Intel (Converged Security) Management Engine: Drivers, Firmware and Tools (2-15)

Hi Fernando,

I hope all is well on your side.

I have a small issue, but I don’t know if you can help me out. Long story short, we needed a new office PC (for accounting) as our old machine crashed. Therefor a used Dell Precision T5600 system was bought.
I installed 2 SSD’s and did a clean install of Windows 10. Installed all drivers available and everything was installed correctly, except for one thing: PCI-seriële poort (= Dutch). I looked up the hardware ID VEN_8086&DEV_1D3D&CC_0700 and it seems to be “PCI Serial Port”.

What I don’t understand is, when I download all available drivers from Dell and/or Intel, the same issue persists…

I am not sure, but I am guessing it’s related Intel Management Engine drivers not being installed. So I ran MEInfoWin64 and MEManufWin64. I took screenshots of the results (see attachments). In results in an error like "Error 1002: Failed to retrieve Intel (R) ME FW Version"
It seems there is really an issue with Intel ME firmware which is causing this issue, right? Or am I wrong here? It doesn’t matter what driver I download. It results always in the same issue (as described above).

If I am not mistaken the Dell Precision T5600 is based on the Intel C600 chipset.

Maybe you have an idea? Or can provide some help/insight with this?

Thank you in advance for your time…

MEInfoWin64.jpg

MEManufWin64.jpg

windows_device_manager.jpg

windows_device_manager_hw_id.jpg

@HHawk :
The device with the HardwareID VEN_8086&DEV_1D3D&CC_0700 is the “Intel(R) Active Management Technology - SOL”.
It doesn’t need a driver, but just an INF file.
Attached is the “pure” INF file for the “Intel(R) Active Management Technology - SOL”, which I found at Lenovo’s websites. It is v11.0.0.1136 dated 05/08/2015.

11.0.0.1136.rar (7.25 KB)

Man I spend hours of this and the solution was so simple!
I also downloaded those Lenovo drivers, but it didn’t work (and it didn’t cross my mind to extract only those files).

Thanks Fernando! :))

Intel MEI Driver v11.7.0.1032 (Windows 10) INF for manual installation

Or From WU

Context

Hi, I hope someone here can help me - My laptops graphics card failed and I had it replaced. Worked perfectly however after a while - during the post intallation of MacOS on a different partition I had graphics issues - I had to do a diagnosis and it turned out that I do NOT have an IMEI driver at all…

Every time I tried to install one of these IMEI packages I get the same error that my system isn’t compatible with the driver.
My specs are:

Asus Vivobook S550CM

CPU:intel core i5-3317u - (7th series)
Bios version: S550CM.202
Bios mode: UEFI
Ram: 8 Gigs
Windows 10 - 64bit
IntelHD4000+nVidia 635M

Is there any way that I am able to install an IMEI?

Edit: I can’t install it through Device Manager either since Intel MEI driver doesn’t show up there
just to be clear, I use windows and not having an IMEI really messes up my power settings sometimes…the Mac part was just the back story one how I found out about this issue




Okay so it’s been a while and tomorrow I’m going to the guy that fixed my laptop. I’m not sure if he knows how to do this procedure [remove the SPI/BIOS chip and reflash it ] but he seems very capable of doing so, when I brought the issue up with him he told me he never heard of this issue before and seems like he wants to try and install it within windows. Is there a guide or something I can point him to on how to reflash my bios?

as for the flashprogramming tool, the moment a press a key it says error and closes…? any way I can fix this? [Error 200: Invalid parameter value specified by user. Use -? option to see help.]

Intel ME System Tools v11.6 r16

Intel ME System Tools v11.0 r10

Hi,

i would like to update the ME Firmware but i stopped at certain part while getting info about the current version etc… If i used ME Analyzer i have got this information (see also attached):

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
 

-------[ ME Analyzer v1.16.6 ]-------
Database r96
 
File: M-020006
 
Family: ME
Version: 3.0.10.1134
Release: Production
Type: Region, Extracted
FD: Locked
SKU: QST
Date: 2008-03-14
Size: 0x2F000
Platform: Desktop
Latest: No
 
Note: This firmware was not found at the database, please report it!
 
Press enter to exit
 


I have also used the MEInfo tool provided with the 3.x package of tools with the info bellow (see also attached):

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
 

Copyright(C) 2005-07 Intel Corporation. All Rights Reserved.
 
AMT Not Found.
Intel(R) MEInfo Win Version: 3.0.0.1105
 
Intel(R) ME code versions:
Flash: 3.0.10
SKU: IQST
VendorID: 8086
Build Number: 1134
Recovery Version: 0.0.0
Recovery Build Num: 0
HECI Version: 3.0.30.1086
Error: UNS Version Information is not available.
 
Error: The operation failed due to an internal error.
 
C:\Users\Jaro\Desktop\Intel ME System Tools v3 r1\MEInfo\Windows>
 


With the other tools i either get an error or an message that AMT is not enabled. My question in general is if its even possible to update the firmware to the latest 3.x version? While updating the firmware, from what i understood, the update is written inside BIOS and therefore in a event of a failure it would be necessary to flash the "working" BIOS, right? My reason why to update is to try if it will solve my issues with my FANs, the fans are controlled using QST and throttling at full speed, cant lower the settings right now.

EDIT: I made a dump using Flash Programming Tool, see attached with the bin.

thx, Tomas

meanalyzer.jpg

meinfo.jpg

dump.jpg

ME.zip (144 KB)

@ tsalat:

Thank you for using MEA and for reporting that firmware Tomas. The ME region is inside the SPI chip, alongside the BIOS (not within). Your system uses QST ME3 SKU so there is no AMT. Since you are able to dump your ME region, we can repair it in case of fan problems. You can take the ME region from Dell’s SPI image (M-020006 from the MEA photo, I assume you need M-020006 and not M-010008 ?) and flash it with Flash Programming Tool. Use the DOS versions of the tools since the Windows ones are very old at this point and may not work properly at modern operating systems. The command is fprog -me -f me_dell.bin. Then, shutdown the system and remove all power (cord + battery, RTC is ok) for 1 minute. Now that the ME is reflashed, you can use FWUpdate tool to update to the latest ME3 QST firmware that I’ve found which is 3.2.3.1037 as seen at the first post.

me_dell.rar (142 KB)

Hi plutomaniac,

thank you a lot for your answer. Few questions if i may, if i understand this correctly the ME region is inside the chip where the SBIOS is stored but its not overwritten by a regular BIOS update, right? Hence, if i would do any mistake :), can i re flash this region by taking the BIOS chip out, use a SPI flash and hardcore re flash the whole chip? Just want to know if i have a emergency "back door" here :slight_smile: The me_dell.bin is the same i attached or its extracted from the 2.0.6 BIOS at DELL website, iam quite confused here :S The rest is ok!

Anyway, i found a QST config utility etc. which can read the current settings, shows the statistic and so on… and found what is my problem. I have changed the GPU there and apparently the QST cant find the sensor for the GPU, see below.

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
 
Intel(R) Quiet System Technology Status Display v2.0.3.1184
Copyright (C) 2006-2009, Intel Corporation. All Rights Reserved.
 
The QST Subsystem is configured and operational
 
All fans overridden to full due to temperature sensor error!
 
Sensor Configuration/Status Summary:
 
Processor Temperature Normal -54.75
Graphics Processor Temperature Non-Recoverable 0.00
I/O Controller Hub Temperature Normal 60.78
Memory Controller Hub Temperature Normal 66.70
Motherboard Temperature Normal 17.39
 
Processor Fan Normal 3091
Chassis Inlet Fan Normal 3651
 

 
Fan Speed Controller Configuration/Status Summary:
 
Processor Fan Controller Normal 100.00%
Chassis Fan Controller Normal 100.00%
 

Use command "qststat [-V]" for a detailed report...
 


i have also dumped the current config for the QST, see attached, there is a device address which is probably wrong.. any idea how to get the "right one"? or the flash with the newer version could solve this just like that?

thank you again,, Tomas

EDIT: Right now i disabled the GPU temperature sensor and told to regulate the FANs only by the CPU temperature,,, so far so good :) Anyway, if you know how to obtain the address from the GPU sensor, i will try to turn this on as well.

QstCfg.zip (1.98 KB)

If I update ME region(via FWUpdLcl) and in future I reflash bios file(which have older ME version) from gigabyte website, ME will be downgraded or remain updated?

@andr84 :
The ME Firmware of your system will never been downgraded by flashing any BIOS, which has been delivered by your mainboard manufacturer.
As long as your current ME Firmware is newer than the one, which is within the delivered BIOS, it will stay untouched.

@ Fernando
Ok. thx for a quick answer.
I just wanted to check myself whether the issue refers to ME and if it does not, then reflash original bios file(I don’t want the warranty service discovering manipulations with bios ).

@ tsalat:

The SPI/“BIOS” chip has regions such as Flash Descriptor, ME and BIOS. At ME 3, a corrupt firmware won’t cause problems booting the system, you can disable it by removing the primary RAM module etc so you can repair it. But yes, its firmware is located at the SPI chip you mentioned. The me_dell.bin ME region I attached is taken from Dell’s M-020006 SPI image. But your problem is configuration related so you don’t have to do the repair. As for the GPU sensor, I don’t know what address needs to be placed there. Try to use the QST tools which can be found around the web. If these don’t help, honestly the current trick you did with the CPU-only sensor seems like a perfectly acceptable workaround.

thx a lot plutomaniac… and iam very thank full for the information i found here!!! Finally solved everything :slight_smile:

Intel MEI v11.7.0.1035 for Corporate systems Drivers & Software
Intel MEI Driver v11.7.0.1032 (Windows XP & Windows 7) INF

Intel ME 11.0 Corporate PCH-LP Firmware v11.0.27.3000 (added YPDM)

Intel ME 11.7 Consumer PCH-LP Firmware v11.7.0.3307

Intel ME 11.7 Corporate PCH-LP Firmware v11.7.0.3307


Capture.PNG

Thanks. Works great. Flashed this :Intel ME 11.7 Consumer PCH-LP Firmware v11.7.0.3307 (I have 100-series Skylake ,Mobile CPU Intel i7 6500U)

MEInfo Output:

Intel(R) MEInfo Version: 11.6.29.3287
Copyright(C) 2005 - 2017, Intel Corporation. All rights reserved.



Intel(R) ME code versions:

BIOS Version D3CN35WW
MEBx Version 11.0.0.0005
GbE Version Unknown
Vendor ID 8086
PCH Version 21
FW Version 11.7.0.3307 LP
LMS Version 11.7.0.1027
MEI Driver Version 11.7.0.1025
Wireless Hardware Version 2.1.77
Wireless Driver Version 19.51.4.2

FW Capabilities 0x31111240

Intel(R) Capability Licensing Service - PRESENT/ENABLED
Protect Audio Video Path - PRESENT/ENABLED
Intel(R) Dynamic Application Loader - PRESENT/ENABLED
Intel(R) Platform Trust Technology - PRESENT/ENABLED

Intel(R) AMT State Disabled
TLS Disabled
Last ME reset reason Global system reset
Local FWUpdate Enabled
BIOS Config Lock Enabled
GbE Config Lock Enabled
Host Read Access to ME Disabled
Host Write Access to ME Disabled
Host Read Access to EC Disabled
Host Write Access to EC Disabled
SPI Flash ID 1 EF4018
SPI Flash ID 2 Unknown
BIOS boot State Post Boot
OEM ID 00000000-0000-0000-0000-000000000000
Capability Licensing Service Enabled
OEM Tag 0x00000000
Slot 1 Board Manufacturer 0x00000000
Slot 2 System Assembler 0x00000000
Slot 3 Reserved 0x00000000
M3 Autotest Disabled
C-link Status Disabled
Independent Firmware Recovery Disabled
EPID Group ID 0xF85
LSPCON Ports None
5K Ports None
OEM Public Key Hash FPF 0000000000000000000000000000000000000000000000000000000000000000
OEM Public Key Hash ME 0000000000000000000000000000000000000000000000000000000000000000
ACM SVN FPF 0x0
KM SVN FPF 0x0
BSMM SVN FPF 0x0
GuC Encryption Key FPF 0000000000000000000000000000000000000000000000000000000000000000
GuC Encryption Key ME 0000000000000000000000000000000000000000000000000000000000000000

FPF ME
— –
Force Boot Guard ACM Disabled Disabled
Protect BIOS Environment Disabled Disabled
CPU Debugging Enabled Enabled
BSP Initialization Enabled Enabled
Measured Boot Disabled Disabled
Verified Boot Disabled Disabled
Key Manifest ID 0x0 0x0
Enforcement Policy 0x0 0x0
PTT Enabled Enabled
PTT Lockout Override Counter 0x0
EK Revoke State Not Revoked
PTT RTC Clear Detection FPF 0x0

Thank you for the feedback kostar20071. Based on today’s stuff, to me, seems like 11.7 is for Sunrise Point (SKL, 100-series), Union Point (KBL, 200-series) and Union Point Refresh (KBL-R, Z370). So if I understand properly, these is another intermediate PCH (not just upgraded CPU generation) before Cannon Lake PCH (300-series).


Finally, ASUS released the BIOS update 1604 for the Q87M-E motherboard, which updates the ME version to 9.1.41.3024 !!! This is what UBU says about this BIOS version:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
 
1 - Intel RST(e) OROM and EFI SataDriver
OROM IRST RAID for SATA - 12.7.0.1936
EFI IRST RAID for SATA - 12.7.0.1936
2 - Intel OROM VBIOS and EFI GOP Driver
OROM VBIOS HSW-BDW - 1030
EFI GOP Driver HSW-BDW - 5.5.1025
3 - LAN OROM PXE and EFI UNDI - Intel, RTK, BCM, QCA
OROM Intel Boot Agent GE - 1.4.10
EFI Intel PRO/1000 UNDI - 5.4.19
7 - Update Intel CPU MicroCode
Haswell CPUID 0306C3 - 19
9 - ME Analyzer
FW ME of scanned BIOS File 9.1.41.3024 5MB

Family: ME
Version: 9.1.41.3024
Release: Production
Type: Region, Extracted
FD: Unlocked
SKU: 5MB
SVN: 1
VCN: 14
PV: Yes
Date: 2017-04-09
FITC Ver: 9.1.41.3024
Size: 0x4CA000
Platform: LPT/WPT
Latest: Yes
 

Thanks. Works great as always. Flashed this :Intel ME 11.7 Corporate PCH-LP Firmware v11.7.0.3307 (I have 100-series Skylake, Intel Core i7-6600U)

MEInfo Output:

Intel(R) MEInfo Version: 11.6.29.3287
Copyright(C) 2005 - 2017, Intel Corporation. All rights reserved.



Intel(R) Manageability and Security Application code versions:

BIOS Version N75 Ver. 01.16
MEBx Version 11.0.0.0005
GbE Version 1.2
Vendor ID 8086
PCH Version 21
FW Version 11.7.0.3307 LP
LMS Version 11.7.0.1035
MEI Driver Version 11.7.0.1032
Wireless Hardware Version Not Available
Wireless Driver Version Not Available
NFC FW Version 8.2.3
NFC RST Pin GPP_B_18
NFC IRQ Pin GPP_B_21
NFC FWUPDATE Pin GPP_B_15

FW Capabilities 0xDDF65245

Intel(R) Active Management Technology - PRESENT/ENABLED
Intel(R) Capability Licensing Service - PRESENT/ENABLED
Protect Audio Video Path - PRESENT/ENABLED
Intel(R) Dynamic Application Loader - PRESENT/ENABLED
Service Advertisement & Discovery - PRESENT/ENABLED
Intel(R) NFC Capabilities - PRESENT/ENABLED

Intel(R) AMT State Enabled
TLS Enabled
Last ME reset reason Global system reset
Local FWUpdate Enabled
BIOS Config Lock Enabled
GbE Config Lock Enabled
Host Read Access to ME Disabled
Host Write Access to ME Disabled
Host Read Access to EC Enabled
Host Write Access to EC Enabled
SPI Flash ID 1 EF4018
SPI Flash ID 2 Unknown
BIOS boot State Post Boot
OEM ID 00000000-0000-0000-0000-00000000000
0
Link Status Link Up
System UUID 0eb63f7c-137d-11e6-9726-1806b90000c
2
MAC Address 70-5a-0f-d5-78-0b
IPv4 Address 0.0.0.0
Wireless MAC Address 00-00-00-00-00-00
Wireless IPv4 Address 0.0.0.0
IPv6 Enablement Disabled
Wireless IPv6 Enablement Disabled
Privacy/Security Level Default
Configuration State Not Started
Provisioning Mode PKI
Capability Licensing Service Enabled
OEM Tag 0x00000000
Slot 1 Board Manufacturer 0x0000203D
Slot 2 System Assembler 0x00000000
Slot 3 Reserved 0x00000000
M3 Autotest Disabled
C-link Status Enabled
Wireless Micro-code Mismatch No
Wireless Micro-code ID in Firmware 0x24F3
Wireless LAN in Firmware Intel(R) Dual Band Wireless-AC 8260

Wireless Hardware ID 0x24F3
Wireless LAN Hardware Intel(R) Dual Band Wireless-AC 8260

Localized Language French
Independent Firmware Recovery Disabled
EPID Group ID 0xF96
LSPCON Ports None
5K Ports None
OEM Public Key Hash FPF 00000000000000000000000000000000000
00000000000000000000000000000
OEM Public Key Hash ME 00000000000000000000000000000000000
00000000000000000000000000000
ACM SVN FPF 0x0
KM SVN FPF 0x0
BSMM SVN FPF 0x0
GuC Encryption Key FPF 00000000000000000000000000000000000
00000000000000000000000000000
GuC Encryption Key ME 00000000000000000000000000000000000
00000000000000000000000000000

FPF ME
— –
Force Boot Guard ACM Disabled Disabled
Protect BIOS Environment Disabled Disabled
CPU Debugging Disabled Disabled
BSP Initialization Disabled Disabled
Measured Boot Disabled Disabled
Verified Boot Disabled Disabled
Key Manifest ID 0x0 0x0
Enforcement Policy 0x0 0x0

Intel MEI v11.7.0.1035 for Consumer systems Drivers & Software

Updated OP