Announcement

Collapse
No announcement yet.

T14s - MEC-1663 - Jtag - Pinout - Bios Password Removal

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

    #61
    Originally posted by badcaps411 View Post
    This method also works if I don't have a BIOS password in it, but I have Secure Boot on through Grub 2.02, which is password protected. I can't turn off Secure Boot in the BIOS.
    you have to turn off Device Guard in Security ...
    ----------------------------------------------------------------------------------------------------------------------------------------------------------------------
    https://www.badcaps.net/donate/
    ----------------------------------------------------------------------------------------------------------------------------------------------------------------------

    Comment


      #62
      Originally posted by jomerfx28 View Post

      Please erase this procedure instead. as its not helpful. thanks
      If you are not able to understand what it is about doesn't mean "this procedure ... its not helpful" ...
      ----------------------------------------------------------------------------------------------------------------------------------------------------------------------
      https://www.badcaps.net/donate/
      ----------------------------------------------------------------------------------------------------------------------------------------------------------------------

      Comment


        #63
        Hello, I need advice regarding ec programming mec1723, lenovo t14s gen4 nm-f151 rev 1.0 which has a password I got its boardview and datasheet from mec172x and also identify the points (tms, tdo, tck , tdi) its jtag enable point with the resistor. but I have an rt809h programmer which cannot read because its database limits mec16xx. so can you give me some advice please?
        Attached Files

        Comment


          #64
          Originally posted by jomerfx28 View Post

          Please share the bios file you used.

          laptop now is in dead stage, so i just need to flash the bios, not the mec? from that t490 bios?
          Since no one has responded to my inquiry, i will give the direct solution on the said dead programming issue and this will erase the supervisor password.

          1. Erase MEC1663 using MEC1633 256K
          2. Flash the MEC1663 with the file i'll attached, this was taken from here also from rex98
          https://www.badcaps.net/forum/troubl...nd-t490s/page3
          3. Flash back the original bios or whatever bios you have save before on the 8 Pin Bios chip
          4. Return the 10k resistor to its place
          5. Plug-in charger - you will get some error codes 1 to 3 kinds, the solution for that is to used the Lenovo maintenance utitlity
          6.Using the Gold key - https://github.com/ASparkOfFire/lenovo-u1-tool
          reference here - follow the steps on the github website - specially on the updated procedure
          https://www.badcaps.net/forum/troubl...tools?t=103526
          7. On the lenovoUone menu. choose option1 and enter details like this - reference from Dan20701

          (01) Sample in adding your Serial Number.

          Put, 1S, In front, Then the, Type from the sticker, 20NY S11B00, Then the Serial Number, PC1BBS4M

          1S 20NY S11B00 PC1BBS4M (No Spacers)

          (02) Set the Laptop Name, ThinkPad T490s

          (03) You will find an option to assign UUID which will automatically update the system board serial number.
          Attached Files

          Comment


            #65
            Originally posted by coolshrimp View Post
            Here is all the info you should need to remove bios password from your same model or one with an MEC-Chip and also write back the config data

            T14s - MEC-1663 - Jtag - Pinout - Bios Password Removal
            Thanks

            Comment


              #66
              Hi, please help me, i forgot my bios supervisor password on my new Lenovo T14s Gen 4 AMD Ryzen 7 Pro,

              Please tell me where is the bios chip to reset here from my pictures, where is the Jtag and what should i shorten together here, which pins, please tell me ?

              See my motherboard in pictures attached and tell me what to do please !

              Comment


                #67
                Dear Sir M.X.P please see my pictures and help me ?

                Thank you
                Regards
                Elle

                Comment


                  #68
                  Originally posted by elle24 View Post
                  Dear Sir M.X.P please see my pictures and help me ?

                  Thank you
                  Regards
                  Elle
                  Cliquez sur l'image pour la voir en taille r?elle   Nom : 		image.png  Affichages :	0  Taille :		30,4 Ko  ID : 			3468255
                  you need to find schema or boardview and check that the card manages LPC.
                  If Espi it is not possible.
                  read the different pages on this thread to have more information​

                  the password is contained in npcx997
                  maybe someone here has already tried but found nothing






                  Comment


                    #69
                    Thank you for reply dear sir, but can i just get a chip reader and read the entire npcx997 chip, the big one?

                    And

                    Where can i find the schematics or board view for this model, please help me ?

                    Thanks

                    Comment


                      #70
                      Dear sir, how can i find out if mine has ESPI or other, just tell me the method ?

                      Comment


                        #71
                        Hi.
                        I Have 4th Gen X1 Thinkpad Yoga type=20QG
                        i use SVOD-4 i replaced 10k Resistor,JTAG Wire connection also correct but giving me following Error.
                        can someone Help me Please.

                        MEC IDCODE: B1240020
                        Device ID: 0
                        Device Revision: 0
                        Device Status: 0
                        Flash Status: 0000000000
                        Boot Block in not protected mode
                        Flash Configuration: 0000000000
                        MECxxxx series in protect mode, work mass erase only

                        Comment


                          #72
                          I have successfully read EC rom before. But recently when connecting ok, but reading error "Buffer area is empty, click OK to continue save as empty file". Has anyone encountered this error? How to fix it?
                          Thanks,

                          Comment


                            #73
                            Originally posted by Maxpower3 View Post

                            Cliquez sur l'image pour la voir en taille r?elle  Nom : 		image.png  Affichages :	0  Taille :		30,4 Ko  ID : 			3468255
                            you need to find schema or boardview and check that the card manages LPC.
                            If Espi it is not possible.
                            read the different pages on this thread to have more information​

                            the password is contained in npcx997
                            maybe someone here has already tried but found nothing






                            How can i read the npcx997 chip, please tell me the name of the programmer ?

                            Comment


                              #74
                              Hello
                              Does SVOD 4 read MEC EEPROM without JTAG? If not, what board do I need to buy for SVOD to do JTAG? Thanks

                              Comment

                              Working...
                              X