The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Add DETech to a Microsoft WinPE 64-bit CD/DVD

Prev Next

Use this task to create a bootable WinPE recovery CD/DVD from the Windows (64-bit) operating system. To do this, you must configure WinPE to include the plug-in for Drive EncryptionTrellix Drive Encryption - SaaS

The following information is intended for System Administrators when modifying the registry details:

  • Registry modifications are irreversible and if done incorrectly can cause system failure.

  • We recommend that you back up your registry and understand the restore process before you proceed with the registry modification. For more information, see http://support.microsoft.com/kb/256986.

  • Do not run a .REG file, which is not considered to be a genuine registry import file.

  • Do not combine the 32-bit and 64-bit architectures.

  • You must rename the EETech64.exe file (found in the Win64 folder within the build) to EETech.exe.

  • WinPE 64-bit is limited to file and password authentication; token support is not available.

  1. Download the Windows Assessment and Deployment Kit (ADK) for Windows from the Microsoft website.

  2. Install the ADK on the Windows operating system by downloading and double-clicking the ADKsetup.exe file.

  3. Select Search and type Deployment to display the Deployment and Imaging Tools Environment icon, then run the tool as Administrator to display the command prompt.

  4. Go to <Windows ADK install path>\Deployment Tools, then run the copype.cmd command using this syntax:

    copype.cmd <architecture> <destination>

    Where

    • <architecture> can be x86 or amd64

    • <destination> is a path to the local directory

    For example, copype.cmd amd64 c:\winpe_amd64

    This command creates the required directory structure and copies all the necessary files for that architecture.

  5. To mount the Windows PE image (Winpe.wim) base to the Mount directory to access the WinPE image, open the command prompt, then enter this command:

    Dism.exe /Mount-Wim /WimFile:C:\winpe_amd64\media\sources\boot.wim /index:1 /MountDir:C:\winpe_amd64\mount

  6. Edit the WinPE environment as follows:

    1. Open regedit, then load the system hive under [HKEY_LOCAL_MACHINE].

    2. Click HKEY_LOCAL_MACHINE, File menu, then click Load Hive.

    3. From the mounted WinPE image, navigate to this system file C:\winpe_amd64\mount\Windows\System32\Config\SYSTEM.

    4. Name the WinPE hive, for example, pe.

    5. Access the [HKEY_LOCAL_MACHINE\pe\ControlSet001\Control\Class\{4D36E967-E325-11CE-BFC1-08002BE10318}] registry entry.

    6. Edit the multi-string upper filters with values in the specified order:

      MfeEpePC

      PartMgr

    7. Right- click the services folder under HKEY_LOCAL_MACHINE\pe\ControlSet001\services, then create the MfeEpePC and MfeCcde keys.

    8. Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeEpePC] key as follows:

      • "Type"=dword:00000001

      • "Start"=dword:00000000

      • "ErrorControl"=dword:00000003

      Note

      The keys are still 32-bit dword even though you are using a 64-bit system.

    9. Modify the values of the [HKEY_LOCAL_MACHINE\pe\ControlSet001\services\MfeCcde] key as follows:

      • "Type"=dword:00000001

      • "Start"=dword:00000000

      • "ErrorControl"=dword:00000003

      • "Group"=string:Primary Disk

      Note

      The keys are still 32-bit dword even though you are using a 64-bit system.

    10. Click pe, then click File menu and Unload hive to unload the WinPE hive.

    11. Close the Registry Editor.

  7. Create the necessary folders in the mounted WinPE image, then copy the Drive Encryptionfiles to the appropriate folders. For details, see the section on Folders and files for WinPE 64-bit CD/DVDs detailed below.

  8. Commit the changes by performing these steps:

    1. To commit changes to WIM, enter this command:

      Dism.exe /Unmount-Wim /MountDir:C:\winpe_amd64\mount\ /Commit

    2. To create a bootable ISO image, enter this command for the appropriate WinPE version:

      WinPE Version

      Command

      Version 3

      oscdimg -n -bc:\winpe_amd64\etfsboot.com C:\winpe_amd64\ISO C: \winpe_amd64\winpe_amd64.iso

      Version 4

      oscdimg.exe -m -o -u2 -udfver102 -bootdata:2#p0,e,b"C:\Winpe_amd64\fwfiles\etfsboot.com"#pEF,e,b"C:\Winpe_amd64\fwfiles\efisys.bin" "C:\Winpe_amd64\media" "C:\Winpe_amd64\winpe_amd64.iso"

      Version 5

      oscdimg.exe -m -o -u2 -udfver102 -bootdata:2#p0,e,b"C:\Winpe_amd64\fwfiles\etfsboot.com"#pEF,e,b"C:\Winpe_amd64\fwfiles\efisys.bin" "C:\Winpe_amd64\media""C:\Winpe_amd64\winpe_amd64.iso"

      Version 6

      MakeWinPEMedia /iso c:\winpe_amd64 winpe_amd64.iso

    The ISO image for WinPE 64-bit for DETech can be found at C:\winpe_amd64\winpe_amd64.iso

  9. Burn this image to a CD/DVD and boot the system from the CD/DVD.

    Note

    Do not boot the system from WinPE CD/DVD while decryption is in progress.

  10. At the command prompt, enter these commands:

    cd\

    cd Program Files\Drive Encryption

    EETech.exe

The DETech screen appears.