ThinkPad x395 attempt at password removal

Collapse
X
 
  • Time
  • Show
Clear All
new posts

  • rafaellguerra
    replied
    Originally posted by Markus1741

    Ok here the new file.
    It is important to understand that the autopatcher was written for Lenovo Intel CPU, and a hash value must be changed in Lenovo AMD CPU (which I did) everything further described as in the autopachtcher.
    Have fun
    I hear several beeps (like music) and no image appears.

    I try to patch here and the result is same (sounds and no screen)

    Leave a comment:


  • Markus1741
    replied
    Originally posted by rafaellguerra

    Thanks Markus1741.

    This is correct file. Can you help me ?
    Ok here the new file.
    It is important to understand that the autopatcher was written for Lenovo Intel CPU, and a hash value must be changed in Lenovo AMD CPU (which I did) everything further described as in the autopachtcher.
    Have fun
    Attached Files

    Leave a comment:


  • rafaellguerra
    replied
    Originally posted by Markus1741

    Sorry, wrong chip.
    The BIOS chip is near the CPU
    You uploaded the Thunderbolt chip.
    The BIOS chip is UC3 16MB or W25Q128FW...
    Thanks Markus1741.

    This is correct file. Can you help me ?
    Attached Files

    Leave a comment:


  • Markus1741
    replied
    Originally posted by rafaellguerra
    Hi,

    I have one Lenovo X395 (japanese) and need remove Supervisor Password.
    I read my BIOS (25Q80DVSIG) but I get a error when try to patch (BIN Zip attached).


    Model: X395
    Type: 20NM-S1PG00
    SN: PC-1FBBDX

    It would be great if anyone could help me.
    Thank you :-)
    Sorry, wrong chip.
    The BIOS chip is near the CPU
    You uploaded the Thunderbolt chip.
    The BIOS chip is UC3 16MB or W25Q128FW...
    Last edited by Markus1741; Yesterday, 12:00 AM.

    Leave a comment:


  • rafaellguerra
    replied
    Hi,

    I have one Lenovo X395 (japanese) and need remove Supervisor Password.
    I read my BIOS (25Q80DVSIG) but I get a error when try to patch (BIN Zip attached).


    Model: X395
    Type: 20NM-S1PG00
    SN: PC-1FBBDX

    It would be great if anyone could help me.
    Thank you :-)
    Attached Files

    Leave a comment:


  • PACKETSTORM2
    replied
    Originally posted by Markus1741

    Hello try this new hash file for AMD CPU good luck ....
    Thank You very much, working great !

    Leave a comment:


  • Markus1741
    replied
    Originally posted by PACKETSTORM2
    Hi everyone,

    I have a Thinkpad x395 (AMD Ryzen).
    I tried to disable the BIOS supervisor password, but I failed.
    Can you please help me?

    I tried the autopatcher but wasn't able to succeed (black screen, beep sounds, fan spin, but no boot).


    I attached the dump of the original BIOS

    Serial number: PC-1J7DTF


    It would be great if anyone could help me.
    Thank you :-)​
    Hello try this new hash file for AMD CPU good luck ....
    Attached Files

    Leave a comment:


  • PACKETSTORM2
    replied
    Hi everyone,

    I have a Thinkpad x395 (AMD Ryzen).
    I tried to disable the BIOS supervisor password, but I failed.
    Can you please help me?

    I tried the autopatcher but wasn't able to succeed (black screen, beep sounds, fan spin, but no boot).


    I attached the dump of the original BIOS

    Serial number: PC-1J7DTF


    It would be great if anyone could help me.
    Thank you :-)​
    Attached Files

    Leave a comment:


  • testinglaptops
    replied
    Originally posted by volinakis

    try
    @ volinakis​ post #21 , Thank You, I checked your Patched bios on my 2 laptop T495s, It Worked 100%. and then I put back original bios.

    Leave a comment:


  • FaissalDZ
    replied
    Originally posted by Maxpower3

    try
    Great!
    Works perfectly
    Thank you

    Leave a comment:


  • Maxpower3
    replied
    Originally posted by FaissalDZ
    I have lenovo X395 with bios password.
    I tried with lenovo_autopatcher and i have a melody error
    please help me.

    SN: PC-1HG1LK
    try
    Attached Files

    Leave a comment:


  • FaissalDZ
    replied
    I have lenovo X395 with bios password.
    I tried with lenovo_autopatcher and i have a melody error
    please help me.

    SN: PC-1HG1LK
    Attached Files

    Leave a comment:


  • Maxpower3
    replied
    Originally posted by rumpumpel1
    yes, the version 'unlock with 00 ...' works.
    thank you very much.
    ok I did well to do both then



    Leave a comment:


  • rumpumpel1
    replied
    yes, the version 'unlock with 00 ...' works.
    thank you very much.

    Leave a comment:


  • Maxpower3
    replied
    try
    Attached Files
    Last edited by Maxpower3; 01-22-2025, 05:31 AM.

    Leave a comment:


  • rumpumpel1
    replied
    Based on some other threads on this topic, I tried to overwrite 128 bytes with FF in the EC dump starting at 0x0002EF00.
    It looks like I found the right place, but just deleting everything seems not to be enough, I get the error: Post process stopped due to bad SVP data.

    Any help would be greatly appreciated.​

    Leave a comment:


  • rumpumpel1
    replied
    I have a X395 with a BIOS password. Could someone please help me to remove the password?

    MTM: 20NMS1U800
    unit SN: PC1KRHEL
    board SN: L1HF07L02H5



    In case of an E14 Gen3 the password is stored in the EC, so I attach also the EC dump of the X395:



    Attached Files

    Leave a comment:


  • mshone
    replied
    Originally posted by volinakis

    you are welcome but i'm not Greek!
    You are good man, it is important 😀

    Leave a comment:


  • volinakis
    replied
    Originally posted by mshone

    IT WORKS !!!! THANKS A LOT !!!!! EYHARISTW FILE !!!
    you are welcome but i'm not Greek!

    Leave a comment:


  • mshone
    replied
    Originally posted by volinakis

    follow steps from autopatcher
    IT WORKS !!!! THANKS A LOT !!!!! EYHARISTW FILE !!!

    Leave a comment:

Related Topics

Collapse

  • AppleLover123
    Lenovo Yoga X380 22LH Supervisor Password removal
    by AppleLover123
    Hey guys,

    have a laptop here that has a supervisor Password (dump in Attachements).
    Before i write the Serial NR.etc i wanted to say that strangely after flashing with 3 different Bios dumps and one from lenovos site
    the laptop works but everytime it wants me to type a supervisor password i never set.
    I thought the supervisor password is stuck in the ec bios but no it isn't either because after replacing the ec chip from one of another board it still has the supervisor password.
    Anyway i wanted to ask what of the two chips is the ec bios because on the left...
    04-17-2025, 03:42 PM
  • mferna14
    Password removal on MacBook Pro A2159
    by mferna14
    Hi friends., I am working on MacBook Pro A2159 touchbar 2019. The old logic board was liquid spilled so I ordered another logic board from AE. Received it & all worked fine till I got to the Chinese login screen where the login screen password tobe entered. I tried to reset the password but it again gave me options which I do not know about the Apple ID. I formatted the onboard SSD. & wanted to change the startup boot sequence but in order to change it, again the password is needed for that too. Is there a way to get rid of this password?? The seller has not replied back past 2 days, how...
    05-13-2025, 04:16 PM
  • Badpatch02
    Thinkpad X380 Yoga supervisor password removal + Intel ME removal question
    by Badpatch02
    Hi all, I'm new here, a few words about myself: CS student, interested in hardware stuff too - tinkering my whole life but with practically no experience when it comes to firmware "hacking".

    So I have this X380 Yoga with a supervisor password in place and before doing anything stupid I figured I'd rather ask.
    I plan on using the tool from this thread: https://www.badcaps.net/forum/troubl...password-remov...
    11-30-2024, 05:22 AM
  • Johnny h
    Asus M7600R BIOS Password request/removal
    by Johnny h
    Hello,

    I'm hoping someone can assist me.
    I have an Asus Vivobook 16x Pro OLED laptop which has a BIOS password, and I can't seem to find it.
    It still boots into Windows (boots from whatever SSD is installed but not from USB).

    The model number is M7600R and serial number is N8N0CX03H71131C.

    I tried AMITSESetup Decryptor but the password I got doesn't make sense (it's got a line break and special characters).
    I also tried to use *************** MOD EDIT ,redacted************** and it also gave me the funny password of
    Code:
    tmNx\'=QJQ
    ...
    04-10-2024, 06:13 AM
  • coolshrimp
    T14s - MEC-1663 - Jtag - Pinout - Bios Password Removal
    by coolshrimp
    Here is all the info you should need to remove bios password from your same model or one with an MEC-Chip and also write back the config data

    T14s - MEC-1663 - Jtag - Pinout - Bios Password Removal

    See Diagram for Wiring.

    Use MEC-1633#ISP on your RT809h
    This is same Jtag pinout and method for T490S/X390
    (But your R/W 10K Resistor Location May In a Different Location)


    MEC-Chips Store Bios Password In a Secure Un-Editable Area

    Following steps clear that secure area to re-initialize itself to default (Blank)
    ...
    10-24-2022, 12:18 AM
  • Loading...
  • No more items.
Working...