Forum RSS Feed Follow @ Twitter Follow On Facebook

Thread Rating:
  • 2 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
[-]
Welcome
You have to register before you can post on our site.

Username:


Password:





[-]
Latest Threads
ASUS R1F CPU upgrade
Last Post: DeathBringer
Today 12:22 AM
» Replies: 1
» Views: 98
Asus h110m-a & xeon e3-1280v5
Last Post: DeathBringer
Yesterday 01:41 PM
» Replies: 1
» Views: 115
[REQUEST] Lenovo IdeaPad Flex 15 (8ACNxx...
Last Post: psycomaffo
Yesterday 10:36 AM
» Replies: 69
» Views: 26055
Request for Modded BIOS with AI Tweaker ...
Last Post: CertifiedCosmos
04-17-2024 05:04 PM
» Replies: 0
» Views: 120
Lenovo ThinkCentre M71e GPU Whitelist re...
Last Post: saschalein
04-17-2024 03:23 PM
» Replies: 0
» Views: 105
[REQUEST] Lenovo Ideapad 330S-15ARR (7WC...
Last Post: nadolivbios
04-17-2024 01:26 PM
» Replies: 25
» Views: 6157
How To Add SLIC 2.1 To An Intel Motherbo...
Last Post: sanya.silitskiy
04-17-2024 11:52 AM
» Replies: 73
» Views: 220005
[REQUEST] 13w Yoga Gen 2 (Type 82YR) (KB...
Last Post: SiberianTiger97
04-17-2024 09:48 AM
» Replies: 2
» Views: 182
Acer Extensa 5620: CPU replace
Last Post: MPM
04-17-2024 08:28 AM
» Replies: 2
» Views: 166
[REQUEST] Sony Vaio VPCEH & VPCEJ series...
Last Post: nrns
04-16-2024 08:08 PM
» Replies: 232
» Views: 98587
[REQUEST] Lenovo Y70-70 (9ECNxxWW) White...
Last Post: Dudu2002
04-16-2024 02:35 PM
» Replies: 103
» Views: 24048
[REQUEST] Lenovo Yoga 2 Pro (76CNxxWW) W...
Last Post: Dudu2002
04-16-2024 07:29 AM
» Replies: 847
» Views: 324317
[REQUEST] Acer Predator Helios 300 PH315...
Last Post: Dudu2002
04-16-2024 07:28 AM
» Replies: 26
» Views: 1004
[REQUEST] Lenovo ThinkPad P14s 3rd Gen 1...
Last Post: Dudu2002
04-16-2024 07:26 AM
» Replies: 4
» Views: 307
Add CPU support Lenovo M715s
Last Post: pashtet440
04-16-2024 06:56 AM
» Replies: 0
» Views: 158
[REQUEST] Lenovo G580 (5ECNxxWW) Whiteli...
Last Post: Dudu2002
04-14-2024 09:02 AM
» Replies: 1733
» Views: 542304
Dell Latitude 5520 - get to know passwor...
Last Post: yeti1299
04-14-2024 06:48 AM
» Replies: 2
» Views: 251
[REQUEST]: Asus TP420IA - how to dump bi...
Last Post: quantumx3
04-14-2024 05:34 AM
» Replies: 0
» Views: 217
[REQUEST] Lenovo Y50-70 (9ECNxxWW) BIOS ...
Last Post: Nightdemon2001
04-14-2024 01:13 AM
» Replies: 2319
» Views: 656893
[REQUEST] Lenovo B575 (52CNxxWW) Whiteli...
Last Post: thepwrtank18
04-13-2024 06:13 PM
» Replies: 56
» Views: 20459

[REQUEST] Lenovo Ideapad Y700-15ISK (CDCNxxWW) BIOS Unlock
#61
so what do you need to dump the embedded controller (EC) firmware from
LENOVO Y700 15ISK?
find
quote
#62
""Error 316" Protected Range Registers are currently set by BIOS, preventing flash access"

I change that "desc.bin" file like on guide. But without success. Still no permission after use "fptw -bios -d bios.bin".
Model : y700-15isk
find
quote
#63
(05-30-2019, 06:03 PM)sajmonella9 Wrote: ""Error 316" Protected Range Registers are currently set by BIOS, preventing flash access"

I change that  "desc.bin" file like on guide. But without success. Still no permission after use "fptw -bios -d bios.bin".
Model : y700-15isk
Hi
Your bios is rewrite protected...you need SPI-programmer+SOIC8 clip only
find
quote
#64
Step 1 - Unlocking ManagementEngine and descriptor
First, extract file "DESC_ME_Unlock.zip"
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:
Code:
WinTest C45 D80
WinTest C40 D02
laptop restarting and ME + descriptor is unlocked. Audio sound chipset of laptop not working. 

Step 2 - make dump of descriptor
After restarting, run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:

Code:
fptw -D desc.bin -DESC

Step 3 - modify your dump "desc.bin" file with HEX editor, at adress 00000080 according this picture, and save as "desc_unlocked.bin"
[Image: f39t3553p49758n8_ANSjkyiZ.png]

Step 4 - flash modified descriptor file "desc_unlocked.bin"
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:


Code:
fptw -rewrite -F desc_unlocked.bin -DESC

Step 5 - dump your bios
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:

Code:
fptw -bios -d bios.bin
bios.bin 6MB dump file is generated

Step 6 - modify your bios, and save as "bios_mod.bin" file
with help from other users (work in progress...)


Step 7 - flash modified bios file "bios_mod.bin"
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:

Code:
fptw -rewrite -bios -f bios_mod.bin

Step 8 - IMPORTANT!!! YOU MUST LOCK ManagementEngine FOR ENABLE AUDIO SOUND CHIPSET OF LAPTOP
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:
Code:
Wintest C45 D81
Wintest C40 D02


Attached Files
.zip   DESC_ME_Unlock.zip (Size: 957.88 KB / Downloads: 77)


find
quote
#65
this method works without SPI-programmer+SOIC8 clip and provide full access to lenovo y700-15isk (i5-6300hq) bios menue?
i need to replace my wifi card with intel ax200,
i can provide my biosdump in pm if someone guide me please
thank you
find
quote
#66
(07-21-2019, 05:04 PM)suffkopp37 Wrote: this method works without  SPI-programmer+SOIC8 clip and provide full access to lenovo y700-15isk (i5-6300hq) bios menue?
i need to replace my wifi card with intel ax200,
i can provide my biosdump in pm if someone guide me please
thank you

is only for flash without SPI programmer

not for unlocking bios hidden menu


Quote:Step 6 - modify your bios, and save as "bios_mod.bin" file

with help from other users (work in progress...)


find
quote
#67
Hi, can anyone help me in unlocking bios for lenovo y700-15 using method described by ataigun in previous posts.
Thanks for any help!
find
quote
#68
(07-28-2019, 03:23 PM)ataigun Wrote: Step 6 - modify your bios, and save as "bios_mod.bin" file
with help from other users (work in progress...)

(08-01-2019, 11:30 AM)gvbilokorenko Wrote: Hi, can anyone help me in unlocking bios for lenovo y700-15 using method described by ataigun in previous posts. Thanks for any help!

I have this laptop and unlocked BIOS flashing on it so that you can just do fptw -bios -f bios.bin (for example) to flash the BIOS without disassembling anything:

   

More specifically, an UEFI module can be patched to remove Protected Range Registers (PRR0 and PRR1).

Before:
Code:
SPI Protected Ranges
------------------------------------------------------------
PRx (offset) | Value    | Base     | Limit    | WP? | RP?
------------------------------------------------------------
PR0 (84)     | 87FF06C0 | 006C0000 | 007FFFFF | 1   | 0
PR1 (88)     | 857F029A | 0029A000 | 0057FFFF | 1   | 0
PR2 (8C)     | 00000000 | 00000000 | 00000000 | 0   | 0
PR3 (90)     | 00000000 | 00000000 | 00000000 | 0   | 0
PR4 (94)     | 00000000 | 00000000 | 00000000 | 0   | 0

[!] SPI protected ranges write-protect parts of BIOS region (other parts of BIOS can be modified)

After:
Code:
SPI Protected Ranges
------------------------------------------------------------
PRx (offset) | Value    | Base     | Limit    | WP? | RP?
------------------------------------------------------------
PR0 (84)     | 00000000 | 00000000 | 00000000 | 0   | 0
PR1 (88)     | 00000000 | 00000000 | 00000000 | 0   | 0
PR2 (8C)     | 00000000 | 00000000 | 00000000 | 0   | 0
PR3 (90)     | 00000000 | 00000000 | 00000000 | 0   | 0
PR4 (94)     | 00000000 | 00000000 | 00000000 | 0   | 0

[!] None of the SPI protected ranges write-protect BIOS region

The Flash Configuration Lockdown (FLOCKDN) flag remains set but no longer matters.

Caveats:
  1. You'd still need to use an external programmer once to flash the modified BIOS.
  2. Every BIOS you flash later must be modified the same way or you will lock yourself out.
  3. If you mess something up, you might still need an external flash to recover (less serious problems such as settings mismatch can be solved by taking off the bottom cover and disconnecting both batteries for a while).
If anybody is interested in the details, let me know and I can share them here.
find
quote
#69
(06-06-2019, 02:16 PM)ataigun Wrote: Step 1 - Unlocking ManagementEngine and descriptor
First, extract file "DESC_ME_Unlock.zip"
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:
Code:
WinTest C45 D80
WinTest C40 D02
laptop restarting and ME + descriptor is unlocked. Audio sound chipset of laptop not working. 

Step 2 - make dump of descriptor
After restarting, run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:

Code:
fptw -D desc.bin -DESC

Step 3 - modify your dump "desc.bin" file with HEX editor, at adress 00000080 according this picture, and save as "desc_unlocked.bin"
[Image: f39t3553p49758n8_ANSjkyiZ.png]

Step 4 - flash modified descriptor file "desc_unlocked.bin"
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:


Code:
fptw -rewrite -F desc_unlocked.bin -DESC

Step 5 - dump your bios
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:

Code:
fptw -bios -d bios.bin
bios.bin 6MB dump file is generated

Step 6 - modify your bios, and save as "bios_mod.bin" file
with help from other users (work in progress...)


Step 7 - flash modified bios file "bios_mod.bin"
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:

Code:
fptw -rewrite -bios -f bios_mod.bin

Step 8 - IMPORTANT!!! YOU MUST LOCK ManagementEngine FOR ENABLE AUDIO SOUND CHIPSET OF LAPTOP
Run CMD as administrator, and go to inside folder "DESC_ME_Unlock"
and type these commands:
Code:
Wintest C45 D81
Wintest C40 D02

You followed steps 1 to 4 ? 
Step 1 is extracted from Lenovo official old version bios update for Y700 15ISK


find
quote
#70
(09-13-2019, 12:53 PM)ataigun Wrote: You followed steps 1 to 4 ? 
Step 1 is extracted from Lenovo official old version bios update for Y700 15ISK

Yeah, I also did that but it's a separate thing. Doing that won't allow you to flash BIOS, and also once you get rid of the PRRs you can reflash the BIOS without any other extra steps (just fptw64 -bios -f bios.bin). By the way, I described it on W-R in more detail, you can have a look. I know you're also a member there.
find
quote


Forum Jump:


Users browsing this thread: 5 Guest(s)