Microsoft-Windows-Kernel-WDI
Event ID 32: The Scenario Event Mapper started a scenario for provider ProviderID (event ID EventID) with ActionCount context providers.
#Description
The Scenario Event Mapper started a scenario for provider ProviderID (event ID EventID) with ActionCount context providers. The context logger dropped event count was DroppedEventCount.
Message #
Fields #
| Name | Description |
|---|---|
ProviderID GUID | |
EventID UInt16 | |
DroppedEventCount UInt32 | |
ActionCount UInt8 | |
SemActions Int16 |
Event ID 33: The Scenario Event Mapper stopped a scenario for provider ProviderID (event ID EventID) with ActionCount context providers.
#Description
The Scenario Event Mapper stopped a scenario for provider ProviderID (event ID EventID) with ActionCount context providers. The context logger dropped event count was DroppedEventCount.
Message #
Fields #
| Name | Description |
|---|---|
ProviderID GUID | |
EventID UInt16 | |
DroppedEventCount UInt32 | |
ActionCount UInt8 | |
SemActions Int16 |
Event ID 34: An in-flight scenario from provider ProviderID (event ID EventID) timed out and was stopped automatically by the Scenario Event Mapper.
#Event ID 35: The Scenario Event Mapper was unable to start a new scenario for provider ProviderID (event ID EventID) because the maximum number of scenarios are already in f...
#Event ID 36: The Scenario Event Mapper was unable to start a scenario for provider ProviderID (event ID EventID).
#Description
The Scenario Event Mapper was unable to start a scenario for provider ProviderID (event ID EventID). The error code was NTStatus.
Message #
Fields #
| Name | Description |
|---|---|
ProviderID GUID | |
EventID UInt16 | |
NTStatus UInt32 | NTSTATUS reference |
Event ID 37: The Scenario Event Mapper was unable to stop a scenario for provider ProviderID (event ID EventID).
#Description
The Scenario Event Mapper was unable to stop a scenario for provider ProviderID (event ID EventID). The error code was NTStatus.
Message #
Fields #
| Name | Description |
|---|---|
ProviderID GUID | |
EventID UInt16 | |
NTStatus UInt32 | NTSTATUS reference |
Event ID 38: The Scenario Event Mapper is configured with more than the maximum number of scenarios.
#Event ID 39: The Scenario Event Mapper is configured with more than the maximum number of context providers for the scenario with provider ProviderID (event ID EventID).
#Event ID 40: The Scenario Event Mapper is configured with more than the maximum number of end events for the scenario with provider ProviderID (event ID EventID).
#Event ID 41: The Scenario Event Mapper is configured with more than the maximum number of providers.
#Event ID 42: The Scenario Event Mapper is configured with an unsupported scenario.
#Description
The Scenario Event Mapper is configured with an unsupported scenario. The scenario for provider ProviderID (event ID EventID) encountered error code NTStatus and will be ignored.
Message #
Fields #
| Name | Description |
|---|---|
ProviderID GUID | |
EventID UInt16 | |
NTStatus UInt32 | NTSTATUS reference |
Provenance
ETW provider GUID 2ff3e6b7-cb90-4700-9621-443f389734ed
Defined in Microsoft-Windows-System-Events.dll, which carries the event manifest.
- WS2022-20348.4893, schema read from the registered manifest, binary version 10.0.20348.3932, captured 2026-06-02 — Manifest XML pack, 1.9 MB
- Win11-26200.6584, schema read from the registered manifest, binary version 10.0.26100.5074, captured 2026-06-02 — Manifest XML pack, 2.0 MB