Solved Rufus complaining about security of UUP dump bootloader


Baeolophus

Member
Member
Local time
1:55 PM
Posts
94
OS
macOS Sequoia
I downloaded an ISO from UUP dump. Specifically, it was 23H2 (22631.4391). I used the download script to have my Parallels Windows 11 VM make it into an ISO. The complete file name of that—in case it matters—is “22631.4391.241016-1425.23H2_NI_RELEASE_SVC_PROD3_CLIENTPRO_OEMRET_X64FRE_EN-US.ISO”. When I try to use Rufus 4.6.2208 to burn this to a USB-drive, I get this alert:

Screenshot 2024-11-07 at 5.10.53 PM.png

For search engines:

Rufus detected that the ISO you have selected contains a UEFI bootloader that has been revoked and that wil produce a "Security Violation" screen, when Secure Boot is enabled on a fully up to date UEFI system.​
  • If you obtained this ISO image from a non reputable source, you should consider the possibility that it might contain UEFI malware and avoid booting from it.
  • If you obtained it from a trusted source, you should try to locate a more up to date version, that will not produce this warning.
Is this normal?
 
Windows Build/Version
22631.4317

My Computer

System One

  • OS
    macOS Sequoia
    Computer type
    Laptop
    Manufacturer/Model
    Apple
    CPU
    M1 Max Apple Silicon
    Memory
    32 GB
I would suspect it has more to do with KB5025885, but I'll defer to folks more familiar with that and the dump site.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Intel NUC12WSHi7
    CPU
    12th Gen Intel Core i7-1260P, 2100 MHz
    Motherboard
    NUC12WSBi7
    Memory
    64 GB
    Graphics Card(s)
    Intel Iris Xe
    Sound Card
    built-in Realtek HD audio
    Monitor(s) Displays
    Dell U3219Q
    Screen Resolution
    3840x2160 @ 60Hz
    Hard Drives
    Samsung SSD 990 PRO 1TB
    Keyboard
    CODE 104-Key Mechanical with Cherry MX Clears
    Antivirus
    Microsoft Defender
  • Operating System
    Linux Mint 21.2 (Cinnamon)
    Computer type
    PC/Desktop
    Manufacturer/Model
    Intel NUC8i5BEH
    CPU
    Intel Core i5-8259U CPU @ 2.30GHz
    Memory
    32 GB
    Graphics card(s)
    Iris Plus 655
    Keyboard
    CODE 104-Key Mechanical with Cherry MX Clears

My Computers

System One System Two

  • OS
    Win 11 Pro 24H2 26100.3194
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel® Core™ i7-14700F
    Motherboard
    ASUS TUF GAMING Z690-PLUS WIFI
    Memory
    G.SKILL Ripjaws S5 Series 64GB (2 x 32GB) DDR5
    Graphics Card(s)
    MSI GeForce RTX 3060 Ventus 2X 12GB OC
    Sound Card
    Sound Blaster AE-5 Plus
    Monitor(s) Displays
    ASUS TUF Gaming 27" 2K HDR Gaming
    Screen Resolution
    2560 x 1440
    Hard Drives
    Samsung 990 Pro 1TB NVMe (Win 11 24H2)
    SK hynix P41 500GB NVMe (Win 11 23H2)
    SK hynix P41 2TB NVMe (x3)
    Crucial P3 Plus 4TB
    PSU
    Corsair RM850x Shift
    Case
    Antec Dark Phantom DP502 FLUX
    Cooling
    Noctua NH-U12A chromax.black + 7 Phantek T-30's
    Keyboard
    Logitech MK 320
    Mouse
    Razer Basilisk V3
    Internet Speed
    350Mbs
    Browser
    Firefox
    Antivirus
    Winows Security
    Other Info
    Windows 11 23H2 22631.4890 (VHDX)
    On System One (Dual Boot)
  • Operating System
    Win 11 Pro 24H2 26100.3194
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel Core i7-11700F
    Motherboard
    Asus TUF Gaming Z590 Plus WiFi
    Memory
    64 GB DDR4
    Graphics card(s)
    EVGA GeForce RTX 3050 XC Black Gaming
    Sound Card
    SoundBlaster X-Fi Titanium
    Monitor(s) Displays
    Samsung F27T350
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 980 Pro 1TB
    Samsung 970 EVO Plus 2TB
    Samsung 870 EVO 500GB SSD
    PSU
    Corsair HX750
    Case
    Cougar MX330-G Window
    Cooling
    Hyper 212 EVO
    Internet Speed
    350Mbps
    Browser
    Firefox
    Antivirus
    Windows Security
Would UUP dump be able to supply a secure bootloader that complies with Secure Boot or never be able to obtain one with the necessary Microsoft signatures?
 

My Computer

System One

  • OS
    macOS Sequoia
    Computer type
    Laptop
    Manufacturer/Model
    Apple
    CPU
    M1 Max Apple Silicon
    Memory
    32 GB

My Computer

System One

  • OS
    macOS Sequoia
    Computer type
    Laptop
    Manufacturer/Model
    Apple
    CPU
    M1 Max Apple Silicon
    Memory
    32 GB
I am not going to risk it. I am now having Rufus “burn” the official 24H2 download to a USB drive. When the install is complete, I will stop and remove Windows Recall.
 

My Computer

System One

  • OS
    macOS Sequoia
    Computer type
    Laptop
    Manufacturer/Model
    Apple
    CPU
    M1 Max Apple Silicon
    Memory
    32 GB
Step 3c from the link:

1731020475212.png


Code:
[System.Text.Encoding]::ASCII.GetString((Get-SecureBootUEFI dbx).bytes) -match 'Microsoft Windows Production PCA 2011'
 

My Computers

System One System Two

  • OS
    Win 11 Pro 24H2 26100.3194
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel® Core™ i7-14700F
    Motherboard
    ASUS TUF GAMING Z690-PLUS WIFI
    Memory
    G.SKILL Ripjaws S5 Series 64GB (2 x 32GB) DDR5
    Graphics Card(s)
    MSI GeForce RTX 3060 Ventus 2X 12GB OC
    Sound Card
    Sound Blaster AE-5 Plus
    Monitor(s) Displays
    ASUS TUF Gaming 27" 2K HDR Gaming
    Screen Resolution
    2560 x 1440
    Hard Drives
    Samsung 990 Pro 1TB NVMe (Win 11 24H2)
    SK hynix P41 500GB NVMe (Win 11 23H2)
    SK hynix P41 2TB NVMe (x3)
    Crucial P3 Plus 4TB
    PSU
    Corsair RM850x Shift
    Case
    Antec Dark Phantom DP502 FLUX
    Cooling
    Noctua NH-U12A chromax.black + 7 Phantek T-30's
    Keyboard
    Logitech MK 320
    Mouse
    Razer Basilisk V3
    Internet Speed
    350Mbs
    Browser
    Firefox
    Antivirus
    Winows Security
    Other Info
    Windows 11 23H2 22631.4890 (VHDX)
    On System One (Dual Boot)
  • Operating System
    Win 11 Pro 24H2 26100.3194
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self Built
    CPU
    Intel Core i7-11700F
    Motherboard
    Asus TUF Gaming Z590 Plus WiFi
    Memory
    64 GB DDR4
    Graphics card(s)
    EVGA GeForce RTX 3050 XC Black Gaming
    Sound Card
    SoundBlaster X-Fi Titanium
    Monitor(s) Displays
    Samsung F27T350
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 980 Pro 1TB
    Samsung 970 EVO Plus 2TB
    Samsung 870 EVO 500GB SSD
    PSU
    Corsair HX750
    Case
    Cougar MX330-G Window
    Cooling
    Hyper 212 EVO
    Internet Speed
    350Mbps
    Browser
    Firefox
    Antivirus
    Windows Security
1. UUP dump works by first recreating a base (unpatched) Windows ISO, and then applying the downloaded KB updates so the final ISO matches the target build's version. Since the base 22H2/23H2 images have the original bootloader files, Rufus detects this discrepancy.

2. You can update the ConvertConfig.ini provided by UUP dump's ZIP, before running uup_download_windows.cmd:

Code:
[convert-UUP]
...
UpdtBootFiles=1
...

This will replace the ISO's default bootloader files with the ones included in the install image's LCU. Assuming you're pulling an image AFTER the bootloader change, then it should pass Rufus' test when the UUP dump script is finished.
 

My Computer

System One

  • OS
    Windows 7
I suspect that this has to do with the revocations related to BlackLotus. Since you are using Parallels, this would have to be addressed in the Parallels virtual space and it's bootloader.

I don't know this for 100% certainly, but that is what would make sense to me.

EDIT: After re-reading the original post and Garlin's post, I think I have this wrong. It's complaining about the loader on the ISO image, my reading comprehension stinks today :-)
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self-built
    CPU
    Intel i7 11700K
    Motherboard
    ASUS Prime Z590-A MB
    Memory
    64GB (Waiting for warranty replacement of another 64GB for 128GB total)
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 1TB NVMe SSD
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    3 x 512GB 2.5" SSD
    1 x 4TB 2.5" SSD
    5 x 8TB Seagate Barracuda HDD
    PSU
    Corsair HX850i
    Case
    Corsair iCUE RGB 5000X mid tower case
    Cooling
    Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Home Computer Specifications, Configuration, and Usage Notes General Specifications ASUS Prime Z590-A motherboard, serial number M1M0KC222467ARP Intel Core i7-11700K CPU (11th Gen Rocket Lake / LGA 1200 Socket) 128GB Crucial Ballistix RGB DDR4 3200 MHz DRAM (4 x 32GB) Corsair iCUE RGB 5000X mid tower case Noctua NH-D15 chromax.black CPU cooler Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Corsair LL-120 RGB Fans (Qty. 3)
    Keyboard
    Corsair K70 Max RGB Magnetic Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    The five 8TB drives and three 512GB SSDs are part of a DrivePool using StableBit DrivePool software. The three SSDs are devoted purely to caching for the 8TB drives. All of the important data is stored in triplicate so that I can withstand simultaneous failure of 2 disks.

    Networking: 2.5Gbps Ethernet and WiFi 6e
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
EDIT: After re-reading the original post and Garlin's post, I think I have this wrong. It's complaining about the loader on the ISO image, my reading comprehension stinks today :-)
I think, you are right.

Is your last name “Sehestedt,” or are you from Sehestedt? I had to look it up. It’s a village near Rendsburg, about 120 km north of Hamburg, where I grew up.
 

My Computer

System One

  • OS
    macOS Sequoia
    Computer type
    Laptop
    Manufacturer/Model
    Apple
    CPU
    M1 Max Apple Silicon
    Memory
    32 GB
I think, you are right.

Is your last name “Sehestedt,” or are you from Sehestedt? I had to look it up. It’s a village near Rendsburg, about 120 km north of Hamburg, where I grew up.
LOL. That is a very astute observation :-). My last name is Sehestedt (First name is Hannes), from Ludwigshafen am Rhein. Only lived there until I was one year old, then it was on to Brazil, and then at age 4 to the United States.

You are the first people whom I have ever known to point out that there is a Sehestedt, Germany. I'm impressed :-).

My parents were both from Hamburg.
 

My Computers

System One System Two

  • OS
    Win11 Pro 24H2
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self-built
    CPU
    Intel i7 11700K
    Motherboard
    ASUS Prime Z590-A MB
    Memory
    64GB (Waiting for warranty replacement of another 64GB for 128GB total)
    Graphics Card(s)
    No GPU - Built-in Intel Graphics
    Sound Card
    Integrated
    Monitor(s) Displays
    HP Envy 32
    Screen Resolution
    2560 x 1440
    Hard Drives
    1 x 1TB NVMe SSD
    1 x 2TB NVMe SSD
    1 x 4TB NVMe SSD
    3 x 512GB 2.5" SSD
    1 x 4TB 2.5" SSD
    5 x 8TB Seagate Barracuda HDD
    PSU
    Corsair HX850i
    Case
    Corsair iCUE RGB 5000X mid tower case
    Cooling
    Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Home Computer Specifications, Configuration, and Usage Notes General Specifications ASUS Prime Z590-A motherboard, serial number M1M0KC222467ARP Intel Core i7-11700K CPU (11th Gen Rocket Lake / LGA 1200 Socket) 128GB Crucial Ballistix RGB DDR4 3200 MHz DRAM (4 x 32GB) Corsair iCUE RGB 5000X mid tower case Noctua NH-D15 chromax.black CPU cooler Noctua NF-S12A chromax.black.swap case fans (Qty. 7) & Corsair LL-120 RGB Fans (Qty. 3)
    Keyboard
    Corsair K70 Max RGB Magnetic Keyboard
    Mouse
    Logitech MX Master 3
    Internet Speed
    1Gb Up / 1 Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    The five 8TB drives and three 512GB SSDs are part of a DrivePool using StableBit DrivePool software. The three SSDs are devoted purely to caching for the 8TB drives. All of the important data is stored in triplicate so that I can withstand simultaneous failure of 2 disks.

    Networking: 2.5Gbps Ethernet and WiFi 6e
  • Operating System
    Win11 Pro 23H2
    Computer type
    Laptop
    Manufacturer/Model
    Lenovo ThinkBook 13x Gen 2
    CPU
    Intel i7-1255U
    Memory
    16 GB
    Graphics card(s)
    Intel Iris Xe Graphics
    Sound Card
    Realtek® ALC3306-CG codec
    Monitor(s) Displays
    13.3-inch IPS Display
    Screen Resolution
    WQXGA (2560 x 1600)
    Hard Drives
    2 TB 4 x 4 NVMe SSD
    PSU
    USB-C / Thunderbolt 4 Power / Charging
    Mouse
    Buttonless Glass Precision Touchpad
    Keyboard
    Backlit, spill resistant keyboard
    Internet Speed
    1Gb Up / 1Gb Down
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    WiFi 6e / Bluetooth 5.1 / Facial Recognition / Fingerprint Sensor / ToF (Time of Flight) Human Presence Sensor
You are the first people whom I have ever known to point out that there is a Sehestedt, Germany. I'm impressed :-).
With European family names, especially German ones, the name can tell a story. “Stedt” is a northern German suffix on several names of localities. I would assume that it is a vowel-shifted version of Stadt, which is German for “town” or “city.” I am from Rahlstedt, a suburb within the boundaries of Hamburg, where the “Rahl” portion of the name refers to the creek running through it, the Rahlau.
 

My Computer

System One

  • OS
    macOS Sequoia
    Computer type
    Laptop
    Manufacturer/Model
    Apple
    CPU
    M1 Max Apple Silicon
    Memory
    32 GB
It is indeed a small world. Me, I came from under a rock, so nothing interesting to add...
 

My Computer

System One

  • OS
    Win 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    ABS
    CPU
    Intel(R) Core(TM) i5-10400F CPU @ 2.90GHz
    Motherboard
    ASUSTeK COMPUTER INC. PRIME B560M-A AC Rev 1.xx
    Memory
    Corsair VENGEANCE® LPX 32GB (2 x 16GB) DDR4 DRAM 3600MHz
    Graphics Card(s)
    MSI NVIDIA GeForce RTX 3060 Ti
    Sound Card
    Realtek Digital Output (Realtek(R) Audio)
    Monitor(s) Displays
    Viewsonic VS 2725 -2k 27"
    Screen Resolution
    1920X1080 60hz
    Hard Drives
    T-FORCE TM8FP800 1TB + a couple SATA SSDs
    PSU
    Gigabyte P650E
    Case
    DeepCool Matrexx 50 mid-tower
    Cooling
    a whole bunch of fans
    Keyboard
    generic
    Mouse
    Amazon Basic
    Internet Speed
    Starlink: speed varies
    Browser
    Brave
    Antivirus
    Windows Defender + Andy Ful's utilities
    Other Info
    An assortment of "land fill, obsolete" computers all running Linux Mint 22 (at the moment).
With European family names, especially German ones, the name can tell a story. “Stedt” is a northern German suffix on several names of localities. I would assume that it is a vowel-shifted version of Stadt, which is German for “town” or “city.” I am from Rahlstedt, a suburb within the boundaries of Hamburg, where the “Rahl” portion of the name refers to the creek running through it, the Rahlau.

Same root as the English word stead meaning place, for example homestead etc.
 

My Computers

System One System Two

  • OS
    Windows 11 Home 24H2 RP
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self-build
    CPU
    Intel I3-10100
    Motherboard
    MSI H410M-PRO
    Memory
    16 GB
    Graphics Card(s)
    Nvidia GT 1030
    Sound Card
    Motherboard default
    Monitor(s) Displays
    Philips 27 inch
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung EVO 970 NVMe SSD 256 Gb
    Samsung QVO 870 SATA SSD 2 Tb
    PSU
    ATX 450W
    Keyboard
    Logitech
    Mouse
    Logitech Wireless
    Internet Speed
    930 Mb down / 120 Mb up
    Browser
    Edge
    Antivirus
    Windows Defender
    Other Info
    Microsoft Office 2021 Plus
  • Operating System
    Windows 11 Home
    Computer type
    PC/Desktop
    Manufacturer/Model
    Self-build
    CPU
    Intel i3-8100
    Motherboard
    Gigabyte Z370 D3
    Memory
    16 Gb
    Graphics card(s)
    Nvidia GT 720
    Sound Card
    Motherboard default
    Monitor(s) Displays
    Philips 27-inch
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung 960 NVMe SSD 256 Gb
    Seagate 2 Tb HDD
    PSU
    ATX 450W
    Mouse
    Logitech Wireless
    Keyboard
    Microsoft
    Internet Speed
    930 Mb down / 120 Mb up
    Browser
    Edge
    Antivirus
    Windows Defender

Latest Support Threads

Back
Top Bottom