The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Remove Drive Encryption Trellix Drive Encryption - SaaS with token and file authentication

Prev Next

Use this task to remove Drive Encryption Trellix Drive Encryption - SaaS with token authentication when Windows becomes corrupt, you cannot access the data of an encrypted system, or encryption or decryption fails.

Make sure that you have:

  • The DETech WinPE boot disk

  • The daily authorization code

Note

You can download the Code of the Day tool from the Trellix website.

Removing Drive Encryption with token authentication fully decrypts the disk and restores the Windows Boot Manager.

  1. Back up the system by taking an image of the disk that includes every sector of the hard disk (including sector zero).

  2. Make sure that the system’s main power supply is plugged in for this task. Do not attempt to perform this task on battery power only.

  3. Boot the system with DETech WinPE boot disk.

  4. At the command prompt, enter these commands to open the DETech window:

    cd\

    cd Program Files\Drive Encryption

    EETech.exe or EEOpalTech.exe

  5. Enter the daily authorization code, then confirm the authorization status.

  6. If necessary, click Set Boot Disk, then select the required boot disk.

  7. Authenticate with a token or a Recovery Information File (.xml) , then confirm the authentication status.

  8. Bring the disk offline.

    Note

    This step might or might not be required. If required, continue with step 8. If not, skip to step 9.

  9. Click Remove DE under Actions.

    Note

    Clicking the Remove DE button might not work because the Windows 7 PE environment brings the disk online. To resolve this issue, you must bring the disk offline before attempting to remove Drive EncryptionTrellix Drive Encryption - SaaS. To bring the disk offline, you must use DiskPart, which is available in Windows 7 PE. Launch the Windows command prompt, and enter these commands.

    diskpart

    select disk 0

    offline disk

  10. Click Remove to begin the decryption process.

Once completed, Drive Encryption Trellix Drive Encryption - SaaS is removed by installing the Windows boot sector. This process might take several hours to complete.

Removing Drive Encryption Trellix Drive Encryption - SaaS using DETech does not uninstall the DEAgent or Drive Encryption Trellix Drive Encryption - SaaS components from the operating system. When you restart the system, the operating system loads and these components synchronize with the ePO - On-prem ePO - SaaS server and apply the current policy. To prevent Drive Encryption Trellix Drive Encryption - SaaS from activating and encrypting, disconnect the system from the network or change its policy in ePO - On-prem ePO - SaaS before restarting the system. When configuring the Drive Encryption Trellix Drive Encryption - SaaS policy, uncheck the Enable Policy option in the General tab. Ensure that you do this only for the selected system and not for all systems in the System Tree.

For instructions on configuring policies, see Trellix Drive Encryption Trellix Drive Encryption - SaaS Product Guide.