Friday, July 19, 2024

More info on Crowdstrike Issue

I got this info from a reddit post by Crowdstrike 

F.Y.I.

CrowdStrike Engineering has identified a content deployment related to this issue and reverted those changes.

Workaround Steps:

  1. Boot Windows into Safe Mode or the Windows Recovery Environment

  2. Navigate to the C:\Windows\System32\drivers\CrowdStrike directory

  3. Locate the file matching "C-00000291*.sys", and delete it.

  4. Boot the host normally.


This will not work on an encrypted drive unless you are able to unencrypted it first.

--

Jeffery Johnson


No comments: