Ask Learn
Preview
Ask Learn is an AI assistant that can answer questions, clarify concepts, and define terms using trusted Microsoft documentation.
Please sign in to use Ask Learn.
Sign inThis browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Note
Access to this page requires authorization. You can try signing in or changing directories.
Access to this page requires authorization. You can try changing directories.
The MBSA tool can be downloaded from the Microsoft.com website. The current address for version 2.1 is https://www.microsoft.com/downloads/details.aspx?familyid=F32921AF-9DBE-4DCE-889E-ECF997EB18E9&displaylang=en.
MBSA can be run offline (if the machine being used to scan is not connected to the Internet). If using it in this configuration, it is necessary to ensure the latest updates are used.
Once you have installed the latest updates, follow the steps below to run the scans.
Create a new text file called ‘computers.txt’ and list the names of the servers to be scanned – as shown in Figure 1 below. This should be saved on the computer being used to run the scan.
Figure 1: Computers.txt file contents
Open a command prompt and navigate to ‘C:\Program Files\Microsoft Baseline Security Analyzer 2’
Run the following command (This assumes that the wsusscn2.cab and the text file ‘computers.txt’ have been saved into the root of the C: drive.:
Mbsacli /catalog c:\wsusscn2.cab /listfile c:\computers.txt /wi /nvc /nd
/wi = show all updates even if not approved on the WSUS server.
/nvc = Do not check for a new version of MBSA.
/nd = Do not download any files from the Microsoft.com web site when scanning.
Wait for the scan to complete.
Open the MBSA console from the Start Menu.
Click ‘View existing security scan report’.
Ask Learn is an AI assistant that can answer questions, clarify concepts, and define terms using trusted Microsoft documentation.
Please sign in to use Ask Learn.
Sign in