Quantcast
Channel: WSUS Forum
Viewing all 12331 articles
Browse latest View live

wsus driver deployment

$
0
0

need to deploy a driver by WSUS.

enabled Drivers node (Products and Classifications)

imported the driver from MS Catalog. When comes to approval it shows:

the selected update requires user input. I cannot accept popup on user end for driver installation confirmation.

Is there a way to eliminate user acceptance popup? If not I have to use GPO for deployment.


--- When you hit a wrong note its the next note that makes it good or bad. --- Miles Davis


WSUS constantly chrashes (Unexpected Error 7053)

$
0
0

Hello,

I´ve recently updated my WSUS Environment from Server 2008R2 to Server 2012R2.

Yesterday i perfomed the 3rd reinstallation of WSUS Role in the last 2 Weeks to prevent that something went wrong with the former installations.

I deleted everything, including sudb to have a real fresh environment.

Since the first installation i constantly get "unexpected error" crashes of the console at some points.
This doesnt´s stress me that much because it was not so often and i could perfom the actions by deleting the wsus file and start over.

But now, If i click on unassigned devices the WSUS Console crashs with an "unexpected Error". I´ve already performed the Steps suggested solutions (deleting WSUS File under %appdata%, add feature HTTP Activation for .net FW 4.5 etc.)

I constantly get a crash error 7053 wenn i try to see my unassigned devices.

Here is the complete XML Error Log: The WSUS administration console has encountered an unexpected error. This may be a transient error; try restarting the administration console. If this error persists, Try removing the persisted preferences for the console by deleting the wsus file under %appdata%\Microsoft\MMC\. The WSUS administration console has encountered an unexpected error. This may be a transient error; try restarting the administration console. If this error persists, Try removing the persisted preferences for the console by deleting the wsus file under %appdata%\Microsoft\MMC\. System.Xml.XmlException -- '', hexadecimal value 0x16, is an invalid character. Line 1, position 38948. Source System.Xml Stack Trace: at System.Xml.XmlTextReaderImpl.Throw(Exception e) at System.Xml.XmlTextReaderImpl.ParseNumericCharRefInline(Int32 startPos, Boolean expand, StringBuilder internalSubsetBuilder, Int32& charCount, EntityType& entityType) at System.Xml.XmlTextReaderImpl.ParseCharRefInline(Int32 startPos, Int32& charCount, EntityType& entityType) at System.Xml.XmlTextReaderImpl.ParseText(Int32& startPos, Int32& endPos, Int32& outOrChars) at System.Xml.XmlTextReaderImpl.ParseText() at System.Xml.XmlTextReaderImpl.ParseElementContent() at System.Xml.XmlReader.ReadStartElement() at System.Xml.Serialization.XmlSerializationReader.ReadStringValue() at System.Xml.Serialization.XmlSerializationReader.ReadTypedPrimitive(XmlQualifiedName type, Boolean elementCanBeType) at Microsoft.Xml.Serialization.GeneratedAssembly.XmlSerializationReaderApiRemotingCompressionProxy.Read1_Object(Boolean isNullable, Boolean checkType) at Microsoft.Xml.Serialization.GeneratedAssembly.XmlSerializationReaderApiRemotingCompressionProxy.Read2_GenericReadableRow(Boolean isNullable, Boolean checkType) at Microsoft.Xml.Serialization.GeneratedAssembly.XmlSerializationReaderApiRemotingCompressionProxy.Read339_Item() at System.Xml.Serialization.XmlSerializer.Deserialize(XmlReader xmlReader, String encodingStyle, XmlDeserializationEvents events) ** this exception was nested inside of the following exception ** System.InvalidOperationException -- There is an error in XML document (1, 38948). Source System.Xml Stack Trace: at System.Xml.Serialization.XmlSerializer.Deserialize(XmlReader xmlReader, String encodingStyle, XmlDeserializationEvents events) at System.Web.Services.Protocols.SoapHttpClientProtocol.ReadResponse(SoapClientMessage message, WebResponse response, Stream responseStream, Boolean asyncCall) at System.Web.Services.Protocols.SoapHttpClientProtocol.Invoke(String methodName, Object[] parameters) at Microsoft.UpdateServices.Internal.ApiRemoting.ExecuteSPSearchComputers(String computerTargetScopeXml) at Microsoft.UpdateServices.Internal.DatabaseAccess.AdminDataAccessProxy.ExecuteSPSearchComputers(String computerTargetScopeXml) at Microsoft.UpdateServices.Internal.BaseApi.ComputerTarget.SearchComputerTargets(ComputerTargetScope searchScope, UpdateServer updateServer) at Microsoft.UpdateServices.UI.AdminApiAccess.ComputerTargetManager.GetComputerTargets(ComputerTargetScope searchScope) at Microsoft.UpdateServices.UI.AdminApiAccess.BulkComputerPropertiesCache.GetAndCacheComputers(ExtendedUpdateScope updateScope, ComputerTargetScope computerTargetScope) at Microsoft.UpdateServices.UI.SnapIn.Pages.ComputersListPage.GetListRows()

As workaround, i´ve activated the Client Side Targeting to have my Clients and Servers added to WSUS Groups, but to be honest i´m one step away from reinstalling WSUS at Server 2008R2.

What is wrong with my installation?

Kind Regards
Boris

WeakSha1ThirdPartyFlags and WeakSha1ThirdPartyAfterTime registry keys removed by latest windows updates KB3123479

$
0
0

Hello,

The latest windows updates remove the following registry keys from the path below:

HKLM\Software\Microsoft\Cryptography\OID\Encoding Type 0\CertDllCreateCertificateChainEngine\Config\Default\

WeakSha1ThirdPartyFlags

WeakSha1ThirdPartyAfterTime

Nessus scans now show the device has a risk which it didn’t have before the latest updates.

I have confirmed on a test machine that the keys existed before the updates, but disappeared after the reboot and KB3123479 will not install on the machine as it says it is already installed.

Can someone please advise if this is expected behaviour or a problem with the latest batch of updates?

Many thanks

New Rollup Updates failing repeatedly KB3192406 and KB3197877

$
0
0

I have an AD server that keeps failing the new rollup updates.  This server has never had problems with updates before.

I turned on a bunch of debugging, but I really can't make heads or tails out of what is failing.  The server spends 15 minutes installing and then another 50 minutes uninstalling every morning.

I've installed KB3192406 manually a couple of times, but it always fails on reboot, and uninstalls.

I finally just hid the October Preview update so my server wouldn't keep doing the reboots. Now that November has been released, it is back at it. 

Roles:

This server is an Active Directory Server, AD Certificate CA (including IIS services) and KMS Server. 

There really isn't anything else running on this server.

Any pointers on where to start looking would help.



Kevin

Windows 2016 with WSUS

$
0
0

Clients can't connect to it.

Now, here's what happened.  My previous WSUS (win2k12r2) crashed hard.  No recovery.  So I figured now would probably be a good time to do a clean win2k16 install.  I had hardware glitches but all seemed cool once I got it working.  Clients could get back to their shared drives easily (in fact, most didn't even notice a difference).

But, the update history in WSUS was gone.  This is a new WSUS instance.  It installed just fine.  Set the products and classifications just fine.  Even ran the windows update on the local box.  It connected, downloaded and installed updates.

Now the clients, all win10 pro, can't connect.  I've gone through the powershell commands of stopping the service, deleting the C:\Windows\SoftwareDistribution\* -recuse -recursive (or something like that).  And they still can't connect.

Now, I can fire up the remote admin console for WSUS and connect to WSUS just fine to administrate it. 

The last time it failed, I went into the C:\Windows\SoftwareDistribution and found a file called ReportingEvents.log  Here are the contents:

{94510F55-9758-46BD-A40C-2B1B5706D2EC} 2016-11-19 01:08:02:119-0700 1 148 [AGENT_DETECTION_FAILED] 101 {00000000-0000-0000-0000-000000000000} 0 8024401c UpdateOrchestrator Failure Software Synchronization Windows Update Client failed to detect with error 0x8024401c.
{698B6305-B93E-49C0-B3A8-BF15BB66FEC0} 2016-11-19 01:13:15:768-0700 1 148 [AGENT_DETECTION_FAILED] 101 {00000000-0000-0000-0000-000000000000} 0 8024401c UpdateOrchestrator Failure Software Synchronization Windows Update Client failed to detect with error 0x8024401c.

Also of note, The clients are all set via GPO.  It worked until the fresh install of WSUS on the fresh box.

The Windows Update Service startup is Manual (Trigger Start) and is currently started.

Server 2012 client failing to download updates from internal 2012 WSUS 8024401c

$
0
0

Hi Guys,

I have spent the last couple of days trawling around the internet looking for answers but with little luck. Having issues trying to get a Windows Server 2012 member server to pull down updates from a Windows 2012 WSUS server. The WSUS policy is configured via GPO and I have a number of over server working fine with this WSUS config, just this newly previsioned server. I have tried both a HTTP (8530) and HTTPS (8531) connection using a wildcard certificate. Both servers are in DNS and have forward / revers entries are correct. I can ping in both directions, and also brows to a webpage hosted on the WSUS IIS instance. Please find log from the client c:\windows\windowsupdate.log below:

=====================================================================================

2014-08-0812:26:12:922800508AU#############
2014-08-0812:26:12:922800508AU## START ##  AU: Search for updates
2014-08-0812:26:12:922800508AU#########
2014-08-0812:26:19:856800508Report***********  Report: Initializing static reporting data  ***********
2014-08-0812:26:19:856800508Report * OS Version = 6.2.9200.0.0.196880
2014-08-0812:26:19:856800508Report * OS Product Type = 0x00000007
2014-08-0812:26:19:871800508Report * Computer Brand = Xen
2014-08-0812:26:19:871800508Report * Computer Model = HVM domU
2014-08-0812:26:19:871800508Report * Platform Role = 1
2014-08-0812:26:19:871800508Report * AlwaysOn/AlwaysConnected (AOAC) = 0
2014-08-0812:26:19:887800508Report * Bios Revision = 4.2.amazon
2014-08-0812:26:19:887800508Report * Bios Name = Revision: 1.221 
2014-08-0812:26:19:887800508Report * Bios Release Date = 2014-05-23T00:00:00
2014-08-0812:26:19:887800508Report * Bios Sku Number unavailable.
2014-08-0812:26:19:887800508Report * Bios Vendor = Xen
2014-08-0812:26:19:887800508Report * Bios Family unavailable.
2014-08-0812:26:19:887800508Report * Bios Major Release = 4
2014-08-0812:26:19:887800508Report * Bios Minor Release = 2
2014-08-0812:26:19:887800508Report * Locale ID = 1033
2014-08-0812:26:19:903800508AU<<## SUBMITTED ## AU: Search for updates  [CallId = {95007EC3-D951-47FC-AE22-7199EE2BE3CD} ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}]
2014-08-0812:26:22:854800b78Agent*************
2014-08-0812:26:22:854800b78Agent** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2014-08-0812:26:22:854800b78Agent*********
2014-08-0812:26:22:854800b78Agent * Online = Yes; Ignore download priority = No
2014-08-0812:26:22:854800b78Agent * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2014-08-0812:26:22:854800b78Agent * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2014-08-0812:26:22:854800b78Agent * Search Scope = {Machine & All Users}
2014-08-0812:26:22:854800b78Agent * Caller SID for Applicability: S-1-5-18
2014-08-0812:26:22:854800b78MiscValidating signature for C:\Windows\SoftwareDistribution\WuRedir\9482F4B4-E343-43B6-B170-9A65BC822C77\wuredir.cab:
2014-08-0812:26:33:833800b78MiscMicrosoft signed: Yes
2014-08-0812:26:33:833800b78MiscInfrastructure signed: Yes
2014-08-0812:26:35:551800b78EPGot WSUS Client/Server URL: "http://wsus.domain.local:8530/ClientWebService/client.asmx"
2014-08-0812:26:35:551800b78SetupChecking for agent SelfUpdate
2014-08-0812:26:35:551800b78SetupClient version: Core: 7.8.9200.16731  Aux: 7.8.9200.16731
2014-08-0812:26:35:551800b78EPGot WSUS SelfUpdate URL: "http://wsus.domain.local:8530/selfupdate"
2014-08-0812:26:35:551800b78MiscValidating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab:
2014-08-0812:26:35:551800b78MiscMicrosoft signed: Yes
2014-08-0812:26:35:551800b78MiscInfrastructure signed: Yes
2014-08-0812:26:35:567800b78MiscValidating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab:
2014-08-0812:26:35:567800b78MiscMicrosoft signed: Yes
2014-08-0812:26:35:567800b78MiscInfrastructure signed: Yes
2014-08-0812:26:35:629800b78SetupSkipping SelfUpdate check based on the /SKIP directive in wuident
2014-08-0812:26:35:629800b78SetupSelfUpdate check completed.  SelfUpdate is NOT required.
2014-08-0812:26:36:597800b78PT+++++++++++  PT: Synchronizing server updates  +++++++++++
2014-08-0812:26:36:597800b78PT + ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}, Server URL = http://wsus.domain.local:8530/ClientWebService/client.asmx
2014-08-0812:26:36:613800b78AgentReading cached app categories using lifetime 604800 seconds
2014-08-0812:26:36:613800b78AgentRead 0 cached app categories
2014-08-0812:27:40:690800b78WSWARNING: Nws Failure: errorCode=0x803d0006
2014-08-0812:27:40:690800b78WSWARNING: Original error code: 0x80072ee2
2014-08-0812:27:40:705800b78WSWARNING: There was an error communicating with the endpoint at 'http://wsus.domain.local:8530/ClientWebService/client.asmx'.
2014-08-0812:27:40:705800b78WSWARNING: There was an error receiving the HTTP reply.
2014-08-0812:27:40:705800b78WSWARNING: The operation did not complete within the time allotted.
2014-08-0812:27:40:705800b78WSWARNING: The operation timed out
2014-08-0812:27:40:705800b78WSWARNING: Web service call failed with hr = 8024401c.
2014-08-0812:27:40:705800b78WSWARNING: Current service auth scheme='None'.
2014-08-0812:27:40:705800b78WSWARNING: Proxy List used: '(null)', Bypass List used: '(null)', Last Proxy used: '(null)', Last auth Schemes used: 'None'.
2014-08-0812:27:40:705800b78WSFATAL: OnCallFailure(hrCall, m_error) failed with hr=0x8024401c
2014-08-0812:27:40:705800b78PTWARNING: PTError: 0x8024401c
2014-08-0812:27:40:705800b78PTWARNING: SyncUpdates_WithRecovery failed.: 0x8024401c
2014-08-0812:27:40:705800b78PTWARNING: Sync of Updates: 0x8024401c
2014-08-0812:27:40:705800b78PTWARNING: SyncServerUpdatesInternal failed: 0x8024401c
2014-08-0812:27:40:705800b78Agent * WARNING: Failed to synchronize, error = 0x8024401C
2014-08-0812:27:40:705800b78Agent * WARNING: Exit code = 0x8024401C
2014-08-0812:27:40:705800b78Agent*********
2014-08-0812:27:40:705800b78Agent**  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2014-08-0812:27:40:705800b78Agent*************
2014-08-0812:27:40:705800b78AgentWARNING: WU client failed Searching for update with error 0x8024401c
2014-08-0812:27:40:705800d54AU>>##  RESUMED  ## AU: Search for updates [CallId = {95007EC3-D951-47FC-AE22-7199EE2BE3CD} ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}]
2014-08-0812:27:40:705800d54AU # WARNING: Search callback failed, result = 0x8024401C
2014-08-0812:27:40:705800d54AU#########
2014-08-0812:27:40:705800d54AU##  END  ##  AU: Search for updates  [CallId = {95007EC3-D951-47FC-AE22-7199EE2BE3CD} ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}]
2014-08-0812:27:40:705800d54AU#############
2014-08-0812:27:40:705800d54AUAll AU searches complete.
2014-08-0812:27:40:705800d54AU # WARNING: Failed to find updates with error code 8024401c
2014-08-0812:27:40:705800d54AUAU setting next detection timeout to 2014-08-08 15:10:21
2014-08-0812:27:45:718800634ReportREPORT EVENT: {10A3DB22-2F6F-4D02-A035-0986DDDFD1F3}2014-08-08 12:27:40:705+01001148 [AGENT_DETECTION_FAILED]101{00000000-0000-0000-0000-000000000000} 08024401c AutomaticUpdatesFailureSoftware SynchronizationWindows Update Client failed to detect with error 0x8024401c.
2014-08-0812:27:45:734800634ReportCWERReporter::HandleEvents - WER report upload completed with status 0x8
2014-08-0812:27:45:734800634ReportWER Report sent: 7.8.9200.16731 0x8024401c(0) 00000000-0000-0000-0000-000000000000 Scan 101 Managed
2014-08-0812:27:45:734800634ReportCWERReporter finishing event handling. (00000000)
2014-08-0812:31:05:257800628AUTriggering AU detection through DetectNow API
2014-08-0812:31:05:257800628AUTriggering Online detection (interactive)
2014-08-0812:31:08:271800508AU#############
2014-08-0812:31:08:271800508AU## START ##  AU: Search for updates
2014-08-0812:31:08:271800508AU#########
2014-08-0812:31:08:271800508AU<<## SUBMITTED ## AU: Search for updates  [CallId = {E5F09534-6B36-479D-B0ED-795D86019E3C} ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}]
2014-08-0812:31:08:271800b78Agent*************
2014-08-0812:31:08:271800b78Agent** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2014-08-0812:31:08:271800b78Agent*********
2014-08-0812:31:08:271800b78Agent * Online = Yes; Ignore download priority = No
2014-08-0812:31:08:271800b78Agent * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2014-08-0812:31:08:271800b78Agent * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2014-08-0812:31:08:271800b78Agent * Search Scope = {Machine & All Users}
2014-08-0812:31:08:271800b78Agent * Caller SID for Applicability: S-1-5-21-529874490-2830903538-1517016768-1630
2014-08-0812:31:08:271800b78EPGot WSUS Client/Server URL: "http://wsus.domain.local:8530/ClientWebService/client.asmx"
2014-08-0812:31:08:271800b78SetupChecking for agent SelfUpdate
2014-08-0812:31:08:271800b78SetupClient version: Core: 7.8.9200.16731  Aux: 7.8.9200.16731
2014-08-0812:31:08:271800b78EPGot WSUS SelfUpdate URL: "http://wsus.domain.local:8530/selfupdate"
2014-08-0812:31:08:271800b78MiscValidating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab:
2014-08-0812:31:08:271800b78MiscMicrosoft signed: Yes
2014-08-0812:31:08:271800b78MiscInfrastructure signed: Yes
2014-08-0812:31:08:286800b78MiscValidating signature for C:\Windows\SoftwareDistribution\SelfUpdate\wuident.cab:
2014-08-0812:31:08:286800b78MiscMicrosoft signed: Yes
2014-08-0812:31:08:286800b78MiscInfrastructure signed: Yes
2014-08-0812:31:08:286800b78SetupSkipping SelfUpdate check based on the /SKIP directive in wuident
2014-08-0812:31:08:286800b78SetupSelfUpdate check completed.  SelfUpdate is NOT required.
2014-08-0812:31:08:474800b78PT+++++++++++  PT: Synchronizing server updates  +++++++++++
2014-08-0812:31:08:474800b78PT + ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}, Server URL = http://wsus.domain.local:8530/ClientWebService/client.asmx
2014-08-0812:32:53:895800b78WSWARNING: Nws Failure: errorCode=0x803d0006
2014-08-0812:32:53:895800b78WSWARNING: Original error code: 0x80072ee2
2014-08-0812:32:53:895800b78WSWARNING: There was an error communicating with the endpoint at 'http://wsus.domain.local:8530/ClientWebService/client.asmx'.
2014-08-0812:32:53:895800b78WSWARNING: There was an error receiving the HTTP reply.
2014-08-0812:32:53:895800b78WSWARNING: The operation did not complete within the time allotted.
2014-08-0812:32:53:895800b78WSWARNING: The operation timed out
2014-08-0812:32:53:895800b78WSWARNING: Web service call failed with hr = 8024401c.
2014-08-0812:32:53:895800b78WSWARNING: Current service auth scheme='None'.
2014-08-0812:32:53:895800b78WSWARNING: Proxy List used: '(null)', Bypass List used: '(null)', Last Proxy used: '(null)', Last auth Schemes used: 'None'.
2014-08-0812:32:53:895800b78WSFATAL: OnCallFailure(hrCall, m_error) failed with hr=0x8024401c
2014-08-0812:32:53:895800b78PTWARNING: PTError: 0x8024401c
2014-08-0812:32:53:895800b78PTWARNING: SyncUpdates_WithRecovery failed.: 0x8024401c
2014-08-0812:32:53:895800b78PTWARNING: Sync of Updates: 0x8024401c
2014-08-0812:32:53:895800b78PTWARNING: SyncServerUpdatesInternal failed: 0x8024401c
2014-08-0812:32:53:895800b78Agent * WARNING: Failed to synchronize, error = 0x8024401C
2014-08-0812:32:53:895800b78Agent * WARNING: Exit code = 0x8024401C
2014-08-0812:32:53:895800b78Agent*********
2014-08-0812:32:53:895800b78Agent**  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2014-08-0812:32:53:895800b78Agent*************
2014-08-0812:32:53:895800b78AgentWARNING: WU client failed Searching for update with error 0x8024401c
2014-08-0812:32:53:895800d54AU>>##  RESUMED  ## AU: Search for updates [CallId = {E5F09534-6B36-479D-B0ED-795D86019E3C} ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}]
2014-08-0812:32:53:895800d54AU # WARNING: Search callback failed, result = 0x8024401C
2014-08-0812:32:53:895800d54AU#########
2014-08-0812:32:53:895800d54AU##  END  ##  AU: Search for updates  [CallId = {E5F09534-6B36-479D-B0ED-795D86019E3C} ServiceId = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}]
2014-08-0812:32:53:895800d54AU#############
2014-08-0812:32:53:895800d54AUAll AU searches complete.
2014-08-0812:32:53:895800d54AU # WARNING: Failed to find updates with error code 8024401c
2014-08-0812:32:53:895800d54AUAU setting next detection timeout to 2014-08-08 14:51:20

=====================================================================================

I have also tried running the following on the client machine:

regsvr32 comcat.dll /s
regsvr32 shdoc401.dll /s
regsvr32 shdoc401.dll /i /s
regsvr32 asctrls.ocx /s
regsvr32 oleaut32.dll /s
regsvr32 shdocvw.dll /I /s
regsvr32 shdocvw.dll /s
regsvr32 browseui.dll /s
regsvr32 browseui.dll /I /s
regsvr32 msrating.dll /s
regsvr32 mlang.dll /s
regsvr32 hlink.dll /s
regsvr32 mshtmled.dll /s
regsvr32 urlmon.dll /s
regsvr32 plugin.ocx /s
regsvr32 sendmail.dll /s
regsvr32 scrobj.dll /s
regsvr32 mmefxe.ocx /s
regsvr32 corpol.dll /s
regsvr32 jscript.dll /s
regsvr32 msxml.dll /s
regsvr32 imgutil.dll /s
regsvr32 thumbvw.dll /s
regsvr32 cryptext.dll /s
regsvr32 rsabase.dll /s
regsvr32 inseng.dll /s
regsvr32 iesetup.dll /i /s
regsvr32 cryptdlg.dll /s
regsvr32 actxprxy.dll /s
regsvr32 dispex.dll /s
regsvr32 occache.dll /s
regsvr32 occache.dll /i /s
regsvr32 iepeers.dll /s
regsvr32 urlmon.dll /i /s
regsvr32 cdfview.dll /s
regsvr32 webcheck.dll /s
regsvr32 mobsync.dll /s
regsvr32 pngfilt.dll /s
regsvr32 licmgr10.dll /s
regsvr32 icmfilter.dll /s
regsvr32 hhctrl.ocx /s
regsvr32 inetcfg.dll /s
regsvr32 tdc.ocx /s
regsvr32 MSR2C.DLL /s
regsvr32 msident.dll /s
regsvr32 msieftp.dll /s
regsvr32 xmsconf.ocx /s
regsvr32 ils.dll /s
regsvr32 msoeacct.dll /s
regsvr32 inetcomm.dll /s
regsvr32 msdxm.ocx /s
regsvr32 dxmasf.dll /s
regsvr32 l3codecx.ax /s
regsvr32 acelpdec.ax /s
regsvr32 mpg4ds32.ax /s
regsvr32 voxmsdec.ax /s
regsvr32 danim.dll /s
regsvr32 Daxctle.ocx /s
regsvr32 lmrt.dll /s
regsvr32 datime.dll /s
regsvr32 dxtrans.dll /s
regsvr32 dxtmsft.dll /s
regsvr32 WEBPOST.DLL /s
regsvr32 WPWIZDLL.DLL /s
regsvr32 POSTWPP.DLL /s
regsvr32 CRSWPP.DLL /s
regsvr32 FTPWPP.DLL /s
regsvr32 FPWPP.DLL /s
regsvr32 WUAPI.DLL /s
regsvr32 WUAUENG.DLL /s
regsvr32 ATL.DLL /s
regsvr32 WUCLTUI.DLL /s
regsvr32 WUPS.DLL /s
regsvr32 WUWEB.DLL /s
regsvr32 wshom.ocx /s
regsvr32 wshext.dll /s
regsvr32 vbscript.dll /s
regsvr32 scrrun.dll mstinit.exe /setup /s
regsvr32 msnsspc.dll /SspcCreateSspiReg /s
regsvr32 msapsspc.dll /SspcCreateSspiReg /s
regsvr32 /s urlmon.dll
regsvr32 /s mshtml.dll
regsvr32 /s shdocvw.dll
regsvr32 /s browseui.dll
regsvr32 /s jscript.dll
regsvr32 /s vbscript.dll
regsvr32 /s scrrun.dll
regsvr32 /s msxml.dll
regsvr32 /s actxprxy.dll
regsvr32 /s softpub.dll
regsvr32 /s wintrust.dll
regsvr32 /s dssenh.dll
regsvr32 /s rsaenh.dll
regsvr32 /s gpkcsp.dll
regsvr32 /s sccbase.dll
regsvr32 /s slbcsp.dll
regsvr32 /s cryptdlg.dll
regsvr32 /s schannel.dll
regsvr32 /s oleaut32.dll
regsvr32 /s ole32.dll
regsvr32 /s shell32.dll
regsvr32 /s initpki.dll
regsvr32 /s msscript.ocx
regsvr32 /s dispex.dll
regsvr32 jscript.dll /s
del %temp% /Q /F
del c:\wutemp /Q /F
net stop wuauserv
ren %windir%\system32\catroot2 catroot2.old
cd /d %windir%\SoftwareDistribution
rd /s DataStore /Q
regsvr32 wuapi.dll /s
regsvr32 wups.dll /s
regsvr32 wuaueng.dll /s
regsvr32 wucltui.dll /s
regsvr32 wuweb.dll /s
regsvr32 msxml.dll /s
regsvr32 msxml2.dll /s
regsvr32 msxml3.dll /s
regsvr32 urlmon.dll /s
net start wuauserv

Any suggestions would be greatly appreciated.

Many thanks,
Jon

With Powershell, how to approve "Updates are approved for a specific group" to other group

$
0
0

Hi!

I´m running scheduled tasks to approve patches to different groups at different times.

The tasks run Powershell like this:

Get-WsusUpdate -Classification All -Approval Approved -Status Any | Approve-WsusUpdate -Action Install -TargetGroupName "My_Target"

What I would like to do is:

Approve "Updates are approved for a specific group" ( let´s say "Test_group") for "My_Target"

Any way to do this?

Thx,

Tommi

Insall of SQL 2008R2 SP3 fails via wsus with errors 0x80070643

$
0
0

I have this issue with 2 Windows 2008R2 servers running SQL server 2008R2 with SP2 installed

On both servers the only update shown is for SQL 2008R2 SP3, the install fails with Windows failed to install the following update with error 0x80070643:

I have already removed the package from WSUS & re-downloaded it with the same result


Windows 7 not automatically installing updates downloaded from Server 2012R2 WSUS

$
0
0

Hello all, long time reader, first time poster.  I am running a 2012 R2 WSUS server on a test, non-domain network to work on all of the settings to meet our needs.  I have used Local GPO's on Win7 and Server 2012 R2 systems, and they have been downloading , and installing updates from the WSUS, just as I expected.  Our network computers are configured to shutdown every night at mid-night.  With that said, I don't need the computer to be restarted to install the updates.  I don't want the end user to know anything is being installed, or have them restart the computer once the updates have been installed.

I have one Win7 system with GPO "Re-prompt for restart with scheduled installations" and "Delay Restart for scheduled installation" GPO's are disabled.  Automatic updates shows there are updates ready to be installed, but it has not installed them.  This has been this way for several days.  I have restarted the PC, as well as changed the update install schedule GPO to a time that that is an hour in the future.  Once that scheduled time has passed by several hours, it still does not install the updates.  I have another Win7 configured the same exact settings, but with the 2 Restart GPO's are enabled.  It has installed, and rebooted just as expected, and everything has been installed.  Am I missing something with the settings not to require the end user to reboot?  Are there other settings that need to be configured for this to work?

Thank you in advanced.

Scott

Unsolvable 0x800705b4 error when checking for WSUS updates

$
0
0

One of the Windows 10 workstations connected to our Server 2012 WSUS server (ver.6.3.9600.16384) has stopped installing updates. It isn’t downloading the updates that similar workstations are, and the server says that nine updates are available. When you tell the workstation to check for updates, after half an hour of the moving dots it gives you this message:

I’ve tried the Windows Update Troubleshooter.  No problems detected, no change in the error message. I’ve tried recreating the softwareupdate subdirectory in Windows. Again, no change.  I’ve tried everything here https://www.thegeneralistit.com/blog/2015/10/02/fixing-windows-10-update-error-0x800705b4/ and here:  https://support.microsoft.com/en-us/help/12373/windows-update-faq  No change. I've done a system restore back to before the last successful install.  Same error.  I've manually downloaded and successfully installed one of the pending updates.  STILL the same error. 

I’ve exhausted all self-help options.  Can someone possibly crack this?  I can provide an ETL file if that will help.

Event ID 7032 - The WSUS administration console was unable to connect to the WSUS Server via the remote API

$
0
0
I keep getting this error with WSUS:

Log Name:      Application
Source:        Windows Server Update Services
Date:          2009-06-16 13:23:56
Event ID:      7032
Task Category: None
Level:         Warning
Keywords:      Classic
User:          N/A
Computer:      ORENORESERVER.orenore.local
Description:
The WSUS administration console was unable to connect to the WSUS Server via the remote API. 

Verify that the Update Services service, IIS and SQL are running on the server. If the problem persists, try restarting IIS, SQL, and the Update Services Service.

The WSUS administration console has encountered an unexpected error. This may be a transient error; try restarting the administration console. If this error persists, 

Try removing the persisted preferences for the console by deleting the wsus file under %appdata%\Microsoft\MMC\.


System.IO.IOException -- The handshake failed due to an unexpected packet format.

Source
System

Stack Trace:
   at System.Net.Security.SslState.StartReadFrame(Byte[] buffer, Int32 readBytes, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.StartReceiveBlob(Byte[] buffer, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.ForceAuthentication(Boolean receiveFirst, Byte[] buffer, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.ProcessAuthentication(LazyAsyncResult lazyResult)
   at System.Threading.ExecutionContext.runTryCode(Object userData)
   at System.Runtime.CompilerServices.RuntimeHelpers.ExecuteCodeWithGuaranteedCleanup(TryCode code, CleanupCode backoutCode, Object userData)
   at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state)
   at System.Net.TlsStream.ProcessAuthentication(LazyAsyncResult result)
   at System.Net.TlsStream.Write(Byte[] buffer, Int32 offset, Int32 size)
   at System.Net.PooledStream.Write(Byte[] buffer, Int32 offset, Int32 size)
   at System.Net.ConnectStream.WriteHeaders(Boolean async)
** this exception was nested inside of the following exception **


System.Net.WebException -- The underlying connection was closed: An unexpected error occurred on a send.

Source
Microsoft.UpdateServices.Administration

Stack Trace:
   at Microsoft.UpdateServices.Administration.AdminProxy.CreateUpdateServer(Object[] args)
   at Microsoft.UpdateServices.Administration.AdminProxy.GetUpdateServer(String serverName, Boolean useSecureConnection, Int32 portNumber)
   at Microsoft.UpdateServices.UI.AdminApiAccess.AdminApiTools.GetUpdateServer(String serverName, Boolean useSecureConnection, Int32 portNumber)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.GetUpdateServer(PersistedServerSettings settings)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.ConnectToServer()
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.ConnectToServerAndPopulateNode(Boolean connectingServerToConsole)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.OnExpandFromLoad(SyncStatus status)
Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Windows Server Update Services" />
    <EventID Qualifiers="0">7032</EventID>
    <Level>3</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2009-06-16T11:23:56.000Z" />
    <EventRecordID>30419</EventRecordID>
    <Channel>Application</Channel>
    <Computer>ORENORESERVER.orenore.local</Computer>
    <Security />
  </System>
  <EventData>
    <Data>The WSUS administration console was unable to connect to the WSUS Server via the remote API. 

Verify that the Update Services service, IIS and SQL are running on the server. If the problem persists, try restarting IIS, SQL, and the Update Services Service.

The WSUS administration console has encountered an unexpected error. This may be a transient error; try restarting the administration console. If this error persists, 

Try removing the persisted preferences for the console by deleting the wsus file under %appdata%\Microsoft\MMC\.


System.IO.IOException -- The handshake failed due to an unexpected packet format.

Source
System

Stack Trace:
   at System.Net.Security.SslState.StartReadFrame(Byte[] buffer, Int32 readBytes, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.StartReceiveBlob(Byte[] buffer, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.ForceAuthentication(Boolean receiveFirst, Byte[] buffer, AsyncProtocolRequest asyncRequest)
   at System.Net.Security.SslState.ProcessAuthentication(LazyAsyncResult lazyResult)
   at System.Threading.ExecutionContext.runTryCode(Object userData)
   at System.Runtime.CompilerServices.RuntimeHelpers.ExecuteCodeWithGuaranteedCleanup(TryCode code, CleanupCode backoutCode, Object userData)
   at System.Threading.ExecutionContext.Run(ExecutionContext executionContext, ContextCallback callback, Object state)
   at System.Net.TlsStream.ProcessAuthentication(LazyAsyncResult result)
   at System.Net.TlsStream.Write(Byte[] buffer, Int32 offset, Int32 size)
   at System.Net.PooledStream.Write(Byte[] buffer, Int32 offset, Int32 size)
   at System.Net.ConnectStream.WriteHeaders(Boolean async)
** this exception was nested inside of the following exception **


System.Net.WebException -- The underlying connection was closed: An unexpected error occurred on a send.

Source
Microsoft.UpdateServices.Administration

Stack Trace:
   at Microsoft.UpdateServices.Administration.AdminProxy.CreateUpdateServer(Object[] args)
   at Microsoft.UpdateServices.Administration.AdminProxy.GetUpdateServer(String serverName, Boolean useSecureConnection, Int32 portNumber)
   at Microsoft.UpdateServices.UI.AdminApiAccess.AdminApiTools.GetUpdateServer(String serverName, Boolean useSecureConnection, Int32 portNumber)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.GetUpdateServer(PersistedServerSettings settings)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.ConnectToServer()
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.ConnectToServerAndPopulateNode(Boolean connectingServerToConsole)
   at Microsoft.UpdateServices.UI.SnapIn.Scope.ServerSummaryScopeNode.OnExpandFromLoad(SyncStatus status)</Data>
  </EventData>
</Event>

Error:Database error

$
0
0

Hi, trying to run server cleanup in wsus server but getting error every time. It is windows 2008 std 64bit sp2 and wsus version 3.2.7600.226

Also pfa error screenshot.

Client-side Targeting for Subgroup in OU Not Working

$
0
0

Hello,

I have a sub-OU that has a different target group than the main OU and it's not putting it in the proper group.  This is how I have it set up:

Desktops (WSUS Desktops target group)

Desktops>WSUS_ITTEST (WSUS WSUS_ITTEST target group)

It keeps putting the machines in the main OU WSUS target group instead of the sub-OU target group.  I ended up making a separate OU all together to accomplish the task, but this is not what I want as I would like the group policy items from the main OU to apply to the child OU. 

Is there something that I'm missing here? 

Thanks,

-Dusty

Machines not reporting to WSUS (logs attached)

$
0
0

Out of the blue a total of 14 machines stopped reporting to WSUS. Thankfully I have been able to get most of them back to reporting but these last 5 are giving me issues. This log is from one of the machines that is still not working. The last successful"check for updates" was on Oct 15. I kicked off a manual scan while I review the log.

Has anyone experience this?

2016-11-14 07:26:11:766 1100 13b8 Misc ===========  Logging initialized (build: 7.6.7601.19161, tz: -0500)  ===========
2016-11-14 07:26:13:233 1100 13b8 Misc   = Process: C:\Windows\system32\svchost.exe
2016-11-14 07:26:15:245 1100 13b8 Misc   = Module: c:\windows\system32\wuaueng.dll
2016-11-14 07:26:11:766 1100 13b8 Service *************
2016-11-14 07:26:17:757 1100 13b8 Service ** START **  Service: Service startup
2016-11-14 07:26:19:738 1100 13b8 Service *********
2016-11-14 07:26:22:811 1100 13b8 Agent   * WU client version 7.6.7601.19161
2016-11-14 07:26:25:822 1100 13b8 Agent   * Base directory: C:\Windows\SoftwareDistribution
2016-11-14 07:26:27:288 1100 13b8 Agent   * Access type: No proxy
2016-11-14 07:26:30:018 1100 13b8 Agent   * Network state: Connected
2016-11-14 07:27:41:035 1100 13b8 Report CWERReporter::Init succeeded
2016-11-14 07:27:41:035 1100 13b8 Agent ***********  Agent: Initializing Windows Update Agent  ***********
2016-11-14 07:27:41:035 1100 13b8 Agent   * Prerequisite roots succeeded.
2016-11-14 07:27:41:035 1100 13b8 Agent ***********  Agent: Initializing global settings cache  ***********
2016-11-14 07:27:41:035 1100 13b8 Agent   * WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-14 07:27:41:035 1100 13b8 Agent   * WSUS status server:https://WSUS.SERVER.NAME:8531
2016-11-14 07:27:41:035 1100 13b8 Agent   * Target group: Employees
2016-11-14 07:27:41:035 1100 13b8 Agent   * Windows Update access disabled: Yes
2016-11-14 07:27:41:066 1100 13b8 DnldMgr Download manager restoring 0 downloads
2016-11-14 07:27:41:082 1100 13b8 AU ###########  AU: Initializing Automatic Updates  ###########
2016-11-14 07:27:41:082 1100 13b8 AU AU setting next detection timeout to 2016-11-14 12:27:41
2016-11-14 07:27:41:082 1100 13b8 AU AU setting next sqm report timeout to 2016-11-14 12:27:41
2016-11-14 07:27:41:082 1100 13b8 AU   # WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-14 07:27:41:082 1100 13b8 AU   # Detection frequency: 22
2016-11-14 07:27:41:082 1100 13b8 AU   # Target group: Employees
2016-11-14 07:27:41:082 1100 13b8 AU   # Approval type: Scheduled (Policy)
2016-11-14 07:27:41:082 1100 13b8 AU   # Scheduled install day/time: Thursday at 19:00
2016-11-14 07:27:41:082 1100 13b8 AU   # Auto-install minor updates: Yes (Policy)
2016-11-14 07:27:41:082 1100 13b8 AU   # Will interact with non-admins (Non-admins are elevated (Policy))
2016-11-14 07:27:41:082 1100 13b8 AU Setting AU scheduled install time to 2016-11-18 00:00:00
2016-11-14 07:27:41:737 1100 13b8 Report ***********  Report: Initializing static reporting data  ***********
2016-11-14 07:27:42:002 1100 13b8 Report   * OS Version = 6.1.7601.1.0.65792
2016-11-14 07:27:42:002 1100 13b8 Report   * OS Product Type = 0x00000030
2016-11-14 07:27:42:033 1100 13b8 Report   * Computer Brand = Hewlett-Packard
2016-11-14 07:27:42:033 1100 13b8 Report   * Computer Model = HP EliteBook Folio 9470m
2016-11-14 07:27:42:033 1100 13b8 Report   * Bios Revision = 68IBD Ver. F.47
2016-11-14 07:27:42:033 1100 13b8 Report   * Bios Name = Default System BIOS
2016-11-14 07:27:42:033 1100 13b8 Report   * Bios Release Date = 2013-10-08T00:00:00
2016-11-14 07:27:42:033 1100 13b8 Report   * Locale ID = 1033
2016-11-14 07:27:42:595 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 07:27:42:595 1100 13b8 AU Initializing featured updates
2016-11-14 07:27:42:595 1100 13b8 AU Found 0 cached featured updates
2016-11-14 07:27:42:595 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 07:27:42:595 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 07:27:42:595 1100 13b8 AU AU finished delayed initialization
2016-11-14 07:27:42:595 1100 13b8 AU AU setting next sqm report timeout to 2016-11-15 12:27:42
2016-11-14 07:27:42:595 1100 13b8 AU #############
2016-11-14 07:27:42:595 1100 13b8 AU ## START ##  AU: Search for updates
2016-11-14 07:27:42:595 1100 13b8 AU #########
2016-11-14 07:27:42:673 1100 13b8 AU <<## SUBMITTED ## AU: Search for updates [CallId = {1C05B694-B321-4506-9875-D6E1C42D82CE}]
2016-11-14 07:27:44:529 1100 1c80 PT WARNING: Cached cookie has expired or new PID is available
2016-11-14 07:27:44:529 1100 1c80 PT Initializing simple targeting cookie, clientId = 6fe7b9fb-6230-4100-880c-9d7efde3cdfb, target group = Employees, DNS name = laptop-l1.ad.local
2016-11-14 07:27:44:529 1100 1c80 PT   Server URL =https://WSUS.SERVER.NAME:8531/SimpleAuthWebService/SimpleAuth.asmx
2016-11-14 07:27:44:919 1100 1c80 PT WARNING: GetCookie failure, error = 0x8024400D, soap client error = 7, soap error code = 300, HTTP status code = 200
2016-11-14 07:27:44:919 1100 1c80 PT WARNING: SOAP Fault: 0x00012c
2016-11-14 07:27:44:919 1100 1c80 PT WARNING:     faultstring:Fault occurred
2016-11-14 07:27:44:919 1100 1c80 PT WARNING:     ErrorCode:ServerChanged(4)
2016-11-14 07:27:44:919 1100 1c80 PT WARNING:     Message:Server rolled back since last call to GetCookie
2016-11-14 07:27:44:919 1100 1c80 PT WARNING:     Method:"http://www.microsoft.com/SoftwareDistribution/Server/ClientWebService/GetCookie"
2016-11-14 07:27:44:919 1100 1c80 PT WARNING:     ID:24470eda-7201-46eb-a2ed-787daefbe477
2016-11-14 07:27:44:919 1100 1c80 PT WARNING: PTError: 0x80244015
2016-11-14 07:27:44:919 1100 1c80 PT WARNING: GetCookie_WithRecovery failed : 0x80244015
2016-11-14 07:27:44:919 1100 1c80 PT WARNING: RefreshCookie failed: 0x80244015
2016-11-14 07:27:44:919 1100 1c80 PT WARNING: RefreshPTState failed: 0x80244015
2016-11-14 07:27:45:247 1100 1c80 PT WARNING: Cached cookie has expired or new PID is available
2016-11-14 07:27:45:247 1100 1c80 PT Initializing simple targeting cookie, clientId = 6fe7b9fb-6230-4100-880c-9d7efde3cdfb, target group = Employees, DNS name = laptop-l1.ad.local
2016-11-14 07:27:45:247 1100 1c80 PT   Server URL =https://WSUS.SERVER.NAME:8531/SimpleAuthWebService/SimpleAuth.asmx
2016-11-14 07:27:48:539 1100 1c80 Report Uploading 1 events using cached cookie, reporting URL = https://WSUS.SERVER.NAME:8531/ReportingWebService/ReportingWebService.asmx
2016-11-14 07:27:48:663 1100 1c80 Report Reporter successfully uploaded 1 events.
2016-11-14 07:27:48:679 1100 1c80 Report REPORT EVENT: {B407BDCD-DC49-4540-ABD3-6F32DC2FB2F4} 2016-11-14 07:27:42:595-0500 1 202 102 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Content Install Reboot completed.
2016-11-14 07:27:48:757 1100 1c80 Agent *************
2016-11-14 07:27:48:757 1100 1c80 Agent ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-14 07:27:48:819 1100 1c80 Agent *********
2016-11-14 07:27:48:819 1100 1c80 Agent   * Online = No; Ignore download priority = No
2016-11-14 07:27:48:819 1100 1c80 Agent   * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2016-11-14 07:27:48:819 1100 1c80 Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2016-11-14 07:27:48:819 1100 1c80 Agent   * Search Scope = {Machine}
2016-11-14 07:30:38:407 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 07:30:40:170 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 08:11:43:589 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 10:56:00:539 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 10:56:03:066 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 16:57:44:956 1100 13b8 AU Initiating Install-at-shutdown
2016-11-14 16:57:44:956 1100 13b8 Shutdwn user declined update at shutdown
2016-11-14 16:57:44:956 1100 13b8 AU Successfully wrote event for AU health state:0
2016-11-14 16:57:44:956 1100 13b8 AU AU initiates service shutdown
2016-11-14 16:57:44:972 1100 13b8 AU ###########  AU: Uninitializing Automatic Updates  ###########
2016-11-14 16:57:44:972 1100 1c80 Agent   * WARNING: Failed to filter search results, error = 0x8024000B
2016-11-14 16:57:46:111 1100 1c80 Agent *********
2016-11-14 16:57:46:111 1100 1c80 Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-14 16:57:46:111 1100 1c80 Agent *************
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:46:142 1100 13b8 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-14 16:57:50:822 1100 13b8 Service *********
2016-11-14 16:57:50:822 1100 13b8 Service **  END  **  Service: Service exit [Exit code = 0x240001]
2016-11-14 16:57:50:822 1100 13b8 Service *************
2016-11-15 07:32:09:811 1096 1b38 Misc ===========  Logging initialized (build: 7.6.7601.19161, tz: -0500)  ===========
2016-11-15 07:32:11:792 1096 1b38 Misc   = Process: C:\Windows\system32\svchost.exe
2016-11-15 07:32:14:288 1096 1b38 Misc   = Module: c:\windows\system32\wuaueng.dll
2016-11-15 07:32:09:811 1096 1b38 Service *************
2016-11-15 07:32:18:796 1096 1b38 Service ** START **  Service: Service startup
2016-11-15 07:32:22:790 1096 1b38 Service *********
2016-11-15 07:32:29:327 1096 1b38 Agent   * WU client version 7.6.7601.19161
2016-11-15 07:32:31:292 1096 1b38 Agent   * Base directory: C:\Windows\SoftwareDistribution
2016-11-15 07:32:32:291 1096 1b38 Agent   * Access type: No proxy
2016-11-15 07:32:34:802 1096 1b38 Agent   * Network state: Connected
2016-11-15 07:33:47:128 1096 1b38 Report CWERReporter::Init succeeded
2016-11-15 07:33:47:128 1096 1b38 Agent ***********  Agent: Initializing Windows Update Agent  ***********
2016-11-15 07:33:47:128 1096 1b38 Agent   * Prerequisite roots succeeded.
2016-11-15 07:33:47:128 1096 1b38 Agent ***********  Agent: Initializing global settings cache  ***********
2016-11-15 07:33:47:128 1096 1b38 Agent   * WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-15 07:33:47:128 1096 1b38 Agent   * WSUS status server:https://WSUS.SERVER.NAME:8531
2016-11-15 07:33:47:128 1096 1b38 Agent   * Target group: Employees
2016-11-15 07:33:47:128 1096 1b38 Agent   * Windows Update access disabled: Yes
2016-11-15 07:33:47:144 1096 1b38 DnldMgr Download manager restoring 0 downloads
2016-11-15 07:33:47:346 1096 1b38 AU ###########  AU: Initializing Automatic Updates  ###########
2016-11-15 07:33:47:346 1096 1b38 AU AU setting next detection timeout to 2016-11-15 12:33:47
2016-11-15 07:33:47:346 1096 1b38 AU AU setting next sqm report timeout to 2016-11-15 12:33:47
2016-11-15 07:33:47:346 1096 1b38 AU   # WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-15 07:33:47:346 1096 1b38 AU   # Detection frequency: 22
2016-11-15 07:33:47:346 1096 1b38 AU   # Target group: Employees
2016-11-15 07:33:47:346 1096 1b38 AU   # Approval type: Scheduled (Policy)
2016-11-15 07:33:47:346 1096 1b38 AU   # Scheduled install day/time: Thursday at 19:00
2016-11-15 07:33:47:346 1096 1b38 AU   # Auto-install minor updates: Yes (Policy)
2016-11-15 07:33:47:346 1096 1b38 AU   # Will interact with non-admins (Non-admins are elevated (Policy))
2016-11-15 07:33:47:409 1096 1b38 AU Setting AU scheduled install time to 2016-11-18 00:00:00
2016-11-15 07:33:47:814 1096 1b38 Report ***********  Report: Initializing static reporting data  ***********
2016-11-15 07:33:47:814 1096 1b38 Report   * OS Version = 6.1.7601.1.0.65792
2016-11-15 07:33:47:814 1096 1b38 Report   * OS Product Type = 0x00000030
2016-11-15 07:33:47:830 1096 1b38 Report   * Computer Brand = Hewlett-Packard
2016-11-15 07:33:47:830 1096 1b38 Report   * Computer Model = HP EliteBook Folio 9470m
2016-11-15 07:33:47:830 1096 1b38 Report   * Bios Revision = 68IBD Ver. F.47
2016-11-15 07:33:47:830 1096 1b38 Report   * Bios Name = Default System BIOS
2016-11-15 07:33:47:830 1096 1b38 Report   * Bios Release Date = 2013-10-08T00:00:00
2016-11-15 07:33:47:830 1096 1b38 Report   * Locale ID = 1033
2016-11-15 07:33:48:204 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 07:33:48:204 1096 1b38 AU Initializing featured updates
2016-11-15 07:33:48:204 1096 1b38 AU Found 0 cached featured updates
2016-11-15 07:33:48:204 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 07:33:48:204 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 07:33:48:204 1096 1b38 AU AU finished delayed initialization
2016-11-15 07:33:48:204 1096 1b38 AU AU setting next sqm report timeout to 2016-11-16 12:33:48
2016-11-15 07:33:48:204 1096 1b38 AU #############
2016-11-15 07:33:48:204 1096 1b38 AU ## START ##  AU: Search for updates
2016-11-15 07:33:48:204 1096 1b38 AU #########
2016-11-15 07:33:48:298 1096 1b38 AU <<## SUBMITTED ## AU: Search for updates [CallId = {010C1D3D-934E-45F3-98F0-D90F391FDEB6}]
2016-11-15 07:33:52:853 1096 184c PT WARNING: Cached cookie has expired or new PID is available
2016-11-15 07:33:52:853 1096 184c PT Initializing simple targeting cookie, clientId = 6fe7b9fb-6230-4100-880c-9d7efde3cdfb, target group = Employees, DNS name = laptop-l1.ad.local
2016-11-15 07:33:52:853 1096 184c PT   Server URL =https://WSUS.SERVER.NAME:8531/SimpleAuthWebService/SimpleAuth.asmx
2016-11-15 07:33:53:508 1096 184c Report Uploading 1 events using cached cookie, reporting URL = https://WSUS.SERVER.NAME:8531/ReportingWebService/ReportingWebService.asmx
2016-11-15 07:33:53:571 1096 184c Report Reporter successfully uploaded 1 events.
2016-11-15 07:33:53:852 1096 184c Report REPORT EVENT: {A49D2170-A949-430C-89B7-EF3A0F42C419} 2016-11-15 07:33:48:204-0500 1 202 102 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Content Install Reboot completed.
2016-11-15 07:33:53:883 1096 184c Agent *************
2016-11-15 07:33:53:883 1096 184c Agent ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-15 07:33:53:883 1096 184c Agent *********
2016-11-15 07:33:53:883 1096 184c Agent   * Online = No; Ignore download priority = No
2016-11-15 07:33:53:883 1096 184c Agent   * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2016-11-15 07:33:53:883 1096 184c Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2016-11-15 07:33:53:883 1096 184c Agent   * Search Scope = {Machine}
2016-11-15 08:27:32:130 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 08:27:34:485 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 09:36:03:540 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 16:57:26:081 1096 1b38 AU Initiating Install-at-shutdown
2016-11-15 16:57:26:081 1096 1b38 Shutdwn user declined update at shutdown
2016-11-15 16:57:26:081 1096 1b38 AU Successfully wrote event for AU health state:0
2016-11-15 16:57:26:081 1096 1b38 AU AU initiates service shutdown
2016-11-15 16:57:26:081 1096 184c Agent   * WARNING: Failed to filter search results, error = 0x8024000B
2016-11-15 16:57:26:081 1096 1b38 AU ###########  AU: Uninitializing Automatic Updates  ###########
2016-11-15 16:57:26:175 1096 184c Agent *********
2016-11-15 16:57:26:175 1096 184c Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-15 16:57:26:175 1096 184c Agent *************
2016-11-15 16:57:26:206 1096 1b38 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-15 16:57:26:206 1096 1b38 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-15 16:57:26:206 1096 1b38 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-15 16:57:26:471 1096 1b38 Service *********
2016-11-15 16:57:26:471 1096 1b38 Service **  END  **  Service: Service exit [Exit code = 0x240001]
2016-11-15 16:57:26:471 1096 1b38 Service *************
2016-11-16 07:32:18:222 1104 12d0 Misc ===========  Logging initialized (build: 7.6.7601.19161, tz: -0500)  ===========
2016-11-16 07:32:19:189 1104 12d0 Misc   = Process: C:\Windows\system32\svchost.exe
2016-11-16 07:32:20:188 1104 12d0 Misc   = Module: c:\windows\system32\wuaueng.dll
2016-11-16 07:32:18:222 1104 12d0 Service *************
2016-11-16 07:32:22:200 1104 12d0 Service ** START **  Service: Service startup
2016-11-16 07:32:23:745 1104 12d0 Service *********
2016-11-16 07:32:28:752 1104 12d0 Agent   * WU client version 7.6.7601.19161
2016-11-16 07:32:30:624 1104 12d0 Agent   * Base directory: C:\Windows\SoftwareDistribution
2016-11-16 07:32:31:623 1104 12d0 Agent   * Access type: No proxy
2016-11-16 07:32:36:131 1104 12d0 Agent   * Network state: Connected
2016-11-16 07:33:47:472 1104 12d0 Report CWERReporter::Init succeeded
2016-11-16 07:33:47:472 1104 12d0 Agent ***********  Agent: Initializing Windows Update Agent  ***********
2016-11-16 07:33:47:487 1104 12d0 Agent   * Prerequisite roots succeeded.
2016-11-16 07:33:47:503 1104 12d0 Agent ***********  Agent: Initializing global settings cache  ***********
2016-11-16 07:33:47:503 1104 12d0 Agent   * WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-16 07:33:47:503 1104 12d0 Agent   * WSUS status server:https://WSUS.SERVER.NAME:8531
2016-11-16 07:33:47:503 1104 12d0 Agent   * Target group: Employees
2016-11-16 07:33:47:503 1104 12d0 Agent   * Windows Update access disabled: Yes
2016-11-16 07:33:47:518 1104 12d0 DnldMgr Download manager restoring 0 downloads
2016-11-16 07:33:47:534 1104 12d0 AU ###########  AU: Initializing Automatic Updates  ###########
2016-11-16 07:33:47:550 1104 12d0 AU AU setting next detection timeout to 2016-11-16 12:33:47
2016-11-16 07:33:47:550 1104 12d0 AU AU setting next sqm report timeout to 2016-11-16 12:33:47
2016-11-16 07:33:47:550 1104 12d0 AU   # WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-16 07:33:47:550 1104 12d0 AU   # Detection frequency: 22
2016-11-16 07:33:47:550 1104 12d0 AU   # Target group: Employees
2016-11-16 07:33:47:550 1104 12d0 AU   # Approval type: Scheduled (Policy)
2016-11-16 07:33:47:550 1104 12d0 AU   # Scheduled install day/time: Thursday at 19:00
2016-11-16 07:33:47:550 1104 12d0 AU   # Auto-install minor updates: Yes (Policy)
2016-11-16 07:33:47:550 1104 12d0 AU   # Will interact with non-admins (Non-admins are elevated (Policy))
2016-11-16 07:33:47:565 1104 12d0 AU Setting AU scheduled install time to 2016-11-18 00:00:00
2016-11-16 07:33:48:298 1104 12d0 Report ***********  Report: Initializing static reporting data  ***********
2016-11-16 07:33:48:298 1104 12d0 Report   * OS Version = 6.1.7601.1.0.65792
2016-11-16 07:33:48:298 1104 12d0 Report   * OS Product Type = 0x00000030
2016-11-16 07:33:48:454 1104 12d0 Report   * Computer Brand = Hewlett-Packard
2016-11-16 07:33:48:454 1104 12d0 Report   * Computer Model = HP EliteBook Folio 9470m
2016-11-16 07:33:48:470 1104 12d0 Report   * Bios Revision = 68IBD Ver. F.47
2016-11-16 07:33:48:470 1104 12d0 Report   * Bios Name = Default System BIOS
2016-11-16 07:33:48:470 1104 12d0 Report   * Bios Release Date = 2013-10-08T00:00:00
2016-11-16 07:33:48:470 1104 12d0 Report   * Locale ID = 1033
2016-11-16 07:33:49:188 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 07:33:49:188 1104 12d0 AU Initializing featured updates
2016-11-16 07:33:49:188 1104 12d0 AU Found 0 cached featured updates
2016-11-16 07:33:49:188 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 07:33:49:188 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 07:33:49:188 1104 12d0 AU AU finished delayed initialization
2016-11-16 07:33:49:203 1104 12d0 AU AU setting next sqm report timeout to 2016-11-17 12:33:49
2016-11-16 07:33:49:203 1104 12d0 AU #############
2016-11-16 07:33:49:203 1104 12d0 AU ## START ##  AU: Search for updates
2016-11-16 07:33:49:203 1104 12d0 AU #########
2016-11-16 07:33:49:578 1104 12d0 AU <<## SUBMITTED ## AU: Search for updates [CallId = {5F08E192-5DCD-43FC-8B4C-17E939DC41FF}]
2016-11-16 07:33:51:372 1104 1fd8 PT WARNING: Cached cookie has expired or new PID is available
2016-11-16 07:33:51:372 1104 1fd8 PT Initializing simple targeting cookie, clientId = 6fe7b9fb-6230-4100-880c-9d7efde3cdfb, target group = Employees, DNS name = laptop-l1.ad.local
2016-11-16 07:33:51:372 1104 1fd8 PT   Server URL =https://WSUS.SERVER.NAME:8531/SimpleAuthWebService/SimpleAuth.asmx
2016-11-16 07:33:51:886 1104 1fd8 Report Uploading 1 events using cached cookie, reporting URL = https://WSUS.SERVER.NAME:8531/ReportingWebService/ReportingWebService.asmx
2016-11-16 07:33:51:933 1104 1fd8 Report Reporter successfully uploaded 1 events.
2016-11-16 07:33:51:933 1104 1fd8 Agent *************
2016-11-16 07:33:51:933 1104 1fd8 Agent ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-16 07:33:51:933 1104 1fd8 Agent *********
2016-11-16 07:33:51:933 1104 1fd8 Agent   * Online = No; Ignore download priority = No
2016-11-16 07:33:51:933 1104 1fd8 Agent   * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2016-11-16 07:33:51:933 1104 1fd8 Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2016-11-16 07:33:51:933 1104 1fd8 Agent   * Search Scope = {Machine}
2016-11-16 08:37:52:759 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 08:37:54:423 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 09:55:17:485 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 14:03:57:938 1104 1cec AU Triggering AU detection through DetectNow API
2016-11-16 14:03:58:025 1104 1cec AU Will do the detection after current detection completes
2016-11-16 17:34:06:837 1104 12d0 AU Initiating Install-at-shutdown
2016-11-16 17:34:06:837 1104 12d0 Shutdwn user declined update at shutdown
2016-11-16 17:34:06:837 1104 12d0 AU Successfully wrote event for AU health state:0
2016-11-16 17:34:06:837 1104 12d0 AU AU initiates service shutdown
2016-11-16 17:34:06:853 1104 12d0 AU ###########  AU: Uninitializing Automatic Updates  ###########
2016-11-16 17:34:06:853 1104 1fd8 Agent   * WARNING: Failed to filter search results, error = 0x8024000B
2016-11-16 17:34:06:993 1104 1fd8 Agent *********
2016-11-16 17:34:06:993 1104 1fd8 Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-16 17:34:06:993 1104 1fd8 Agent *************
2016-11-16 17:34:07:009 1104 12d0 Report REPORT EVENT: {A4445702-B544-4B13-86EF-FD1E4255E16E} 2016-11-16 07:33:49:188-0500 1 202 102 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Content Install Reboot completed.
2016-11-16 17:34:07:009 1104 12d0 Report WARNING: Reporter failed to upload events with hr = 80240004.
2016-11-16 17:34:07:274 1104 12d0 Service *********
2016-11-16 17:34:07:274 1104 12d0 Service **  END  **  Service: Service exit [Exit code = 0x240001]
2016-11-16 17:34:07:274 1104 12d0 Service *************

2016-11-17 07:37:11:541 1132 1ab0 Misc ===========  Logging initialized (build: 7.6.7601.19161, tz: -0500)  ===========
2016-11-17 07:37:12:087 1132 1ab0 Misc   = Process: C:\Windows\system32\svchost.exe
2016-11-17 07:37:12:602 1132 1ab0 Misc   = Module: c:\windows\system32\wuaueng.dll
2016-11-17 07:37:11:541 1132 1ab0 Service *************
2016-11-17 07:37:13:632 1132 1ab0 Service ** START **  Service: Service startup
2016-11-17 07:37:14:693 1132 1ab0 Service *********
2016-11-17 07:37:17:126 1132 1ab0 Agent   * WU client version 7.6.7601.19161
2016-11-17 07:37:18:187 1132 1ab0 Agent   * Base directory: C:\Windows\SoftwareDistribution
2016-11-17 07:37:18:702 1132 1ab0 Agent   * Access type: No proxy
2016-11-17 07:37:20:496 1132 1ab0 Agent   * Network state: Connected
2016-11-17 07:38:29:582 1132 1ab0 Report CWERReporter::Init succeeded
2016-11-17 07:38:29:582 1132 1ab0 Agent ***********  Agent: Initializing Windows Update Agent  ***********
2016-11-17 07:38:29:628 1132 1ab0 Agent   * Prerequisite roots succeeded.
2016-11-17 07:38:29:628 1132 1ab0 Agent ***********  Agent: Initializing global settings cache  ***********
2016-11-17 07:38:29:628 1132 1ab0 Agent   * WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-17 07:38:29:628 1132 1ab0 Agent   * WSUS status server:https://WSUS.SERVER.NAME:8531
2016-11-17 07:38:29:628 1132 1ab0 Agent   * Target group: Employees
2016-11-17 07:38:29:628 1132 1ab0 Agent   * Windows Update access disabled: Yes
2016-11-17 07:38:29:644 1132 1ab0 DnldMgr Download manager restoring 0 downloads
2016-11-17 07:38:29:816 1132 1ab0 AU ###########  AU: Initializing Automatic Updates  ###########
2016-11-17 07:38:29:831 1132 1ab0 AU AU setting next detection timeout to 2016-11-17 12:38:29
2016-11-17 07:38:29:831 1132 1ab0 AU AU setting next sqm report timeout to 2016-11-17 12:38:29
2016-11-17 07:38:29:831 1132 1ab0 AU   # WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-17 07:38:29:831 1132 1ab0 AU   # Detection frequency: 22
2016-11-17 07:38:29:831 1132 1ab0 AU   # Target group: Employees
2016-11-17 07:38:29:831 1132 1ab0 AU   # Approval type: Scheduled (Policy)
2016-11-17 07:38:29:831 1132 1ab0 AU   # Scheduled install day/time: Thursday at 19:00
2016-11-17 07:38:29:831 1132 1ab0 AU   # Auto-install minor updates: Yes (Policy)
2016-11-17 07:38:29:831 1132 1ab0 AU   # Will interact with non-admins (Non-admins are elevated (Policy))
2016-11-17 07:38:29:831 1132 1ab0 AU Setting AU scheduled install time to 2016-11-18 00:00:00
2016-11-17 07:38:30:674 1132 1ab0 Report ***********  Report: Initializing static reporting data  ***********
2016-11-17 07:38:30:674 1132 1ab0 Report   * OS Version = 6.1.7601.1.0.65792
2016-11-17 07:38:30:674 1132 1ab0 Report   * OS Product Type = 0x00000030
2016-11-17 07:38:30:720 1132 1ab0 Report   * Computer Brand = Hewlett-Packard
2016-11-17 07:38:30:720 1132 1ab0 Report   * Computer Model = HP EliteBook Folio 9470m
2016-11-17 07:38:30:720 1132 1ab0 Report   * Bios Revision = 68IBD Ver. F.47
2016-11-17 07:38:30:720 1132 1ab0 Report   * Bios Name = Default System BIOS
2016-11-17 07:38:30:720 1132 1ab0 Report   * Bios Release Date = 2013-10-08T00:00:00
2016-11-17 07:38:30:720 1132 1ab0 Report   * Locale ID = 1033
2016-11-17 07:38:31:266 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 07:38:31:266 1132 1ab0 AU Initializing featured updates
2016-11-17 07:38:31:266 1132 1ab0 AU Found 0 cached featured updates
2016-11-17 07:38:31:266 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 07:38:31:266 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 07:38:31:266 1132 1ab0 AU AU finished delayed initialization
2016-11-17 07:38:31:266 1132 1ab0 AU AU setting next sqm report timeout to 2016-11-18 12:38:31
2016-11-17 07:38:31:266 1132 1ab0 AU #############
2016-11-17 07:38:31:266 1132 1ab0 AU ## START ##  AU: Search for updates
2016-11-17 07:38:31:266 1132 1ab0 AU #########
2016-11-17 07:38:31:391 1132 1ab0 AU <<## SUBMITTED ## AU: Search for updates [CallId = {871C896D-D412-4F10-81E2-722FA86DB566}]
2016-11-17 07:38:33:575 1132 1fdc PT WARNING: Cached cookie has expired or new PID is available
2016-11-17 07:38:33:591 1132 1fdc PT Initializing simple targeting cookie, clientId = 6fe7b9fb-6230-4100-880c-9d7efde3cdfb, target group = Employees, DNS name = laptop-l1.ad.local
2016-11-17 07:38:33:591 1132 1fdc PT   Server URL =https://WSUS.SERVER.NAME:8531/SimpleAuthWebService/SimpleAuth.asmx
2016-11-17 07:38:34:012 1132 1fdc Report Uploading 1 events using cached cookie, reporting URL = https://WSUS.SERVER.NAME:8531/ReportingWebService/ReportingWebService.asmx
2016-11-17 07:38:34:059 1132 1fdc Report Reporter successfully uploaded 1 events.
2016-11-17 07:38:34:059 1132 1fdc Agent *************
2016-11-17 07:38:34:059 1132 1fdc Agent ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-17 07:38:34:059 1132 1fdc Agent *********
2016-11-17 07:38:34:059 1132 1fdc Agent   * Online = No; Ignore download priority = No
2016-11-17 07:38:34:059 1132 1fdc Agent   * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2016-11-17 07:38:34:059 1132 1fdc Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2016-11-17 07:38:34:059 1132 1fdc Agent   * Search Scope = {Machine}
2016-11-17 08:17:34:758 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 08:17:37:285 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 09:16:51:247 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 12:32:31:863 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 12:35:21:078 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 15:00:30:987 1132 1ab0 AU Initiating Install-at-shutdown
2016-11-17 15:00:30:987 1132 1ab0 Shutdwn user declined update at shutdown
2016-11-17 15:00:31:003 1132 1ab0 AU Successfully wrote event for AU health state:0
2016-11-17 15:00:31:003 1132 1ab0 AU AU initiates service shutdown
2016-11-17 15:00:31:003 1132 1ab0 AU ###########  AU: Uninitializing Automatic Updates  ###########
2016-11-17 15:00:31:003 1132 1fdc Agent   * WARNING: Failed to filter search results, error = 0x8024000B
2016-11-17 15:00:31:097 1132 1fdc Agent *********
2016-11-17 15:00:31:097 1132 1fdc Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-17 15:00:31:097 1132 1fdc Agent *************
2016-11-17 15:00:31:112 1132 1ab0 Report REPORT EVENT: {E8E8B868-FE75-40B6-9330-6E3D3BA5BED2} 2016-11-17 07:38:31:266-0500 1 202 102 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Content Install Reboot completed.
2016-11-17 15:00:31:487 1132 1ab0 Service *********
2016-11-17 15:00:31:487 1132 1ab0 Service **  END  **  Service: Service exit [Exit code = 0x240001]
2016-11-17 15:00:31:487 1132 1ab0 Service *************
2016-11-17 15:06:41:381 1084 214 Misc ===========  Logging initialized (build: 7.6.7601.19161, tz: -0500)  ===========
2016-11-17 15:06:42:863 1084 214 Misc   = Process: C:\Windows\system32\svchost.exe
2016-11-17 15:06:44:361 1084 214 Misc   = Module: c:\windows\system32\wuaueng.dll
2016-11-17 15:06:41:381 1084 214 Service *************
2016-11-17 15:06:47:871 1084 214 Service ** START **  Service: Service startup
2016-11-17 15:06:50:367 1084 214 Service *********
2016-11-17 15:06:56:061 1084 214 Agent   * WU client version 7.6.7601.19161
2016-11-17 15:06:57:995 1084 214 Agent   * Base directory: C:\Windows\SoftwareDistribution
2016-11-17 15:06:58:869 1084 214 Agent   * Access type: No proxy
2016-11-17 15:07:01:864 1084 214 Agent   * Network state: Connected
2016-11-17 15:08:17:783 1084 214 Report CWERReporter::Init succeeded
2016-11-17 15:08:17:783 1084 214 Agent ***********  Agent: Initializing Windows Update Agent  ***********
2016-11-17 15:08:17:783 1084 214 Agent   * Prerequisite roots succeeded.
2016-11-17 15:08:17:798 1084 214 Agent ***********  Agent: Initializing global settings cache  ***********
2016-11-17 15:08:17:798 1084 214 Agent   * WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-17 15:08:17:798 1084 214 Agent   * WSUS status server:https://WSUS.SERVER.NAME:8531
2016-11-17 15:08:17:798 1084 214 Agent   * Target group: Employees
2016-11-17 15:08:17:798 1084 214 Agent   * Windows Update access disabled: Yes
2016-11-17 15:08:17:830 1084 214 DnldMgr Download manager restoring 0 downloads
2016-11-17 15:08:17:892 1084 214 AU ###########  AU: Initializing Automatic Updates  ###########
2016-11-17 15:08:17:892 1084 214 AU AU setting next detection timeout to 2016-11-17 20:08:17
2016-11-17 15:08:17:892 1084 214 AU   # WSUS server:https://WSUS.SERVER.NAME:8531
2016-11-17 15:08:17:892 1084 214 AU   # Detection frequency: 22
2016-11-17 15:08:17:892 1084 214 AU   # Target group: Employees
2016-11-17 15:08:17:892 1084 214 AU   # Approval type: Scheduled (Policy)
2016-11-17 15:08:17:892 1084 214 AU   # Scheduled install day/time: Thursday at 19:00
2016-11-17 15:08:17:892 1084 214 AU   # Auto-install minor updates: Yes (Policy)
2016-11-17 15:08:17:892 1084 214 AU   # Will interact with non-admins (Non-admins are elevated (Policy))
2016-11-17 15:08:17:892 1084 214 AU Setting AU scheduled install time to 2016-11-18 00:00:00
2016-11-17 15:08:18:610 1084 214 Report ***********  Report: Initializing static reporting data  ***********
2016-11-17 15:08:18:610 1084 214 Report   * OS Version = 6.1.7601.1.0.65792
2016-11-17 15:08:18:610 1084 214 Report   * OS Product Type = 0x00000030
2016-11-17 15:08:18:641 1084 214 Report   * Computer Brand = Hewlett-Packard
2016-11-17 15:08:18:641 1084 214 Report   * Computer Model = HP EliteBook Folio 9470m
2016-11-17 15:08:18:641 1084 214 Report   * Bios Revision = 68IBD Ver. F.47
2016-11-17 15:08:18:641 1084 214 Report   * Bios Name = Default System BIOS
2016-11-17 15:08:18:641 1084 214 Report   * Bios Release Date = 2013-10-08T00:00:00
2016-11-17 15:08:18:641 1084 214 Report   * Locale ID = 1033
2016-11-17 15:08:18:937 1084 214 AU Successfully wrote event for AU health state:0
2016-11-17 15:08:18:937 1084 214 AU Initializing featured updates
2016-11-17 15:08:18:937 1084 214 AU Found 0 cached featured updates
2016-11-17 15:08:18:937 1084 214 AU Successfully wrote event for AU health state:0
2016-11-17 15:08:18:937 1084 214 AU Successfully wrote event for AU health state:0
2016-11-17 15:08:18:937 1084 214 AU AU finished delayed initialization
2016-11-17 15:08:18:937 1084 214 AU #############
2016-11-17 15:08:18:937 1084 214 AU ## START ##  AU: Search for updates
2016-11-17 15:08:18:937 1084 214 AU #########
2016-11-17 15:08:19:046 1084 214 AU <<## SUBMITTED ## AU: Search for updates [CallId = {AD701A9E-0D21-40AD-9CE5-63AA9FA87609}]
2016-11-17 15:08:21:574 1084 1530 PT WARNING: Cached cookie has expired or new PID is available
2016-11-17 15:08:21:574 1084 1530 PT Initializing simple targeting cookie, clientId = 6fe7b9fb-6230-4100-880c-9d7efde3cdfb, target group = Employees, DNS name = laptop-l1.ad.local
2016-11-17 15:08:21:574 1084 1530 PT   Server URL =https://WSUS.SERVER.NAME:8531/SimpleAuthWebService/SimpleAuth.asmx
2016-11-17 15:08:22:198 1084 1530 Report Uploading 1 events using cached cookie, reporting URL = https://WSUS.SERVER.NAME:8531/ReportingWebService/ReportingWebService.asmx
2016-11-17 15:08:22:276 1084 1530 Report Reporter successfully uploaded 1 events.
2016-11-17 15:08:22:276 1084 1530 Agent *************
2016-11-17 15:08:22:276 1084 1530 Agent ** START **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-17 15:08:22:291 1084 1530 Agent *********
2016-11-17 15:08:22:291 1084 1530 Agent   * Online = No; Ignore download priority = No
2016-11-17 15:08:22:291 1084 1530 Agent   * Criteria = "IsInstalled=0 and DeploymentAction='Installation' or IsPresent=1 and DeploymentAction='Uninstallation' or IsInstalled=1 and DeploymentAction='Installation' and RebootRequired=1 or IsInstalled=0 and DeploymentAction='Uninstallation' and RebootRequired=1"
2016-11-17 15:08:22:291 1084 1530 Agent   * ServiceID = {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7} Managed
2016-11-17 15:08:22:291 1084 1530 Agent   * Search Scope = {Machine}
2016-11-17 17:06:22:233 1084 214 AU Initiating Install-at-shutdown
2016-11-17 17:06:22:233 1084 214 Shutdwn user declined update at shutdown
2016-11-17 17:06:22:233 1084 214 AU Successfully wrote event for AU health state:0
2016-11-17 17:06:22:233 1084 214 AU AU initiates service shutdown
2016-11-17 17:06:22:248 1084 214 AU ###########  AU: Uninitializing Automatic Updates  ###########
2016-11-17 17:06:22:248 1084 1530 Agent   * WARNING: Failed to filter search results, error = 0x8024000B
2016-11-17 17:06:22:326 1084 1530 Agent *********
2016-11-17 17:06:22:326 1084 1530 Agent **  END  **  Agent: Finding updates [CallerId = AutomaticUpdates]
2016-11-17 17:06:22:326 1084 1530 Agent *************
2016-11-17 17:06:22:326 1084 214 Report REPORT EVENT: {D4BE184C-7490-42B9-921C-7D639A7326C7} 2016-11-17 15:08:18:937-0500 1 202 102 {00000000-0000-0000-0000-000000000000} 0 0 AutomaticUpdates Success Content Install Reboot completed.
2016-11-17 17:06:22:435 1084 214 Service *********
2016-11-17 17:06:22:435 1084 214 Service **  END  **  Service: Service exit [Exit code = 0x240001]
2016-11-17 17:06:22:435 1084 214 Service *************

Package KB3197867 failed to be changed to the Installed state. Status: 0x8007000d.

$
0
0

Hi Folks,

I am facing weird issue on Windows 2008 and 2012. Some patches are failed to install on above platform.

Log Name:      Setup
Source:        Microsoft-Windows-Servicing
Date:          11/19/2016 7:09:04 PM
Event ID:      3
Task Category: None
Level:         Information
Keywords:      
User:          SYSTEM
Computer:      
Description:
Package KB3197867 failed to be changed to the Installed state. Status: 0x8007000d.


Log Name:      Application
Source:        Windows Error Reporting
Date:          11/21/2016 4:29:47 AM
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:     
Description:
Fault bucket , type 0
Event Name: WindowsUpdateFailure3
Response: Not available
Cab Id: 0

Problem signature:
P1: 7.6.7601.18847
P2: 80072efd
P3: D67661EB-2423-451D-BF5D-13199E37DF28
P4: Scan
P5: 1
P6: 0
P7: 0
P8: SelfUpdate
P9: {3DA21691-E39D-4DA6-8A4B-B43877BCB1B7}
P10: 0

Attached files:

These files may be available here:
C:\ProgramData\Microsoft\Windows\WER\ReportQueue\NonCritical_7.6.7601.18847_9ff3d5f327ea3d6ddcff2fdabccf498e3335e ab_069cf76d

Analysis symbol:
Rechecking for solution: 0
Report Id: 2fccfcef-afe6-11e6-8ee9-005056b530c7
Report Status: 4
Event Xml:

Any ideas on this behavior. This is failing on multiple machines and not just one.


Abhishek


How to script/automate downloading&installing of multiple specific Windows updates following a Belarc Advisor?

$
0
0

How to script/automate downloading&installing of multiple specific Windows updates following a Belarc Advisor?

We use Belarc Advisor for finding missing security updates on our Windows hosts and running Windows Update doesn't seem to install the updates found in Belarc Advisor.

As the list can be huge and downloading/installing one by one from http://www.catalog.update.microsoft.com/ time-consuming, I am looking for a way to automate the process a bit.

Sample Belarc Advisor report for missing security updates looks like below:

Missing Security Updatesnew– for Adobe, Apple, Java, Microsoft and more<small>[Back to Top]</small>

Hotfixes from Microsoft Update (agent version 7.9.9600.16384) are turned off.
Last install: 14/11/2016 14:00:59, download: 14/11/2016 13:40:50, check: 14/11/2016 13:27:14.

These security updates apply to this computer but are not currently installed (using Advisor definitions version 2016.11.11.2), according to the 11/08/2016 Microsoft Security Bulletin Summary and bulletins from other vendors. Note: Security benchmarks require that Critical and Important severity security updates must be installed.
Hotfix IdSeverityDescription (click to see security bulletin)
KB3098785Important Microsoft security update (KB3098785)
KB3121461Important Microsoft security update (KB3121461)
KB3127231Important Microsoft security update (KB3127231)
KB3135998Important Microsoft security update (KB3135998)
KB3142036Important Microsoft security update (KB3142036)
KB3164024Important Microsoft security update (KB3164024)
KB3172729Important Microsoft security update (KB3172729)
KB3174644Unrated Microsoft security advisory (KB3174644)
KB3175024Important Microsoft security update (KB3175024)
KB3177186Important Microsoft security update (KB3177186)
KB3178539Important Microsoft security update (KB3178539)
KB3184122Moderate Microsoft security update (KB3184122)
KB3184943Important Microsoft security update (KB3184943)
KB3185911Important Microsoft security update (KB3185911)
Q3188732Important Microsoft security update (KB3188732)
Q3192392Critical Microsoft security update (KB3192392)
Q3197873Critical Microsoft security update (KB3197873)

Windows 10 1607 Servicing : All the feature updates for Windows 10 are showing as NOT REQUIRED by all clients in SCCM 2012 even those known to be running CBB 1511

$
0
0

Hi,

I am configuring our Windows 10 Servicing plans and have enabled upgrades in our SCCM only wsus server and pulled them into SCCM from there. The Windows 10 Updates list the Feature Update to 1607 for Enterprise and the Upgrade for 1511 for Enterprise.

All our Windows 10 machines run 1511 and thus should require the 1607 Feature Update, but in our system they are being reported as "not required" is there a reason for this?

Thanks for any help,

Martin Searle

University of Kent, UK

Multiple WSUS servers implementation in replica mode

$
0
0

Hello,

I need to implement WSUS infrastructure globally in several branches in the corporate.

The corporate has a flat domain structure on 2012R2 infrastructure.

The plan is to have one main server that will download and manage all updates.

the other sites will be implemented in a replica mode.

I did a lot of googling and I didn't find and technical articles on how to install and implement Multiple WSUS servers in a replica mode on Windows 2012R2.

All information that I found are related to a Simple WSUS deployment with one server.

https://technet.microsoft.com/en-us/library/hh852344(v=ws.11).aspx

It will be very appreciated if someone can send me links on how to implement Multiple WSUS servers with replica mode on WSUS2012 Version (Not 2008).

Thanks,

Mickey

Changed settings under WSUS Console-options-Computers

$
0
0

Hello Guys,

We have WSUS server already deployed with computer settings "Use the update service console". In WSUS console, Under "All computers" options, there are all computers appearing which are domain joined which is OK.

Week ago we changed the settings from "Use the update service console" to option "Use group policy or registry settings". For this we also created OU for some specific computers and pushed GP to that OU only.

Now, when I look at "All computers", other then Group policy computers all other systems which were present previously are still there in WSUS console. I also have tried deleting computers which are not in that OU from WSUS console but those computers appears again.

Any solution?

Thanks

how to download windows updates on drive d: instead of c:?

$
0
0

hi my drive c: is full and I need to download windows updates to a different location

how can I choose drive d: to be the destination of windows updates?

thank you

Viewing all 12331 articles
Browse latest View live


Latest Images

<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>