27.1 Types of Accounts Discovered

Privileged Account Sniffer discovers the following privileged accounts in the target systems:

27.1.1 Administrative Accounts

Privileged Account Sniffer can discover the administrative accounts in the following:

  • Windows, Linux, and UNIX Computers: Discover administrative accounts in a Windows, Linux, and UNIX computer. These computers can be any of the following:

    • Standalone Computer: Discover administrative accounts in a standalone Windows, Linux and UNIX computers.

    • Domain: Discover administrative accounts in all the servers and the computers that are part of the domain.

    • Range of IP Addresses: Discover all the administrative accounts in the computers that fall in the IP range. The IP range can also contain a heterogeneous mixture of Windows and Linux/UNIX computers.

  • LDAP Directory: Discover all the accounts of a specific user group in the directory by scanning the user group and its sub groups recursively.

    For example, if you want to identify the administrative accounts of an enterprise application which is authenticated by Active Directory, you can configure the enterprise application's administrator user group in Privileged Account Sniffer. Privileged Account Sniffer scans and discovers all the accounts in the application’s user group.

27.1.2 Service Accounts

In addition to administrative accounts, Privileged Account Sniffer can also be used to discover the user accounts used by the services in the Windows computer. Using Privileged Account Sniffer you can discover service accounts in a Windows computer that is standalone or part of a domain.

Privileged Account Sniffer discovers the service accounts used by the applications:

  • Windows services

  • Windows Task Scheduler

  • COM+

  • Internet Information services (IIS)