Use this task to create a bootable WinPE recovery CD/DVD from the operating system. To do this, you must configure WinPE to include the plug-in for Drive EncryptionTrellix Drive Encryption - SaaS, which supports the x86 (32-bit) architecture.
The following information is intended for System Administrators when modifying the registry details:
Registry modifications are irreversible and if done incorrectly can cause system failure.
We recommend that you back up your registry and understand the restore process before you proceed with the registry modification. For more information, see http:// support.microsoft.com/kb/256986.
Do not run a .REG file, which is not considered to be a genuine registry import file.
Do not combine the 32-bit and 64-bit architectures.
Download the Windows Assessment and Deployment Kit (ADK) for the operating system from the Microsoft website.
Install the ADK on the Windows operating system by burning it to a CD/DVD or by extracting it using WinRAR.
Click Windows | All programs | Windows Kits | Windows ADK, then run the tool as Administrator to display the command prompt.
Go to
<Windows ADK install path>\Deployment Tools, then run thecopype.cmdcommand using this syntax:copype.cmd <architecture> <destination>Where
<architecture> can be x86 or amd64
<destination> is a path to the local directory
For example, copype.cmd x86 c:\winpe_x86
This command creates the required directory structure and copies all the necessary files for that architecture.
To mount the Windows PE image (Winpe.wim) base to the Mount directory to access the WinPE image, open the command prompt, then enter this command:
Dism.exe /Mount-Wim /WimFile:C:\winpe_x86\media\sources\boot.wim /index:1 /MountDir:C:\winpe_x86\mountEdit the WinPE environment as follows:
Open regedit, then load the system hive under [HKEY_LOCAL_MACHINE].
Click HKEY_LOCAL_MACHINE, File, then click Load Hive.
From the mounted WinPE image, navigate to this system file
C:\winpe_x86\mount\Windows\System32\Config\SYSTEM.Name the WinPE hive, for example, pe.
Access the [HKEY_LOCAL_MACHINE\pe\ControlSet001\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}] registry entry.
Edit the multi-string upper filters with values in the specified order:
MfeEpePC
PartMgr
Right-click HKEY_LOCAL_MACHINE\pe\ControlSet001\services, then create the MfeEpePC and MfeCcde keys.
Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeEpePC] key as follows:
"Type"=dword:00000001
"Start"=dword:00000000
"ErrorControl"=dword:00000003
Note
The keys are still 32-bit dword even though you are using a 64-bit system.
Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeCcde] key as follows:
"Type"=dword:00000001
"Start"=dword:00000000
"ErrorControl"=dword:00000003
"Group"=string:Primary Disk
Note
The keys are still 32-bit dword even though you are using a 64-bit system.
Click pe, then click → to unload the WinPE hive.
Close the Registry Editor.
Create the necessary folders in the mounted WinPE image, then copy the Drive Encryption Trellix Drive Encryption - SaaSfiles to the appropriate folders. For details, see Folders and files for WinPE 32-bit CD/DVDs.
Commit the changes by performing these steps:
To commit changes to WIM, enter this command:
Dism.exe /Unmount-Wim /MountDir:C:\winpe_x86\mount\ /CommitTo create a bootable ISO image, enter this command for the appropriate WinPE version:
WinPE Version
Command
Version 3
oscdimg -n -bc:\winpe_x86\etfsboot.com C:\winpe_x86\ISO C: \winpe_x86\winpe_x86.isoVersion 4
oscdimg -n -bc:\winpe_x86\etfsboot.com C:\winpe_x86\ISO C:\winpe_x86\winpe_x86.isoVersion 5
oscdimg.exe -m -o -u2 -udfver102 -bootdata:2#p0,e,b"C:\Winpe_x86\fwfiles\etfsboot.com"#pEF,e,b"C:\Winpe_x86\fwfiles\efisys.bin" "C:\Winpe_x86\media""C:\Winpe_x86\winpe_x86.iso"Version 6
MakeWinPEMedia /iso c:\winpe_x86 winpe_x86.iso
The ISO image for WinPE 32-bit for DETech can be found at
C:\winpe_x86\winpe_x86.isoBurn this image to a CD/DVD and boot the system from the CD/DVD.
Note
Do not boot the system from WinPE CD/DVD while decryption is in progress.
At the command prompt, enter these commands:
cd\cd Program Files\Drive EncryptionEETech.exe
The DETech screen appears.