Update failed.
PS C:\WINDOWS\system32> msdt.exe /id WindowsUpdateDiagnostic
PS C:\WINDOWS\system32> sfc /scannow
Beginning system scan. This process will take some time.
Beginning verification phase of system scan.
Verification 100% complete.
Windows Resource Protection did not find any integrity violations.
PS C:\WINDOWS\system32> DISM /Online /Cleanup-Image /CheckHealth
Deployment Image Servicing and Management tool
Version: 10.0.26100.5582
Image Version: 10.0.26200.5670
The component store is repairable.
The operation completed successfully.
PS C:\WINDOWS\system32> DISM /Online /Cleanup-Image /ScanHealth
Deployment Image Servicing and Management tool
Version: 10.0.26100.5582
Image Version: 10.0.26200.5670
[==========================100.0%==========================] No component store corruption detected.
The operation completed successfully.
PS C:\WINDOWS\system32>
PS C:\WINDOWS\system32> DISM /Online /Cleanup-Image /RestoreHealth
Deployment Image Servicing and Management tool
Version: 10.0.26100.5582
Image Version: 10.0.26200.5670
[==========================100.0%==========================] The restore operation completed successfully.
The operation completed successfully.
PS C:\WINDOWS\system32> net stop wuauserv
The Windows Update service is stopping.
The Windows Update service was stopped successfully.
PS C:\WINDOWS\system32> net stop bits
The Background Intelligent Transfer Service service is not started.
More help is available by typing NET HELPMSG 3521. PS C:\WINDOWS\system32> net stop cryptsvc The following services are dependent on the Cryptographic Services service. Stopping the Cryptographic Services service will also stop these services.
Acronis Cyber Protection Service
Acronis Active Protection (TM) Service
Do you want to continue this operation? (Y/N) [N]: y
System error 5 has occurred.
Access is denied.
PS C:\WINDOWS\system32> net stop trustedinstaller
The Windows Modules Installer service is stopping.
The Windows Modules Installer service was stopped successfully.
PS C:\WINDOWS\system32> ren "%windir%\SoftwareDistribution" SoftwareDistribution.old
ren : Cannot rename because item at '%windir%\SoftwareDistribution' does not exist.
At line:1 char:1
+ ren "%windir%\SoftwareDistribution" SoftwareDistribution.old
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
+ CategoryInfo : InvalidOperation:

) [Rename-Item], PSInvalidOperationException
+ FullyQualifiedErrorId : InvalidOperation,Microsoft.PowerShell.Commands.RenameItemCommand
PS C:\WINDOWS\system32> ren "%windir%\System32\catroot2" catroot2.old
ren : Cannot rename because item at '%windir%\System32\catroot2' does not exist.
At line:1 char:1
+ ren "%windir%\System32\catroot2" catroot2.old
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
+ CategoryInfo : InvalidOperation:

) [Rename-Item], PSInvalidOperationException
+ FullyQualifiedErrorId : InvalidOperation,Microsoft.PowerShell.Commands.RenameItemCommand
PS C:\WINDOWS\system32> net start wuauserv
The Windows Update service is starting.
The Windows Update service was started successfully.
PS C:\WINDOWS\system32> net start bits
The Background Intelligent Transfer Service service is starting..
The Background Intelligent Transfer Service service was started successfully.
PS C:\WINDOWS\system32> net start cryptsvc
The requested service has already been started.
More help is available by typing NET HELPMSG 2182.
PS C:\WINDOWS\system32> net start trustedinstaller
The Windows Modules Installer service is starting.
The Windows Modules Installer service was started successfully.
PS C:\WINDOWS\system32> Get-WindowsUpdateLog -LogPath "$env:USERPROFILE\Desktop\WindowsUpdate.log"
Getting the list of all ETL files...
Please wait for all of conversions to complete...
================ Results from WULog_0 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.130551.567.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.132055.268.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.141250.882.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.191250.469.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.191250.469.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.191250.469.3.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.191250.469.4.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.195309.916.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.205851.680.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251011.215115.338.1.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00000
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_1 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.020031.530.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.021533.739.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.032058.303.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.075733.745.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.105027.837.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.151023.385.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251012.151023.385.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.3.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00001
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_2 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.4.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.5.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.6.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.7.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.8.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.9.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.10.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.11.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.12.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.13.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00002
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_3 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.14.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.15.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.16.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251014.013235.364.17.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.083115.031.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.083115.031.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.083115.031.3.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.3.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00003
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_4 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.4.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.5.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.6.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251016.231602.094.7.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.012726.981.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.020522.747.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.021814.571.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.040412.641.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.095804.092.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.102056.246.1.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00004
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_5 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.103515.110.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.164938.872.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251017.164938.872.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.3.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.4.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.5.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.6.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.061621.640.7.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00005
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_6 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.064929.527.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251018.064929.527.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251019.084743.136.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251019.084743.136.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251019.084743.136.3.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251019.124222.627.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251019.125732.477.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.012027.987.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.013102.628.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.023241.384.1.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00006
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_7 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.034848.447.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.184341.395.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.184341.395.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251020.184341.395.3.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.014559.001.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.014559.001.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.133418.343.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.134920.964.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.151259.807.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.1.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00007
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_8 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.3.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.4.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.5.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.6.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.161604.861.7.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.220758.658.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251021.220758.658.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.002540.990.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.031417.095.1.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00008
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_9 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.040349.610.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.044406.542.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.044406.542.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.115112.874.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.131301.691.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.165143.453.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.165143.453.2.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.181043.475.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.192023.122.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.202435.988.1.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00009
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
================ Results from WULog_10 ================
Input
----------------
File(s):
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.204612.211.1.etl
C:\WINDOWS\logs\WindowsUpdate\WindowsUpdate.20251022.204612.211.2.etl
100.00%
Output
----------------
DumpFile: C:\Users\rupes\AppData\Local\Temp\WindowsUpdateLog\wuetl.XML.tmp.758ded55-f4e5-4922-ac05-8d6985efa8d3.00010
Warning:
Some events do not match the schema.
Please rerun the command with -lr to get less restricted XML dump
The command completed successfully.
==================================================
WindowsUpdate.log written to C:\Users\rupes\Desktop\WindowsUpdate.log
PS C:\WINDOWS\system32> findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log > "%USERPROFILE%\Desktop\CBS_SR.txt"
out-file : Could not find a part of the path 'C:\WINDOWS\system32\%USERPROFILE%\Desktop\CBS_SR.txt'.
At line:1 char:1
+ findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log > "%USERPROFILE%\Desktop\ ...
+ ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
+ CategoryInfo : OpenError:

) [Out-File], DirectoryNotFoundException
+ FullyQualifiedErrorId : FileOpenFailure,Microsoft.PowerShell.Commands.OutFileCommand
PS C:\WINDOWS\system32> findstr /i "0x800f0991" "%windir%\Logs\CBS\CBS.log" > "%USERPROFILE%\Desktop\CBS_0x800f0
>> findstr /i "0x800f0991" "%windir%\Logs\CBS\CBS.log" > "%USERPROFILE%\Desktop\CBS_0x800f0991.txt"
>> Select-Object TimeCreated,ProviderName,Id,LevelDisplayName,Message |
>> Out-File "$env:USERPROFILE\Desktop\System_USB_and_WU_events.txt"
>>
Files:
- CBS_SR.txt
- CBS_0x800f0991.txt
were not created.
I renameed WindowsUpdate.log to WindowsUpdate.txt as it won't allow me to upload .log files.