TPM 2.0 Not Enabled crashes after 4 minutes of playing
Hey all,
I bought a tpm module for my mate so he could continue playing valorant, and by continue i mean that he has been playing valorant for the past 5 years and i have absolutely no clue how when he's never had tpm. Anyway, we are running into some issues trying to get it to work, i've gone through the vanguard restrictions list and the only one that i cant get to work is the "Enable HVCI/VBS Memory Integrity (Core Isolation)". But myself and about 4 others i have asked don't have Core isolation on and vanguard works fine? Below ill run through the order of how we did things.
-Firstly he installed his tpm, he then needed to enable it but his OS Drive was formatted as MBR and the BIOS Boot Mode was Legacy, so we used the windows MBR2GPT.exe program to convert the drive.
-We then went into bios to switch to UEFI mode.
Now this may be important but there was another friend trying to help him before i arrived and i am unsure whether they changed any secure boot settings before we switched to EUFI
At this point i ran through the vanguard restriction check list
-Used tpm.msc to check the status and it was running
-Checked Bios settings,
UEFI was on
Secure Boot was enabled
Under Trusted Computing, TPM 2.0 EUFI Spec Version is TCG_2 and the Physical Presence Spec Version is Version 1.2(I think)
There is no Advanced\PCH-FW Configuration setting so we cannot enable PTT
-Enable IOMMU, booted into bios, under Advanced\CPU Configuration, changed Intel Virtualization Technology to Enabled and under Advanced\System Agent (SA) Configuration, turned VT-d to Enabled
-Try to enable Core Isolation, Incompatible drivers (like 15 of them), we ended up removing all but 2 before we ended the tech-sesh (i plan to finish helping him with this later)
We did this about 12 hours ago, i just woke up and i don't remember if there was the Control Iommu Pre-boot Behavior setting
Now i made him do a bunch of probably useless changing to his pc
-Changed him from Windows 10 Home to Windows 10 Pro
-sfc /scannow; DISM /Online /Cleanup-Image /ScanHealth; DISM /Online /Cleanup-Image /RestoreHealth; DISM /Online /Cleanup-Image /StartComponentCleanup
-Used the Group Policy Editor to enable Credential Guard under the policy path Computer Configuration\Administrative Templates\System\Device Guard with default configuration
-Opened Windows Features and installed Hyper-V
-Uninstalled Vanguard using Revo Uninstaller and then re installed (still crashed)
-Downloaded PC Health Check to attempt to upgrade him to windows 11, processor not supported
-Attempted to use Jacobnicked's Bypass-Windows-11-Requirements on GitHub (didn't work)
-Used dism /online /get-drivers /format:table in CMD to attempt to find the incompatible drivers (couldn't find them)
Under system information
-Bios Mode: UEFI
-Secure Boot State: On
-Kernel DMA Protection: Off
-Virtualization Based Security: Running
-A Hypervisor has been detected. Features Required for Hyper-V will not be displayed
At this point we were all tired his pc was functional so we called it a night, i was left with three ideas of what to do
-Remove all incompatible drivers and try turn core isolation on
-Update his BIOS version (i'm not that comfortable doing this not in person)
-Continue trying to bypass the CPU requirements and update him to Windows 11
-Figure out how to enable DMA Protection
List of Hardware
Win 10 Pro version 10.0.19045 build 19045
Motherboard: Asus Rog Maximus VIII Ranger
BIOS: Version 3007
TPM: XUMIUZIY TPM 2.0 Module LPC Interface 14pin 7/8.1/10 Compatible
CPU: i5 6600k
GPU: 1060
Riot ID: Winnie#911
Tracker: https://tracker.gg/valorant/profile/riot/Winnie%23911/overview
237 Replies
will update Hardware information soon when i can get the info from him any questions please just @ me
External dtpm chips are not supported
Can you give a quick tldr
Is he on win 10 or 11?
win10
ill add that to main post
Did he get the restriction to enable TPM before installing the tpm?
yes but has played previously for the past 4-5 years without the tpm and no issues
Hmm did he share the account with anyone? Or played on a different PC?
yes he plays on two pc's
I’m assuming that PC does have firmware TPM?
i assume so but i will get back to you shortly let me ask him
These restrictions are account based, if an account logs on and plays on a pc that does have those settings, that acc gets flagged sort of, so if he then tries to play on a pc that doesn’t have it, he’ll get the restriction.
his other pc has a b450 tomahawk max and a ryzen 3600x, so yes it has a firmware tpm
and i updated main post with the cpu and gpu of the pc with the issue
I am the second person trying to help. I ran the GitHub program why not w11 before I got off last night and only incompatibility is his cpu
I found a cpu bypass so hopefully we can upgrade to w11 tonight for him
This is NOT his picture

Only cpu comparability is red
Since of 6th gen intel cpu
I don't think he knew what TPM was until the error message came up. Not sure why valorant vanguard didn't push him out until now... So are you saying he is hwid ban?
Because Vanguard didnt work?
It’s like, when you play on a pc that has tpm 2.0 enabled, your acc is flagged as “tpm capable” right, so when you try to play on a pc that doesn’t have it, it auto pops up the restriction, seen lots of similar cases before.
That would not be a good idea, the error would still persist, especially in win11
i thought tpm was required for vanguard anyway, odd if theres a tpm capable flag and that you are able to play valorant without a tpm, but as soon as ur account plays on a machine with tpm it then only allows you to play on a tpm machine
like say someone doesnt have tpm but has been playing valorant, then they play on lan and when they get back to their pc they just cant play the game anyway without upgrading hardware


From what I understand is, these restrictions last for 30 days, so it’s possible, after 30 days, it will just go away as long as they stay on windows 10z
If they upgrade to win11, it mandates firmware tpm2.0
But their system doesn’t have it
okay ill take this info into consideration thanks
whats the 2nd image in reference to, what restriction cant gamerdoc remove and what is default enforced on windows 11? if you can get that info/know that info
The TPM 2.0 restriction
That post was specific to secure boot, but it’s same for TPM as well, on windows 11 they both are required
yep thank you for the info
commenting to update post so maybe some staff could see
So External dTPM chips are not supported?
He didn't get the restriction before installing the dTPM
Has a second pc at other parents house which has a firmware TPM
On windows 10, wont update to win11 as it mandates firmware TPM2.0
@ItsGamerDoc if you have time could you take a look at my case?
If you are restricted by the VAN:Restriction box, that's when we enforce fTPM over dTPM.
If you are just upgrading to Windows 11 or enabling VBS without TPM, you can use any TPM it doesn't matter if it's dTPM or fTPM.
So if they upgrade to win11 they should be able to use dTPM? :val_SusgeNoted:
if they are not VAN:Restricted yes
alright thanks for clarifying, we will try upgrading updating bios, then upgrading to windows 11
You don't need to be Win 11
just so you are aware
this works for both win 10 and 11
yeah but we are having issues figuring out why his game keeps crashing saying tpm 2.0 isnt enabled
whats his mobo name
Asus Rog Maximus VIII Ranger
he doesnt have Advanced\PCH-FW Configuration in his mobo so we cant enable PTT and we cant enable core isolation either
do u have dtpm enabled?
yep under tpm.msc status says its running
Win-Raid Forum
Asus Z170 ROG Maximus VIII Ranger PTT Enable
Hello, ive tried to enable PTT on my Asus ROG Maximus VIII Ranger with this guide: https://www.reddit.com/r/ASUS/comments/owbuf3/how_to_enable_intel_ptt_on_asus_z170a_motherboard/ But the value isn´t saving when rebboting. Ive tried to modify the Bios itself but i cant figure out how. I have an Hardware Flasher to Flash all regions. Can someo...
maybe a hardware issue?
we were thinking that, we were going to try update the bios to see if PCH-FW would appear because a lot of posts say its "hidden"
lmao
i would make a support ticket to asus
we also do have the core isolation option available to turn on we just need to resolve incompatible drivers
which are being difficult to find
just reinstall OS
^
fastest solution
dont even try finding it thats a hell in its own
or
u can use this tool but no gurantee it will work https://www.voidtools.com/
id recommend reinstalling ur OS
And you get a fresh new cuddly windows install. And then they shove ads down your throat FUN
:ThumbsUp:
we love bloatware
alright we will reinstall the os when he is available, bc doing a bios hack is scary XD
It gets fun when you have to try soldering. Who doesn't love that :happypanda:
yea bloatware is all time high
i usually always reinstall with new ISO and minimize any undeeded drivers or software
I believe Rufus allows you to bypass the Microsoft Account requirement without needing to go through the cmd
oobe\bypassnro
they fixed it in 24h2
WHAT
unless it got bypasses again
the bloatware in question
they really forcing the whole microsoft accounts lately
oh damn we were thinking of using rufus
even on win 10 if u wanna maintain the sec updates u gotta login into an ms acc
u dont need win 11 bro
win 11 isnt gonna fix it
its a hardware issue if u cant enable tpm 2.0
not software
2026 gonna be the year of Linux trust
cope
using refus to reinstall the os
:COPIUM:
yea u can use that
ull be fine
i use refus myself daily on my hackbox machines
tpm 2.0 is enabled multiple places in windows says it is, its just vanguard that says it isnt
its probably cuz it asks for ftpm
u have dtpm enabled
have you tried just removing the chip
I haven't really read this thread
no that wont solve it
his mobo just doesnt wanna enable ftpm
even tho it has it xD
all the info is in the og post
no we havent HAHA
Got it let me, do some of my godly googling. I do remember a situation like this but I just don't remember how we fixed it
Under Trusted Computing, TPM 2.0 EUFI Spec Version is TCG_2 and the Physical Presence Spec Version is Version 1.2(I think)
in the main post i have thisI was told by engineer
so the bios recognizes that a tpm is installed
u were told to wait until we make an update
just wait until then bro
alright, i'll tell him t not change anything and we will wait
i would still
update bios
and reinstall OS
alright will do
them incompat drivers are spooky to have on ur system
wait that's actually cute
time to make a valorant version
Also good luck!
💀
we got some things planned to do something similar
Hey man it's a good idea. but trying to get strangers to run any software is more difficult than I would like it to be
nothing concrete yet
especially 'cause i'm not gonna pay for microsoft's dumb ass license to have the done thing verified
but hopefully it makes it easier
isn't it like $200 a year
its free now
all u need to do is have a MS account
:Stare:
:D
they backtracked
finally people won't ask me if i'm trying to scam them
like no bro i'm just trying to give cool software 😭
ur referring to the win 10 support right
Yeah
yea its free now only if u have a MS account logged in for continued support
graveyard is a powershell line of code away from free support no? lol
if ur AMD zen4+ u should deffo go win 11 for FPS boost but if ur intel and dont like win 11 win 10 will do fine
they will never make me login
yea again is only if u care about securing ur system
wasn't the security end of life supposed to be in October of this year
i usually never do any banking on my main pc since i run lots of games on it etc i usually do all my critical shit on secure laptop or my phone for banking
oct 24th i think?
then u need to login ms acc for continued supports

ye 3 more years only if u login to ms account
you can also get those server OS for like 5 more years
feature updates, security support, extended security support, version
dont recommend
slows ur shit down
i agree with you, but desperate times desperate blah blah no?
~ how angry will vanguard get if I place an overlay over top of valorant :ThumbsUp: ~
Fedora support when?
linux support will not happen with how many distros there are
^
anyway Arch is better
too much gaps bro its impossible
:L
just force everyone on Arch and make themself hate themselves
cuz u have to understand we are defending ourselves from within what u can do on your PC
The Microsoft threat scope was not designed for how someone could use their own PC to read or write their own memory xd
is that the actual problem? Linux is just too broad?
yes too broad too many scopes
someone needs to make a gaming based distro man
its too much surface area to cover and engineering talent pool for anti cheat is very niche not a lot of people understand deep level kernel shit
Steam OS?
heck, infosec/whitehats have kali and parrot lol
I mean they basically doubled the people playing on linux
some day that could be the OS for gamers
just not there yet but i got hopes for it
does kernal work on linux same way as windows? funny enough im actually doing low level rn at uni
idk bro not an engineer
fair enough, Windows I know have two main rings, 0 and 3. 3 is OS level and 0 is kernal.
Vanguard starts at the transitior atom level who needs ring 0
quick question gamerdoc
cra0 from csgo , a cheat developer once said, whatever loads first runs the cheat race. the drivers i mean, at least for faceit
Somewhat, they have the same concept just different architecture / philosophy
sup
the post got instant deleted
ggs
i can read it
pastebin it?
oh
i got discord logs enabled
^
nerd 😄
alright easy
try updating intel ME
see if that works lol
will do lmao
maybe thats what it was cuz usually bios update updates intel ME
maybe the older boards dont?
and i assume an anticheat would have more of a rough time with Linux since how the superuser shit works?
Version 3007 - Asus Rog Maximus VIII Ranger
also an older bios
update bios + intel ME
see what happens
its so werid though Winnie could play valorant for years until recently
i think it could be that honestly
i assume there was like a big update or massive coincidence? lol. tpm detection i mean
Restrictions happen cuz of anomalies or certain config behaviours + reports
it was a comment under an archived win-raid forum post
so he got slammed by restrictions
restrictions serve as a wide net cheat breaker without needing to ban
we could be like we cant use x detection cuz too many innocents so instead lets use restrictions to break x cheat method
does that make sense?
honestly a really good system
ye it was me and some engineers idea to tackle the ecosystem from back in 2022
i do hate how the anticheat just sits in your system when you're not playing but you look at cs2, its a pick your posion
there is a world where we dont need to be on start anymore
with TPM/SB/HVCI/IOMMU
Yeah, I would assume so considering Root. but I don't really know many AC's, and how they work on windows compared to another operating system
agreed i dont like how invasive these anticheats are becoming but id much prefer a game with no cheaters XDD
if u guys are curious
here is more info on it https://patents.google.com/patent/WO2021207407A1/en
WO2021207407A1 - Systems and methods for anti-cheat detection
...
Embodiments of the present disclosure provide systems, methods, and computer storage media directed to anti-cheat detection in online multiplayer video games. An anti-cheat kernel driver adapted to validate and secure a system state of a gaming device is loaded during a booting process of the gaming device. The loaded anti-cheat kernel dri...
Bro just casually has a patent
like not doubting you, but like, what info does the AC actually collect? my friend had a feeling the game assumes the gender of a person. and tries to put at least one girl in a game. not in a bad way, but it always seems that there are 1 girl at least on each game. that could happen because of data collection no? social media does it
:val_Heh:
:KEKW: what are you on brother
bruh what are you saying
Most of that matchmaking is server side actually almost all of it is server side
whats that gotta do with anti cheat 😭
i think hes cooking with this theory /j
thats what im saying, if it was running 24/7, why could it not do extra shit?
but I mean sure it's just a waste of time in my opinion :/
we only care about whats going on within the game memory if its being read or written externally or internally
btw not my theory
to make it simple
anti cheat is same as anti virus
but ours is more focused on protecting the game memory
so we do shit like this https://reversing.info/posts/guardedregions/
Xyrem Engineering
In-depth analysis on Valorant's Guarded Regions
In this post, we will analyze how Vanguard attempts to keep away bad actors by utilizing a simple yet brutally strong method
yeah I remember reading that
:noted:
that's what got me into ac's
no, i get you, I've looked into cheats way back in 2016 when i was a little idiot. Like I said, if your sys file/driver runs before lets say faceit anticheat, you can write protections to bypass the anticheat. same with antivirus with rootkits
TL;DR'd it

It is a really interesting read
well I mean if you're a nerd soooooo
i think we are the only AC in the industry that actually build tech like this
this is a very old one tho
damn ill read this after my uni stuff rn
it lasted like 2 years before it was fully figured out
those first two years were pure bliss
now oce is just riddled with ahk triggerbot
we got bunch of other shit 💀
what are the percentages of false detections? Its valves stupid reason to not Ring0 their anticheat
triggerbots we slammed them last year
our dublin engineers COOKED
i havent played much in 8ish months
but huge W
also, when is demo downloadable :x
idk bro
he wouldnt have anything to do with the demo system
i work for AC
idk why they release it but no download hahaha
am I missing something what the hell is the demo
replay system
valorant now has demo system
even though bo1 had it in 2010
😄
is it not already?
I mean people already made Python scripts to share match replays
i do appreciate the 1 second downloads. valve takes 5 mins
no share that im aware of
i would like to watch pro demos
how i learn cs
ah
you can prob wireshark it tbh
with enough of the community asking for it, it will come eventually
but it should just be a button
don't vanguard really no like van 29
i think val will build upon their replays https://x.com/RiotNu/status/1968817387500900376
Riot Nu (Marcus Reid) (@RiotNu)
Hey, everyone! Stopping by to say hello. We’re so happy to put the Replay system in your hands and we’ve loved seeing all the clips, memes, and studies you’ve been making with the tool so far. Our FYP’s have never been so full of VAL! It’s been inspiring to see and we’re watching
X
pretty sure they know most feedbacks
never tried using wireshark with valorant haha, i assume vanguard would have a fit
i dont see why we would
yeah I had my debugger open when my friend wanted to play.
oh no xD
ban or just block?
if you try to route through a proxy and decrypt the traffic
real quick i watched a demo last night and was sus of someone, is there another way to report someone other than just the ingame report system, because i do think he was cheating
You get
van 29
ah ok
nah ingame is best
i want people to use em
ahh van is a error code, i only got 30 hours in valorant mb
👍
I remember back in the day, you could use wireshark to download Overwatch cases from csgo. good times. you can see who was cheating and their real accounts
dismay if u want to learn this space more or want to further advance your skills i recommend Reversing cheats and anti cheats and expanding ur knowledge there good place to start https://guidedhacking.com/
thanks. Ive been doing some on old 2009 MW2
👍
FPS unlocker and stuff
been reading the dinosaur book too haha
Operating System Concepts
by Abraham Silberschatz
what would be the pathway for a job in the AC team? @ItsGamerDoc
damn nice. thanks

should be fixed now @Curvezy
Thank you !
nvm gg
my days of val are over
it's back to cs i guess,
cheater central
What happened :val_HUH:
same pop up for tpm2.0 not enabled
Can you run the game and show the exact error he’s getting
Also show tpm.msc page
We have been working with him to fix some issues. May have identified a kernal level androidAFDx64 driver that could be related to the issue, got him to run some admin cmd commands to stop it upon boot - was created on his pc around over a week ago (similar timing of the issue). Will update if this goes anywhere.
New update - my keyboard and mouse dont connect to the Windows os no more. I CANT EVEN CS 😭 😭😭
try again, an update should be out
ill test it rn
when gamerdoc said it was fixed it also still gave me the pop up
ill retry it rn
nope still have the popup
the update is for Maximus VIII Ranger specifically
@xen what's your motherboard, run msinfo32 and send a screenshot
https://discord.com/channels/679875946597056683/1418944605881106462
already made a post, i cant play and i gotta wait for a vanguard update
ASRock, CML-HDV/M.2 TPM R2.0
oic
@xen what's your riot id?
times#764
ok I'll let you know when the update is up
alr ty
ok it should be fixed for you, can you give it a try again?
hello, sorry for the late response, i was busy
im going to retry it rn
10 minutes and nothing so far, i think its fixed, ty
np
Solution
Solved :ThumbsUp:
quick update, his usb ports stopped working and only an old ps/2 keyboard worked, and then trying too fix this issue by trying to fix faulty drivers, the pc kept booting up into BOSD, so in the winre cmd i tried doing a crap ton of stuff, when i tried sfc and dism they just wouldnt work eventually found out he has corrupted registry keys aswell and theres no way to fix it so i got him an external HDD to transfer important data then im wiping the drive
REAL HE BOUGHT IT FOR ME
WHAT A KING
alright we wiped the drive installed os from a really old official microsoft usb, and we had a lot of issues again with bsod's and nvlddmkm, after troubleshooting a bit i made him install windows 10 22H2 and all our issues were solved so idk, also windows updates on the old os (i think it was 1607) wasnt auto updating to any higher version so a lot of fuck around but on this new os he can play val and drivers are working so yippie
ill keep it tagged as solved thanks for everyones help