Specificially https://en.z-lib.gs/

I downloaded some pdfs from there and according to virustotal and some pdf online scanner i tried, they have something possibly malicious going on in them. I already deleted them but i opened them in firefox pdf reader. I dont have acrobat installed.

Scanning my system with malwarebytes now, but nothing is finding anything wrong and I havent seen any suspicious activity.

Here is the analysis itself.

https://www.virustotal.com/gui/file/f3140c932ab57256a8438eba31d18e4baee1413e7ec23d93b1c1f5194b6dea95/behavior

I’m starting to panic, please help if you have any advice


Thank you all, you are wonderful people

  • Walking Coffin@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    3
    ·
    edit-2
    2 days ago

    The link to Z-Library itself is one of the legitimate ones from what I know so I wouldn’t worry on that side too much.

    PDFs have a few exploits that could infect a system. However they are rare and not efficient especially if the intent is to infect as much machines as possible.

    If you don’t have much technical knowledge to analyze the files yourself, I would recommend you open the PDFs in Virtual Machines without any acess to the internet or opening the files only when you have disconected your device from any acess to the internet.

    Tools like the one mentionned by someone else in the comments would be good to prevent from having to worry about a potentially malicious PDF. Various tools are around to convert a malicious file lile PDFs into regular “trusted” PDFs (said tools flattens everything making it impossible to select text or click any URIs included). I would look up the trustworthiness of some of those tools first (to not try and avoid malwares by installing one).

    That was way too long of a comment but I hope it could ease some of your worries.