Bitlocker enabled itself on Windows 10 Home edition without a notice and without permission

Anonymous
2022-06-29T22:51:13+00:00

After three years of owning a Dell Inspiron 13 (Windows Home) the computer somehow enabled Bitlocker on its own and encrypted my C: drive. Since I did not activate Bitlocker, I don't have the keys to decrypt the drive. My Microsoft account does not list any keys in it so there is no way to recover the keys as far as I know. Therefore none of the published solutions I have seen can work because they all assume that I have access to the keys. I see many similar complaints online (at least since 2018) and hundreds of "likes" so this appears to be a relatively common problem.

When booting, I see a message titled "BitLocker recovery" and it asks for the recovery key. It then says to "try your work or school account at: aka.ms/aadrecoverykey."

This suggests that the key may be associated with some active directory domain away from my computer. However, the admin account on this computer has, to my knowledge, never logged into an active directory domain, although non-admin users have. And, if the Amin account has connected to a Active Directory somewhere, I sure as heck did not give them a permission to encrypt my drive and lock me out of my computer, and give the key to some third party "work or school" account. If this is what happened, Microsoft, you have a serious security issue where third parties can effectively encrypt hard drives without permission using Microsoft's own tools. That is ransomware - without the ransom. But, this is still just a theory vaguely supported by this link https://hardsoft-support.kayako.com/article/99-windows-10-bitlocker-turns-on-without-a-notice

Here is a quote from the post: "Dell and Lenovo systems that ship with the Windows 10 operating system and are equipped with Trusted Platform Module (TPM) capability will have Microsoft BitLocker encryption enabled from the factory. It has been found that once the device is registered to a Active Directory domain - Office 365 Azure AD, Windows 10 automatically encrypts the system drive. You find this once you reboot your computer and are then prompted for the BitLocker key."

Since I don't know what possible organization could have encrypted the drive, and since I don't have admin access to them, the instructions in the article don't apply.

The laptop is Dell Inspiron 13 7370 - which I don't even think has a TPM chip built in it. BIOS is version 1.20.0. ePSA build is 4306.13 UEFI ROM.

So, Microsoft, how does this get fixed?

P.S. My other computers have Win10 Pro and and they have Bitlocker turned on, but this computer intentionally did not have Bitlocker turned on - and it was not supposed to be possible to turn on bitlocker on a Win10 Home edition. I am mentioning this to highlight that I did not "accidentally" trigger the Bitlocker being turned on - especially because it requires many steps and confirmations. The drive was simply encrypted one day with permission from me.

Windows for home | Windows 10 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

104 answers

Sort by: Newest
  1. Anonymous
    2023-12-18T17:07:02+00:00

    The same thing just happened to me this morning. I did not enable it. What can I do?

    Was this answer helpful?

    0 comments No comments
  2. Anonymous
    2023-11-03T01:20:21+00:00

    i see there is a New issue haunting bitlocker, glad i turn that off, lol, Microsoft confirms "65000" BitLocker encryption error is haunting Windows 11 and Windows 10 - Neowin

    I don't typically participate in forumns, but found this one workth posting. Skip to last paragraph if looking for a solution.

    This is about the journey, not the Destination.

    I have a regular customer that advised his win10p computer had BitLocker activated without his knowledge. He's not technical.  I checked customer notes and see I dialed in and deactivated BitLocker encryption 16 Dec 2021 as he advised BitLocker turned itself on and didn’t know how to deactivate.  So, in 2021 I deactivated BitLocker and took a photo of his computer showing BitLocker turned off.

    Same customer on 2 Oct 2023 with computer stuck in an automatic repair loop. Likely simple corruption of the file system. Unfortunately, BitLocker turned on and activated, so unable to repair with standard repairs (Partition locked preventing repairs). BitLocker has a Description and time stamp code showing 15 Dec 2021 encryption was created. That was one day before I disabled and snapshot the picture. Customer had a dated backup (1 year old) and I restored os to a new disk and customer holding onto the old disk for hopes of decrypting in the future. So, data loss.

    I informed the customer without a printed, text key or file saved to MS account he was out of luck. He was adamant, so with the customer we tried MS website, useless. ;-(... Searched internet, ChatGPT..  ha, ha.. I called Microsoft, which is a mission from New Zealand as the online support is a recording pointing to the website with no answers. 

    Called MS store (050814921) allows transfer to MS support to transfer to Microsoft Technical in the states. So, after 3hrs and x5 hang ups from Microsoft even with a case code: 1058437009 if you are listening, Microsoft.

    I started each call restating the problem, that I have a customer without a BitLocker key from print, file, or associated Microsoft account. So, after 40 minutes on the last call, MS Tech advised to try the associated Microsoft account to get keys.  I reminded him I initially told him we had no keys in customer’s MS account. We waited another 20 minutes as he talked to his supervisor.  He then said I was in luck; the manufacturer would have the key as they are the manufacturer of the computer. I accepted his assistance knowing he was ****, but gave him x2 stars on Microsoft phone survey for not hanging up.  After x3 hours did the x5 minute survey.

    Anyhow called HP Support (0800800004) and I restated the problem and that customer has no BitLocker key: (print, file or ms account). He said I was in luck and could recover key from Microsoft and I should call Microsoft.  So, Hp likes to kick cans too.  MS says call HP and Hp says call MS.  Anyhow he advised HP will have the key associated to their MS Account. This convinced the customer he was out luck, so no key no decryption.

    My learning is Microsoft support creates hoops to dissuade support calls, their technical support doesn't aways listen and isn't technically proficient and doesn't own up to all their technical issues and may kick the can down the road. Would have appreciated it at any time if they just would have said "No key, no decrypt" and would have saved me half a day.

    I suppose Microsoft can't own up to this one, as loss of data would be a costly lawsuit. Better to quietly retire or fix the BitLocker problem.

    "SOLUTION & RECOMMENDATIONS FOR A COMPTUER LOCKED BY BITLOCKER:"

    If your computer is encrypted with BitLocker and you don’t have the BitLocker key (Print, file, or MS account) you are out of luck.  No key, no decrypt ever.

    BitLocker sometimes comes on and can turn itself on when you receive updates or turn itself back on without warning if it was turned on at one time in the past.   Periodically check BitLocker is turned off.  If turned on, decrypt immediately and keep it off, well, unless you are a secret agent, someone getting divorced or Joe Biden’s son.  Then do ensure you have the key.

    Occasionally Win10 and win11 can get data corruptions due to updates, disrupted updates and power disruptions requiring a Windows Repair.  Frequently windows automated repairs get stuck in a loop and require manual repairs, but if BitLocker is installed and you don’t have BitLocker key (Repair not possible), you will lose all your data.  So, remind non-technical users not to turn on BitLocker. Ensure users do regular backups and ensure all their data is synched to the cloud.  Good luck as non-technical will do what non-technical users do and loose data, well unless someone is looking out for them.

    NO BITLOCKER KEY, NO DECRYPT EVER… (Hope this saves someone time)

    Was this answer helpful?

    0 comments No comments
  3. Anonymous
    2023-10-10T13:49:38+00:00

    i see there is a New issue haunting bitlocker, glad i turn that off, lol, Microsoft confirms "65000" BitLocker encryption error is haunting Windows 11 and Windows 10 - Neowin

    Was this answer helpful?

    0 comments No comments
  4. Anonymous
    2023-10-05T11:49:10+00:00

    i work for myself since covid, so i have to learn new things on my own or the hard way with the issue landing at my door, when i worked at Dell and Microsoft we had training every week on new things,, so i can fall a bit behind if i dont run into it, so i have formated many computers that have auto encryption and did not know it untill now, as my personal computers dont have windows home, and my new hp does not have it enabled by default, with i like. Here is my personal kijiji add for my services, wich you might have to copy and paste into browser to view.

    https://www.kijiji.ca/v-view-details.html?adId=1666587962&siteLocale=en\_CA

    Was this answer helpful?

    0 comments No comments
  5. Neil D 34,285 Reputation points Volunteer Moderator
    2023-10-05T11:42:19+00:00

    Yep. Good find with the link on your previous post by the way.

    Was this answer helpful?

    0 comments No comments