Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations wOOdy-Soft on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Create list of current hotfixes

Status
Not open for further replies.

iLinkTech

IS-IT--Management
Nov 28, 2003
133
DE
Hi,

Maybe not the right forum but starting here - we have VPN solution that uses a home-grown end point security component. The EPS checks for running AV, anti-spyware, services, and hotfixes before allowing a VPN connection to occur.

The hotfixes component is becoming problematic do to the dynamic nature of Windows hotfixes. While older computers have all of the hotfixes installed, newer computers that are patched w/ WSUS or Windows Update when they are provisioned and are up-to-date (per the Windows Update check) end up missing some of the older hotfixes that were previously valid and are listed in the catalog that the EPS uses when checking the client.

I would like to either have a tool that could query for hotfixes that are current in the "here-and-now" or a reference site that lists all of the hotfixes that have not been replaced by newer hotfixes for a given build (XPSP2, W2K SP4, etc). I could then compare the information in this list with what is in the EPS catalog and make the necessary changes before pushing the update out to my clients.

I found the Microsoft version of a list ( and that will probably provide the info but I'm wondering does anyone has a more elegant solution?

Thanks...
 
Thanks for the quick reply,

I'm not sure - that looks like it queries a computer for its list of hotfixes (probably reading from the registry). The problem is that old hotfix information stays in the registry even if the hotfix has been superseded by a newer hotfix. New computers being provisioned via WSUS / WAU would not get the superseded hotfixes and still have problems w/ the hotfix check.

I need to be able to get a "real-time" list of sorts - maybe parsing the mssecure.xml file that is part of MBSA but w/o all of the extra "hub-bub" that goes w/ that program.

Thanks though...looks like a neat program!
 
A quote from Bcastner.

"To get a list of installed Hotfixes:
Open a Command Prompt window by typing CMD.EXE in Start, Run dialog. Then type the following command in the prompt:

wmic qfe list full /format:htable >C:\hotfixes.htm

Wait for few seconds, and then open the C:\hotfixes.htm file which contains the list of fixes installed in your computer".

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top