UFV Computer Antivirus (CrowdStrike Falcon Sensor)

Overview

UFV employee and lab computers are protected by CrowdStrike antivirus using the Falcon Sensor. The CrowdStrike Falcon sensor is lightweight and unobtrusive; unlike traditional antivirus, it does not scan every individual file for malicious content, but instead learns the normal use of the computer so that it can detect malicious behavior.

 

Will I notice anything different?

The biggest difference visually is the absence of icons in the Windows System Tray, status menu, or menu bars. There is no perceptible performance impact on your computer. The Falcon sensor’s design makes it extremely lightweight (consuming 1% or less of CPU) and unobtrusive: there’s no UI, no pop-ups, no reboots, and all updates are performed silently and automatically.

If a malicious file or process is detected, you will notice one of the following pop-ups in the lower right-hand corner:

Pop-up in the lower right-hand corner

Pop-up in the lower right-hand corner

 

Will CrowdStrike prevent me from using my applications?

CrowdStrike uses multiple methods to prevent and detect malware. Those methods include machine learning, exploit blocking, and indicators of attack. That said, CrowdStrike should not block legitimate and known applications.

 

Something I need was blocked by CrowdStrike. What do I do?

In the event CrowdStrike has blocked legitimate software/process, please submit a ticket to the IT Service Desk. Include the following information:

  • The workstation ID of the affected computer (5-digit number found on a white sticker on the computer tower or laptop)
  • The software, file, or process you were trying to access - with as much detail as possible

Our cybersecurity team will review the detection, and exclude it if it is found to be safe.

 

Details

Article ID: 2013
Created
Thu 9/16/21 1:31 PM
Modified
Fri 3/15/24 11:17 AM