Tom's Hardware > Forum > Windows XP > Windows XP General Discussion > Need help with Windows XP EFS

Need help with Windows XP EFS

Forum Windows XP : Windows XP General Discussion - Need help with Windows XP EFS

Tom's Hardware: Over 1.4 million members in 6 different countries available to answer all your high-tech questions. Sign up now! Its free!
Word :    Username :           
 

Hi,

I just reinstalled my computer, and after that I found that the floppydisk with my certificate on it was broken. So now I have a disk with encrypted files.

I did backup my profile, so I should have everything to decrypt the files.

I have:

*- The certificate & public key, which was in Application Data\Microsoft\SystemCertificates\My\Certificates\C394FA2E4079CCA0E2F57FA19C33F04F41163AEB

*- The private key, which was in Application Data\Microsoft\Crypto\RSA\S-1-5-21-776561741-1500820517-839522115-1003\b4e9627bb7799e0576dc354ad84a2c40_874aecbf-f9fe-4877-8ff3-a7c85536bac2

*- The SID of the user that encrypted the files (S-1-5-21-776561741-1500820517-839522115-1003)

*- A bunch of keys in Application Data\Microsoft\SystemCertificates\My\Keys, which should include the master key with which the private key is encrypted.

*- And at last, the password of the user the files were encrypted with.

If I copy the certificate in a new profile the certificate seems to be working, however if I try to export it it compains about a missing private key. Even when the private key is also copied to the right location.

I'm guessing that is because in XP the private key is encrypted with the master key which is obviously different on this new install so it can't read the private key.

I was hoping someone here knows a bit more about the master key, especially where it's stored exactly and possibly how to replace my current master key with the backed up one so that the private key can be read and I can decrypt some files!

Any other suggestions welcome and thanks in advance.

Sponsored Links
Register or log in to remove.

Quote :

I did backup my profile, so I should have everything to decrypt the files.


Nope. Every time you reinstall your system, OS assigns new and <b>unique</b> SID (Security Identifier) to your computer even when you backup your old profile to it. Without your original <b>recovery agent certificate</b> and its <b>personal encryption certificate (with its associated private key</b> ) which you exported to save in floppy disk, you cannot decrypt the files.

:smile: Good or Bad have no meaning at all, depends on what your point of view is.

Reply to khha4113
Tom's Hardware > Forum > Windows XP > Windows XP General Discussion > Need help with Windows XP EFS
Go to:

There are 474 identified and unidentified users. To see the list of identified users, Click here.

Please mind

You are about to answer a thread that has been inactive for more than 6 months.
If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.

Add a reply Cancel
Sponsored links
  • Ask the community now
  • Publish
Ad
They won a badge
Join us in greeting them