[SOLVED] Unlocked Clevo NH58DEQ InsydeH2O BIOS

As a precaution, you should always make BIOS modifications for each individual laptop again.

How about the Lenovo Y700 15-ISK?

This is the case for the flashing using Intel FPT.

This is what I was actually replying to but seems the reply function isn’t working.

@Zucker2k , we know how to unlock Lenovo Y700 15-ISK. If you need, make a request and post a link to download the BIOS dump made by backup tools. Your message will not be missed.


Would I be able to flash it with FPT? I can unlock the FD for bios writes, but there are Protected Range Registers.

Hi friend, Sweet Kitten wrote that we can do (i know that can be some difficulties, as there is the FLOCKDN, but he knows how to do disabling ME) , actually there is only this variable to lock the eeprom :

0x71114 One Of: BIOS Lock, VarStoreInfo (VarOffset/VarName): 0x4B3, VarStore: 0x1234, QuestionId: 0x51D, Size: 1, Min: 0x0, Max 0x1, Step: 0x0 {05 91 80 02 81 02 1D 05 34 12 B3 04 10 10 00 01 00}
0x71125 One Of Option: Disabled, Value (8 bit): 0x0 (default) {09 07 04 00 30 00 00}
0x7112C One Of Option: Enabled, Value (8 bit): 0x1 {09 07 03 00 00 00 01}
0x71133 End One Of {29 02}

There are two ways to flash this bios :

1. Fpt tool
2. Frashrom Tool (USB)

Please make the result file and upload here for Sweet Kitten … i trusth in him, he is the best modder here !
Regards

I saw the thread you created. I thought you were done with registers already, and now you just ask for menus unlock.
So the situation is different, and I should apologize for disturbing you, @BDMaster .

@Zucker2k your bios has multi-level rewrite protection…you need SPI-programmer onlt


This doesn’t unlock the bios. I have it disabled with H2OUVE tool but the bios is still locked. I’ve used the tool to change everything that can be changed, including overclocking my RAM but it’s not the most convenient way. I just want to be able to access the "Advanced Menu" inside bios and make changes there.

0x80 = User Access Level (0x4=Full)
0x4B3 = Bios Lock (0)
0x84A = Config Lock (0)
0x8E8 = TDC Lock
0x862 = Overclocking Lock (0)
0xC92 = MC Lock (0)

0x2E4 = Overclocking Feature Enable = (1)
0x2E6 = CPU Flex Ratio Override (1)
0x2E7 = CPU Flex Ratio Settings (1)
0x50F = H2OUVE Support (1)
0x1E9 = EC Turbo Control Mode (1)
0x3EC = Core Max OC Ratio (23)
0x2DB = Expected CPU Frequency

0x574 = ICC Profile (0)
0x575 = ICC Locks after EOP (0x2)
0x303 = ICC/OC Watchdog Timer
0x30A = ICC PLL Shutdown (0 = Disabled)
0x102 = TCO WatchDog Support (1 - Enabled)
0x103 = WatchDog ACPI Table

0x83E = Platform PL1 Enable (1)
0x83F = Platform PL1 Power
0x843 = Platform PL1 Time Window (0x80)
0x844 = Platform PL2 Enable (1)
0x845 = Platform PL2 Power

0x4C3 = Package Power Limit MSR Lock (
0x1A3 = Energy Efficient P-state (1)
0x1A5 = Power Limit 1
0x1A9 = Power Limit 1 Override (1)
0x1AA = Power Limit 1 Time Window (0x80)

0x1AB = Power Limit 2 Override (1)
0x1AC = Power Limit 2

0x1B8 = Power Limit 4 Override (1)
0x1B9 = Power Limit 4
0x1BD = Power Limit 4 Lock

0x85E = 1-Core Ratio Limit Override (23)
0x85F = 2-Core Ratio Limit Override (23)
0x860 = 3-Core Ratio Limit Override (23)
0x861 = 4-Core Ratio Limit Override (23)
0xDB4 = Energy Efficient Turbo (1)
0x872 = VR Config Enable
0x873 = VR Config Enable
0x873 = Core/IA VR Domain Enable
0x874 = Ring VR Config Enable

0x2E5 = IMON Scaling Support (1)
0x4D7 = Spread Spectrum clock Chip (0x2)
0x1B7 = Power Limit 3 Lock (0)
0x1B0 = Power Limit 3 Override (1)

0x31E = Configurable TDP Lock (0)
0x31F = Custom Configurable TDP (1)
0x505 = CTDP BIOS control (1)
0x316 = ConfigTDP Enabled (1)
0x318 = Configurable TDP Boot Mode (1)
0x320 = Custom ConfigTDP Boot Index (0x2)
0x321 = Custom ConfigTDP Count (3=Max)
0x32A = Power Limit 1 Time Window (128=Max)
0x32B = ConfigTDP Turbo Activation Ratio (35)
0x32C = ConfigTDP Config TDP Control (2=Max)
0x335 = Power Limit 1 Time Window (128=Max)

0xD08 = Me FW Image Re-Flash (1)
0xD17 = ME State (0=Disable)
0x1FF = Local FW Update (1)
0xD0D = Core Bios Done (1)
0xC10 = DMI Max Link Speed (3)

0x918 = RSR Enable (1)
0x3BA = Lock Thermal Management Registers (0)
0x510 = Hardware P States Enable (HWP) (1)
0x199 = Hyper-Threading Enable (0)

0x180 = DVMT Pre-Allocated (08 = 256MB)
0x181 = DVMT Total Gfx Mem (03 = Max)

The tool can access other bios modules besides the three setup menus, ie. Setup, Setup Default, and Custom. I wonder if the unlock is outside the setup menus, and inside the other menus?

https://ibb.co/Ldp0W0v
https://ibb.co/RzfKgPM

@Zucker2k
I know it , but i made the same mod on Acer Aspire E5-571 with the same protection and at last we flashed the mod …

How do i bios mod my acer Aspire E5-571-37CB using linux mint only

I have the PM where i posted the modified bioses to test and at last he flashed it by Flashrom and he said me that the last one i made was the only one
he was be able to flash into eeprom …
We used H2OUVE and the WinTest like ataigun , you know Outsyde etc. you were there too … so on Acer we disabled the ME and he unlocked the Descriptor,
but after all there was a lock to reflash the mod … and making an hard modify he flashed by flashrom it
After that i wrote again to him to post all and make a tutorial, but he got the goal vanished (his laptop have got a Linux)
Regards

Jannyer_Flashed.jpg


My bios: https://file.io/dhsxtaeLhkWn

@ Zucker2k your file is not available


Please try this instead: https://filebin.net/hv3x523v83s8a6n3

So, I take it I’m on a hopeless quest?

Selam Recs. Aynı model biosa sahibiz. Tam olarak nasıl gelişmiş menüye eriştiğini anlatır mısın?

Hello
I have a laptop from Hasee, platform nh55dpq, please help me with unlocking the BIOS. I was only able to open the undervolt, but the memory settings and, in general, all sorts of advanced menus do not open. Help me please
I can’t attach a file because I’m a new user

Try the following.

It can unlock nh55dpq if the bios version is not too outdated.

Hello Sweet Kitten, I am new in this website. I’ve managed to enter Advance Settings mode after following your tutorial.

Sadly my overclock option has also greyed out. If it’s not a problem, can you explian how did you enable overlock option on RecS’s BIOS?

I have the exact same device as RecS’s, so I think it should be an easy one.

Hello.
I recorded a video upon a request from RecS.

Is this enough info?