Sledgehammer - Windows 10 Update Control

Discussion in 'MDL Projects and Applications' started by pf100, Nov 28, 2016.

  1. s1ave77

    s1ave77 Has left at his own request

    Aug 15, 2012
    16,093
    24,397
    340
    Note the v2 for KB4458469 :g:.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  2. app_raiser

    app_raiser MDL Junior Member

    Mar 18, 2018
    93
    42
    0
    i'm not surprised RS5 becomes a real challenge..

    thank you again for your ongoing work on this!!
     
  3. pf100

    pf100 Duct Tape Coder

    Oct 22, 2010
    2,067
    3,455
    90
    @Lars220 MSIX at first glance appears to be a new way to package apps and programs, but I wouldn't be surprised if they made things tougher for me. I'm familiar with how locked down IOS is on iPhones (I'm jailbroken and can study all the files in IOS) and it does seem that MSFT is trying to lock Windows down more and more a little at a time using IOS as a model. I can manipulate and edit files in IOS to make it do what I want. It's basically just locked down linux or BSD. But, yeah, it's a constant battle, that's for sure. More and more jailbreak devs are throwing in the towel nowadays because things have gotten too hard and only the best of the best are still standing. But with things getting harder to control updates there may be a point where I have to give up if my approach of locking system files becomes no longer possible, so I'll just pass the torch to others who use other methods that still work. I'm glad that there are so many different methods of controlling updates, because the day may come when only one or two still work. That day is not today, so until then I'll keep going. Having said all that I don't see how they can stop the ability for me to manipulate system files, but you never know. It may even come to a point where several devs have to work on one method alone. We'll see.
     
  4. app_raiser

    app_raiser MDL Junior Member

    Mar 18, 2018
    93
    42
    0
    #766 app_raiser, Oct 1, 2018
    Last edited: Oct 1, 2018
    i had to waste almost 24 hours to bring my windows 10 1607 back under control..

    again, exactly what i expected became truth..

    but it's even worse, microsoft prepared very well for (since june) this step, pls -> take a look in the system32 folder and get surprised..

    i discovered an app called "ms remote support", this would enable an ms remote agent to support me, my user profile got "roamed".. i saw messages like never before... ms replaced almost all drivers in the system step by step... i'm tired... replaced my win firewall interface with a wfp firewall. still i'm not sure how short the time may be i stop doing my work. i saw and said it for month again and again and loud... ms remote service is comin.

    to be clear: there is no rempl, waasmedic or whatever, no update assist.. but these files in system32... it's totally crazy what ms is doing i realized many many tasks are running even when they seem disabled, got hard laggs.. then i deleted compattelrunner - minutes later final step was resulting in a roaming profile.. i'm tired..

    angry, tired, sad
     
  5. pf100

    pf100 Duct Tape Coder

    Oct 22, 2010
    2,067
    3,455
    90
    @app_raiser Were you using updated versions of the wrapper script the whole time? What version of 1607, Home, Pro, ???. Any other details you can give me? I disabled compattelrunner in previous experiments with the script in tests on my own PC, and couldn't see how it could force an update so no version of my script disables it. Of course, I don't know everything. I'll check out "ms remote support".
     
  6. Ahsan

    Ahsan MDL Addicted

    Dec 3, 2009
    838
    171
    30
    hi

    option based version 2.5.3 is kool :)
     
  7. app_raiser

    app_raiser MDL Junior Member

    Mar 18, 2018
    93
    42
    0
  8. Alfonico

    Alfonico MDL Novice

    Oct 1, 2018
    23
    12
    0
    Hello
    Many thanks for this WUMT script.
    I am using version 2.5.3.
    I did read the whole contain of the thread
    (as well as the one of https://forums.mydigitallife.net/threads/windows-update-minitool.64939/)
    The FAQ in the first page of this thread (also included in the _readme.txt file in the downloaded package) is very well done and informative.

    Questions:
    --------------
    1) Once the script has been run, Windows Defender updates are supposed to be done every 6 hours.
    The Windows Defender Security Center does show the last update, and it is OK.
    When I look the installed updates in WUMT, I don't find any recent updates of Windows Defender. Is this a normal behavior of WUMT ?

    2) WUMT shows the most recent Windows Defender available update. When trying to install it, the download works, but the installation just freezes. The notification window of WUMT shows that the update is installing, but that is all, it stays like this for ever without a success message. Is this normal ? As the updates are anyway done every 6 hours, can I ignore the Windows defender updates shown in WUMT?

    3) I suspect that the next question has nothing to do with the script or WUMT and it is a just Windows Update feature, but anyway, just in case somebody has an opinion on this, here it goes.
    WUMT showed an update for a Microsoft product.
    I selected to download and install it.
    My internet being a rheumatic paralyzed snail, the download was taking for ever. I stopped it. I copied the ink provided by WUMT and download it with a download manager that was able to download the executable a lot faster.
    With WUMT turned off, I executed it. The execution worked OK, and the update was done, according to the closing window of the update executable.
    In WUMT, the same exact update showed again, despite the fact that I installed it outside of WUMT.
    Just to be sure, I downloaded and installed the update through WUMT. This time the update was taken into account by WUMT and didn't appear anymore in the available updates, and did show up in the installed updates.
    If I use the script to block WU, but do not use WUMT, can I install an update that I downloaded from Microsoft Update Catalog or other means and be sure that it worked even if WUMT shows it again in the available updates and not in the installed updates?

    Have a nice day.
     
  9. VDev

    VDev MDL Member

    Sep 9, 2015
    121
    64
    10
    @pf100 Is there any way to disable BITS,Delivery Optimization,System Runtime broker (or System guard) and Connected devices & telemetry services using WUMT? I see visual studio 2017 auto updates being done through BITS even if windows update service is disabled using wub.
    That's the reason I don't upgrade to VS2017 & sticking with VS2015.3
     
  10. pf100

    pf100 Duct Tape Coder

    Oct 22, 2010
    2,067
    3,455
    90
    #773 pf100, Oct 2, 2018
    Last edited: Oct 2, 2018
    (OP)
    Yes, not with WUMT, but with a custom modified version of the script, with one exception: I don't know what's involved with all the telemetry services and files used by it, so I don't know how to disable all telemetry. I'm sure that info is on this forum somewhere, but I haven't studied that. I focus on the forced update parts of Windows 10. So if you or someone could tell me how to disable all telemetry without GPO I'll see about making you a customized script.
    Edit: I hope you realize that disabling all that most likely will cripple your system.
     
  11. VDev

    VDev MDL Member

    Sep 9, 2015
    121
    64
    10
    Disabling Connected Devices and Telemetry kills off most telemetry. It is disabled on my PCs. BITS aka Background Intelligent Transfer service helps in downloading updates in background along with Win update services. Delivery optimisation works similar to p2p updating on same LANs/NAT thereby reducing network load.
    The problem comes after new windows version v1809. Its forced on users PC even when they don't need it. BITS or sih(in task scheduler) can actually heal or repair disabled windows update components and downloads update assistant to do forced updates w/o user knowledge.
    Only wub can truly disable WU for good. Newer Visual studio installers relies on Web-client aka normal download and BITS download or windows update. So, it makes sense to disable BITS too to prevent forced updates on Visual studio and break existing developing environment. Before wub, I disable BITS and WU on every OS startup manually.
     
  12. Alfonico

    Alfonico MDL Novice

    Oct 1, 2018
    23
    12
    0
    pf100
    Thanks for your very clear answers.
    How do I send you the log ?
    Regards
     
  13. pf100

    pf100 Duct Tape Coder

    Oct 22, 2010
    2,067
    3,455
    90
    1809 is not going to be forced on your computer using my script.
    The script disables the file that SIH task runs, SIHClient.exe, so that task can't do anything.
    The script removes any Update Assistant files every time you run it.
    I considered disabling BITS in the past, but I've never seen it force a Windows Update, so I never disabled it.
     
  14. VDev

    VDev MDL Member

    Sep 9, 2015
    121
    64
    10
    It wasn't WU but Visual studio 2015/17 updates.
    With your script, I don't even see the SIHclient lifting its head yet again. System Guard Runtime monitor broker and Update orchestrator service are possible culprits as well in forced feeding of WU.
     
  15. pf100

    pf100 Duct Tape Coder

    Oct 22, 2010
    2,067
    3,455
    90
    Sorry, I misunderstood parts of your post. I'll look into this.