Horowitz has a fascinating “cheat sheet” reviewing various methods of blocking Win10 updating. With Windows 10, there are three aspects to disabling W
[See the full post at: Michael Horowitz: Killing Windows Update on Win10]
![]() |
Patch reliability is unclear. Unless you have an immediate, pressing need to install a specific patch, don't do it. |
SIGN IN | Not a member? | REGISTER | PLUS MEMBERSHIP |
-
Michael Horowitz: Killing Windows Update on Win10
Home » Forums » Newsletter and Homepage topics » Michael Horowitz: Killing Windows Update on Win10
- This topic has 30 replies, 7 voices, and was last updated 6 years, 2 months ago by
anonymous.
Tags: Block Win10 updates
AuthorTopicViewing 12 reply threadsAuthorReplies-
Zaphyrus
AskWoody Lounger
Michael432
AskWoody_MVPDecember 5, 2018 at 3:35 pm #238479I use a combination with metered connection and Wushowhide …
If you switch Windows users, does the metered connection remain on? For Ethernet? For Wifi SSIDs?
Get up to speed on router security at RouterSecurity.org and Defensive Computing at DefensiveComputingChecklist.com
-
anonymous
Guest -
Michael432
AskWoody_MVPDecember 8, 2018 at 2:22 pm #239228Yes, a problem with this approach is the first time you connect to a new Wi-Fi network, it is not metered by default so Windows Update does its thing.
Get up to speed on router security at RouterSecurity.org and Defensive Computing at DefensiveComputingChecklist.com
1 user thanked author for this post.
-
anonymous
Guestanonymous
Guest-
anonymous
GuestDecember 5, 2018 at 4:09 pm #238490Yes, some details are here
https://www.wintips.org/how-to-turn-off-windows-10-updates-permanently/
and it does suggest changing the Start key to 4. However, since some of Windows Update is specifically designed to roll back this type of hacking, you can’t count on registry updates sticking any more.
Bluetrix
AskWoody MVPDecember 5, 2018 at 3:54 pm #238489With the advent of 3rd party (free) blocking apps this should be a mute issue for those concerned enough about blocking Win10 updates to do something about it. It’s ridiculously easy. I might add that since I have added an update blocker app I have seen no ill side effects from doing so. (Oct 10, 2018 added)
Now, blocking Win10 telemetry is another animal. I am looking for an app as EASY and safe (and reversible) as the update blocking is. While there are apps available, they have pitfalls I am not ready to risk using. I have my fingers crossed hoping for one soon. I know some will say this isn’t a good thing to do, windows needs this info to make adjustments and improvements to windows … we have seen and continue to see the end results of this fallacy. Call it what you want, it’s spying without any control. The (pun intended) window dressing controls available now are an insult to any intelligence.
Edit to add: Windows Home, Version 1803 (OS Build 17134.165)
1 user thanked author for this post.
-
anonymous
Guest -
Bluetrix
AskWoody MVPDecember 5, 2018 at 4:43 pm #238523@bluetrix What update blocker app do you use?
http://greatis.com/blog/stopupdates10 <— program is here, developers site.
(There are others out there in internet land but I use this one)
I am including an excerpt outlining what the program does I copied from:
https://www.thewindowsclub.comI hope this helps all or just one of the many readers here. I do intend to update, perhaps when the MS-DEFCON rating is more palatable.
How StopUpdates10 works
If you are curious enough, the developer of the tool has provided us with the entire list of actions that happen in the background. The tool makes the following changes:Registry Values: The program automatically changes the registry values for 7 registry keys for you so that you do not have to do it manually. All the registry changes can be easily restored back with the restore button.
Windows Update Service: StopUpdates10 completely stops this service and prevents it from auto-starting, essentially killing the automatic updates mechanism.
(I deleted what it changes, that can be read at https://www.thewindowsclub.com)
Restoring changes is also easy as is. All you need to do is hit the Restore Windows Updates button, and all the changes will be rolled back. The program also displays the status of Windows Update. Apart from that it also provides you with command line features so that you can include StopUpdates10 in your scripts as well.1 user thanked author for this post.
-
anonymous
GuestDecember 5, 2018 at 5:39 pm #238529I would not use that program. For one thing, it is closed source, not open. It changes registry values for 7 things. What things? There are at least 15 scheduled tasks involved with Windows Update. It stops one Windows Service when there are likely to be four involved with Windows Update. And while it may have prevented the service from being re-started in the past, Windows Update is getting more aggressive in this and its not clear when the program was last updated. Finally, it blocks processes. How? None of our business.
-
Bluetrix
AskWoody MVPDecember 5, 2018 at 6:49 pm #238540I would not use that program. For one thing, it is closed source, not open. It changes registry values for 7 things. What things? There are at least 15 scheduled tasks involved with Windows Update. It stops one Windows Service when there are likely to be four involved with Windows Update. And while it may have prevented the service from being re-started in the past, Windows Update is getting more aggressive in this and its not clear when the program was last updated. Finally, it blocks processes. How? None of our business.
That’s okay by me if you don’t want to use it because it’s a “closed source”. Windows10 is fully open I guess. Perhaps it who or what reviews you trust. Maybe it’s a closed source because the developer didn’t want anyone to commercialize his freely offered work.
As far as what the program actually does I provided a link to that, but to be more precise here is the link to the actual review so you don’t have to search for it in windowsclub forums. It includes everything I didn’t include, as I said my post was only an excerpt.
https://www.thewindowsclub.com/block-updates-windows-10-stopupdates10
You asked what program I used, ymmv, but it works for me. ๐
btw, I use free programs that are a closed source, so far so good. To name just a few : Adaware, Ublock, CCleaner, and those are just three of to many to list.
Apologies for OT segue mods ๐
-
-
-
anonymous
Guestanonymous
GuestDecember 5, 2018 at 4:16 pm #238505Mr. Brian posted a link to a batch script months ago for stanching Windows 10 update malware behavior, it has worked well on 1607 and also has been updated for other versions. If Window’s own firewall rules are honored that can help.
You should be able to find a basic printer driver from the printer manufacturer, some companies have a smaller core package. Because of a feature you may need or want sometimes you have to get the fat driver package, the good fat driver package installers will let you choose a custom installation and trim packages.
You all have enough intellect to manage your own printer folks, Windows 10 doesn’t need to do that job.
abbodi86
AskWoody_MVPanonymous
GuestDecember 5, 2018 at 10:39 pm #238586Michael Horowitz missed in his article that you can actually deal with and remove sedsvc easily–it’s part of the trash that gets installed in C:\Program Files\rempl on a-few-months-out-of-date Win10 installations. It is the much-maligned KB4023057, cursed be its name, which is re-released every month despite the lamentations of the righteous.
Installation of it can be easily prevented by doing the following:
1. Uninstall it in Control Panel/Programs and Features. It’s in the list of installed software, not in the list of updates. Microsoft is tricky. I had a different word in mind but its not terribly polite.
2. Make a C:\Program Files\rempl folder. If one already exists, delete it and remake it to ensure you have ownership.
3. Deny all permissions to C:\Program Files\rempl for all accounts except administrators. You can do this with the permissions dialog or with icacls or some other utility. This will prevent any files being placed in the rempl folder, which will prevent the reinstallation of the loathed KB4023057.
Any attempts by Windows Update to install KB4023057 every month will simply fail because the files can’t be written. If you forget to run wushowhide every month, this will potentially save you from a ninja installation of KB4023057 resulting in a possible forced “upgrade” to 1809, with all the blue-screens, bugs, wasted hours, sadness, and failure that implies.
-
anonymous
Guest
anonymous
GuestDecember 5, 2018 at 10:46 pm #238575An anti-exe such as voodooShield can help block the various processes, but it requires you to approve every process which may be annoying to some. The same with a 3rd party firewall. Both require โInsane Paranoidโ mode.
What is of interest is the variety of processes that fire up over time. With 1709, every 2 months something new would appear to repair any alterations made to stop updates.
I broke the process by taking ownership of the folder for Update Orchestrator in Scheduler, sys32 and deleted the files. You can return them, or just download an ISO for update later.
Be warned, Win10 is tricky so donโt set and forget; a process will fire up at some stage to make changes to update.
Of course a backup can be restored return normality and investigate where it went wrong.Edited for HTML. Please use text tab for copy/paste.
-
JCCWsusser
AskWoody LoungerDecember 6, 2018 at 6:13 am #238621every 2 months something new would appear to repair any alterations made to stop updates.
This is one real purpose of the AI and telemetry: to find out what people are doing to block updates.
anonymous
Guest-
anonymous
GuestDecember 6, 2018 at 11:37 am #238736This article mentions 15 different Windows Update domains that are blocked
https://www.reddit.com/r/Windows10/comments/7xxup9/permanently_disabling_windows_10_upgrade/
My experience has been that DNS can only block one sub-domain at a time. That is you have to specifically block a.example.com and b.example.com and c.example.com individually, you can not globally block all ofย example.com. Am I wrong about that?
A self-managed DNS server sounds like a great idea, but any device on the network that uses a VPN bypasses this blocking.
anonymous
GuestDecember 8, 2018 at 1:32 pm #239205I use DNS blocking in Router on my Windows 10 Home using this as reference :
https://docs.microsoft.com/en-us/windows/privacy/manage-windows-1709-endpoints
https://docs.microsoft.com/en-us/windows/privacy/windows-endpoints-1709-non-enterprise-editions
https://docs.microsoft.com/en-us/windows/privacy/manage-windows-1803-endpoints
https://docs.microsoft.com/en-us/windows/privacy/windows-endpoints-1803-non-enterprise-editions
https://docs.microsoft.com/en-us/windows/privacy/manage-windows-1809-endpoints
1 user thanked author for this post.
-
Michael432
AskWoody_MVPDecember 8, 2018 at 2:20 pm #239227Great links, thanks.
DNS blockages in a router have the advantage of working for all PCs on the LAN. But, any computer using a VPN bypasses the router for both DNS and firewalling. DNS blockages on one computer were, I thought, impractical because each subdomain has to be specified individually and this Microsoft doc does not do that.
For example, if you want to block *.hwcdn.net as per the Microsoft documentation, how would you? DNS, at least the hosts file, does not do generic. You would have to block a.hwcdn.net and b.hwcdn.net and c.hwcdn.et, etc etc. So, what specifically do block in DNS?
Get up to speed on router security at RouterSecurity.org and Defensive Computing at DefensiveComputingChecklist.com
Michael432
AskWoody_MVPDecember 8, 2018 at 2:24 pm #239229Addressing your first question, yes the connection will remain metered status while switching users. Also, Microsoft has demonstrated the ability to override metered status when it suits them.
Where did you read about Microsoft over-riding the metered status? And, in my testing, limited though it was, a restricted/standard user had the metering off, even though an Admin user on the same machine had it on.
Get up to speed on router security at RouterSecurity.org and Defensive Computing at DefensiveComputingChecklist.com
-
anonymous
GuestDecember 22, 2018 at 11:43 am #242040I have been staying at version 1607, and is it possible with newer versions to change the metered status separately from the Administrator? Is there a per-user registry setting to control metered connection state?
Where did you read about Microsoft over-riding the metered status?
Why here at AskWoody of course and from this, and here, this one, and from some of these links over here.
anonymous
GuestDecember 15, 2018 at 9:23 am #240666Hi, Michael,
just in case you didn’t hear from nsudo, to have more rights on W10:
http://www.majorgeeks.com/files/details/nsudo.htmlI could disable the task ‘PerformRemediation’ via the help of nsudo, but there must be another task re-enabling it again, and i didn’t spent to much time searching for it.
Regards, Karlheinz
Edit: Removed email address for security reasons.anonymous
GuestJanuary 8, 2019 at 11:39 am #245087StopUpdates10 stops window from updating; hence, I will need to have StopUpdates10 restore updates to get software upgrades and updates. StopUpdates10 does not mess with windows defender updates; hence, I will still have up to date virus definitions. It’s this correct?
Out of curiosity, how often do you re-enable updates?
Thx
Viewing 12 reply threads - This topic has 30 replies, 7 voices, and was last updated 6 years, 2 months ago by
-

Plus Membership
Donations from Plus members keep this site going. You can identify the people who support AskWoody by the Plus badge on their avatars.
AskWoody Plus members not only get access to all of the contents of this site -- including Susan Bradley's frequently updated Patch Watch listing -- they also receive weekly AskWoody Plus Newsletters (formerly Windows Secrets Newsletter) and AskWoody Plus Alerts, emails when there are important breaking developments.
Get Plus!
Welcome to our unique respite from the madness.
It's easy to post questions about Windows 11, Windows 10, Win8.1, Win7, Surface, Office, or browse through our Forums. Post anonymously or register for greater privileges. Keep it civil, please: Decorous Lounge rules strictly enforced. Questions? Contact Customer Support.
Search Newsletters
Search Forums
View the Forum
Search for Topics
Recent Topics
-
Forcing(or trying to) save Local Documents to OneDrive
by
PateWilliam
7 hours, 10 minutes ago -
Hotpatch for Windows client now available (Enterprise)
by
Alex5723
7 hours, 49 minutes ago -
MS-DEFCON 2: Seven months and counting
by
Susan Bradley
22 minutes ago -
My 3 monitors go black & then the Taskbar is moved to center monitor
by
saturn2233
18 hours, 5 minutes ago -
Apple backports fixes
by
Susan Bradley
3 hours, 58 minutes ago -
Win 11 24H2 will not install
by
Michael1950
18 hours, 18 minutes ago -
Advice to convert MBR to GPT and install Windows 11 Pro on unsupported PC
by
Andy M
17 hours, 49 minutes ago -
Photos from iPhone to Win 10 duplicating/reformatting to .mov
by
J9438
3 hours, 29 minutes ago -
Thunderbird in trouble. Here comes Thundermail
by
Alex5723
18 hours, 6 minutes ago -
Get back ” Open With” in context menus
by
CWBillow
1 day, 6 hours ago -
Many AMD Ryzen 9800X3D on ASRock have died
by
Alex5723
1 day, 10 hours ago -
simple general stupid question
by
WSaltamirano
1 day, 4 hours ago -
April 2025 Office non-Security updates
by
PKCano
1 day, 21 hours ago -
Microsoft wants to hear from you
by
Will Fastie
21 hours, 52 minutes ago -
Windows 11 Insider Preview Build 22635.5160 (23H2) released to BETA
by
joep517
2 days, 1 hour ago -
Europe Seeks Alternatives to U.S. Cloud Providers
by
Alex5723
2 days, 6 hours ago -
Test post
by
Susan Bradley
2 days, 9 hours ago -
Used Systems to delete Temp files Gone WRONG what does this mean?
by
Deo
2 days, 10 hours ago -
SSD shuts down on its own
by
CWBillow
2 days, 2 hours ago -
OneDrive File Sharing Changes
by
David Clark
2 days, 18 hours ago -
OneDrive File Sharing Changes
by
David Clark
2 days, 20 hours ago -
Win 10 Pro 22H2 to Win 11 Pro 23H2 Conversion Guide
by
doneager
1 day, 20 hours ago -
Today is world backup day
by
Alex5723
2 days, 12 hours ago -
Windows .exe on Mint
by
Slowpoke47
1 hour, 57 minutes ago -
Reviewing your licensing options
by
Susan Bradley
6 hours, 55 minutes ago -
Apple has been analyzing your photos since September 2024
by
B. Livingston
1 day, 17 hours ago -
What Windows 11 24H2 offers beyond bugs
by
Lance Whitney
1 day, 13 hours ago -
Making sense of Settings in Windows 11
by
Simon Bisson
1 day, 14 hours ago -
Windows 11 pro fails to log in after upgrading Win 10 pro to Win 11 pro 24h2
by
ben_sitaud
2 days, 18 hours ago -
23H2 / 24H2 / Local v. Microsoft Account.
by
CWBillow
4 hours, 15 minutes ago
Recent blog posts
- MS-DEFCON 2: Seven months and counting
- Apple backports fixes
- April 2025 Office non-Security updates
- Microsoft wants to hear from you
- Reviewing your licensing options
- Apple has been analyzing your photos since September 2024
- What Windows 11 24H2 offers beyond bugs
- Making sense of Settings in Windows 11
Key Links
Want to Advertise in the free newsletter? How about a gift subscription in honor of a birthday? Send an email to sb@askwoody.com to ask how.
Mastodon profile for DefConPatch
Mastodon profile for AskWoody
Home • About • FAQ • Posts & Privacy • Forums • My Account
Register • Free Newsletter • Plus Membership • Gift Certificates • MS-DEFCON Alerts
Copyright ©2004-2025 by AskWoody Tech LLC. All Rights Reserved.