EFS encrypted file decryption data recovery case

Case:
The customer’s operating system is Windows, the file system is NTFS/FAT, and the storage medium is 320G Hitachi hard disk. After the file is encrypted by EFS, the data is unable to read after the computer reinstalls the system.

Solution:
Engineers first find or reorganize the private key of encrypted FEK; find the main key key for reorganizing the private key; check the user password provided by the user, decrypt the user files; conduct logical analysis and verification of the decrypted files, migrate, migrateData needed by users.Complete acceptance of recovered data.