Save open work and back up important files. Note any recent driver or hardware changes. If Windows cannot start, use the startup guide first.
Work through these checks
0 of 4 complete01Patch all public-facing edge equipment and VPNs immediately
Patch all public-facing edge equipment and VPNs immediately.
Use the instructions for your exact device and operating system. Check the manufacturer’s documentation before changing firmware, hardware, or system settings.
02Implement strong application whitelisting and block execution from Temp directories
Implement strong application whitelisting and block execution from Temp directories.
Use the instructions for your exact device and operating system. Check the manufacturer’s documentation before changing firmware, hardware, or system settings.
03Deploy tamper-protected endpoint security
Deploy tamper-protected endpoint security.
Use the instructions for your exact device and operating system. Check the manufacturer’s documentation before changing firmware, hardware, or system settings.
04Restore systems from offline backups
Restore systems from offline backups.
Use the instructions for your exact device and operating system. Check the manufacturer’s documentation before changing firmware, hardware, or system settings.
Possible causes
- Exploiting vulnerabilities in VPNs and edge firewalls
- Phishing campaigns containing malicious script attachments
- Compromised administrative credentials
Was this helpful?
Your progress is saved on this device.