Notification

Icon
Error

Report: Intel-SA-00086 vulnerability check

Posted: Tuesday, December 5, 2017 1:47:34 PM(UTC)
Bruce.B

Bruce.B

Member Administration Original PosterPosts: 532
3
Like
This report lists all computers on which the Intel Discovery tool for vulnerability Intel-SA-00086 has been run. Registry scanning set up as per this post and having run this deployment package are prerequisite for this report to yield its expected results.

Code:
Select Top 1000000 tblAssets.AssetID,
  tblAssets.AssetName,
  tblAssets.Domain,
  tblAssetCustom.Manufacturer,
  tblAssetCustom.Model,
  tblProcessor.Name As CPU,
  tsysAssetTypes.AssetTypeIcon10 As icon,
  tblAssets.IPAddress,
  Case
    When tblRegistry.Value Is Null Then
    'Intel tool has not been run or the registry value has not yet been scanned'
    Else tblRegistry.Value End As value,
  Case When (tblRegistry.Value Like '%This system is vulnerable%') Then 'red'
    When (tblRegistry.Value Like '%Detection error%' Or
    tblRegistry.Value Is Null) Then 'black' Else 'green' End As foregroundcolor,
  TsysLastscan.Lasttime As RegLastScanned,
  tblAssets.Lastseen,
  tblAssets.Lasttried
From tblAssets
  Inner Join tblAssetCustom On tblAssets.AssetID = tblAssetCustom.AssetID
  Inner Join tsysAssetTypes On tsysAssetTypes.AssetType = tblAssets.Assettype
  Inner Join tblProcessor On tblAssets.AssetID = tblProcessor.AssetID
  Left Join tblRegistry On tblAssets.AssetID = tblRegistry.AssetID And
    tblRegistry.Valuename = 'System Risk'
  Left Join TsysLastscan On TsysLastscan.AssetID = tblAssets.AssetID And
    TsysLastscan.CFGcode = 50
  Left Join tblOperatingsystem On tblAssets.AssetID = tblOperatingsystem.AssetID
Where tblAssetCustom.Model Not Like '%Virtual%' And
  tsysAssetTypes.AssetTypename = 'Windows' And (tblOperatingsystem.Caption Like
    '%Windows 10%' Or tblOperatingsystem.Caption Like '%Windows 8%' Or
    tblOperatingsystem.Caption Like '%Windows 7%' Or
    tblOperatingsystem.Caption Like '%Windows Server 2012%' Or
    tblOperatingsystem.Caption Like '%Windows Server 2016%')
Bruce.B
#1Bruce.B Member Administration Original PosterPosts: 532  
posted: 12/5/2017 2:22:24 PM(UTC)
If you have any feedback or questions regarding this topic, please contact us via support@lansweeper.com.
Bruce.B
#2Bruce.B Member Administration Original PosterPosts: 532  
posted: 12/11/2017 6:06:14 PM(UTC)
A version of the report that only displays non-virtual machine Intel CPU computers:

Code:
Select Top 1000000 tblAssets.AssetID,
  tblAssets.AssetName,
  tblAssets.Domain,
  tblAssetCustom.Manufacturer,
  tblAssetCustom.Model,
  tblProcessor.Name As CPU,
  tsysAssetTypes.AssetTypeIcon10 As icon,
  tblAssets.IPAddress,
  Case
    When tblRegistry.Value Is Null Then
    'Intel tool has not been run or the registry value has not yet been scanned'
    Else tblRegistry.Value End As value,
  Case When (tblRegistry.Value Like '%This system is vulnerable%') Then 'red'
    When (tblRegistry.Value Like '%Detection error%' Or
    tblRegistry.Value Is Null) Then 'black' Else 'green' End As foregroundcolor,
  TsysLastscan.Lasttime As RegLastScanned,
  tblAssets.Lastseen,
  tblAssets.Lasttried
From tblAssets
  Inner Join tblAssetCustom On tblAssets.AssetID = tblAssetCustom.AssetID
  Inner Join tsysAssetTypes On tsysAssetTypes.AssetType = tblAssets.Assettype
  Inner Join tblProcessor On tblAssets.AssetID = tblProcessor.AssetID
  Left Join tblRegistry On tblAssets.AssetID = tblRegistry.AssetID And
    tblRegistry.Valuename = 'System Risk'
  Left Join TsysLastscan On TsysLastscan.AssetID = tblAssets.AssetID And
    TsysLastscan.CFGcode = 50
Where tblAssetCustom.Model Not Like '%Virtual%' And
  tblProcessor.Name Like '%intel%' And tblAssetCustom.State = 1
Order By tblAssets.Domain,
  tblAssets.AssetName

Active Discussions

Lansweeper Windows 7 EOL
by  Esben.D   Go to last post Go to first unread
Last post: Today at 12:22:43 PM(UTC)
Lansweeper Patch Tuesday report, last 3 months
by  Esben.D  
Go to last post Go to first unread
Last post: Today at 10:55:07 AM(UTC)
Lansweeper Thunderbird 68 Vulnerability
by  Esben.D   Go to last post Go to first unread
Last post: Today at 8:41:29 AM(UTC)
Lansweeper Drive Encryption statuses
by  JacobH  
Go to last post Go to first unread
Last post: Yesterday at 5:41:10 PM(UTC)
Report Center Local admin group report based on domain role
by  JacobH   Go to last post Go to first unread
Last post: Yesterday at 5:24:13 PM(UTC)
Lansweeper Number of scanned IPs
by  wayneRex  
Go to last post Go to first unread
Last post: Yesterday at 10:21:01 AM(UTC)
Lansweeper Ticket Summary by Agent?
by  susan.starr   Go to last post Go to first unread
Last post: 9/17/2019 4:41:26 PM(UTC)
Report Center Virtual machines and their host
by  klaus  
Go to last post Go to first unread
Last post: 9/17/2019 8:44:57 AM(UTC)