We have noticed that some PCI compliance scanning companies have a propensity to report false positives when it comes to SSLv2 support. Here's how you can verify for yourself whether your site is supporting SSLv2.
Internet Explorer is one of the few browsers left that will allow you to force an SSLv2 connection, and by forcing SSL2, you can see for yourself whether your site connects or not.
To force SSL 2 in Internet Explorer, go to tools, internet options, and click on the Advanced tab. Scroll down, and uncheck TLS 1 and SSL 3, leaving SSL 2 checked.
Click OK to save your changes, and then try to reach any SSL page on your site. You'll notice it can't connect. Now, change your settings back to SSL 3 and TLS1, and it will connect without a problem.
So if your PCI Scanner is reporting that your server supports SSL version 2 on port 443, please try this test. If your site won't display https pages using version 2, you can safely report that the weak cipher on port 443 is a false positive. And of course if your site DOES connect using SSL 2, please contact us and we will get that straightened out.