Stanislav Katran’s Post

View profile for Stanislav Katran, graphic

Chief Information Security Officer

Recommended Mitigations 1) Boot Windows into Safe Mode 2) Navigate to the directory C:\Windows\System32\drivers\CrowdStrike 3) Locate the file matching C-00000291*.sys and delete it 4) Boot the host normally Note: You can also boot in Windows Recovery Environment (WinRE) #crowdstrikefriday

  • No alternative text description for this image

To view or add a comment, sign in

Explore topics