David Carroll on Nostr: 1. Boot Windows into Safe Mode or the Windows Recovery Environment 2. Navigate ...
1. Boot Windows into Safe Mode or the Windows Recovery Environment
2. Navigate to the C:\Windows\System32\drivers\CrowdStrike directory
3. Locate the file matching “C-00000291*.sys”, and delete it.
4. Boot the host normally.
Published at
2024-07-19 15:33:28Event JSON
{
"id": "307b0d7a6b395189012de97aed1c10e77f5636db7ce80367d0161a1d93f3ff55",
"pubkey": "d9b9f3fa845a287c54aa496297f82d2f0ef20c3168605401d762927c01c0073c",
"created_at": 1721403208,
"kind": 1,
"tags": [
[
"proxy",
"https://federate.social/users/profcarroll/statuses/112813880690963810",
"activitypub"
]
],
"content": "1.\tBoot Windows into Safe Mode or the Windows Recovery Environment\n2.\tNavigate to the C:\\Windows\\System32\\drivers\\CrowdStrike directory\n3.\tLocate the file matching “C-00000291*.sys”, and delete it.\n4.\tBoot the host normally.",
"sig": "dbd11cb13ad07d8472916c88af2e833de43a1ae3878cf1b5ed32a6e9bdd3d42a6494017da76529946e974265b100707be4a17b7553565a279fc1bbaf8bdc245d"
}