Re: How easy is it to turn on in the release version?
If this was the case someone surely would be able to sniff the traffic, sift the wheat from the chaff and get a log of all effected address's then you could potentially do a firewall/gateway block/deny/drop on the address's thats unless it all just resolves back to microsoft.com in which case you just broke windows update.
Although if it works off specific ports thats also a possibility.