DragonSoft Secure Scanner specification
|
Basic Functions:
- Windows graphical operation interface, DSS can be operated under the operating systems of Windows 95/98/NT/ME/2000/XP/2003.
- Unlimited authorizing IP in specific range.
- Users can import by hosts, IP range, or list for detecting target.
- Using total Chinese for user interface, secure audit message, and improving suggestions
- DSS can inquire about any TCP/IP, includes Windows and UNIX server and workstation.
- While scanning, DSS can immediately display the messages and the vulnerabilities that were detected.
- DSS possesses the exclusive technique to uncover unknown vulnerabilities. It is able to think like a hacker or network security analyst attempting to penetrate users' network.
- DSS holds an exclusive FPP (False Positives Prevention) detecting system.
- DSS owns Protocol Signature Filter technique.
- DSS can scan every kind of Web server, Email server, FTP server, and remote access server.
- Supporting HTTP proxy and Multi-Thread HTTP scanning.
- DSS owns artificially intelligent scanning technique.
- Supporting TCP/UDP COM port and SNMP inquiry, DSS can homologize all the services of users' hosts on network.
- Providing Auto-Fixing function. Allows the network administrator to automatically correct common system security issues including registry settings, file permissions, and more.
- DSS possesses tracing function to inquire the real time situation of network node.
- Providing a network monitoring function.
- Providing a adjustment function for users' system time.
- Supporting information inquiry for Whois host.
- Providing inspecting function for account and password of NetBIOS.
- Possessing a exposure examining function for Database (MSSQL/MySQL/Oracle/IBM DB2)
- DSS can audit the vulnerabilities of network hardware.
Customizable Functions:
- Possessing customizable audit policies function.
- Audit policies of the COM port and its range can be customized. DSS also possesses speedy scanning and multi-IP inquiry abilities.
- The reliabilities of Thread, priorities, Ping Timeout, and Data Timeout can be customized.
- By using DSS, users can set alert sound when finding vulnerabilities.
- Providing password protecting function when starting DSS.
- Possessing cyclic regular audit process and email informing function.
- Supporting secure vulnerabilities identifying regulations customizing.
- Users can decide whether to display or hide the tool bar and status bar
The Functions of Report:
- Audit report in Chinese HTML format.
- Supporting a single audit for a large number of hosts, then generates individual report according to designate IP.
- The reports provide a rank for the 6 hosts which have the most vulnerabilities.
- The auditing results provide operating system distribution statistical graphs.
- The auditing results provide network service distribution statistical graphs.
- The auditing results provide Host Summary Map administer forms.
- Providing network distribution homologous forms for the audit hosts and Gateway.
- The reports provide firewall resisting suggestions for those highly-risky IP/PORT.
- The vulnerabilities detected by DSS could be followed the examples of CVE, BugTraq, and X-Force.
- Supporting patch downloading of English and Traditional Chinese version.
Updating Functions
- Providing Chinese vulnerabilities database.
- Supporting update the vulnerabilities database through internet.
- Supporting the audit of module updating.
- Providing the function of update alerting.
- DSS can automatically obtain and update for the product itself through proxy server.
Audit Functions:
- Vulnerabilities auditing includes:
Domain Name Server (DNS)
Finger Service
File Transfer Protocol (FTP)
Trivial File Transfer Protocol (TFTP)
HTTP Security, CGI and WinCGI
NetBios System
Network File System (NFS)
Windows NT Security
Mail Server (SMTP, LDAP, POP, IMAP)
RLogin Remote System
Remote Procedure Call (RPC)
Simple Network Management Protocol (SNMP)
Telnet, SSH Service
Xwindows System
Server Message Block (SMB)
Network News Transport Protocol (NNTP)
Remote Shell (RSH)
IDENT Service
RWHO Service
|
>> 10 Hosts Vulnerabilities Assessment<<
- Scanning 10 hosts at one time
- Providing all functions.
>>50 Hosts Vulnerabilities Assessment<<
- Scanning 50 hosts at one time.
- Providing all functions.
- Providing the function of inquiring DNS address homologizing.
- Providing the function of inquiring the version of websites.
- Providing the function of checking password of FTP, POP3, HTTP, IMAP, Socks5, Telnet, MSSQL, and MYSQL.
>>100 Hosts Vulnerabilities Assessment<<
- Scanning 100 hosts at one time.
- Providing all functions.
- Providing the function of inquiring DNS address homologizing.
- Providing the function of checking password of FTP, POP3, HTTP, IMAP, Socks5, Telnet, MSSQL, and MYSQL
- Providing the function of Denial of Service (DoS) testing.
- Providing the function of exporting the scanning results to Access, MSSQL, or MySQL¡Ketc. SQL server through ODBC.
- Supporting Command Line Mode audit.
- Providing the auditing items for categorizing and statistics analysis:
a. The list of cracked account.
b. The list of all the hosts' account.
c. The list of all the hosts' status.
d. The list of all the sharing status Network Neighborhood.
e. The comparison of the previous scanning.
f. The history curve of the auditing record
>>Unlimited Hosts Vulnerabilities Assessment<<
- Scanning unlimited hosts at one time
- Providing all functions.
- Providing the function of inquiring DNS address homologizing.
- Providing the function of checking password of FTP, POP3, HTTP, IMAP, Socks5, Telnet, MSSQL, and MYSQL.
- Providing the function of Denial of Service (DoS) testing.
- Providing the function of exporting the scanning results to Access, MSSQL, or MySQL¡Ketc. SQL server through ODBC.
- Supporting Command Line Mode audit.
- Providing the auditing items for categorizing and statistics analysis:
a. The list of cracked account.
b. The list of all the hosts' account.
c. The list of all the hosts' status.
d. The list of all the sharing status Network Neighborhood.
e. The comparison of the previous scanning.
f. The history curve of the auditing record.
|
|