refsutil.exe

Associated Error Codes

Below lists error codes and symbolic names found for this module.

CodeFound inDescription
0x4000271010Attempts to diagnose heavily damaged ReFS volumes, identify remaining files, and copy those files to another volume. ReFS Salvage has a Scan Phase and a Copy Phase. In automatic mode, the Scan Phase and Copy Phase will run sequentially. In manual mode, each phase can be run separately. Progress and logs are saved in a working directory to allow phases to be run separately as well as Scan Phase to be paused and resumed. Here are the automatic mode Command Line Usages: Quick Automatic Mode Command Line Usage: refsutil salvage -QA It will perform a Quick Scan Phase followed by a Copy Phase. This mode runs quicker as it assumes some critical structures of the volume are not corrupted and so there is no need to scan the entire volume to locate them. This also reduces the recovery of stale files/directories/volumes. Full Automatic Mode Command Line Usage: refsutil salvage -FA It will perform a Full Scan Phase followed by a Copy Phase. This mode may take a long time as it will scan the entire volume for any recoverable files/directories/volumes. Here are the manual mode Command Line Usages: Diagnose Phase Command Line Usage: refsutil salvage -D Attempt to determine if is an ReFS volume and determine if the volume is mountable. When a volume is not-mountable, reason(s) will be determined. This is a standalone phase. Quick Scan Phase Command Line Usage: refsutil salvage -QS Quick Scan for any recoverable files. This mode runs quicker as it assumes some critical structures of the volume are not corrupted and so there is no need to scan the entire volume to locate them. This also reduces the recovery of stale files/directories/volumes. Discovered files will be logged to "foundfiles..txt" under . If the Scan Phase was previously stopped, running with the -QS flag again will resume the scan from where it left off. Full Scan Phase Command Line Usage: refsutil salvage -FS Scan entire for any recoverable files. This mode may take a long time as it will scan the entire volume for any recoverable files. Discovered files will be logged to "foundfiles..txt" under . If the Scan Phase was previously stopped, running with the -FS flag again will resume the scan from where it left off. Copy Phase Command Line Usage: refsutil salvage -C Copy all files described in "foundfiles..txt" to . If Scan Phase is stopped too early, "foundfiles..txt" may not have been written yet and so no file will be copied to . Copy Phase with List Command Line Usage: refsutil salvage -SL Copy all the files in from to . The files in must have first been identified by the Scan Phase though the scan need not have been run to completion. can be generated by copying "foundfiles..txt" to a new file, removing lines referencing files that shouldn't be restored, and preserving files that should be restored. The PowerShell cmdlet Select-String may be helpful in filtering "foundfiles..txt" to only include desired paths, extensions, or file names. Copy Phase with Interactive Console: refsutil salvage -IC Salvage files in an interactive console for advanced users. This mode also requires files generated from either of the Scan Phases. Parameter definitions: ReFS volume to process. Drive letter in format "L:", or a path to the volume mount point. Location to store temporary information and logs. It must not be located on . Location where identified files will be copied to. It must not be located on . -m Recover all possible files including deleted ones. This option will be ignored on refsutil salvage v1. WARNING: Not only this will take longer time to run, it can lead to unexpected result. -v Verbose mode -x Force the volume to dismount first if necessary. All opened handles to the volume would then be invalid. Eg: refsutil salvage -QA R: N:\WORKING N:\DATA -x
0x4000271a10Scanning phase completed. Copy all files found...
0x4000271b10For more information on a specific command, type HELP command name. CD Displays the name of or changes the current directory. COPY Copies one or more files to another location. DIR Displays a list of files and subdirectories in a directory. EXIT Quits the ReFS salvage program. For more information on tools see the ReFS salvage reference in the online help.
0x4000272110Boot sector checked.
0x4000272310Superblocks checked.
0x4000272610Checkpoints checked.
0x4000272710No corruption is detected.
0x4000272810Boot sector checked. Cluster Size: %1!d! (0x%1!x!). Cluster Count: %2!I64d! (0x%2!I64x!).
0x4000272a10Since boot sector is invalid, assuming cluster size is %1!d! bytes to search for superblock!
0x4000272b10Quick scan completed. Assuming cluster size is %1!d! bytes. Classifying data found during quick scanning...
0x4000273210Processing %1
0x4000273710No salvageable file found in %1!
0x4000273910Multiple volume metadata files found. Choose which volume to work upon:
0x4000273a10%1!d!: %2
0x4000273b10
0x4000273c10Initializing volume from %1.
0x4000274010Container Table checked.
0x4000274110Object Table checked.
0x4000274210Running Scan-Phase: Scanning volume for recoverable files. Logging discovered files to: foundfiles..txt Press Ctrl+C at any time to stop the scan. Identified files may be copied as soon as the scan finds them by stopping the scan and running the Copy phase (see the usage text with "refsutil salvage -?" for more information). A stopped scan may be restarted where it left off by re-running the Scan phase with the same command line options. Warning: To get the latest version of files with least corruption, do not stop the scan!
0x4000274510Examining identified metadata disk data for versioning and consistency.
0x4000274610Examining volume with signature %1!x! for salvageable files.
0x4000274810SALVAGE %1>
0x4000274c10exit
0x4000274d10dir
0x4000274e10cd
0x4000274f10copy
0x4000275410%1!d! file(s) copied.
0x4000275510Microsoft ReFS Salvage [Version 10.0.11070] Copyright (c) 2015 Microsoft Corp.
0x4000275810Command Completed.
0x4000275910Run time = %1!d! seconds.
0x4000275a10%1!d! container table entry pages processed (%2!d! invalid page(s)).
0x4000275b10Validating discovered table roots on volume with signature %1!x!.
0x4000275d10%1!I64d! table roots validated (%2!d!%)...
0x4000275e10%1!I64d! table roots validated (%2!d!%).
0x4000276010Enumerating files from discovered tables on volume with signature %1!x!.
0x4000276110%1!I64d! tables enumerated (%2!d!%)...
0x4000276210%1!I64d! tables enumerated (%2!d!%).
0x4000277210Directory of %1
0x4000277310%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! AM %1
0x4000277410%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! PM %1
0x4000277510%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! AM %8!17ld! %1
0x4000277610%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! PM %8!17ld! %1
0x4000277710%1!16d! Dir(s)
0x4000277910%1
0x4000278a10Copying: %1...
0x4000278f10Done
0x4000279110This doesn't look like an ReFS volume.
0x4000279210ReFS version: %1!d!.%2!d!
0x4000279610%1!I64d! disk clusters analyzed (%2!d!%)...
0x4000279710Read %1!I64d! of %2!I64d! MBs (%3!d!%)...
0x4000279810Processing %1!I64d! of %2!I64d! object table pages (%3!d!%)...
0x4000279a10Local time: %1!d!/%2!d!/%3!d! %4!d!:%5!02d!:%6!02d!
0x4000279c10File: %1
0x4000279d10(%2!I64d! bytes).
0x400027a610Resume volume scanning from LCN 0x%1!x!.
0x400027a710Resume volume scanning from LCN 0x%1!x! (0x%2!x! each).
0x400027a810%1!d! container index table entry pages processed (%2!d! invalid page(s)).
0x400027ab10---- Commands Supported ---- fixboot Repair boot sectors leak Leak Detection and Fixing salvage Salvage operations for corrupt volume triage Handle corruptions
0x400027ac10---- Leak Detection and Fixing ---- Usage: refsutil leak [/a] [/x] [/v] [/d] [/q] [/t ] [/s ] /a If leak detection finds a corruption, setting this switch attempt to fix it and re-run leak detection. With this switch set leak detection will be restarted once for every corrupted directory found on the volume. /x Operate holding an exclusive lock on the volume. Without this switch leak detection will create a snapshot of the volume for processing. /v Verbose output. /d Diagnose only. Leaks will be printed to stdout, but not fixed. /q Query required space for operation. /t Number of threads to spawn for leak detection. Specifying a value of 0 will run leak detection synchronously (this is not recommended). Default is 4. /s Run operation using as a scratch buffer. must be able to grow to the value reported by /q. Ommision of this switch will create a scratch buffer in %TEMP. Drive letter in format "L:", or a path to the volume mount point. Note that providing /d alongside /a will triage all found directory/file corruptions, but will not fix leaks. Eg: refsutil leak D: /a /t 4 /s R:\scratch.tmp Eg: refsutil leak D: /a /d /v /t 4 Eg: refsutil leak D: /q
0x400027ae10Begin leak verification pass 1 (Cluster leaks)...
0x400027af10End leak verification pass 1. Found %1!llu! leaked clusters on the volume.
0x400027b010Begin leak verification pass 2 (Reference count leaks)...
0x400027b210End leak verification pass 2. Found %1!llu! leaked references on the volume.
0x400027c210Space required for leak detection and fixing: %1!llu!MB.
0x400027cf10Beginning volume scan... This may take a while...
0x400027d010Creating volume snapshot on drive %1!s!...
0x400027d110Running holding volume %1!s! exclusive...
0x400027d610Creating the scratch file...
0x400027e010Begin leak verification pass 3 (Compacted cluster leaks)...
0x400027e110End leak verification pass 3.
0x400027e210Begin leak verification pass 4 (Remaining cluster leaks)...
0x400027e310End leak verification pass 4. Fixed %1!llu! leaks during this pass.
0x400027e510Finished. Found leaked clusters: %1!llu! Found reference leaks: %2!llu! Total cluster fixed : %3!llu!
0x400027e710Leak detection is invoking automatic corruption fixing...
0x400027e810Scrubbing file "%1!s!"
0x400027ea10---- Triage and corruption handling ---- Usage: refsutil triage [/s ] [/g] [/v] /s Scrub the directory corresponding to . Is the file id for the directory. This will scrub all files under the given directory. It can not be used together with /g option. /g Scrub the global tables of the volume. It can not be used together with /s option. /v Verbose output. Drive letter in format "L:", or a path to the volume mount point. Eg: refsutil triage D: /s 15100 Eg: refsutil triage D: /s 16040 /v
0x400027ec10The file "%1!s!" was correctly scrubbed.
0x400027ee10Triage has completed succesfully.
0x4000280010WARNING: THIS OPERATION CHANGES BOOT SECTOR(S) OF A VOLUME AND CAN RESULT IN TOTAL LOSS OF DATA. Usage: refsutil fixboot [-f] [-w ] [-smr ] [-x] Drive letter in format "L:". Major version of the ReFS volume. Minor version of the ReFS volume. Cluster size of the volume. Either 4096 or 65536. -f Ignore any valid boot sector found. Fix boot sector based on input parameters. -w Actually write to the boot sector(s) if needed and backup the current boot sector(s) into the backup directory . -smr Specifies this if volume is of SMR format. Cluster size must be 65536. SMRBandSizeInMB can be 128 or 256. -x Force the volume to dismount first if necessary. All opened handles to the volume would then be invalid. Eg: refsutil fixboot D: 3 3 4096 Eg: refsutil fixboot D: 3 1 65536 -f -w c:\backup
0x4000280710Found ReFS boot sector at 0x%1!llx! with the following parameters: Major version : %2!d! Minor version : %3!d! Bytes per sector : 0x%4!x! Sectors per cluster : 0x%5!x! Cluster size : 0x%6!x! Number of sectors : 0x%7!llx! Number of clusters : 0x%8!llx! Bytes per container : 0x%9!llx!
0x4000280b10Fake writing boot sector at 0x%1!llx! as option -w is not specified
0x4000280e10Proceed to regenerate boot sectors with the following parameters: Major version : %1!d! Minor version : %2!d! Bytes per sector : 0x%3!x! Sectors per cluster : 0x%4!x! Cluster size : 0x%5!x! Number of sectors : 0x%6!llx! Number of clusters : 0x%7!llx! Bytes per container : 0x%8!llx!
0x4000280f10Wrote primary boot sector.
0x4000281010Wrote mirror boot sector.
0x4000281110Skip looking for any valid boot sector.
0x4000281210No valid boot sector found.
0x4000281310Failed to backup primary boot sector.
0x4000281410Failed to backup mirror boot sector.
0x4000281510No repair needed.
0x4000281710Retrying snapshot creation.
0x4000281a10Option(s) specified:
0x4000281b10-m
0x4000281c10-v
0x4000281d10-x
0x4000281e10
0x4000281f10Scrubbing global tables.
0x8000272f10Warning: Error occurred while quick scanning volume. Assuming cluster size is %1!d! bytes.
0x8000273310Cannot open file list %1!
0x8000273610Cannot load container table for volume with signature %1!x!.
0x8000273d10Cannot initialize volume %1!
0x8000274410%1!d! error(s) encountered while scanning partition.
0x8000274710Cannot process metadata tables for volume with signature %1!x!!
0x8000275c10Warning: Cannot find root info for Table[0x%1!I64x!'%2!I64x!] on volume with signature %3!x!! Directory name and info are lost because of corruption/writes.
0x8000276310Invalid path with loop found for Table[0x%1!I64x!'%2!I64x!]!
0x8000276c10Cannot find any disk pages for container tables for volume with signature %1!x!!
0x8000276d10Cannot find any disk pages for primary container table for volume with signature %1!x!.
0x8000276e10Cannot find undamaged root for primary container table for volume with signature %1!x!!
0x8000276f10Cannot find any disk pages for dup container table for volume with signature %1!x!.
0x8000277010Cannot find undamaged root for dup container table for volume with signature %1!x!.
0x8000277110Cannot allocate memory for container table for volume with signature %1!x!.
0x8000277a10There is no root in Table[0x%1!I64x!'%2!I64x!].
0x8000277c10Cannot allocate memory!
0x8000277d10Cannot enumerate file extents for source file!
0x8000277e10Cannot translate virtual LCN 0x%1!I64x! to real LCN!
0x8000277f10Cannot read at partition offset 0x%1!I64x!.
0x8000278010Cannot write to file at file offset 0x%1!I64x! for 0x%2!x! bytes!
0x8000278110Cannot read parent directory page hosting the root of file %1!
0x8000278210Parent directory page hosting the root of file %1 is invalid!
0x8000278310Parent directory page hosting the root of file %1 is a director page!
0x8000278410Cannot get file pair info for root entry of file %1!
0x8000278510File pair info for file %1 is not a name index entry!
0x8000278610File pair info for file %1 is not for a file!
0x8000278810Cannot allocate memory for file %1!
0x8000278910Cannot open the file root of file %1!
0x8000278b10Cannot open output file!
0x8000278c10Cannot set end of file for output file!
0x8000278d10Cannot copy data stream!
0x8000278e10Cannot set output file size!
0x8000279010Couldn't read boot sector!
0x8000279410Warning:
0x800027a410Reading at offset 0x%1!I64x! failed! Total error encountered is %2!d!.
0x800027a910Cannot find any disk pages for container index table for volume with signature %1!x!!
0x800027aa10Cannot find undamaged root for container index table for volume with signature %1!x!!
0x800027c610Unable to delete created snapshot due to it being the newest one. The snapshot will be automatically deleted on volume dismount.
0xc000271110Invalid target directory %1!
0xc000271210Invalid source directory %1!
0xc000271310Invalid parameters detected!
0xc000271410No phase specified!
0xc000271510Source volume not specified!
0xc000271610Working directory not specified!
0xc000271710Target directory not specified!
0xc000271810File list not specified!
0xc000271910Failed to open volume.
0xc000271c10Invalid operation requested!
0xc000271d10Failure to write %1... to file.
0xc000271e10Invalid ScanUnitSize of %1 while expecting %2.
0xc000271f10Cannot read boot sector!
0xc000272010Invalid boot sector!
0xc000272210No valid superblock!
0xc000272410Volume initialization failed.
0xc000272510No valid checkpoint!
0xc000272910Partition length of 0x%1!d! is too small.
0xc000272e10Data classification failed!
0xc000273010Invalid working directory!
0xc000273110Finding volume signature files failed!
0xc000273410Cannot initialize volume!
0xc000273510Cannot open metadata file for volume with signature %1!x!.
0xc000273810Error: No volume metadata files found! Please run quick scan or full scan phase first!
0xc000273e10Cannot find root directory for volume %1!
0xc000273f10Cannot find root page of root directory for volume %1!
0xc000274910Cannot create working file to record index LCNs!
0xc000275010The system cannot find the path specified.
0xc000275110Cannot find root page for directory %1!
0xc000275210The target path not specified.
0xc000275310Cannot copy file %1!
0xc000275610Initialization failed.
0xc000275710Command failed.
0xc000275f10Cannot open file %1 for write access!
0xc000276410Cannot find volume signature from meta-data file %1!
0xc000276510Cannot find cluster size from meta-data file %1!
0xc000276610Cannot initialize volume for meta-data file %1!
0xc000276710Cannot load meta-data file %1!
0xc000276a10KeyRules library initialization failed.
0xc000276b10Checksum library initialization failed.
0xc000277810Cannot truncate file %1 to zero size!
0xc000279310Error:
0xc000279510Incompatible switches detected!
0xc000279910The system cannot find the file name specified.
0xc000279e10Failed to open volume: %1
0xc000279f10Failed to dismount the volume: %1
0xc00027a010Failed to lock the volume: %1
0xc00027a110Failed to set file pointer!
0xc00027a210Failed to read file!
0xc00027a310Failed to query file size for file: %1
0xc00027ad10Failed to obtain container range for leaked range.
0xc00027ae10Encountered corruption (LCN in use but unallocated) at LCN 0x%1!016llx!. Halting leak detection.
0xc00027b110Found corruption (aliased refcount) in refcount analysis at CLCN %1!016llx! Real refcount: %2!d! Reported refcount: %3!d!. Stopping leak detection.
0xc00027b310Unable to create event. GLE %1!d!
0xc00027b410Unable to open file %1!s!. GLE %2!d!
0xc00027b510Error GLE:%1!d!
0xc00027b610Unable to lock drive %1!s!. GLE: %2!d!
0xc00027b710Unable to open drive %1!s!.
0xc00027b810Unable to open %TEMP% path. GLE: %2!d!
0xc00027b910Unable to build path.
0xc00027ba10Failed to create temporary scratch file %1!s!. GLE: %2!d!
0xc00027bb10Failed to set file pointer for file to %1!llu! bytes. GLE: %2!d!
0xc00027bc10Failed to set EOF for file to %1!llu! bytes. GLE: %2!d!
0xc00027bd10Failed to create virtual file mapping for file. GLE: %1!d!
0xc00027be10Failed to map virtual file into memory. GLE: %1!d!
0xc00027bf10Failed to create scratch file for leak detection.
0xc00027c010Found aliased metadata tuple at LCN %1!016llx!. Stopping leak detection.
0xc00027c110Failed to create snapshot for leak detection. GLE: %1!d!
0xc00027c310Failed to mount the ReFS volume. NT: %1!08x!
0xc00027c410Failed to create transaction. NT: %1!08x!
0xc00027c510Failed to enumerate table: %1!s!. NT: %2!08x!
0xc00027c710The volume %1!s! is not a ReFS volume.
0xc00027c810Invalid thread count.
0xc00027c910The volume is an unsupported ReFS version. This utility supports versions up to %1!d!.%2!d!. Volume is %3!d!.%4!d!.
0xc00027ca10Leak detection and fixing did not complete successfully.
0xc00027cb10This program requires administrator privileges.
0xc00027cc10Unable to dismount drive %1!s!. GLE: %2!d!
0xc00027cd10Unable to unlock drive. GLE: %1!d!
0xc00027ce10There are not enough system resources to satisfy the requested operation.
0xc00027d210The volume contains an invalid or corrupt ReFS boot sector. The volume may not be a ReFS volume.
0xc00027d310Unable to initialize the Minstore library. NT: %1!08x!
0xc00027d410There was an error sparsing the scratch file. GLE: %1!d!
0xc00027d510There was an error reserving space for the scratch file. Your disk may be full.
0xc00027d710There was an error reading or writing from the scratch file. Your disk may be full.
0xc00027d810There was an error querying the volume for allocations.
0xc00027d910There was an error adding reserved ranges to the scratch file.
0xc00027da10There was an error during verification pass 1.
0xc00027db10There was an error during verification pass 2.
0xc00027dc10There was an error opening the ReFS volume in read/write mode for leak repairs. GLE: %1!d!
0xc00027dd10There was an error processing certain leaks. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc00027de10There was an error initializing the repair engine. Leak detection is unable to continue.
0xc00027df10Encountered corruption (Index allocated but free) at LCN 0x%1!016llx!. Halting leak detection.
0xc00027e410There was an error processing certain leaks. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc00027e610The supplied drive is mounted read-only or write protected.
0xc00027e710Leak detection found corruption in a directory. Please re-run leak detection with the "/a" switch or invoke "refsutil triage %1!s! /s %2!llu!".
0xc00027e910Leak detection found corruption for file ID 0x%1!016llx!`%2!016llx!.
0xc00027eb10An invalid directory ID was provided. The directory ID is the upper 64 bits of the file ID.
0xc00027ed10Error scrubbing file "%1!s!". Error: %2!d!
0xc00027ef10This volume cannot currently undergo triage. We are sorry for the inconvenience.
0xc00027f010Triage attempted to scrub the ID, but due to a file system limitation it cannot guarantee success.
0xc00027f110Triage failed with error %1!d!.
0xc00027f210Triage was unable to open file "%1!s!".
0xc000280110Failed to write file!
0xc000280210Couldn't write boot sector!
0xc000280310Couldn't read boot sector!
0xc000280410Boot sector at 0x%1!llx! contains invalid value(s): Major version : %1!d! Minor version : %2!d! Bytes per sector : 0x%3!x! Sectors per cluster : 0x%4!x! Number of sectors : 0x%5!llx! Bytes per container : 0x%6!llx!
0xc000280510Couldn't write primary boot sector!
0xc000280610Boot sector at 0x%1!llx! has checksum failure!
0xc000280810Found valid boot sector at 0x%1!llx! with: Cluster size : 0x%1!x! Number of Clusters : 0x%2!llx!
0xc000280910Updated primary boot sector with mirror boot sector.
0xc000280a10Couldn't write mirror boot sector!
0xc000280c10Boot sector at 0x%1!llx! not readable.
0xc000280d10Boot sector at 0x%1!llx! doesn't appear to be ReFS.
0xc000281610An instance of refsutil already exists for drive %1!s!.
0xc000281810Scan state file TotalScanUnitCount (0x%1!llx!) does not match that of the current volume. The current volume has 0x%2!llx! LCNs in it. Please specifies the correct volume or working directory.
0xc000281910Current LCN (0x%1!llx!) scanned larger than TotalScanUnitCount (0x%2!llx!) of the volume in the scan state file. Please starts with an empty working directory.
0x4000c35011Attempts to diagnose heavily damaged ReFS volumes, identify remaining files, and copy those files to another volume. ReFS Salvage has a Scan Phase and a Copy Phase. In automatic mode, the Scan Phase and Copy Phase will run sequentially. In manual mode, each phase can be run separately. Progress and logs are saved in a working directory to allow phases to be run separately as well as Scan Phase to be paused and resumed. Here are the automatic mode Command Line Usages: Quick Automatic Mode Command Line Usage: refsutil salvage -QA It will perform a Quick Scan Phase followed by a Copy Phase. This mode runs quicker as it assumes some critical structures of the volume are not corrupted and so there is no need to scan the entire volume to locate them. This also reduces the recovery of stale files/directories/volumes. Full Automatic Mode Command Line Usage: refsutil salvage -FA It will perform a Full Scan Phase followed by a Copy Phase. This mode may take a long time as it will scan the entire volume for any recoverable files/directories/volumes. Here are the manual mode Command Line Usages: Diagnose Phase Command Line Usage: refsutil salvage -D Attempt to determine if is an ReFS volume and determine if the volume is mountable. When a volume is not-mountable, reason(s) will be determined. This is a standalone phase. Quick Scan Phase Command Line Usage: refsutil salvage -QS Quick Scan for any recoverable files. This mode runs quicker as it assumes some critical structures of the volume are not corrupted and so there is no need to scan the entire volume to locate them. This also reduces the recovery of stale files/directories/volumes. Discovered files will be logged to "foundfiles..txt" under . If the Scan Phase was previously stopped, running with the -QS flag again will resume the scan from where it left off. Full Scan Phase Command Line Usage: refsutil salvage -FS Scan entire for any recoverable files. This mode may take a long time as it will scan the entire volume for any recoverable files. Discovered files will be logged to "foundfiles..txt" under . If the Scan Phase was previously stopped, running with the -FS flag again will resume the scan from where it left off. Copy Phase Command Line Usage: refsutil salvage -C Copy all files described in "foundfiles..txt" to . If Scan Phase is stopped too early, "foundfiles..txt" may not have been written yet and so no file will be copied to . Copy Phase with List Command Line Usage: refsutil salvage -SL Copy all the files in from to . The files in must have first been identified by the Scan Phase though the scan need not have been run to completion. can be generated by copying "foundfiles..txt" to a new file, removing lines referencing files that shouldn't be restored, and preserving files that should be restored. The PowerShell cmdlet Select-String may be helpful in filtering "foundfiles..txt" to only include desired paths, extensions, or file names. Copy Phase with Interactive Console: refsutil salvage -IC Salvage files in an interactive console for advanced users. This mode also requires files generated from either of the Scan Phases. Parameter definitions: ReFS volume to process. Drive letter in format "L:", or a path to the volume mount point. Location to store temporary information and logs. It must not be located on . Location where identified files will be copied to. It must not be located on . -m Recover all possible files including deleted ones. This option will be ignored on refsutil salvage v1. WARNING: Not only this will take longer time to run, it can lead to unexpected result. -v Verbose mode -sv Skip ReFS volume version check. Assume the highest volume version this tool can handle. WARNING: May lead to unexpected result. -hl Assume volume supports hardlink. -x Force the volume to dismount first if necessary. All opened handles to the volume would then be invalid. Eg: refsutil salvage -QA R: N:\WORKING N:\DATA -x
0x4000c35a11Scanning phase completed. Copy all files found...
0x4000c35b11For more information on a specific command, type HELP command name. CD Displays the name of or changes the current directory. COPY Copies one or more files to another location. DIR Displays a list of files and subdirectories in a directory. EXIT Quits the ReFS salvage program. For more information on tools see the ReFS salvage reference in the online help.
0x4000c36111Boot sector checked.
0x4000c36311Superblocks checked.
0x4000c36611Checkpoints checked.
0x4000c36711No corruption is detected.
0x4000c36811Boot sector checked. Cluster Size: %1!d! (0x%1!x!). Cluster Count: %2!I64d! (0x%2!I64x!).
0x4000c36a11Since boot sector is invalid, assuming cluster size is %1!d! bytes to search for superblock!
0x4000c36b11Quick scan completed. Assuming cluster size is %1!d! bytes. Classifying data found during quick scanning...
0x4000c37211Processing %1
0x4000c37711No salvageable file found in %1!
0x4000c37911Multiple volume metadata files found. Choose which volume to work upon:
0x4000c37a11%1!d!: %2
0x4000c37b11
0x4000c37c11Initializing volume from %1.
0x4000c38011Container Table checked.
0x4000c38111Object Table checked.
0x4000c38211Running Scan-Phase: Scanning volume for recoverable files. Logging discovered files to: foundfiles..txt Press Ctrl+C at any time to stop the scan. Identified files may be copied as soon as the scan finds them by stopping the scan and running the Copy phase (see the usage text with "refsutil salvage -?" for more information). A stopped scan may be restarted where it left off by re-running the Scan phase with the same command line options. Warning: To get the latest version of files with least corruption, do not stop the scan!
0x4000c38511Examining identified metadata disk data for versioning and consistency.
0x4000c38611Examining volume with signature %1!x! for salvageable files.
0x4000c38811SALVAGE %1>
0x4000c38c11exit
0x4000c38d11dir
0x4000c38e11cd
0x4000c38f11copy
0x4000c39411%1!d! file(s) copied.
0x4000c39511Microsoft ReFS Salvage [Version 10.0.11070] Copyright (c) 2015 Microsoft Corp.
0x4000c39811Command Completed.
0x4000c39911Run time = %1!d! seconds.
0x4000c39a11%1!d! container table entry pages processed (%2!d! invalid page(s)).
0x4000c39b11Validating discovered table roots on volume with signature %1!x!.
0x4000c39d11%1!I64d! table roots validated (%2!d!%)...
0x4000c39e11%1!I64d! table roots validated (%2!d!%).
0x4000c3a011Enumerating files from discovered tables on volume with signature %1!x!.
0x4000c3a111%1!I64d! tables enumerated (%2!d!%)...
0x4000c3a211%1!I64d! tables enumerated (%2!d!%).
0x4000c3b211Directory of %1
0x4000c3b311%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! AM %1
0x4000c3b411%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! PM %1
0x4000c3b511%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! AM %8!17ld! %1
0x4000c3b611%2!02d!/%3!02d!/%4!04d! %5!02d!:%6!02d!:%7!02d! PM %8!17ld! %1
0x4000c3b711%1!16d! Dir(s)
0x4000c3b911%1
0x4000c3ca11Copying: %1...
0x4000c3cf11Done
0x4000c3d111This doesn't look like an ReFS volume.
0x4000c3d211ReFS version: %1!d!.%2!d!
0x4000c3d611%1!I64d! disk clusters analyzed (%2!d!%)...
0x4000c3d711Read %1!I64d! of %2!I64d! MBs (%3!d!%)...
0x4000c3d811Processing %1!I64d! of %2!I64d! object table pages (%3!d!%)...
0x4000c3da11Local time: %1!d!/%2!d!/%3!d! %4!d!:%5!02d!:%6!02d!
0x4000c3dc11File: %1
0x4000c3dd11(%2!I64d! bytes).
0x4000c3e611Resume volume scanning from LCN 0x%1!x!.
0x4000c3e711Resume volume scanning from LCN 0x%1!x! (0x%2!x! each).
0x4000c3e811%1!d! container index table entry pages processed (%2!d! invalid page(s)).
0x4000c3eb11---- Commands Supported ---- fixboot Repair boot sectors leak Leak Detection and Fixing salvage Salvage operations for corrupt volume triage Handle corruptions streamsnapshot Stream snapshot management compression Volume compression support dedup Dedup equivalent clusters iometrics Volume IO metrics tracking
0x4000c3ec11---- Leak Detection and Fixing ---- Usage: refsutil leak [/a] [/x] [/v] [/d] [/q] [/t ] [/s ] /a If leak detection finds a corruption, setting this switch attempt to fix it and re-run leak detection. With this switch set leak detection will be restarted once for every corrupted directory found on the volume. /x Operate holding an exclusive lock on the volume. Without this switch leak detection will create a snapshot of the volume for processing. /v Verbose output. /d Diagnose only. Leaks will be printed to stdout, but not fixed. /q Query required space for operation. /t Number of threads to spawn for leak detection. Specifying a value of 0 will run leak detection synchronously (this is not recommended). Default is 4. /s Run operation using as a scratch buffer. must be able to grow to the value reported by /q. Ommision of this switch will create a scratch buffer in %TEMP. Drive letter in format "L:", or a path to the volume mount point. Note that providing /d alongside /a will triage all found directory/file corruptions, but will not fix leaks. Eg: refsutil leak D: /a /t 4 /s R:\scratch.tmp Eg: refsutil leak D: /a /d /v /t 4 Eg: refsutil leak D: /q
0x4000c3ee11Begin leak verification pass 1 (Cluster leaks)...
0x4000c3ef11End leak verification pass 1. Found %1!llu! leaked clusters on the volume.
0x4000c3f011Begin leak verification pass 2 (Reference count leaks)...
0x4000c3f211End leak verification pass 2. Found %1!llu! leaked references on the volume.
0x4000c40211Space required for leak detection and fixing: %1!llu!MB.
0x4000c40f11Beginning volume scan... This may take a while...
0x4000c41011Creating volume snapshot on drive %1!s!...
0x4000c41111Running holding volume %1!s! exclusive...
0x4000c41611Creating the scratch file...
0x4000c42011Begin leak verification pass 3 (Compacted cluster leaks)...
0x4000c42111End leak verification pass 3.
0x4000c42211Begin leak verification pass 4 (Remaining cluster leaks)...
0x4000c42311End leak verification pass 4. Fixed %1!llu! leaks during this pass.
0x4000c42511Finished. Found leaked clusters: %1!llu! Found reference leaks: %2!llu! Total cluster fixed : %3!llu!
0x4000c42711Leak detection is invoking automatic corruption fixing...
0x4000c42811Scrubbing file "%1!s!"
0x4000c42a11---- Triage and corruption handling ---- Usage: refsutil triage [/s ] [/g] [/v] /s Scrub the directory corresponding to . Is the file id for the directory. This will scrub all files under the given directory. It can not be used together with /g option. /g Scrub the global tables of the volume. It can not be used together with /s option. /v Verbose output. Drive letter in format "L:", or a path to the volume mount point. Eg: refsutil triage D: /s 15100 Eg: refsutil triage D: /s 16040 /v
0x4000c42c11The file "%1!s!" was correctly scrubbed.
0x4000c42e11Triage has completed successfully.
0x4000c43311Begin leak verification pass 5 (Hardlink leaks)...
0x4000c43411End leak verification pass 5. Fixed %1!llu! hardlinks, and %1!llu! posix deleted files/dirs during this pass.
0x4000c43611Begin leak verification pass 1 ...
0x4000c43711End leak verification 1. Fixed %1!llu! leaks during this pass.
0x4000c43911Begin leak verification pass 2 (Hardlink leaks)...
0x4000c43a11End leak verification pass 2. Fixed %1!llu! hardlinks, and %1!llu! posix deleted files/dirs during this pass.
0x4000c44011WARNING: THIS OPERATION CHANGES BOOT SECTOR(S) OF A VOLUME AND CAN RESULT IN TOTAL LOSS OF DATA. Usage: refsutil fixboot [-f] [-w ] [-smr ] [-x] Drive letter in format "L:". Major version of the ReFS volume. Minor version of the ReFS volume. Cluster size of the volume. Either 4096 or 65536. -f Ignore any valid boot sector found. Fix boot sector based on input parameters. -w Actually write to the boot sector(s) if needed and backup the current boot sector(s) into the backup directory . -smr Specifies this if volume is of SMR format. Cluster size must be 65536. SMRBandSizeInMB can be 128 or 256. -x Force the volume to dismount first if necessary. All opened handles to the volume would then be invalid. Eg: refsutil fixboot D: 3 3 4096 Eg: refsutil fixboot D: 3 1 65536 -f -w c:\backup
0x4000c44711Found ReFS boot sector at 0x%1!llx! with the following parameters: Major version : %2!d! Minor version : %3!d! Bytes per sector : 0x%4!x! Sectors per cluster : 0x%5!x! Cluster size : 0x%6!x! Number of sectors : 0x%7!llx! Number of clusters : 0x%8!llx! Bytes per container : 0x%9!llx!
0x4000c44b11Fake writing boot sector at 0x%1!llx! as option -w is not specified
0x4000c44e11Proceed to regenerate boot sectors with the following parameters: Major version : %1!d! Minor version : %2!d! Bytes per sector : 0x%3!x! Sectors per cluster : 0x%4!x! Cluster size : 0x%5!x! Number of sectors : 0x%6!llx! Number of clusters : 0x%7!llx! Bytes per container : 0x%8!llx!
0x4000c44f11Wrote primary boot sector.
0x4000c45011Wrote mirror boot sector.
0x4000c45111Skip looking for any valid boot sector.
0x4000c45211No valid boot sector found.
0x4000c45311Failed to backup primary boot sector.
0x4000c45411Failed to backup mirror boot sector.
0x4000c45511No repair needed.
0x4000c45711Retrying snapshot creation.
0x4000c45a11Option(s) specified:
0x4000c45b11-m
0x4000c45c11-v
0x4000c45d11-x
0x4000c45e11
0x4000c45f11Scrubbing global tables.
0x4000c46211Assume ReFS volume version is %1!d!.%2!d!.
0x4000c46311---- Stream Snapshot Management ---- Usage: refsutil streamsnapshot [/c ] [/l] [/d ] [/q ] /c Create a snapshot named of the stream at this point in time. This option is mutually exclusive with [/d], [/l], and [/q]. /d Delete the snapshot from the file . This operation ignores the [:stream] portion. This option is mutually exclusive with [/c], [/l], and [/q]. /l List all the snapshots for the stream matching the string . may contain wildcards. This option is mutually exclusive with [/c], [/d], and [/q]. /q List all the modifications that have been incurred between the snapshot named and the stream indicated by [:stream]. Both and [:stream] must reference streams in the same snapshot chain. must be an older snapshot than the one specified by [:stream]. This option is mutually exclusive with [/c], [/d], and [/l]. When [:stream] is not provided, this utility acts on the default unnamed data stream, $DATA. Eg: refsutil streamsnapshot /c "snapshot_jan_2020" C:\file.dat Eg: refsutil streamsnapshot /d "snapshot_jan_2020" C:\file.dat Eg: refsutil streamsnapshot /l "*" C:\file.dat Eg: refsutil streamsnapshot /q "snapshot_jan_2020" C:\file.dat:snapshot_feb_2020
0x4000c46411The operation completed successfully.
0x4000c46511The operation did not complete successfully. The returned Win32 error code was 0x%1!x!.
0x4000c46611There are no snapshots matching the query string on the provided stream.
0x4000c46711%1!-*s! %2!-*s! %3!-*s! stream size: %4!-*llu! bytes. snapshot size: %5!-*llu! bytes.
0x4000c46811There are no deltas between the requested snapshots.
0x4000c46911VCN: 0x%1!llx! Clusters: 0x%2!llx! LCN: 0x%3!llx! Properties: 0x%4!x!.
0x4000c46a11-hl
0x4000c46b11-sv
0x4000c47011---- Volume Compression Management ---- Usage: refsutil compression <[/q]>|<[/c] [/f ] [/e ] [/cs ]> /q Query volume compression parameters. /c Compress the volume with the provided compression parameters. /f Compression format to compress with. Valid values: - LZ4, - ZSTD, - NONE. Use NONE to decompress a compressed volume. When this option is provided, the engine and compression chunk size must be omitted. /e Compression level to compress with, dependent on the compression format selected. Omit this parameter or use 0 to pick the default level for any given compression format. The defaults are subject to change. Valid values: - LZ4: 1, 3-12. Default: 1. Values in the range 3-12 utilize the LZ4 HC algorithm, which achieves greater compression ratios at the cost of greatly reduced compression speed. Decompression speed is independent of the selected compression level. - ZSTD: 1-22. Default: 3. Larger values provide higher compression ratios at the cost of reduced compression speeds. Values greater/equal to 20 require higher memory consumption. Decompression speed is independent of the selected compression level. /cs Compression chunk size to compress with, in bytes. Must be a power of two larger or equal to the volumes cluster size, and no greater than 64mb. Larger values yield larger compression ratios at the cost of read performance penalties for reading amounts of data smaller than the chunk size. Diminishing returns are drastic after 1mb, and as such are not recommended. Omitting this parameter or using 0 will pick the volumes cluster size. Eg: refsutil compression /q R: Eg: refsutil compression /c /f LZ4 /e 12 /cs 524288 R: Eg: refsutil compression /c /f ZSTD /e 15 /cs 131072 R: Eg: refsutil compression /c /f ZSTD R: Eg: refsutil compression /c /f NONE R:
0x4000c47311Compression format: %1!s! Compression level: %2!d! Compression chunk size: %3!s!%4!s! Volume size: %5!s!%6!s! Total logical data on volume: %7!s!%8!s! Uncompressed size of compressed data: %9!s!%10!s! Compressed size of compressed data: %11!s!%12!s! Estimated garbage collection savings: %13!s!%14!s! Percentage of volume data compressed: %15!s!% Compression efficiency: %16!s!% Compression efficiency (w/o GC): %17!s!% Last compression run NTSTATUS: 0x%18!08x!
0x4000c47511Usage: refsutil dedup [/d] [/s] [/cpu ] [/mm] Volume path or mount point. /d Dedup volume; mutually exclusive with /s flag. /s Scan volume to determine how much space can be saved by deduplicating equivalent clusters. Mutually exclusive with /d flag. /mm Use memory mapped file I/O to read files to dedup. Default is to use async reads with IOCP. Must be used in conjunction with /d or /s flags. /cpu Specify the maximum percentage of CPU to use. Valid values are [1-100]. Eg: refsutil dedup D: /s Eg: refsutil dedup D: /d /cpu 50
0x4000c47911Volume compression is currently running.
0x4000c47a11Volume compression is currently stopped.
0x4000c47b11Bytes saved: %1!llu!
0x4000c47e11---- Volume IO Metrics Tracking ---- Usage: refsutil iometrics <[/q]>|<[/s] [/st ]> /q Query volume heat parameters. /s Set volume heat parameters. /st Number of seconds the volume should track IO access for. /sp Periodicity in seconds of io metrics tracking. /sg Number of periods to track per volume tracking unit. For the /st, /sp, and /sg options ReFS will enforce these values to lie within suitable ranges, and will reassign these values to filesystem minimums if required. These values can be omitted, in which case ReFS will pick defaults. Minimum values are as follows, and subject to change: /st: 3600. /sp: 10. /sg: 5. Eg: refsutil heat /q R: Eg: refsutil heat /s R: Eg: refsutil heat /s /st 604800 R:
0x4000c48011Volume heat parameters have been successfully changed and will take effect after the next volume mount.
0x4000c48211IO statistics tracking window: %1!d! seconds. IO statistics periodicity: %2!d! seconds. Periods per volume tracking unit: %3!d! periods.
0x4000c48311Unable to query volume IO metrics data. GLE: %1!d!
0x4000c48411---- Volume Compression Management ---- Usage: refsutil rollbackprotection freeze [-allowMountOnRollbackDetection] [-userPayloadFile ] [-volumePath] refsutil rollbackprotection query [-userPayloadFile ] [-volumePath] Eg: refsutil rollbackprotection query C: refsutil rollbackprotection freeze -userPayloadFile customPayload.bin C:
0x4000c48511Volume GUID: %1!ws! Rollback Protection GUID: %2!ws! Fail Mount on Rollback: %3!u! Frozen Virtual Clock: %4!I64u! Current Virtual Clock: %5!I64u! Frozen Root Checksum: %6!ws! Checksum Type: %7!ws! User Payload: %8!I64u! bytes
0x4000c48611Freezing current volume state for rollback protection.
0x4000c48711Freezing succeeded. Querying persisted rollback protection status:
0x4000c48811Reading custom payload from file: %1!ws!
0x4000c48911Writing custom payload to file: %1!ws!
0x4000c48a11Unfreezing current volume state for rollback protection.
0x4000c48b11Unfreezing succeeded.
0x4000c48c11Clearing boot volume GUID from UEFI for rollback protection.
0x4000c48d11Boot volume GUID cleared from UEFI.
0x4000c48e11---- Rollback Protection ---- WARNING: Do not use this feature unless you are certain of the consequences. Improper use can result in machine being in an unbootable and unrecoverable state. Usage: refsutil rollbackprotection freeze [-allowMountOnRollbackDetection] [-userPayloadFile ] [-volumePath] refsutil rollbackprotection unfreeze [-volumePath] refsutil rollbackprotection clearBootGuid refsutil rollbackprotection query [-userPayloadFile ] [-volumePath] Eg: refsutil rollbackprotection query C: refsutil rollbackprotection freeze -userPayloadFile customPayload.bin C: refsutil rollbackprotection unfreeze C: refsutil rollbackprotection clearBootGuid
0x4000c49111Usage: fsutil rollbackprotection failMountOnRollbackDetection
0x4000c49211Clearing failMountOnRollbackDetection UEFI setting for rollback protection.
0x4000c49311UEFI setting failMountOnRollbackDetection has been cleared.
0x4000c49411UEFI setting failMountOnRollbackDetection is not set.
0x4000c49511Fail Mount on Rollback: %1!u!
0x4000c49611Setting failMountOnRollbackDetection UEFI setting for rollback protection.
0x4000c49711UEFI setting failMountOnRollbackDetection has been set to %1!u!.
0x4000c49811---- Rollback Protection ---- WARNING: Do not use this feature unless you are certain of the consequences. Improper use can result in machine being in an unbootable and unrecoverable state. Usage: refsutil rollbackprotection freeze [-allowMountOnRollbackDetection] [-userPayloadFile ] [-volumePath] refsutil rollbackprotection unfreeze [-volumePath] refsutil rollbackprotection clearBootGuid refsutil rollbackprotection query [-userPayloadFile ] [-volumePath] refsutil rollbackprotection failMountOnRollbackDetection > Eg: refsutil rollbackprotection query C: refsutil rollbackprotection freeze -userPayloadFile customPayload.bin C: refsutil rollbackprotection unfreeze C: refsutil rollbackprotection clearBootGuid refsutil rollbackprotection failMountOnRollbackDetection query refsutil rollbackprotection failMountOnRollbackDetection set 0
0x4000c4a211Skipped %1!I64u! files totalling %2!I64u!MB in volume with signature %3!x!.
0x8000c36f11Warning: Error occurred while quick scanning volume. Assuming cluster size is %1!d! bytes.
0x8000c37311Cannot open file list %1!
0x8000c37611Cannot load container table for volume with signature %1!x!.
0x8000c37d11Cannot initialize volume %1!
0x8000c38411%1!d! error(s) encountered while scanning partition.
0x8000c38711Cannot process metadata tables for volume with signature %1!x!!
0x8000c39c11Warning: Cannot find root info for Table[0x%1!I64x!'%2!I64x!] on volume with signature %3!x!! Directory name and info are lost because of corruption/writes.
0x8000c3a311Invalid path with loop found for Table[0x%1!I64x!'%2!I64x!]!
0x8000c3ac11Cannot find any disk pages for container tables for volume with signature %1!x!!
0x8000c3ad11Cannot find any disk pages for primary container table for volume with signature %1!x!.
0x8000c3ae11Cannot find undamaged root for primary container table for volume with signature %1!x!!
0x8000c3af11Cannot find any disk pages for dup container table for volume with signature %1!x!.
0x8000c3b011Cannot find undamaged root for dup container table for volume with signature %1!x!.
0x8000c3b111Cannot allocate memory for container table for volume with signature %1!x!.
0x8000c3ba11There is no root in Table[0x%1!I64x!'%2!I64x!].
0x8000c3bc11Cannot allocate memory!
0x8000c3bd11Cannot enumerate file extents for source file!
0x8000c3be11Cannot translate virtual LCN 0x%1!I64x! to real LCN!
0x8000c3bf11Cannot read at partition offset 0x%1!I64x!.
0x8000c3c011Cannot write to file at file offset 0x%1!I64x! for 0x%2!x! bytes!
0x8000c3c111Cannot read parent directory page hosting the root of file %1!
0x8000c3c211Parent directory page hosting the root of file %1 is invalid!
0x8000c3c311Parent directory page hosting the root of file %1 is a director page!
0x8000c3c411Cannot get file pair info for root entry of file %1!
0x8000c3c511File pair info for file %1 is not a name index entry!
0x8000c3c611File pair info for file %1 is not for a file!
0x8000c3c811Cannot allocate memory for file %1!
0x8000c3c911Cannot open the file root of file %1!
0x8000c3cb11Cannot open output file!
0x8000c3cc11Cannot set end of file for output file!
0x8000c3cd11Cannot copy data stream!
0x8000c3ce11Cannot set output file size!
0x8000c3d011Couldn't read boot sector!
0x8000c3d411Warning:
0x8000c3e411Reading at offset 0x%1!I64x! failed! Total error encountered is %2!d!.
0x8000c3e911Cannot find any disk pages for container index table for volume with signature %1!x!!
0x8000c3ea11Cannot find undamaged root for container index table for volume with signature %1!x!!
0x8000c40611Unable to delete created snapshot due to it being the newest one. The snapshot will be automatically deleted on volume dismount.
0x8000c46011Unable to locate file table for %1.
0x8000c46c11Mismatch between number of composite table(s) found versus expected count.
0x8000c46d11Composite tables ordering is inconsistent.
0x8000c49e11Skipped copying %1 of %2!I64u! bytes as it has exceeded the file size limit of %3!I64u!MB.
0x8000c49f11Skipped copying %1 of %2!I64u! bytes as it would have exceeded the space usage limit of %3!I64u!GB.
0x8000c4a011Skipped copying %1 of %2!I64u! bytes as it would have dropped the free space remaining limit to below %3!I64u!GB.
0x8000c4a111Failed to query free space remaining on target directory. GLE %1!d!.
0xc000c35111Invalid target directory %1!
0xc000c35211Invalid source directory %1!
0xc000c35311Invalid parameters detected!
0xc000c35411No phase specified!
0xc000c35511Source volume not specified!
0xc000c35611Working directory not specified!
0xc000c35711Target directory not specified!
0xc000c35811File list not specified!
0xc000c35911Failed to open volume.
0xc000c35c11Invalid operation requested!
0xc000c35d11Failure to write %1... to file.
0xc000c35e11Invalid ScanUnitSize of %1 while expecting %2.
0xc000c35f11Cannot read boot sector!
0xc000c36011Invalid boot sector!
0xc000c36211No valid superblock!
0xc000c36411Volume initialization failed.
0xc000c36511No valid checkpoint!
0xc000c36911Partition length of 0x%1!d! is too small.
0xc000c36e11Data classification failed!
0xc000c37011Invalid working directory!
0xc000c37111Finding volume signature files failed!
0xc000c37411Cannot initialize volume!
0xc000c37511Cannot open metadata file for volume with signature %1!x!.
0xc000c37811Error: No volume metadata files found! Please run quick scan or full scan phase first!
0xc000c37e11Cannot find root directory for volume %1!
0xc000c37f11Cannot find root page of root directory for volume %1!
0xc000c38911Cannot create working file to record index LCNs!
0xc000c39011The system cannot find the path specified.
0xc000c39111Cannot find root page for directory %1!
0xc000c39211The target path not specified.
0xc000c39311Cannot copy file %1!
0xc000c39611Initialization failed.
0xc000c39711Command failed.
0xc000c39f11Cannot open file %1 for write access!
0xc000c3a411Cannot find volume signature from meta-data file %1!
0xc000c3a511Cannot find cluster size from meta-data file %1!
0xc000c3a611Cannot initialize volume for meta-data file %1!
0xc000c3a711Cannot load meta-data file %1!
0xc000c3aa11KeyRules library initialization failed.
0xc000c3ab11Checksum library initialization failed.
0xc000c3b811Cannot truncate file %1 to zero size!
0xc000c3d311Error:
0xc000c3d511Incompatible switches detected!
0xc000c3d911The system cannot find the file name specified.
0xc000c3de11Failed to open volume: %1
0xc000c3df11Failed to dismount the volume: %1
0xc000c3e011Failed to lock the volume: %1
0xc000c3e111Failed to set file pointer!
0xc000c3e211Failed to read file!
0xc000c3e311Failed to query file size for file: %1
0xc000c3ed11Failed to obtain container range for leaked range.
0xc000c3ee11Encountered corruption (LCN in use but unallocated) at LCN 0x%1!016llx!. Halting leak detection.
0xc000c3f111Found corruption (aliased refcount) in refcount analysis at CLCN %1!016llx! Real refcount: %2!d! Reported refcount: %3!d!. Stopping leak detection.
0xc000c3f311Unable to create event. GLE %1!d!
0xc000c3f411Unable to open file %1!s!. GLE %2!d!
0xc000c3f511Error GLE:%1!d!
0xc000c3f611Unable to lock drive %1!s!. GLE: %2!d!
0xc000c3f711Unable to open drive %1!s!.
0xc000c3f811Unable to open %TEMP% path. GLE: %2!d!
0xc000c3f911Unable to build path.
0xc000c3fa11Failed to create temporary scratch file %1!s!. GLE: %2!d!
0xc000c3fb11Failed to set file pointer for file to %1!llu! bytes. GLE: %2!d!
0xc000c3fc11Failed to set EOF for file to %1!llu! bytes. GLE: %2!d!
0xc000c3fd11Failed to create virtual file mapping for file. GLE: %1!d!
0xc000c3fe11Failed to map virtual file into memory. GLE: %1!d!
0xc000c3ff11Failed to create scratch file for leak detection.
0xc000c40011Found aliased metadata tuple at LCN %1!016llx!. Stopping leak detection.
0xc000c40111Failed to create snapshot for leak detection. GLE: %1!d!
0xc000c40311Failed to mount the ReFS volume. NT: %1!08x!
0xc000c40411Failed to create transaction. NT: %1!08x!
0xc000c40511Failed to enumerate table: %1!s!. NT: %2!08x!
0xc000c40711The volume %1!s! is not a ReFS volume.
0xc000c40811Invalid thread count.
0xc000c40911The volume is an unsupported ReFS version. This utility supports versions up to %1!d!.%2!d!. Volume is %3!d!.%4!d!.
0xc000c40a11Leak detection and fixing did not complete successfully.
0xc000c40b11This program requires administrator privileges.
0xc000c40c11Unable to dismount drive %1!s!. GLE: %2!d!
0xc000c40d11Unable to unlock drive. GLE: %1!d!
0xc000c40e11There are not enough system resources to satisfy the requested operation.
0xc000c41211The volume contains an invalid or corrupt ReFS boot sector. The volume may not be a ReFS volume.
0xc000c41311Unable to initialize the Minstore library. NT: %1!08x!
0xc000c41411There was an error sparsing the scratch file. GLE: %1!d!
0xc000c41511There was an error reserving space for the scratch file. Your disk may be full.
0xc000c41711There was an error reading or writing from the scratch file. Your disk may be full.
0xc000c41811There was an error querying the volume for allocations.
0xc000c41911There was an error adding reserved ranges to the scratch file.
0xc000c41a11There was an error during verification pass 1.
0xc000c41b11There was an error during verification pass 2.
0xc000c41c11There was an error opening the ReFS volume in read/write mode for leak repairs. GLE: %1!d!
0xc000c41d11There was an error processing certain leaks. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc000c41e11There was an error initializing the repair engine. Leak detection is unable to continue.
0xc000c41f11Encountered corruption (Index allocated but free) at LCN 0x%1!016llx!. Halting leak detection.
0xc000c42411There was an error processing certain leaks. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc000c42611The supplied drive is mounted read-only or write protected.
0xc000c42711Leak detection found corruption in a directory. Please re-run leak detection with the "/a" switch or invoke "refsutil triage %1!s! /s %2!llu!".
0xc000c42911Leak detection found corruption for file ID 0x%1!016llx!`%2!016llx!.
0xc000c42b11An invalid directory ID was provided. The directory ID is the upper 64 bits of the file ID.
0xc000c42d11Error scrubbing file "%1!s!". Error: %2!d!
0xc000c42f11This volume cannot currently undergo triage. We are sorry for the inconvenience.
0xc000c43011Triage attempted to scrub the ID, but due to a file system limitation it cannot guarantee success.
0xc000c43111Triage failed with error %1!d!.
0xc000c43211Triage was unable to open file "%1!s!".
0xc000c43511There was an error fixing a hardlink leak. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc000c43811There was an error processing certain leaks. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc000c43b11There was an error fixing a hardlink leak. Not all leaks on the volume may have been fixed. NT: %1!08x!
0xc000c44111Failed to write file!
0xc000c44211Couldn't write boot sector!
0xc000c44311Couldn't read boot sector!
0xc000c44411Boot sector at 0x%1!llx! contains invalid value(s): Major version : %1!d! Minor version : %2!d! Bytes per sector : 0x%3!x! Sectors per cluster : 0x%4!x! Number of sectors : 0x%5!llx! Bytes per container : 0x%6!llx!
0xc000c44511Couldn't write primary boot sector!
0xc000c44611Boot sector at 0x%1!llx! has checksum failure!
0xc000c44811Found valid boot sector at 0x%1!llx! with: Cluster size : 0x%1!x! Number of Clusters : 0x%2!llx!
0xc000c44911Updated primary boot sector with mirror boot sector.
0xc000c44a11Couldn't write mirror boot sector!
0xc000c44c11Boot sector at 0x%1!llx! not readable.
0xc000c44d11Boot sector at 0x%1!llx! doesn't appear to be ReFS.
0xc000c45611An instance of refsutil already exists for drive %1!s!.
0xc000c45811Scan state file TotalScanUnitCount (0x%1!llx!) does not match that of the current volume. The current volume has 0x%2!llx! LCNs in it. Please specifies the correct volume or working directory.
0xc000c45911Current LCN (0x%1!llx!) scanned larger than TotalScanUnitCount (0x%2!llx!) of the volume in the scan state file. Please starts with an empty working directory.
0xc000c46111Cannot open file %1 for read access!
0xc000c46e11Failed to create allocation state log file %1!s!. GLE: %2!d!
0xc000c46f11Failed to write to allocation state log file. GLE: %1!d!
0xc000c47111Unable to compress volume. GLE: %1!d!
0xc000c47211Unable to query volume compression information. GLE: %1!d!
0xc000c47411Leak detection is currently unsupported on volumes utilizing compression.
0xc000c47611Invalid number of partitions for the hash index.
0xc000c47711Invalid chunk size for dedup; must be either 4096 or 65536 (bytes).
0xc000c47811Invalid maximum CPU utilization value; must be between 1-100.
0xc000c47c11Unable to optimize storage. GLE: 0x%1!x!
0xc000c47d11Invalid maximum number of files concurrently opened for optimization; must be between 1-512
0xc000c47f11Unable to set volume heat parameters. GLE: %1!d!
0xc000c48111Unable to query volume heat parameters. GLE: %1!d!
0xc000c49911Checksum objects initialization failed.
0xc000c49a11Compression library initialization failed.
0xc000c49b11Sector size of 0x%1!d! is invalid.
0xc000c49c11Failed to create event. GLE %1!u!.
0xc000c49d11Failed to read boot sector. GLE %1!u!.
574 entries