![what is anydesk app what is anydesk app](https://techsmagic.com/wp-content/uploads/2021/01/7-9.png)
![what is anydesk app what is anydesk app](https://cdn.mos.cms.futurecdn.net/AArQmT6FyKE4rp3F8QBQVh.jpg)
20% of the clicks were followed by specific keyboard activity that the threat actors were after. The user would also be provided with a link to the dangerous installer.Īccording to the CrowdStrike research, 40% of the clicks on the malicious ad led to actual installations of the trojanized AnyDesk binary. Upon clicking the fake ad, the user would be redirected to a social engineering page that looked like the legitimate AnyDesk website. The hackers used malicious Google ads to serve the weaponized app to users searching for the popular AnyDesk tool. The more intriguing part of the operation is the entire intrusion mechanism, showing that it is more than your regular malvertising effort. The PowerShell script can be described as a typical backdoor. The researchers also discovered a manipulated executable that evaded detection, attempting to lunch a PowerShell script using a specific command line. “The initial activity triggered a detection within the CrowdStrike Falcon® platform, tagged with MITRE’s technique T1036, “Masquerading,” the report said. The detection of the malvertising campaign happened with the help of the CrowdStrike Falcon platform. Upon execution, the file downloaded a PowerShell implant that exfiltrated information from infected systems. It is most likely that the malicious campaign delivering the weaponized AnyDeskSetup.exe file took off on April 21. To reach unsuspecting users, the hackers used rogue Google ads that infiltrated the search network’s result pages.
WHAT IS ANYDESK APP SOFTWARE
Legitimate AnyDesk App Tarteged by MalvertisersĬybersecurity researchers from CrowdStrike reported the discovery of an entire malvertising network targeting AnyDesk and delivering a weaponized installed of the popular software utility. Unfortunately, hackers found a way to trojanize the application in a recent malvertising campaign. AnyDesk is a useful remote desktop access tool that has been installed by more than 300 million users.