-
Ransomware attack..again
Yes I will change some of the security access, fact is it is really strange to get recurring infections. All my computers are mac, the only windows machine is the Wm in unraid, which I keep all the time shut down, I do not game online, and the qbittorent I use goes through a reverse proxy. plus my router is a custom made openwrt with recent patches etc. I somehow believe my Ip (that is a dynamic Ip with duckdns) has been registered after the first attack, and they keep on trying knocking on the exposed doors when I download something. by the way I use plex chmod script, hdd cache enabler script and the specific no ransom script, which actually locks every data preventing from being modified. And it works, because after this attack, in the folders where i have the movies I still have the original files together with a dummy file that should have replaced the original but…couldn’t so do you reasonably think I can keep the usb untouched and just format and new config?
-
Ransomware attack..again
I do not know the name, It looks like it did not encrypt the usb flash drive (which I keep on secure private), all shares affected, I’m using samba, I want to clean up everything but I would like to keep the usb key intact, do you think it is safe at this point to just wipe the array docker wm etc? homeserver-diagnostics-20230619-1657.zip
-
Ransomware attack..again
thanks for you reply, interesting point. I have plex, swag, double commander, duckdns and qbittorrent which is downloading to a separate Hd unassigned. the one I would think about could be Qbittorrent. other dockers are always shut off. going back to the question, should I erase everything (usb with os too) or can I just wipe off the Hdd and start a new config?
-
mo679 started following after installing My Servers plugin the upper right infos are gone! , Ransomware attack..again , HP Proliant / Workstation & unRaid Information Thread and 2 others
-
Ransomware attack..again
Hello all.. so I've been hit from a ransomware, It happened before, a year ago, I cleaned all the mess but I did not wipe off the Hard drives. Now happened again. all files locked again, the only machine affected is my Unraid server, I have multiple Mac connected and all look to be fine, I'm not mounting shares at the time. I think the ransomware is somehow resident in the server, because it ran autonomosly with Wm stopped and computer shut down. I have Swag installed, duckdns to resolve my IP address an use it mainly as plex server for my dvd collection. I also have a Qbittorren Docker connecting trough the reverse proxy and downloading to an unassigned disk. So, to make it simple, I want to wipe everyting off and start new, should I wipe off also the usb OS drive?, as far as I Understand the OS is installed fresh in the RAM at every boot, thus I would not need to wipe off the usb and reinstall/ copying the licence free file. I would like to stay on the safe side to avoid that happening again.
-
Using 1gb nic just for wake on lan, help
Thanks for your time, it worked.
-
Using 1gb nic just for wake on lan, help
Hello everyone, I think this topic was already discussed, so sorry for repetition. My server has a working 10gb network with a mellanox cx3 which does not wake up on lan. the server starts up right if 1gb nic is connected. Problem is, since I have the 10gb on the same subnet as the 1gb nic they are in the same ip address line, the connection speed gets negotiated through the 1gb network and not the 10gb network, if 1gb cable is connected. is there a way to keep the 1gb nic connected without ip just for wake on lan pourposes? thanks a lot for your thoughts
-
HP Proliant / Workstation & unRaid Information Thread
Hello I tried in legacy but it does not find the internal Usb, so no Boot. I don’t get why the server reboots as soon as i hit start on the pfsense Vm. Kernel Panic? I don’t find any clue in the diagnostics
-
HP Proliant / Workstation & unRaid Information Thread
thanks for the infos, i just upgraded to 2.72 2019 rom bios. No changes as you said. do you think it is an hardware related issue to the nic? I never passedthrough hardware but I would like to get a radeon rx560 to run a Mac Vm, and this problem has stopped me. I'll try to use le legacy mode, will that affect my Unraid setup?
-
HP Proliant / Workstation & unRaid Information Thread
Hello, i tried using virtual adapter, without passtrough and the pfsense Vm booted up but then hangs since it finds no nic cards, just to see if the installer was valid. I’m booting in uefi mode. i found a rom firmware p92-2.72. From 2019, my bios is from 2015, might it be the rmrr issue was addressed? thanks in advance
-
HP Proliant / Workstation & unRaid Information Thread
Good morning everyone and thanks for taking a look at this complete diagnostics and new syslog homeserver-diagnostics-20211209-0905.zip homeserver-syslog-20211209-0804.zip
-
HP Proliant / Workstation & unRaid Information Thread
Thanks sir for your reply, I’m not using the onboard raid, I removed the board and connected directly to the motherboard, I’m also using an Lsi pcie card. I patched the image following the aforementioned instructions and seems active, I will post a new syslog
-
HP Proliant / Workstation & unRaid Information Thread
Hello all, I’m coming back on the hardware passthrough problem since I’m having a wierd issue. I’m running unraid pro 6.9.2 on an Hp Ml350 with 16disks installed. Bios P92 (2015) out of warranty and not upgradeable anymore. 10Gbe mellanox card as the only ethernet connction in use. Two Vm are up and running reasonably stable. I have the integrated quad nic not in use at the moment, the four nic are located in the same IOMMU group and are bonded to vfio at startup. I can’t see them in the unraid dashboard. so I tried to set up a Pfsense Vm to play with. The machine did not want to passthrough the nic card giving the “inelegible hardware error..” which is related to the rmrr issue in Hp server. I then pathed the image and added ‘intel_iommu=relax_rmrr vfio_iommu_type1.allow_unsafe_interrupts=1” to the flash. Grep command says rmrr are relaxable, so I assumed the patch worked. when I set up the Pfsense vm I check the broadcom cards (NetXtreme BCM5719) to pass through, I removed the virtual network adapter. As soon as I start the Vm to begin with installation the whole system hangs, crashes and reboots with parity check and the VM tab in dashboard not enabled. If don’t passthrough the nic card, just virtual nic adapter, the pfsense install starts normally without issue. Any help would be welcome, I’m posting my log file and some screen shots thanks in advance homeserver-syslog-20211208-0857.zip
-
[Support] Linuxserver.io - Nextcloud
nextcloud connected again to webui after server reboot. i thought docker restart to be same.
-
[Support] Linuxserver.io - Nextcloud
hello everyone, my first post here and new to unraid. hope I'm posting right, I'm trying to setup a nextcloud docker on unraid with reverse proxy, and I tried to update from gui. after upgrade it tells me "Internal Server Error The server encountered an internal error and was unable to complete your request. Please contact the server administrator if this error reappears multiple times, please include the technical details below in your report. More details can be found in the server log." I researched already but I'm a noob and can't get forward. I'm stucked, any help would be appreciated nextcloud.log updater.log
mo679
Members
-
Joined
-
Last visited