ME Analyzer: Intel Engine Firmware Analysis Tool Discussion


Download Page Mpt Foumd.:frowning:


I just checked and the link works just fine. Maybe try a different browser.


I just checked and the link works just fine. Maybe try a different browser.



IE11


Firefox

That is probably a mediafire issue where you live, DNS resolution or similar. Maybe not even mediafire.com works in such case. I was able to visit the link on a different browser and download it.

Capture.PNG



Anyway, I have attached it here as well for now. If someone else reports this then I will try changing the link.

MEA CSE DB r37.rar (8.18 KB)

@ plutomaniac
I found the problem.
Website mediafire.com blocked the Russian Federation. Access to it is possible only through a proxy.

Addwd:

scr2.JPG


Translate
"This page has been locked.

This page is currently being incorporated into a single REESTRdomennyh names, indexes pages of sites in the network “Internet” and the network addresses, enabling the identification of sites in the network “Internet”, which contain information, the dissemination of which is prohibited in the Russian Federation.

You can get all the information on this page is locked at http://eais.rkn.gov.ru/"

Now it makes sense. Unfortunately I can’t easily switch to something else like Mega since the latter requires changing the links every time. If you need to download something bigger (system tools or similar) and the proxy/vpn is slow then try sending me a pm. MEA and DB are small either way.

I set up the entrance to the site mediafire.com through proxies. :))

CSE Firmware Repository Database r38

Latest ME 11.0 CON LP SKU to 11.0.0.1197
Latest ME 11.0 COR LP SKU to 11.0.0.1197
Latest SPS 4 Single SKU to 04.00.03.089.0
Latest SPS 3 Single SKU to 03.01.03.021.0
Latest SPS 3 Dual SKU to 03.01.03.005.1
Added ME 11.0.0.1197_CON_LP_XX_PRD_RGN
Added ME 11.0.0.1197_COR_LP_XX_PRD_RGN
Added ME 11.0.0.1196_CON_LP_XX_PRD_EXTR
Added ME 11.0.0.1194_COR_H_D0_PRE_RGN
Added ME 11.0.0.1194_COR_LP_B1_PRE_RGN
Added ME 11.0.0.1178_CON_LP_C0_PRD_EXTR
Added TXE 2.0.2.2092_1.375MB_PRE_RGN
Added TXE 2.0.0.2060_1.375MB_PRE_RGN
Added TXE 1.0.5.1120_1.25MB_MD_PRE_RGN
Added TXE 1.0.5.1120_3MB_MD_PRE_RGN
Added SPS 04.00.03.089.0_PRD_EXTR
Added SPS 03.01.03.021.0_PRD_EXTR
Added SPS 03.01.03.005.1_PRD_EXTR
Added SPS 03.00.03.014.0_PRD_EXTR

ME Analyzer v1.4.5

Added detection of SPS 3.x firmware Service Mode (NM or SiEn)
Added detection of SPS firmware Operational Mode (Single or Dual)
Added detection of TXE firmware IPT-DAL Applet Modules
Added detection of some extra Intel Engine Firmware specific UEFI GUIDs
Added option to disable Intel Engine Firmware UEFI GUIDs UEFIFind detection (-disuf)
Added proper naming of unknown TXE RSA Signature hash at UEFI Strip mode
Removed the early AMD Platform Secure Processor (PSP) firmware detection from MEA
Fixed encoding crash error when any non-Engine firmware file was inputed
Fixed crash error when analysing ME 11.0 Partial Update images
Fixed issue that caused UEFI Strip mode to not show ME 11.0 PCH Stepping
Fixed Multi-Analyze issue when ME 11.0 Kernel Analysis (-dker) was enabled
Updated Intel Engine Firmware Repository Database to r39

Engine Firmware Repository Database r39

Added TXE 1.0.2.1060_3MB_MD_PRD_RGN_B
Renamed TXE 1.0.2.1060_3MB_MD_PRD_RGN_A
Added SPS 03.01.03.004.1_PRD_EXTR
Added SPS 03.00.07.154.1_PRD_EXTR
Added SPS 03.00.06.267.1_PRD_EXTR

When will be 11.0.0.1202 added in Database r40?
Thx.

2016-02-02_153143.png

ME Analyzer v1.4.6

Fixed encoding crash error with any non-standard characters (ex: Chinese)
Updated Intel Engine Firmware Repository Database to r40

Engine Firmware Repository Database r40

Latest ME 11.0 CON H SKU to 11.0.0.1202
Latest ME 11.0 COR H SKU to 11.0.0.1202
Latest ME 11.0 COR LP SKU to 11.0.0.1198
Latest ME 8 5MB SKU to 8.1.70.1590
Latest TXE 2.0 1.375MB SKU to 2.0.2.3095
Added ME 11.0.0.1202_COR_H_D0_PRD_RGN
Added ME 11.0.0.1202_CON_H_D0_PRD_EXTR
Added ME 11.0.0.1198_COR_LP_XX_PRD_RGN
Added ME 11.0.0.1197_CON_H_D0_PRD_RGN
Renamed ME 11.0.0.1197_COR_H_D0_PRD_RGN
Added ME 10.0.36.1030_5MB_PRD_EXTR
Added ME 8.1.70.1590_5MB_PRD_RGN
Added ME 8.0.21.1519_1.5MB_PRD_EXTR
Added ME 7.1.20.1111_1.5MB_CPT_PRD_EXTR
Added ME 6.0.31.1208_5MB_MB_PRD_EXTR
Added ME 4.2.10.1023_ALL_PRD_EXTR
Added ME 4.2.0.1020_TPM_PRD_RGN
Added ME 4.1.11.1051_AMT_PRD_EXTR
Added ME 4.1.3.1038_AMT_PRD_RGN
Added ME 4.0.3.1124_AMT_PRD_RGN
Added ME 2.6.4.1034_AMT_PRD_UPD
Added TXE 1.1.0.1113_1.375MB_MD_PRE_RGN

ME Analyzer v1.4.7

Added basic detection of ME 11.5 Kabylake firmware
Added support for UBU v1.47 and later releases

This is primarily a release for the new UBU version. A new parameter (-ubupre) was added alongside other improvements for UBU. The DB is r40b which includes nothing new compared to r40, only some Kabylake null numbers. UEFIFind was also updated.

ME Analyzer v1.4.10

Improved Release & Type detection (PRD/PRE/BYP & RGN/UPD)
Improved ME 11.0 SKU detection results based on Kernel/FIT/DB
Improved ME 11.0 FIT platform detection for older EXTR firmware
Improved and added new cases of Engine firmware without Manifest
Improved detection of ME 4 Extracted Type (EXTR) firmware
Added detection of strange TXE 0.x firmware releases
Removed SPS Latest firmware detection as it is wrong
Fixed issue displaying Latest Yes/No correctly at ME 11.x
Fixed display of certain messages at UBU Pre-Menu mode
Fixed non-0 exiting at all other modes except UBU Pre-Menu
Updated Intel Engine Firmware Repository Database to r41

Engine Firmware Repository Database r41

Latest ME 11.0 CON H SKU to 11.0.1.1001
Latest ME 11.0 COR H SKU to 11.0.0.1205
Latest ME 11.0 CON LP SKU to 11.0.0.1202
Latest ME 11.0 COR LP SKU to 11.0.0.1202
Latest TXE 2.0 1.375MB SKU to 2.0.4.3098
Added ME 11.0.1.1001_CON_H_XX_PRD_EXTR
Added ME 11.0.0.1205_CON_H_XX_PRD_RGN
Added ME 11.0.0.1205_COR_H_XX_PRD_RGN
Added ME 11.0.0.1202_CON_LP_C0_PRD_RGN
Added ME 11.0.0.1202_COR_LP_C0_PRD_RGN
Added ME 11.0.0.1202_CON_H_D0_PRD_RGN
Removed ME 11.0.0.1202_CON_H_D0_PRD_EXTR
Renamed ME 11.0.0.1198_COR_LP_C0_PRD_RGN
Renamed ME 11.0.0.1197_CON_LP_C0_PRD_RGN
Renamed ME 11.0.0.1197_COR_LP_C0_PRD_RGN
Renamed ME 11.0.0.1196_CON_LP_C0_PRD_EXTR
Added ME 11.0.0.1160_COR_H_D0_PRE_RGN
Added ME 11.0.0.1160_COR_LP_B1_PRE_RGN
Added ME 11.0.0.1160_COR_H_C0_PRE_RGN
Removed ME 11.0.0.1160_COR_H_XX_PRE_EXTR
Added ME 9.0.50.1022_5MB_PRE_RGN
Moved ME 9.0.50.1022_1.5MB_PRE_EXTR
Added ME 6.0.42.1221_1.5MB_PRD_EXTR
Added ME 4.2.0.1020_ALL_PRD_UPD
Renamed ME 4.2.0.1020_TPM_PRD_EXTR
Renamed ME 4.1.3.1038_AMT_PRD_EXTR
Renamed ME 4.0.3.1124_AMT_PRD_EXTR
Removed ME 4.0.2.1118_ALL_PRD_UPD
Added TXE 2.0.4.3098_1.375MB_PRD_RGN
Added TXE 0.7.50.1097_3MB_MD_PRD_EXTR
Added SPS 03.01.03.018.0_PRD_EXTR
Added SPS 03.01.03.001.0_PRD_EXTR
Added SPS 02.01.05.167.0_PRD_EXTR
Added SPS 03.00.07.168.0_PRD_EXTR

Engine Firmware Repository Database r42

Changed all ME 5.x SKU names (4 SKUs)
Added ME 11.0.0.1194_CON_H_D0_PRE_RGN
Added ME 11.0.0.1194_CON_LP_B1_PRE_RGN
Added ME 11.0.0.1191_CON_H_D0_PRD_RGN
Removed ME 11.0.0.1191_CON_H_D0_PRD_EXTR
Added ME 11.0.0.1191_CON_H_D0_PRE_RGN
Added ME 11.0.0.1191_CON_LP_B1_PRE_RGN
Added ME 11.0.0.1178_CON_LP_C0_PRD_RGN
Removed ME 11.0.0.1178_CON_LP_C0_PRD_EXTR
Added ME 11.0.0.1178_CON_H_D0_PRE_RGN
Added ME 11.0.0.1178_CON_LP_B1_PRE_RGN
Added TXE 2.0.0.2064_1.375MB_PRD_EXTR

Engine Firmware Repository Database r43

Latest ME 11.0 COR H SKU to 11.0.1.1001
Latest ME 11.0 CON LP SKU to 11.0.1.1001
Added ME 11.0.1.1001_COR_H_XX_PRD_RGN
Added ME 11.0.1.1001_CON_LP_XX_PRD_RGN
Added ME 11.0.1.1001_CON_H_XX_PRD_RGN
Removed ME 11.0.1.1001_CON_H_XX_PRD_EXTR
Added SPS 03.01.03.004.0_PRD_EXTR

ME Analyzer v1.4.12

Added ME 3.x Extracted Region Type detection for AMT/ASF/QST SKUs
Added ME 2.x Extracted Region Type detection for AMT/QST ICH8/8M SKUs
Added ME 5.x Digital Home/Base Corporate SKU and changed SKU names
Improved ME 2.x - 10.0 Extracted Region Type detection across the board
Fixed Multi-Analyze issue when ME 11.0 Kernel Analysis was enabled
Updated Intel Engine Firmware Repository Database to r44

Engine Firmware Repository Database r44

Renamed ME 10.0.38.1000_1.5MB_PRD_EXTR
Renamed ME 7.1.40.1161_1.5MB_CPT_PRD_EXTR
Renamed ME 6.0.2.1194_1.5MB_PRD_EXTR
Renamed ME 3.2.30.1055_AMT_PRD_EXTR
Renamed ME 3.2.3.1037_QST_PRD_EXTR
Renamed ME 3.2.1.1022_AMT_PRD_EXTR
Renamed ME 3.2.1.1022_QST_PRD_EXTR
Renamed ME 3.2.0.1018_AMT_PRD_EXTR
Renamed ME 3.2.0.1018_QST_PRD_EXTR
Renamed ME 3.0.50.1123_AMT_PRD_EXTR
Renamed ME 3.0.8.1132_AMT_PRD_EXTR
Renamed ME 3.0.4.1120_ASF_PRD_EXTR
Renamed ME 3.0.1.1104_AMT_PRD_EXTR
Renamed ME 3.0.1.1104_AMT_PRE_EXTR
Renamed ME 3.0.1.1104_QST_PRD_EXTR
Renamed ME 3.0.1.1104_QST_PRE_EXTR
Renamed ME 3.0.0.1080_AMT_PRD_EXTR
Renamed ME 3.0.0.1072_QST_PRD_EXTR
Renamed ME 3.0.0.1072_QST_PRE_EXTR
Added ME 2.6.3.1032_AMT_PRD_EXTR
Added ME 2.6.4.1034_AMT_PRD_EXTR
Renamed ME 2.2.20.1041_AMT_PRD_EXTR
Renamed ME 2.2.0.1028_AMT_PRD_EXTR
Renamed ME 2.1.5.1034_AMT_PRD_EXTR
Renamed ME 2.1.3.1031_AMT_PRD_EXTR
Renamed ME 2.1.2.1029_AMT_PRD_EXTR
Renamed ME 2.1.0.1028_AMT_PRD_EXTR
Renamed ME 2.0.5.1124_AMT_PRD_EXTR
Renamed ME 2.0.4.1122_QST_PRD_EXTR
Renamed ME 2.0.4.1122_AMT_PRD_RGN
Added SPS 03.00.03.020_PRD_OPR
Added SPS 03.00.03.020_PRD_REC

Note: I recently found this blog post which mentions ME Analyzer. I am grateful that the author decided to write something about MEA. I do have one remark though, regarding “trusting the author”. I agree, you shouldn’t trust programs such as UBU, MEA, UEFITool etc unless you can view the code for yourself. However, as the name suggests, MEA is a tool that “analyses” and does not edit the firmware image in any way. Please test this yourself to be certain. Load a firmware image and compare the hash before and after, it should be identical. Also, even if I (or someone in general) wanted to “infect” your ME region, it wouldn’t be possible (unless Intel made a security mistake or left a loophole). The Engine CODE partitions are each protected with an RSA encrypted HASH of the contents following so any tampering would make the firmware image invalid and the platform wouldn’t boot or even allow flashing of such tampered firmware. In theory someone can modify the DATA (system-specific, OEM) sections which are not protected or only by simple checksums but even such an action wouldn’t cause anything more than a malfunctioning system or similar. Since MEA only “analyses”, both of the above issues are not relevant. Do a quick hash check to be certain!

Engine Firmware Repository Database r45:

Latest ME 11.0 CON LP SKU to 11.0.10.1002
Added ME 11.0.10.1002_CON_LP_XX_PRD_RGN
Added ME 9.0.1.1333_1.5MB_PRE_RGN
Added ME 8.1.3.1325_1.5MB_PRD_EXTR
Added SPS 03.01.03.023_PRD_OPR
Added SPS 03.01.03.023_PRD_REC

Repository Database need update…

ME Analyzer v1.4.13:

Various fixes and optimizations
Updated Intel Engine Firmware Repository Database to r46

Engine Firmware Repository Database r46:

Latest ME 11.0 CON H SKU to 11.0.2.1003
Latest ME 11.0 COR LP SKU to 11.0.0.1205
Latest TXE 1.0 3MB MD SKU to 1.0.9.1153
Added ME 11.0.2.1003_CON_H_XX_PRD_EXTR
Added ME 11.0.0.1205_CON_LP_XX_PRD_RGN
Added ME 11.0.0.1205_COR_LP_XX_PRD_RGN
Added ME 11.0.0.1202_CON_H_D0_PRE_RGN
Added ME 11.0.0.1202_CON_LP_B1_PRE_RGN
Added ME 11.0.0.1197_COR_H_D0_PRE_RGN
Added ME 11.0.0.1197_COR_LP_B1_PRE_RGN
Added ME 10.0.38.1000_1.5MB_PRD_RGN
Removed ME 10.0.38.1000_1.5MB_PRD_EXTR
Added TXE 1.0.9.1153_3MB_MD_PRD_RGN


It’s updated weekly, if need be. In between, add the entries manually as provided at the update posts.

Engine Firmware Repository Database r47:

Latest TXE 2.0 1.375MB SKU to 2.0.4.3100
Added TXE 2.0.4.3100_1.375MB_PRD_RGN
Added SPS 04.00.03.096_PRD_OPR
Added SPS 04.00.03.096_PRD_REC