Well i think that KB971033 (WGA), 2902907 (MS Security Essentials) and 2922324 got nothing to do in this batch. Oh and KB3015249 does not exist, must have been mistaken for 3075249 while gathering info from all around the web . Go abbodi1406 go !
Yep, that is a very aggressive script it's enough to uninstall the updates and disable few schedule tasks
@J-Lawrence MS article states: "This article describes an update that contains some improvements to Windows Update Client in Windows 7 Service Pack 1 (SP1) and Windows Server 2008 R2 SP1", looks as suspicious as 3075851 is.
Since the Telemetry is going to invade, one way or another, your Windows 7, i suggest to uninstall/hide the updates below if you don't use the Remote Desktop Services: 1. kb2574819 2. kb2592687 3. kb2830477
@OP There is a way to detect to see if the updates are installed. Uninstall them and block them as well I can automate this . This means we can force it so that the updates are not installed again. I will throw you a PM with the relevant script necessary to automate this. We need to test it out!
This thread and a thread of the same purpose over at MSFN don't list the same updates. Which one is correct?
The KBs are the same so the script should work on 7 and 8. @ MJ: Dang it I'm 99% done with it. I even tested the script only the import-module stuff was giving me issues because i needed to run a execution bypass. I wanna fully 100% script before posting it on the forum thou
Please guys, check the size of your CBS.log file after the reboot from running one of these scripts. I've seen some weird things lately and can't imagine the why of it. This is the script I used: powershell get-hotfix -id kb2977759,kb2990214,kb2952664,kb3021917,kb3022345,kb3068708,kb3035583,kb3044374,kb2976978,kb3050265,kb3075249,kb3080149 @ECHO off COLOR 16 ECHO ECHO Removing Windows 10 Update offers ECHO ver 08/20/2015 start /wait wusa /uninstall /kb:2977759 /quiet /norestart start /wait wusa /uninstall /kb:2990214 /quiet /norestart start /wait wusa /uninstall /kb:2952664 /quiet /norestart start /wait wusa /uninstall /kb:3021917 /quiet /norestart start /wait wusa /uninstall /kb:3022345 /quiet /norestart start /wait wusa /uninstall /kb:3068708 /quiet /norestart start /wait wusa /uninstall /kb:3035583 /quiet /norestart start /wait wusa /uninstall /kb:3044374 /quiet /norestart start /wait wusa /uninstall /kb:2976978 /quiet /norestart start /wait wusa /uninstall /kb:3050265 /quiet /norestart start /wait wusa /uninstall /kb:3075249 /quiet /norestart start /wait wusa /uninstall /kb:3080149 /quiet /norestart ECHO ECHO Spyware were sucessfully uninstalled! ECHO =========================================== ECHO ECHO Don't forget disable these updates: ECHO Windows 7: ECHO =========================================== ECHO KB2977759, KB2990214, KB2952664, KB3021917, ECHO KB3022345, KB3068708, KB3035583, KB3075249 ECHO and KB3080149 ECHO Windows 8/8.1: ECHO =========================================== ECHO KB3022345, KB3068708, KB3035583, KB3044374 ECHO KB2976978, KB3075249 and KB3080149 ECHO =========================================== ECHO ECHO Press any key to restart. ECHO PAUSE C:\Windows\System32\shutdown.exe /r /t 10 /c "This system will restart in 10 seconds" EXIT
I already used the DWS LITE Build 345 by Nummer. And thank you Daz for your brilliant mind and help Here is my log of DWS using Windows 7 Spoiler [19:51:43] Add to hosts - vortex.data.microsoft.com [19:51:43] Add to hosts - vortex-win.data.microsoft.com [19:51:43] Add to hosts - telecommand.telemetry.microsoft.com [19:51:43] Add to hosts - telecommand.telemetry.microsoft.com.nsatc.net [19:51:44] Add to hosts - oca.telemetry.microsoft.com [19:51:44] Add to hosts - sqm.telemetry.microsoft.com [19:51:44] Add to hosts - sqm.telemetry.microsoft.com.nsatc.net [19:51:44] Add to hosts - watson.telemetry.microsoft.com [19:51:44] Add to hosts - watson.telemetry.microsoft.com.nsatc.net [19:51:44] Add to hosts - redir.metaservices.microsoft.com [19:51:44] Add to hosts - choice.microsoft.com [19:51:44] Add to hosts - choice.microsoft.com.nsatc.net [19:51:44] Add to hosts - wes.df.telemetry.microsoft.com [19:51:44] Add to hosts - services.wes.df.telemetry.microsoft.com [19:51:44] Add to hosts - sqm.df.telemetry.microsoft.com [19:51:44] Add to hosts - telemetry.microsoft.com [19:51:44] Add to hosts - watson.ppe.telemetry.microsoft.com [19:51:44] Add to hosts - telemetry.appex.bing.net [19:51:44] Add to hosts - telemetry.urs.microsoft.com [19:51:44] Add to hosts - telemetry.appex.bing.net:443 [19:51:44] Add to hosts - settings-sandbox.data.microsoft.com [19:51:44] Add to hosts - survey.watson.microsoft.com [19:51:44] Add to hosts - watson.live.com [19:51:44] Add to hosts - watson.microsoft.com [19:51:44] Add to hosts - statsfe2.ws.microsoft.com [19:51:44] Add to hosts - corpext.msitadfs.glbdns2.microsoft.com [19:51:44] Add to hosts - compatexchange.cloudapp.net [19:51:44] Add to hosts - a-0001.a-msedge.net [19:51:44] Add to hosts - statsfe2.update.microsoft.com.akadns.net [19:51:44] Add to hosts - sls.update.microsoft.com.akadns.net [19:51:45] Add to hosts - fe2.update.microsoft.com.akadns.net [19:51:45] Add to hosts - diagnostics.support.microsoft.com [19:51:45] Add to hosts - corp.sts.microsoft.com [19:51:45] Add to hosts - statsfe1.ws.microsoft.com [19:51:45] Add to hosts - feedback.windows.com [19:51:45] Add to hosts - feedback.microsoft-hohm.com [19:51:45] Add to hosts - feedback.search.microsoft.com [19:51:45] Add to hosts - rad.msn.com [19:51:45] Add to hosts - preview.msn.com [19:51:45] Add to hosts - ad.doubleclick.net [19:51:45] Add to hosts - ads.msn.com [19:51:45] Add to hosts - ads1.msads.net [19:51:45] Add to hosts - ads1.msn.com [19:51:45] Add to hosts - a.ads1.msn.com [19:51:45] Add to hosts - a.ads2.msn.com [19:51:45] Add to hosts - adnexus.net [19:51:45] Add to hosts - adnxs.com [19:51:45] Add to hosts - az361816.vo.msecnd.net [19:51:45] Add to hosts - az512334.vo.msecnd.net [19:51:45] Add to hosts - ssw.live.com [19:51:45] Add to hosts - ca.telemetry.microsoft.com [19:51:45] Add to hosts - i1.services.social.microsoft.com [19:51:45] Add to hosts - i1.services.social.microsoft.com.nsatc.net [19:51:45] Add to hosts - df.telemetry.microsoft.com [19:51:45] Add to hosts - reports.wes.df.telemetry.microsoft.com [19:51:45] Add to hosts - cs1.wpc.v0cdn.net [19:51:46] Add to hosts - vortex-sandbox.data.microsoft.com [19:51:46] Add to hosts - oca.telemetry.microsoft.com.nsatc.net [19:51:46] Add to hosts - pre.footprintpredict.com [19:51:46] Add to hosts - spynet2.microsoft.com [19:51:46] Add to hosts - spynetalt.microsoft.com [19:51:46] Add hosts MS complete. [19:51:50] Add Windows Firewall rule: "111.221.29.177_Block" [19:51:51] Add Windows Firewall rule: "111.221.29.253_Block" [19:51:52] Add Windows Firewall rule: "131.253.40.37_Block" [19:51:53] Add Windows Firewall rule: "134.170.30.202_Block" [19:51:53] Add Windows Firewall rule: "134.170.115.60_Block" [19:51:54] Add Windows Firewall rule: "134.170.165.248_Block" [19:51:54] Add Windows Firewall rule: "134.170.165.253_Block" [19:51:55] Add Windows Firewall rule: "134.170.185.70_Block" [19:51:55] Add Windows Firewall rule: "137.116.81.24_Block" [19:51:56] Add Windows Firewall rule: "137.117.235.16_Block" [19:51:56] Add Windows Firewall rule: "157.55.129.21_Block" [19:51:57] Add Windows Firewall rule: "157.55.133.204_Block" [19:51:57] Add Windows Firewall rule: "157.56.121.89_Block" [19:51:57] Add Windows Firewall rule: "157.56.91.77_Block" [19:51:58] Add Windows Firewall rule: "168.63.108.233_Block" [19:51:58] Add Windows Firewall rule: "184.86.56.12_Block" [19:51:58] Add Windows Firewall rule: "185.13.160.61_Block" [19:51:59] Add Windows Firewall rule: "191.232.139.254_Block" [19:51:59] Add Windows Firewall rule: "191.232.80.58_Block" [19:52:0] Add Windows Firewall rule: "191.232.80.62_Block" [19:52:0] Add Windows Firewall rule: "191.237.208.126_Block" [19:52:0] Add Windows Firewall rule: "204.79.197.200_Block" [19:52:1] Add Windows Firewall rule: "207.46.101.29_Block" [19:52:1] Add Windows Firewall rule: "207.46.114.58_Block" [19:52:2] Add Windows Firewall rule: "207.46.223.94_Block" [19:52:2] Add Windows Firewall rule: "207.68.166.254_Block" [19:52:2] Add Windows Firewall rule: "212.30.134.204_Block" [19:52:3] Add Windows Firewall rule: "212.30.134.205_Block" [19:52:3] Add Windows Firewall rule: "23.102.21.4_Block" [19:52:4] Add Windows Firewall rule: "23.99.10.11_Block" [19:52:4] Add Windows Firewall rule: "23.218.212.69_Block" [19:52:4] Add Windows Firewall rule: "64.4.54.22_Block" [19:52:5] Add Windows Firewall rule: "64.4.54.32_Block" [19:52:5] Add Windows Firewall rule: "64.4.6.100_Block" [19:52:6] Add Windows Firewall rule: "65.39.117.230_Block" [19:52:6] Add Windows Firewall rule: "65.52.100.11_Block" [19:52:6] Add Windows Firewall rule: "65.52.100.7_Block" [19:52:7] Add Windows Firewall rule: "65.52.100.9_Block" [19:52:7] Add Windows Firewall rule: "65.52.100.91_Block" [19:52:8] Add Windows Firewall rule: "65.52.100.92_Block" [19:52:8] Add Windows Firewall rule: "65.52.100.93_Block" [19:52:8] Add Windows Firewall rule: "65.52.100.94_Block" [19:52:9] Add Windows Firewall rule: "65.52.108.29_Block" [19:52:9] Add Windows Firewall rule: "65.55.108.23_Block" [19:52:10] Add Windows Firewall rule: "65.55.138.114_Block" [19:52:10] Add Windows Firewall rule: "65.55.138.126_Block" [19:52:11] Add Windows Firewall rule: "65.55.138.186_Block" [19:52:11] Add Windows Firewall rule: "65.55.252.63_Block" [19:52:11] Add Windows Firewall rule: "65.55.252.71_Block" [19:52:12] Add Windows Firewall rule: "65.55.252.92_Block" [19:52:12] Add Windows Firewall rule: "65.55.252.93_Block" [19:52:13] Add Windows Firewall rule: "65.55.29.238_Block" [19:52:13] Add Windows Firewall rule: "65.55.39.10_Block" [19:52:13] Ip list blocked [19:52:13] Disabled task: Microsoft\Office\Office ClickToRun Service Monitor [19:52:13] Disabled task: Microsoft\Office\OfficeTelemetryAgentFallBack2016 [19:52:13] Disabled task: Microsoft\Office\OfficeTelemetryAgentLogOn2016 [19:52:13] Disabled task: Microsoft\Windows\Customer Experience Improvement Program\KernelCeipTask [19:52:14] Disabled task: Microsoft\Windows\Customer Experience Improvement Program\UsbCeip [19:52:14] Disabled task: Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem [19:52:14] Disabled task: Microsoft\Windows\Shell\FamilySafetyMonitor [19:52:14] Disabled task: Microsoft\Windows\Shell\FamilySafetyRefresh [19:52:14] Disabled task: Microsoft\Windows\Application Experience\AitAgent [19:52:14] Disabled task: Microsoft\Windows\Application Experience\ProgramDataUpdater [19:52:14] Disabled task: Microsoft\Windows\Application Experience\StartupAppTask [19:52:14] Disabled task: Microsoft\Windows\Autochk\Proxy [19:52:14] Disabled task: Microsoft\Windows\Customer Experience Improvement Program\BthSQM [19:52:14] Disabled task: Microsoft\Windows\Customer Experience Improvement Program\Consolidator [19:52:14] Disabled task: Microsoft\Office\OfficeTelemetry\AgentFallBack2016 [19:52:14] Disabled task: Microsoft\Office\OfficeTelemetry\OfficeTelemetryAgentLogOn2016 [19:52:14] Disabled task: Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser [19:52:14] Disabled task: Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector [19:52:15] Disabled task: Microsoft\Windows\Maintenance\WinSAT [19:52:15] Disabled task: Microsoft\Windows\Media Center\ActivateWindowsSearch [19:52:15] Disabled task: Microsoft\Windows\Media Center\ConfigureInternetTimeService [19:52:15] Disabled task: Microsoft\Windows\Media Center\DispatchRecoveryTasks [19:52:15] Disabled task: Microsoft\Windows\Media Center\ehDRMInit [19:52:15] Disabled task: Microsoft\Windows\Media Center\InstallPlayReady [19:52:15] Disabled task: Microsoft\Windows\Media Center\mcupdate [19:52:15] Disabled task: Microsoft\Windows\Media Center\MediaCenterRecoveryTask [19:52:15] Disabled task: Microsoft\Windows\Media Center\ObjectStoreRecoveryTask [19:52:15] Disabled task: Microsoft\Windows\Media Center\OCURActivate [19:52:15] Disabled task: Microsoft\Windows\Media Center\OCURDiscovery [19:52:15] Disabled task: Microsoft\Windows\Media Center\PBDADiscovery [19:52:15] Disabled task: Microsoft\Windows\Media Center\PBDADiscoveryW1 [19:52:15] Disabled task: Microsoft\Windows\Media Center\PBDADiscoveryW2 [19:52:15] Disabled task: Microsoft\Windows\Media Center\PvrRecoveryTask [19:52:15] Disabled task: Microsoft\Windows\Media Center\PvrScheduleTask [19:52:15] Disabled task: Microsoft\Windows\Media Center\RegisterSearch [19:52:15] Disabled task: Microsoft\Windows\Media Center\ReindexSearchRoot [19:52:15] Disabled task: Microsoft\Windows\Media Center\SqlLiteRecoveryTask [19:52:16] Disabled task: Microsoft\Windows\Media Center\UpdateRecordPath [19:52:34] Remove update KB3080149 [19:52:41] Remove update KB3075249 [19:52:47] Remove update KB2952664 [19:52:54] Remove update KB3035583 [19:53:0] Remove update KB3068708 [19:53:7] Remove update KB3022345 [19:53:13] Remove update KB3021917 [19:53:20] Remove update KB2976978 [19:53:26] Remove update KB3044374 [19:53:32] Remove update KB2990214 [19:53:45] Remove update KB971033 [19:53:52] Remove update KB3075851