asrock Z270 Pro4 - deactivated IME + eventually driver + unlocked settings

Good Evening Experts, I have been really trying my best for many hours and i didn’t get it to work. i would appreciate such a mod very much, preferably with just the set bits to disable the engine and not to format the firmware. i’m only interesred in the latest drivers if they actually impact os too and not just BIOS/UEFI
And i would kindly ask not to update the microcodes, if its possible

I have found these vars so far: Me FW Image Re-Flash, Variable: 0x68F , Local FW Update, Variable: 0x1 , ME State, Variable: 0x2 , BIOS Lock, Variable: 0x93C … any help would be appreciated. thanks

Current Bios: 2.70 (latest)
ME FW: 11.8.50.3425 H
Intel Pro 1000 (e1d68x64.sys)

download.asrock.com/BIOS/1151/Z270%20Pro4(2.70)ROM.zip

MeInfo

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
 
Intel(R) ME code versions:
 
BIOS Version P2.70
MEBx Version 11.0.0.0008
GbE Version 0.2
Vendor ID 8086
PCH Version 0
FW Version 11.8.50.3425 H
Security Version (SVN) 3
LMS Version Not Available
MEI Driver Version 1904.12.0.1208
Wireless Hardware Version Not Available
Wireless Driver Version Not Available
 
FW Capabilities 0x31101140
 
Intel(R) Capability Licensing Service - PRESENT/ENABLED
Protect Audio Video Path - PRESENT/ENABLED
Intel(R) Dynamic Application Loader - PRESENT/ENABLED
Intel(R) Platform Trust Technology - PRESENT/DISABLED
 
Re-key needed False
Platform is re-key capable True
TLS Disabled
Last ME reset reason Firmware reset
Local FWUpdate Enabled
BIOS Config Lock Enabled
GbE Config Lock Enabled
Host Read Access to ME Disabled
Host Write Access to ME Disabled
Host Read Access to EC Enabled
Host Write Access to EC Enabled
SPI Flash ID 1 C22018
SPI Flash ID 2 Unknown
BIOS boot State Post Boot
OEM ID 00000000-0000-0000-0000-000000000000
Capability Licensing Service Enabled
OEM Tag 0x00000000
Slot 1 Board Manufacturer 0x00000000
Slot 2 System Assembler 0x00000000
Slot 3 Reserved 0x00000000
M3 Autotest Disabled
C-link Status Disabled
Independent Firmware Recovery Disabled
EPID Group ID 0x1FD2
LSPCON Ports None
5K Ports None
OEM Public Key Hash FPF 0000000000000000000000000000000000000000000000000000000000000000
OEM Public Key Hash ME 0000000000000000000000000000000000000000000000000000000000000000
ACM SVN FPF 0x0
KM SVN FPF 0x0
BSMM SVN FPF 0x0
GuC Encryption Key FPF 0000000000000000000000000000000000000000000000000000000000000000
GuC Encryption Key ME 0000000000000000000000000000000000000000000000000000000000000000
 
FPF ME
--- --
Force Boot Guard ACM Disabled Disabled
Protect BIOS Environment Disabled Disabled
CPU Debugging Enabled Enabled
BSP Initialization Enabled Enabled
Measured Boot Disabled Disabled
Verified Boot Disabled Disabled
Key Manifest ID 0x0 0x0
Enforcement Policy 0x0 0x0
PTT Enabled Enabled
PTT Lockout Override Counter 0x0
EK Revoke State Not Revoked
PTT RTC Clear Detection FPF 0x0
 

>