Jump to content

Emby Acronis Ransomware Injection?


Recommended Posts

Posted

Greetings, 

 

Has anyone else been seeing this? Is it normal, or should I delete my entire Emby installation and re-install fresh?  I *have* notice my computer (Windows 10 up-to-date) Has started paging and freezing randomly in the past few weeks, not sure if this is a red-herring or related?

image.png.2d6bc4f530b2a557a13ed40c469adc8a.png

  • Like 1
Posted

Hi, what version of Emby Server?

Posted

Greetings, 

I think this is solved, I had upgraded to the newest version of Acronis Backup software and didn't realize that Acronis Active Protection would see Emby going about its cataloguing business and think that it was some kind of trojan "injecting" things into my system. As soo as I went into the Acronis app and "whitelisted" the Emby executable, things got muc better. :)

Regards, 

Ed Rudman

Posted (edited)

gotta love a false positive... :P

'its a worm and I am part of a bot network...ahhhhhh'.... 🤣

Edited by Guest
  • 4 weeks later...
Posted

I just had the same issue occur to me

Emby server v 4.5.4.0

Acronis True Image v 2021 - Build 39216

Posted

@cayars can file a false positive report with them. Thanks for reporting.

Posted
On 3/14/2021 at 9:45 AM, rudco said:

Has anyone else been seeing this? Is it normal, or should I delete my entire Emby installation and re-install fresh?  I *have* notice my computer (Windows 10 up-to-date) Has started paging and freezing randomly in the past few weeks, not sure if this is a red-herring or related?

Which acronis software and version?

10 hours ago, mrees said:

Acronis True Image v 2021 - Build 39216

Got it thanks.

As soon I hear back from @rudco I'll test on my side and file a report with them.

Carlo

Posted

Hi, reporting back in here since I see some responses....ever since whitelisting Emby within the Acronis software, I have had *NO* problems with slowdowns or anything like that. Emby and Acronis are both rolling along happily. 

Versions:  Acronis True Image 2021 39216  and  Emby server v 4.5.4.0

 

Posted

Haven't had any signs of the problem With ESET, nor anything come up with Tenable Nessus Essentials.. thus far..

The HIPS module f EST made me verify a few actions in the beginning but no ransomware detection or infection.

Haven't done extensive testing ( with Nessus ) of the server yet, however just general system Advance Scan with it running.. 

 

Posted

Thanks guys,reporting this now to Acronis.

  • Like 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...