[REQUEST] Help to remove BIOS PowerOn Password from HP Zbook Studio G3

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • fac_franky
    New Member
    • Jun 2020
    • 2
    • mexico

    #1

    [REQUEST] Help to remove BIOS PowerOn Password from HP Zbook Studio G3

    Hi Guys i have a HP Zbook Studio G3 with PowerOn BIOS Password and cannot remove it that have a BIOS CHIP 25q128fvsq i use a ch341a to read the chip and take a Backup of that with ch341A Programmer 1.29 (Selection_999(773).png image), read the content OK but if use the Verify button send a message that Don't Match

    With with ch341A Programmer 1.30 the same message, of mismatch in the verify (Selection_999(776).png image)

    The Full MB data are: HP ZBook Studio G3 Mobile Workstation LA-C401P APW5U Rev: 1A


    That is a normal situation or in effect the Reading are Wrong?

    Some on can help me to know what need to modify from the Bin file or if exist another method to do it?

    The Backups are in the rar files attached, are Winrar 5 version of the Files

    as comment the Verification failure dont make sense for me so i run it again over Linux OS and now see
    Backups]$ sudo flashrom --programmer ch341a_spi -r 25q128fvsq-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Reading flash... done.
    Backups]$

    and make the Verification
    Backups]$ sudo flashrom --programmer ch341a_spi -v 25q128fvsq-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Verifying flash... VERIFIED.
    Backups]$ 

    So now i have a message o Verified as i'm expect
    the other binary shows failed
    Backups]$ sudo flashrom --programmer ch341a_spi -v '25q128fvsq-Zbook-Studio-G3_(ch341A Programmer 1.30).bin'

    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Verifying flash... FAILED at 0x00801844! Expected=0x29, Found=0x28, failed byte count from 0x00000000-0x00ffffff: 0x1e1ef4
    [fcatarino@SparkyII Backups]$ sudo flashrom --programmer ch341a_spi -v '25q128fvsq-Zbook-Studio-G3_(ch341A Programmer 1.29).bin'
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Verifying flash... FAILED at 0x008008e8! Expected=0xcb, Found=0x0b, failed byte count from 0x00000000-0x00ffffff: 0x210c24
    Backups]$ 


    i read the another chip too 5q80dvsig, because dont know if needed to make the unlocking

    Backups]$ sudo flashrom --programmer ch341a_spi -r 5q80dvsig-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q80.V" (1024 kB, SPI) on ch341a_spi.
    Reading flash... done.

    Backups]$ sudo flashrom --programmer ch341a_spi -v 5q80dvsig-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q80.V" (1024 kB, SPI) on ch341a_spi.
    Verifying flash... VERIFIED.
    Backups]$



    Best Regards, Franco
    Attached Files

    if you find these attachements useful please consider making a small donation to the site

Related Topics

Collapse

  • TrumanHW
    MacOS: R|W Programmers like CH341x BINs..?
    by TrumanHW
    For years I tried figuring out how to R|W BINs from my CH341x programmer.
    From FTDI's pkg, Apps specifically claiming they work, I failed for ~8 years.

    I'd expect many here figured it out (easily), but in case not ...
    It's one of the few forms of "how-to" remuneration I can GIVE BACK.

    This group is both GENEROUS & literally BRILLIANT / GENIUS!!!


    This may be the easiest means to copy-paste:

    Code:
    SERIAL -to- USB - CH341 ROM (MacOS):
    
    
    Install xcode:				xcode-select --install
    Relocate
    ...
    04-08-2022, 02:33 PM
  • re-atari
    Anycubic Photon 5.5 3D printer 25Q32 flashrom dump needed
    by re-atari
    Hello all, as the title says, I'm very much in need of a valid firmware dump of a Anycubic Photon 5.5 3D resin printer. It's stored in a Winbond 25Q32, so it's 4Mbyte.

    Here's a little background for my request. A few weeks ago I bought this 3D printer from a guy who had moved on to a PLA printer. I got it at a vey reasonable price, as it was in a defective state. The seller told me that he had experienced a power failure during a firmware upgrade, after which the printer appeared to be dead. He thought the firmware was corrupted in such a way that the printer was now bricked. As he...
    02-03-2025, 06:49 PM
  • badcappo
    Access to flashrom archive on eletronicabr.com (?)
    by badcappo
    Hi there, looking for the flashrom-extension that is presented by a user called "Jack O'Neo" over on eletronicabr.com -> First post on Link: https://eletronicabr.com/forums/topi...s-para-windows

    The archive seems super useful to add more chip support to flashrom so that it becomes possible to read flash content from additional ECs e.g. ENE KB9022 which are used on many boards. However, the forum seems to have a tedious credit farming process to get to the download link . Maybe someone with access...
    04-12-2025, 04:42 AM
  • cr4zychriss
    [Problem/ Request] Bricked TongFang GK7MRFR BIOS
    by cr4zychriss
    Hello everyone,
    I am requesting urgent assistance to unbrick my laptop, a rebranded TongFang GK7MRFR chassis. The laptop is completely dead following a faulty in-OS EC flash attempt.
    I have successfully used a CH341A programmer and can read/write/verify both flash chips, but using my backups/extractions has failed to restore power. The root cause is likely a corrupted Intel Management Engine (ME) region or an incompatible EC/BIOS pairing. System & Hardware Details
    • Barebone / Chassis: TongFang GK7MRFR
    • MB: MB: GK5MP5X V1.0 Prod :GK5MRFV10T04201310281
    • Rebrand: PC Specialist
    ...
    11-14-2025, 04:04 PM
  • SMDFlea
    Common SPI bios chip programming Questions and Answers
    by SMDFlea
    Common SPI bios chip programming Questions and Answers
    ----------------------------------------------------------

    Q: I have a bios request,i can`t post my backup as i can`t read from the chip.

    A: If you can`t read from it how do you expect to write to it ?.

    Q: Why is my bios chip unreadable ?.

    A: The programmer is faulty or has a worn or broken zif socket.

    The USB cable is frayed,connector pins worn or some other physical damage.

    Not enough amperage or voltage to power the programmer properly.

    Bad...
    09-02-2021, 04:40 PM
  • Loading...
  • No more items.
Working...