Using diskpart to detect hidden files

kiwipoppy

New member
Local time
10:17 AM
Messages
14
Location
nz
Hi everyone.still attempting to manage my computer issues.previously posted about losing my firewall,and learnt some very useful stuff.reinstalling windows 7 got me back firewall but also the same probably hijacked,weird hybrid of XP and 7,with all the system files,and drivers frozen at 14th July 2009.Windows updates won't instal.
Previous thread I was advised to scrub the harddisk using diskpart,which I am not confident doing,however I have been trying to learn about disks,and partition cos that is an area I do not really understand(one of the many!)
I have been using a partion management tool,not to change anything,just to find out more
It raises more questions than it answers
My current and only disk listed is disk 1 partition 2.the boot is part of this
So where and what is partition 1?
Needlesss to say I have not been creating,and messing around with anything like this.no one else
access to my computer except my hard to detect hijacker
Don't know if it is relevant but a surface test for bad sectors would only go to 75percent
Hope you can help
 

My Computer

OS
win 7 home prem 64 bit
are you trying to clean your entire hard drive? or just certain partitions?
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Pandora (computer name)
OS
Windows 7 x64 / Windows Server 2008 / Linux (Redhat & Deb distros) / OS X / More
CPU
AMD FX 8150 Eight-Core Processor 4.23 Ghz OC
Motherboard
ASUS SaberTooth 990FX
Memory
G.SKILL Ripjaws X Series 32GB (4 x 8GB) DDR3 SDRAM 1333
Graphics Card(s)
2X Radeon HD 4870 CrossFire X
Sound Card
Onboard and loving it
Monitor(s) Displays
2x HP w2480 Wide LCD
Screen Resolution
1920x1200 each
Hard Drives
RAID (6x0 Seagate Barracuda 7200 rpm 32 MB cache 500Gb SATA)
PSU
Antec 850 Watt
Case
Antec 900
Cooling
Lots of fans
Keyboard
Logitech
Mouse
Rat 9
Internet Speed
40 Mbps Down 5 Mbps Up
Antivirus
AVG
Browser
Chrome, Firefox, IE
Other Info
My main desktop
if you want to cleanly wipe everything on your hard disk, you can just use DBAN.

Darik's Boot And Nuke | Hard Drive Disk Wipe and Data Clearing

But this will remove the ability to recover any files you have on it currently. so be careful.

Also make sure no other internal or external hard drives are connected that you don't want erased as well when using this software.

But like i said, I'm not sure what exactly your wanting to do here. this is just a really efficient way to completely erase everything on your disk and give you a fresh start.

If I where you, I'd read about the software on the site before using it. it will wipe everything connected to the computer that has to do with storage.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Pandora (computer name)
OS
Windows 7 x64 / Windows Server 2008 / Linux (Redhat & Deb distros) / OS X / More
CPU
AMD FX 8150 Eight-Core Processor 4.23 Ghz OC
Motherboard
ASUS SaberTooth 990FX
Memory
G.SKILL Ripjaws X Series 32GB (4 x 8GB) DDR3 SDRAM 1333
Graphics Card(s)
2X Radeon HD 4870 CrossFire X
Sound Card
Onboard and loving it
Monitor(s) Displays
2x HP w2480 Wide LCD
Screen Resolution
1920x1200 each
Hard Drives
RAID (6x0 Seagate Barracuda 7200 rpm 32 MB cache 500Gb SATA)
PSU
Antec 850 Watt
Case
Antec 900
Cooling
Lots of fans
Keyboard
Logitech
Mouse
Rat 9
Internet Speed
40 Mbps Down 5 Mbps Up
Antivirus
AVG
Browser
Chrome, Firefox, IE
Other Info
My main desktop
Thanks for replying.at this stage I am just trying to find where partition 1 is and what partition1 might contain.
 

My Computer

OS
win 7 home prem 64 bit
Download Partition Wizard Free, get it here Best Free Partition Manager Freeware and free partition magic for Windows 7, Windows 8, Windows Vista and Windows XP 32 bit & 64 bit. MiniTool Free Partition Manager Software Home Edition.

Install and open Partition Wizard and you will see all the partitions on your drive.

To see the contents of a partition click once on the partition, then on the left side, under Operations click on Explore Partition. You will be able to see all folders and files.

Be careful about making any changes to a partition without getting advice from a expert on SevenForums!
 

My Computer

Computer Manufacturer/Model Number
HP p6370t
OS
Windows 7 Home Premium 64bit
CPU
i3-530
Motherboard
MSI - IONA
Memory
8 Gb
Graphics Card(s)
onboard
Sound Card
onboard
Monitor(s) Displays
Dell ST2400
Screen Resolution
1920x1080
Hard Drives
Intell 520 SSD 120Gb, WD6400AAKS, 640Gb & WD USB MyBook 1Tb
Internet Speed
1.5 Mmbps, Hughes Satellite
Thanks for your advice.currently can't download anything from the internet.but the disk tool I do have does not show partition 1 an I would guess it is well hidden.
However on looking thru the registry,I did find a reference under HKLM/system/setup
The right hand panels show following

Clone tag Jul 13 2009
OS loader. \
System drive letter DWord. (1)
System partition. \device\harddisk volume 1
Working directory. C:\windows\panther

The date is significant because that's when all these issues started,and even now after several reinstall the system files are frozen at that date,creating a weird hybrid of XP and windows 7
Can anyone exlain that setup reference,and does it indicate the presence of a hidden drive,which is what I suspect
 

My Computer

OS
win 7 home prem 64 bit
In the search box of the start menu, enter Disk Management. Click on "Create and format hard disk partitions".

You will see all partitions on every drive. Right click on a partition and select "Explore".

But... with only one drive, it should be listed as Disk 0. Partitions are not numbered, but use letters beginning with "C". Hidden partitions do not have a letter assigned.
 

My Computer

Computer Manufacturer/Model Number
HP p6370t
OS
Windows 7 Home Premium 64bit
CPU
i3-530
Motherboard
MSI - IONA
Memory
8 Gb
Graphics Card(s)
onboard
Sound Card
onboard
Monitor(s) Displays
Dell ST2400
Screen Resolution
1920x1080
Hard Drives
Intell 520 SSD 120Gb, WD6400AAKS, 640Gb & WD USB MyBook 1Tb
Internet Speed
1.5 Mmbps, Hughes Satellite
You are right,disk management shows disk 0 with an unallocated 101mb which I believe is normal,and the only primary partition
Is my c drive(not counting removables)
Disk 1 is missing from the list entirely
So does this or above registry entry point to existence of hidden partition,or other area.
And if so any other ideas on how to actually find out what and where it is
Thanks
 

My Computer

OS
win 7 home prem 64 bit
You may want to look at Hirens Boot CD, it comes with a plethora of tools including some partition tools, which are good at locating cloaked partitions. A cloaked partition generally indicates rootkit activity. Alureon, for example, writes it's own hidden boot partition.

Hiren's BootCD 15.1 - All in one Bootable CD » www.hiren.info

Be cautious when using these tools. When in doubt, Google it or withhold any action until you can find out for sure.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Dell Hell oh Well
OS
Win 7 32 Home Premium, Win 7 64 Pro, Win 8.1, Win 10
CPU
Intel Core 2 Duo 2.93GHz
Memory
Not much with my ADHD
Graphics Card(s)
ATI Radeon HD 4350
Monitor(s) Displays
24" HDTV/Monitor
Screen Resolution
Blurry after a Scotch or 2
Hard Drives
1 HDD 250 GB, 1 HDD 1 TB, 3 - 1 TB Externals
Case
Don't get on my case...man :D
Cooling
I have an Air Conditioner & Diet Pepsi
Keyboard
Saitek Cyborg
Mouse
10 yr old MS optical mouse that still works
Internet Speed
Never fast enough
Antivirus
Various
Browser
Various
Disk Management shows all partitions on your drive. There are no hidden partitions or disks. If the unallocated space is to the right of the C partition you could extend C to use that space.

Sorry, but I keep away from exploring around the registry. Hopefully someone will come along and explain what you are seeing in the registry.

Back to your original problem: Where did you get your install disk? Did you download it or is it from MS or a computer maker. Can you borrow a disk of the same version and do another clean install?
 

My Computer

Computer Manufacturer/Model Number
HP p6370t
OS
Windows 7 Home Premium 64bit
CPU
i3-530
Motherboard
MSI - IONA
Memory
8 Gb
Graphics Card(s)
onboard
Sound Card
onboard
Monitor(s) Displays
Dell ST2400
Screen Resolution
1920x1080
Hard Drives
Intell 520 SSD 120Gb, WD6400AAKS, 640Gb & WD USB MyBook 1Tb
Internet Speed
1.5 Mmbps, Hughes Satellite
if u think u got someone on ur sys discon./remove all nic's and wireless kb/mouse go oldskool. 2) do lots of research or get some1 who is very good with network admin. or a pentest :p gl lol... Be carefull with hirens study up 1st. I am very experianced with vir/mal/rootkit/etc... Not so much with Hacker's ( not scriptkiddies) til i wad hacked by a god more like a demon over 3mo. Ago Still dealing with it. Avast/ zone/mal b./tdss/you name it could not help win fw is a joke so is zone and avast's fw didnt stop him only thing to keep him at bay was teamV and comodo's FW anything else from cmdo is junk. After 4 format and mbr wipes 1 dod short (dban) n clean installs( till wifi nic is put on )after prep. For war under group /user sec policy/settings etc so everything mmc can add that any rds would use i preemptively blocked including all ports in/out cause my admin acct. was block by a rc0 sys (super user) think ur in ctrl as admin ha nt sys dont even need 2know ur pass to change it thanks to HBCD15 i got back in pwdless logon booyaa:) then after 1mo. Of fightin n hjt post on bleep.C With no luck got on geek..... Remote access for help for 26 hours (3 days) after i picked up a linux box on 1 of my ports that i could never see and they didnt believe me they couldnt see anything made me feel crazy so did BC forum got locked out of win cause of geek$$$ and hdd in 8 diff ext. could not format with ntfs was able to ext4 so went to ubuntu used wireshark which rocks could see the spoofed ip/mac which was proxy or 0.0.0.0 or *.* then found i was not loco also i was on a proxy OS couldnt see then l8er find out i was dns poisened all while fighting for control of root on my sys till i was unable to inst. win linux or unix plus any live cd but good ol dos on floppy worked used dban could not remove hidden part. on drive flashed bios then new hdd got rooted before i could format same with 3rd current drive cause my bios is not flashing the dmi can not change it even hex bin editors new cmos so now i installed asus bios on my gbyte MB helped with vm part of dmi now got win to inst. on a logical partition and CHS mod. On a tb lba hdd boot thru HBCD cause pri. part. will not instal OS still get root b4 formt during post that changes the boot mgr and ntldr or config files for any OS or program to make life peachy now gpart grub paragon. Acronis etc anything on HBCD cannot del the hidden part. To get a the power back so i can get the rootkits/mbr/bios virus off before i reboot cause it starts autoruns from bios to hell even after short cmos and change cmos batt after leaving it out along with ram for hours. And flash with floppy w/o hdd or dvd or 6970 plugged in Save your sanity cause unless your lucky and get id theft or proof its a terrorist there is no help. Im still praying cause both my droids got rooted n proxied controled my wireless kb n mouse through ir without ir dongle bricked then they bricked my sim puk locked me then i throw infuse at wall lol get a sgs2 one week gets rooted and use accessability option to hear whats going on along with verbose logs of it all plus my gps thinking i was in 3 diff states sent google a msg along with req. to close my gmail acct. cause they r hijacked no response SGS2 sim was getting attk with incorrect pwd to puk lock thanks 2 acc. Opt. I heard it as he did the pull out batt go to a?? Store they plug it on goes into safemode ??? Yeah droid... works fine all bkrd apps were uninstld. Dont wanna look crazy so i exchange for a 4S which i hate but will not j/b cause opens up the door to get in or so i read.. saw xnu-root in debug logs and a little other wierd things but happy cause my (3G+) i mean 4G works doesnt change to cdma2 or gps think im two blocks from vatican (true story) and i get my calls and not deal with exorcims on my phone been two weeks 4S workin ok besides siri being bs. btw i tried calling a?&? tech support they respond with its impossible to hack (lol rofl) its a OS that most hackers love plus no os is perfectly secure but i?s is working for me now all that happened after vm had backdoor # change my pwd then i used admin option and changed pwd on land line. Anywho call me crazy i would 2 if i read this b4 knowing what can really be done with freq band control along with s.u remote access and using it to log to ur pc or bt wifi or ir to other devices. How about pc ram storing a virus check out mine or read a full tech guide on my micron chips in my gskill ram about the 128 k for write that will go away with time but not till bios is under control then ill put the mem out for a week or look into hard wire to drain all charge or your video cards bios getting infected so yea i get i sound crazy and dont blame you if you think so but in the next ten years it will be norm cause bios and hardware that can host it will no matter the complexity of such a task of small commands That turn into havok are on the horizon. Ill keep you posted op look into diskman grub4dos or gparted for your missing parts partmagic or ghost didnt help me see em none help me del incl dban or chown or root. If any one got any advice id lm all ears easy and know my way around or flame me as i too find clever comments amusing. Back to study for the war. May the shwartz be with you
 

My Computer

OS
64ult. 7 & vista now home premium 64 for good reason :p
Clone tag Jul 13 2009
OS loader. \
System drive letter DWord. (1)
System partition. \device\harddisk volume 1
Working directory. C:\windows\panther
System partition. \device\harddisk volume 1 = The volume/partition that your boot files are found on.

You only have one partition/volume, volume 1 ("C:").

Unallocated space means there is no partition assigned to that space. You could create a new partition here if you wanted but as it's only 101mb that would be basicly pointless. Like Bumpkin said you could extend C: to use that space if it's to the right of C: but if it's on the left you may or may not be able to do that. This would not be required if you preform a clean install.

Disk 1 is missing from the list entirely
Different partitioning/disk management programs will list disk differently. Disk Management will count your disk from 0 up others count from 1 up.

The best thing you could do would be to clean the hard drive and reinstall Windows. You will require a extra drive, internal or external to back up your data or you could use DVD's if you don't have to much.

The main thing is only back up your files, eg. music, pictures, documents, downloaded software and you may want to back up things like internet bookmarks, e-mails, etc...

Here's some links that may help,
http://www.sevenforums.com/tutorials/2670-partition-volume-extend.html
http://www.sevenforums.com/tutorials/52129-disk-clean-clean-all-diskpart-command.html
http://www.sevenforums.com/tutorials/219487-clean-reinstall-factory-oem-windows-7-a.html
 

My Computer

Computer Manufacturer/Model Number
Self built
OS
Windows 7 Ultimate x64
CPU
Intel Pentium Dual Core E5200 2.5GHz (3.77GHz OC)
Motherboard
Asus P5Q-E
Memory
Corsair 4GB DDR2 (4x1GB CM2X1024-6400C4)
Graphics Card(s)
Palit GeForce GTS 250 (1024MB)
Sound Card
On Board (ADI AD2000B 8ch HD)
Monitor(s) Displays
Samsung 32in LCD TV
Screen Resolution
1360x768
Hard Drives
2 x 1TB Samsung 103SJ (Raid0)
2 x External 500GB Samsung 502IJ (NexStar 3 HD Enclosures)
PSU
550W Antec Neo HE 550
Case
Antec P180
Cooling
Xigmatex Red Scorpion CPU Cooler. 3x120mm Fans
Keyboard
Logitech MX5000 Laser (Combo)
Mouse
Logitech MX5000 Laser (Combo)
Internet Speed
ADSL2+ (avg 10 Mbps Down, 0.80 Mbps up)
Other Info
Gigabyte GN-WP01GS 54g Wireless Lan Card
Windows comes preinstalled on HP computers here.there are no disks,you are expected to create your own,which is a waste of time,when you do what I did to transfer the problem over from my previous computer
I waited a year before buying a new computer,scanned my backup drive thoroughly and attempted to install only picture files.
Thought I was doing all the right things,but unfortunately I was wrong
However at least I can still use the computer,just can't get any security updates control the firewall,or stop the computer accessing various websites
Will keep trying to find out more,thanks for all your help,you are all great!
 
Last edited:

My Computer

OS
win 7 home prem 64 bit

My Computer

Computer Manufacturer/Model Number
HP p6370t
OS
Windows 7 Home Premium 64bit
CPU
i3-530
Motherboard
MSI - IONA
Memory
8 Gb
Graphics Card(s)
onboard
Sound Card
onboard
Monitor(s) Displays
Dell ST2400
Screen Resolution
1920x1080
Hard Drives
Intell 520 SSD 120Gb, WD6400AAKS, 640Gb & WD USB MyBook 1Tb
Internet Speed
1.5 Mmbps, Hughes Satellite
If you want to do a clean install then http://www.sevenforums.com/tutorials/219487-clean-reinstall-factory-oem-windows-7-a.html provides a link where you can download the Windows 7 ISO (3.1GB) and has a special note at the bottom for HP owners as well as additional help.

As I'm a user of Retail Windows only I cannot offer any real support, instead I would suggest posting in the provided link about any concerns you might have before proceeding. My main concern would be the Product Key and drivers.
 

My Computer

Computer Manufacturer/Model Number
Self built
OS
Windows 7 Ultimate x64
CPU
Intel Pentium Dual Core E5200 2.5GHz (3.77GHz OC)
Motherboard
Asus P5Q-E
Memory
Corsair 4GB DDR2 (4x1GB CM2X1024-6400C4)
Graphics Card(s)
Palit GeForce GTS 250 (1024MB)
Sound Card
On Board (ADI AD2000B 8ch HD)
Monitor(s) Displays
Samsung 32in LCD TV
Screen Resolution
1360x768
Hard Drives
2 x 1TB Samsung 103SJ (Raid0)
2 x External 500GB Samsung 502IJ (NexStar 3 HD Enclosures)
PSU
550W Antec Neo HE 550
Case
Antec P180
Cooling
Xigmatex Red Scorpion CPU Cooler. 3x120mm Fans
Keyboard
Logitech MX5000 Laser (Combo)
Mouse
Logitech MX5000 Laser (Combo)
Internet Speed
ADSL2+ (avg 10 Mbps Down, 0.80 Mbps up)
Other Info
Gigabyte GN-WP01GS 54g Wireless Lan Card
Back
Top