Maintaining, Updating, and Protecting Windows 7



Similar documents
Understand Backup and Recovery Methods

PC Security and Maintenance

Contents. McAfee Internet Security 3

Client Guide for Symantec Endpoint Protection and Symantec Network Access Control

Understanding Backup and Recovery Methods

How to easily clean an infected computer (Malware Removal Guide)

ESET CYBER SECURITY PRO for Mac Quick Start Guide. Click here to download the most recent version of this document

System Compatibility. Enhancements. Operating Systems. Hardware Requirements. Security

What is PC Matic?...4. System Requirements...4. Launching PC Matic.5. How to Purchase a PC Matic Subscription..6. Additional Installations.

Sophos Enterprise Console Help. Product version: 5.1 Document date: June 2012

HoneyBOT User Guide A Windows based honeypot solution

Airtel PC Secure Trouble Shooting Guide

Security Consultant Scenario INFO Term Project. Brad S. Brady. Drexel University

Selected Windows XP Troubleshooting Guide

Sophos Anti-Virus for NetApp Storage Systems startup guide. Runs on Windows 2000 and later

Trend Micro OfficeScan Best Practice Guide for Malware

Forefront Endpoint Protection. Jack Cobben

How to Use Windows Firewall With User Account Control (UAC)

Net Protector Admin Console

ESET NOD32 Antivirus. Table of contents

K7 Business Lite User Manual

Sophos Computer Security Scan startup guide

Spyware Doctor Enterprise Technical Data Sheet

Best Practice Configurations for OfficeScan (OSCE) 10.6

Sophos Anti-Virus for NetApp Storage Systems startup guide

SCCM How to guide deploying SCCM Client, setting up SUP and SCEP. Hans Chr. Andersen

Lectures 9 Advanced Operating Systems Fundamental Security. Computer Systems Administration TE2003

Configuring, Customizing, and Troubleshooting Outlook Express

Integrating Trend Micro OfficeScan 10 EventTracker v7.x

PC Security & Housekeeping March 2015

Microsoft Diagnostics and Recovery Toolset Overview

FOR MAC. Quick Start Guide. Click here to download the most recent version of this document

ESET SMART SECURITY 9

Basic Computer Maintenance

Section 12 MUST BE COMPLETED BY: 4/22

MCTS Guide to Microsoft Windows 7. Chapter 7 Windows 7 Security Features

Charter Business Desktop Security Administrator's Guide

Providing Patch Management With N-central. Version 7.2

Providing Patch Management with N-central. Version 9.1

AllianceIT Managed Services

AVG File Server. User Manual. Document revision ( )

Managed Service Plans

Sophos Enterprise Console Help

Client Guide for Symantec Endpoint Protection and Symantec Network Access Control

Installation and Setup: Setup Wizard Account Information

Implementing Endpoint Protection in System Center 2012 R2 Configuration Manager

Getting Started. Symantec Client Security. About Symantec Client Security. How to get started

Sophos Endpoint Security and Control Help. Product version: 11

Windows 7, Enterprise Desktop Support Technician Course 50331: 5 days; Instructor-led

Using Windows Update for Windows XP

Windows Operating Systems. Basic Security

Microsoft Forefront Endpoint Protection 2010 Evaluation Guide

Sophos for Microsoft SharePoint startup guide

Understanding Backup and Recovery Methods

Symantec Endpoint Protection and Symantec Network Access Control Client Guide

Step-by-Step Guide to Securing Windows XP Professional with Service Pack 2 in Small and Medium Businesses

SMALL BUSINESS EDITION. Sophos Control Center startup guide

Computer Security Maintenance Information and Self-Check Activities

Housekeeping Your PC

ESET SMART SECURITY 6

Worry-Free TM Remote Manager TM 1

Managed Services Agreement. Hilliard Office Solutions, Ltd. PO Box Phone: Midland, Texas Fax:

Providing Patch Management With N-central. Version 7.1

"Charting the Course to Your Success!" MOC D Windows 7 Enterprise Desktop Support Technician Course Summary

ms-help://ms.technet.2005mar.1033/security/tnoffline/security/smbiz/winxp/fwgrppol...

Get Started Guide - PC Tools Internet Security

StruxureWare Power Monitoring 7.0.1

Preparing Your Personal Computer to Connect to the VPN

Some simple computer maintenance to keep your computer running well.

AVeS Cloud Security powered by SYMANTEC TM

Product Guide. McAfee Endpoint Security 10

Using TS-ACCESS for Remote Desktop Access

Windows 7, Enterprise Desktop Support Technician

Symantec Endpoint Protection Getting Started Guide

Topic 2: Computer Management File Management Folders A folder is a named storage location where related files can be stored. A folder also known as

Sophos Endpoint Security and Control Help

A+ Guide to Managing and Maintaining Your PC, 7e. Chapter 16 Fixing Windows Problems

Computer Security. Uses Zip disks that hold up to 750 MB of data. Must buy and hook up the drive.

Maintenance Guide. Outpost Firewall 4.0. Personal Firewall Software from. Agnitum

Frequent Smart Updates: Used to detect and guard against new infections as well as adding enhancements to Spyware Doctor.

How To Install Caarcserve Backup Patch Manager (Carcserver) On A Pc Or Mac Or Mac (Or Mac)

ESET NOD32 ANTIVIRUS 9

MaxSea TZ: Microsoft SQL Server problems End User

Nexio Backup and Recovery

SystemTech AntiSpyware Manual

Managing and Monitoring Windows 7 Performance Lesson 8

DISK DRIVE MAINTENANCE. 1. Disk Cleanup

ESET NOD32 ANTIVIRUS 8

Revo Uninstaller - User's Guide

Outpost Network Security

GFI Cloud User Guide A guide to administer GFI Cloud and its services

SERVICES BRONZE SILVER GOLD PLATINUM. On-Site emergency response time 3 Hours 3 Hours 1-2 Hours 1 Hour or Less

AVG File Server User Manual. Document revision (11/13/2012)

VPS Hosting. The Guide to Bet Angel VPS. Getting started with Bet Angel VPS. Revised August Page 1

Sophos Anti-Virus for Windows, version 7 user manual. For Windows 2000 and later

Managed Antivirus Quick Start Guide

Best Practice Configurations for OfficeScan 10.0

Transcription:

Lesson 7 Maintaining, Updating, and Protecting Windows 7 Learning Objectives Students will learn to: Understand Disk Defragmenter Understand Disk Cleanup Understand Task Scheduler Understand Action Center Understand System Information Understand the Windows Registry Understand Windows Updates Understand Microsoft Updates Understand Hotfixes Understand Action Center Understand Windows Defender Use the Malicious Software Removal Tool Understand Windows Forefront Endpoint Protection ODN Skills Understanding Disk Defragmenter. 6.2.1 Understanding Disk Cleanup. 6.2.2 Understanding Task Scheduler. 6.2.3 Understanding Action Center. 6.2.4 Understanding System Information. 6.2.5 Understanding the Windows Registry. 3.3.4 Understanding Windows Updates. 6.3.1 Understanding Microsoft Updates. 6.3.2 Understanding hotfixes. 6.3.3 Understanding Action Center. 3.3.2 Understanding Windows Defender. 3.3.1 Using the Malicious Software Removal Tool. 3.3.3 Understanding Windows Forefront Endpoint Protection. 3.3.5 Lesson Summary Lecture Notes Lesson 7 helps students understand how to use a variety of tools to maintain, update, and protect Windows 7. 1-1

Begin the lecture by explaining that Windows 7 comes with many built-in maintenance tools that help to keep computers running at top performance. These tools include Disk Defragmenter, Disk Cleanup, Task Scheduler, and the Action Center Maintenance feature. While describing each tool, open the tool and show the students how it s used. Disk Defragmenter is a utility that helps improve a computer s performance by moving sectors of data on the hard disk, so that files are stored sequentially. This minimizes the movement a hard disk s arm must make to read all of the sectors that make up a file or program. Disk Cleanup helps users remove unnecessary files from their computers, such as downloaded program files, temporary Internet files, Offline Web page, those that are left after running software, and much more. Task Scheduler enables a user to schedule and automate a variety of actions, such starting programs, displaying messages, and even sending e-mails. You create a scheduled task by specifying a trigger, which is an event that causes a task to run, and an action, which is the action taken when the task runs. There are two commands in the Task Scheduler Actions pane for creating tasks: Create Basic Task and Create Task. When you use the Create Basic Task command, the Create Basic Task Wizard walks you through the essentials of creating a task. The Create Task command displays the Create Task dialog box, which is the manual way of creating task but gives you more control and options. Next, discuss Action Center. Within Action Center, you can view the status of security features (firewall, antivirus software, etc.) and maintenance. The Maintenance section tracks solutions to problem reports, and the status of backups, Windows Update, and troubleshooting issues. Windows 7 notifies you of any pending issues by displaying a red X under the flag in the notification area. (You ll revisit the Action Center to provide an overview of the Security section later in this lesson.) System Information displays a wealth of information about a computer s hardware, drivers, and system software. If you re having any type of system-related issues, you should check System Information for possible clues as to the source of the problem. You can export information from System Information to a text file to send to a fellow support technician or post on a troubleshooting forum on a Web site. System Information enables you to save information to an.nfo file format, which you can open from System Information, or export information to a standard text file with a.txt file extension. The Windows registry is a database in Windows that stores user preferences, file locations, program configuration settings, startup information, hardware settings, and more. In addition, the registry stores the associations between file types and the applications that use them. Explain that although the registry tends to maintain itself, registry cleaners are available from third parties to remove unneeded information. You should back up your registry before running any maintenance program on it. Microsoft provides the Registry Editor utility to make changes to the registry and back it up. The next major section focuses on updating a Windows 7 system. Microsoft provides several ways to help you keep a Windows system patched and updated using hotfixes, service packs, updated drivers, and more. Windows Update and Microsoft Update are the primary update tools. 1-2

Open the Windows Update window and explain the types of updates delivered through Windows Update: important, recommended, and optional. Show the students how to check which updates have been installed in the past (history). Mention that administrators in all but very small environments often use Windows Server Update Services (WSUS) to gather Windows updates and hotfixes and then distribute them to client computers. The next major section describes ways to defend a system from malicious software. Methods include a firewall, antispyware software, and antivirus software. Action Center tracks these types of security-related programs in the Security section, in addition to Windows Update, Internet security settings, User Account Control, and Network Access Protection (NAP). Describe how a firewall works. Also introduce Windows Firewall, which ships with the Windows 7 operating system. Explain that firewalls sometimes block good programs, and that you must use the Allow a program or feature through Windows Firewall command in the task pane of the Windows Firewall page to allow good programs to communicate through the firewall. The next tool to be discussed is Windows Defender, a free Microsoft antispyware program. Explain what spyware is, and how Windows Defender runs in the background, constantly monitoring a computer for spyware. When it detects spyware, the program quarantines it (so the spyware can't run on the computer) or deletes it. You can also run quick, full, and custom scans from Windows Defender. Microsoft Security Essentials is a program that helps protect a computer from viruses and other malware. You can run Microsoft Security Essentials for free on up to 10 computers. Microsoft recommends that you use Microsoft Forefront Endpoint Protection (covered later in the lesson). Like Windows Defender, Security Essentials offers three types of scans: quick, full, and custom. Microsoft Security Essentials is updated regularly by the Microsoft Update service to ensure the signatures, the anti-malware engine, and the application itself are kept up to date. Be sure to explain what signatures are, and how antivirus software uses signatures to detect viruses. The next section addresses the Microsoft Windows Malicious Software Removal Tool, which scans a computer for dangerous malware and attempts to remove it immediately. The tool is available as a free download from the Microsoft Web site. It s useful for removing malware that you know is on your system but can t be removed by other antimalware software. Finally, describe Microsoft Forefront Endpoint Protection, a combination of antivirus/anti-malware and management software for desktops, laptops, and other client endpoints in a business environment. If you have more than 10 client computers to protect in your organization, Microsoft recommends that you use Forefront Endpoint Protection rather than Microsoft Security Essentials. Forefront Endpoint Protection 2010 is built on System Center Configuration Manager. Configuration Manager provides centralized management of client computers along with the ability to secure them, and it supports WSUS for distributing Windows updates and hotfixes. 1-3

Key Terms action - In Task Scheduler, the action taken when the task runs. Action Center - A Windows feature that provides a single interface in which users can view the status of security and maintenance features. Action Center alerts users to problems they need to correct and usually provides a way to fix it. Disk Cleanup - A Windows utility that removes many different kinds of unnecessary files from a computer, such as downloaded program files, Temporary Internet files, offline Web pages, files in the Recycle Bin, setup log files, and temporary files left by programs. Disk Defragmenter - A Windows utility that helps improve a computer s performance by moving sectors of data on the hard disk, so that files are stored sequentially. This minimizes the movement a hard disk s arm must make to read all of the sectors that make up a file or program. endpoint - On a network, a device associated with a user, such as a desktop, laptop, or a smartphone. fragmented - The state of a disk in which portions of files are spread across sectors on different parts of the disk. hotfix - A patch that typically fixes a bug in software. malicious software - Viruses, worms, and other forms of malware that may attack a computer connected to the Internet. Microsoft Forefront Endpoint Protection - A combination of antivirus/anti-malware and management software for desktops, laptops, and other client endpoints in a business environment. Microsoft Security Essentials - A program that helps protect a computer from viruses and other malware. Microsoft Update - A service that provides service packs, security patches, and other updates for Windows and other Microsoft software. Microsoft Update is an optional replacement for Windows Update. Microsoft Windows Malicious Software Removal Tool - A utility that scans a computer for dangerous malware and attempts to remove it immediately. service pack - A collection of updates and hotfixes for a specific edition of Windows since the product was released. signature - A sequence of text or code that s programmed into a virus and uniquely identifies it. Antivirus software uses an anti-malware engine to find viruses and other malware on a computer. spyware - A type of program that installs on your computer without your permission, monitors your computing activities, and reports the activity back to the spyware writer or a third party. 1-4

Task Scheduler - A Windows feature that enables users to schedule and automate a variety of actions, such starting programs, displaying messages, and sending e-mails. trigger - In Task Scheduler, an event that causes a task to run. Windows Defender - A free antispyware program provided by Microsoft. Windows Firewall - A software program or device that monitors traffic entering and leaving a computer. Windows Firewall comes with Windows 7 and other Windows versions to protect a computer from traffic entering through communications ports. Windows Registry - A database in Windows that stores user preferences, file locations, program configuration settings, startup information, hardware settings, and more. In addition, the registry stores the associations between file types and the applications that use them. Windows Update - A service that keeps a Windows system patched and updated is vitally important to maintaining proper security. 1-5

Lesson 7 Maintaining, Updating, and Protecting Windows 7 Knowledge Assessment Multiple Choice Circle the letter that corresponds to the best answer. 1. Which Windows built-in utility helps you delete unnecessary files from your computer? a. Disk Defragmenter b. Disk Cleanup c. Task Scheduler d. Registry Editor 2. Which Windows built-in utility helps improve your computer s performance by moving sectors of data on the hard disk? a. Disk Defragmenter b. Disk Cleanup c. Task Scheduler d. Registry Editor 3. In Task Scheduler, which command creates a task using a wizard? a. Create Task b. Create Scheduled Task c. Create Task Automatically d. Create Basic Task 4. In Windows Defender and Microsoft Security Essentials, which of the following scans is not available? a. Quick b. Full c. Partial d. Custom 5. Which of the following is not part of the Maintenance section in Action Center? a. Check for solutions to problem reports b. Virus protection c. Backup 1-6

d. Check for updates 6. If Action Center detects a maintenance or security issue that needs your attention, an X is displayed under the flag in the notification area. What color is the flag? a. Red b. White c. Yellow d. Orange 7. How often does Disk Defragmenter run by default? a. Every day b. Once a week c. Biweekly d. Once a month 8. Which program is always updated on Patch Tuesday? a. Windows Defender b. Microsoft Security Essentials c. Malicious Software Removal Tool d. Windows Firewall 9. If, for example, your computer is infected with MyDoom, which tool should be used to remove it? a. Malicious Software Removal Tool b. Windows Firewall c. Windows Defender d. Task Scheduler 10. Which system does Microsoft Forefront Endpoint Protection require? a. Windows Server 2008 R2 b. Windows Server 2008 R2 or later versions c. System Center Configuration Manager 2007 d. Windows 7 Fill in the Blank Fill in the correct answer in the blank space provided. 1. A disk that is fragmented has file data spread across many different sectors. 2. Disk Cleanup is a utility that removes many different kinds of unnecessary files from your computer. 3. In Task Scheduler, a trigger is an event that causes a task to run 4. The Windows registry is a database in Windows that stores user preferences, file locations, program configuration settings, startup information, hardware settings, and more. 5. Microsoft provides regularly scheduled updates to the Windows operating system via the Windows Update feature. 1-7

6. Microsoft Update delivers updates for Microsoft software in addition to the Windows operating system. 7. Malware describes a wide variety of malicious software, such as viruses and worms, that attack computers. 8. A service pack is a collection of updates from Microsoft since the last version of Windows or another Microsoft product was released. 9. Windows Defender is Microsoft's free antispyware program. 10. Microsoft Forefront Endpoint Protection enables you to centrally manage the security of client computers and devices in an enterprise. True / False Case Scenarios Circle T if the statement is true or F if the statement is false. T F 1. Microsoft includes Windows built-in maintenance tools in the Maintenance Tools folder in Accessories. T F 2. Disk Cleanup can be run on demand but the utility does not have its own scheduling feature. T F 3. Windows Update provides hotfixes and service packs for Windows computers. T F 4. Windows Defender can run simultaneously with Microsoft Security Essentials, as a complementary program. T F 5. Windows Firewall is enabled automatically in new installations of Windows 7. Scenario 7-1: Automating Computer Maintenance and Program Launching Maria is a busy freelance writer who uses her computer many hours a day to research and write articles for several national magazines and newspapers. Her computer, which runs Windows 7 Professional, must be running at peak performance with little downtime. Maria has little time to devote to computer maintenance tasks. She also uses Internet Explorer 9 and Microsoft Word 2010 every day and would like them to start automatically when Windows starts. Maria asks you for advice how to maintain her computer with relatively little effort, and how to configure her computer to start programs automatically. What do you tell her? Tell Maria to ensure that Disk Defragmenter is scheduled to run at least once a month, that Windows Firewall is enabled and operating correctly, that she has realtime protection installed such as an antivirus program or Internet security suite, and that Windows Update is enabled to check for updates automatically. She should configure Task Scheduler to run Disk Cleanup weekly, and set Internet Explorer 9 and Microsoft Word 2010 to start when Windows starts. To schedule Disk Cleanup to run weekly and the other programs to start when Windows starts, she should select the Create Basic Task in Task Scheduler. The wizard will guide her through the prompts. For the trigger, she should select Weekly. In the Weekly screen, she should select a start date, time, and the day of the week Disk Cleanup will run. In the Start a Program screen of the wizard, she should 1-8

click Browse, click Disk Cleanup, navigate to the Disk Cleanup program, select it, and click Open. (Disk Cleanup is located in the Accessories/System Tools folder.) When she completes the wizard, Disk Cleanup will be added to her scheduled tasks list. The same general steps apply to Internet Explorer 9 and Word 2010, but for each program, she will select When the computer starts as the trigger. She will need to browse to locate the Internet Explorer 9 executable file and the Word 2010 executable file. Scenario 7-2: Removing Viruses Safely You are a support person for a computer consulting company. Rajeem is an independent tax consultant who calls you to report that he believes he infected his computer with a virus after downloading and installing a tax-related utility from the Web. How do you advise him to check his computer and resolve the problem, if necessary? Tell Rajeem to download and run the Microsoft Windows Malicious Software Removal Tool. Have him perform a full scan of his computer, and to remove any infections the tool detects. When his system is clean, ensure he has a reputable, current antivirus software program installed on his computer such as Microsoft Security Essentials. Scenario 7-3: Gathering System Information In an effort to troubleshoot an issue on a client computer, you posted a message on an online PC support forum. The forum moderator posts a message asking you to list all of the programs that launch at startup on the affected computer. What is the easiest way to provide this information? On the affected computer, open System Information. Expand the Software Environment category, click the Startup Programs category, select File > Export and then save the file to the desktop or another location that s easy to access. Open the.txt file, highlight all information, copy the information, and then paste the information in a reply to the support forum moderator along with a short message. Scenario 7-4: Distributing Windows Updates Across a Network You support Richman Investments, a brokerage firm that employs 20 brokers. Each broker has his own client computer, and the firm has a server running Windows Server. All of the client computers are configured identically. Over the past six months, some Windows updates have caused the computers to hang, leaving the brokers without computers to conduct business. How can you ensure that the Windows updates that install on client computers will not cause usability issues? Implement WSUS on the Richman Investments server and set up a test client computer that s configured exactly as the broker s computers. When new updates and hotfixes are available through Windows Updates, test them on the test 1-9

computer. Install only approved updates and hotfixes over the network to client computers. 1-10