com.github.LongSoft.UEFITool

UEFI firmware image viewer and editor

Size 135.0 B
Entropy 4.36
GUID 463191c7-fade-51b1-a0ba-eef794d26632
SHA256 ebc7c0e586aee58eeda2b296ca50f63542230619390104a9661a99fd84116a3f
SHA1 e7593c97f492983554dacb53c6f0ce9d391929de

com.intel.ManagementEngine.PCHC

Size 4.0 KiB
Entropy 2.69
GUID c759d06f-00b7-54c8-9084-0efc8361c93d
SHA256 2f93215a5141aa29f21b55d7a2684316647f0526e7416808a6d3447099d75104

com.intel.ManagementEngine.ISHC

This Intel Management partition contains boot code for the Integrated Sensors Hub (ISH) and is digitally signed by the OEM.

Size 248.0 KiB
Entropy 7.99
GUID ca8cee10-ebf4-5cca-a356-91f27c413d72
SHA256 8f684b9d8ee068699ea6ad80f45c2d4a2ab0a704dddd4d9c18fabdf1c89060eb

com.intel.ManagementEngine.OEMP

This Intel Management partition contains various OEM-provided public keys for signing data.

Size 928.0 B
Entropy 6.16
GUID 642c732c-d77d-5d4a-963d-4d5f2977f3cc
SHA256 49a5690804136aa45e485a0f8d7bea036f78f32c363fbfedaf286a78d9753437

com.intel.ManagementEngine.PMCP

This Intel Management partition provides ARC firmware for the Power Management Controller (PMC).

Size 68.0 KiB
Entropy 6.82
GUID ff2b4262-d1e8-5442-a002-7902d8facbaa
SHA256 266a4a9b993cc503ceccf959b2061a5603ab7131fb3509f363e5d22e83e4aa87

com.intel.ManagementEngine.IMDP

Size 64.0 B
Entropy 2.5
GUID 2f807ad0-d71d-5ffe-bd60-0a56ded005d3
SHA256 0d59000a26dd40855ab61903b3ee2553d5287b8dd4c6f37f10de2963c11ccdca

com.intel.ManagementEngine.FLOG

This Intel Management partition provides a flash log that contains error and warning messages generated by ME modules, the data written here is a subset of the data output to the Tracehub.

Size 4.0 KiB
GUID dfa881ba-d45b-5ef1-9fcf-4882cea6e1db
SHA256 f47a8ec3e9aff2318d896942282ad4fe37d6391c82914f54a5da8a37de1300c6

com.intel.ManagementEngine.RSTR

This Intel Management partition is used to request the reset of Private RTC (PRTC) which store some ME runtime data. It is probably only used during firmware update. Only the first DWORD #1 (offset 4) has meaning. If it is 0x55555555 then the RBE module zeroes the PRTC during platform startup.

Size 24.0 B
Entropy 0.79
GUID 99064fec-f7da-5914-9270-f2f4e732a363
SHA256 78a5008744ef4fec6fabc0a97dca8385737b295fe6e6aa30e02c9b4850dc93f8

com.intel.ManagementEngine.RBEP

This Intel Management partition stores ROM Boot Extensions (CSE-RBE) and is digitally signed by Intel.

Size 64.0 KiB
Entropy 6.21
GUID 6ecf9a4e-e07b-5b03-bba6-198e6726cc0b
SHA256 383cd3b5c949807954601d3645f3ab88246d353f7c577eefa0bc5e4561e9f59c

com.intel.ManagementEngine.HVMP

This Intel Management high volume manufacturing partition is used by manufacturers to override the default SKU configuration (features of Q/H/Z chip versions) burned in fuses for a particular Platform Controller Hub (PCH). It is a new feature of CSME 12 firmware for CannonPoint chipsets.

Size 12.0 B
GUID d454263e-9d97-51f2-96c9-bf699d411ba7
SHA256 8688d249e9d047b4fc2fb89ce05afe9ec89252ffccdd969de6eef260dd7ffb21

com.intel.ManagementEngine.UTOK

This Intel Management block partition stores an OEM unlock token used to unlock debugging for the ME or Integrated Sensor Hub (ISH). This token is cryptographically signed by either the Intel private key or by an OEM private key, granting a level of access depending on which key was used. GREEN access is the default, when no UTOK is present and only allows TraceHub tracing and debug of the host CPU. ORANGE unlock allows debug of the Intel Sensor Hub, and RED unlock allows debugging the ME but will clear secrets from its memory before doing so.

Size 8.0 KiB
Entropy 0.01
GUID d62fac2d-36c1-59e4-977c-28ccbaa64a74
SHA256 53a2b4f0413e3f5244c5fdc4353d75d904481ae95207a2bf0235276782e7765c

com.intel.ManagementEngine.NFTP

This Intel Management partition is a code Non-Fault Tolerant Partition and provides additional code to the BUP. It is digitally signed by Intel.

Size 1.2 MiB
Entropy 7.13
GUID 2749ab68-bcde-5e19-9f2f-b802d6f7e1d7
SHA256 6f50538c1646efca769660b3a7ed74ca71f64979e8eb215fba75eb748bcbe944

com.intel.ManagementEngine.MFS

This Intel Management partition stores a file system that contains ME-related data stored between runs. The low-level MFS implementation does not support file names or sizes. Files are identified by numbers.

Size 400.0 KiB
Entropy 0.56
GUID 5abfb339-331f-55af-9bf9-31f4aa80387e
SHA256 d1d4e31dac2b76e1b491852941b5f622c37edb478b41f8646f63f610b3189d67

com.intel.ManagementEngine.IVBP

This Intel Management encrypted block partition is used for “warm” start (like hibernate restoration) and is integrity protected with HMAC. It is unique for each platform (PCH-chip) and each boot.

Size 16.0 KiB
GUID 6312624b-3631-5317-9f47-519260d8eb52
SHA256 0fbba07a833d4dcfc7024eaf313661a0ba8f80a05c6d29b8801c612e10e60dee

com.intel.ManagementEngine.FTPR

This Intel Management partition is a Fault Tolerant Partition (FTP) code partition. Digitally signed processes of the correct type are started from this module, much like autorun. It is digitally signed by Intel.

Size 1.1 MiB
Entropy 7.2
GUID cbe73b88-8057-5046-80f5-0a5586268634
SHA256 49afc729236a0948602f37b30a69a372b4a6f71253f3a9c29caf0d34ef6b6dc7

com.intel.ManagementEngine.PSVN

This optional Intel Management partition stores the previous SVN (Secure Version Number) value and is used to calculate “previous security keys”. It must be impossible to install ME firmware with previous SVN without direct writing SPI Flash with chip programmer. Updates to the SVN causes alteration of related security keys. Having access to both “previous” and “current” keys allows migration of the MFS file system from old to new keys.

Size 256.0 B
GUID cb1536bf-79b3-5f45-a765-344360a4327b
SHA256 3d6876a0146de8576eb2395a858de1213d1b92c65b779df3a331cfd5a4584546

org.uefi.Driver

Size 73.1 KiB
Entropy 5.56
GUID 0162d06e-41ef-43ca-bb59-90a00cf88592
SHA256 3f04e3ba5038baedce52c572aca98ba92e7a0ebaae3c11e9454046bd18273f49
SHA1 8f83cfbef74e808fe5e76aba9993184e870c884a

org.uefi.Driver

Size 74.5 KiB
Entropy 5.88
GUID 91a5e4a3-1839-4aba-ab51-1ea8519a374a
SHA256 e137c59b58b58f23bcd06cc9c3cc8904a205e7f4aac2f55672985d4bdc5fe75c
SHA1 fa8f0d015ee10e7f4fc6fd33bf7f1a0e948e401a

LVFS © 2015 Richard Hughes with icons from Font Awesome and GeoIP data from IP2Location.

Linux Vendor Firmware Service Project a Series of LF Projects, LLC :: Charter