[Guide] Clean Dumped Intel Engine (CS)ME/(CS)TXE Regions with Data Initialization

outimage(2).rar (212 Bytes)

Does FITC also expect a 6MB bios dump? Should I merge the 4MB bios dump and 2MB bios dump to make it work in both MEA and FITC? Is this correct?

FIT expects a full firmware image to work (or in older versions the ME region alone can be used).

MEA compares firmware size given in FD with real firmware size and complains, but it works fine.

Both don’t care what it is in the bios region- you could givr the an image with a bios region filled with just FFs and they wouldn’t complain - but your machine wouldn’t boot, of course.

EDIT

REgarding the 2 MB chip: FIT works with what you give to it, bios region (which the 2 MB most probably contains part of) is copied unchanged when FIT builds an outimage- there’s no check if this is a valid region…

So it might simply be a misplaced soic clip that gave you just FFs for the second chip.

What machine are we talking about and please post the dump of the first 4 MB chip

Lenovo G480 (LA-7982p motherboard)

I’m posting the bios dumps that I downloaded from the internet and the backup I made of the bios:

G480 (LA-7982P).rar (6.2 MB)

Very grateful for your help!!!

Flashed both SPI chips (4 MByte and 2 MByte)?

When the machine has 2 bios chips, I usually have flashed both of them

OK, that sounded different earlier and you posted a 2 MB file which just was FF while your backup looks like a valid end- part of a bios region.

Then it’s possibly not firmware related…

I have tried to clean a (CS) ME Region of a dumped file, however during the process of building image the following error was showed up in FIT environment:

Error 197: [Fit Actions] Invalid settings combination. If “EOM on First Boot Enabled” is set to: “Yes”, Then "Boot Guard Profile Configuration " cannot be set to: “Boot Guard Profile 3 - VM”

Error 20: [Csme Binary Gen] Error executing pre-build actions.

Error 2: Failed to build.

I have two doubts:

  1. What is the best way to solve this error: Change the EOM parameter to NO or change Boot Guard Profile to another value, for instance: 4-FVE?

  2. Why was it possible for LBE to clean (CS)ME Region of same file keeping EOM as YES and Boot Guard Profile as 3-VM, considering that they are invalid settings combinations?
    See link below for Dumped and LBE Files:
    Microsoft OneDrive

Hello.
I’m wondering if you guys could help me (and many others, each one with it’s own) with my old laptop Dell, model Inspiron 5557.
Since it’s BIOS was updated via Windows Update (from 1.6 to 1.9) after a replace SSD and OS reinstall, an annoying screen with “…invalid configuration blablabla…” appears everytime that we turn it on! Trying to downgrade to 1.6 again was successful, but Intel ME with final error 2236. Installed Intel MEI version still same as 1.9 BIOS: 11.8.77.3664, when 1.6 is 11.8.60.3561. I believe that’s related to dirty MEI Region. If I was correct, can you help us? Sorry for my bad english, and thank you for now…

Link for laptop BIOS:

https://www.dell.com/support/home/en-us/drivers/driversdetails?driverid=k9n6w&oscode=wt64a&productcode=inspiron-15-5557-laptop

PS: IDK how to dump current BIOS nor extract from Dell package.

It would be nice to get a “real” translation, preferable a human reading of that “BLABLA” of yours… and maybe we get a “picture” of what is the SSD related to the Intel ME FW of a system.

Bios updates only upgrade the Intel ME FW when they’re required to (system has lower/old version) than the payload package and ME FW is never downgraded by normal flash methods.

Do you mean the backup is probably not corrupted?

Just one question: The 4MB bios dump does not correspond to the Engine region, am I correct?

Can someone help to unpack this HP Z440 ME into a clean ME area that can be flashed with FPT:
https://ftp.hp.com/pub/softpaq/sp90001-90500/sp90102.exe

Or at least point to tools to do so?

Along these lines, what’s the latest version of ME 9.1? Anything newer than 9.1.45.3000 which is in this package ?

To the best of my knowledge, this is the latest version (9.1.45.3000). What is the problem with the current file format? I have updated them without any problems with FWUpdLcl64.exe. You don’t need to modify the files under v12. You can use !save.bat to save the existing version and write.bat to update it (9.1.45.3000_5MB_PRD_RGN_D8D49751).

series_9.1.rar (4.2 MB)

The earlier versions of the HP ME update had a clean ME region that was byte copied to the ME area of the flash 1-to-1, and one byte was set to “01” to enable it to initialize upon boot.

So I wanted to extract the clean ME that’s 1-to-1 match to the flash region out of the ME update file, but it looks like it’s sort of challenging with the bin files that are supposed to be used by FWUpdLcl64.exe

See this for that other approach - called MEBLAST:
https://ftp.hp.com/pub/softpaq/sp59501-60000/sp59991.html
https://ftp.hp.com/pub/softpaq/sp59501-60000/sp59991.exe

Before ME12 one could use a configured ME region for an update. But you can’t be sure that an update is configured properly for this machine since the update process doesn’t worry anout any configuration data but updates just the code partitions of an ME region. So the udate file might ot might not be configured correctly for your machine.

So you have to check the update file in FIT if it has the correct configuration, if so you might use it as a region. But what’s all this about?

The link you gave is a procedure to update older workstations from ME7 to ME8 and the MEBLAST folder contains a complete firmware image, not just the ME. So there’s no ‘earlier’, this is a single special case for the upgrade from ME 7 to ME 8.

Not just that, there was the same for installing ME7:
https://ftp.hp.com/pub/softpaq/sp59501-60000/sp59990.html
https://ftp.hp.com/pub/softpaq/sp59501-60000/sp59990.exe

That MEBLAST would literally copy the ME region out of the full size BIOS (with the FD jumper on), does not copy/touch anything else. I think later HP switched to FWUpdLcl64.exe for everything, with the repackaged binaries:
https://ftp.hp.com/pub/softpaq/sp82501-83000/sp82644.html
https://ftp.hp.com/pub/softpaq/sp82501-83000/sp82644.exe

Anyway, I thought 9.1 could do the same - if only I could find a clean 1:1 ME area somewhere, LOL.

Btw, if you need to see what the full Z440 dump looks like with that ME9.1 installed, see this:

That’s different models, the one you asked for first is Z1 G2, Z228, Z230, Z440, Z640 and Z840 Workstations, the ones you mentioned later are for Z420, Z620, Z820, Z1 G1, Z210 CMT, and Z210.

What kinda machine do you want to update from which version to which version?

Of course, you are correct, these are 2 different workstation series!

I want a clean ME image for Z440 (exactly sized to the flash chip ME region), but using that early meblast-like procedure from Z420. So would be doing this on Z440 with clean ME 9.1:
fpt.exe -ME -f me91_clean_image.bin

Probably all data regions in the clean image will be filled with FF, except for byte 0x400 which would be “01” to initialize the ME.

If you have a dump of such a machine - clean the ME region according to this guide and you have what you want.

Right, this is the full dump here, with ME in there as well:

I guess it’s a bit older version of ME (Version: 9.1.25.1005) in there:

Fixed: Yes

Base: 5000h

Address: FF005000h

Offset: 5000h

Full size: 5FB000h (6270976)

Version: 9.1.25.1005