Test 2 Flashcards
T/F there is no undo feature in the registry editor
True
What windows utility is used to control third party services installed on a system
Services console
Windows service console startup types include automatic (delayed start) automatic, manual, and
Disables
What windows utility can be used to find out what processes are launched at startup?
System Configuration
Executive services are contained where?
Ntoskrnl.exe
Shows only warning and error events intended for administrator
Administrator events log
Events triggered by windows components
System log
Includes successful and unsuccessful logins to a user account
Security log
Events when applications are installed
Setup log
What type of events are logged by Windows and can be viewed using the Event Viewer
Warning, information and Error
When a user logs into windows what registry key is created
HKEY_Current_User
A custom view filter in event viewer can be saved to a file using what extension
.evtx
The Win32 security _____ provides logon to the system and other security functions including privileges for file access.
Subsystem
Task manager tab that lists currently installed services with status
Services tab
Displays how heavily network being used by a computer
Networking tab
Provides graphs to show how system resources are used
Performance tab
Shows all users currently logged on
User tab
After Registry is built in memory it is organized into five treelike structures called what?
Keys
What command can you run to view DirectX information
Dxdiag.exe
A computer assigns ___ level for determine is position in the queue for CPU resources
Priority
Use ______ to change the level of an open application
Task Manager
A process is also called what?
Instance
What two steps can be done to disable the Aero interface in Windows 7
- Right click the desktop and select personalize from the shortcut menu
- Scroll down to and click Windows 7 Basic
What performance counter tracks the percentage of time the hard drive is in use?
% Disk Time
What Windows Utility is particularly useful in identifying software and hardware bottlenecks and provides the ability to monitor in real time?
Performance Monitor
If you need to find the model and speed of the installed processor and hard drive and the amount of memory installed what utility should you open?
Misinfo32.exe
T/F the home editions of Windows 7 do not include the Local Security Policy or Print Management
True
Five files stored in the C:\Windows\system32\____ colder are used to build registry. These five files are called ______
A. Config
B. Hives
What task can’t be performed by using task manager?
Restart a process
A windows utility to build customized console Windows
Microsoft Management Console
Shell subsystems operate in what mode?
User mode
The windows kernel includes what two main components
Executive services
HAL
Request made to the Win32 subsystem is called what?
Thread
When baking up the full registry use _______ to create a restore point
System protection
Can be set to launch a task or program at a future time including a start up
Task scheduler
Windows tool useful for troubleshooting hardware or network failures
Event Viewer
Uses a flash drive or secure digital memory card to boost hard drive performances
Windows ReadyBoost
Let’s you view the application and processes running on your computer
Task Manager
A database designed with a treelike structure contains configuration information for windows
Registry
The core of the OS that is responsible for interacting hardware
Kernel
The portion of an OS that relates to the user and to applications
Shell
A windows that consolidates several windows administrative tools that you can use to manage the local pc or other computers on the network
Computer Management
A program that runs in the background and is called by other programs to perform a background task
Service
A component of the kernel which makes up the layer closest to the hardware
HAL
T/F changes made to the registry are implemented after rebooting
False
Contains hardware, software and security data
HKEY_LOCAL_Machine
Used to identify each hardware device
HKEY_Current_Config
Used to determine which application opens
HKEY_Classes_Root
Contains data about all users
HKEY_Users
Contains data about the current user
HKEY_Current_User
Six steps of trouble shooting
- Interview the user and back up data
- Examine the system and make your best guess
- test your theory
- Plan your solution and then fix the problem
- Verify the fix and take preventative action
- Document what happened
Command prompt that opens memory diagnostics utility
Mdsched.exe
If you cannot boot from the hard drive boot from where?
The Windows setup DVD and click repair your computer
Can repair a damaged file
System file checker
What taskkill parameter forcefully kills a process
/f
What can you do if you suspect an application requires more privileges than the currently logged on account
Use the run as administrator shortcut menu option
Command returns the process identify
Tasklist command