As stated on the Nmap Idle Scan documentation:

"The first step is to find an appropriate zombie host. The host should not have much traffic (hence the name Idle Scan) and should offer predictable IPID values. Printers, Windows boxes, older Linux hosts, FreeBSD, and Mac OS boxes generally work fine. The latest versions of Linux, Solaris, and OpenBSD are immune as zombies, but any host can be a target of the scan. One way to determine host vulnerability is to simply try an Nmap Idle scan. Nmap will test the zombie and report whether it is reliable."

So I assume Nmap is saying to you that the zombie chosen is protected against an idle scan which, almost after then years the technique was released, seems to be finally patched on Windows. Yeha!


