Legion Y540 Bios Password Reset

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • NootABoot
    New Member
    • May 2024
    • 7
    • Italy

    #1

    Legion Y540 Bios Password Reset

    I created a supervisor password for my laptop a while back and I forgot it. It can't be reset by resetting CMOS. Can I extract it from a BIOS dump or through another method without a bios/eeprom programmer?
  • peste
    Super Moderator
    • Dec 2016
    • 13904
    • ROMANIA

    #2
    Originally posted by NootABoot
    I created a supervisor password for my laptop a while back and I forgot it. It can't be reset by resetting CMOS. Can I extract it from a BIOS dump or through another method without a bios/eeprom programmer?
    NO..you need an SPI programmer to extract the contents of the bios chip...
    Due to a lack of donations, server free space at a critical level, and possible closure of Bios Requests all donations are welcome, click:

    >>>>> https://www.badcaps.net/index.php?pageid=donate1 <<<<<

    Every donation made will go towards server fees and maintenance costs.

    Comment

    • NootABoot
      New Member
      • May 2024
      • 7
      • Italy

      #3
      Originally posted by peste

      NO..you need an SPI programmer to extract the contents of the bios chip...
      I don't know if this is insufficient (I don't anything about bios programming) but I got this image from ME tools. Is it possible to reset the password in it and reflash the bios using an all-software solution (by modifying the original bios update exe, for example)?
      Attached Files

      if you find these attachements useful please consider making a small donation to the site

      Comment

      • SMDFlea
        Super Moderator
        • Jan 2018
        • 22264
        • UK

        #4
        Originally posted by NootABoot

        I don't know if this is insufficient (I don't anything about bios programming) but I got this image from ME tools. Is it possible to reset the password in it and reflash the bios using an all-software solution (by modifying the original bios update exe, for example)?
        RULES UPDATE for BIOS requests/offers AVOID BANNING, READ BEFORE POSTING
        https://www.badcaps.net/forum/troubl...before-posting

        You MUST:
        • Provide the full machine model number, serial number (or Service tag, SNID) and the board model number (see https://www.badcaps.net/forum/showthread.php?t=88758 ) ,The serial number, make, full model number, motherboard model and revision (except QR codes) must be written/typed at your request as per the rules. Not as a picture, part of the file name and so on.
        All donations to badcaps are welcome, click on this link to donate. Thanks to all supporters

        Comment

        • NootABoot
          New Member
          • May 2024
          • 7
          • Italy

          #5
          Sorry for that.

          Laptop: Lenovo Legion Y540-15IRH
          Model: 81SX
          S/N: PF1YVPN7
          MTM: 81SX005TAD
          Motherboard model: Lenovo LNVNB161216
          Version: SD0K11763
          Chipset: Intel HM370
          BIOS version: Lenovo (but bios update utility says Insyde H20) BHCN44WW

          Can the password be reset/extracted? If so, and if you don't mind, can you tell me how you do it?

          Comment

          • NootABoot
            New Member
            • May 2024
            • 7
            • Italy

            #6
            Edit: full bios image instead of bios region only
            Attached Files

            if you find these attachements useful please consider making a small donation to the site

            Comment

            • qayyum786
              Badcaps Legend
              • Aug 2018
              • 1959
              • INDIA

              #7
              Originally posted by NootABoot
              Edit: full bios image instead of bios region only
              Try
              Attached Files

              if you find these attachements useful please consider making a small donation to the site

              Comment

              • NootABoot
                New Member
                • May 2024
                • 7
                • Italy

                #8
                Originally posted by qayyum786

                Try
                Sorry for the noob question, but how can I flash without a programmer? FPT says something about range protection registers. Can I flash in dos from a usb flash drive? (Keeping in mind I'm in efi mode with secure boot enabled and can't change that because I don't have the password.)

                I was also reading on winraid and found a tool called RU Shell which, as I understand, allows one to directly modify the bios on board. Could it be useful here?

                Comment

                • NootABoot
                  New Member
                  • May 2024
                  • 7
                  • Italy

                  #9
                  Here's a thought. I was fiddling around and I was able to disable FPRR and BIOS lock through H2OUVE by reading the variables from IFR extractor. I also found the prompt asking for the supervisor password. However, the offset doesn't even exist in H2OUVE. Can this be exploited in some way?

                  I can flash the image you sent me but I'm worried about bricking especially since I don't have a programmer.

                  Comment

                  • fire1234
                    Senior Member
                    • Dec 2017
                    • 77
                    • Poland

                    #10
                    Originally posted by NootABoot

                    I don't know if this is insufficient (I don't anything about bios programming) but I got this image from ME tools. Is it possible to reset the password in it and reflash the bios using an all-software solution (by modifying the original bios update exe, for example)?
                    The password is "am2431121"

                    Comment

                    • NootABoot
                      New Member
                      • May 2024
                      • 7
                      • Italy

                      #11
                      Originally posted by fire1234

                      The password is "am2431121"
                      Thank you so much!!! Mind telling me how you were able to find it? If not, I have a friend with the same laptop, can I give you his dump to find out the password?

                      Comment

                      • fire1234
                        Senior Member
                        • Dec 2017
                        • 77
                        • Poland

                        #12
                        Originally posted by NootABoot

                        Thank you so much!!! Mind telling me how you were able to find it? If not, I have a friend with the same laptop, can I give you his dump to find out the password?
                        Share your bios with a friend and we'll see what we can do.​

                        Comment

                        • pickledegg
                          Member
                          • Jan 2022
                          • 12
                          • UK

                          #13
                          Originally posted by fire1234

                          The password is "am2431121"
                          Wow, how were you able to do this? I was under impression the password is stored in EC.
                          I would appreciate it greatly if you could take a look at my Y540 15IRH dump, others have done so and concluded that the fix is more complex. Has BIOS administrator password applied (boots into Windows, just cannot configure BIOS) and previous owner has forgotten it, much to my frustration.

                          S/N: PF1X715
                          Board: NM-C221 Rev 2.0

                          Can provide any other details if necessary
                          Attached Files

                          if you find these attachements useful please consider making a small donation to the site

                          Comment

                          • hoaca388
                            Badcaps
                            • Jan 2022
                            • 12435
                            • Socialist Republic of Vietnam

                            #14
                            Originally posted by pickledegg

                            Wow, how were you able to do this? I was under impression the password is stored in EC.
                            I would appreciate it greatly if you could take a look at my Y540 15IRH dump, others have done so and concluded that the fix is more complex. Has BIOS administrator password applied (boots into Windows, just cannot configure BIOS) and previous owner has forgotten it, much to my frustration.

                            S/N: PF1X715
                            Board: NM-C221 Rev 2.0

                            Can provide any other details if necessary
                            Pass : 5545


                            Any donations to badcaps are welcome, click this link to donate . Thanks to all the supporters
                            https://www.badcaps.net/donate

                            Comment

                            • pickledegg
                              Member
                              • Jan 2022
                              • 12
                              • UK

                              #15
                              Originally posted by hoaca388

                              Pass : 5545
                              Outstanding! thank you, this worked.

                              I know how you got it so quickly as well, I had considered that method but every person I spoke to about it assured me the password was stored in EC on this model! A little annoyed by that... should have come here first!

                              Thank you.

                              Comment

                              • clrscr
                                Senior Member
                                • Dec 2020
                                • 186
                                • sing

                                #16
                                Originally posted by pickledegg

                                Outstanding! thank you, this worked.

                                I know how you got it so quickly as well, I had considered that method but every person I spoke to about it assured me the password was stored in EC on this model! A little annoyed by that... should have come here first!

                                Thank you.
                                how to find ? can you shar ?
                                ************************************************** ***********************************
                                Due to a lack of donations, server free space at a critical level, and possible closure of Bios Requests
                                all donations are welcome,
                                see the donate button at the bottom of the page, or
                                >>>>> click on this link to donate via PayPal. <<<<<
                                Every donation made will go towards server fees and maintenance costs.
                                ************************************************** ***********************************

                                Comment

                                • alexeyb43
                                  New Member
                                  • Aug 2022
                                  • 5
                                  • Украина

                                  #17
                                  привет ребята купил ноутбук в нерабочем состоянии для восстановления , проблема оказалась в чипе RTX3060 , заменив высветился код 43 первым делом хочется использовать Mats Mods для проверки чипов памяти , но вот проблема BIOS под паролем ,помогите снять пароль ,програмная часть не самая сильная у меня . Дамп снят SVOD 4 платформа Nm-c211 rev 2.0 (legion y540 15IRH)

                                  Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but here is the problem with the BIOS password, help me remove the password, the software part is not the strongest for me. The dump was taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)

                                  in English please..
                                  Attached Files

                                  if you find these attachements useful please consider making a small donation to the site

                                  Comment

                                  • peste
                                    Super Moderator
                                    • Dec 2016
                                    • 13904
                                    • ROMANIA

                                    #18
                                    Originally posted by alexeyb43
                                    привет ребята купил ноутбук в нерабочем состоянии для восстановления , проблема оказалась в чипе RTX3060 , заменив высветился код 43 первым делом хочется использовать Mats Mods для проверки чипов памяти , но вот проблема BIOS под паролем ,помогите снять пароль ,програмная часть не самая сильная у меня . Дамп снят SVOD 4 платформа Nm-c211 rev 2.0 (legion y540 15IRH)

                                    Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but here is the problem with the BIOS password, help me remove the password, the software part is not the strongest for me. The dump was taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)

                                    in English please..
                                    post S/N,TYPE,etc..
                                    Due to a lack of donations, server free space at a critical level, and possible closure of Bios Requests all donations are welcome, click:

                                    >>>>> https://www.badcaps.net/index.php?pageid=donate1 <<<<<

                                    Every donation made will go towards server fees and maintenance costs.

                                    Comment

                                    • alexeyb43
                                      New Member
                                      • Aug 2022
                                      • 5
                                      • Украина

                                      #19
                                      Originally posted by alexeyb43
                                      привет ребята купил ноутбук в нерабочем состоянии для восстановления , проблема оказалась в чипе RTX3060 , заменив высветился код 43 первым делом хочется использовать Mats Mods для проверки чипов памяти , но вот проблема BIOS под паролем ,помогите снять пароль ,програмная часть не самая сильная у меня . Дамп снят SVOD 4 платформа Nm-c211 rev 2.0 (legion y540 15IRH)

                                      Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but here is the problem with the BIOS password, help me remove the password, the software part is not the strongest for me. The dump was taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)

                                      in English please..
                                      Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but there is a problem with the BIOS password, help remove the password, the software part is not the strongest for me. Dump taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)

                                      Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but there is a problem with the BIOS password, help remove the password, the software part is not the strongest for me. Dump taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)
                                      S/N PF22SBQW
                                      TYPE 81SX
                                      MTM 81SX016GPB
                                      FACTORY ID JVHFC1

                                      Comment

                                      • volinakis
                                        Badcaps Legend
                                        • Jan 2021
                                        • 2875
                                        • N/A

                                        #20
                                        Originally posted by alexeyb43

                                        Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but there is a problem with the BIOS password, help remove the password, the software part is not the strongest for me. Dump taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)

                                        Hi guys, I bought a non-working laptop for recovery, the problem turned out to be in the RTX3060 chip, after replacing it, code 43 appeared, the first thing I want to do is use Mats Mods to check the memory chips, but there is a problem with the BIOS password, help remove the password, the software part is not the strongest for me. Dump taken SVOD 4 platform Nm-c211 rev 2.0 (legion y540 15IRH)
                                        S/N PF22SBQW
                                        TYPE 81SX
                                        MTM 81SX016GPB
                                        FACTORY ID JVHFC1
                                        try pass: 2014
                                        ----------------------------------------------------------------------------------------------------------------------------------------------------------------------
                                        https://www.badcaps.net/donate/
                                        ----------------------------------------------------------------------------------------------------------------------------------------------------------------------

                                        Comment

                                        Related Topics

                                        Collapse

                                        • darknwo
                                          Bios password Lenovo Legion 16IRX8H
                                          by darknwo
                                          Hi, can someone help me please with the removal of the bios password of this dump.
                                          Someone desoldered the bios chip, tried several "methods" but with no luck, and he gave me the dump to try to search some help.
                                          For now he deleted more things and bios password is gone but laptop doesn't show serial, model etc.

                                          Also, I updated bios to latest version, when he will write the dump again without password, it should be better to put back the old version that was orignally or doesn't matter? Because from what I've read this laptop has 3 bios chips, don't know if has...
                                          10-05-2024, 10:40 AM
                                        • tlindi
                                          Toughbook CF-18KHH65LE (Customer Special Configuration) Supervisor Password needed remove HDD locking and BIOS Access ...
                                          by tlindi
                                          Sublect line continuation: ... Jaguar IDS PC aka Panasonic

                                          >Read BIOS guides, methods, resources and tools
                                          >
                                          Ack

                                          >Try the method at BIOS guides, methods, resources and tools before requesting help
                                          >
                                          Ack

                                          >Explain you were not able to succeed with the methods at BIOS guides, methods, resources and tools
                                          >
                                          python ./main.py "/mnt/c/temp/205605f9e1b60403a41787efeffe9cad-flas_maybe5.BIN" --output-dir "/mnt/c/temp/205605f9e1b60403a41787efeffe9cad-flas_maybe5.txt"
                                          ------------------------------------------------...
                                          01-30-2025, 04:26 AM
                                        • ch.wa
                                          BIOS password reset for HP ProOne 440 G9
                                          by ch.wa
                                          HI,

                                          I have a problem with the BIOS password for the HP ProOne 440 G9 (AIO). Once I want to enter the BIOS a password is requested (see screenshot) and I am a little unsure if it would be smart to try a wrong password three times (as some people mentioned online) to get a code - I don't want to block the whole system (not sure if that could happen?!). According to other sources a reset is (maybe) not even possible for this model.

                                          Any ideas if this may work? Hope someone could help.

                                          Thanks for your time!
                                          Chris
                                          10-29-2025, 01:28 PM
                                        • outsider
                                          Panasonic FZ-G1 MK5 - BIOS password returning
                                          by outsider
                                          Hello
                                          I removed the BIOS password thanks to the help of one of the friends of this forum.
                                          https://www.badcaps.net/forum/troubl...61#post3637661

                                          The batch from which the password was removed works correctly but... after some time, the BIOS password is set again, I reprogrammed the batch with the removed password, it's ok, there is no password, I set my password, ok, I can enter the BIOS with my password but...
                                          06-17-2025, 12:51 AM
                                        • RMDUiFT
                                          Should I buy a Lenovo Thinkpad E495 with bios password?
                                          by RMDUiFT
                                          Good day. I apologize if I posted this in the wrong topic. I saw somebody selling a Thinkpad E495 with a Ryzen 3500U CPU near me. In the pictures the laptop is running windows 10. I contacted the seller and asked a few questions about upgradability and if it has a bios password on it. He confirmed it has a bios password. I searched through the forum, I found a guide regarding removing the bios password using the autopatcher, I also found a thread with the e495 where people requested help with unlocking the bios password.

                                          I have a few questions:
                                          • If I would buy this laptop and have
                                          ...
                                          08-25-2024, 09:00 AM
                                        • Loading...
                                        • No more items.
                                        Working...