TPM errors


Nicolaas_5

Member
Local time
2:19 PM
Posts
6
OS
window 11 home
All my best wishes for 2026.

I Have 2 TPM-WMI related errors, ID 1040 and ID 1801

1040 is logged at 02-01-26 time 11:28:43 and 1801 01-01-26 time 11.33.40
There are no other errors.
I have tried to solve these error, but failed in doing so, lack of knowledge on my side,

System specs are

Mobo Gigabyte Technology Co., Ltd.
Model A520M S2H
Type x64-based PC (Windows 11)
System-SKU Default string
Processor AMD Ryzen 5 5500, 3600 MHz, 6 core('s), 12 processor(s)
BIOS-version/date American Megatrends International, LLC. F19b, 11-07-24
SMBIOS-version 3.3
BIOS-modus UEFI

I have tried to update the bios, but that also failed, Q-Flash does not read the extracted file F20.
(USB plugged in the main usb and it is 32 bits)

Error text ID1040
Pre-attestation health checks confirm a critical component has failed, and the device is not expected to pass attestation.
Please see C:\windows\Logs\MeasuredBoot\0000001088-0000000000.json for detailed information on what checks were made.

Error ID 1801
Secure Boot certificates have been updated but are not yet applied to the device firmware. Review the published guidance to complete the update and ensure full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Gigabyte Technology Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:F19b;OEMModelNumber:A520M S2H;OEMModelBaseBoard:A520M S2H;OEMModelSystemFamily:A520 MB;OEMManufacturerName:Gigabyte Technology Co., Ltd.;OEMModelSKU:Default string;OSArchitecture:amd64;
BucketId: 9900253ba26d3f5381232306140b69309365e5c180f5bb6f27dc5c4e9e5af00c
BucketConfidenceLevel:
UpdateType:
For more information, please see Windows Secure Boot certificate expiration and CA updates - Microsoft Support.

I have no idea if this situation is a problem and how to solve those errors.
Thanks in advance
Nicolaas
 

My Computer

System One

  • OS
    window 11 home
    Computer type
    PC/Desktop
    Manufacturer/Model
    Shop Made
    CPU
    AMD Ryzen 5 5500
    Motherboard
    Gigabite A520M S2H
    Memory
    16 GB
    Graphics Card(s)
    Nvidia geforce GTX 1060 6 gb

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    HP Pavilion
    CPU
    AMD Ryzen 7 5700G
    Motherboard
    Erica6
    Memory
    Micron Technology DDR4-3200 16GB
    Graphics Card(s)
    NVIDIA GeForce RTX 3060
    Sound Card
    Realtek ALC671
    Monitor(s) Displays
    Samsung SyncMaster U28E590
    Screen Resolution
    3840 x 2160
    Hard Drives
    SAMSUNG MZVLQ1T0HALB-000H1
Thanks Freebooter. :-)
 

My Computer

System One

  • OS
    window 11 home
    Computer type
    PC/Desktop
    Manufacturer/Model
    Shop Made
    CPU
    AMD Ryzen 5 5500
    Motherboard
    Gigabite A520M S2H
    Memory
    16 GB
    Graphics Card(s)
    Nvidia geforce GTX 1060 6 gb
All my best wishes for 2026.

I Have 2 TPM-WMI related errors, ID 1040 and ID 1801

1040 is logged at 02-01-26 time 11:28:43 and 1801 01-01-26 time 11.33.40
There are no other errors.
I have tried to solve these error, but failed in doing so, lack of knowledge on my side,

System specs are

Mobo Gigabyte Technology Co., Ltd.
Model A520M S2H
Type x64-based PC (Windows 11)
System-SKU Default string
Processor AMD Ryzen 5 5500, 3600 MHz, 6 core('s), 12 processor(s)
BIOS-version/date American Megatrends International, LLC. F19b, 11-07-24
SMBIOS-version 3.3
BIOS-modus UEFI

I have tried to update the bios, but that also failed, Q-Flash does not read the extracted file F20.
(USB plugged in the main usb and it is 32 bits)

Error text ID1040
Pre-attestation health checks confirm a critical component has failed, and the device is not expected to pass attestation.
Please see C:\windows\Logs\MeasuredBoot\0000001088-0000000000.json for detailed information on what checks were made.

Error ID 1801
Secure Boot certificates have been updated but are not yet applied to the device firmware. Review the published guidance to complete the update and ensure full protection. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Gigabyte Technology Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:F19b;OEMModelNumber:A520M S2H;OEMModelBaseBoard:A520M S2H;OEMModelSystemFamily:A520 MB;OEMManufacturerName:Gigabyte Technology Co., Ltd.;OEMModelSKU:Default string;OSArchitecture:amd64;
BucketId: 9900253ba26d3f5381232306140b69309365e5c180f5bb6f27dc5c4e9e5af00c
BucketConfidenceLevel:
UpdateType:
For more information, please see Windows Secure Boot certificate expiration and CA updates - Microsoft Support.

I have no idea if this situation is a problem and how to solve those errors.
Thanks in advance
Nicolaas
These events do not indicate a faulty TPM or a broken Windows installation. What you are seeing is a combination of firmware-level attestation information and Secure Boot certificate lifecycle changes introduced by Microsoft.


Event ID 1040 (TPM-WMI / Measured Boot)​


This event means that Windows performed a Measured Boot health check and determined that the system does not fully meet the latest device attestation requirements.
This does not affect normal operation, performance, or stability.


Measured Boot attestation is primarily used in enterprise scenarios (Device Health Attestation, Intune, BitLocker Network Unlock). On a home Windows 11 system, this event is informational only and can safely be ignored.


The referenced JSON log simply documents which firmware measurements did not match current attestation expectations; it does not imply hardware failure.




Event ID 1801 (Secure Boot certificates not yet applied)​


This event is related to Microsoft’s Secure Boot CA certificate updates (2024–2025).
Windows has successfully updated the certificates at the OS level, but the firmware has not yet imported them.


This is common on systems running:


  • older BIOS versions
  • beta BIOS builds (such as F19b)
  • firmware that does not automatically apply new Secure Boot certificates

Important clarification:


  • Secure Boot is still active
  • the system is not less secure
  • this is a firmware synchronization notice, not an error



BIOS update and Q-Flash behavior​


Q-Flash refusing a BIOS file usually indicates a revision or compatibility mismatch, not a problem with the motherboard.
Gigabyte boards require:


  • the correct BIOS file for the exact board revision
  • FAT32-formatted USB
  • a supported (non-beta, if applicable) BIOS branch

This issue is separate from the TPM events and does not indicate TPM malfunction.




What to do​


If the system is working normally:


  • No action is required
  • These events can be safely ignored on a personal Windows 11 PC

If you want to eliminate the messages:


  • update to the latest stable BIOS for your exact board revision
  • load optimized defaults afterward
  • ensure Secure Boot and fTPM are enabled

Again, this is optional, not mandatory.




Summary​


These TPM-WMI and Secure Boot events are informational firmware/attestation messages, not errors. They do not indicate defective hardware or an unstable system and are common on Windows 11 systems with older or beta firmware.
 

My Computer

System One

  • OS
    Windows 11 Pro 25H2 build 26200.8655
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom build (Gigabyte)
    CPU
    AMD Ryzen 7 7700X
    Motherboard
    Gigabyte B650M GAMING X AX
    Memory
    RAM: 64 GB DDR5
    Graphics Card(s)
    AMD Radeon RX 7800 XT (16 GB)
    Sound Card
    Realtek (onboard)
    Monitor(s) Displays
    Samsung
    Screen Resolution
    1920 x 1080
    Hard Drives
    Samsung 990 PRO 1 TB (NVM-e),
    Keyboard
    Logitech MX Master
    Mouse
    Logitech
    Internet Speed
    13ms/250Mbps/25Mbps
    Browser
    Microsoft Edge
    Antivirus
    Bitdefender
    Other Info
    UEFI, Secure Boot ON, TPM 2.0 ON
Yastil,
thank you so much. For me you are the hero of this year. (y)

I will read your answer very carefully, your answer is a complete manual on this subject. :-)
 

My Computer

System One

  • OS
    window 11 home
    Computer type
    PC/Desktop
    Manufacturer/Model
    Shop Made
    CPU
    AMD Ryzen 5 5500
    Motherboard
    Gigabite A520M S2H
    Memory
    16 GB
    Graphics Card(s)
    Nvidia geforce GTX 1060 6 gb
Yastil,
thank you so much. For me you are the hero of this year. (y)

I will read your answer very carefully, your answer is a complete manual on this subject. :-)
Nicolaas_5 - I'll be happy to help if I can.
 

My Computer

System One

  • OS
    Windows 11 Pro 25H2 build 26200.8655
    Computer type
    PC/Desktop
    Manufacturer/Model
    Custom build (Gigabyte)
    CPU
    AMD Ryzen 7 7700X
    Motherboard
    Gigabyte B650M GAMING X AX
    Memory
    RAM: 64 GB DDR5
    Graphics Card(s)
    AMD Radeon RX 7800 XT (16 GB)
    Sound Card
    Realtek (onboard)
    Monitor(s) Displays
    Samsung
    Screen Resolution
    1920 x 1080
    Hard Drives
    Samsung 990 PRO 1 TB (NVM-e),
    Keyboard
    Logitech MX Master
    Mouse
    Logitech
    Internet Speed
    13ms/250Mbps/25Mbps
    Browser
    Microsoft Edge
    Antivirus
    Bitdefender
    Other Info
    UEFI, Secure Boot ON, TPM 2.0 ON
Back
Top Bottom