Get-CimInstance -ClassName Win32_BIOS -Property biosversion, serialnumber, ReleaseDate | fl biosversion, serialnumber, ReleaseDate
biosversion : {ALASKA - 1072009, ADLNV104, American Megatrends - 5001A}
serialnumber : BN1003LG21808
ReleaseDate : 2/6/2023 1:00:00 AM
[System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI PK).bytes) -match “DO NOT TRUST|DO NOT SHIP”
True
medium.com/@crypticrisk/how-to-detect-pkfail-on-windows-machines-15a76d8368db
SignatureType : EFI_CERT_X509_GUID
Signature : @{SignatureOwner=26dc4851-195f-4ae1-9a19-fbf883bbb35e; SignatureData=[Subject]
CN=DO NOT TRUST - AMI Test PK
[Issuer]
CN=DO NOT TRUST - AMI Test PK
[Serial Number]
F73D2E3C9364AEB04C8395FDF7ED32A7
[Not Before]
9/8/2021 4:35:29 PM
[Not After]
9/8/2025 4:35:28 PM
[Thumbprint]
2B6CCDE909230F89447D8A583D03A432D686FAEE
}