[REQUEST] Help to remove BIOS PowerOn Password from HP Zbook Studio G3

Collapse
X
 
  • Time
  • Show
Clear All
new posts
  • fac_franky
    New Member
    • Jun 2020
    • 2
    • mexico

    #1

    [REQUEST] Help to remove BIOS PowerOn Password from HP Zbook Studio G3

    Hi Guys i have a HP Zbook Studio G3 with PowerOn BIOS Password and cannot remove it that have a BIOS CHIP 25q128fvsq i use a ch341a to read the chip and take a Backup of that with ch341A Programmer 1.29 (Selection_999(773).png image), read the content OK but if use the Verify button send a message that Don't Match

    With with ch341A Programmer 1.30 the same message, of mismatch in the verify (Selection_999(776).png image)

    The Full MB data are: HP ZBook Studio G3 Mobile Workstation LA-C401P APW5U Rev: 1A


    That is a normal situation or in effect the Reading are Wrong?

    Some on can help me to know what need to modify from the Bin file or if exist another method to do it?

    The Backups are in the rar files attached, are Winrar 5 version of the Files

    as comment the Verification failure dont make sense for me so i run it again over Linux OS and now see
    Backups]$ sudo flashrom --programmer ch341a_spi -r 25q128fvsq-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Reading flash... done.
    Backups]$

    and make the Verification
    Backups]$ sudo flashrom --programmer ch341a_spi -v 25q128fvsq-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Verifying flash... VERIFIED.
    Backups]$ 

    So now i have a message o Verified as i'm expect
    the other binary shows failed
    Backups]$ sudo flashrom --programmer ch341a_spi -v '25q128fvsq-Zbook-Studio-G3_(ch341A Programmer 1.30).bin'

    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Verifying flash... FAILED at 0x00801844! Expected=0x29, Found=0x28, failed byte count from 0x00000000-0x00ffffff: 0x1e1ef4
    [fcatarino@SparkyII Backups]$ sudo flashrom --programmer ch341a_spi -v '25q128fvsq-Zbook-Studio-G3_(ch341A Programmer 1.29).bin'
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q128.V" (16384 kB, SPI) on ch341a_spi.
    Verifying flash... FAILED at 0x008008e8! Expected=0xcb, Found=0x0b, failed byte count from 0x00000000-0x00ffffff: 0x210c24
    Backups]$ 


    i read the another chip too 5q80dvsig, because dont know if needed to make the unlocking

    Backups]$ sudo flashrom --programmer ch341a_spi -r 5q80dvsig-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q80.V" (1024 kB, SPI) on ch341a_spi.
    Reading flash... done.

    Backups]$ sudo flashrom --programmer ch341a_spi -v 5q80dvsig-Zbook-Studio-G3_Linux.bin
    flashrom v1.0 on Linux 5.1.16-200.fc29.x86_64 (x86_64)
    flashrom is free software, get the source code at https://flashrom.org

    Using clock_gettime for delay loops (clk_id: 1, resolution: 1ns).
    Found Winbond flash chip "W25Q80.V" (1024 kB, SPI) on ch341a_spi.
    Verifying flash... VERIFIED.
    Backups]$



    Best Regards, Franco
    Attached Files

Related Topics

Collapse

  • TrumanHW
    MacOS: R|W Programmers like CH341x BINs..?
    by TrumanHW
    For years I tried figuring out how to R|W BINs from my CH341x programmer.
    From FTDI's pkg, Apps specifically claiming they work, I failed for ~8 years.

    I'd expect many here figured it out (easily), but in case not ...
    It's one of the few forms of "how-to" remuneration I can GIVE BACK.

    This group is both GENEROUS & literally BRILLIANT / GENIUS!!!


    This may be the easiest means to copy-paste:

    Code:
    SERIAL -to- USB - CH341 ROM (MacOS):
    
    
    Install xcode:				xcode-select --install
    Relocate
    ...
    04-08-2022, 02:33 PM
  • re-atari
    Anycubic Photon 5.5 3D printer 25Q32 flashrom dump needed
    by re-atari
    Hello all, as the title says, I'm very much in need of a valid firmware dump of a Anycubic Photon 5.5 3D resin printer. It's stored in a Winbond 25Q32, so it's 4Mbyte.

    Here's a little background for my request. A few weeks ago I bought this 3D printer from a guy who had moved on to a PLA printer. I got it at a vey reasonable price, as it was in a defective state. The seller told me that he had experienced a power failure during a firmware upgrade, after which the printer appeared to be dead. He thought the firmware was corrupted in such a way that the printer was now bricked. As he...
    02-03-2025, 06:49 PM
  • badcappo
    Access to flashrom archive on eletronicabr.com (?)
    by badcappo
    Hi there, looking for the flashrom-extension that is presented by a user called "Jack O'Neo" over on eletronicabr.com -> First post on Link: https://eletronicabr.com/forums/topi...s-para-windows

    The archive seems super useful to add more chip support to flashrom so that it becomes possible to read flash content from additional ECs e.g. ENE KB9022 which are used on many boards. However, the forum seems to have a tedious credit farming process to get to the download link . Maybe someone with access...
    04-12-2025, 04:42 AM
  • SMDFlea
    Common SPI bios chip programming Questions and Answers
    by SMDFlea
    Common SPI bios chip programming Questions and Answers
    ----------------------------------------------------------

    Q: I have a bios request,i can`t post my backup as i can`t read from the chip.

    A: If you can`t read from it how do you expect to write to it ?.

    Q: Why is my bios chip unreadable ?.

    A: The programmer is faulty or has a worn or broken zif socket.

    The USB cable is frayed,connector pins worn or some other physical damage.

    Not enough amperage or voltage to power the programmer properly.

    Bad...
    09-02-2021, 04:40 PM
  • PeqNP
    Sapphire Radeon RX5700XT IR35217 configuration
    by PeqNP
    Hi,

    I have a faulty Sapphire Radeon RX5700XT with a short on the 3.3V PCIe rail. I was able to trace the short to the IR35217 which is responsible for managing VCore. The issue with these controllers is, that they need to be configured. I managed to get hold of a copy of PowIRCenter as well as a compatible USB flash device. What remains is, that I don't have the IR35217 configuration for that card. Does someone here own this card and can share this configuration? As this is a reference card design I would suspect that any other reference card would do the trick as well. The configuration...
    06-30-2022, 11:51 AM
  • Loading...
  • No more items.
Working...