Periodically decode contents of WindowsUpdate.log - Windows NOT WORKING
Log In or Register to download the BES file, and more.

0 Votes

Versioning - This is the latest version.

1Periodically decode contents of WindowsUpdate.log - Windows NOT WORKING3/29/2016 12:22:18 PM
2Periodically decode contents of WindowsUpdate.log - Windows NOT WORKING3/29/2016 1:52:50 PM

Description

<enter a description of the task here>

Property Details

ID10608
StatusAlpha - Code that was just developed
TitlePeriodically decode contents of WindowsUpdate.log - Windows NOT WORKING
DomainBESC
SourceInternal
Source IDjgstew
Source Release Date3/29/2016 12:00:00 AM
Is TaskTrue
Added by on 3/29/2016 1:52:50 PM
Last Modified by on 3/29/2016 1:52:50 PM
Counters 2119 Views / 49 Downloads
User Rating 1 star 2 star 3 star 4 star 5 star * Average over 0 ratings. ** Log In or Register to add your rating.

Relevance

Windows Only (Relevance 2997197)
Used in 6448 fixlets and 32 analyses   * Results in a true/false
Show indented relevance
/* Windows Only */ windows of operating system
Used in 158 fixlets and 17 analyses   * Results in a true/false
Show indented relevance
/* Windows XP or Higher */ version of operating system >= "5.1"
Used in 3 fixlets   * Results in a true/false
Show indented relevance
exists file ((it as string) of value "Path" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\PowerShell\1\ShellIds\Microsoft.PowerShell" of native registry)
Used in 2 fixlets   * Results in a "string"/number
Show indented relevance
exists lines containing "Get-WindowsUpdateLog PowerShell" of files "WindowsUpdate.log" of windows folders

Actions

Action 1 (default)

Action Link Click here to deploy this action.
Script Type BigFix Action Script
parameter "LogLocation" = "{ pathname of folders "Logs" of folders "__Global" of data folders of clients }"

parameter "SymLocation" = "{ pathname of items 1 of it whose(item 0 of it = maximum of modification times of files "wuapi.mof" of item 1 of it) of (it, folders "WindowsUpdateLog\SymCache" of ( folders "AppData\Local\Temp" of folders of folders "C:\Users" ) ) of maximum of modification times of files "wuapi.mof" of folders "WindowsUpdateLog\SymCache" of ( folders "AppData\Local\Temp" of folders of folders "C:\Users" ) }"

// https://technet.microsoft.com/en-us/library/mt238376.aspx
// http://powershell-guru.com/dont-19-use-double-quotes-escape-characters/
// https://msdn.microsoft.com/en-us/library/windows/desktop/ee416588(v=vs.85).aspx#symbol_servers
waithidden powershell -ExecutionPolicy Bypass -command "Get-WindowsUpdateLog -SymbolServer '{ parameter "SymLocation" }' -LogPath '{ parameter "LogLocation" }\WindowsUpdate.log'"

// http://answers.microsoft.com/en-us/windows/forum/windows_10-update/windowsupdatelog-unreadable/2e6b05ed-ac91-4186-a362-c6b5a7e42911?auth=1
// It seems like you can specify a folder for -SymbolServer :
// Get-WindowsUpdateLog -SymbolServer C:\Users\user\Documents\MySymbols
Success Criteria

This action will be considered successful when the applicability relevance evaluates to false.


Sharing

Social Media:
Share this page on Yammer

Comments

Log In or Register to leave comments!
jgstew -
https://chentiangemalc.wordpress.com/2015/09/03/debugging-viewing-windows-update-log-on-windows-10-insider-builds/