News Stripped-down Windows 11 'Enterprise G' ISO investigated — made for the Chinese government, associated organizations

Jul 6, 2024
2
1
15
This is a poorly reconstructed version, mashed from files sourced from Windows Update servers and binaries from Windows 10 v2004.

According to the BetaWiki admin pivotman319 on Mastodon/Wet-Dry World:
  • ISO volume name and creation date are bogus; wrong tools used to generate image (imapi2 instead of oscdimg/cdimage) - final resulting OS image was produced a week ago on 27th June 2024 at 04:09:00 AM (UTC), ISO generated at roughly 04:25 AM
  • OS image is directly based off of the v24H2 RTM build's Pro source packages - WIM creation times match 1:1 with metadata ESDs from WU
  • the "Enterprise G" edition manifest's code signing catalog is actually borrowed from win10 v2004's professional edition; catalog signed on 7th December 2019 (same time as VB_RELEASE 19041.1); the conversion from Pro to "Enterprise G" using these hacked-together files took two minutes, tops
  • author tried to deliberately hide their tracks by removing any and all logs from the CBS logs directory
  • it's partially set up to auto-activate using massgrave KMS38 and remove edge after installation (the Edge removal thing is not present though)
  • guy who made the ISO also directly modified the media to swap out the setup background image from purple to pitch black to poorly "replicate" a problem present in official MS media for Win11 v24H2
the real Enterprise G is actually published by CMIT (joint venture between MS and CETC in China), meant for China government employees - first introduced in May 2017. the last release the venture made was based on Windows 10 v21H2 CU build 19044.1345, released on 28th January 2022.
 
  • Like
Reactions: iLoveThe80s

paul.nicolezim

Honorable
Oct 25, 2017
5
0
10,510
This is a poorly reconstructed version, mashed from files sourced from Windows Update servers and binaries from Windows 10 v2004.
Thank you for posting this. Ill stay far away from this thing. Who knows what else they did that was not coughs yet. The enemy you know and all that.
 
Last edited by a moderator:
Jul 6, 2024
2
1
15
This is a poorly reconstructed version, mashed from files sourced from Windows Update servers and binaries from Windows 10 v2004.

According to the BetaWiki admin pivotman319 on Mastodon/Wet-Dry World:
  • ISO volume name and creation date are bogus; wrong tools used to generate image (imapi2 instead of oscdimg/cdimage) - final resulting OS image was produced a week ago on 27th June 2024 at 04:09:00 AM (UTC), ISO generated at roughly 04:25 AM
  • OS image is directly based off of the v24H2 RTM build's Pro source packages - WIM creation times match 1:1 with metadata ESDs from WU
  • the "Enterprise G" edition manifest's code signing catalog is actually borrowed from win10 v2004's professional edition; catalog signed on 7th December 2019 (same time as VB_RELEASE 19041.1); the conversion from Pro to "Enterprise G" using these hacked-together files took two minutes, tops
  • author tried to deliberately hide their tracks by removing any and all logs from the CBS logs directory
  • it's partially set up to auto-activate using massgrave KMS38 and remove edge after installation (the Edge removal thing is not present though)
  • guy who made the ISO also directly modified the media to swap out the setup background image from purple to pitch black to poorly "replicate" a problem present in official MS media for Win11 v24H2
the real Enterprise G is actually published by CMIT (joint venture between MS and CETC in China), meant for China government employees - first introduced in May 2017. the last release the venture made was based on Windows 10 v21H2 CU build 19044.1345, released on 28th January 2022.
6 July 16:10 UTC: The Mastodon/Wet-Dry World post was also edited. https://masto.ai/@winload_exe@wetdry.world/112724770530300269 follow the account, turn on notifications, and favorite the post to get notifications about edits.