Set instruksionesh për Recover

Hapat e Recovery per Windows:
  1. Boot system in Safe Mode or Windows Recovery Environment
  2. Got to: C:\Windows\System32\drivers\CrowdStrike directory
  3. Locate the file matching “C-00000291*.sys”, and delete it or rename it “C-00000291*.bak”
  4. Boot host machine
Hapat per Server Virtual (Mund te perdoret dhe procedura me siper ose si me poshte:
  1. Detach OS disk volume from impacted server.
  2. For your security make a backup/copy of this disk.
  3. Attach/mount this disk to a working server.
  4. Got to: C:\Windows\System32\drivers\CrowdStrike directory.
  5. Locate the file matching “C-00000291*.sys”, and delete it or rename it “C-00000291*.bak”
  6. Detach volume from working server.
  7. Reattach fixed disk volume to impacted virtual server.
Nese BitLocker eshte aktiv:
Ne opsionin e pare me siper mund te hiqet disk dhe te behet attach ne nje kompjuter tjeter.
Per serverat mund te perdoret opsioni i 2-te.
*** Ne te 2 rastet duhet patjeter te keni backup te bitlocker recovery key***
Zhvillohet trajnimi dy-ditor për sektorin e Turizmit dhe atë të Prodhimit mbi Sigurinë Kibernetike
AKSK