FileCrypt Service Defaults in Windows 11
Windows sandboxing and encryption filter.
Default Settings
| Startup type: | System |
| Display name: | FileCrypt |
| Service name: | FileCrypt |
| Service type: | filesys |
| Error control: | critical |
| Group: | FSFilter Encryption |
| Path: | %SystemRoot%\system32\drivers\filecrypt.sys |
| Registry key: | HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FileCrypt |
Default Behavior
FileCrypt is a file system driver. In Windows 11 it starts at Kernel initialization. If FileCrypt fails to start, Windows 11 tries to record the error details into Event Log and restart the PC, using the Last Known Good configuration. If the Last Known Good configuration can't be used, Windows 11 startup process halts with a Stop error. If you disable or delete the FileCrypt service, Windows 11 won't start.
Dependencies
FileCrypt cannot be started, if the FltMgr service won't start.
Restore Default Startup Configuration of FileCrypt
Before you begin doing this, make sure that all the services on which FileCrypt depends are configured by default and function properly. See the list of dependencies above.1. Run the Command Prompt as an administrator.
2. Copy the commands below, paste them into the command window and press ENTER:
sc config FileCrypt start= system
sc start FileCrypt
3. Close the command window and restart the computer.
The FileCrypt service is using the filecrypt.sys file that is located in the C:\Windows\system32\drivers directory. If the file is removed or corrupted, read this article to restore its original version from Windows 11 installation media.