# Why doesn't delete mean delete?

**URL:** <https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685>\
**Category:** Factual Questions\
**Created:** [July 19, 2012, 5:22am UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685 "2012-07-19T05:22:48Z")\
**Posts on this page:** 20\
**Page:** 5

<div class="post-metadata">

**Author:** ![Victor\_Charlie](https://avatars.discourse-cdn.com/v4/letter/v/7ea924/32.png) [@Victor\_Charlie](https://boards.straightdope.com/u/Victor_Charlie)\
**Post date:** [July 20, 2012, 2:19am UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/81 "2012-07-20T02:19:36Z")

</div>

> [@gazpacho](#):
>
> So delete does not mean gone forever in most computer contexts and hasn’t for a very very long time.

Cntl-Z is an intentional action, like removing something from the trash bin before the collector takes it away. If you don’t cntl-z, once you close the program those deleted items don’t hang around until something else eventually overwrites them, they are gone forever.

---

<div class="post-metadata">

**Author:** ![gazpacho](https://avatars.discourse-cdn.com/v4/letter/g/6f9a4e/32.png) [@gazpacho](https://boards.straightdope.com/u/gazpacho)\
**Post date:** [July 20, 2012, 2:29am UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/82 "2012-07-20T02:29:18Z")

</div>

> [@Lukeinva](#):
>
> _Some_ computer contexts. On the big mainframes (MVS) when a dataset is deleted it is gone. And it is not retrievable; there is no undelete or ctrl-z end of story. The only way to recover it is to restore it, and the source is from a backup which is intentionally taken (usually nightly). This is the only way to restore a dataset practically.
> 
> In fact, with RAID 5 (or 6 I forget which) it is almost impossible to ‘go to the disk’ and recover the tracks in raw format because the tracks are written in segments across 5 (or 6) disks in the array which only DFP keeps track of, or the internals of the machine. In the days of real 3390s retrieving data from one of the disks was probably something that could be accomplished but I never saw it.
> 
> In practice when you issue a delete command your data is gone. Unless you have some such undelete or unerase utility, _and_ a lot of luck that nothing else was written to the disk before attempting a recover. Disassembling a hard drive to recover data is ridiculously hard and incredibly impractical that it isn’t a solution for nearly every computer user.
> 
> This is what made the Windows recycle bin a very nice invention.

If we want to bring things out of the home computer era it starts to get really hard to reliably erase a file. Where I work the unix computers have a huge set of backups. There are hourly backups that are captured 1, 2 and 3 hours ago, three sets of daily backups and three sets on monthly backups. People invest a lot of time and money into not deleting files.

---

<div class="post-metadata">

**Author:** ![jtur88](https://avatars.discourse-cdn.com/v4/letter/j/e9c0ed/32.png) [@jtur88](https://boards.straightdope.com/u/jtur88)\
**Post date:** [July 20, 2012, 1:21pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/83 "2012-07-20T13:21:09Z")

</div>

Is this something like the difference between “junk” and “trash” in my e-mail program?

And if I go back to edit this post, what is the difference between “delete” and “cancel”?

---

<div class="post-metadata">

**Author:** ![fumster](https://avatars.discourse-cdn.com/v4/letter/f/e9c0ed/32.png) [@fumster](https://boards.straightdope.com/u/fumster)\
**Post date:** [July 21, 2012, 3:20pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/84 "2012-07-21T15:20:52Z")

</div>

> [@Victor\_Charlie](#):
>
> Again, what happens when you highlight text and hit the delete button? Don’t pretend this isn’t relevant with respect to how the average computer user interprets the word.

It removes the word from view unless you hit “un-do”. Similar to the recycle bin, no?

---

<div class="post-metadata">

**Author:** ![fumster](https://avatars.discourse-cdn.com/v4/letter/f/e9c0ed/32.png) [@fumster](https://boards.straightdope.com/u/fumster)\
**Post date:** [July 21, 2012, 3:55pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/85 "2012-07-21T15:55:26Z")

</div>

It seem like people are conflating three things:

1. Removing a file from the file system. For efficiency, this is done just writing as little as possible to disk. Depending on the implementation, you might have to write to just a few disk blocks to have all the blocks in the file placed on an unused block queue. Individual data blocks are still readable. Whole files might be retrievable , but it is non-trivial and depends on luck and knowledge of the underlying file system.

2. Modern “delete” which takes the file and moves it to the recycle directory . Recovery is trivial.

3. Writing over the contents of disk blocks so that there is no way of recovering data.

---

<div class="post-metadata">

**Author:** ![RaftPeople](https://avatars.discourse-cdn.com/v4/letter/r/6f9a4e/32.png) [@RaftPeople](https://boards.straightdope.com/u/RaftPeople)\
**Post date:** [July 21, 2012, 5:20pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/86 "2012-07-21T17:20:53Z")

</div>

> [@Victor\_Charlie](#):
>
> The OP clearly relates to the elimination of files from a computer hard drive,…

And it is exactly where the OP makes a mistake.

From the OS perspective, the term “delete” refers to the LOGICAL view of the system, not the physical view. A deleted object is no longer available to be referenced or acted upon (typically) by the functions provided, but it says nothing about how the system stores data.

Thinking that you can infer from a logical action what the underlying physical implementation looks like is a mistake, certainly a natural one for non-computer scientists, but still a mistake.

---

<div class="post-metadata">

**Author:** ![Dog80](https://avatars.discourse-cdn.com/v4/letter/d/6bbea6/32.png) [@Dog80](https://boards.straightdope.com/u/Dog80)\
**Post date:** [July 21, 2012, 6:25pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/87 "2012-07-21T18:25:01Z")

</div>

> [@Lukeinva](#):
>
> :dubious:
> 
> Undelete is part of the PC-Tools command set; it’s not an original PC- or MS-DOS command. And yes we all know that the operating system simply marks the sector of disk as available but that is knowledge that everyday users don’t know.

I am quite sure undelete was included from MS-DOS 5.0 and onwards

---

<div class="post-metadata">

**Author:** ![Measure\_for\_Measure](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/measure_for_measure/32/557_2.png) [@Measure\_for\_Measure](https://boards.straightdope.com/u/Measure_for_Measure)\
**Post date:** [July 23, 2012, 12:34am UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/88 "2012-07-23T00:34:07Z")

</div>

MS-DOS 5.0 was released in [May 1990](https://en.wikipedia.org/wiki/MS-DOS) and was the first DOS version to include undelete. Microsoft licensed the technology from Central Point Software PC Tools. MS DOS 1.0 was released with the IBM PC in 1982.

The window for MS-DOS 5.0 was short: Windows 3.1 was released in March 1992 and the buggier Windows 3.0 was introduced in 1990. Those versions of Windows were built on top of DOS admittedly.

---

<div class="post-metadata">

**Author:** ![TonySinclair](https://avatars.discourse-cdn.com/v4/letter/t/49beb7/32.png) [@TonySinclair](https://boards.straightdope.com/u/TonySinclair)\
**Post date:** [July 23, 2012, 3:40am UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/89 "2012-07-23T03:40:15Z")

</div>

I have the opposite problem as the OP. I cannot understand why there are still programs, like Winrar, that do not give you the option to use the Recycle Bin when they delete files. I mean, it’s right there. You don’t have to make it the default, but at least give us the option.

---

<div class="post-metadata">

**Author:** ![fumster](https://avatars.discourse-cdn.com/v4/letter/f/e9c0ed/32.png) [@fumster](https://boards.straightdope.com/u/fumster)\
**Post date:** [July 23, 2012, 3:09pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/90 "2012-07-23T15:09:26Z")

</div>

> [@Victor\_Charlie](#):
>
> Well, the problem, obviously, comes from the fact that the majority of regular people don’t know all the distinctions, nor should they be expected to. Maybe this means that early programmers should’ve come up with a command that didn’t leave the impression that a file was gone forever.

Maybe they should have called it \*remove \*and abbreviated it to “rm”.

---

<div class="post-metadata">

**Author:** ![Victor\_Charlie](https://avatars.discourse-cdn.com/v4/letter/v/7ea924/32.png) [@Victor\_Charlie](https://boards.straightdope.com/u/Victor_Charlie)\
**Post date:** [July 23, 2012, 5:03pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/91 "2012-07-23T17:03:58Z")

</div>

> [@fumster](#):
>
> Maybe they should have called it \*remove \*and abbreviated it to “rm”.

That’s a fine suggestion.

---

<div class="post-metadata">

**Author:** ![Victor\_Charlie](https://avatars.discourse-cdn.com/v4/letter/v/7ea924/32.png) [@Victor\_Charlie](https://boards.straightdope.com/u/Victor_Charlie)\
**Post date:** [July 23, 2012, 5:08pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/92 "2012-07-23T17:08:34Z")

</div>

> [@fumster](#):
>
> It removes the word from view unless you hit “un-do”. Similar to the recycle bin, no?

Yes, but once you close a program the cached words are gone for good, there’s no undoing. Plus, there’s a limit on the number of “undos” stored in cache. Files will hold in the bin indefinitely until you delete them from there.

---

<div class="post-metadata">

**Author:** ![Victor\_Charlie](https://avatars.discourse-cdn.com/v4/letter/v/7ea924/32.png) [@Victor\_Charlie](https://boards.straightdope.com/u/Victor_Charlie)\
**Post date:** [July 23, 2012, 5:12pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/93 "2012-07-23T17:12:12Z")

</div>

> [@RaftPeople](#):
>
> And it is exactly where the OP makes a mistake.
> 
> From the OS perspective, the term “delete” refers to the LOGICAL view of the system, not the physical view. A deleted object is no longer available to be referenced or acted upon (typically) by the functions provided, but it says nothing about how the system stores data.
> 
> Thinking that you can infer from a logical action what the underlying physical implementation looks like is a mistake, certainly a natural one for non-computer scientists, but still a mistake.

Yes, from the OS perspective. From most users’ perspective, delete doesn’t mean it’s been made unavailable. It means it’s gone. That’s the viewpoint taken by the OP.

---

<div class="post-metadata">

**Author:** ![fumster](https://avatars.discourse-cdn.com/v4/letter/f/e9c0ed/32.png) [@fumster](https://boards.straightdope.com/u/fumster)\
**Post date:** [July 23, 2012, 5:37pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/94 "2012-07-23T17:37:35Z")

</div>

> [@Victor\_Charlie](#):
>
> Yes, but once you close a program the cached words are gone for good, there’s no undoing. Plus, there’s a limit on the number of “undos” stored in cache. Files will hold in the bin indefinitely until you delete them from there.

In windows and many other programs the paste buffer is available after the program closes.

You should also take a look sometime at the metadata that word processing programs store in a file. There may be a list of all the revisions made to the file, who created the file, etc. There is also metadata stored in pictures taken with your digital camera. This may include the date, time, and geo-coordinates of where it was taken.

And BTW, Microsoft Paint doesn’t use real paint.

---

<div class="post-metadata">

**Author:** ![Unintentionally\_Blank](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/unintentionally_blank/32/5418_2.png) [@Unintentionally\_Blank](https://boards.straightdope.com/u/Unintentionally_Blank)\
**Post date:** [July 23, 2012, 8:08pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/95 "2012-07-23T20:08:50Z")

</div>

It’s both better and worse than y’all have stated thusfar in the thread.

Example the first:

1. Your iPhone’s flash storage is encrypted by default. Good encryption as a rule, is indistinguishable from random noise. Lose the decryption key and the data is lost. Due to the design of the phone, EVEN IF you restored a PERFECT image of that data, PLUS KEY to another iPhone, it would be unrecoverable as aspects of the encryption rely on aspects of that particular phone.

2. There is, curiously enough, _No such thing_ as a DoD wipe. (See Data Sanitization, here: [National Industrial Security Program - Wikipedia](http://en.wikipedia.org/wiki/DOD_5220.22-M) ) As of the June 2007 edition of the DSS C&SM, overwriting is no longer acceptable for sanitization of magnetic media; only degaussing or physical destruction is acceptable.

3. last week I was able to boot a RAID 5 server with deleted files and successfully restore them…at the OS level the files were still recoverable.

4. At the same time, the ‘clean room’ recovery techniques really aren’t feasable any more. Areal density is just too high if there isn’t any residual disk structure information to go on. A single wipe of zeros will effectively make it forensically useless.

---

<div class="post-metadata">

**Author:** ![clairobscur](https://avatars.discourse-cdn.com/v4/letter/c/839c29/32.png) [@clairobscur](https://boards.straightdope.com/u/clairobscur)\
**Post date:** [July 24, 2012, 12:58pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/96 "2012-07-24T12:58:42Z")

</div>

> [@BigT](#):
>
> Deletion takes time. Why would you want to waste time deleting something rather than just write on top of it when the time comes?.

At first I thought the same but then I’m remembering my recent attempt to recover an accidentally deleted file, with the computer throwing at me 35 000 recovered files. If I actually overwrote deleted files once in a while, I maybe would have had, say, 1000 or 2000 files to go through and might actually have found the file I was searching for.

Or maybe I could find a tool better at sorting out recovered files…

---

<div class="post-metadata">

**Author:** ![DrCube](https://avatars.discourse-cdn.com/v4/letter/d/a3d4f5/32.png) [@DrCube](https://boards.straightdope.com/u/DrCube)\
**Post date:** [July 24, 2012, 5:04pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/97 "2012-07-24T17:04:28Z")

</div>

> [@Victor\_Charlie](#):
>
> [QUOTE=fumster]  
> Maybe they should have called it remove and abbreviated it to “rm”.

That’s a fine suggestion.  
[/QUOTE]

:smack:

> **[Unix](https://en.wikipedia.org/wiki/Unix)**
>
> Early research and development:
> Merging the networks and creating the Internet:
> Commercialization, privatization, broader access leads to the modern Internet:

> **[rm (Unix)](https://en.wikipedia.org/wiki/Rm_%28Unix%29)**
>
> rm, short for remove, is a shell command for removing files (which includes special files such as directories) from the file system. The command may not actually delete a file (release its storage for reuse) since it only unlinks it – removes a hard link to a file via the unlink() system call. If a file has multiple links and less than all are removed, then the file remains in the file system; accessible via its other links. When a file's only link is removed, then the file is deleted – releasing...

> **[srm (Unix)](https://en.wikipedia.org/wiki/Srm_%28Unix%29)**
>
> srm (or Secure Remove) is a command line utility for Unix-like computer systems for secure file deletion. srm removes each specified file by overwriting, renaming, and truncating it before unlinking. This prevents other people from undeleting or recovering any information about the file from the command line.
> Attempting to secure delete a file with multiple hard links results in a warning from srm stating that the current access path has been unlinked, but the data itself was not overwritten...

---

<div class="post-metadata">

**Author:** ![Steve\_MB](https://sea3.discourse-cdn.com/straightdope/user_avatar/boards.straightdope.com/steve_mb/32/5339_2.png) [@Steve\_MB](https://boards.straightdope.com/u/Steve_MB)\
**Post date:** [July 24, 2012, 5:55pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/98 "2012-07-24T17:55:38Z")

</div>

> [@Lemur866](#):
>
> Bottom line is that normal deletion of your information would be enough to stop 99% of all attempts to recover that data, simply because nobody cares about your data. But if someone is willing to spend hundreds of thousands of dollars to recover your data, then physical destruction of your media is the only possible standard.

Not exactly, if by “normal deletion” you mean “select the file and hit the delete key”. Data deleted that way can usually be recovered easily with fairly simple software tools if that part of the disk hasn’t happened to get overwritten by something else. The bottom line is that if you keep anything on your computer that could cost you money or embarrassment if somebody dug it up, it’s worth doing a secure delete. That said, a simple write-over-everything-once secure delete (as opposed to one of the high-level multi-stage overwrite protocols) will protect the data from anyone who isn’t willing to spend thousands of dollars or the equivalent in in-house resources.

---

<div class="post-metadata">

**Author:** ![yoyodyne](https://avatars.discourse-cdn.com/v4/letter/y/a9a28c/32.png) [@yoyodyne](https://boards.straightdope.com/u/yoyodyne)\
**Post date:** [July 24, 2012, 9:23pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/99 "2012-07-24T21:23:46Z")

</div>

> [@Steve\_MB](#):
>
> Not exactly, if by “normal deletion” you mean “select the file and hit the delete key”. Data deleted that way can usually be recovered easily with fairly simple software tools if that part of the disk hasn’t happened to get overwritten by something else. The bottom line is that if you keep anything on your computer that could cost you money or embarrassment if somebody dug it up, it’s worth doing a secure delete. That said, a simple write-over-everything-once secure delete (as opposed to one of the high-level multi-stage overwrite protocols) will protect the data from anyone who isn’t willing to spend thousands of dollars or the equivalent in in-house resources.

If you have a solid-state drive, overwrite isn’t effective. The data has to have been encrypted with a key that is no longer available, or the entire drive wiped with the ATA secure erase command.

---

<div class="post-metadata">

**Author:** ![sid\_manny](https://avatars.discourse-cdn.com/v4/letter/s/ce73a5/32.png) [@sid\_manny](https://boards.straightdope.com/u/sid_manny)\
**Post date:** [July 31, 2012, 9:30pm UTC](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685/100 "2012-07-31T21:30:09Z")

</div>

Hi,

```
 There is one software that can be used to delete the files permanently from the storage device. A couple of days ago I was able to [shred files from SD card](http://www.myfileshredder.com/shred-files-from-sd-card) by using this software. With this software it is possible permanently delete the files from hard drive, memory card, external hard drive and pen drive. You can also [download](http://www.myfileshredder.com/demo/fileshredder.exe) the demo tool from the internet and test the software.
```

[Previous page](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685.md?page=4)

[Next page](https://boards.straightdope.com/t/why-doesnt-delete-mean-delete/628685.md?page=6)
