3.0 Software Troubleshooting QRS Flashcards
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Slow System performance
TO FIX: 1st check Task Manager for high CPU utilization and I/O
Check if Windows Updated? Patch if needed/update patches and drivers.
CK hdd Diskspace/available space and if needed defrag
**Laptops may be using power-saving mode which Throttles the CPU
SCAN for Anti-virus and anti-malware
- 1 Given a scenario, troubleshoot Windows OS Symptoms
- Limited connectivity
SYMPTOM: See error message “ The connection has limited or no connectivity. You might be unable to access the Internet or some network resources. “
- Local issues • Wireless signal, disconnected cable
- PING your default gateway and external IP
- Check IP address configuration • Reboot
- External issues • Wireless router rebooted/turned off
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Failure to boot
SYMPTOM:
Boot errors • Can’t find operating system • OS missing
• Boot loader replaced or changed
FIX: Check if multiple OS’s are installed? • Check boot drives • Remove any media
- Do Startup Repair
- Recovery Console: bootrec /rebuildbcd
- Modify the Windows Boot Configuration Database (BCD)
- Formerly boot.ini
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- No OS found
SYMPTOM: • error message “Missing NTLDR” • The main Windows boot loader is missing •
• Missing operating system • Boots to Safe Mode • or Windows is not starting normally
FIX: • Run Startup Repair Run Startup Repair or replace manually and reboot
- Boot Configuration Data (BCD) may be incorrect
- Run Startup Repair or manually configure BCD store
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Application crashes
- Application stops working • May provide an error message • May just disappear
- Check the Reliability Monitor • A history of application problems
- Check the Event Log • Often includes useful info
- Checks for resolutions
- Reinstall the application /repair install • Contact application’s support phone line
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Blue screens
SYMPTOM:
Bluescreens and spontaneous shutdowns • Startup and shutdown BSOD • Bad hardware, bad drivers, bad application
FIX:
• Use Last Known Good, System Restore, or Rollback Driver
- Try Safe mode • Reseat or remove the hardware • If possible
- Run hardware diagnostics • Provided by the manufacturer • BIOS may have hardware diagnostics
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Black screens
SYMPTOMS:
Black screen • No login dialog, no desktop • Driver corruption, OS file corruption •
to FIX:
Start in VGA mode • F8 for startup options
- Run SFC - System File Checker • Run from recovery console
- or Update driver in Safe Mode • Download from known good source
- Repair/Refresh or recover from backup
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Printing issues
SYMPTOM: Test the printer • Print or scan a test page • Built into Windows • Not the application •
SOLUTION: Use diagnostic tools • Web-based utilities • Built into the printer
• Vendor specific • Download from the web site • Generic • Available in LiveCD form
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Services fail to start
Starting the system • Device not starting • Check Device Manager and Event Viewer • Often a bad driver • Remove or replace driver
- “One or more services failed to start” • Bad/incorrect driver, bad hardware • Try starting manually
- Check account permissions • Confirm service dependencies
- Windows service; check system files
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Slow bootup
SYMPTOM: Slow boot • Boot process hangs or takes longer than normal • No activity, no drive lights
SOLUTION: • Manage the startup apps • Control what loads during the boot process • GO TO Task Manager > Startup tab • Startup impact, Right-click / Disable
• Disable everything • Load them back one at a time
- 1 Given a scenario, troubleshoot Windows OS Symptoms…
- Slow profile load
SYMPTOM: Slow profile load • Roaming user profile • Your desktop follows you to any computer • Changes are synchronized • Can cause Network latency to the domain controller
• Slows login script transfers • Slow to apply computer and user policies
SOLUTION: • May require many hundreds (or thousands) of LDAP queries • Client workstation picks a remote domain controller instead of local DC
• Problems with local infrastructure, Win admin may have to address via escalation
- 1 Given a scenario, troubleshoot Windows OS: SOLUTIONS
- Defragment the hard drive
- Moves file fragments so they are contiguous • Sharing a common border • Improves read and write time • Only applicable to spinning hard drives (not SSD’s)
- • GUI version in the drive properties, Command line: defrag
Weekly schedule with OS> Control Panel / Administrative Tools / Task Scheduler
- Reboot
- Have you tried turning it off and on again? • There’s a reason it works • Bug in your router software
- Reboot the router
- Application is using too many resources • Stops the app
- Memory leak slowly consumes all available RAM
- Clears the RAM and starts again
- Kill tasks
Kill tasks • Instead of rebooting, find the problem • And kill it
•GO TO: Task Manager - Processes tab • Sort by resource
- CPU, memory, disk, network • Right-click to end task
• Trial and error
- Restart services
- View status in Task Manager • Services tab • Right-click to start, stop, or restart
- Services • Applications that run in the background
- No user interaction • Similar issues as a normal process
- Resource utilization • Memory leaks • Crashes
- Update network settings
Update network settings • One configuration mismatch CAN cause significant network slowdowns
- Speed • Duplex • Most auto negotiations work fine • Until they don’t
- the Driver may not show the negotiated value
- Filter through the Event Viewer • THE NETWORK CARD SPEED/DUPLEX MUST MATCH the switch
- Both sides should be identical
- Reimage/reload OS???
Windows is big • And complex • Spend time trying to find the needle???
• Or simply build a new haystack • Many organizations have prebuilt images
lol, is FASTER TO FIX some ISSUEs BY REIMAGING THE PC.
• Windows includes a reset option • Settings / Update>Security /?Recovery
- Roll back updates
- Device Drivers • These can break Windows • Roll back from the • Windows start menu (F8)
- Restore points • Rewind to an earlier point in time
- Time travel without erasing your work • Application updates
- Restore points are created automatically each time an app is installed
Can manually create in OS as well.
- Roll back devices drivers
• Device Drivers • These can break Windows • Roll back from the • Windows start menu (F8)
- Apply updates
- Windows Update • Centralized OS and driver updates • Lots of flexibility • Change active hours
- Manage metered connections
- Applications must be patched
- Security issues don’t stop at the OS • Download from the publisher
- Repair application
- Application issues • Problems with the application files or configurations
- Each application has its own repair process • Fix missing files • Replace corrupted files
- Fix application shortcuts • Repair registry entries • Update or reconfigure drivers
- Update boot order
- The BIOS determines which physical device will be used during boot • And in which order • Each BIOS is a bit different
- Update boot order • Try to boot from a USB drive •
The configuration is in there somewhere • It’s an easy one to miss
• Usually the first thing to check
- Disable Windows services/applications
• Manage startup processes • Task Manager, Control Panel / Administrative Tools / Services
Disable startup services / apps • It’s difficult to tell what application might be a problem child • Much of the underlying OS operations are hidden from view
- Trial and error • Disable all startup apps and services • Or disable one at a time
- This might take quite a few restarts
- Where do I Disable startup services / apps ?
- Task Manager, Control Panel / Administrative Tools / Services
- Manage startup processes • Task Manager, Control Panel / Administrative Tools / Services -Can be hard to tell which application is the problem child.
- Much of the underlying OS operations are hidden from view
- Trial and error • Disable all startup apps and services
- Or disable one at a time and restart to see if that fixed the issue
May take quite a few restarts
F8/ Safe Mode - Windows 7 and 8/8.1
- Press F8 on boot • Advanced Boot Options • Safe Mode has Only the necessary drivers to get started
- CAN Enable low-resolution (VGA Mode) to Recover from bad video driver installations
- Safe Mode with Networking • Includes drivers for network connectivity
- Safe Mode with Command Prompt • No Windows Explorer – quick and dirty
Safe Mode - Windows 10
• Windows Fast Startup prevents a complete shutdown , SO F8 probably won’t work
- From the Windows desktop
- Hold down shift when clicking Restart
• Settings / Update / Security / Recovery / Advanced startup / Restart now • System Configuration (msconfig)
- Rebuild Windows profiles
User Profiles can become corrupted • The User Profile Service failed the logon. Sometimes a User Profile can’t load.
• If a profile doesn’t exist, it’s recreated, SO if you delete the corrupt user profile, then you start rebuilding process • It’s not as easy as copying a file
- Backups, registry modifications
- Login with domain admin
- Rename the \Users\name folder
- Export the user’s registry
- Delete the registry entry
- Restart the computer
Deleting corrupt Windows profiles
- Login to the computer with Domain Administrator rights • Rename the \Users\name folder • This will save important files
- Backup the user’s registry • HKLM\SOFTWARE\Microsoft\Windows NT\ CurrentVersion\ProfileList
- Right-click / Export • Delete the registry entry - You have a backup :)
- Restart the computer
3.1 Given a scenario, troubleshoot Windows OS: SOLUTIONS
Reconstructing Windows profiles
- Login to the computer with the user account • The profile will be rebuilt • This will recreate the \Users\name folder
- Login as Domain Administrator • Copy over any important files from the old profile
- Do not copy the entire user profile over, because the user’s Corrupted files might exist in the old profile
- 2 Given a scenario, troubleshoot and resolve PC security issues.
- Pop-ups
- Pop-ups in your browser • May look like a legitimate application
- May be a malware infection • Update your browser • Use the latest version and check pop-up block feature
- Scan for malware • Consider a cleaning • Rebuild from scratch or known good backup to guarantee removal
- 2 Given a scenario, troubleshoot and resolve PC security issues.
- Browser redirection
• Instead of your Google result, your browser goes somewhere else • This shouldn’t ever happen • Malware is the most common cause
CHECK LAN SETTINGS>IE ADVANCED - REMOVE ANY PROXY SERVER, AND CHECK MSCONFIG FOR MALICIOUS NESS
- Use an anti-malware/anti-virus cleaner • This is not the best option
- Restore from a good known backup • The only way to guarantee removal
- 2 Given a scenario, troubleshoot and resolve PC security issues.
- Browser Security alerts
SYMPTOM:
Browser security alerts • Security alerts and invalid certificates • Something isn’t quite right - Should raise your interest
SOLUTION:
• Look at the certificate details • Click the lock icon • May be expired or the wrong domain name • The certificate may not be properly signed (untrusted certificate authority)
- 2 Given a scenario, troubleshoot and resolve PC security issues.
- Slow performance
Malware network symptoms • Slow performance, lock-up • Malware isn’t the best written code • Internet connectivity issues • Malware likes to control everything
- You go where it wants you to go • You can’t protect yourself if you can’t download • OS updates failures • Malware keeps you vulnerable
- Some malware uses multiple communication paths • Reload or clean • Malware cleaner or recover from known good backup
- 2 Given a scenario, troubleshoot and resolve PC security issues.
- Internet connectivity issues
Malware network symptoms • Slow performance, lock-up • Malware isn’t the best written code • Internet connectivity issues
- Malware likes to control everything • You go where it wants you to go • You can’t protect yourself if you can’t download • OS updates failures • Malware keeps you vulnerable
- Some malware uses multiple communication paths • Reload or clean • Malware cleaner or recover from known good backup