 2010 Tools for Office Runtime 10.0 1 SAMPLEPC
(x64)
FIDELIS.LOCAL
Windows Applications
Application Name Version # Computers
Computers
Actiontec ScreenBeam Wireless Display 1.9 1 SAMPLEPC
Adobe Acrobat DC 15.006 1 SAMPLEPC
Adobe Acrobat Reader DC 15.007 2 SAMPLEPC
Adobe Acrobat Reader DC 15.008 4 SAMPLEPC
Adobe Acrobat X Standard - English, Français, Deutsch 10.1 2 SAMPLEPC
Adobe Acrobat XI Pro 11.0 1 SAMPLEPC
Adobe AIR 15.0 1 SAMPLEPC
Adobe AIR 18.0 1 SAMPLEPC
Adobe AIR 19.0 1 SAMPLEPC
Adobe AIR 4.0 1 SAMPLEPC
Adobe Flash Player 11 ActiveX 11.7 1 SAMPLEPC
Adobe Flash Player 11 ActiveX 11.8 1 SAMPLEPC
Adobe Flash Player 14 ActiveX 14.0 3 SAMPLEPC
Adobe Flash Player 14 Plugin 14.0 1 SAMPLEPC
Adobe Flash Player 17 ActiveX 17.0 3 SAMPLEPC
Adobe Flash Player 17 NPAPI 17.0 1 SAMPLEPC
Adobe Flash Player 19 ActiveX 19.0 9 SAMPLEPC
Adobe Flash Player 19 NPAPI 19.0 1 SAMPLEPC
Adobe Reader X (10.1.12) 10.1 1 SAMPLEPC
Adobe Reader X MUI 10.0 1 SAMPLEPC
Adobe Reader XI (11.0.09) 11.0 1 SAMPLEPC
Adobe Reader XI (11.0.09) MUI 11.0 1 SAMPLEPC
Adobe Reader XI (11.0.10) 11.0 2 SAMPLEPC
Adobe Reader XI (11.0.11) 11.0 1 SAMPLEPC
Adobe Reader XI (11.0.12) 11.0 4 SAMPLEPC
Apcupsd 1 SAMPLEPC
Apple Application Support 2.3 1 SAMPLEPC
Avery Template 2.0 1 SAMPLEPC
Avery Toolbar 12.34 1 SAMPLEPC
Avery Wizard 5.0 5.0 1 SAMPLEPC
Backblaze 14 SAMPLEPC
Broadcom NetXtreme-I Netlink Driver and Management 15.2 1 SAMPLEPC
Installer
Brother MFL-Pro Suite MFC-9970CDW 1.1 1 SAMPLEPC
Button Manager V2 2.0 1 SAMPLEPC
Canon driver for DR-C125 (x64) 1.2 2 SAMPLEPC
Cisco WebEx Meetings 1 SAMPLEPC
Citrix Online Launcher 1.0 7 SAMPLEPC
This section contains the password strength analysis using MBSA to determine risk. Systems with
security risks are highlighted in red.
MBSA
IP Address Computer Name Assessment
111.222.333.444 FIDELIS\SERVER1 Strong Security
111.222.333.444 FIDELIS\SERVER2 Strong Security
11 - Patch Summary
This section contains the patching status of computers determine through the Microsoft Baseline
Security Analyzer and Windows Update. MBSA gathers data through a remote scan and looks primarily
for Security Updates. Windows Update checks the local computer for all non-hidden updates. Missing
updates in both areas are highlighted in red. Security and critical updates are bolded.
MBSA
IP Address Computer Name Issue Result Assessment
111.222.333.444 FIDELIS\SERVER1 Developer Tools, Passed No security updates
Runtimes, and are missing.
Redistributables
Security Updates
Silverlight Security Failed (critical) 1 security updates
Updates are missing.
SQL Server Security Passed No security updates
Updates are missing.
Windows Security Failed (critical) 20 security updates
Updates are missing. 2 service
packs or update
rollups are missing.
111.222.333.444 FIDELIS\SERVER2 Security Updates Unable to scan Cannot contact
Windows Update
Agent on target
computer, possibly
due to firewall
settings.
Windows Updates
IP Address Computer Name Issue Result Assessment
111.222.333.444 SERVER1 Critical Updates, Failed (critical) 2 critical updates
Windows Server are missing.
2008 R2
Definition Updates, Failed (non-critical) 1 update is missing.
Windows Defender
Security Updates, Failed (critical) 1 security update is
Silverlight missing.
Security Updates, Failed (critical) 20 security updates
Windows Server are missing.
2008 R2
Update Rollups, Failed (non-critical) 2 updates are
Windows Server missing.
2008 R2
Updates, Windows Failed (non-critical) 10 updates are
Server 2008 R2 missing.
This section contains a listing of detected Antivirus, Antispyware, Firewall, and Backup information as
detected through Security Center and/or Installed Services for major vendors, which is then
categorized by domain or workgroup membership.
Values in the \"Name\" column contain either the name of the product, None indicating the machine
returned information but no product was found, or <empty> indicating information was not obtainable.
Further, a status of indicates \"yes\", indicates \"no\", and <empty> indicates that a status was not
available.
WORKGROUP
Computer Name Antivirus Antispyware Firewall Backup
Name On Current Name On Current Name On Name On
SAMPLEPC None Windows Windows None
Defender Firewall
SAMPLEPC Microsoft Microsoft Windows None
Security Security Firewall
Essentials Essentials
Windows
Defender
FIDELIS.LOCAL
Computer Name Antivirus Antispyware Firewall Backup
Name On Current Name On Current Name On Name On
SAMPLEPC
SAMPLEPC
SAMPLEPC Microsoft Microsoft Windows None
Security Security Firewall
Essentials Essentials
Windows
Defender
SAMPLEPC Microsoft Microsoft Windows None
Security Security Firewall
Essentials Essentials
Windows
Defender
SAMPLEPC None Windows Windows None
Defender Firewall
SAMPLEPC
SAMPLEPC
SAMPLEPC
SAMPLEPC
SAMPLEPC
SAMPLEPC
SAMPLEPC
13 - Listening Ports
This section contains a list of common ports/protocols assessed, and is categorized by domain or
workgroup membership. Items with a red check indicate a potential risk.
FIDELIS.LOCAL
IP Address Computer Name DNS HTTP HTTPS RDP
(53/TCP) (80/TCP) (443/TCP) (3389/TCP)
111.222.333.444 SAMPLEPC
111.222.333.444 SAMPLEPC
111.222.333.444 SAMPLEPC
No Domain
IP Address Computer Name FTP SSH Telnet DNS HTTP HTTPS VNC HTTP
(21/TCP) (22/TCP) (23/TCP) (53/TCP) (80/TCP) (443/TCP) (5900/TCP) (8080/TCP)
111.222.333.444
111.222.333.444 SAMPLEPC
111.222.333.444 SAMPLEPC
111.222.333.444 SAMPLEPC
111.222.333.444 SAMPLEPC
111.222.333.444 SAMPLEPC
111.222.333.444
111.222.333.444
14 - Internet Access
This section lists of the latency between the computer and both Google and Yahoo, as well as a trace
route to Google for further diagnostics if needed.
Internet Access
Latency Tests:
Retrieval time for Google.com: 130 ms
Retrieval time for Yahoo.com: 152 ms
10 ms111.222.333.444.dia.static.qwest.net [111.222.333.444]
23 mstuk-edge-11.inet.qwest.net [111.222.333.444]
310 mssea-edge-12.inet.qwest.net [111.222.333.444]
43 ms111.222.333.444.dia.static.qwest.net [111.222.333.444]
53 ms111.222.333.444
63 ms111.222.333.444
738 ms111.222.333.444
810 ms111.222.333.444
94711 ms
1010 mspc-in-f105.1e100.net [111.222.333.444]
Trace complete.