Re: Encrypted files inaccessible after reinstalling OS

From: Jupiter Jones [MVP] (jones_jupiter_at_hotnomail.com)
Date: 07/02/03


Date: Tue, 1 Jul 2003 17:44:25 -0600


Mark;
As Mike suggested, nothing went wrong.
On the surface everything looks the same, however the underlying code
the matched the keys is gone.
Your only hope is restoring the ORIGINAL profile from before the
reload and:
Contacting Microsoft Paid support to put it back together.
OR
Follow this link:
http://www.beginningtoseethelight.org/efsrecovery/index.php

You should read and fully understand the links Mike and I gave before
using EFS.
EFS is very good at what it does and there are no back doors.

-- 
Jupiter Jones  [MVP]
An easier way to read newsgroup messages:
http://www.microsoft.com/windowsxp/pro/using/newsgroups/setup.asp
Please respond to newsgroup only for everyone's benefit.
"Mark Jones" <faker@nowhere.org> wrote in message
news:34b701c3400a$e12fe950$a601280a@phx.gbl...
> Thanks for the reply. I am the sole owner and
> administrator of all files on my system. The type of
> reinstallation I did kept all the same profiles and
> privileges as before so I do not need to restore anything.
>
> Now the encrypted files are not readable (i.e. I can open
> the files but they are now munged) despite using the same
> profile as before the (soft) re-install.
>
> I'm not worried about the files right now but I would like
> to know why this happened and, if it is an error, how to
> prevent or correct it.
>
> Thanks
> Mark
>
> >-----Original Message-----
> >Mark;
> >Are you sure it is not an Ownership issue:
> >http://support.microsoft.com/default.aspx?scid=KB;EN-
> US;Q308421&
> >
> >If the files are encrypted.
> >If you did not back-up the encryption key or the Recovery
> Agent and
> >are not on a domain, the files are as good as gone.
> >This must be accomplished while you have access to the
> files.
> >If you have not already done so, it is now to late.
> >
> >If you can restore the original profile (not recreate)
> you may be able
> >to recover the data.
> >Recreating profiles and passwords is irrelevant.
> >Contact Microsoft if you can restore the profile.
> >Or:
> >http://www.beginningtoseethelight.org/efsrecovery/index.ph
> p
> >
> >EFS is very good at what it does and there is no back
> door.
> >Read and understand these links before using EFS to keep
> from
> >permanently losing your data:
> >http://www.microsoft.com/windowsxp/pro/techinfo/administra
> tion/recovery/default.asp
> >(58 pages)
> >http://support.microsoft.com/?id=223316
> >
> >-- 
> >Jupiter Jones  [MVP]
> >An easier way to read newsgroup messages:
> >http://www.microsoft.com/windowsxp/pro/using/newsgroups/se
> tup.asp
> >Please respond to newsgroup only for everyone's benefit.
>


Relevant Pages

  • Re: End User Profile corruption on Vista Enterprise in AD
    ... If you are going to use EFS then you should a) export the EFS certificate with ... The X509 EFS cert is stored in the user profile so if you use a roaming profile ... Then I would have the user logon and a new profile would be created as; ...
    (microsoft.public.windows.vista.general)
  • Re: WIN2000 Encrypted Folders & Administrator Profile
    ... If you know the password to the old administrator account and have the old profile ... The EFS private keys used are stored in the ... profile of the user and Recovery Agent for those files. ...
    (microsoft.public.win2000.security)
  • Re: EFS Disabling
    ... > I had to reinstall XP on a computer and so I copied my EFS ... Each time you create a user account, a new SID gets ... instances of Windows NT/2000/XP. ... in your profile directory. ...
    (microsoft.public.security)
  • Re: Encryted Data recovered from failed hard drive
    ... Your keys and certs are in the profile dir. ... Once you have your backed up cert+keys, you can open all your EFS ... files encrypted with the cert as long as the files are not damaged. ... Start->Help should have the info to guide you through how to backup your EFS ...
    (microsoft.public.win2000.security)
  • Re: RE:file encryption
    ... The private keys that are used to decrypt EFS files are stored in the user ... profile and local administrator profile and available to export ... not have backup copies of your EFS encryption keys or user profiles at a time ...
    (microsoft.public.win2000.security)