Home > Windows Security Tips > > How to Bypass BIOS Passwords
Windows Security Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 


How to Bypass BIOS Passwords


LabMice.net
04.21.2005
Rating: -3.93- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



Backdoor passwords

Many BIOS manufacturers have provided backdoor passwords that can be used to access the BIOS setup in the event you have lost your password. These passwords are case sensitive, so you may wish to try a variety of combinations. Keep in mind that the key associated to "_" in the US keyboard corresponds to "?" in some European keyboards. Laptops typically have better BIOS security than desktop systems, and we are not aware of any backdoor passwords that will work with name brand laptops.

WARNING: Some BIOS configurations will lock you out of the system completely if you type in an incorrect password more than 3 times. Read your manufacturers documentation for the BIOS setting before you begin typing in passwords

Award BIOS backdoor passwords:
ALFAROMEBIOSTARKDDZAAADA
ALLyCONCATLkwpeterZBAAACA
aLLyCONDOLKWPETERZJAAADC
aLLYCondoPINT01322222
ALLYd8onpint589589
aPAfdjonetSER589721
_awardHLTSKY_FOX595595
AWARD_SWJ64SYXZ598598
AWARD?SWJ256syxz
AWARD SWJ262shift + syxz
AWARD PWj332TTPTHA
AWKWARDj322
awkward

AMI BIOS backdoor passwords:
AMI
AAAMMMIII
BIOS
PASSWORD
HEWITT RAND
AMI?SW
AMI_SW
LKWPETER
A.M.I.
CONDO

PHOENIX BIOS backdoor passwords:

phoenix, PHOENIX, CMOS, BIOS

MISC. COMMON PASSWORDS
ALFAROMELKWPETER
BIOSTARlkwpeter
biostarsetup
biosstarSETUP
CMOSSyxz
cmos Wodj

OTHER BIOS PASSWORDS BY MANUFACTURER
ManufacturerPassword
VOBIS & IBMmerlin
DellDell
BiostarBiostar
CompaqCompaq
Enoxxo11nE
Epoxcentral
FreetechPosterie
IWilliwill
Jetwayspooml
Packard Bellbell9
QDIQDI
SiemensSKY_FOX
TMCBIGO
ToshibaToshiba

TOSHIBA BIOS

Most Toshiba laptops and some desktop systems will bypass the BIOS password if the left shift key is held down during boot

IBM APTIVA BIOS

Press both mouse buttons repeatedly during the boot


Password cracking software

The following software can be used to either crack or reset the BIOS on many chipsets. If your PC is locked with a BIOS administrator password that will not allow access to the floppy drive, these utilities may not work. Also, since these utilities do not come from the manufacturer, use them cautiously and at your own risk.


Using the Motherboard "Clear CMOS" Jumper or Dipswitch settings

Many motherboards feature a set of jumpers or dipswitches that will clear the CMOS and wipe all of the custom settings including BIOS passwords. The locations of these jumpers / dipswitches will vary depending on the motherboard manufacturer and ideally you should always refer to the motherboard or computer manufacturer's documentation. If the documentation is unavailable, the jumpers/dipswitches can sometimes be found along the edge of the motherboard, next to the CMOS battery, or near the processor. Some manufacturers may label the jumper / dipswitch CLEAR - CLEAR CMOS - CLR - CLRPWD - PASSWD - PASSWORD - PWD. On laptop computers, the dipswitches are usually found under the keyboard or within a compartment at the bottom of the laptop.

Please remember to unplug your PC and use a grounding strip before reaching into your PC and touching the motherboard. Once you locate and rest the jumper switches, turn the computer on and check if the password has been cleared. If it has, turn the computer off and return the jumpers or dipswitches to its original position.


Removing the CMOS Battery

The CMOS settings on most systems are buffered by a small battery that is attached to the motherboard. (It looks like a small watch battery). If you unplug the PC and remove the battery for 10-15 minutes, the CMOS may reset itself and the password should be blank. (Along with any other machine specific settings, so be sure you are familiar with manually reconfiguring the BIOS settings before you do this.) Some manufacturers backup the power to the CMOS chipset by using a capacitor, so if your first attempt fails, leave the battery out (with the system unplugged) for at least 24 hours. Some batteries are actually soldered onto the motherboard making this task more difficult. Unsoldering the battery incorrectly may damage your motherboard and other components, so please don't attempt this if you are inexperienced. Another option may be to remove the CMOS chip from the motherboard for a period of time.

Note: Removing the battery to reset the CMOS will not work for all PC's, and almost all of the newer laptops store their BIOS passwords in a manner which does not require continuous power, so removing the CMOS battery may not work at all. IBM Thinkpad laptops lock the hard drive as well as the BIOS when the supervisor password is set. If you reset the BIOS password, but cannot reset the hard drive password, you may not be able to access the drive and it will remain locked, even if you place it in a new laptop. IBM Thinkpads have special jumper switches on the motherboard, and these should be used to reset the system.


Overloading the KeyBoard Buffer

On some older computer systems, you can force the CMOS to enter its setup screen on boot by overloading the keyboard buffer. This can be done by booting with the keyboard or mouse unattached to the systems, or on some systems by hitting the ESC key over 100 times in rapid succession.


Jumping the Solder Beads on the CMOS

It is also possible to reset the CMOS by connecting or "jumping" specific solder beads on the chipset. There are too many chipsets to do a breakdown of which points to jump on individual chipsets, and the location of these solder beads can vary by manufacturer, so please check your computer and motherboard documentation for details. This technique is not recommended for the inexperienced and should be only be used as a "last ditch" effort.


Using a professional service

If the manufacturer of the laptop or desktop PC can't or won't reset the BIOS password, you still have the option of using a professional service. Password Crackers, Inc., offers a variety of services for desktop and laptop computers for between $100 and $400. For most of these services, you'll need to provide some type of legitimate proof of ownership. This may be difficult if you've acquired the computer second hand or from an online auction.


Links to Motherboard Manufacturers

If you need additional documentation about your motherboard, location of jumpers / dipswitches, location of the battery, BIOS settings, etc., we've included links to most of the major motherboard manufacturers here.

2 the MaxA-trend Elite Computer Systems Matsonic
Abit Epox Microstar American Megatrends
PC ChipsAmptron Freetech QDI
Aopen Giga-Byte Fujitsu Siemens ASUS
IBMSuperMicro Biostar Intel
TyanChaintech



Rate this Tip
To rate tips, you must be a member of SearchWindowsSecurity.com.
Register now to start rating these tips. Log in if you are already a member.




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Authentication
Locked out of Windows 2000 computer
Reduce resistance to creating strong computer passwords
Looking ahead to life without passwords
Accessing a Windows 2000 Pro without the password
Accessing forgotten passwords
HijackThis
Default passwords for Windows 2000 and Windows XP
Laptop security solutions for Windows users
Taking over the domain
Cracking passwords
Authentication Research

Authentication
Correct improperly assigned user rights in Windows XP
How do I track file access in Windows folders?
Password security in Windows XP Professional
Cool things about security, nothing about Britney Spears
Sharing files and folders in Windows XP
Reduce resistance to creating strong computer passwords
Crack the admin password in Windows XP
Looking ahead to life without passwords
Learning center: Remote access authentication
Troubleshooting your Windows-based VPN
Authentication Research

Authentication
How can I use a GPO to manage Windows user rights?
Windows network rights, password policy and network security testing
Password cracking, network rights and Windows Firewall expert advice
How to manage network access for single users in AD
Windows server access management in Active Directory
File management on a Windows Server 2003 NAS system
Windows Small Business Server 2003 access management
Manage Windows network access in Active Directory
One patch for Active Directory is a doozy
NTFS permissions control: Who will watch the watcher?
Authentication Research

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
authentication ticket  (SearchWindowsSecurity.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

HomeNewsTopicsITKnowledge ExchangeTipsAsk the ExpertsMultimediaWhite PapersIT DownloadsBlogs
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2004 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts