Page 3 of 14
#31 RE: Patching ASUS G20CB Bios to support 7th gen I7 by jacky400 24.06.2018 05:36

It download and install itself somehow via the windows update (Redstone 5) .I also tried to find on official site but cannot see they update .

Wonder is it possible to dump it somehow by using other tools ?

#32 RE: Patching ASUS G20CB Bios to support 7th gen I7 by Lost_N_BIOS 24.06.2018 06:24

avatar

Windows does not update BIOS, not that I've ever seen. Now, Asus utilities might auto update, like AI Suite or Update Manager. Do you have Asus AI Suite installed, I think that is the BIOS updating tool.
With that, you should be able to save a backup copy to share here if you wanted, but I'd rather find a clean download instead of a dumped backup.

The only place I can find references of it is here, and your two posts on Asus Forum. I even checked on the Asus China and HK websites and nothing new, and tried to make the current BIOS download links (2101) into 2202 and download, only get 404 page.

So I guess, yes, please make a backup copy and post here so we can inspect and see what's changed, if you don't mind, thanks!
Here is download w/ files (AFU and Intel FPT) to make backup with, and text instructions on how to do backup.
http://www.filedropper.com/makebiosbackup

#33 RE: Patching ASUS G20CB Bios to support 7th gen I7 by jacky400 24.06.2018 09:14

Windows reboot itself to bios flash program to update directly. (I don't have AI Suite installed at this moment)

Please find the attached 2202 bios dump . (i only able to dump from afuwin64)

https://mega.nz/#!YNRD3a7A!ggfhNc3JQYy4p...5Ztd6qV9p_1HuTM

Looking forward to your findings


BTW , see the following screenshot from my windows update - driver update section

#34 RE: Patching ASUS G20CB Bios to support 7th gen I7 by Lost_N_BIOS 24.06.2018 10:11

avatar

Thanks, I will check it out. Did you get error with FPT? If yes, what errors, please try again so you can know exact error if you don't remember, thanks!

That's so weird Windows sending out BIOS updates, for many many many reasons!!!

#35 RE: Patching ASUS G20CB Bios to support 7th gen I7 by jacky400 24.06.2018 12:43

Please see the error below .

D:\download\bios\Intel Flash Programming Tool\WIN>fptW -d backupbios.bin

Intel (R) Flash Programming Tool. Version: 11.8.50.3425
Copyright (c) 2007 - 2017, Intel Corporation. All rights reserved.

Reading HSFSTS register... Flash Descriptor: Valid

--- Flash Devices Found ---
W25Q128FV ID:0xEF4018 Size: 16384KB (131072Kb)



Error 318: The host CPU does not have read access to the target flash area. To enable read access for this operation you must modify the descriptor settings to give host access to this region.
FPT Operation Failed.

#36 RE: Patching ASUS G20CB Bios to support 7th gen I7 by reactive 24.06.2018 13:45

avatar

Hey,

@jacky400 : did you tried "AMI AFU for Aptio V" ?


The dump, you posted before, seems to be corrupt or something else.

#37 RE: Patching ASUS G20CB Bios to support 7th gen I7 by jacky400 24.06.2018 14:59

Re dump using GUI . Please check

https://mega.nz/#!IdxSFAID!OyL9Rs87Eonew...XZnCBcnbkkkJQcA

#38 RE: Patching ASUS G20CB Bios to support 7th gen I7 by Lost_N_BIOS 25.06.2018 08:26

avatar

FD is locked, so he will need Flash Programmer to give a full proper dump, which we really need to see what version ME they included.
Any dump outside of a programmer will be missing some regions, specifically ME, unless he can get Asus AISuite working on that board.
I'm not even sure if it will do full dump either, but I know it can be used to work around security stops when flashing, so it's possible it can dump around them too.
I looked and it's not listed on the utilities pages for this system, have you tried it on this board yet @reactive ?

I checked both dumps, thanks! Both are same for all intents and purposes, due to locked FD, so no BIOS region, no ME region, no "valid" GBE region (Messed up MAC) etc.

BIOS region is unlocked, so not sure why it failed to provide the BIOS region? Ohh well, you will need to either have a flash programmer @jacky400 to make a dump from, or see if Asus AISuite can do it for us.

@reactive - since you have all these tools and knowledge to do this easily, can you try to get windows to give you the update? Then you can probably find the MSU installer package too, so it would be a clean file.
If you can't dig out the MSU installer, a dump will do

#39 RE: Patching ASUS G20CB Bios to support 7th gen I7 by reactive 25.06.2018 10:43

avatar

Hey,

@Lost_N_BIOS :

ran MEInfo with FreeDOS. It is showing the proper version, 11.6.26.1246 H. That update is fine I think.

For that 2202 version, i am going to install everything… this may take a while. Than I will see, if I get that update thru Windows Updates... never heared that before. That would be the first time I get a BIOS Update thru win update...

#40 RE: Patching ASUS G20CB Bios to support 7th gen I7 by Lost_N_BIOS 25.06.2018 11:14

avatar

Everything else looked good and correct in MEInfo too? If yes, great!

I know MS was putting out fixes for Spectre/Meltdown, but I assumed via update to be OS loaded microcodes only, not a BIOS update.
Can you imagine the chaos that can cause, BIOS updates without user intervention or permission!
BIOS flash kills 1000's of Asus PC's due to bad flash, injected via MS Updates automatically without user permission, I can see it now!

#41 RE: Patching ASUS G20CB Bios to support 7th gen I7 by reactive 25.06.2018 14:16

avatar

@Lost_N_BIOS:

everything installed, but unfortunately unlicensed. Thought there is a Windows10 License in UEFI. Every tool I tried gives me an empty key.

There are currently updates running, but until now there was no BIOS update. -> after Update and Reboot still 2101

I ran MEinfo on that board again, here are the results:

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
 

 
Intel(R) ME code versions:
 
BIOS Version 2101
MEBx Version 0.0.0.0000
GbE Version 0.7
Vendor ID 8086
PCH Version 31
FW Version 11.6.26.1246 H
Security Version (SVN) 1
LMS Version Not Available
MEI Driver Version 11.0.5.1189
Wireless Hardware Version Not Available
Wireless Driver Version Not Available
 
FW Capabilities 0x31111140
 
Intel(R) Capability Licensing Service - PRESENT/ENABLED
Protect Audio Video Path - PRESENT/ENABLED
Intel(R) Dynamic Application Loader - PRESENT/ENABLED
Intel(R) Platform Trust Technology - PRESENT/ENABLED
 
Re-key needed False
Platform is re-key capable True
TLS Disabled
Last ME reset reason Firmware reset
Local FWUpdate Enabled
BIOS Config Lock Enabled
GbE Config Lock Enabled
Host Read Access to ME Enabled
Host Write Access to ME Enabled
Host Read Access to EC Enabled
Host Write Access to EC Enabled
SPI Flash ID 1 EF4018
SPI Flash ID 2 Unknown
BIOS boot State Post Boot
OEM ID 00000000-0000-0000-0000-000000000000
Capability Licensing Service Enabled
OEM Tag 0x00000000
Slot 1 Board Manufacturer 0x00000000
Slot 2 System Assembler 0x00000000
Slot 3 Reserved 0x00000000
M3 Autotest Disabled
C-link Status Disabled
Independent Firmware Recovery Disabled
EPID Group ID 0xF91
LSPCON Ports None
5K Ports None
OEM Public Key Hash FPF 0000000000000000000000000000000000000000000000000000000000000000
OEM Public Key Hash ME 0000000000000000000000000000000000000000000000000000000000000000
ACM SVN FPF 0x0
KM SVN FPF 0x0
BSMM SVN FPF 0x0
GuC Encryption Key FPF 0000000000000000000000000000000000000000000000000000000000000000
GuC Encryption Key ME 0000000000000000000000000000000000000000000000000000000000000000
 
FPF ME
--- --
Force Boot Guard ACM Disabled Disabled
Protect BIOS Environment Disabled Disabled
CPU Debugging Enabled Enabled
BSP Initialization Enabled Enabled
Measured Boot Disabled Disabled
Verified Boot Disabled Disabled
Key Manifest ID 0x0 0x0
Enforcement Policy 0x0 0x0
PTT Enabled Enabled
EK Revoke State Revoked
PTT RTC Clear Detection FPF 0x0
 



Is that looking good???

#42 RE: Patching ASUS G20CB Bios to support 7th gen I7 by Lost_N_BIOS 25.06.2018 15:34

avatar

ME looks good!

You mean MSDM key for windows? If there is on tied to that board, you will need to program back in the original BIOS backup you have, then check
Here's a few ways to check
https://itsolutionsblog.net/3-ways-to-ex...-8-product-key/

#43 RE: Patching ASUS G20CB Bios to support 7th gen I7 by reactive 25.06.2018 17:43

avatar

I know that tools to check MSDM. Already checked the original chip. There is no MSDM table.


Just for question. Additionally I saved some data from the bios. There are 4 Files (dbx, db, KEK and PK). Do that files have anything to do with MSDM? Opened them in a hexeditor, some strings are containing "Microsoft blabla…", and some binary data.

#44 RE: Patching ASUS G20CB Bios to support 7th gen I7 by Lost_N_BIOS 25.06.2018 22:11

avatar

I don't think you can see it that way until you boot windows with it, that's why I said flash it to check, then look with RWEeverything.
I am unsure about those files, and MSDM, sorry I don't know a lot about checking for that.

#45 RE: Patching ASUS G20CB Bios to support 7th gen I7 by reactive 26.06.2018 09:18

avatar

Read a bit about that issue. That files are only related to secure boot and what efi files are allowed to boot, or something like that.

This site "The Meaning of all the UEFI Keys" describes in short what all the files stand for.

As I understand, that has nothing to do with MSDM

Xobor Forum Software von Xobor
Datenschutz