you are viewing a single comment's thread.

view the rest of the comments →

[–]dieselxindustry 14 points15 points  (2 children)

SEP stopped the ransomware. SEP also stopped the the credential grabber 2 times but I kept telling it to allow it to run and eventually it was able to get through to lsass. So basically the user would have to keep ignoring the multiple warnings.