Announcement

Collapse
No announcement yet.

LENOVO BIOS AUTO-PATCHER for Supervisor Password Removal

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    Originally posted by Maxpower3 View Post

    post your bios with serial number
    okay, this is the code W25Q128BV and I have included the bios too, thank you for answering
    Attached Files

    Comment


    Originally posted by joger182 View Post
    Hi! I have superadmin pass. on bios. Can you help me?

    lenovo p52
    sn:pf-1838a0
    EP520 NM-B562 Rev.1.0
    I'm added 25Q80BL and MX25L25673G files to zip
    Do I need to add more info?
    For now I only have 3 flashes on power button when I connect power to laptop...
    Attached Files

    Comment


      Originally posted by joger182 View Post
      Hi! I have superadmin pass. on bios. Can you help me?

      lenovo p52
      sn:pf-1838a0
      EP520 NM-B562 Rev.1.0
      Patch not work
      see https://www.badcaps.net/forum/troubl...04#post3337104
      or read EC​


      Originally posted by joger182 View Post
      For now I only have 3 flashes on power button when I connect power to laptop...
      Bad reading maybe it worked before



      Comment


        Many thanks to Knucklegrumble and Maxpower3 for their efforts and of course to everyone who helps and teaches us.
        Thank you very much!

        Comment


          Hello
          Is it possible to clear the password to the bios using the auto patcher on the Lenovo ThinkPad E595 AMD Prosessor?
          Type 20nf-s0th0q
          s/n 2bf5q1
          Attached Files

          Comment


            Hi ....its 2024 ...i have a lenovo x1 carbon gen 8 locked with Supervisor Password lock i am new to all this ....so how can i unlock it ....(dump my Bios , patch it and install the new patched bios) ? thanks in advance

            Comment


              Originally posted by Andromedus_81 View Post
              Hello
              Is it possible to clear the password to the bios using the auto patcher on the Lenovo ThinkPad E595 AMD Prosessor?
              Type 20nf-s0th0q
              s/n 2bf5q1
              Try
              Attached Files

              Comment


                Thank You danito, but laptop is still dead. Nothing on the screen plus caps lock is on and fan is spinning too.

                Comment


                  Originally posted by Andromedus_81 View Post
                  Thank You danito, but laptop is still dead. Nothing on the screen plus caps lock is on and fan is spinning too.
                  hash mismatch, opened image may refuse to boot

                  retry mod

                  L0589601_PATCHED.rar

                  Cliquez sur l'image pour la voir en taille r?elle   Nom : 		image.png  Affichages :	0  Taille :		29,5 Ko  ID : 			3343558
                  EDIT: SOLVED
                  ​ ​
                  Last edited by Maxpower3; 09-04-2024, 07:43 AM.

                  Comment


                    Hey this patch is working perfectly for removing the bios so, I was wondering if I could use this to remove the computrace?
                    I did try but when I try to patch the file CMD opens and closes right away and shows no sign of completing the process.
                    Can you help me in this matter please. Thanks

                    Comment


                      Hi guys i need patched bios for P50s
                      Attached Files

                      Comment


                      Originally posted by poppay View Post
                      Hi guys i need patched bios for P50s
                      Try
                      Attached Files

                      Comment


                        Originally posted by kuch3n View Post
                        Lenovo T495s 20QK
                        The first try didn't worked out and the bios beeped 5x times (wrong checksum). UEFITool revealed the wrong hash:
                        Code:
                        FfsParser::checkProtectedRanges: Phoenix protected range [BB0000h:F30000h] hash mismatch, opened image may refuse to boot
                        RelativeOffset: 00BB0000h Size: 380000h
                        Hash: 894F0EC4AAE777028ADC60150B10ECE724FC165E6530129DD6B56E45623192E6
                        With the help of HxD i calculated the SHA256 of above range and replaced the old hash with the new one (search the old hash and replace it with the calculated one with help of HxD). A boot with manipulated checksum and patched BIOS binary worked. Supervisor password was removed. Thank you very much!

                        Donation incomming (:

                        EDIT:

                        Output of patcher:
                        Code:
                        Using UEFIReplace to inject 2 DXE drivers...
                        [1/2] BootOption (GUID e0746c42-d3f9-4f8b-b211-1410957b9ff5)
                        [2/2] LenovoTranslateService (GUID 826bcf56-bac4-43f4-8ea1-8cdf0a121abd)
                        
                        Looking for volumes to patch...
                        [1/1] NVRAM_EfiSystemNvDataFvGuid (checksum 2609h):
                        Found volume at offset 710000h (checksum 91f8h)
                        Volume checksum does not match... Skipping.
                        Can anyone help how to generate the sha256 code and how to find the range in the HxD program please. Thank You

                        Comment



                          Originally posted by Andromedus_81 View Post

                          how to generate the sha256 code and how to find the range in the HxD


                          ​ ​
                          Click image for larger version

Name:	Nouveau Image bitmap.png
Views:	531
Size:	416.6 KB
ID:	3345574Click image for larger version

Name:	Nouveau Image bitmap (2).png
Views:	526
Size:	277.5 KB
ID:	3345576Click image for larger version

Name:	Nouveau Image bitmap (3).png
Views:	532
Size:	337.5 KB
ID:	3345578
                          Cliquez sur l'image pour la voir en taille r?elleà  Nom : 		image.pngà Affichages :	6à Taille :		51,7 Koà ID : 			3345556
                          Attached Files
                          Last edited by Maxpower3; 09-06-2024, 03:26 AM.

                          Comment


                            Maxpower3 thank you.

                            Comment


                              Hello,

                              My laptop is also blocked because I forgot my supervisor password.
                              It's an AMD P14s gen4 (serial PF54NMJB), I have another copy of exactly the same laptop.

                              My questions:
                              - I'm not sure how to dump/flash the bios, is it really a CH341A programmer that should be used?
                              - is it possible to read the bios of the laptop I know the password for and flash it on my other laptop? (they're exactly the same model).
                              - if not, what should I do?

                              Thanks for your help

                              Comment


                                Originally posted by hach View Post
                                Hello,

                                My laptop is also blocked because I forgot my supervisor password.
                                It's an AMD P14s gen4 (serial PF54NMJB), I have another copy of exactly the same laptop.

                                My questions:
                                - I'm not sure how to dump/flash the bios, is it really a CH341A programmer that should be used?
                                - is it possible to read the bios of the laptop I know the password for and flash it on my other laptop? (they're exactly the same model).
                                - if not, what should I do?

                                Thanks for your help
                                To flash the bios you need a programmer, not necessarily CH341A.
                                We do not recommend this because each device has its own DMI and Windown key.


                                ----------------------------------------------------------------------------------------------------------------------------------------------------------
                                All donations to Badcaps are welcome.
                                Become a Badcaps supporter
                                >>>>> click on this link to donate <<<<<
                                Thanks to all supporters.
                                ----------------------------------------------------------------------------------------------------------------------------------------------------------​

                                Comment


                                  Thanks for your feedback, I ordered a CH341A programmer.

                                  Concerning copying the bios from another laptop, I don't have an OEM windows key but serial numbers could be copied....

                                  Would the following procedure work?
                                  - dump the bios on my working laptop
                                  - change the bios password
                                  - dump the bios again
                                  - do a diff to identify the area where the password is stored
                                  - => modify this zone on the blocked laptop
                                  I'm wondering whether there might be checksum or other issues, and if so, whether the autopatcher method might not be simpler.

                                  Comment


                                    Originally posted by hach View Post
                                    Thanks for your feedback, I ordered a CH341A programmer.

                                    Concerning copying the bios from another laptop, I don't have an OEM windows key but serial numbers could be copied....

                                    Would the following procedure work?
                                    - dump the bios on my working laptop
                                    - change the bios password
                                    - dump the bios again
                                    - do a diff to identify the area where the password is stored
                                    - => modify this zone on the blocked laptop
                                    I'm wondering whether there might be checksum or other issues, and if so, whether the autopatcher method might not be simpler.
                                    password is stored in EC
                                    not possible unlock via bios dump for this generation

                                    Comment


                                      Originally posted by Maxpower3 View Post

                                      password is stored in EC
                                      not possible unlock via bios dump for this generation
                                      (edited, sorry I misread the thread)

                                      if my understanding is correct, this means that for this model I need to work on dumping/flashing the EC and not the bios, i.e. with a program other than CH341A.
                                      Can you confirm this?
                                      If so, how do I dump the EC on this model?

                                      Comment

                                      Working...
                                      X