Rob, reading your replies is like a major tutorial in security!!! Feel like I'm in a classroom! :) That's so great that you would take the time to share all of this info with me. You might have the impression that I know much more than I do about computers. Just a few years ago, I joined a computer group at our senior center. I've been tinkering with and reading about computers and their issues ever since; but I have to admit, so much of it is way beyond my grasp. What I'm pretty good at is troubleshooting, Googling, and following instructions to fix things. :)
I'll be printing out your replies (so I can adjust these settings, etc, step by step) and have already shared them with my fellow senior lab rats, most of whom have been using computers since the 70s, and are highly knowledgeable--way more than I. But I enjoy learning about them--and much of that is crisis driven, as in this latest instance.
Thank you again, Rob, for sharing your knowledge with me and taking the time to write it all down!!
Chris
PS I should add: we have a computer lab of a dozen machines. They all have Windows 7 and 10, and some also have Linux on them, in partitions, to accommodate the various users' preferences and system familiarity. It's a lot to maintain, and we have a great team of folks who do this. But after reading your replies, I think we need to step up our security measures for greater protection. :)
Chris, As I mentioned in my response to CarolLJ, I've worked in higher education (engineering) as well as many businesses as both an administrator and security consultant, so I know I tend to "teach" when posting and in fact try to. When someone is actually willing to learn it helps not only them, but also everyone else who truly reads the thread and everyone each of them provides aid to as well, so it's always worth the effort.
I tend to talk at a higher level for these reasons, but I know that everyone I've helped personally has told me they've caught at least some of what I've told them, so expecting more from people than what they feel they can grasp only seems to improve their abilities more as well.
The coherent and intelligent way you described he initial situation tells all of us here you understand more than most and more importantly have a well organized thought process. This is far more important than pure knowledge, since like myself you recognize that a key ability you have is using the Internet as a resource to research and then try the most promising items you find based on your troubleshooting. I've simply been doing all of this far longer, since I built my first microcomputer from an early "kit" of discrete electronic components and integrated circuits back in the late 70's.
The reason so few understand the true security abilities of Windows and critical components like Internet Explorer is that there's a computer mythology that's evolved over the years that most consumers believe is the truth. The unfortunate fact is that this has melded with an apparent hatred for Microsoft itself, which is a foolish position to take when these are the systems most need to support and results in a closed mind towards securing the operating system in the best ways possible with what it includes.
I don't blame others for taking this stance, since it is actually the most popular viewpoint in the consumer realm. But it's also precisely why so many end up with infected systems, due to distorted policies like waiting too long to perform Windows Updates or using 3rd-party apps for critical security functions like browsers or antimalware. No one can do these better than Microsoft today, but that's not the popular view since the memories are locked on issues from long ago before Bill Gates internal memo and the beginnings of the Trustworthy Computing Framework in 2002.
Anyone managing more than a few systems will quickly learn the problems that result relating not only to security, but also scalability and the general ability to manage multiple systems. The only real question is whether they'll learn the deeper truths behind what security actually means, since the US public has a distorted view in general that everything needs to be managed as an emergency, when in truth the best posture is always one of strong prevention.
In general, adding things doesn't improve security, it reduces it by increasing the surface area needing to be protected. Nothing is more secure than a Windows operating system as it initially ships, everything added later only increases risk and the management required to secure and maintain it.
Rob
What a great reply! Thank you for your most encouraging and kind words, Rob!! Much appreciated. I know I learn best in the face of adversity--as do we all, I guess. Because if everything is okay all the time, you don't have to go above or beyond, right? Right.
I so very much appreciate all of your time and thoughts put to pen. I agree with your philosophy regarding MS's ability, and, I'd say, mission to make and keep their OSs as safe as possible. I hadn't thought, though, of so much added vulnerability when you introduce more layers through third-party apps. Makes so much sense. We do try to be careful about what we install, but no one monitors what our users are doing on a regular basis, so who knows?? We have the browsers set to clear when closed, but downloading things is another story. Then we end up with problems like #12... I'm pretty certain I'll be reinstalling the OS and just get on with it.
Christine