The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Add DETech to a Microsoft WinPE 32-bit CD/DVD

Prev Next

Use this task to create a bootable WinPE recovery CD/DVD from the operating system. To do this, you must configure WinPE to include the plug-in for Drive EncryptionTrellix Drive Encryption - SaaS, which supports the x86 (32-bit) architecture.

The following information is intended for System Administrators when modifying the registry details:

  • Registry modifications are irreversible and if done incorrectly can cause system failure.

  • We recommend that you back up your registry and understand the restore process before you proceed with the registry modification. For more information, see http:// support.microsoft.com/kb/256986.

  • Do not run a .REG file, which is not considered to be a genuine registry import file.

  • Do not combine the 32-bit and 64-bit architectures.

  1. Download the Windows Assessment and Deployment Kit (ADK) for the operating system from the Microsoft website.

  2. Install the ADK on the Windows operating system by burning it to a CD/DVD or by extracting it using WinRAR.

  3. Click Windows | All programs | Windows Kits | Windows ADK, then run the tool as Administrator to display the command prompt.

  4. Go to <Windows ADK install path>\Deployment Tools, then run the copype.cmd command using this syntax:

    copype.cmd <architecture> <destination>

    Where

    • <architecture> can be x86 or amd64

    • <destination> is a path to the local directory

    For example, copype.cmd x86 c:\winpe_x86

    This command creates the required directory structure and copies all the necessary files for that architecture.

  5. To mount the Windows PE image (Winpe.wim) base to the Mount directory to access the WinPE image, open the command prompt, then enter this command:

    Dism.exe /Mount-Wim /WimFile:C:\winpe_x86\media\sources\boot.wim /index:1 /MountDir:C:\winpe_x86\mount

  6. Edit the WinPE environment as follows:

    1. Open regedit, then load the system hive under [HKEY_LOCAL_MACHINE].

    2. Click HKEY_LOCAL_MACHINE, File, then click Load Hive.

    3. From the mounted WinPE image, navigate to this system file C:\winpe_x86\mount\Windows\System32\Config\SYSTEM.

    4. Name the WinPE hive, for example, pe.

    5. Access the [HKEY_LOCAL_MACHINE\pe\ControlSet001\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}] registry entry.

    6. Edit the multi-string upper filters with values in the specified order:

      MfeEpePC

      PartMgr

    7. Right-click HKEY_LOCAL_MACHINE\pe\ControlSet001\services, then create the MfeEpePC and MfeCcde keys.

    8. Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeEpePC] key as follows:

      • "Type"=dword:00000001

      • "Start"=dword:00000000

      • "ErrorControl"=dword:00000003

      Note

      The keys are still 32-bit dword even though you are using a 64-bit system.

    9. Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeCcde] key as follows:

      • "Type"=dword:00000001

      • "Start"=dword:00000000

      • "ErrorControl"=dword:00000003

      • "Group"=string:Primary Disk

      Note

      The keys are still 32-bit dword even though you are using a 64-bit system.

    10. Click pe, then click File → Unload hive to unload the WinPE hive.

    11. Close the Registry Editor.

  7. Create the necessary folders in the mounted WinPE image, then copy the Drive Encryption Trellix Drive Encryption - SaaSfiles to the appropriate folders. For details, see Folders and files for WinPE 32-bit CD/DVDs.

  8. Commit the changes by performing these steps:

    1. To commit changes to WIM, enter this command: Dism.exe /Unmount-Wim /MountDir:C:\winpe_x86\mount\ /Commit

    2. To create a bootable ISO image, enter this command for the appropriate WinPE version:

      WinPE Version

      Command

      Version 3

      oscdimg -n -bc:\winpe_x86\etfsboot.com C:\winpe_x86\ISO C: \winpe_x86\winpe_x86.iso

      Version 4

      oscdimg -n -bc:\winpe_x86\etfsboot.com C:\winpe_x86\ISO C:\winpe_x86\winpe_x86.iso

      Version 5

      oscdimg.exe -m -o -u2 -udfver102 -bootdata:2#p0,e,b"C:\Winpe_x86\fwfiles\etfsboot.com"#pEF,e,b"C:\Winpe_x86\fwfiles\efisys.bin" "C:\Winpe_x86\media""C:\Winpe_x86\winpe_x86.iso"

      Version 6

      MakeWinPEMedia /iso c:\winpe_x86 winpe_x86.iso

    The ISO image for WinPE 32-bit for DETech can be found at C:\winpe_x86\winpe_x86.iso

  9. Burn this image to a CD/DVD and boot the system from the CD/DVD.

    Note

    Do not boot the system from WinPE CD/DVD while decryption is in progress.

  10. At the command prompt, enter these commands:

    cd\

    cd Program Files\Drive Encryption

    EETech.exe

The DETech screen appears.