Skip to main content

Crowdstrike Bootloop fix

To reboot a machine into safe mode (workstation or server) follow these steps..

At the recovery screen hit "see advanced.."

image.png

Troubleshoot

image.png

Advanced Options

Startup Settings

image.png

Hit reboot

image.png

Once the server reboots you'll see this recovery option screen. I've been selecting "safe mode with networking" since there's a chance you'll still be able to auth using your normal elevated creds (if not cached).

image.png

Once you've logged into the server you need to open up cmd or powershell.

C:\Windows\System32\drivers\CrowdStrike
dir 

(to list all files)

image.png

Copy this filename ( C-00000291-etc) and then run this:

 

del <filename you copied>

Reboot the machine.