Chapter 28: Practical Troubleshooting and System Maintenance (Set-10)
A BSOD “INACCESSIBLE_BOOT_DEVICE” after switching BIOS SATA mode most directly indicates
A C. GPU driver conflict
B B. DNS cache issue
C A. Storage driver mismatch
D D. Printer spool crash
Changing AHCI/RAID mode can stop Windows from accessing the boot drive if required drivers were not enabled earlier. Reverting mode or enabling proper storage drivers can restore boot.
A system shows random BSODs only when XMP is enabled; the most likely root cause is
A B. Slow browser cache
B A. Unstable memory timings
C C. Corrupt printer driver
D D. Wrong boot order
XMP sets higher RAM speed and tighter timings. If unstable, it can cause random crashes. Testing default RAM settings or lowering frequency helps confirm memory stability problems.
If the system drive passes CHKDSK but shows SMART “pending sectors,” the best action is
A C. Clean registry often
B B. Defrag repeatedly
C A. Backup and replace soon
D D. Disable Windows Update
Pending sectors indicate unstable areas that may become unreadable. CHKDSK may pass now, but failure risk remains. Back up immediately and plan replacement to prevent sudden data loss.
A device shows Code 10 after driver reinstall and also fails on another PC; the best conclusion is
A A. Hardware-level failure
B B. Windows profile issue
C C. DNS configuration issue
D D. Patch timing issue
If the same device fails on multiple computers after reinstalling drivers, it strongly suggests hardware fault. At that stage, replacement is more logical than further software troubleshooting.
Websites open by IP address but not by domain name; the most likely fault is
A D. BIOS boot mode
B B. GPU overheating issue
C C. RAM parity issue
D A. DNS resolution problem
If IP works but names fail, the network path is fine but name resolution fails. Checking DNS server settings, flushing DNS cache, and verifying proxy settings are the right steps.
If Windows Update fails repeatedly and “SoftwareDistribution” corruption is suspected, a standard safe fix is to
A B. Flash BIOS firmware
B A. Reset update components
C C. Defrag SSD drive
D D. Remove chipset drivers
Stopping update services and clearing or renaming SoftwareDistribution and Catroot2 can rebuild update cache. This often resolves repeated update errors without reinstalling Windows.
SFC reports errors that cannot be repaired; the correct next step is to run
A C. Device Manager scan
B B. Disk Cleanup
C A. DISM restore health
D D. Task Scheduler
DISM repairs the component store used by SFC. After DISM completes, running SFC again often fixes remaining corrupted files, improving stability and reducing crash chances.
A PC boots to WinRE but normal boot fails; the most targeted diagnostic step is to
A D. Remove keyboard battery
B B. Change wallpaper size
C C. Disable monitor cable
D A. Check recent driver changes
If recovery works but normal boot fails, suspect recent driver or startup changes. Use Safe Mode, uninstall updates, or roll back drivers to remove the trigger without wiping the system.
A system is very slow, CPU is low, RAM is normal, but disk active time is near 100%; best next check is
A B. Screen refresh settings
B A. Drive health indicators
C C. Keyboard repeat rate
D D. Audio output device
High disk active time can mean heavy background I/O or a failing drive. Checking SMART status, event logs, and disk errors helps confirm whether the drive is the bottleneck or failing.
A BIOS flash should never be done when running on
A A. Low battery only
B B. External monitor only
C C. Ethernet connection
D D. SSD storage
If a laptop is flashing BIOS on battery and power drops, firmware may corrupt and the device may not boot. Use AC power and stable battery, or ideally an uninterrupted supply.
A recurring “KERNEL_SECURITY_CHECK_FAILURE” BSOD is often tied to
A C. Monitor cable issue
B B. Printer paper mismatch
C A. Driver memory corruption
D D. Wi-Fi signal strength
This stop code can occur with buggy drivers, memory issues, or corruption. Checking recent driver updates, running memory tests, and reviewing crash logs helps identify the faulty driver or hardware.
A GPU driver crash is best confirmed by checking
A B. Desktop icon count
B A. Event log entries
C C. Browser bookmarks
D D. Keyboard language
Event Viewer can show display driver resets and related error IDs. Matching timestamps with freezes helps confirm GPU driver issues versus unrelated software problems, guiding driver reinstall or rollback.
A print spooler service crash mainly affects
A C. DNS name lookup
B B. BIOS boot entries
C A. Job queue processing
D D. SSD TRIM operation
The spooler manages print jobs for all apps. When it crashes, printing fails or queues freeze. Restarting the service, clearing stuck jobs, and reinstalling drivers commonly fixes it.
A hard-level sign of malware persistence is when suspicious tasks
A A. Reappear after reboot
B B. Improve boot time
C C. Reduce disk usage
D D. Increase free space
If suspicious startup items or tasks return after removal, persistence mechanisms may exist. Offline scans, trusted antivirus tools, and checking startup locations help fully remove hidden malware components.
Best ransomware resilience is achieved by maintaining
A D. Only cloud sync
B B. Always-connected backups
C C. Only restore points
D A. Offline rotated backups
Offline rotation prevents ransomware from encrypting backups. Combining offline copies with cloud backups, patching, and least-privilege accounts provides strong recovery capability after an attack.
Why is “System Restore” not enough for disaster recovery
A B. Replaces motherboard
B A. No full data copy
C C. Fixes PSU issues
D D. Updates BIOS
System Restore rolls back system files and settings but does not guarantee personal file recovery. Disaster recovery needs real backups, tested restores, and recovery media to recover from total failure.
A correct “3-2-1 backup” idea means
A C. No testing needed
B B. One copy, same disk
C A. Multiple copies, media
D D. Daily registry cleaning
3-2-1 means keep three copies of data, on two different storage types, with one copy offsite. This reduces risk from device failure, theft, or ransomware.
A restore test should be done because backups can be
A A. Corrupt or incomplete
B B. Always perfect
C C. Too fast always
D D. Too secure always
Backups can fail silently due to disk errors, permission issues, or interrupted jobs. Testing restores verifies integrity and confirms you can recover quickly during real emergencies.
A hard-level BIOS/UEFI safety step before changes is
A B. Disable Windows Update
B A. Photograph settings screens
C C. Defrag SSD first
D D. Remove antivirus
Recording BIOS settings allows you to restore original values if a change prevents boot. Photos are quick and accurate, especially for boot order, secure boot, SATA mode, and UEFI settings.
The safest order for advanced troubleshooting on an unstable system is
A C. Replace parts first
B B. Diagnose, then backup
C A. Backup, then diagnose
D D. Reset without backup
When stability is uncertain, protect data first. After backup, use logs, Safe Mode, driver checks, and diagnostics. This reduces risk of losing files due to crashes during troubleshooting.
A boot error after enabling Secure Boot can occur because the bootloader is
A D. Stored on SSD
B B. Too large in size
C C. Too fast to read
D A. Unsigned or unsupported
Secure Boot blocks untrusted bootloaders. Some older OS or recovery media may not boot. Adjust Secure Boot carefully and restore security settings once the needed repair is complete.
A “boot configuration data” repair is commonly done using
A B. Disk Cleanup
B A. WinRE tools
C C. Paint utility
D D. Taskbar settings
Windows Recovery Environment provides startup repair and boot recovery utilities to rebuild boot configuration. This is safer than reinstalling and is appropriate for missing BCD or boot file corruption.
Disk cleanup should be used carefully before rolling back updates because it may remove
A C. Monitor settings
B B. Keyboard drivers
C A. Update rollback files
D D. DNS cache
Removing old update files can prevent easy rollback to earlier builds. If you might need rollback, avoid deleting previous Windows installations until the system is stable after updates.
If Windows becomes unstable after “registry optimizer” use, the best recovery route is
A A. System Restore point
B B. Increase CPU voltage
C C. Disable firewall forever
D D. Flash BIOS again
A restore point can roll back harmful registry and system changes made by optimizer tools. This is safer than manual registry edits. After recovery, uninstall the optimizer to prevent recurrence.
A driver update that causes black screen is best recovered by
A C. Disable printer spool
B B. Defrag system disk
C A. Boot Safe Mode
D D. Change DNS server
Safe Mode loads basic display drivers, allowing you to rollback or uninstall the faulty graphics driver. After returning to normal boot, install a stable driver version from the manufacturer.
A network adapter frequently disconnects; the best hard-level check is to review
A B. Desktop icon layout
B A. Power management settings
C C. Font smoothing
D D. Print queue size
Adapters may disconnect if power saving turns them off. Checking device power settings and driver options can fix drops. Also verify router stability and driver versions.
When using CHKDSK on a system drive with fixes, the system often requires
A A. Reboot to run
B B. BIOS flashing
C C. GPU stress test
D D. Printer restart
CHKDSK cannot lock the system drive while Windows is running. Scheduling it at reboot allows deeper file system checks and repairs, which may take time depending on disk size and errors.
A hard-level reason to avoid disabling antivirus during troubleshooting is that it
A C. Fixes disk errors
B B. Speeds up Windows Update
C A. Allows reinfection risk
D D. Improves GPU cooling
During troubleshooting, you may download tools and drivers. Antivirus protection reduces the chance of new infections. Turning it off can worsen the situation and compromise data security.
Best practice after replacing a failing disk is to
A B. Use old drive again
B A. Restore from tested backup
C C. Skip verification steps
D D. Disable Windows Update
After hardware replacement, restoring from a verified backup ensures you recover correct data and a stable system state. Testing backups beforehand ensures the restore process works smoothly.
A hard indicator of PSU instability is when the system
A D. Shows small icons
B B. Opens browser slowly
C C. Prints blank pages
D A. Shuts down under load
Power supply issues often show as sudden shutdowns or reboots during gaming or heavy tasks. Checking cables, testing with a known-good PSU, and monitoring voltages help confirm PSU problems.
A safe “cleanup” step that also reduces attack surface is
A C. Share admin password
B B. Disable firewall always
C A. Uninstall unused software
D D. Turn off updates
Unused apps may have vulnerabilities and background services. Removing them reduces potential entry points for malware and improves performance by lowering startup and background resource usage.
A hard-level sign that a quick performance tweak is unsafe is when it
A A. Disables security features
B B. Removes temp files
C C. Updates drivers safely
D D. Frees disk space
Turning off firewall or antivirus may improve speed slightly but creates major security risk. Safe tuning focuses on startup control, cleanup, and updates without reducing protection.
For SSD health, the maintenance practice that matters most is
A B. Defrag very often
B A. Avoid unnecessary writes
C C. Fill drive completely
D D. Disable TRIM
SSDs have limited write endurance. Avoid defrag and excessive writes, keep TRIM enabled, and maintain free space. These steps help preserve performance and lifespan.
A strong reason to keep a maintenance log is to
A C. Improve Wi-Fi range
B B. Increase screen size
C A. Track repeated failures
D D. Fix disk sectors
Logs help detect patterns like recurring updates, repeated driver crashes, or periodic overheating. This supports long-term maintenance decisions and avoids repeating ineffective fixes.
A hard-level Windows update strategy for critical systems is to
A A. Stage and test first
B B. Install blindly now
C C. Disable updates fully
D D. Use random patches
Testing updates on a few systems first reduces risk of widespread issues. After validation, roll out updates in controlled stages with rollback plans, backups, and monitoring.
A correct check after major maintenance is verifying
A C. Icons are aligned
B B. Wallpaper is new
C A. Backups still run
D D. Mouse is smooth
Maintenance can change services, permissions, or schedules. Confirm backup jobs are still working and recent backups are valid. This ensures ongoing protection after updates and cleanup.
A hard-level reason to avoid “format first” troubleshooting is that it
A B. Fixes boot always
B A. Destroys evidence and data
C C. Improves hardware health
D D. Speeds updates
Formatting deletes logs and user data, making it harder to find root cause. It should be a last resort after backup and proper diagnosis, not an early troubleshooting step.
After fixing repeated network drops, a verification step is to
A D. Disable firewall
B B. Change keyboard layout
C C. Defrag SSD daily
D A. Monitor connection logs
Checking event logs and observing stability over time confirms the fix. Network issues can appear intermittently, so monitoring helps ensure the problem is truly resolved.
A hard-level factor in backup design is selecting RPO, which means
A C. Printer recovery plan
B B. Disk cleaning schedule
C A. Acceptable data loss
D D. CPU temperature limit
Recovery Point Objective defines how much data loss is acceptable, guiding backup frequency. Lower RPO needs more frequent backups. It is key in disaster recovery planning.
Another DR factor is RTO, which refers to
A B. SSD trim interval
B A. Acceptable downtime
C C. Driver rollback speed
D D. Network ping time
Recovery Time Objective is the maximum acceptable downtime. It influences whether you need quick restore images, spare hardware, or faster recovery methods instead of slow manual reinstall processes.
A hard-level verification of driver stability includes confirming
A D. Faster keyboard repeat
B B. Brighter monitor colors
C C. More desktop space
D A. No new crash events
Stable drivers should stop generating repeated errors or crashes. Checking event logs and observing system stability after reboot and workload confirms the driver fix worked.
A correct reason to keep a recovery drive is that it can help when
A A. Windows won’t boot
B B. Mouse is slow
C C. Printer ink low
D D. Keyboard is dusty
Recovery drives allow access to repair tools even if the OS fails. They support startup repair, reset options, and system image recovery, making them critical for serious boot failures.
A hard-level sign that overheating is not just dust is when temps remain high after
A C. File backup creation
B B. Wallpaper change
C A. Cleaning and airflow check
D D. Browser cache clear
If dust is removed and airflow is good but temperatures remain high, suspect thermal paste, heatsink contact, or failing fan. Checking sensor readings and reapplying paste is appropriate.
A BIOS change that can break Windows boot even with correct disk is switching
A B. Mouse sensitivity
B A. UEFI to Legacy
C C. Screen brightness
D D. Speaker volume
If Windows was installed in UEFI mode, switching to Legacy can prevent boot. Boot mode must match installation type. Restoring correct mode often resolves sudden boot failures.
A hard-level method to prevent “backup chain failure” risk is to
A C. Keep backups online
B B. Only incremental forever
C A. Do periodic full backups
D D. Skip verification always
Incremental chains depend on a full backup. Periodic full backups reduce chain length and reduce the chance that one missing or corrupt incremental breaks the entire restore process.
A correct safety step before “Reset this PC” is to
A D. Turn off updates
B B. Disable antivirus now
C C. Delete restore points
D A. Backup and verify restore
Reset may remove apps and can cause data loss if settings are wrong. Back up important files and confirm restore works. This prevents permanent loss if reset goes badly.
A hard-level way to reduce accidental damage while working inside a PC is
A B. Use wet cloth
B A. Use ESD grounding
C C. Work on carpet
D D. Touch pins often
Grounding prevents static discharge into components. Using an anti-static wrist strap and avoiding carpet reduces risk of invisible damage to RAM, motherboard, and sensitive chips during maintenance.
A hard-level indicator of successful patch management is
A C. Icons reorganized
B B. All popups removed
C A. Updates applied and verified
D D. Keyboard cleaned
Proper patch management includes installing updates, confirming success, and monitoring for errors. It also involves rollback plans and documentation to ensure systems remain secure and stable.
After any critical fix, the best final practice is
A A. Create a new backup
B B. Disable firewall for speed
C C. Install random tools
D D. Skip reboot test
Once stable, creating a fresh backup captures the working state. This makes future recovery easier. Combine it with documentation so the stable configuration and fixes are recorded.
The strongest evidence a troubleshooting fix is real is when the system
A B. Shows bigger icons
B A. Stays stable after reboots
C C. Has brighter wallpaper
D D. Plays louder sound
True fixes remain effective after multiple restarts and normal workload. Stability across reboots, clean logs, and no repeat symptoms confirms the root cause was addressed, not temporarily hidden.