Open, and work is coming in · weekdays, 9am–5:30pm Faster by phone: 0800 6890668
PDR Plymouth Data Recovery 0800 6890668 Get a price
PDR / The devices we handle / The NAS unit

Devices · network storage boxes

NAS recovery for Plymouth. Everything lives in one box, until a bay turns red.

NAS failures are mostly silent ones. Shares keep mounting, files keep opening, and a disk can lie dead in bay three for weeks before anybody notices. The harm arrives at the following step: DSM or QTS proposes a scrub, a repair, a rebuild; somebody clicks yes; the pool is gone. Shut the box down and keep it down. They come to us from a freight office at Millbay in Plymouth, a solicitor's practice in Tavistock, a fabrication shop outside Camborne.

Nothing readable? Most jobs carry no bill Free diagnosis, then one written price Boxes come to the lab from Truro, Newquay and Tavistock

You will be talking to an engineer
0800 6890668

Most weeks bring one of these. Routine bench work.

Not listed? Try the triage →
Getting it to us: wrap it so nothing can shift, cover it for what it is worth, and post it tracked to the intake lab in Bristol. We cover the postage back. If you want an engineer to check the packing before the box is taped, ring first. It is spelled out on the contact page.

The NAS makes that turn up most weeks.

SynologyDiskStation and RackStation units on DSM — btrfs or ext4 laid over SHR.
QNAPTS and TVS models running QTS or QuTS hero. First on the list ransomware crews scan.
BuffaloTeraStation and LinkStation. They display an E-number and halt.
Netgear & WDReadyNAS and My Cloud — commonly every family photo on a single box.

What the messages are telling you.

Not on the list? →
What shows upWhat that points toWhat to do
Synology: Volume CrashedMore disks lost than the parity can carryPower it off before DSM proposes anything
Synology: Storage Pool DegradedA disk has dropped out; the layers above run on regardlessEach hour it stays on costs something
QNAP: system volume not active; RAID unmountedQTS made the volume and now cannot mount itAssemble it away from the unit
DeadBolt — WARNING: Your files have been lockedRansomware — every file now ends in .deadboltPhotograph the message and alter nothing
Buffalo TeraStation, code E14 — Cannot mount the RAID arrayThe array is fine; the enclosure will not bring it upNote the E-number, then pull the plug
Buffalo TeraStation, code E16 — The hard disk was not foundEither the drive is dead or the enclosure has lost itIts contents are usually still there
Buffalo TeraStation, code E30 — The hard disk may be brokenOne disk has been ejected from the setTurn the rebuild down

What happens to a drive while it is here.

Cases in the log →
01

A number on arrival, then the free diagnosis Free

Whatever arrives is booked in under a case number on the day it reaches the bench. An engineer then works out the actual fault, and that part is free. You get a plain answer on what can come off the drive and what cannot, followed by one price in writing. Nothing further happens until you have read it and agreed.

Diagnosis at no chargeA single written figureYou owe nothing yet
02

Images come first

Every disk is copied in full on imaging hardware made for it, weak regions included. Thereafter every operation runs on those copies. Your enclosure stays switched off on our bench, so it never resumes where it stopped.

Read-only copies takenNever rebuilt inside the unit
03

Layer by layer upward

A NAS volume is hardly ever one thing. Synology layers paired partitions, then one md array per group, then LVM on top of everything. Buffalo, Netgear and QNAP each arrange it their own way. Every tier is reassembled in software, starting at the bottom.

mdadm and LVM unpickedSHR partitions matched up
04

File system at the end

When the stack is standing again, the btrfs or ext4 on it gets repaired. Shares return under the names you gave them, with the folder tree as you left it. The complete listing goes to you to check, and nothing is signed off until you have.

btrfs or ext4 repairedShares handed back under their own names
05

You give the word, and it ships back

Thinking it over costs you nothing. Everything the drive gave up is listed for you before any invoice exists, and the bill only follows your go-ahead. Files travel back on media bought in for your job, with return carriage paid at this end, and the case stays on the bench until you confirm they open on your own computer.

You see the list and decideWritten to fresh mediaWe pay the postage home

The faults we see most

  • SHR is not proprietary at all — it is mdadm with LVM above it, spread over partitions cut to line up across disks of different capacities. Each layer is rebuilt on its own in software, always from images, with the box unplugged on a separate bench. The repair button has yet to rescue one of these for anybody.
  • Degraded is a countdown, not a condition — reassembling an SHR or RAID 5 pool requires every remaining disk to read from end to end without faltering. Those disks left the same box, went into their bays on one afternoon, and have run warm side by side ever since. One of them usually gives up partway.
  • The enclosure counts for least — Buffalo, Synology and everyone else writes the array's description onto the drives, never into the chassis. A failed power supply is among the more welcome faults to see arrive.
  • Ransomware turns a NAS into evidence — photograph the demand on screen before anything is restarted. A reboot can wipe the message, taking the reference number printed on it too. What follows is described on our ransomware and forensics pages.

What 2022 taught: the opening DeadBolt wave, on 25 January 2022, took in around 3,700 QNAP units reachable from the public internet, with more waves arriving later that year. QLocker and eCh0raix had been through the same territory before it. Almost every victim had two things in common: the box was reachable from outside, and its firmware was still whatever came in the carton.

A job out of the casebook.

PL · PLY-2026-0785LOGGED ✓

A Newquay NAS, and the rebuild that followed

Two red lights showing, and the unit could still have been saved. What finished it was the rebuild someone started next, which wrote over the box's own metadata. Afterwards both disks were imaged, bad sectors and all. The mirror was reassembled a block at a time, each block taken from whichever disk still read cleanly at that spot, and the shared volume came back whole.

100% read back5 days start to finish

Before you seal the box.

Get these done

  • As soon as it reports degraded, power it down
  • Number each disk with its bay before removal
  • Drives alone — hold on to the enclosure
  • Give us the model, and say whether the pool was SHR or plain RAID

What to avoid

  • Accepting a rebuild or a repair
  • Scrubbing a pool that is already degraded
  • Allowing Windows to initialise a disk
  • Swapping disks between bays to see what happens

Questions that come up most weeks.

The unit will not power up. Did the files go with it?

Seldom. Each disk carries its own account of the volume — the bay it occupied, the stripe size, and every layer built on top. The chassis holds none of it. Sound disks inside a dead enclosure is some of the least troublesome work we get.

Do I send the drives or the whole unit?

The drives only. Bare disks are what the Bristol lab asks for. Pull them one bay at a time and mark the bay number on each before packing. Send them fully insured, or bring them in yourself. Nothing is read for data before it has been imaged.

What is different about SHR compared with RAID?

Synology Hybrid RAID exists so that mismatched disk sizes do not waste space. Every disk is divided into partitions sized to match counterparts elsewhere in the set. An md array is laid over each matching group, and LVM joins those arrays into the single volume presented to you. We take it apart a layer at a time, from the bottom up.

DSM reports Volume Crashed and the rebuild halted. Is that the end?

No. Volume Crashed states what the box can no longer do; it says nothing about the data. Take an image of each drive, rebuild the pool outside the box in software, and a volume DSM abandoned will generally read right through.

A drive that stays switched off gets no worse.

The diagnosis is free, and it comes back as a list: which files read, which do not, and what getting them off would take. Until then, leave the drive unplugged.

0800 6890668