Microsoft-Windows-PerfDisk

Event ID 1000: Unable to open the Disk performance object (Win32 error code NTSTATUS).

#
Channel
Application

Message #

Unable to open the Disk performance object (Win32 error code %1).

Fields #

NameDescription
NTSTATUS UInt32

Event ID 1001: The attempt to collect Disk Performance data failed because the DLL did not open successfully

#
Channel
Operational

Event ID 1002: Unable to allocate a dynamic memory buffer.

#
Channel
Application

Event ID 1003: Only one thread at a time can call the performance data collection function.

#
Channel
Application

Description

Only one thread at a time can call the performance data collection function. A second thread attempted to call the collection function while it was in use by another thread.

Message #

Only one thread at a time can call the performance data collection function. A second thread attempted to call the collection function while it was in use by another thread.

Event ID 2000: Unable to read the Logical Volume information (Win32 error code Win32 Error).

#
Channel
Application

Message #

Unable to read the Logical Volume information (Win32 error code %1).

Fields #

NameDescription
Win32Error UInt32

Event ID 2001: Unable to read performance data for the Disk performance counters (Win32 error code Win32 Error).

#
Channel
Application

Message #

Unable to read performance data for the Disk performance counters (Win32 error code %1).

Fields #

NameDescription
Win32Error UInt32

Event ID 2147484648: Unable to open the Disk performance object.

#
Channel
Operational

Description

Unable to open the Disk performance object. The first four bytes (DWORD) of the Data section of the event viewer contains the status code.

Message #

Unable to open the Disk performance object. The first four bytes (DWORD) of the Data section of the event viewer contains the status code.

Event ID 2147485648: Unable to read the Logical Volume information.

#
Channel
Operational

Description

Unable to read the Logical Volume information. The first four bytes (DWORD) of the Data section of the event viewer contains the status code.

Message #

Unable to read the Logical Volume information. The first four bytes (DWORD) of the Data section of the event viewer contains the status code.

Event ID 2147485649: Unable to read performance data for the Disk performance counters.

#
Channel
Operational

Event ID 3221226473: The attempt to collect Disk Performance data failed because the DLL did not open successfully.

#
Channel
Operational

Event ID 3221226474: Unable to allocate a dynamic memory buffer.

#
Channel
Operational

Event ID 3221226475: Only one thread at a time can call the performance data collection function.

#
Channel
Operational

Description

Only one thread at a time can call the performance data collection function. A second thread attempted to call the collection function while it was in use by another thread.

Message #

Only one thread at a time can call the performance data collection function. A second thread attempted to call the collection function while it was in use by another thread.

Provenance

ETW provider GUID 7f9d83de-8abb-457f-98e8-4ad161449ecc

Defined in perfdisk.dll, which carries the event manifest.

  • WS2022-20348.4893, schema read from the registered manifest, binary version 10.0.20348.1, captured 2026-06-02 — Manifest XML pack, 1.9 MB
  • Win11-26200.6584, schema read from the registered manifest, binary version 10.0.26100.1, captured 2026-06-02 — Manifest XML pack, 2.0 MB