How can I check for the existance of files on a server that could be used maliciously by a hacker?
When you install ColdFusion Server, you are given the option of installing the online documentation and sample applications. If you choose to install them, they will be installed on the server in the CFDOCS directory just below the web root. Installing the sample application is never a good idea as they could be exploited maliciously. MunchkinLAN is a ColdFusion based security viewer from http://www.houseoffusion.com/. It allows you to enter a domain name and test if certain vulnerable files exist on that domain.