[REQUEST] Dell G3 3579 BIOS Password & AMI Protected Range/BIOS Guard Unlock

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • zenius
    New Member
    • Dec 2024
    • 3
    • United States

    #1

    [REQUEST] Dell G3 3579 BIOS Password & AMI Protected Range/BIOS Guard Unlock

    Hello, I have an old Dell G3 3579 (ST: 2WQ7LP2-8FC8) with a newer 8FC8 BIOS password. I have successfully attached to the flash chip (W25Q128JVSQ) on the motherboard with a CH341A programmer and made several modifications using Intel FIT (e.g., allow software SPI write) without bricking. I was also able to boot to a modified GRUB shell where I attempted to edit many BIOS security related options like BIOS Guard/Lock, Flash Signature Override, ME FW Image Re-Flash, etc.

    Unfortunately, some of these modifications like to Intel BIOS Guard failed because it is fused into the PCH. Also, I am not sure any of the setup_var* changes actually worked- they stay persistent after reboot, but I changed a few options that did not seem to take effect.

    Two key requests:

    1. Remove the BIOS password and reset my device to the manufacturing state where I can re-enter my details.
    2. If possible, help me remove/bypass "AMI v2 protected ranges" which guard all SMM modules in my BIOS to allow for modifications. This is NOT Intel boot/bios guard, which afaik is fused.

    For #1, I took a look at some old threads, including using HxD to diff BIOS password unlock images from other user requests. I also tried an automatic 8FC8 BIOS unlock patcher recently posted on this forum [1]. Both approaches failed (former could not find equivalent data in my BIOS dump to modify, latter the patterns were not found in my BIOS). I also tried some SMM driver modifications, but ran into #2.

    For #2, I am able to flash all addresses, but touching any SMM region in yellow under UEFITool (not red/boot guard) leads to Dell BIOS recovery prompt. I am fairly confident that my image with a modified SMM driver was well-formed. What is quite frustrating is that many of these SMM drivers are not protected on other similar Dell device BIOS'. I looked at a Dell XPS 13 9350 image and Latitude 3440 image in UEFITool, both still had AMI protection, but not on most SMM drivers. I would greatly appreciate it if you could take a look at this issue beyond just the BIOS password.

    Please let me know if I can provide anything else. Thank you.

    [1] https://www.badcaps.net/forum/troubl...l-8fc8-patcher
  • zenius
    New Member
    • Dec 2024
    • 3
    • United States

    #2
    Oops, forgot to attach my dump. Here it is:
    Attached Files

    Comment

    • hoaca388
      Badcaps
      • Jan 2022
      • 11150
      • Viet Nam

      #3
      Originally posted by zenius
      Oops, forgot to attach my dump. Here it is:
      Try
      Attached Files


      -----------------------------------------------------------------------------------------------------------------------------------------------------------------------------
      Mọi khoản quyên góp cho Badcaps đều được hoan nghênh . Trở thành người ủng hộ Badcaps >>>>> nhấp vào liên kết này để quyên góp <<<<< Cảm ơn tất cả những người ủng hộ . -------------------------------------------------------------------------------------------------------------------------------------------------------------

      Comment

      • zenius
        New Member
        • Dec 2024
        • 3
        • United States

        #4
        Originally posted by hoaca388

        Try
        I sincerely appreciate the prompt response! I also love the creative approach of swapping the SMI BIOS and Boot Guard regions with one from another firmware image. Unfortunately, while this unlocked my admin password to change bios options, the other firmware region you swapped with has a similar AMI v2 Protected Ranges hash file covering most SMM drivers. This is the real issue as I was already able to boot into my OS without the Admin password.

        I tried flashing an image with an SMM driver modified (high confidence it is well-formed, replaced/rebuilt with UEFITool v28 to tmp file, then exported FFS for use in MMTool on your image). It resulted in the familiar Dell BIOS recovery screen. As a suggestion, many other Dell firmware images have most SMM drivers in a region outside the AMI protected ranges hash file. Two examples are a Latitude 3440 and Dell XPS 13 9350 firmware image. I wonder if we can find a firmware image for another Dell device with near identical key hardware components (like EC), and swap my laptop's with the less restrictive but legitimate boot guard & BIOS region, similar to what you have done here.

        In case it helps, I have attached an updated dump from after my laptop booted successfully into your original modified image (without my SMM driver change). Also, I ran chipsec on your image and compared to output on my previous image I modified with FIT. Of note, your image was detected as having ME in manufacturing mode, mine had not. I don't know if this helps defeat Dell/AMI bios guard.
        Attached Files

        Comment

        Related Topics

        Collapse

        • Vesko356
          [Guide] How to find the right HP bios version to flash
          by Vesko356
          First of all thanks to all of our members who have posted previously all methods posted here.
          Please leave a comment if you find something new,or have anything else to add.
          -----------------------------------------------------------------------------------------

          Find by serial number,model number or series

          If you know the laptop serial or model number go to HP support https://support.hp.com/us-en/drivers/laptops .
          Enter the serial number or model number and click submit.On the next screen you will have to enter the OS
          Operating system and OS version.If...
          08-11-2023, 03:27 AM
        • ezenia
          Dell G3 3579 BIOS chip ID
          by ezenia
          Hello,

          I bought a Dell G3 3579 eBay. The fault was not mentioned and it did not come with charger. Before trying to power off battery, I did some basic checks on the coils (in resistance mode) to see if there was any short. None were reading short. Decided to power the board to see if anything happened. The keyboard backlight came on. About 5 seconds later, the fans begin spinning at max speed. The white LED comes on at this time, stays solid for a bit and goes off. Fans continue to spin at max. Display is black (no backlight). If I hold down power button, board goes off. I did give...
          06-16-2025, 08:07 PM
        • Jeff'sTech
          Dell Latitude 7420 BIOS Unlock Gone Wrong
          by Jeff'sTech
          Hello everyone.

          I have come here with a rather specific question. I was given a Dell Latitude 7420 laptop with a busted screen, and wanted to see if I could refurbish it into my daily driver. I wanted to experiment and see if a 2-in-1 display would work as the chassis of the laptop and 2-in-1 7420 looked identical. I threw in the display and my hypothesis was correct, however, I was greeted with a locked BIOS and since I didn't know the password, I figured I'd try to unlock it somehow. I bought one of those POGO pin probe things for my CH341A programmer so I could read and make...
          11-08-2023, 03:30 PM
        • remizbushka
          Dell inspirion 5775 bios "Unlock Setup fail"
          by remizbushka
          Hi sirs. please help
          Dell Inspiron 5775 bios locked "Unlock Setup fail"


          After generating the Password Recovery code, I go to the “Security” tab - “Locked Settings” - it says “Unlock Settings? I tried many wrong passwords and it shows an error to unlock settings [ Press any key ].
          What I did:
          I read the bios dump.
          Downloaded the bios update to 1.6.0 from the official Dell website, extracted the dump from it, updated the bios, but the problem persisted. Please help me to solve the problem....
          03-24-2025, 09:07 AM
        • jbonavita
          ASUS TP500LA BIOS request/repair/merge?
          by jbonavita
          Hi, my laptop wont boot at all
          With original bios no POST, only LED lights
          With alternative BIOS from model TP500LN (flashed via programmer) the notebook works again
          Some issues
          A- with bios from 500LN, it won't update from bios of model 500LA (from 500LN v203 to 500LA v300)
          B- If updated from 500LN version 203 to 300, the battery stops being recognized

          Things I tried

          1- Update / clear ME: Took the non working bios, made a backup, and did this: https://www.badcaps.net/forum/troubl...theory/trouble...
          04-29-2025, 09:38 PM
        • Loading...
        • No more items.
        Working...