Call us — 0161 871 0788
Mon–Fri · 9am–5:30pm · No fix, no fee
Start a free diagnostic →

Data Recovery Case File · Desktop Externals & Aging Drives · Case 2,050 · Milestone

He Got the Cause Wrong and the Significance Right, and Only One of Those Decides Anything

The two thousand and fiftieth file in this archive is about what an observation is actually for. Transfers slowing to a crawl immediately after a system update, where "I knew something wasn't right" — so he began copying files off, got some of them, and then the drive disappeared from the file browser entirely. He blamed the update, which was almost certainly innocent. It made no difference, because he acted on the right thing.

Media1TB hard drive — transfer performance collapsing before ceasing to enumerate; partial backup completed during the intervening period
Reported situationSystem update applied to the host machine · file transfer speed observed to collapse immediately afterwards · owner judging the change significant · backup of the drive's contents commenced · backup partially completing · drive subsequently absent from the file browser · remaining content sought
Fault classProgressive read degradation surfacing as latency before failure — retry behaviour manifesting only as elapsed time; partial extraction achieved within the interval before enumeration was lost
Equipment usedReported timing assessed against mechanism rather than accepted as causal · partial backup inventoried first to define the remaining scope · imaged write-blocked under strict per-sector timeouts with unrecovered regions taken in priority · degraded regions revisited across later passes · recovered content reconciled against the partial backup

The decode: five things this case establishes, at a milestone

The first — the cause he identified was almost certainly not the cause. A system update does not make a drive slow. It writes files, restarts the machine and changes software; none of that alters how quickly a disk returns data. What updates do is read and write a great deal at once, which is why they so often coincide with the moment a failing drive is finally noticed. The update was the load that surfaced the fault, not the fault.

Why the misattribution was entirely reasonable: the timing was exact. Something changed, and immediately afterwards something was wrong. Attributing cause to sequence is how anybody reasons, and there was no other candidate visible from where he stood.

The second — the observation he made was the right one, and it is the most reliable early warning there is. A drive that is failing to read cleanly does not announce it. It retries, silently, in hardware, and a retry costs nothing but time. So degradation shows up first and only as slowness — a transfer that used to take a minute taking twenty. Nothing reports an error, because nothing has errored yet: every read eventually succeeded. The drive is telling the truth in the only language it has.

The third, and it is the whole point of this milestone — he acted on the significance without establishing the cause, and that is the correct order. He did not investigate the update. He did not search for others reporting the same thing, or attempt to roll it back, or wait to see whether it settled. He judged that something was wrong and began copying immediately, and the copying is what produced the only files anyone now has from that window.

Why the order matters so much: diagnosis takes time and the window was closing. Every hour spent identifying the cause is an hour the drive spends degrading, and a correct diagnosis arrived at after the drive stops enumerating is worth nothing at all. The response does not depend on the diagnosis — stop using it, copy what matters, in order of importance — and that response is identical whether the cause is an update, a cable, a controller or a failing head.

The fourth — partial is a real outcome and deserves naming as one. His backup was partially successful, which reads like a failure and is not. Those files exist because of a decision made on a hunch, and they would not exist otherwise. The material recovered in that window came out easily, at no cost, from a drive that would shortly stop responding. Nothing performed afterwards, by anyone, will be as cheap or as certain as the copying he did that evening.

Why he stopped being able to continue: the drive lost enumeration. Degradation that showed as slowness progressed to the point where the drive could no longer complete the exchange that announces it to the machine — the same fault, further along. The slowness was not a separate problem that later became this one. It was this one, earlier, when it could still be worked with.

The fifth, and it is what this site is about. An observation's value lies in what it prompts, not in what it explains. He could not identify what was wrong and he did not need to. The single fact available to him — this is slower than it should be — carried no diagnostic content whatever, and carried complete instructional content: act now. Understanding is a luxury of hindsight; response is a decision made in ignorance, or not at all.

The principle, stated plainly for the two thousand and fiftieth file: when something changes for the worse and you cannot explain it, copy first and understand later. The explanation will still be available afterwards. The data may not be.

On the bench

Reported timing was assessed against mechanism rather than accepted as causal — system updates performing substantial reading and writing without altering how quickly a disk returns data, so they surface existing degradation rather than causing it. Failing reads manifest as retries performed silently in hardware, costing only time, so degradation appears first as latency with no error reported. Loss of enumeration is the same fault advanced. The partial backup was inventoried first to define the remaining scope.

The outcome

Timing assessed against mechanism, the partial backup inventoried to define remaining scope, and unrecovered regions captured in priority under capped timeouts. Free assessment, one fixed written figure including VAT; where a drive has to be opened, 50% of parts and labour is payable upfront with the balance only on success — otherwise no recovery, no fee. The decode, for the two thousand and fiftieth file: you blamed the wrong thing and did the right thing, and only the second mattered. The files you copied that evening exist because you acted before you understood.

When something gets slower and you cannot explain why

Copy first and work out why afterwards — the explanation will still be there later and the data may not. A drive failing to read cleanly retries silently in hardware, and a retry costs only time, so degradation shows up first and only as slowness, with no error reported because every read eventually succeeded. That makes a sudden collapse in transfer speed one of the most reliable early warnings you will get. Don't spend the window diagnosing: the right response is the same whatever the cause, and it is to copy what matters most, first.

Everything suddenly much slower than it was?
Copy now, diagnose later — call Manchester Data Recovery on 0161 871 0788; timing assessed against mechanism, partial backups inventoried to define scope, unrecovered regions captured in priority.
Request a quote online →

Our case files are drawn from genuine enquiries received by our laboratory over the past ten years, anonymised to protect client confidentiality. Each one describes the diagnostic and recovery procedure our engineers apply to that fault, using the equipment listed.