hack.sale
RU EN

Portal

Portal Permanent HWID Spoofer: Full Installation Guide

This page walks you through the full Portal Permanent HWID Spoofer setup, from reinstalling Windows and reflashing BIOS to spoofing TPM, changing the MAC address and cleaning up device traces. Work through it in order and you will finish with a spoofed machine ready for your games.

Read this first

  • Follow every step of this guide without skipping any — each one matters for a successful spoof.
  • The spoof is performed only once: every client gets an individual build, and a repeated attempt resets the spoof and restores the ban.
  • Before installing Windows, make sure TPM, fTPM and all similar features are disabled in BIOS.
  • Before reflashing the BIOS, make sure no anti-cheats are installed (Vanguard, EAC, BattlEye, Ricochet).
  • Do NOT install any games until the spoof is complete.
  • Play with a VPN for the first week — skipping this step may result in a re-ban.

What to Expect After Purchase

  1. You receive the spoofer files and a license key.
  2. You perform the entire installation yourself, following this guide.
  3. Set aside roughly 30–40 minutes for the process.
  4. Prepare a USB drive of 8 GB or more.
  5. Plan for a full Windows reinstallation.

If anything is unclear at any stage, contact support.

Step 1. Preparation — Windows Reinstallation

  1. Download the Windows image: Windows 10 Pro 20H1 – 22H2 by Ghost Spectre — https://somov.org/ghost-spectre/
  2. During setup, delete and format ALL drives completely, then recreate them.
  3. Pick the Windows 10 Superlite installation (without +def).

Step 2. BIOS Reflash

Reflashing to one of the older BIOS versions available for your motherboard is recommended. Video guides by vendor: ASUS — https://youtu.be/Em7SRaG3L_0; ASRock — https://youtu.be/dUCWRqOdLUw; Gigabyte — https://youtu.be/DIIde3s02kM; Lenovo — https://youtu.be/AwOax1uWgYc; MSI — https://youtu.be/sKMub20CUNI

  1. Confirm that no anti-cheats are installed (Vanguard, EAC, BattlEye, Ricochet).
  2. Reflash the BIOS using the video guide for your motherboard brand.
  3. How to verify: open System Information (msinfo32) — the BIOS version and date should have changed.

Step 3. BIOS Configuration

Disable TPM using the video for your board: ASUS — https://streamable.com/sicp16 (Intel 00:00, AMD 01:20); MSI — https://streamable.com/n7q3dk (Intel 00:00, AMD 01:05); ASRock — https://streamable.com/ec8u3s (Intel 00:00, AMD 01:35); Gigabyte — https://streamable.com/1qhn35 (Intel 00:00, AMD 01:50). Disable Secure Boot using: ASUS — https://www.youtube.com/watch?v=tnOHi0w77bU; MSI — https://www.youtube.com/watch?v=LbeCV9NL5ls; ASRock — https://www.youtube.com/watch?v=v-34aIjbtvo; Gigabyte — https://www.youtube.com/watch?v=-713dbChxRA

  1. Disable TPM in BIOS following the video for your motherboard.
  2. Disable Secure Boot in BIOS following the video for your motherboard.
  3. Once BIOS is configured, install drivers and applications if you wish (NVIDIA GeForce Experience, Discord, and so on).

Until the spoof is finished, do NOT install any games.

Step 4. HWID Spoofing

Part 1 — first pass with the USB drive.

  1. Open the PORTAL SPOOF → ONE STEPS folder and copy everything from it to the USB drive.
  2. Enter BIOS.
  3. Disable Flash Write Protect (the option name may differ on your board).
  4. Save the settings and restart BIOS.
  5. Boot from the USB drive.
  6. Let the startup.nsh process finish.
  7. Reboot the computer.
  8. Part 2: open PORTAL SPOOF → TWO STEPS.
  9. Repeat ALL actions from Part 1 with these files.
  10. Boot into Windows and confirm that TPM 2.0 and Secure Boot are disabled.
  11. Open PORTAL UEFI → ONE STEPS and keep pressing Enter until the program closes.

Part 3 — for Valorant, Delta Force and ABI. These games need a full spoof with a mandatory TPM bypass: contact support to complete this step.

Step 5. TPM Spoofing (if required)

First prepare the ISO, then clear the TPM, then run the spoofer and compare the result.

  1. Download Ventoy from https://www.ventoy.net/ and install it onto a USB drive of 8 GB or more.
  2. Download the TPM Spoofer image for your CPU: AMD — https://drive.google.com/file/d/1spYnXJRBzB8Urbcn_MDo11W_35UUWW5p/view ; Intel — https://drive.google.com/file/d/1FId8WOSvvqVcS3nOMfqcHoYxxccmt43H/view
  3. Copy the image onto the Ventoy USB drive.
  4. Open PowerShell as administrator and run: Get-TpmEndorsementKeyInfo -HashAlgorithm Sha256
  5. Save the PublicKeyHash value in Notepad so you can compare it later.
  6. Press Win + R, type tpm.msc, choose Clear TPM and confirm.
  7. Agree to the restart when the system asks for it.
  8. During the restart, enter BIOS, disable Secure Boot and set the USB drive as the first boot device.
  9. Save and exit with F10.
  10. On the Ventoy screen, select the image and press Enter.
  11. Select Boot in normal mode.
  12. Select Compatibility mode — this is mandatory.
  13. Wait for the environment to load and press nothing meanwhile.
  14. Press OK when the no-network message appears.
  15. Select Yes in the Retry menu.
  16. Enter the license key and press OK.
  17. Wait for the TPM Setup Successful message.

After the success message, press Enter, wait 1–2 seconds and remove the USB drive.

Verifying the TPM Result

  1. In Windows, press Win + R and run tpm.msc. If Prepare TPM is available, complete it.
  2. Open PowerShell as administrator and run: Get-TpmEndorsementKeyInfo -HashAlgorithm Sha256
  3. Compare the PublicKeyHash with the value you saved earlier. Different values mean the TPM spoof worked.

Step 6. MAC Address and IP Change

  1. Install TMACv6.0.7.
  2. Select the Ethernet adapter.
  3. Click Random MAC Address, then Change Now!
  4. Do the same for Ethernet 2 if that adapter exists.
  5. Disable Wi-Fi and Bluetooth modules.
  6. Confirm that the IP address has changed.

Step 7. Final Configuration

Remove network flags, then clean up leftover devices.

  1. Run "1 - Disabler [Run Admin].bat" as administrator.
  2. Type 5 (Disable BOTH WiFi & Bluetooth) and press Enter.
  3. Run "2 - DeviceCleanup [Run Admin].exe" as administrator.
  4. Choose Devices → Select All, then Devices → Remove Selected.
  5. Open Device Manager and check that the list is cleaned.

If Wi-Fi or WAN Miniport adapters remain, disable each one manually (right-click → Disable device) and run the cleanup again.

Step 8. Completion

  1. Restart the computer.
  2. Download your games (Valorant, Fortnite, Rust, Apex, and so on).
  3. Check in BIOS that SecureBoot and TPM 2.0 are still disabled.
  4. Test for a ban by playing a few matches — for Valorant, 1–2 unranked games.

Congratulations — if several games went through without problems, the hardware ban has been lifted.

Troubleshooting

Common issues and what they mean.

  1. TPM won't disable: press Win + R and run tpm.msc. The message "Compatible TPM cannot be found" means TPM is disabled.
  2. Secure Boot won't disable: press Win + R, run msinfo32 and look at "Secure Boot State". "Off" means it is disabled; "On" means you still need to turn it off in BIOS.
  3. MAC address didn't change: disable the Bluetooth and Wi-Fi modules in Device Manager, then repeat the MAC change in TMAC.
  4. USB drive won't boot in BIOS: make sure the drive is set as the first boot device under Boot / Boot Options.
  5. Error during TPM spoofing (no network): this is expected. Press OK, then choose Yes in the Retry menu. If that fails, unplug and reconnect the Ethernet cable and try Yes again.
  6. Get-TpmEndorsementKeyInfo returns an error: this can be normal after spoofing — if no hash is shown, the TPM was cleared correctly.
  7. Other issues: contact support on the website (chat in the bottom right corner) or via Telegram.

FAQ

How long does the installation take and what do I need?
Plan for about 30–40 minutes. You need a USB drive of 8 GB or more, the spoofer files and license key you received after purchase, and you must be ready for a full Windows reinstallation. The whole process is done by you, following this guide.
Can I run the spoof a second time?
No. The spoof is performed only once, because each client receives an individual build. A repeated attempt will reset the spoof and restore the ban. If something goes wrong, contact support instead of retrying on your own.
Which Windows image should I install?
Use Windows 10 Pro 20H1 – 22H2 by Ghost Spectre from https://somov.org/ghost-spectre/ . During setup, delete and format ALL drives and recreate them, then select the Windows 10 Superlite installation (without +def).
When do I need the TPM spoofing step?
TPM spoofing is done when required by your situation, and Valorant, Delta Force and ABI need a full spoof with a mandatory TPM bypass. For that part, contact support. The TPM spoofer images are provided separately for AMD and Intel processors and are launched from a Ventoy USB drive.
How do I know the TPM spoof actually worked?
Before clearing the TPM, run Get-TpmEndorsementKeyInfo -HashAlgorithm Sha256 in an administrator PowerShell and save the PublicKeyHash. After the spoof, open tpm.msc, complete Prepare TPM if it is offered, then run the same command again and compare the hashes. Different values mean the spoof was successful. If the command errors out and no hash is shown, that can also be normal — it means the TPM was cleared.
The TPM spoofer reports no network — is that a problem?
No, that behaviour is expected. Press OK and then choose Yes in the Retry menu. If it still does not continue, disconnect and reconnect the Ethernet cable and select Yes again.

Applies to

← All guides