com.github.LongSoft.UEFITool

UEFI firmware image viewer and editor

Size 135.0 B
Entropy 4.36
GUID 463191c7-fade-51b1-a0ba-eef794d26632
SHA256 ebc7c0e586aee58eeda2b296ca50f63542230619390104a9661a99fd84116a3f
SHA1 e7593c97f492983554dacb53c6f0ce9d391929de

org.uefi.Driver

Size 81.7 KiB
Entropy 5.54
GUID 0162d06e-41ef-43ca-bb59-90a00cf88592
SHA256 a36edd499207fa0f489250a2b5f78f896b949aca20198f57b9fd6150f023351e
SHA1 f84b11840d00330d26bdd1134f123e1ccc56ebaa

org.uefi.Driver

Size 74.5 KiB
Entropy 5.88
GUID 91a5e4a3-1839-4aba-ab51-1ea8519a374a
SHA256 e137c59b58b58f23bcd06cc9c3cc8904a205e7f4aac2f55672985d4bdc5fe75c
SHA1 fa8f0d015ee10e7f4fc6fd33bf7f1a0e948e401a

com.intel.ManagementEngine.PCHC

Size 4.0 KiB
Entropy 3.7
GUID c759d06f-00b7-54c8-9084-0efc8361c93d
SHA256 5823b27923fb5794d2189b51da3ae085e9a63f11c1fab2d954db7c163b32a73b

com.intel.ManagementEngine.ISHC

This Intel Management partition contains boot code for the Integrated Sensors Hub (ISH) and is digitally signed by the OEM.

Size 160.0 KiB
Entropy 7.99
GUID ca8cee10-ebf4-5cca-a356-91f27c413d72
SHA256 160b46fb70ae6ed9aa2b444058cdc321a44a3673f36915313b6a24e870348f8a

com.intel.ManagementEngine.TBTP

Size 256.0 KiB
Entropy 6.89
GUID c9913be5-9803-50b1-b545-f1af225a7a3a
SHA256 cd35435d8eac402bf59ed10b9bae37bfcaefe18353e3b5b2d3533646f8e8989c

com.intel.ManagementEngine.NPHY

Size 48.0 KiB
Entropy 6.26
GUID c28ab20f-1d45-5c1e-bfba-1c1b8637ee37
SHA256 af8cd766f2330ed44f540feb30c584c51a19475169d716006c13930f50aec438

com.intel.ManagementEngine.IOMP

Size 56.0 KiB
Entropy 6.46
GUID ebd7e1af-c8d5-5b87-bf42-918a0999ebf9
SHA256 be61030bc2853d14342297357e62a6d01415abd62c28d2c2f7acec5eaefee8d7

com.intel.ManagementEngine.OEMP

This Intel Management partition contains various OEM-provided public keys for signing data.

Size 1.4 KiB
Entropy 6.68
GUID 642c732c-d77d-5d4a-963d-4d5f2977f3cc
SHA256 3ca4d839a9bc5519fcfa8dbe34e6ef0903b51c9917e4f998ed266f1561c1090d

com.intel.ManagementEngine.PMCP

This Intel Management partition provides ARC firmware for the Power Management Controller (PMC).

Size 152.0 KiB
Entropy 6.78
GUID ff2b4262-d1e8-5442-a002-7902d8facbaa
SHA256 24401682907b3510923712f494efae7ef01e1b097f7103ad871a6a36778dd209

com.intel.ManagementEngine.FITC

Size 32.0 KiB
Entropy 2.09
GUID df0d12f6-b81b-5556-a65a-184c4f1e9af4
SHA256 fb990d60e2edf6a61bb056750783d9679a94de66cfa84e2bc7e7fc931c8af3d3

com.intel.ManagementEngine.IMDP

Size 64.0 B
Entropy 2.71
GUID 2f807ad0-d71d-5ffe-bd60-0a56ded005d3
SHA256 d4f3cb11ffef64f3cbbf69b260156053c28a9bd2bfaa8ecb09e47f83e9771e81

com.intel.ManagementEngine.RSTR

This Intel Management partition is used to request the reset of Private RTC (PRTC) which store some ME runtime data. It is probably only used during firmware update. Only the first DWORD #1 (offset 4) has meaning. If it is 0x55555555 then the RBE module zeroes the PRTC during platform startup.

Size 24.0 B
Entropy 0.79
GUID 99064fec-f7da-5914-9270-f2f4e732a363
SHA256 78a5008744ef4fec6fabc0a97dca8385737b295fe6e6aa30e02c9b4850dc93f8

com.intel.ManagementEngine.EFS

Size 64.0 KiB
Entropy 0.06
GUID 9fdff9c0-e5e3-573c-aa8a-dfa4850642ca
SHA256 dfe81a75384a85b278f79168b56fa4e3126a9c2c9d19278d0cc78798c51305f3

com.intel.ManagementEngine.FLOG

This Intel Management partition provides a flash log that contains error and warning messages generated by ME modules, the data written here is a subset of the data output to the Tracehub.

Size 4.0 KiB
GUID dfa881ba-d45b-5ef1-9fcf-4882cea6e1db
SHA256 f47a8ec3e9aff2318d896942282ad4fe37d6391c82914f54a5da8a37de1300c6

com.intel.ManagementEngine.RBEP

This Intel Management partition stores ROM Boot Extensions (CSE-RBE) and is digitally signed by Intel.

Size 96.0 KiB
Entropy 7.65
GUID 6ecf9a4e-e07b-5b03-bba6-198e6726cc0b
SHA256 6befe676215bc234ea0f261e6d1d621b986785e27e1f3d77251616a606b1c1e0

com.intel.ManagementEngine.HVMP

This Intel Management high volume manufacturing partition is used by manufacturers to override the default SKU configuration (features of Q/H/Z chip versions) burned in fuses for a particular Platform Controller Hub (PCH). It is a new feature of CSME 12 firmware for CannonPoint chipsets.

Size 12.0 B
GUID d454263e-9d97-51f2-96c9-bf699d411ba7
SHA256 8688d249e9d047b4fc2fb89ce05afe9ec89252ffccdd969de6eef260dd7ffb21

com.intel.ManagementEngine.UTOK

This Intel Management block partition stores an OEM unlock token used to unlock debugging for the ME or Integrated Sensor Hub (ISH). This token is cryptographically signed by either the Intel private key or by an OEM private key, granting a level of access depending on which key was used. GREEN access is the default, when no UTOK is present and only allows TraceHub tracing and debug of the host CPU. ORANGE unlock allows debug of the Intel Sensor Hub, and RED unlock allows debugging the ME but will clear secrets from its memory before doing so.

Size 8.0 KiB
Entropy 0.01
GUID d62fac2d-36c1-59e4-977c-28ccbaa64a74
SHA256 53a2b4f0413e3f5244c5fdc4353d75d904481ae95207a2bf0235276782e7765c

com.intel.ManagementEngine.NFTP

This Intel Management partition is a code Non-Fault Tolerant Partition and provides additional code to the BUP. It is digitally signed by Intel.

Size 1.2 MiB
Entropy 6.17
GUID 2749ab68-bcde-5e19-9f2f-b802d6f7e1d7
SHA256 9879c5d378e5265a6f08a1c737ff4d9b18c9b0f2d7f0ba62d8c938e599ff7af9

com.intel.ManagementEngine.MFS

This Intel Management partition stores a file system that contains ME-related data stored between runs. The low-level MFS implementation does not support file names or sizes. Files are identified by numbers.

Size 400.0 KiB
Entropy 0.03
GUID 5abfb339-331f-55af-9bf9-31f4aa80387e
SHA256 f5eb1a628dc1a111739a8270d46437f2d4c2fa9b4a417838b39397867a818f13

com.intel.ManagementEngine.IVBP

This Intel Management encrypted block partition is used for “warm” start (like hibernate restoration) and is integrity protected with HMAC. It is unique for each platform (PCH-chip) and each boot.

Size 16.0 KiB
GUID 6312624b-3631-5317-9f47-519260d8eb52
SHA256 0fbba07a833d4dcfc7024eaf313661a0ba8f80a05c6d29b8801c612e10e60dee

com.intel.ManagementEngine.FTPR

This Intel Management partition is a Fault Tolerant Partition (FTP) code partition. Digitally signed processes of the correct type are started from this module, much like autorun. It is digitally signed by Intel.

Size 1.1 MiB
Entropy 7.46
GUID cbe73b88-8057-5046-80f5-0a5586268634
SHA256 b53d523da5ffff944a76a297b343e4d1f75bcb956547cee7dea772387cfcdac7

com.intel.ManagementEngine.PSVN

This optional Intel Management partition stores the previous SVN (Secure Version Number) value and is used to calculate “previous security keys”. It must be impossible to install ME firmware with previous SVN without direct writing SPI Flash with chip programmer. Updates to the SVN causes alteration of related security keys. Having access to both “previous” and “current” keys allows migration of the MFS file system from old to new keys.

Size 512.0 B
GUID cb1536bf-79b3-5f45-a765-344360a4327b
SHA256 9f56cda75fefeab90f6fa5d5ddc9601544b121732c5ecccab32e631060453a5d

LVFS © 2015 Richard Hughes with icons from Font Awesome and GeoIP data from IP2Location.

Linux Vendor Firmware Service Project a Series of LF Projects, LLC :: Charter