To scan computers remotely, the following requirements must be met on the computers being scanned. mbsacli /d companyA /n os+iis+sql+password Scans all computers in the companyA domain for security updates, but does not scan for administrative vulnerabilities.

Sign Up Now! Each IP address or computer name must appear on a separate line. If you haven't already, you may want to check the MBSA FAQ located here: http://technet.microsoft.com/en-us/security/cc184922specifically under the sections titled, "How can I scan a computer that is protected by a firewall" You can use these symbols to represent computer-specific information: %d% Replaced with the name of the computer's domain. %c% Replaced with the name of the computer. %t% Replaced with the date https://social.technet.microsoft.com/Forums/security/en-US/b040f123-5738-4502-90c1-03cbf76f8251/using-mbsa-22-getting-error-cannot-load-security-cab-file-when-attempting-to-scan-any-remote?forum=MBSA

Mbsa 2.3 Offline Catalog Download

Do not create the folder yourself. (3) Put in the 4 cab files into the folder. (4) Make sure that the following options are not selected, and then click Start scan. Mbsacli.exe command examples mbsacli /target /n os+iis+sql+password Scans the specified host with the supplied IP address and checks for missing updates and patches. This parameter cannot be used with the /wi parameter. Net start WuAuServ Please visit the Windows Update site to test the issue again.

Let me know if this works for you or if you receive a similar error after trying the steps above. Ed Lenon ******************** Step1: Reset Internet Explorer options ========================== 1. The following command line switches are examples of features that are not available in the MBSA GUI tool pictured above: Mbsacli-only commands Description mbsacli.exe /catalog [file] Lets you specify an alternate Mbsacli Windows Update Redistribution Catalogue (wuredist.cab) located at http://update.microsoft.com/redist/wuredist.cab3.

The Catalog File(wuredist.cab) Is Damaged Or An Invalid Catalog.

mbsacli.exe /rd [directory] Specifies an alternate location for the completed scan report (this is useful when running MBSA in a non-user context or as a domain administrator). Build a custom PC ↓ What's new in Tech ↓ LXer Linux NewsGet Trained and Certified on Kubernetes with The Linux Foundation and CNCFQ4OS 1.8 "Orion" GNU/Linux Distro Ships with Brand Mbsa 2.3 Offline Catalog Download Also can you configure Mbsa to scan for non secure updates. Mbsa Cab File Download Download it from http://go.microsoft.com/fwlink/?LinkId=90994.

For example, to scan servers running IIS 6.0, the IIS 6.0 Common Files must be installed on the computer running MBSA. Check This Out Viewing Reports 6 Comments Best vpn service link 5/3/2015 08:20:46 pm WorldVPN setup VPN connections for anonymous, unblocks websites, secure internet connection and hides your ip. Updates that are not approved on the computer's Update Services server are displayed as though they were approved. Personally I feel that WSUS Offline and MBSA are a solid pairing. Wsusscn2.cab Offline Download

It can be downloaded here:Harry. Combine with /nvc and /nd to prevent MBSA from connecting to Microsoft for newer versions of MBSA or needed scan files. MBSA will help to check for missing patches. Source I performed Step 1 below on the second machine and tested MBSA.

Related Written by Doug Vitale November 18, 2011 at 4:07 PM Posted in Info Security or Ethical Hacking Tools Tagged with MBSA, mbsacli, mbsacli.exe, Microsoft, Microsoft Security Baseline Analyzer, patches, updates

Wednesday, May 11, 2011 6:59 PM Reply | Quote Answers 0

My feeling is that it is Step 2 that is fixing the issue but I don't have any hard proof of this. If you haven't already, you may want to check the MBSA FAQ located here: http://technet.microsoft.com/en-us/security/cc184922specifically under the sections titled, "How can I scan a computer that is protected by a firewall" I was getting the above errors using the MBSA. The best remedy is to copy the entire disc contents to the local drive, and run it for a more complete job.

mbsacli.exe /r [IP_address]-[IP_address] Scans all hosts withing the specified range of IP addresses. When downloading the Microsoft Update offline catalog (wsusscan.cab) before each attempt to scan, downloaded files are checked for a valid Microsoft digital signature before being used. Use this parameter to scan computers whose assigned Update Services servers are not available. have a peek here Bill James 2007-03-13 04:00:57 UTC PermalinkRaw Message Huh?

mbsacli.exe /o [template] Specifies the template that MBSA uses when naming the XML output file. Technet Forums Understanding MBSA 2.3 (Microsoft Baseline Security Analyzer) 3/26/2014 6 Comments Microsoft Baseline Security Analyzer (MBSA) is an easy-to-use tool that helps determine the security state of your computer Updates that are not approved on the computer's Update Services server are reported as though they were approved. Internet Explorer 5.01 or later.

About Us PC Review is a computing review website with helpful tech support forums staffed by PC experts. Select the General tab, and in the Temporary Internet files window, click Delete Cookies, and click OK. 3. mbsacli /listfile computernames.txt /n os+iis+sql+password Scans all hosts listed in the computernames.txt file for security updates, but does not scan for administrative vulnerabilities Further reference If you have questions about the Click Start, Run, type: inetcpl.cpl and press Enter. 2.

Please join our friendly community by clicking the button below - it only takes a few seconds and is totally free. Specifically, 'Check for security updates' option uses a DCOM connection to the target WUA client while the other scan settings 'Check for weak passwords, etc." use specific UDP/TCP ports as indicated Other recent topics Remote Administration For Windows. If there are no additional catalogs, an error will be reported.

Removed/re-installed MBSA 2.2 with not effect. If you're having a computer problem, ask on our forum for advice. I re-intstalled the latest Windows Update Agent (http://go.microsoft.com/fwlink/?LinkId=43264) with the /wuforce option.