The Notebook Review forums were hosted by TechTarget, who shut down them down on January 31, 2022. This static read-only archive was pulled by NBR forum users between January 20 and January 31, 2022, in an effort to make sure that the valuable technical information that had been posted on the forums is preserved. For current discussions, many NBR forum users moved over to NotebookTalk.net after the shutdown.
Problems? See this thread at archive.org.
← Previous pageNext page →

    IMPORTANT SECURITY UPDATES!

    Discussion in 'Sager and Clevo' started by Prema, Nov 30, 2017.

  1. Dennismungai

    Dennismungai Notebook Deity

    Reputations:
    785
    Messages:
    933
    Likes Received:
    867
    Trophy Points:
    106
    OK, update me when they're ready!
     
    Vasudev likes this.
  2. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    That suddenly again recommended 'C2' version for 'SKL-S' is also just the same old Spectre November update they used before and which you already have in your Prema BIOS. It wasn't affected by the December/January code changes that caused instability.
     
    Last edited: Feb 8, 2018
    W00d_m3, KY_BULLET, steberg and 2 others like this.
  3. Dennismungai

    Dennismungai Notebook Deity

    Reputations:
    785
    Messages:
    933
    Likes Received:
    867
    Trophy Points:
    106
    Amen to that, this is good news!
     
    Prema likes this.
  4. Dennismungai

    Dennismungai Notebook Deity

    Reputations:
    785
    Messages:
    933
    Likes Received:
    867
    Trophy Points:
    106
    Many thanks, Prema.
     
    Prema likes this.
  5. joluke

    joluke Notebook Deity

    Reputations:
    1,040
    Messages:
    1,798
    Likes Received:
    1,217
    Trophy Points:
    181
    Thanks for the heads-up. Hopefully you can help us maintain our machines secure :)
    Thank you again

    Enviado do meu SM-N950F através do Tapatalk
     
    Prema likes this.
  6. Qadhi79

    Qadhi79 Notebook Geek

    Reputations:
    30
    Messages:
    75
    Likes Received:
    58
    Trophy Points:
    26
    Since you have locked my thread at http://forum.notebookreview.com/threads/tpm-security-update.813300/ I am going to reply you here

    1. I have not taken files from you. Get real, you cook BIOS and not TPM firmware files and they come from Infineon..Infineon even includes a License PDF which you have removed from your package.
    2. I waiting to get the most updated files and did not take it from you. They came from another source with a lot more firmware files including the 5.50.x but I removed them and only kept the latest including the 5.50 which you did not include in yours.
    3. There is no violation of terms and conditions or re-posting as my TPM thread was created on 1st Feb and you created it on 2nd Feb which clearly makes YOU in violation of T&C of the forum and re-posting.
    4. It is not a repackage. The firmwares are from a different source and include a lot more versions. Also the TPM update utility is a new one (you have packaged an old one) and takes configuration input from a config file (which the older one your included cannot do).
    5. I also created simple batch scripts to people cannot get confused with so many firmwares and commands and can just type a small name and be done with it.
    6. I posted here asking if anyone has the TPM update and nobody had one (including you) so I found it on google, updated my TPM and created a guide on the 1st Feb for everyone to update to 5.62.x which is a secure firmware and you posted your guide on 2nd Feb. If posting an similar thread is violation of T&C then you have violated it..if posting an update is not a violation then neither you or me have violated anything.
    7. My discussion with you was never about getting the latest TPM firmware but rather about you inability to understand TPM and the illogical excuses you were making again and again to hide behind your ego..which jumped up again as you locked my thread without waiting for my response.

    Here is a link to the firmwares I have with a lot more firmwares and updated TPM update utility
    https://onedrive.live.com/download?...=1E25BD0C9E57C3DA!609&authkey=AEDa1MUISr27LR0

    @Papusan @hmscott @katalin_2003 @ZaZ @John Ratsey @Dannemand
     
    Last edited: Feb 11, 2018
    Razorbacktrack likes this.
  7. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    I simply asked the Mods to remove a duplicated post containing the very files I uploaded also in order not to confuse user:

    1, 2 & 4 > Sure thing you used the files I uploaded, they are time stamped by myself and have their original factory time removed buddy (Edit: original unaltered factory stamps have also been provided to the Mods as proof of origin). You walked right into a trap and got caught red handed:

    [​IMG]

    3: You violated the T&C of premamod.team which are are also included in the 'readme'

    5: All user have to do with the files in the OP is type 'update' and hit 'enter. Too much?

    6: I answered your request for a TPM update and posted all 5.63 & 4.43 files as the version you posted in this very thread was outdated by months and only contained a single update.
    Here the deleted quote.

    7. You requested the latest files (the first post from you in this thread).
    I also already said twice that I mixed the signing info with TBT while trying to answer your questions, not enough? Admitting to be wrong is a healthy thing also for that 'ego', you should try it sometime.

    Sorry, but I won't see any more of you as you are going on the ignore list now.
     
    Last edited: Feb 11, 2018
    Dennismungai, 0lok, Vasudev and 6 others like this.
  8. Qadhi79

    Qadhi79 Notebook Geek

    Reputations:
    30
    Messages:
    75
    Likes Received:
    58
    Trophy Points:
    26
    I have posted the full firmware archive I got and they are from Infineon and even though you have removed the Infineon License PDF from your archive, please don't claim it as your own. The one you posted contains the older TPM Update utility and missing many other firmware. Only call it your own if you have cooked it..you and I have merely distributed Infineon firmwares and thats about it.

    Duplicate is something posted after the actual post..clearly my post on 1st Feb came before your post on 2nd Feb..and I have posted the full firmware archive from Infineon so please stop calling it yours. Too bad if you had this update long ago and was sitting on it..I guess you are pissed that I uploaded it before you..ego problem.

    Your archive contains far more confusing files than just typing "update" because you used an old version of TPM update utility and had to type commands again and again.

    [​IMG]

    I asked for a TPM fix on 1st Feb in this post and then after finding an update myself made another post right after it..these are post #212 and #213 are no other posts in middle so you did not post anything between me asking for a fix and posting an update myself. One of the members asked a new thread to be created and I edited and moved to a new one.. here is that post with the quote

    No, you did not confuse TPM with TBT and your post clearly shows you incorrect knowledge of TPM here:

    TPM, Endorsement Keys, Clearing TPM, stuck Keys, Microsoft TPM documentation..blah blah..No, you did not mix TPM with TBT as you were talking about TPM all the time and then TBT was just an excuse trying to cover up lack of technical understanding of TPM and excuses to hide it..TPM and TBT can be confusing if you are just typing it but providing Microsoft Links and trying to answer specific TPM terminology is not confusion..but again your ego problem.
     
    Last edited: Feb 11, 2018
    Razorbacktrack likes this.
  9. W00d_m3

    W00d_m3 Notebook Enthusiast

    Reputations:
    10
    Messages:
    24
    Likes Received:
    14
    Trophy Points:
    6
    @Prema do you mind fixing the link for ME 11.X firmware update?

    Mega link is dead
     
  10. Vasudev

    Vasudev Notebook Nobel Laureate

    Reputations:
    12,050
    Messages:
    11,278
    Likes Received:
    8,816
    Trophy Points:
    931
    I think there's a new MEFW incoming possibly 3448 or higher.
     
    hmscott and W00d_m3 like this.
  11. Vasudev

    Vasudev Notebook Nobel Laureate

    Reputations:
    12,050
    Messages:
    11,278
    Likes Received:
    8,816
    Trophy Points:
    931
  12. nixliu

    nixliu Notebook Consultant

    Reputations:
    4
    Messages:
    104
    Likes Received:
    10
    Trophy Points:
    31
    thanks a lot.
     
    Vasudev likes this.
  13. Legion343

    Legion343 Notebook Consultant

    Reputations:
    21
    Messages:
    208
    Likes Received:
    109
    Trophy Points:
    56
    Update done.
    [​IMG]
    However after update Control Center simply died. System says that requires reboot to launch it but after a few tries the result is the same. Reinstalling CCC not working. Anyone has any ideas?

    Ok The solution is to install the newest CCC (for example for P6 i have used one from PA70).
    THX Prema.
     
    Last edited: Feb 23, 2018
    Vasudev and hmscott like this.
  14. joluke

    joluke Notebook Deity

    Reputations:
    1,040
    Messages:
    1,798
    Likes Received:
    1,217
    Trophy Points:
    181
    steberg likes this.
  15. palehorse

    palehorse Notebook Guru

    Reputations:
    0
    Messages:
    68
    Likes Received:
    5
    Trophy Points:
    16
    Edit: Nevermind, found the answer elsewhere.
     
    Last edited: Feb 28, 2018
  16. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    All TM-Model PremaMods dated 22nd February+ are already using Intel's latest Spectre2 fixes.
    The currently recommended fix for Skylake is already implemented since November as they rolled back to that code. You can also install it manually via Windows Update:

    http://www.catalog.update.microsoft.com/Search.aspx?q=KB4090007

    DEAR RE-SELLER:

    A small warning regarding Clevo's new TM-Series BIOS (P7: 1.05.09 & P8: 1.05.08), which are send to you this week.
    They are labeled as "Spectre 2" fix, but they are not. Clevo is using old and wrong microcodes on all of them.
    Don't deploy them to your customer!

    For P8 the proper Spectre 2 stock BIOS is 1.05.09+ and for P7 1.05.10+
     
    Last edited: Mar 1, 2018
  17. joluke

    joluke Notebook Deity

    Reputations:
    1,040
    Messages:
    1,798
    Likes Received:
    1,217
    Trophy Points:
    181
    Mine is a P775DM3-G :)

    No BIOS for it yet!

    That's stupid, to release a BIOS with the old microcode update knowing the ranbom reboots it had
     
  18. joluke

    joluke Notebook Deity

    Reputations:
    1,040
    Messages:
    1,798
    Likes Received:
    1,217
    Trophy Points:
    181
    Vasudev likes this.
  19. Chastity

    Chastity Company Representative

    Reputations:
    1,295
    Messages:
    6,545
    Likes Received:
    336
    Trophy Points:
    251
    The MS update is currently only good for Skylake.
     
    joluke likes this.
  20. Silarn

    Silarn Newbie

    Reputations:
    0
    Messages:
    2
    Likes Received:
    1
    Trophy Points:
    6
    Thanks for all the hard work over the years! I'm afraid my old P170SM-A is too old for the TPM firmware update, though. The tool is showing version 4.32.879.0 which seems to be significantly behind any firmware update versions I can find and thus fails to update with the current tool. Is there something I'm missing?
     
  21. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    EDIT:

    TPM package updated with the firmware for your model!

    ENJOY! :)
     
    Last edited: Mar 3, 2018
  22. FTW_260

    FTW_260 Notebook Consultant

    Reputations:
    75
    Messages:
    242
    Likes Received:
    141
    Trophy Points:
    56
    Everyone froze in anticipation of magic ... :rolleyes:
     
    Prema and Vasudev like this.
  23. qwerty8224

    qwerty8224 Notebook Guru

    Reputations:
    5
    Messages:
    66
    Likes Received:
    16
    Trophy Points:
    16
    @Prema sorry that I write here (((you could not send me a bios on the P870DMG I want to replace the processor i5 6600K on i7 7700K thanks in advance ....

    I'm stuck at a frequency of 4400mhz and poluchchuu throttling that is very distressing ((((
     
    Last edited: Mar 3, 2018
  24. Silarn

    Silarn Newbie

    Reputations:
    0
    Messages:
    2
    Likes Received:
    1
    Trophy Points:
    6
    Thanks a ton! I'm grabbing it now.
     
    Prema likes this.
  25. Muhammed Rishad

    Muhammed Rishad Newbie

    Reputations:
    0
    Messages:
    5
    Likes Received:
    2
    Trophy Points:
    6
    Thanks @Prema for the updates
     
    Vasudev and Prema like this.
  26. nixliu

    nixliu Notebook Consultant

    Reputations:
    4
    Messages:
    104
    Likes Received:
    10
    Trophy Points:
    31
    thanks``````````
     
  27. Mavitas

    Mavitas Notebook Enthusiast

    Reputations:
    0
    Messages:
    21
    Likes Received:
    2
    Trophy Points:
    6
    Hi, I cannot get access to the website, I have run the Intel tool and it gave me the vulnerability text. My system is P650HS
    Where can i get the tool to patch this?
    Thanks
     
  28. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    If your ISP blocks wordpress access just use a proxy:

    https://hidester.com/proxy/
     
    Mavitas, joluke and Vasudev like this.
  29. Prostar Computer

    Prostar Computer Company Representative

    Reputations:
    1,257
    Messages:
    7,426
    Likes Received:
    1,016
    Trophy Points:
    331
    @Prema

    Can you PM me when you have some time, please? Thanks.
     
    FTW_260 and Vasudev like this.
  30. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    Just a heads up:

    Microsoft has just (13th March) updated the above Spectre 2 CPU Microcode patches to add KabyLake and CoffeeLake codes alongside the previous available Skylake code on OS level.

    I have also updated the OP with the patch link and list of their CPU codes.
     
    Last edited: Mar 13, 2018
    Timbabs123, Vasudev, joluke and 4 others like this.
  31. Chastity

    Chastity Company Representative

    Reputations:
    1,295
    Messages:
    6,545
    Likes Received:
    336
    Trophy Points:
    251
    Installed and working :) Had to enable the Spectre protection as it was disabled by default in OS. (Used the InSpectre tool to enable running Admin privs)

    [​IMG]
     
    Prema, Vasudev and hmscott like this.
  32. Chastity

    Chastity Company Representative

    Reputations:
    1,295
    Messages:
    6,545
    Likes Received:
    336
    Trophy Points:
    251
    @Vasudev Thx for the rep, and so far I haven't encountered any slowdowns. MS mentioned that you'll encounter performance loss the more the system uses kernel calls, and that they are working to minimize that with Windows 10. Windows 7 users will feel it more, as that OS uses it a lot for font rendering, etc.
     
    Vasudev and hmscott like this.
  33. Vasudev

    Vasudev Notebook Nobel Laureate

    Reputations:
    12,050
    Messages:
    11,278
    Likes Received:
    8,816
    Trophy Points:
    931
    I disabled the protection just to get some performance back.
     
    hmscott likes this.
  34. Chastity

    Chastity Company Representative

    Reputations:
    1,295
    Messages:
    6,545
    Likes Received:
    336
    Trophy Points:
    251
    It's your system, not mine. :) I prefer to have security fixes.
     
    Vasudev and hmscott like this.
  35. Vasudev

    Vasudev Notebook Nobel Laureate

    Reputations:
    12,050
    Messages:
    11,278
    Likes Received:
    8,816
    Trophy Points:
    931
    The performance hit was too much! retopline option has less perf. hit BTW.
     
  36. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    I would personally only disable the security patches via InSpectre for benching...
     
    Vasudev and hmscott like this.
  37. kong

    kong Notebook Consultant

    Reputations:
    24
    Messages:
    119
    Likes Received:
    11
    Trophy Points:
    31
    After installing the KB4090007 update, the “System” process keeps running at ~20% all the time and make the CPU hot and that causes CPU fan to always turned on.

    I tried uninstalling the update and the “System” process goes back to normal... Anyone also has this problem?
     
    hmscott likes this.
  38. hmscott

    hmscott Notebook Nobel Laureate

    Reputations:
    7,110
    Messages:
    20,384
    Likes Received:
    25,139
    Trophy Points:
    931
    Wow, that's not good, wonder what it is doing? Maybe open up the Task Manager => Performance => Resource Monitor, and look at open files - read / write activity.

    It might just have been a coincidental running of a scheduled task that came up after reboot the first time, and was out of scope after you backed it out?

    I'd try again at a different time of day maybe, and then dig deep into what is running and what it is doing.
     
    kong and Vasudev like this.
  39. Papusan

    Papusan Jokebook's Sucks! Dont waste your $$$ on Filthy

    Reputations:
    42,742
    Messages:
    29,856
    Likes Received:
    59,714
    Trophy Points:
    931
    You could try the uCode(Microcode)fix instead of the Microcode patch from Win Update Catalog. Latest microcodes is already added into the scrift. Read you up how to use it in the tread.

    FYI... If you use ThrottleStop or similar tools for undervolt and oc'ing, try to resett the prefered values. Or click apply and save again in FIVR window. The microcode patch update from Micro$haft screw up the ThrottleStop settings.
     
    Vasudev and kong like this.
  40. Chastity

    Chastity Company Representative

    Reputations:
    1,295
    Messages:
    6,545
    Likes Received:
    336
    Trophy Points:
    251
    If that solution is based on the VMware microcode update driver, then it won't work for Spectre. The driver/microcode isn't loaded when the kernel is initialized, and the OS won't enable the mitigating code. The MS OS patch is more effective.
     
    Dennismungai and Vasudev like this.
  41. kong

    kong Notebook Consultant

    Reputations:
    24
    Messages:
    119
    Likes Received:
    11
    Trophy Points:
    31
    Just re-installed the update… So far everything seems to be OK, I will monitor it more closely this time.

    Ah… I’m using ThrottleStop. Gonna do what you suggested. Thanks.

    Thanks for the heads up!
     
    Vasudev, hmscott and Papusan like this.
  42. Papusan

    Papusan Jokebook's Sucks! Dont waste your $$$ on Filthy

    Reputations:
    42,742
    Messages:
    29,856
    Likes Received:
    59,714
    Trophy Points:
    931
    Please, give us feedback :)
    I tested the uCode before I downloaded the Microcode patch from Win Update. Everything was showed Green in InSpectre tool. But Yeah, MS can can inject the microcode more effectly with the patch.
     
    Last edited: Mar 17, 2018
    Vasudev likes this.
  43. FTW_260

    FTW_260 Notebook Consultant

    Reputations:
    75
    Messages:
    242
    Likes Received:
    141
    Trophy Points:
    56
    Vasudev likes this.
  44. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    Confirmative
     
    Prostar Computer, FTW_260 and Vasudev like this.
  45. Akhenaten

    Akhenaten Newbie

    Reputations:
    0
    Messages:
    1
    Likes Received:
    0
    Trophy Points:
    5
    when i tried to update my tpm on my asus z270h mobo windows 10 x64 i got a error message this app can't run on your pc contactyour software provider
     
  46. Prema

    Prema Your Freedom, Your Choice

    Reputations:
    9,368
    Messages:
    6,297
    Likes Received:
    16,486
    Trophy Points:
    681
    This is only for TPM chip models used in Clevo's...
     
    Vasudev likes this.
  47. HunterZ0

    HunterZ0 Notebook Consultant

    Reputations:
    59
    Messages:
    286
    Likes Received:
    104
    Trophy Points:
    56
    Vasudev likes this.
  48. KY_BULLET

    KY_BULLET Notebook Evangelist

    Reputations:
    802
    Messages:
    655
    Likes Received:
    794
    Trophy Points:
    106
    Prema likes this.
  49. HunterZ0

    HunterZ0 Notebook Consultant

    Reputations:
    59
    Messages:
    286
    Likes Received:
    104
    Trophy Points:
    56
    And where do I go on that website to get the "Prema ME11 tool"?
     
    Vasudev likes this.
  50. Papusan

    Papusan Jokebook's Sucks! Dont waste your $$$ on Filthy

    Reputations:
    42,742
    Messages:
    29,856
    Likes Received:
    59,714
    Trophy Points:
    931
    Select Menu and then you find it in Maintenance.

    You find password in post #1 in this thread.
     
    Prema, Vasudev and KY_BULLET like this.
← Previous pageNext page →