Commands executed by Assets Discovery

Discovery uses the following commands to collect data. More about command types and patterns

This page lists the commands executed by Discovery patterns. Discovery can run additional commands during execution, for example to format output or retrieve extra data.


次のセクションにジャンプ:

Windows

コマンドタイプパターン

SELECT * FROM Win32_Product

WMIQueryWindows_Application_Product.pat
Get-WmiObject Win32_ProductPowerShellExecuteWindows_Application_Product_PS.pat
SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WMIRegValueListWindows_Application_Reg32.pat

Get-ChildItem -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\' | Select-Object PSChildName

ソフトウェア キーごとに、次のようになります。

Get-ItemProperty -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{software}'

PowerShellExecuteWindows_Application_Reg32_PS.pat
SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\WMIRegValueListWindows_Application_Reg64.pat

Get-ChildItem -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\' | Select-Object PSChildName

ソフトウェア キーごとに、次のようになります。

Get-ItemProperty -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{software}'

PowerShellExecuteWindows_Application_Reg64_PS.pat

SELECT * FROM Win32_SoftwareFeature

WMIQueryWindows_Application_SoftwareFeature.pat
Get-WmiObject Win32_SoftwareFeaturePowerShellExecuteWindows_Application_SoftwareFeature_PS.pat
SELECT * FROM Win32_ServiceWMIQueryWindows_ApplicationServices.pat
Get-WmiObject Win32_ServicePowerShellExecuteWindows_ApplicationServices_PS.pat
SELECT * FROM Win32_ProcessorWMIQueryWindows_CPUs.pat
Get-WmiObject Win32_ProcessorPowerShellExecuteWindows_CPUs_PS.pat

docker ps -a --format "{{.ID}}"

各コンテナー:

docker inspect -f ""Name:{{println .Name}}" +
@"Image:{{println .Image}}" +
@"State:{{println .State.Status}}" +
@"Hostname:{{println .Config.Hostname}}"" + $containerId

docker stats --no-stream --format ""{{.MemUsage}}"" + $containerId

WMIQueryWindows_Docker_Container.pat

docker ps -a --format "{{.ID}}"

各コンテナー:

docker inspect -f ""Name:{{println .Name}}" +
@"Image:{{println .Image}}" +
@"State:{{println .State.Status}}" +
@"Hostname:{{println .Config.Hostname}}"" + $containerId

docker stats --no-stream --format ""{{.MemUsage}}"" + $containerId

PowerShellExecuteWindows_Docker_Container_PS.pat

SELECT * FROM Win32_LogicalDisk WHERE DriveType = 3 or DriveType = 4

SELECT * FROM Win32_LogicalDiskToPartition

SELECT * FROM Win32_DiskDriveToDiskPartition

すべてのファイルシステム:

SELECT * FROM Win32_DiskDrive WHERE DeviceID LIKE "%{deviceId}"

WMIQueryWindows_FileSystem.pat

Get-WmiObject Win32_LogicalDisk | Where-Object {$_.DriveType -eq '3' -or $_.DriveType -eq '4'}

Get-WmiObject Win32_LogicalDiskToPartition

Get-WmiObject Win32_DiskDriveToDiskPartition

すべてのファイルシステム:

Get-WmiObject Win32_DiskDrive | Where-Object {$_.DeviceID -match '{deviceId}'}

PowerShellExecuteWindows_FileSystem_PS.pat
SELECT * FROM Win32_ComputerSystemWMIQueryWindows_Hostinfo_Hostname_Model.pat
Get-WmiObject win32_computersystemPowerShellExecuteWindows_Hostinfo_Hostname_Model_PS.pat
SELECT * FROM Win32_PhysicalMemoryWMIQueryWindows_Hostinfo_RAM.pat
Get-WmiObject Win32_PhysicalMemoryPowerShellExecuteWindows_Hostinfo_RAM_PS.pat
SELECT StandardName FROM Win32_TimeZoneWMIQueryWindows_Hostinfo_Timezone.pat
Get-WmiObject Win32_TimeZone | SELECT StandardName | Format-ListPowerShellExecuteWindows_Hostinfo_Timezone_PS.pat
netstat -nWMIExecute

Windows_Hostinfo_ReferencedHosts.pat

Windows_Hostinfo_ReferencedHosts_PS.pat

SELECT * FROM Win32_BIOSWMIQueryWindows_Hostinfo_SerialNr.pat
Get-WmiObject Win32_BIOSPowerShellExecuteWindows_Hostinfo_SerialNr_PS.pat
SELECT * FROM Win32_ComputerSystemProductWMIQueryWindows_Hostinfo_Vendor_UUID.pat
Get-WmiObject Win32_ComputerSystemProductPowerShellExecuteWindows_Hostinfo_Vendor_UUID_PS.pat

SELECT * FROM Msvm_ComputerSystem

SELECT * FROM Msvm_SummaryInformation WHERE Name = '{0}'

WMIQueryWindows_HyperV_VMs.pat

Get-WmiObject -Namespace root\virtualization\v2 Msvm_ComputerSystem

Get-WmiObject -Namespace root\virtualization\v2 Msvm_SummaryInformation | Where-Object {$_.Name -eq 'vmID'}

PowerShellExecuteWindows_HyperV_VMs_PS.pat

SELECT * FROM Win32_NetworkAdapterConfiguration Where IPEnabled=true


WMIQueryWindows_NetworkInterfaces.pat
Get-WmiObject Win32_NetworkAdapterConfiguration | Where-Object {$_.IPEnabled -eq 'true'}PowerShellExecuteWindows_NetworkInterfaces_PS.pat

SELECT * FROM Win32_OperatingSystem


WMIQuery

Windows_OS.pat

Windows_Hostinfo_SystemUpTime.pat

Get-WmiObject Win32_OperatingSystemPowerShellExecute

Windows_OS_PS.pat

Windows_Hostinfo_SystemUpTime_PS.pat

SELECT * FROM Win32_QuickFixEngineering

WMIQueryWindows_Patches.pat
Get-WmiObject Win32_QuickFixEngineeringPowerShellExecuteWindows_Patches_PS.pat

SELECT * FROM Win32_DesktopMonitor

WMIQueryWindows_Peripherie_Monitor.pat
Get-WmiObject Win32_DesktopMonitorPowerShellExecuteWindows_Peripherie_Monitor_PS.pat

SELECT * FROM Win32_Printer


WMIQueryWindows_Peripherie_Printer.pat
Get-WmiObject Win32_PrinterPowerShellExecuteWindows_Peripherie_Printer_PS.pat

SELECT * FROM Win32_DiskDrive Where InterfaceType = "USB"


WMIQueryWindows_Peripherie_USB_Storage.pat
Get-WmiObject Win32_DiskDrive | Where-Object {$_.InterfaceType -eq 'USB'}PowerShellExecuteWindows_Peripherie_USB_Storage_PS.pat
SELECT * FROM Win32_VideoControllerWMIQueryWindows_Peripherie_VideoController.pat
Get-WmiObject Win32_VideoControllerPowerShellExecuteWindows_Peripherie_VideoController_PS.pat
SOFTWARE\Microsoft\Windows NT\CurrentVersionWMIRegValueWindows_ProductKey.pat
Get-ItemProperty -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion' | Select-Object DigitalProductIdPowerShellExecuteWindows_ProductKey_PS.pat
SELECT * FROM Win32_DiskDriveWMIQueryWindows_StorageDevice.pat
Get-WmiObject Win32_DiskDrivePowerShellExecuteWindows_StorageDevice_PS.pat

SELECT * FROM Win32_ComputerSystem

フォールバック コマンド:

SELECT * from Win32_NetworkLoginProfile WHERE LastLogOn IS NOT NULL

WMIQueryWindows_Hostinfo_Username.pat

Get-WmiObject win32_computersystem

フォールバック コマンド:

Get-WmiObject Win32_NetworkLoginProfile | Where-Object {$_.LastLogon -ne $null}

PowerShellExecuteWindows_Hostinfo_Username_PS.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir {drive}\tomcat*.exe/s/b

見つかったすべての tomcat.exe ファイル:

{tomcat.exe}version.bat | findstr "server number"

フォールバック コマンド:

type {tomcat-path}RELEASE-NOTES | findstr /i /c:"tomcat version"

WMIExecuteWindows_Application_Tomcat.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir -path {drive}\ -r -filter tomcat*.exe-ErrorAction SilentlyContinue | % fullname

見つかったすべての tomcat.exe ファイル:

& '{tomcat.exe}version.bat'| findstr "server number"

フォールバック コマンド:

type {tomcat-path}RELEASE-NOTES | findstr /i /c:"tomcat version"

PowerShellExecuteWindows_Application_Tomcat_PS.pat

SOFTWARE\Microsoft\Office

SOFTWARE\Wow6432Node\Microsoft\Office

各キー → サブ値:

\Registration\DigitalProductID

WMIRegValueListWindows_Application_Office_ProductKey.pat

Get-ChildItem -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\' | Select-Object PSChildName

Get-ChildItem -Path 'Registry::HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\' | Select-Object PSChildName

各キー → サブ値:

\Registration\DigitalProductID

PowerShellExecuteWindows_Application_Office_ProductKey_PS.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir {drive}\mysql.exe /s/b

見つかったすべての mysql.exe ファイル:

{mysql.exe} -u $$login$$ -p$$password$$ -e"SELECT table_schema AS "Database name", Round(Sum(data_length + index_length) / 1024 / 1024, 0)  AS "Size (MB)" FROM information_schema.TABLES GROUP BY table_schema;"

WMIExecuteWindows_Application_mySQL-DBs.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir -path {drive}\ -r -filter mysql.exe -ErrorAction SilentlyContinue | % fullname

見つかったすべての mysql.exe ファイル:

& '{mysql.exe}'-u $$login$$ -p$$password$$ -e'SELECT table_schema AS \""Database name\"", Round(Sum(data_length + index_length) / 1024 / 1024, 0)  AS \""Size (MB)\"" FROM information_schema.TABLES GROUP BY table_schema;'

PowerShellExecuteWindows_Application_mySQL-DBs_PS.pat
sqlcmd -Q "SELECT DB.name, SUM(CASE WHEN type = 0 THEN MF.size * 8 / 1024 ELSE 0 END) AS DataFileSizeMB, SUM(CASE WHEN type = 1 THEN MF.size * 8 / 1024 ELSE 0 END) AS LogFileSizeMB FROM sys.master_files MF JOIN sys.databases DB ON DB.database_id = MF.database_id GROUP BY DB.name"

WMIExecute

PowerShellExecute

Windows_Application_MSSQL-DBs.pat

Windows_Application_MSSQL-DBs_PS.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir {drive}\psql.exe /s/b

見つかったすべての psql.exe ファイル:

[set "PGPASSWORD=$$password$$"]"{psql.exe}"-h localhost --username=$$login$$ -c "\l+"
WMIExecuteWindows_Application_PostgrSQL-DBs.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir -path {drive}\ -r -filter psql.exe -ErrorAction SilentlyContinue | % fullname

見つかったすべての psql.exe ファイル:

$env:PGPASSWORD='$$password$$'; &'{psql.exe}'-h localhost --username=postgres -c "\l+";$env:PGPASSWORD=''
PowerShellExecuteWindows_Application_PostgrSQL-DBs_PS.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir {drive}\pom.xml /s /b | findstr "atlassian.*-web"

見つかったすべての pom.xml ファイル:

type "{pom.xml}"| findstr "parent version"
WMIExecute

Windows_Application_Atlassian-JIRA.pat

Windows_Application_Atlassian-Confluence.pat

Windows_Application_Atlassian-Bamboo.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir -path {drive}\ -r -filter pom.xml -ErrorAction SilentlyContinue | % fullname

見つかったすべての pom.xml ファイル:

type '{pom.xml}'| findstr "parent version"

PowerShellExecute

Windows_Application_Atlassian-JIRA_PS.pat

Windows_Application_Atlassian-Confluence_PS.pat

Windows_Application_Atlassian-Bamboo_PS.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir {drive}\MANIFEST.MF /i | findstr "bitbucket"

見つかったすべての MANIFEST.MF ファイルについて、

type "{MANIFEST.MF}" | findstr /I "implementation-version"
WMIExecuteWindows_Application_Atlassian-BitBucket.pat

wmic logicaldisk where drivetype=3 get caption | findstr ":"

すべてのドライブ:

dir -path {drive}\ -r -filter MANIFEST.MF -ErrorAction SilentlyContinue | % fullname | findstr /i ""bitbucket"

見つかったすべての MANIFEST.MF ファイル:

type '{MANIFEST.MF}' | findstr "implementation-version"
PowerShellExecuteWindows_Application_Atlassian-BitBucket_PS.pat

使用データベースの設定を読み取るアトラシアン製品:

dir {drive}\dbconfig.xml /s /b | findstr /i "<productName>"

見つかったすべての dbconfig.xml ファイル:

type "{dbconfig}" | findstr "jdbc:"

WMIExecute

Windows_Application_Atlassian-JIRA.pat

Windows_Application_Atlassian-Confluence.pat

Windows_Application_Atlassian-Bamboo.pat

Windows_Application_Atlassian-BitBucket.pat

使用データベースの設定を読み取るアトラシアン製品:

dir -path {drive}\ -r -filter dbconfig.xml -ErrorAction SilentlyContinue | % fullname | findstr /i "<productName>"

見つかったすべての dbconfig.xml ファイル:

type "{dbconfig}" | findstr "jdbc:"

PowerShellExecute

Windows_Application_Atlassian-JIRA_PS.pat

Windows_Application_Atlassian-Confluence_PS.pat

Windows_Application_Atlassian-Bamboo_PS.pat

Windows_Application_Atlassian-BitBucket_PS.pat

Linux

Discovery automatically adds | col -b to all executed commands to disable colored outputs.

コマンドタイプパターン

last | egrep 'tty|pts'

SSHExecuteLinux_Hostinfo_Username.pat
COLUMNS=256 dpkg -lSSHExecuteLinux_Application_DPK.pat
rpm -qa --queryformat 'begin\nname:%{NAME}\nversion:%{VERSION}\nrelease:%{RELEASE}\nvendor:%{VENDOR}\ndescription:%{SUMMARY}\n'SSHExecuteLinux_Application_RPM.pat
sudo qlist -IUCvSSHExecuteLinux_Application_QLIST.pat
egrep '^(model name|cpu MHz|[pP]rocessor|physical id|cpu cores)' /proc/cpuinfoSSHExecuteLinux_CPUs.pat

docker ps -a --no-trunc --format "{{.ID}} {{.Status}}"

各コンテナー:

docker inspect -f ""Name:{{println .Name}}" +
@"Image:{{println .Image}}" +
@"State:{{println .State.Status}}" +
@"Hostname:{{println .Config.Hostname}}"" + $containerId

docker stats --no-stream --format ""{{.MemUsage}}"" + $containerId

SSHExecuteLinux_Docker_Container.pat
df -BMB | grep "^/dev"SSHExecuteLinux_FileSystem.pat
rm ~/.bash_history -f && history -cSSHExecuteLinux_Host_Clear_Command_History.pat

ホスト名

OS チェック コマンド:

uname -o -r -i -m && cat /etc/*release && lsb_release -a

Solaris システム:

check-hostname | awk '{ print $NF }'

その他すべての Linux システム:

hostname --fqdn

SSHExecuteLinux_Hostinfo_Hostname.pat

dmesg | grep -i 'hypervisor detected'

フォールバック コマンド:

systemd-detect-virt

hostnamectl | grep -i 'virtualization'

sudo virt-what

SSHExecuteLinux_Hostinfo_Hypervisor.pat
sudo dmidecode -t system | grep 'Product'SSHExecuteLinux_Hostinfo_Model.pat
egrep '^MemTotal' /proc/meminfoSSHExecuteLinux_Hostinfo_RAM.pat

netstat -tun

フォールバック コマンド:

netstat -an

SSHExecuteLinux_Hostinfo_ReferencedHosts.pat

sudo dmidecode -t system | grep 'Serial Number'

SSHExecuteLinux_Hostinfo_SerialNr.pat

uptime | sed -E 's/^[^,]*up *//; s/, *[[:digit:]]* users.*//;s/min/minutes/; s/([[:digit:]]+):0?([[:digit:]]+)/\1 hours, \2 minutes/'

フォールバック コマンド:

cat /proc/uptime

SSHExecuteLinux_Hostinfo_SystemUpTime.pat
sudo dmidecode -t system | grep 'UUID'SSHExecuteLinux_Hostinfo_UUID.pat

sudo dmidecode -t system | grep 'Manufacturer'

フォールバック コマンド:

cat /sys/class/dmi/id/sys_vendor

SSHExecuteLinux_Hostinfo_Vendor.pat

timedatectl | grep 'Time zone'

フォールバック コマンド:

date '+%Z %z'

SSHExecuteLinux_Hostinfo_Timezone.pat

ifconfig -a

フォールバック コマンド:

sudo ip addr show

SSHExecute

Linux_NetworkInterfaces.pat

sudo ip route show | grep 'default'SSHExecute

Linux_NetworkInterfaces.pat

Linux_NetworkInterfaces_IA.pat


ip addrSSHExecuteLinux_NetworkInterfaces_IA.pat
uname -o -r -i -m && cat /etc/*release && lsb_release -aSSHExecuteLinux_OS.pat
lpstat -tSSHExecuteLinux_Peripherie_Printer.pat
lsusbSSHExecuteLinux_Peripherie_USB_Storage.pat
lsusb -D /dev/bus/usb/{0}/{1} | grep -E 'evice:|id|Class'SSHExecuteLinux_Peripherie_USB_Storage.pat
lsblk -e 11,1 -dbP --output NAME,MAJ:MIN,VENDOR,MODEL,SERIAL,LABEL,UUID,SIZE,REV,TYPE,STATESSHExecuteLinux_StorageDevice.pat

VBoxManage list vms

各仮想マシン:

VBoxManage showvminfo {0} --machinereadable

SSHExecuteLinux_VBox_VMs.pat

xe vm-list params=uuid is-control-domain=false is-a-snapshot=false --minimal

各仮想マシン:

xe vm-list params=name-label uuid={1} --minimal

xe vm-list params=name-description uuid={1} --minimal

xe vm-list params=power-state uuid={1} --minimal

xe vm-list params=memory-static-maxe uuid={1} --minimal

xe vm-list params=networks uuid={1} --minimal

xe vm-list params=VCPUs-number uuid={1} --minimal

SSHExecuteLinux_Xen_VMs.pat

sudo service --status-all

sudo rc-status --all | grep -F '[''

sudo systemctl list-unit-files --type=service |  egrep 'enabled|disabled'

SSHExecuteLinux_ApplicationServices.pat
sudo mysql -u $$login$$ -p$$password$$ -e "SELECT table_schema AS \"Database name\", Round(Sum(data_length + index_length) / 1024 / 1024, 0)  AS \"Size (MB)\" FROM information_schema.TABLES GROUP BY table_schema;"SSHExecuteLinux_Application_mySQL-DBs.pat

echo $$password$$ | sudo -S -u $$login$$ psql -c "\l+"

フォールバック コマンド:

echo $$password$$ | sudo -S -u $$login$$ psql -h localhost -c "\l+"

SSHExecuteLinux_Application_PostgreSQL-DBs.pat

sudo find / -iname "pom.xml"| grep 'atlassian.*-web'

見つかったすべての pom.xml ファイル:

sed -n '/<parent>/,/<\/parent>/H; /<parent>/h; /\/parent/{x;s/<parent>\(.*[^\n]\)\n*<\/parent>/\1/p;}' {pom.xml}

SSHExecute

Linux_Application_Atlassian-JIRA.pat

Linux_Application_Atlassian-Confluence.pat

Linux_Application_Atlassian-Bamboo.pat

sudo find / -iname "MANIFEST.MF" | grep 'bitbucket'

見つかったすべての MANIFEST.MF ファイル:

cat {MANIFEST.MF} | grep -i "implementation-version"
SSHExecuteLinux_Application_Atlassian-BitBucket.pat

使用データベースの設定を読み取るアトラシアン製品:

sudo find / -iname ""dbconfig.xml"" | grep '<productName>'

見つかったすべての dbconfig.xml ファイル:

cat {dbconfig} | grep '<url>jdbc:'

SSHExecute

Linux_Application_Atlassian-JIRA.pat

Linux_Application_Atlassian-Confluence.pat

Linux_Application_Atlassian-Bamboo.pat

Linux_Application_Atlassian-BitBucket.pat


MacOS

コマンドタイプパターン
system_profiler SPApplicationsDataTypeSSHExecuteMacOSX_Application_ApplicationsData.pat
system_profiler SPExtensionsDataTypeSSHExecuteMacOSX_Application_ExtensionsData.pat
system_profiler SPFrameworksDataTypeSSHExecuteMacOSX_Application_FrameworksData.pat
system_profiler SPPrefPaneDataTypeSSHExecuteMacOSX_Application_PrefPaneData.pat
launchctl listSSHExecuteMacOSX_ApplicationServices.pat
(sysctl -n machdep.cpu.brand_string)& (system_profiler | grep -e 'Processor ' -e Cores -e 'Number of Processors')SSHExecuteMacOSX_CPUs.pat
df -lk | grep "^/dev"SSHExecuteMacOSX_FileSystem.pat
host "$(hostname -s)"SSHExecuteMacOSX_Hostinfo_FQDN.pat
sysctl hw.memsizeSSHExecuteMacOSX_Hostinfo_RAM.pat
system_profiler | grep -e 'Model Name: ' -e 'Model Identifier: ' -e 'Memory: ' -e 'Serial Number (system): ' -e 'Hardware UUID: 'SSHExecuteMacOSX_Hostinfo.pat
sudo systemsetup -gettimezoneSSHExecuteMacOSX_Hostinfo_Timezone.pat
sw_versSSHExecuteMacOSX_OS.pat
system_profiler -xml SPUSBDataTypeSSHExecuteMacOSX_Peripherie_USB_Storage.pat
稼働時間SSHExecuteMacOSX_UpTime.pat


SNMP

コマンドタイプパターン
1.3.6.1.2.1.1.3.0;1.3.6.1.2.1.1.4.0;1.3.6.1.2.1.1.5.0;1.3.6.1.2.1.1.6.0;1.3.6.1.4.1.2021.4.5.0SNMP_GETSNMP_Deviceinfo_Default.pat
1.3.6.1.4.1.2021.4.5.0;1.3.6.1.4.1.2021.4.6.0;1.3.6.1.4.1.2021.4.11.0SNMP_GETSNMP_Deviceinfo_ExtExampleRAM.pat
1.3.6.1.2.1.2.2.1.2;1.3.6.1.2.1.4.20.1.2SNMP_WALKSNMP_Deviceinfo_Network.pat


その他

コマンドタイプパターン
HostSystemSSHExecuteESXi_HostSystem.pat
VirtualMachineSSHExecuteESXi_VirtualMachines.pat
show memorySSHExecuteIBM_DataPower_Hostinfo_ShowMemory.pat
show versionSSHExecute

IBM_DataPower_Hostinfo_ShowNetwork-Interface.pat

IBM_DataPower_Hostinfo_ShowVersion.pat

show systemSSHExecuteIBM_DataPower_Hostinfo_ShowSystem.pat
pkginfo -lSSHExecuteSolaris_Application.pat
psrinfo -pvSSHExecuteSolaris_CPUs.pat
prtconf | grep MemorySSHExecuteSolaris_Hostinfo_RAM.pat
smbios -t SMB_TYPE_SYSTEMSSHExecuteSolaris_Hostinfo_System.pat
kstat -p unix:0:system_misc:boot_time | nawk '{printf "%d\n", srand()-$2}'SSHExecuteSolaris_Hostinfo_SystemUpTime.pat
nlsadm get-timezoneSSHExecuteSolaris_Hostinfo_Timezone.pat

discoRemote.cmd commands

When you're using Asset Discovery for scanning, system monitoring tools detect incoming commands related to the execution of discoRemote.cmd. This is a temporary process that is executed by patterns with the WMIExecute process type. More about discoRemode.cmd commands

Last modified on Mar 13, 2025

この内容はお役に立ちましたか?

はい
いいえ
この記事についてのフィードバックを送信する
Powered by Confluence and Scroll Viewport.