Skip to main content
maryamira
Participant
March 20, 2023
Question

Adobe Reader DC download says it is infected with a Trojan

  • March 20, 2023
  • 14 replies
  • 18845 views

Hello,

 

We are March 20, 2023, around 4:00 PM ETC

So I downloaded and tried to install Adobe Reader. I made sure it was from the official website, as I already have a story with a third-party one. So it was no doubt from get.adobe.com. Halfway through installation, Windows Defender blocked it because it found the Wacatac B, a serious threat, attached to the .exe file. The affected file was rooted in: C:/PRogramData/Adobe/Temp/7682/installer.bin. It was deleted at that moment. 

 

Just in case, I went back and double-checked my browsing history. And again, that was get.adobe.com.

 

Did that happen to anyone, how could this be?

 

I think the threat was blocked, but I'm running a full scan through my laptop at the moment, with Windows Defender again, and with Malware Bytes later. I will edit if further detail is found.

14 replies

Participant
March 23, 2023

Same detection on my computer.

 

 

maryamira
maryamiraAuthor
Participant
March 24, 2023

That virus is serious. The good news is I haven't noticed any breach to my accounts so far, it has been 3 days. So Windows Defender did prevent the worst.

Participant
March 23, 2023

Bye Acrobat Reader . Open Source alternatives .

https://www.sumatrapdfreader.org/free-pdf-reader

Participant
March 23, 2023

Today

maryamira
maryamiraAuthor
Participant
March 24, 2023

Clearly there is a problem.

Legend
March 21, 2023

Did you update the antivirus definitions before retrying? False positives are often fixed quickly. Or you may need to report it - no good reporting it to Adobe, it's your antivirus makers who have to fix it.

maryamira
maryamiraAuthor
Participant
March 21, 2023

Thanks for your answer. Yes, I had everything up to date and double-checked afterward. I don't feel confident downloading this file again and retrying, though, until I understand what happened.

And yes, I read about false positives.

 

I'm including the pictures that I took at the moment. Sometimes I wonder if my cursor drifted to a third-party website unknowingly. Have no idea what a blob is.

try67
Community Expert
Community Expert
March 21, 2023

A "blob" is basically a file. This is fine, since you're downloading from the adobe.com domain.

It's most likely a false positive by Windows Defender.