Restored EFS encrypted files are corrupted after Full System Recovery (FSR).
The feclient.dll file is not included on the must-have list in winfal.log.
Temporarily, to correctly restore the EFS encrypted files, the EFS encrypted files need to be restored using other restore methods such as Web Based File Recovery (WBFR), Migrate Utility, Recovery Agent Namespace using Windows Explorer and Manage Content from Altiris Console.
To resolve this issue in future cases, the resolution is in the form of NDMFALS.dll which needs to be applied to the client computer with Recovery Solution Agent installed. NDMFALS.dll is included in the Client.zip uploaded attached to the right:
Stop the Recovery Solution Agent service on the client computer.
Browse to %Program Files%\Altiris\eXpress\Client Recovery Agent.
Download the NDMFALS.dll from Client.zip (attached to the right).
Replace the old NDMFALS.dll with the new NDMFALS.dll from Client.zip from attachments.
Restart the Recovery Solution Agent service on the client computer.
This computer may now start new snapshots that will support EFS. Note: Do not use roll back dates for this client which are prior to implimenting this hotfix or step 4 will be undone and the hotfix will need to be reapplied.
For these new snapshots which will support EFS, you may create the Full System Recovery (FSR) MiniOS media from the Altiris Console.
NDMFALS.dll also needs to be updated to the Data1.cab. The Data1.cab needs to be updated so that new Recovery Agent installations will have the hotfix. It can be modified using ASPack.exe utility. More about ASPack.exe is available in article 24583.