Are you having definition update issues?

  • Thread starter Steve Dodson [MSFT]
  • Start date
J

jen

jen said:
Have the definitions for MSAS beta1 been stopped again? Last update
was 7/14. It's not 7/31 yet...

Thanks very much for the update(5911:). Will I have to keep begging for
them till the 31st? lol

-jen
 
G

Guest

Thanks. I see lines with: Server URL =
http://FSPV1/ClientWebService/client.asmx which is definitely on our site. I
also see lines with: WSUS server: http://FSPV1 so it looks like we are using
WSUS. I will make further inquiries with our IT Support Folks.

Bill Sanderson MVP said:
Windows Defender uses AutoUpdate--so if your automatic updates are, in fact,
coming directly from a Microsoft server, Windows Defender updates should be
as well.

However, in your situation it is quite likely that the server which is being
queried for automatic updates is, in fact, a local corporate server, either
using SUS or WSUS, rather than Microsoft's.

The way to find this out is to look at the windowsupdate.log file:

start, run, notepad %windir%\windowsupdate.log

Search for lines with "SERVER" in them--and look for notations such as SUS
or WSUS on nearby lines.

If your corporate server is SUS, Windows Defender definitions won't be
available from it--it is nearing end of life--December, 2006--so some
replacement technology should be in the works.

If it is a WSUS server, the network administrators are able to make Windows
Defender definitions available if they wish to.

However, if the definitions are not available via the corporate auto-update
source, your options are to go directly to Microsoft's Windows Update
servers (if this is not blocked by the network administartors) or to use the
direct download links posted by Engel regularly as definitions change.

--

SuncoastCyclist said:
I noticed an exclamation point on the WD tray icon and when I opened the
application it said that I hadn't updated my definitions since 7/7/2006.
I
have WD set to scan daily and to check for updates before each scan.
I used the button to manually check for updates and the popup balloon from
the tray icon said that there were no available updates. Another post
gave a
link to a download which I installed after figuring out that I had to exit
WD
first and now my definitions are dated 7/19/2006.
I am behind a corporate firewall. Where can I find information on what
should be enabled in the firewall to allow WD updates? Normal automatic
updates from the Microsoft Update site do work.

Steve Dodson said:
I was asked to repost to other newsgroups as I did not last week...

I wanted to step back and make sure we have the signature updating
mechanism
in place and working for all the beta testers. To make sure we are firing
in
all cylinders, I am asking any user to let me know if signatures are not
downloading and installing for them. One caveat is that users behind SUS
or
WSUS servers may be running into issues set by their system admins, so I
cannot help there. However, home users and others not behind corporate
update servers please let me know your signature woes (if any). My
contact
information is below; just drop the "online" from the email.

(e-mail address removed)
--
Steve Dodson [MSFT]
Windows Defender Beta Lead
MCSE, CISSP
http://blogs.technet.com/stevedod
--
Windows Mail - Vista 5476
This posting is provided "AS IS" with no warranties, and confers no
rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.
 
G

Guest

I replied to your email (dated 19th July) with a copy of my windowsupdate.log
as requested but did not get an acknowledgement you received it. I also sent
a subsequent reply notifying you that Definition Update 1.14.1532.14 also
failed in exactly the same way. This now means the last three updates
(1.14.1530.8, 1.14.1525.2, and now 1.14.1532.14) have all failed.

Can you confirm you received this information?

Also any news on any progress regarding this problem (since I am one of many
affected).

Thanks, John Lockwood
 
B

Bill Sanderson MVP

Excellent. If it is not a policy matter, but lack of knowledge that is the
block, this KB article shows how to use WSUS to deploy Windows Defender
definitions:

http://support.microsoft.com/kb/919772

--

SuncoastCyclist said:
Thanks. I see lines with: Server URL =
http://FSPV1/ClientWebService/client.asmx which is definitely on our site.
I
also see lines with: WSUS server: http://FSPV1 so it looks like we are
using
WSUS. I will make further inquiries with our IT Support Folks.

Bill Sanderson MVP said:
Windows Defender uses AutoUpdate--so if your automatic updates are, in
fact,
coming directly from a Microsoft server, Windows Defender updates should
be
as well.

However, in your situation it is quite likely that the server which is
being
queried for automatic updates is, in fact, a local corporate server,
either
using SUS or WSUS, rather than Microsoft's.

The way to find this out is to look at the windowsupdate.log file:

start, run, notepad %windir%\windowsupdate.log

Search for lines with "SERVER" in them--and look for notations such as
SUS
or WSUS on nearby lines.

If your corporate server is SUS, Windows Defender definitions won't be
available from it--it is nearing end of life--December, 2006--so some
replacement technology should be in the works.

If it is a WSUS server, the network administrators are able to make
Windows
Defender definitions available if they wish to.

However, if the definitions are not available via the corporate
auto-update
source, your options are to go directly to Microsoft's Windows Update
servers (if this is not blocked by the network administartors) or to use
the
direct download links posted by Engel regularly as definitions change.

--

SuncoastCyclist said:
I noticed an exclamation point on the WD tray icon and when I opened the
application it said that I hadn't updated my definitions since
7/7/2006.
I
have WD set to scan daily and to check for updates before each scan.
I used the button to manually check for updates and the popup balloon
from
the tray icon said that there were no available updates. Another post
gave a
link to a download which I installed after figuring out that I had to
exit
WD
first and now my definitions are dated 7/19/2006.
I am behind a corporate firewall. Where can I find information on what
should be enabled in the firewall to allow WD updates? Normal
automatic
updates from the Microsoft Update site do work.

:

I was asked to repost to other newsgroups as I did not last week...

I wanted to step back and make sure we have the signature updating
mechanism
in place and working for all the beta testers. To make sure we are
firing
in
all cylinders, I am asking any user to let me know if signatures are
not
downloading and installing for them. One caveat is that users behind
SUS
or
WSUS servers may be running into issues set by their system admins, so
I
cannot help there. However, home users and others not behind corporate
update servers please let me know your signature woes (if any). My
contact
information is below; just drop the "online" from the email.

(e-mail address removed)
--
Steve Dodson [MSFT]
Windows Defender Beta Lead
MCSE, CISSP
http://blogs.technet.com/stevedod
--
Windows Mail - Vista 5476
This posting is provided "AS IS" with no warranties, and confers no
rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to
this
message are best directed to the newsgroup/thread from which they
originated.
 
B

Bill Sanderson MVP

John - I don't have a message from you with a log file attached. I do see
your message from July 18th, which I had missed previously.

I don't believe that your situation parallels most others here, but I have
seen one other user in a similar condition, if I have diagnosed your
situation correctly.

I believe that in your case, because of either hiding definitions, or manual
updating, you are in a condition where your definitions are up to date, but
the engine version is not current.

Here's what I would recommend to fix this, and let's see whether it also
allows definition updates to proceed normally henceforth:

1) Go to a command prompt. (start, run, cmd (and hit enter))
2) cd \program files\windows defender
(the drive letter may vary by system--for most, it will be C:

3) mpcmdrun -RemoveDefinitions -All

type exit and hit enter to close the cmd prompt window.


Then, download and apply these two definition updates manually, in this
order:

For Signature v.1.14.1530.8 & Engine 1.1.1508.0 from
http://www.download.windowsupdate.c..._86a9c41e57ee5cf43fed440ee96ac7af7842fb89.exe

For Signature v.1.14.1532.14 Manual Download from
http://www.download.windowsupdate.c..._00373941349ca1e41cdac637a17e11b7c8402f22.exe

This should bring you to

Windows Defender Version: 1.1.1347.0
Engine Version: 1.1.1508.0
Definition Version: 1.14.1532.14

(as shown in help, about.)

You might then try doing help, about, check for updates--and see whether
this proceeds without any error messages. Try it a couple of times, maybe.
 
G

Guest

signature automatic update does not work in dial-up. detection time cycle on
Automatic Update might be to blame since i turn off my computer constantly
and using dial-up the detection date/time changes. Really need to fix the
Defender and Automatic Update.
 
B

Bill Sanderson MVP

Does autoupdate work for other Microsoft critical updates?

--

Balem said:
signature automatic update does not work in dial-up. detection time cycle
on
Automatic Update might be to blame since i turn off my computer constantly
and using dial-up the detection date/time changes. Really need to fix the
Defender and Automatic Update.

Steve Dodson said:
I was asked to repost to other newsgroups as I did not last week...

I wanted to step back and make sure we have the signature updating
mechanism
in place and working for all the beta testers. To make sure we are firing
in
all cylinders, I am asking any user to let me know if signatures are not
downloading and installing for them. One caveat is that users behind SUS
or
WSUS servers may be running into issues set by their system admins, so I
cannot help there. However, home users and others not behind corporate
update servers please let me know your signature woes (if any). My
contact
information is below; just drop the "online" from the email.

(e-mail address removed)
--
Steve Dodson [MSFT]
Windows Defender Beta Lead
MCSE, CISSP
http://blogs.technet.com/stevedod
--
Windows Mail - Vista 5476
This posting is provided "AS IS" with no warranties, and confers no
rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.
 
G

Guest

No Automatic Update does not seem to work, but i'm not really sure because i
don't wait a day for automatic update to kick in usually when it's available
I go to Microsoft Update to install those critical update manually. I never
saw Window Defender autoupdate it's signatures and it only seem to work when
restarting computer or turning off and on automatic update.





Bill Sanderson MVP said:
Does autoupdate work for other Microsoft critical updates?

--

Balem said:
signature automatic update does not work in dial-up. detection time cycle
on
Automatic Update might be to blame since i turn off my computer constantly
and using dial-up the detection date/time changes. Really need to fix the
Defender and Automatic Update.

Steve Dodson said:
I was asked to repost to other newsgroups as I did not last week...

I wanted to step back and make sure we have the signature updating
mechanism
in place and working for all the beta testers. To make sure we are firing
in
all cylinders, I am asking any user to let me know if signatures are not
downloading and installing for them. One caveat is that users behind SUS
or
WSUS servers may be running into issues set by their system admins, so I
cannot help there. However, home users and others not behind corporate
update servers please let me know your signature woes (if any). My
contact
information is below; just drop the "online" from the email.

(e-mail address removed)
--
Steve Dodson [MSFT]
Windows Defender Beta Lead
MCSE, CISSP
http://blogs.technet.com/stevedod
--
Windows Mail - Vista 5476
This posting is provided "AS IS" with no warranties, and confers no
rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to this
message are best directed to the newsgroup/thread from which they
originated.
 
B

Bill Sanderson MVP

Automatic Update should work on dialup--it does on my father's machine,
fwiw. Windows Defender definitions should just arrive automatically, even
over dialup, but more slowly than with a broadband connection.

I'm not sure whether something is broken with regards to automatic updates
on your system, or whether you simply aren't allowing enough time. It'd be
interesting to see what happens if you do an express scan on WindowsUpdate
to ensure that everything that needs to be is already applied, and then
watch to see what happens next time definitions are released--or rather,
simply ignore the issue and wait to see whether something comes in--give it
some days, perhaps.

--

Balem said:
No Automatic Update does not seem to work, but i'm not really sure because
i
don't wait a day for automatic update to kick in usually when it's
available
I go to Microsoft Update to install those critical update manually. I
never
saw Window Defender autoupdate it's signatures and it only seem to work
when
restarting computer or turning off and on automatic update.





Bill Sanderson MVP said:
Does autoupdate work for other Microsoft critical updates?

--

Balem said:
signature automatic update does not work in dial-up. detection time
cycle
on
Automatic Update might be to blame since i turn off my computer
constantly
and using dial-up the detection date/time changes. Really need to fix
the
Defender and Automatic Update.

:

I was asked to repost to other newsgroups as I did not last week...

I wanted to step back and make sure we have the signature updating
mechanism
in place and working for all the beta testers. To make sure we are
firing
in
all cylinders, I am asking any user to let me know if signatures are
not
downloading and installing for them. One caveat is that users behind
SUS
or
WSUS servers may be running into issues set by their system admins, so
I
cannot help there. However, home users and others not behind corporate
update servers please let me know your signature woes (if any). My
contact
information is below; just drop the "online" from the email.

(e-mail address removed)
--
Steve Dodson [MSFT]
Windows Defender Beta Lead
MCSE, CISSP
http://blogs.technet.com/stevedod
--
Windows Mail - Vista 5476
This posting is provided "AS IS" with no warranties, and confers no
rights.
Use of included script samples are subject to the terms specified at
http://www.microsoft.com/info/cpyright.htm

Note: For the benefit of the community-at-large, all responses to
this
message are best directed to the newsgroup/thread from which they
originated.
 
G

Guest

I have previously posted I was (like too many people) finding that Windows
Defender would not update its definitions. Despite reporting copious details
and trying all suggestions (here and as per Microsoft KB articles), and
uninstalling and reinstalling, nothing helped.

However a few days ago I did find the following via Google.

http://66.249.93.104/search?q=cache...80240022+mac&hl=en&ct=clnk&cd=1&client=safari

I can confirm that the suggestion by jChristopher was indeed the cause of
the problem and by following his suggestion to disable external hard disks
cured the problem. Note: the same discussion says the problem is also caused
by the presence of USB memory sticks.

I find it ironic [perhaps that is too mild a description] that a Mac user of
all people has tracked down the cause of this problem and come up with a
successful workaround when Microsoft themselves have failed for months and
months to do so.

Now, that the problem has clearly been identified. Will Microsoft finally
FIX IT PROPERLY THEMSELVES!!!

Note: as of this week even after getting Windows Defender up to date, I can
also confirm THIS BUG STILL EXISTS!!!
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top