TLP
TLP CLEAR
Author
Sebastien Tricaud
Summary
This scenario automates the download and installation of AnyDesk, a remote desktop software, on a Windows system. It begins by resolving the IP address of the AnyDesk download server through DNS resolution. Subsequently, it simulates a Windows environment for an HTTP request, fetches the AnyDesk.exe file from the designated URL, and confirms the server as “nginx.” Finally, it initiates the installation process by executing a new process with the command line for AnyDesk installation, ensuring it is installed silently without user interaction. This script streamlines the entire download and installation procedure, enhancing efficiency and ease of deployment for AnyDesk on Windows systems.
TIMELINE

DATA
We are providing data for attacks weekly hoping to contribute raising awareness to threats from their data.
CATEGORY
misc