{"id":6627,"date":"2018-08-18T21:20:24","date_gmt":"2018-08-18T19:20:24","guid":{"rendered":"http:\/\/159.69.82.204\/win\/?p=6627"},"modified":"2024-10-01T15:17:31","modified_gmt":"2024-10-01T13:17:31","slug":"windows-10-v1709-1803-issues-also-august-patchday","status":"publish","type":"post","link":"https:\/\/borncity.com\/win\/2018\/08\/18\/windows-10-v1709-1803-issues-also-august-patchday\/","title":{"rendered":"Windows 10 V1709\/1803: Issues (also August Patchday)"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" title=\"Update\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" border=\"0\" alt=\"Windows Update\" src=\"https:\/\/www.borncity.com\/blog\/wp-content\/uploads\/2015\/02\/Update.jpg\" width=\"54\" align=\"left\" height=\"54\">[<a href=\"https:\/\/www.borncity.com\/blog\/2018\/08\/17\/windows-10-v1803-probleme-welche-probleme-oh-doch\/\">German<\/a>]After the Microsoft patchday disaster of July 2018, August updates seems to be mostly flawless. But there are some minor issues with Windows 10 V1803 (independent from August patchday). Here is an overview about some (minor) issues in Windows 10 V1803 (and minor patchday issues in V1709\/V1803).<\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"\" src=\"https:\/\/vg07.met.vgwort.de\/na\/66dfd61fd0064c56add5284ca10d9a2d\" width=\"1\" height=\"1\">Thanks to Woody Leonhard, who has collected most stuff at askwoody.com. Perhaps it's worth reading for administrators, it may save a few hours of troubleshooting.&nbsp; <\/p>\n<h2>Windows 10 V1803 installation loop?<\/h2>\n<p>I've had seen some vague references (<a href=\"https:\/\/www.reddit.com\/r\/Windows10\/comments\/97a5ip\/august_cumulative_updates_thread\/\" target=\"_blank\" rel=\"noopener noreferrer\">on reddit.com<\/a>) about an installation loop regarding the patchday update for Windows 10 V1803. Woody Leonhard has picked a case of user <em>Uroboros4<\/em> on <a href=\"https:\/\/www.askwoody.com\/2018\/win10-1803-aug-cumulative-update-repeatedly-update-couldnt-apply-reverting-changes\/\" target=\"_blank\" rel=\"noopener noreferrer\">askwoody.com<\/a>. The update cannot be installed successfully, the system enters an update loop.&nbsp; <\/p>\n<blockquote>\n<p>I have Win10 1803 genuine. None of the cumulative updates can be applied(for example KB4343909, kb4284835, kb4103721). It reaches 100% and says \" Update couldn't apply, reverting changes\". I have tried a lot of stuff (pausing win update and manually installing them, scan windows for corrupted files to no avail). Anyone has the same problem?<\/p>\n<\/blockquote>\n<p>But it seems to be an isolated case, I found no further reports. I had written the blog post <a href=\"https:\/\/borncity.com\/win\/2018\/06\/21\/fix-windows-10-hangs-in-update-installation-loop\/\">Fix: Windows 10 hangs in the update installation loop<\/a> as a solution to this issue.  <\/p>\n<h2>Windows 10 V1803: Bitlocker pauses during update<\/h2>\n<p>Patch Diva Susan Bradley <a href=\"https:\/\/www.askwoody.com\/2018\/patch-lady-bitlocker-on-1803-pauses-during-updates\/\" target=\"_blank\" rel=\"noopener noreferrer\">spottet<\/a> a specific issue in Windows 10 version 1803. This is described in a <a href=\"https:\/\/social.technet.microsoft.com\/Forums\/en-US\/0e48536f-40ff-4046-bd08-ed4a39b4840f\/bitlocker-automatically-suspending-during-updates?forum=win10itprosecurity&amp;prof=required\" target=\"_blank\" rel=\"noopener noreferrer\">Technet forum thread<\/a> and applies to machines with Windows 10 version 1803 that do not have a TPM module. If the hard disk encryption with Bitlocker is activated on such a machine, Windows deactivates bitlocker during the installation of an update. The thread creator describes this as follows:  <\/p>\n<blockquote>\n<p>I have a machine with Bitlocker enabled, no TPM, Windows 10 1803.  <\/p>\n<p>For the last month or so, whenever a Windows system update is applied, Bitlocker is automatically suspended upon first login after the machine restarts. Case in point: the latest Windows 10 cumulative update was applied this morning, only for the machine to restart with Bitlocker suspended on the OS drive. Interestingly, there is also some dubious behaviour in terms of the initial Bitlocker password entry screen. Not having a TPM, the user must enter a password to boot. On at least 2 occasions, after applying an update, the system does not present the Bitlocker password entry screen and progresses all the way to the user login screen. However, this morning the Bitlocker password entry screen was presented correctly but after entering the correct password and then logging in to Windows, Bitlocker was suspended.  <\/p>\n<p>This is the state of the OS drive after logging in:  <\/p>\n<p>Volume C: [System]<br \/>[OS Volume]  <\/p>\n<p>Size:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 59.07 GB<br \/>BitLocker Version:&nbsp;&nbsp;&nbsp; 2.0<br \/>Conversion Status:&nbsp;&nbsp;&nbsp; Fully Encrypted<br \/>Percentage Encrypted: 100.0%<br \/>Encryption Method:&nbsp;&nbsp;&nbsp; XTS-AES 128<br \/>Protection Status:&nbsp;&nbsp;&nbsp; Protection Off (1 reboots left)&nbsp;&nbsp; &lt;&#8212;&#8212;<br \/>Lock Status:&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Unlocked<br \/>Identification Field: Unknown<br \/>Key Protectors:<br \/>Password<br \/>Numerical Password  <\/p>\n<p>Now, I realise that Bitlocker is temporarily suspended &#8211; restarting the machine again will enable it without any action from the user. However, this is a security risk for the time between restarting after an update and the next restart and severely undermines our trust in Bitlocker. I would expect that Bitlocker should NEVER be suspended unless initiated by a user\/admin.<\/p>\n<\/blockquote>\n<p>If the machine is restarted, Bitlocker is activated again. It only occurs on Windows 10 V1803 machines without a TMP chip. If people install updates and only send the machine into sleep mode, Bitlocker may remain disabled for a long time.&nbsp; <\/p>\n<h2>Windows Server 2016: sysvol sync bug back?<\/h2>\n<p>It is more a question Woody Leonhard asks in <a href=\"https:\/\/www.askwoody.com\/2018\/server-2016-is-the-sysvol-sync-bug-in-july-showing-up-in-august\/\">this article<\/a>. A user asked whether a GPO synchronization problem from July 2018 still exists. Here is his error description:  <\/p>\n<blockquote>\n<p>Has anyone else experienced their GPOs not syncing permissions after applying KB4338814 to Server 2016?  <\/p>\n<p>We were getting the ACL error  <\/p>\n<p>\"The sysvol permissions for one or more GPOs on this domain controller are not in sync with the permissions for the GPOs on the baseline domain\".  <\/p>\n<p>Went through an Non-authoritative SYSVOL restore, demoting and promoting a domain controller, and finally uninstalled patch KB4338814 to resolve the issue.  <\/p>\n<p>This problem existed on our test domain (two DCs 2012 and 2016) and our production (three DCs 1-2012 and 2-2016) The ACL sync issues only happened on one of the production 2016 DCs which was strange. Once we removed the patch we had to go to any GPOs still showing ACL errors and restore the delegation permissions to defaults in order for it to start syncing.  <\/p>\n<p>I have blocked patch KB4338814 from July in WSUS but the issue is now happening again in our test Active Directory after applying the August cumulative updates. I'd love to know if anyone else is seeing this issue and if Microsoft has reported it as a problem.<\/p>\n<\/blockquote>\n<p>He has blocked the July 2018 update KB4338814 in the WSUS, but is now confronted with the problem again in August 2018. This is not an isolated case, because Technet forum has the thread KB4284833 Group Policy Sync issue with a similar issue.&nbsp; <\/p>\n<h2>Windows 10 V1803 Boot loop 'bootres.dll is corrupt'<\/h2>\n<p>This too is an error <a href=\"https:\/\/www.askwoody.com\/2018\/win10-1803-installation-failure-loop-bootres-dll-is-corrupt\/\" target=\"_blank\" rel=\"noopener noreferrer\">reported by Woody Leonhard<\/a>, which is independent of the August 2018 updates. A user describes the error as follows:&nbsp; <\/p>\n<blockquote>\n<p>There is recurring issue reported online where Win10 gets stuck in a repair loop. The Win10 Recovery Environment (RE) option Startup Repair fails to correct the problem. The Startup Repair log c:\\windows\\system32\\logfiles\\srt\\SrtTrail.txt reports a fault:  <\/p>\n<p>Root cause found:<br \/>\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014\u2014<br \/>Boot critical file c:\\efi\\microsoft\\boot\\resources\\custom\\bootres.dll is corrupt.  <\/p>\n<p>Repair action: File repair<br \/>Result: Failed. Error code = 0x57  <\/p>\n<p>The odd part of this error is the \"Custom\" folder location \u2013 this is not part of the normal folder structure. The bootres.dll file normally resides in the \"Resources\" folder with the BCD file in the folder above (Boot).  <\/p>\n<p>What the error is reporting is that the bootres.dll file is missing (rather than corrupted) On the systems I have checked the \"Custom\" folder does NOT even exist \u2013 thus the bootres.dll cannot be present at this location and is declared \"corrupt\" by the Startup Repair utility.  <\/p>\n<p>The bigger mystery is why the System thinks the file should be located in a \"Custom\" sub-folder in the first place. (Also I think the c: drive letter shown is an artifact \u2013 most likely it refers to the first partition \u2013 not the actual main C: drive \u2013 but that is a whole different can of worms)  <\/p>\n<p>I am currently working on two HP laptops with this exact problem \u2013 both went down within an hour of each other. At first I though it must be a virus or malware attack gone wrong \u2013 but could find no evidence to support this idea.  <\/p>\n<p>Having read multiple postings and responses across many different online forums: The evidence suggests this is a Microsoft bug that affects a limited number of Win10 systems. The problem appears to affect systems recently upgraded to version 1803 (only one case listed 1709 on a Surface device) \u2013 but only occurs after further updates (as yet unidentified) and then a full restart.  <\/p>\n<p>I am exploring BCD repair and rebuild options with some success \u2013 but have no clean fix as yet (the standard RE repair options get lost)  <\/p>\n<p>Anyone have any experience of this problem or ideas as to what causes this error?<\/p>\n<\/blockquote>\n<p>This is not an isolated case, because I found the bug description in several German forums (<a href=\"https:\/\/www.win-10-forum.de\/windows-10-allgemeines\/86369-bootres-dll-beschaedigt.html\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>, <a href=\"https:\/\/www.administrator.de\/forum\/windows-10-kein-zugriff-update-378882.html\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a>). At MS Answers forum there is <a href=\"https:\/\/answers.microsoft.com\/en-us\/windows\/forum\/windows_10-performance\/automatic-repairbootresdll-is-corrupt\/582bd0ba-e29f-46b3-b347-2fd73c8556e3\">this english thread<\/a> (May 2018), or also <a href=\"https:\/\/answers.microsoft.com\/en-us\/windows\/forum\/windows_10-hardware\/how-to-fix-bootresdll-is-corrupt-in-windows-10\/8c70abfb-91a1-4693-ad6e-73c00b45697b\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a> is another case. The solution will be a clean install in most cases, since a file in the EFI boot directory is corrupted. And most users cannot replace it with an undamaged file. However, there is this English-language <a href=\"https:\/\/answers.microsoft.com\/en-us\/windows\/forum\/windows_10-windows_install\/unable-to-boot-computer-after-windows-10-1803\/0ae0ebf6-4836-40ad-b1da-206c30028dd3\" target=\"_blank\" rel=\"noopener noreferrer\">MS Answers forum thread<\/a>, where a user has described a solution that works for him. GDATA antivirus is suspected of being the cause in the German administrator.de forum. In other threads I found Norton AV solution be suspected as a root cause, but everything is only a suspicion. <\/p>\n<h2>Win 10 V1803: Update KB4343909 kills Application Guard<\/h2>\n<p>On Facebook I got the feedback from a German consultant that three of his systems (probably Windows 10 V1803 Enterprise) had a broken&nbsp; 'Windows Defender Application Guard' (WDAG) after installing the August 2018 update. The Windows Defender Application Guard reports the error code 0xC0370106 and the window need to be closed.&nbsp; <\/p>\n<p><img loading=\"lazy\" decoding=\"async\" title=\"Windows Defender Application Guard Error 0xC0370106\" alt=\"Windows Defender Application Guard Error 0xC0370106\" src=\"https:\/\/i.imgur.com\/HFC2mg9.jpg\" width=\"553\" height=\"255\">  <\/p>\n<p>He then confirmed that it is probably the 'known issue' that Microsoft has added to <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/4343909\/windows-10-update-kb4343909\">KBb4343909<\/a>.  <\/p>\n<blockquote>\n<p>Launching Microsoft Edge using the <strong>New Application Guard<\/strong> <strong>Window <\/strong>may fail; normal Microsoft Edge instances are not affected.<\/p>\n<\/blockquote>\n<p>The workaround specified by Microsoft is to uninstall the KB4343909 update. Then install updates <a href=\"https:\/\/support.microsoft.com\/en-us\/help\/4340917\" target=\"_blank\" rel=\"noopener noreferrer\">KB4340917<\/a> and KB4343909. Microsoft intends to deliver a fix in the next release. This error is also mentioned <a href=\"https:\/\/www.askwoody.com\/2018\/yet-another-bug-in-win10-1803\/\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a> on askwoody.com.  <\/p>\n<blockquote>\n<p>By the way, error code 0xC0370106 is an 'old friend'. If you work under Windows 10\/Server 2016 with Docker, the error code may be displayed. <a href=\"https:\/\/github.com\/docker\/for-win\/issues\/902\" target=\"_blank\" rel=\"noopener noreferrer\">This GitHub article<\/a> discusses this for example &#8211; a search with the error code, however, brings further hits.<\/p>\n<\/blockquote>\n<h2>Hypervisor Error from KB4343897 for Windows 10 V1709?<\/h2>\n<p>It's a bit out of line, since it does not refer to Windows 10 V1803 &#8211; and it is only one case I'm aware. On Twitter Tero Alhonen (@teroalhonen) <a href=\"https:\/\/twitter.com\/teroalhonen\/status\/1030863876575961088\" target=\"_blank\" rel=\"noopener noreferrer\">reports<\/a> a problem with the cumulative August 2018 update KB4343897 for Windows 10 V1709.  <\/p>\n<blockquote>\n<p>3rd time after August Cumulative Update KB4343897 for Windows 10 version 1709 <a href=\"https:\/\/t.co\/swx6AstGka\">pic.twitter.com\/swx6AstGka<\/a>  <\/p>\n<p>\u2014 Tero Alhonen (@teroalhonen) <a href=\"https:\/\/twitter.com\/teroalhonen\/status\/1030863876575961088?ref_src=twsrc%5Etfw\">18. August 2018<\/a><\/p>\n<\/blockquote>\n<p>After the cumulative update KB4343897 he had his third Blue Screen 'HYPERVISOR ERROR'. The BSOD stop code 0x00020001 is documented <a href=\"https:\/\/web.archive.org\/web\/20180428045933\/https:\/\/docs.microsoft.com\/en-us\/windows-hardware\/drivers\/debugger\/bug-check--0x20001--hypervisor-error\" target=\"_blank\" rel=\"noopener noreferrer\">here<\/a> from Microsoft.  <\/p>\n<p><strong>Similar articles:<\/strong><br \/><a href=\"https:\/\/borncity.com\/win\/win10-wiki\/\">Windows 10 Wiki<\/a><a href=\"https:\/\/www.borncity.com\/blog\/2018\/08\/17\/windows-streikt-mit-fehler-0xc000007f\/\">Windows streikt mit Fehler 0xC000007F<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2018\/08\/18\/windows-10-v1803-update-kb4458166-fixes-tls-1-2-issue\/\">Windows 10 V1803: Update KB4458166 fixes TLS 1.2 issue<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2018\/08\/15\/windows-10-v1803-rollout-stopped-due-to-tls-1-2-issues\/\">Windows 10 V1803 rollout stopped due to TLS 1.2 issues<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2018\/08\/18\/tls-1-2-windows-error-reporting-service-drops-an-error\/\">TLS 1.2: Windows Error Reporting Service drops an error<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2018\/08\/17\/windows-error-0xc000007f\/\">Windows error 0xC000007F<\/a><br \/><a href=\"https:\/\/borncity.com\/win\/2018\/08\/15\/patchday-windows-10-updates-august-14-2018\/\">Patchday Windows 10-Updates (August 14, 2018)<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[German]After the Microsoft patchday disaster of July 2018, August updates seems to be mostly flawless. But there are some minor issues with Windows 10 V1803 (independent from August patchday). Here is an overview about some (minor) issues in Windows 10 &hellip; <a href=\"https:\/\/borncity.com\/win\/2018\/08\/18\/windows-10-v1709-1803-issues-also-august-patchday\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[463,22,2],"tags":[166,195,76],"class_list":["post-6627","post","type-post","status-publish","format-standard","hentry","category-issue","category-update","category-windows","tag-issues","tag-update","tag-windows-10"],"_links":{"self":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/6627","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/comments?post=6627"}],"version-history":[{"count":1,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/6627\/revisions"}],"predecessor-version":[{"id":35155,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/posts\/6627\/revisions\/35155"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/media?parent=6627"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/categories?post=6627"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/win\/wp-json\/wp\/v2\/tags?post=6627"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}