Crowdstrike fix
- Cycle through BSODs until you get the recovery screen.
- Navigate to Troubleshoot > Advanced Options > Startup Settings
- Press "Restart"
- Skip the first Bitlocker recovery key prompt by pressing Esc
- Skip the second Bitlocker recovery key prompt by selecting Skip This Drive in the bottom right
- Navigate to Troubleshoot > Advanced Options > Command Prompt
- Type "bcdedit /set {default} safeboot network". then press enter.
- Go back to the WinRE main menu and select Continue.
- It may cycle 2-3 times.
- If you booted into safe mode, log in per normal.
- Either follow the manual steps or use the powershell below to
- Open Windows Explorer, navigate to C:\Windows\\System32\drivers\Crowdstrike
- Delete the offending file (STARTS with C-00000291\*. sys file extension)
- Open command prompt (as administrator)
- Type "bcdedit /deletevalue {default} safeboot"., then press enter.
- Restart as normal, confirm normal behavior
Powershell to remove the bad Crowdstrike files
Global Protect Install
For remote users who either do not have Global Protect or Global Protect is not setup to allow VPN before Windows login. The manual steps are:
- Reboot and make sure global protect is not present at the login screen
- Install Global Protect from https://gateway.vcuhealth.org
- run CMD as admin and run