I just finished testing 2BrightSparks SyncBack Free. I'm very satisfied with this free backup solution. I'm so satisfied that I'm going to stop using the previous solution I used for simple backups.
SyncBack Free isn't intending to be an enterprise level backup solution so don't expect features like that in this free solution (though their paid pro version does that stuff). What it does do though it does very well. For my environment, I wanted to backup my documents and outlook content to a shared storage location. In my past experience this has either been very easy and thus neglecting some extra features or very complicated and thus keeping me from wanting to use the product. Syncback Free takes an approach that I like a lot by having two modes: easy mode and expert mode. In easy mode and expert modes you first name your backup profile, e.g., outlook profile. Then, you decide what this profile is going to be: backup, synchronize, or mirror (these choices are explained by hovering your mouse over the "?" next to each choice). After naming and choosing the purpose for your profile you automatically are in easy mode. In this mode you can setup your source and destination folders (local, external, or network paths to choose), setup a schedule, and choose what you want to happen if SyncBack Free encounters a duplicate file during a backup, e.g., do you want to copy and replace, do nothing, prompt, etc. If you're done then you can do a simulation run to test the backup. You can choose expert mode from the left menu bar before going through with the simulation run.
In expert mode, you obviously have more options to design your backup profile. This is the part of Syncback Free I really like. Expert mode has options like compression, encryption, FTP, Programs-before and more. One to thing to point out: by default, Syncback Free backups your data to the destination as is. What do I mean? I mean that if you go to your destination drive to view your backup you'll see all your data just the way it looks in your source drive, i.e., the backup isn't zipped into a single folder or encrypted. Anyone with access to that destination drive will be able to access your data without any problem. This is important to point out and the only flaw, I've found, with SyncBack Free. It's basically a copy and paste by default. Expert mode allows you to change this. In the compression section you can check the box to compress the files on the destination into a zip file, then check the box below it to put all the files into a single zip file and if you want you can choose the level of compression. Doing this will make the size of your backup smaller and make the backup a single zipped folder. You can also encrypt your compressed backup which is nice.
So that is my review of SyncBack Free. It's my impression that this solution is for personal use and for very small businesses who can't afford to pay for a solution that is more robust than this free solution. The Pro version is 54.95, but it has a lot of features that make the product worth the price.
If you're looking for a backup solution for your home or small office then checkout SyncBack Free.
Showing posts with label resources. Show all posts
Showing posts with label resources. Show all posts
Thursday, July 11, 2013
Thursday, June 27, 2013
Disk Management refresher
In Windows Server 2012, disk management is arguably defeated by server manager, powershell, and storage spaces. However, not every business (small, medium, or large) is going to make a quick move to Server 2012. What that means is that the IT pro needs to know the basics.
I found this great post at TechNet on implementing disk management. In it the reader will learn disk terms and how to use disk management for creating and managing basic and dynamic disks, software RAID, enabling quotas, and enabling encryption.
Enjoy!
Implementing Disk Management
I found this great post at TechNet on implementing disk management. In it the reader will learn disk terms and how to use disk management for creating and managing basic and dynamic disks, software RAID, enabling quotas, and enabling encryption.
Enjoy!
Implementing Disk Management
Friday, May 3, 2013
Road to MCSA: Week 2
Week 2 was a huge success. I was able to get through objectives 2 and 3 in that week without speed reading or skipping "stuff I know." I read carefully the chapters in Zacker's book and watched the videos offered from Trainsignal. I also did the exam exercises. Guess what? I also learned "stuff." It was a good week.
Things I especially liked from the week:
* ReFS
* High availability printing
* Hyper-V, i.e., all of it: virtual storage, scalability, virtual networks, etc.
* Remote management via server manager
* of course, doing all of the above in powershell!
Things I especially liked from the week:
* ReFS
* High availability printing
* Hyper-V, i.e., all of it: virtual storage, scalability, virtual networks, etc.
* Remote management via server manager
* of course, doing all of the above in powershell!
Friday, April 19, 2013
Road to MCSA: Week 1
Well, week 1 isn't over because I'm studying tomorrow also, but I wanted to go ahead and blog my progress.
Week 1
Read and completed the exercises in chapter 1 of Training Guide to Server 2012 by Tulloch
Read and completed exercises for Objective 1 in Zacker's Server 2012 Exam-Ref book.
Watched two videos on the 70-410 exam from Trainsignal (highly recommend).
Read Technet wiki for Objectives 1.1 and 1.2
So far so great. I'm doing both the powershell and GUI routes for the exercises because from what I understand, so far, that is the goal of Server 2012: powershell administration. It's honestly not too bad. I'm not a scripting guy, but I hope to be after earning this MCSA.
Week 1 is a success I think. I've learned a lot just from this chapter: installing and deploying Server 2012.
Week 1
Read and completed the exercises in chapter 1 of Training Guide to Server 2012 by Tulloch
Read and completed exercises for Objective 1 in Zacker's Server 2012 Exam-Ref book.
Watched two videos on the 70-410 exam from Trainsignal (highly recommend).
Read Technet wiki for Objectives 1.1 and 1.2
So far so great. I'm doing both the powershell and GUI routes for the exercises because from what I understand, so far, that is the goal of Server 2012: powershell administration. It's honestly not too bad. I'm not a scripting guy, but I hope to be after earning this MCSA.
Week 1 is a success I think. I've learned a lot just from this chapter: installing and deploying Server 2012.
Friday, April 12, 2013
A Server 2012 Core Survival Guide - Fun!
Runas Radio has a very cool podcast on DHCP high availability in server 2012. The tech in the podcast interviewed has a blog and he is currently doing a series of posts on what he called, "A Server 2012 Core Survival Guide." It's an interesting series so far because of the scenario for the series.
Bruce Adamczak PFE Blog 2012 Core Survival Guide
So each post has that scenario in mind. Check it out.You are a server administrator with a Windows Server 2012 deployed with only the core interface. You cannot Remote Desktop, Remote PowerShell, or ping the box. You still have access to the console by walking up to it.
Bruce Adamczak PFE Blog 2012 Core Survival Guide
Wednesday, March 27, 2013
Customize an RDP file for a Specific RDWeb user
Do you have some rdweb users who would like to rdp to their desktop from the rdweb portal, but are uncomfortable with the method used in the rdweb portal? It's kind of a long process to login to rdweb, mouse over to 'remote desktop' then plug in the desktop information, etc. What if the user had an rdp file that looked and acted like an app in the remoteapps list? That would be great you say? Then let's do it.
*There might be an easier way than this and if there is please let me know about it*
First, launch remote desktop connection.
Input the user specific information in the fields.
Second, save it as an rdp file.
Third, (only do this if your user's desktop has dual-monitors) open the rdp file in notepad to add some information.
If you user's desktop has dual monitors and the system is Windows 7 ultimate or enterprise then add the following to the end of the rdp file that is opened in notepad: use multimon:i:1
If the users' desktop has dual monitors and running pre-Windows 7 ultimate or enterprise (e.g., windows 7 pro or Windows Vista) then add the following to the end of the rdp file: span monitors:i:1
What is the difference between span and multimon?
From MSDN blog
"Span mode, introduced in Vista, allows the remote desktop to span across all monitors on the client as long as the monitors are arranged to form a rectangle. The remote session created when using span mode is still a single-monitor session. With multimon support, each monitor on the client machine is viewed as a distinct monitor in the remote session. Due to this fundamental difference, span mode has some restrictions that true multimon does not:
1. The primary monitor must be leftmost.
2. The set of monitors must form a rectangle (i.e. identical vertical resolution, and lined up in exact straight line).
3. The total of the resolutions must be below 4096x2048 (ex. 1600x1200+1600x1200 = 3200x1200)."
Multimon "...for Remote Desktop Services allows users to open a Remote Desktop connection expanded across all the monitors on the client computer regardless of the client monitor configuration. With this feature, the user can fully utilize all the monitors connected to the client computer for the Remote Desktop connection thereby providing extra desktop space and an almost seamless experience with the client desktop that is much improved over “Span mode”. "
Fourth, add the rdp file to the remoteapp programs list in your rdweb server.
Go to "remoteapp manger."
Click "add remoteapp programs."
Next.
Browse.
Make sure "all files (*.*)" is selected in the dropdown box. After you've found your custom rdp file select Open.
Next and finish.
Fifth, customize view permissions for the rdp file.
Under remoteapp programs in remoteapp manger, right click the rdp file then select properties. Select user assignment then select "specified domain users and domain groups." Click add. Since this is a specific user rdp file select the appropriate user profile for the rdp file.
OK it.
Then OK in remoteapp properties.
Now, say all of this was for Jane Austen. She will login to the RDWeb portal, see the file you've added to remoteapp programs for her profile, run it then have access to her work desktop. This is much easier compared to the default route.
*There might be an easier way than this and if there is please let me know about it*
First, launch remote desktop connection.
Input the user specific information in the fields.
Second, save it as an rdp file.
Third, (only do this if your user's desktop has dual-monitors) open the rdp file in notepad to add some information.
If you user's desktop has dual monitors and the system is Windows 7 ultimate or enterprise then add the following to the end of the rdp file that is opened in notepad: use multimon:i:1
If the users' desktop has dual monitors and running pre-Windows 7 ultimate or enterprise (e.g., windows 7 pro or Windows Vista) then add the following to the end of the rdp file: span monitors:i:1
What is the difference between span and multimon?
From MSDN blog
"Span mode, introduced in Vista, allows the remote desktop to span across all monitors on the client as long as the monitors are arranged to form a rectangle. The remote session created when using span mode is still a single-monitor session. With multimon support, each monitor on the client machine is viewed as a distinct monitor in the remote session. Due to this fundamental difference, span mode has some restrictions that true multimon does not:
1. The primary monitor must be leftmost.
2. The set of monitors must form a rectangle (i.e. identical vertical resolution, and lined up in exact straight line).
3. The total of the resolutions must be below 4096x2048 (ex. 1600x1200+1600x1200 = 3200x1200)."
Multimon "...for Remote Desktop Services allows users to open a Remote Desktop connection expanded across all the monitors on the client computer regardless of the client monitor configuration. With this feature, the user can fully utilize all the monitors connected to the client computer for the Remote Desktop connection thereby providing extra desktop space and an almost seamless experience with the client desktop that is much improved over “Span mode”. "
Fourth, add the rdp file to the remoteapp programs list in your rdweb server.
Go to "remoteapp manger."
Click "add remoteapp programs."
Next.
Browse.
Make sure "all files (*.*)" is selected in the dropdown box. After you've found your custom rdp file select Open.
Next and finish.
Fifth, customize view permissions for the rdp file.
Under remoteapp programs in remoteapp manger, right click the rdp file then select properties. Select user assignment then select "specified domain users and domain groups." Click add. Since this is a specific user rdp file select the appropriate user profile for the rdp file.
OK it.
Then OK in remoteapp properties.
Now, say all of this was for Jane Austen. She will login to the RDWeb portal, see the file you've added to remoteapp programs for her profile, run it then have access to her work desktop. This is much easier compared to the default route.
Monday, March 25, 2013
Make file explorer available in RDWeb
I thought this was pretty cool. This may not be anything new for RDWeb pros, but I discovered this possibility the other day and thought, "Why not share this on my blog?"
First things first: I haven't found a way to make the file explorer match the logged in user's profile, e.g. if jausten logs in to RDWeb, runs file explorer then she will see all of the available folders instead of only seeing her own documents folder. Why? Because this file explorer is the file explorer on the RDWeb server instead of the file explorer that is in jausten's ad profile. Make sense?
Login to your RDWeb server.
Launch remoteapp manager.
Click add remoteapp program.
In the "choose programs to add to the..." window, click browse
In the "choose a program" explorer window browser to c:\windows then choose explorer.exe
Next
Finish
File explorer is now a part of the remoteapp programs on your RDWeb site. Cool. Just remember to tell your users not to treat the file explorer as their work drive for their own documents. Then why add the file explorer to the remoteapps list? Example: if your rdweb users are on a team then they can share their project files there.There are other examples I'm sure.
Please let me know if you are going to or have done anything with file explorer in rdweb beyond what I have done in this blog post. I would like to hear about it.
Monday, March 18, 2013
Hyper-V 3.0 Best Practices Checklist
The Ask PFE Platforms blog has an excellent post on Windows Server 2012 Hyper-V best practices and it's actually in-depth. I'm only sharing the "general" section for the host not the vms because there are many things to checkoff your roll-out list before you even get to the "deep" things of rolling out a Hyper-V environment.
Excerpt from the blog post:
GENERAL (HOST):
⎕ Use Server Core, if possible, to reduce OS overhead, reduce potential attack surface, and to minimize reboots (due to fewer software updates).
⎕ Ensure all applicable Hyper-V hotfixes and Cluster hotfixes (if applicable) have been applied. Review the following sites and compare it to your environment, since not all hotfixes will be applicable:
⎕ Host should be domain joined, unless security standards dictate otherwise. Doing so makes it possible to centralize the management of policies for identity, security, and auditing. Additionally, hosts must be domain joined before you can create a Hyper-V High-Availability Cluster.
⎕ Anti-virus software should exclude Hyper-V specific files using the Hyper-V: Antivirus Exclusions for Hyper-V Hosts article, namely:
⎕ If you choose to save the VM state as the Automatic Stop Action, the default virtual machine path should be set to a non-system drive, due to the creation of a .bin file is created that matches the size of memory reserved for the virtual machine. A .vsv file may also be created in the same location as the .bin file, adding to disk space used for each VM. (The default path is: C:\ProgramData\Microsoft\Windows\Hyper-V.)
⎕ Periodically run performance counters against the host, to ensure optimal performance.
Excerpt from the blog post:
GENERAL (HOST):
⎕ Use Server Core, if possible, to reduce OS overhead, reduce potential attack surface, and to minimize reboots (due to fewer software updates).
- For more information: http://msdn.microsoft.com/en-us/library/windows/desktop/hh846313(v=vs.85).aspx
⎕ Ensure all applicable Hyper-V hotfixes and Cluster hotfixes (if applicable) have been applied. Review the following sites and compare it to your environment, since not all hotfixes will be applicable:
· Update List for Windows Server 2012 Hyper-V: http://social.technet.microsoft.com/wiki/contents/articles/15576.hyper-v-update-list-for-windows-server-2012.aspx
· List of Failover Cluster Hotfixes: http://social.technet.microsoft.com/wiki/contents/articles/15577.list-of-failover-cluster-hotfixes-for-windows-server-2012.aspx⎕ Ensure hosts have the latest BIOS version, as well as other hardware devices (such as Synthetic Fibre Channel, NIC’s, etc.), to address any known issues/supportability
⎕ Host should be domain joined, unless security standards dictate otherwise. Doing so makes it possible to centralize the management of policies for identity, security, and auditing. Additionally, hosts must be domain joined before you can create a Hyper-V High-Availability Cluster.
· For more information: http://technet.microsoft.com/en-us/library/ee941123(v=WS.10).aspx⎕ RDP Printer Mapping should be disabled on hosts, to remove any chance of a printer driver causing instability issues on the host machine.
- Preferred method: Use Group Policy with host servers in their own separate OU
- Computer Configuration –> Policies –> Administrative Templates –> Windows Components –> Remote Desktop Services –> Remote Desktop Session Host –> Printer Redirection –> Do not allow client printer redirection –> Set to "Enabled
- When the Hyper-V role is installed, the host OS becomes the "Parent Partition" (a quasi-virtual machine), and the Hypervisor partition is placed between the parent partition and the hardware. As a result, it is not recommended to install additional (non-Hyper-V and/or VDI related) roles.
⎕ Anti-virus software should exclude Hyper-V specific files using the Hyper-V: Antivirus Exclusions for Hyper-V Hosts article, namely:
- All folders containing VHD, VHDX, AVHD, VSV and ISO files
- Default virtual machine configuration directory, if used (C:\ProgramData\Microsoft\Windows\Hyper-V)
- Default snapshot files directory, if used (%systemdrive%\ProgramData\Microsoft\Windows\Hyper-V\Snapshots)
- Custom virtual machine configuration directories, if applicable
- Default virtual hard disk drive directory
- Custom virtual hard disk drive directories
- Snapshot directories
- Vmms.exe (Note: May need to be configured as process exclusions within the antivirus software)
- Vmwp.exe (Note: May need to be configured as process exclusions within the antivirus software)
- Additionally, when you use Cluster Shared Volumes, exclude the CSV path "C:\ClusterStorage" and all its subdirectories.
- For more information: http://social.technet.microsoft.com/wiki/contents/articles/2179.hyper-v-anti-virus-exclusions-for-hyper-v-hosts.aspx
⎕ If you choose to save the VM state as the Automatic Stop Action, the default virtual machine path should be set to a non-system drive, due to the creation of a .bin file is created that matches the size of memory reserved for the virtual machine. A .vsv file may also be created in the same location as the .bin file, adding to disk space used for each VM. (The default path is: C:\ProgramData\Microsoft\Windows\Hyper-V.)
- Note: Hyper-V in Server 2012 will now only use the .bin if you choose to save the VM state as the Automatic Stop Action.
- Change to .bin usage in Server 2012: http://blogs.msdn.com/b/virtual_pc_guy/archive/2012/03/26/option-to-remove-bin-files-with-hyper-v-in-windows-8.aspx
To set the iSCSI firewall rules via netsh, you can use the following command:
Netsh advfirewall firewall set rule group=”iSCSI Service” new enable=yes
⎕ Periodically run performance counters against the host, to ensure optimal performance.
- Recommend using the Hyper-V performance counter that can be extracted from the (free) Codeplex PAL application:
- Install PAL on a workstation and open it, then click on the Threshold File tab.
- Select "Microsoft Windows Server 2012 Hyper-V" from the Threshold file title, then choose Export to Perfmon template file. Save the XML file to a location accessible to the Hyper-V host.
- Next, on the host, open Server Manager –> Tool –> Performance Monitor
- In Performance Monitor, click on Data Collector Sets –> User Defined. Right click on User Defined and choose New –> Data Collector Set. Name the collector set "Hyper-V Performance Counter Set" and select Create from a template (Recommended) then choose Next. On the next screen, select Browse and then locate the XML file you exported from the PAL application. Once done, this will show up in your User Defined Data Collector Sets.
- Run these counters in Performance Monitor for 30 minutes to 1 hour (during high usage times) and look for disk latency, memory and CPU issues, etc.
Tuesday, March 5, 2013
Currently Reading Training Guide: Configuring Windows 8
Training Guide: Configuring Windows 8
The authors clearly know their subject. I've learned a lot from this book on how to implement Windows 8 in the enterprise and SMB. Lessons, practices, and exercises are the model and the authors have worked this model in an excellent way. The writing is top notch as well. Tech books have an image (no pun intended) of bad writing, i.e., dry, only writing what's necessary, but that can't be said of this book. The writing keeps me interested.
I'm only about 1/4 of the way through the book and what's funny is I don't want it to be over. I actually look forward to studying this book and doing the exercises. I highly recommend this book for the IT professional wanting an understanding of how to roll out then maintain Windows 8 in the business level and for the geek who just wants to know how it works.
When I'm finished with the book I plan on writing a full review.
Monday, March 4, 2013
Resources on Installing and Configuring Exchange Server 2010
In preparation for the install and configuration of Exchange Server 2010, I was greatly helped by the list of links below, so I'm sharing. I hope these links help you as much as they helped me.
Enjoy!
Installing Exchange 2010 step-by-step http://www.enterprisenetworkingplanet.com/datacenter/Installing-Exchange-2010-Step-by-Step-3877601.htm
Understanding receive connectors in Exchange 2010 http://technet.microsoft.com/en-us/library/aa996395.aspx
Create an SMTP receive connector http://technet.microsoft.com/en-us/library/bb125159.aspx
Understanding Edge subscriptions http://technet.microsoft.com/en-us/library/aa997438.aspx
How to allow relaying in Exchange 2010...securely http://exchangepedia.com/2007/01/exchange-server-2007-how-to-allow-relaying.html
Anonymous Relay with Exchange 2010 http://blogs.catapultsystems.com/tharrington/archive/2010/07/20/anonymous-relay-with-exchange-20072010.aspx
Troubleshooting the client access server http://blogs.catapultsystems.com/tharrington/archive/2010/09/17/troubleshooting-the-client-access-server.aspx
SSL for outlook web app 2010 http://www.experts-exchange.com/Software/Server_Software/Email_Servers/Exchange/Q_26160513.html
Security warning when you start outlook 2007 then connect it to Exchange 2010 http://support.microsoft.com/kb/940726
Troubleshoot Outlook Web Access problems http://www.techrepublic.com/article/get-it-done-troubleshoot-outlook-web-access-problems/5031583
Tuesday, February 19, 2013
Windows Server 2008 R2 RDWeb Resources
This is the first post of February 2013 and it's already the 19th. I can't believe it. I haven't posted in a while, but it's not because of laziness: I've been working on RDWeb for my work. Along the way I found some very helpful and not so helpful resources. I'll only list the helpful links. Do note that these links may not solve your problem and that I'm not endorsing *every* solution mentioned in the links. The answers labeled "best answer" or "chosen answer" helped me in the forums. I didn't try every solution that is mentioned in the links below.
My main focus for deploying Remote Desktop Services was to make our local applications available to users located outside our network so that's the focus of the links below.
Getting Started
Deploying Remote Desktop Web Access Step-by-Step Guide
Resources on Troubleshooting Outside Access Problems
External Users Can't Connect to Apps in RDWeb
TS Gateway "the computer can't connect to the remote computer"
External Access to RDWeb Problem
How to resolve external FQDN to a local IP when behind a firewall
RD Gateway/Web Access Outside the Firewall
Your computer can’t connect to the remote computer because the Remote Desktop Gateway server address is unreachable or incorrect. Type a valid Remote Desktop Gateway server address.
Can't Access Through Gateway
Remote Desktop Gateway is Temporarily Unavailable
Licensing
Remote Desktop Services Licensing
Customizing the RDWeb website
Customizing RDWeb
Troubleshooting Remote Desktop from RDWeb
Remote Desktop via RDWeb
My main focus for deploying Remote Desktop Services was to make our local applications available to users located outside our network so that's the focus of the links below.
Getting Started
Deploying Remote Desktop Web Access Step-by-Step Guide
Resources on Troubleshooting Outside Access Problems
External Users Can't Connect to Apps in RDWeb
TS Gateway "the computer can't connect to the remote computer"
External Access to RDWeb Problem
How to resolve external FQDN to a local IP when behind a firewall
RD Gateway/Web Access Outside the Firewall
Your computer can’t connect to the remote computer because the Remote Desktop Gateway server address is unreachable or incorrect. Type a valid Remote Desktop Gateway server address.
Can't Access Through Gateway
Remote Desktop Gateway is Temporarily Unavailable
Licensing
Remote Desktop Services Licensing
Customizing the RDWeb website
Customizing RDWeb
Troubleshooting Remote Desktop from RDWeb
Remote Desktop via RDWeb
Thursday, January 10, 2013
malware removal and prevention like a boss
It's highly likely that malware will never go away, no matter how awesome computers and the internet become malware will most likely still hang around like that old suit or old dress your parents never remove from their wardrobe and wear to parties. Gross. Anyway, since malware is here to stay, how does one go about removing it? Better, how does one prevent it? It can happen.
Check out this new blog post at InfoWorld written by Roger Grimes; let him tell you how the pros remove malware. It's a good piece.
While you're here let me give some advice on prevention. While malware is here to stay, it doesn't have to come stay at your house. This prevention method is near perfect.
1. Get behind a router/hardware firewall
If you have a direct line to the internet then you're screwed. You need to be behind a firewall and not just a firewall, but a hardware firewall. This is a good one. It's affordable and it rocks.
2. Antivirus
You know, I think if you're behind a firewall and you practice safe browsing then you're most likely good to go. However, many people don't practice safe browsing. So, download and install Microsoft Security Essentials. It's the best antivirus out there in my opinion. Note: if you're running windows 8 then you don't have to do this because it's already installed and running on your system.
3. Safe-Browsing Add-on
This handy tool from Web of Trust rates websites for you and will give you a warning screen upon clicking a poorly rated link. This helps out a lot because it trains the user in safe browsing. Get it here. You will need to install it on every browser you use.
4. OpenDNS
This is, arguably, optional. Using OpenDNS will not only improve your DNS performance (which makes your internet browsing faster), but it also has excellent security tools like malware prevention and safe browsing. The web filter is not only good for preventing porn, but it also filters sites that are infested with malware and other junk. Good stuff. Use it.
So those are four ways to prevent your pc and network from malware infections. However, these tools can't keep you (totally keep you) from user installed malware. So, learn about safe browsing.
Check out this new blog post at InfoWorld written by Roger Grimes; let him tell you how the pros remove malware. It's a good piece.
While you're here let me give some advice on prevention. While malware is here to stay, it doesn't have to come stay at your house. This prevention method is near perfect.
1. Get behind a router/hardware firewall
If you have a direct line to the internet then you're screwed. You need to be behind a firewall and not just a firewall, but a hardware firewall. This is a good one. It's affordable and it rocks.
2. Antivirus
You know, I think if you're behind a firewall and you practice safe browsing then you're most likely good to go. However, many people don't practice safe browsing. So, download and install Microsoft Security Essentials. It's the best antivirus out there in my opinion. Note: if you're running windows 8 then you don't have to do this because it's already installed and running on your system.
3. Safe-Browsing Add-on
This handy tool from Web of Trust rates websites for you and will give you a warning screen upon clicking a poorly rated link. This helps out a lot because it trains the user in safe browsing. Get it here. You will need to install it on every browser you use.
4. OpenDNS
This is, arguably, optional. Using OpenDNS will not only improve your DNS performance (which makes your internet browsing faster), but it also has excellent security tools like malware prevention and safe browsing. The web filter is not only good for preventing porn, but it also filters sites that are infested with malware and other junk. Good stuff. Use it.
So those are four ways to prevent your pc and network from malware infections. However, these tools can't keep you (totally keep you) from user installed malware. So, learn about safe browsing.
Monday, January 7, 2013
10 Essentials Skills for Hyper-V 3.0
If you're interested learning 10 skills for using the next generation of hyper-v, I highly recommend this webinar by Brien Posey from Veeam.
Friday, November 9, 2012
HP All-in-One Black Screen Blinking Cursor at Startup
I got a call from my brother earlier this week. He told me his HP All-in-One computer (brand new by the way) will only display a black screen with a blinking cursor after the blue HP splash screen. At the splash screen he has the option to click the escape key for diagnostics. He said the diagnostics don't solve the problem and asked if I could take a look at it for him. I said sure.
When I arrived at the scene, it's exactly as he told me: black screen, blinking cursor. He was worried about the hardware, but I assured him it most likely isn't his hardware and that if it just happens to be the hardware he still has the safety net of the warranty. I restarted the computer. I hit escape when given the option and waited for the HP diagnostic menu. I checked things out, made sure the boot order was correct, etc. I mostly wanted to check out the hardware diagnostic utility. I ran that and all the hardware passed the tests as I thought they would. I couldn't get into the advanced boot options though due to HP's diagnostic stuff overriding such an option. I wanted to boot into safe mode and check things out. If anyone reading this knows how to override HP's boot utility let me know because it's annoying.
Anyway, I put in the windows 7 disc and got to the recovery console. My hunch was that some malware screwed up the system since Windows wouldn't boot. Keep in mind, I wasn't getting an error message like 'bootmgr failed, couldn't be found, etc." or "ntldr missing." All I had to go off of was the black screen, blinking cursor, which isn't much to go by. My hunch was that the boot files were missing and had to be replaced from the Windows disc.
I booted from the Windows 7 disc. Instead of selecting install, I chose 'repair your computer.' After choosing that option, Windows ran a short scan for startup problems. It detected some problems then asked if I wanted to restart to correct the problems. I went ahead with this option even though my usual skepticism kept me from thinking this would solve the problem. I was right. It didn't solve the problem. I booted back into the recovery console, this time startup repair didn't detect any problems (???), then I went for the command prompt. This is where you want to go for this kind of problem. If you encounter this problem, go to the command prompt and enter the following commands, hitting enter after each command. Make sure and include spacing as spacing is shown.
Bootrec.exe
bcdedit /export C:\BCD_Backup
c:
cd boot
attrib bcd -s -h -r
ren c:\boot\bcd bcd.old
bootrec /RebuildBcd
bootrec /fixmbr
bootrec /fixboot
exit
After these commands, remove the rescue CD then reboot. Your computer should now boot into Windows 7.
We're not out of the woods yet though! I booted into their desktop and what did I see? I saw the File Restore monster. It was "scanning" showing me all of these "problems," a thousand windows were opening a second; it was crazy. Since I had dealt with this monster in the past, I was prepared to slay it this time around. My brother was worried that it was his computer; that it wasn't secure enough. I assured him that this malware only gets in if it's let in. This stuff doesn't get in by brute force. Someone using the computer let it in, by accident of course, but still having an Apple or Ubuntu wouldn't have stopped this.
Anyway, how did I slay the File Restore monster? I'll give you my routine that works. If you have another one, please let me know in the comment box.
File Restore hides your start menu links and a bunch of other stuff to scare you that your computer is truly broken. We won't restore this stuff in the beginning of the routine though. I wanted to go ahead and tell you so you know why those links are gone in case you have to deal with this beast.
I disabled Microsoft Security Essentials real-time scanner in preparation for Combofix.
I then ran combofix. I ran combofix before Malwarebytes because I know this malware is really nasty and wanted to go in with the big guns first. Don't be scared to run comboxfix. Start the app file, proceed with defaults. It will go through around 50 scans (the speed of the scans depends on your computer's specs - I've seen it go fast, I've seen it take a while - 10 to 60 minutes) then, it will create a log report, then open the log report giving you details on what it did.
Rebooted into safe mode.
Ran Malwarebytes quick scan. It only detected some PUPs. I told Malwarebytes to delete them anyway because it was adware and I wanted to make the system squeaky clean.
Rebooted into normal mode.
Ran Windows Repair. This tool is amazing. File Restore can really mess with the default settings for Windows, thus making it look broken. Windows Repair fixes the stuff malware screws up like that. It's a very nice tool. It automatically reboots after the scan finishes. This scan can take a while too. Again, the speed of the scan depends on the specs of your computer.
Windows was fixed after this routine. I wasn't done yet though. I enabled the real-time scanner for Microsoft Security Essentials. I made sure the quick scan was on a daily schedule. It was. I also wanted to make sure this computer was safe not just from the non-user stuff, but even from user-related 'attacks' like answering the door for malware when it goes knocking. I hooked them up with OpenDNS. I enabled the web filter. I went with the Custom configuration on the web filter enabling protection from Adware, P2P/File share sites, Dating sites, Nudity, Pornography, Proxy/Anonymizer, and Web Spam. OpenDNS also has basic malare/botnet protection too which helps.
Then, I installed the Web of Trust addon for Internet Explorer and Firefox. Web of Trust is a terrific broswer add-on rating websites to give you an idea of what you're getting into before you visit a site. A small dot next to each link gives you a rating for the site: green is good, yellow is questionable and red is bad.
If you click on a red rated site WOT will popup asking you if you really want to visit this site and lists why the site is rated red. This will scare most users, preventing them from downloading and installing malware on accident. It's nice. It works.
My brother and his wife were very exited with the work I done for them. They feel better and safer which is good.
This is how I handled the problem. Do you have a different way? Tell me about it in the comment box below.
When I arrived at the scene, it's exactly as he told me: black screen, blinking cursor. He was worried about the hardware, but I assured him it most likely isn't his hardware and that if it just happens to be the hardware he still has the safety net of the warranty. I restarted the computer. I hit escape when given the option and waited for the HP diagnostic menu. I checked things out, made sure the boot order was correct, etc. I mostly wanted to check out the hardware diagnostic utility. I ran that and all the hardware passed the tests as I thought they would. I couldn't get into the advanced boot options though due to HP's diagnostic stuff overriding such an option. I wanted to boot into safe mode and check things out. If anyone reading this knows how to override HP's boot utility let me know because it's annoying.
Anyway, I put in the windows 7 disc and got to the recovery console. My hunch was that some malware screwed up the system since Windows wouldn't boot. Keep in mind, I wasn't getting an error message like 'bootmgr failed, couldn't be found, etc." or "ntldr missing." All I had to go off of was the black screen, blinking cursor, which isn't much to go by. My hunch was that the boot files were missing and had to be replaced from the Windows disc.
I booted from the Windows 7 disc. Instead of selecting install, I chose 'repair your computer.' After choosing that option, Windows ran a short scan for startup problems. It detected some problems then asked if I wanted to restart to correct the problems. I went ahead with this option even though my usual skepticism kept me from thinking this would solve the problem. I was right. It didn't solve the problem. I booted back into the recovery console, this time startup repair didn't detect any problems (???), then I went for the command prompt. This is where you want to go for this kind of problem. If you encounter this problem, go to the command prompt and enter the following commands, hitting enter after each command. Make sure and include spacing as spacing is shown.
Bootrec.exe
bcdedit /export C:\BCD_Backup
c:
cd boot
attrib bcd -s -h -r
ren c:\boot\bcd bcd.old
bootrec /RebuildBcd
bootrec /fixmbr
bootrec /fixboot
exit
After these commands, remove the rescue CD then reboot. Your computer should now boot into Windows 7.
We're not out of the woods yet though! I booted into their desktop and what did I see? I saw the File Restore monster. It was "scanning" showing me all of these "problems," a thousand windows were opening a second; it was crazy. Since I had dealt with this monster in the past, I was prepared to slay it this time around. My brother was worried that it was his computer; that it wasn't secure enough. I assured him that this malware only gets in if it's let in. This stuff doesn't get in by brute force. Someone using the computer let it in, by accident of course, but still having an Apple or Ubuntu wouldn't have stopped this.
Anyway, how did I slay the File Restore monster? I'll give you my routine that works. If you have another one, please let me know in the comment box.
File Restore hides your start menu links and a bunch of other stuff to scare you that your computer is truly broken. We won't restore this stuff in the beginning of the routine though. I wanted to go ahead and tell you so you know why those links are gone in case you have to deal with this beast.
I disabled Microsoft Security Essentials real-time scanner in preparation for Combofix.
I then ran combofix. I ran combofix before Malwarebytes because I know this malware is really nasty and wanted to go in with the big guns first. Don't be scared to run comboxfix. Start the app file, proceed with defaults. It will go through around 50 scans (the speed of the scans depends on your computer's specs - I've seen it go fast, I've seen it take a while - 10 to 60 minutes) then, it will create a log report, then open the log report giving you details on what it did.
Rebooted into safe mode.
Ran Malwarebytes quick scan. It only detected some PUPs. I told Malwarebytes to delete them anyway because it was adware and I wanted to make the system squeaky clean.
Rebooted into normal mode.
Ran Windows Repair. This tool is amazing. File Restore can really mess with the default settings for Windows, thus making it look broken. Windows Repair fixes the stuff malware screws up like that. It's a very nice tool. It automatically reboots after the scan finishes. This scan can take a while too. Again, the speed of the scan depends on the specs of your computer.
Windows was fixed after this routine. I wasn't done yet though. I enabled the real-time scanner for Microsoft Security Essentials. I made sure the quick scan was on a daily schedule. It was. I also wanted to make sure this computer was safe not just from the non-user stuff, but even from user-related 'attacks' like answering the door for malware when it goes knocking. I hooked them up with OpenDNS. I enabled the web filter. I went with the Custom configuration on the web filter enabling protection from Adware, P2P/File share sites, Dating sites, Nudity, Pornography, Proxy/Anonymizer, and Web Spam. OpenDNS also has basic malare/botnet protection too which helps.
Then, I installed the Web of Trust addon for Internet Explorer and Firefox. Web of Trust is a terrific broswer add-on rating websites to give you an idea of what you're getting into before you visit a site. A small dot next to each link gives you a rating for the site: green is good, yellow is questionable and red is bad.
If you click on a red rated site WOT will popup asking you if you really want to visit this site and lists why the site is rated red. This will scare most users, preventing them from downloading and installing malware on accident. It's nice. It works.
My brother and his wife were very exited with the work I done for them. They feel better and safer which is good.
This is how I handled the problem. Do you have a different way? Tell me about it in the comment box below.
Wednesday, October 24, 2012
Resources on Windows 8
It's coming. Two days until it's here. What am I talking about? Why, I'm talking about Windows 8. It's a sexy beast and you're going to need to know about it because it's the next big thing.
Windows 8 Resources
Free ebook from Microsoft Press: Introducing Windows 8
Free videos from Total Seminars' Mike Myers on Windows 8
My IT Forum's best Windows 8 Resources
Enjoy!
Windows 8 Resources
Free ebook from Microsoft Press: Introducing Windows 8
Free videos from Total Seminars' Mike Myers on Windows 8
My IT Forum's best Windows 8 Resources
Enjoy!
Subscribe to:
Posts (Atom)
