none
Windows 10 1607 - Windows Update

    Question

  • Hi,

    We use SCCM to manage the Windows update. But on few Windows 10 1607 builds, we see that the updates are getting downloaded automatically and installed as well. Tried the Get-WindowsUpdateLog powershell to read the WindowsUpdate.log but could not find out anything in it. I have also enabled the Defer Feature udpates and am sure this has nothing to do with the quality updates. So what else needs to be checked ?

    WindowsUpdate.log

    600/12/31 18:00:00.0000000 840   2856                  Unknown( 10): GUID=638e22b1-a858-3f40-8a43-af2c2ff651a4 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 11): GUID=bce7cceb-de62-3b09-7f4f-c69b1344a134 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 11): GUID=638e22b1-a858-3f40-8a43-af2c2ff651a4 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 50): GUID=6ffec797-f4d0-3bda-288a-dbf55dc91e0b (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 19): GUID=78de1184-93bb-3725-431f-8e3aebb6f649 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 19): GUID=78de1184-93bb-3725-431f-8e3aebb6f649 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 73): GUID=6ffec797-f4d0-3bda-288a-dbf55dc91e0b (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 23): GUID=3887d6ef-c209-31dc-4931-1b8d628e7f0e (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 23): GUID=3887d6ef-c209-31dc-4931-1b8d628e7f0e (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 33): GUID=7b9bf239-47b9-3688-3a9e-14f09f262608 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 21): GUID=ddd9b153-51da-3d02-aa6a-86f143bbcce6 (No Format Information found).
    1600/12/31 18:00:00.0000000 840   2856                  Unknown( 23): GUID=3887d6ef-c209-31dc-4931-1b8d628e7f0e (No Format Information found).

    Monday, February 6, 2017 5:15 PM

All replies

  • Hi vinod7,

    What is the exact Windows 10 version you are using?

    There is a known issue that new build 1607 previous version won`t get updates from WSUS and it has been fixed by a later update. We may need to install the latest monthly rollup manually then check the symptom again or update from Windows Update directly then check the symptom again.
    Here is a similar case for reference:
    WSUS on Windows 2016 and Windows 10 clients (1511 - not seeing upgrades, 1607 - updates hungs on being downloaded in 100%)
    https://social.technet.microsoft.com/Forums/windowsserver/en-US/b3235768-95ce-43b9-a495-6dffd44862ed/wsus-on-windows-2016-and-windows-10-clients-1511-not-seeing-upgrades-1607-updates-hungs-on?forum=winserverwsus

    For the Windows Update log issue, the Windows Update log has been corrupted since Windows 10.1511 version. We have submitted the issue on our side, I hope it could be fixed in the near future.

    Best regards


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Tuesday, February 7, 2017 1:59 AM
    Moderator
  • Hi,

    I have 1607 Version of Windows running. I am not sure how this updates are getting downloaded automatically on the users machine. Even the WindowsUpdate.log does not have any information in it

    Tuesday, February 7, 2017 2:33 PM
  • Hi vinod7,

    There are several branches for Windows 10 1607 version. Please run "Winver" to check the exact version number. The latest version should Windows 10.14393.729. If you haven`t updated to the latest version, we could install the latest rollup update package(KB 4010672) manually then check the symptom again.

    Best regards


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Wednesday, February 8, 2017 9:15 AM
    Moderator
  • Hi,

    My current build is 14393.726 and i still see the WindowsUpdate.log containing unknown GUID

    I also removed from %TEMP%, the windows update folder but still same issue.

    Not sure what else needs to be done. 

    Regards,

    V

    Thursday, February 9, 2017 11:26 PM
  • Hi vinod7,

    For the WindowsUpdate log issue, we could submit the issue on our side. You could submit the issue on your side with the "Feedback" hub.

    For the upgrade package, we could disable the "Feature upgrade" option from WSUS if you are using WSUS to manage the updates. If you don`t use WSUS, the feature upgrade should be installed since it has been released for a long time. "Defer upgrade" is only available to delay the upgrade but it couldn't block the upgrade.

    Best regards


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Tuesday, February 14, 2017 8:40 AM
    Moderator
  • Thanks. I submitted them now.

    So in an enterprise enviornment there is no wat we can defer the upgrades ?

    Regards,V

    Tuesday, February 14, 2017 2:49 PM
  • Hi vinod7,

    As I pointed out before, "Defer upgrade" could only defer the upgrade packages and the maximum date is 180 days but it couldn`t block the upgrade package. Windows 10 1607 was released on 8/2/2016. So it is an expected behavior that we will get the feature update package after 180 days.
    If you are using WSUS server to manage the update packages, we could block the upgrade package. Or we could choose the LTSB version(only available for Enterprise version). It won`t accept any upgrade packages but it doesn`t include any metro apps, either.

    Best regards


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.



    Wednesday, February 15, 2017 7:27 AM
    Moderator
  • Hi,

    We are using SCCM for Patch deployments. So not sure why it is getting upgraded

    Wednesday, February 15, 2017 3:46 PM
  • Hi vinod7,

    I would make an apology. I forgot one key point. If you have configured the "Defer Upgrade" option with the gpo, you are using "WUFB"(Windows update for business) feature. This will make the machines updating from Windows Update directly.
    Here is a link for reference:
    Windows Update for Business explained
    https://blogs.msdn.microsoft.com/beanexpert/2015/11/15/windows-update-for-business-explained/

    We could try the following gpo to disable the Windows Update server completely.
     Administrative Templates | System | Internet Communication Management | Internet Communication Settings | Turn off access to all Windows Update features

    Best regards


    Please remember to mark the replies as answers if they help.
    If you have feedback for TechNet Subscriber Support, contact tnmff@microsoft.com.

    Thursday, February 16, 2017 9:00 AM
    Moderator