All
Why is my account restricted?
Where is my cash deposit?
Why can't I withdraw?
Where is my Krak card?
Where is my crypto deposit?
Remote access software lets someone else see or control your device from anywhere in the world. It has legitimate uses — IT teams use it to fix computers without being in the room. But handing that control to the wrong person is one of the fastest ways to lose access to your accounts and your crypto.
Remote access scams are now among the most effective attacks against crypto holders, because they turn your own trusted device into the tool used against you. Krak will never ask you to install remote access software, and no legitimate bank, exchange or government agency will contact you out of the blue to ask you to.
Remote access software ends up on your device in one of three ways: you install it deliberately for a legitimate reason, you are persuaded to install it by someone who intends to steal from you, or it is installed without your knowledge. This article covers all three.
Three different things often get grouped under the same label, and the differences matter:
Screen sharing lets another person watch your screen in real time. Tools like Zoom, Microsoft Teams and Google Meet do this. They cannot control your device, but whoever is watching can read everything you display — including passwords as you type them, one-time codes as they arrive, and a seed phrase if you open your wallet backup.
Remote control hands over your mouse and keyboard. Tools like AnyDesk, TeamViewer, LogMeIn, UltraViewer, RustDesk and Windows Quick Assist do this. Whoever is connected can open your files, install other software, change your settings and operate your accounts as though they were sitting at your desk.
A remote access trojan (RAT) does the same thing as a remote control tool, but hides. It is installed without your permission, runs silently in the background, and is designed not to appear in the places you would think to look. Attackers also install legitimate remote monitoring tools — the kind IT departments use, such as ScreenConnect, Atera or SimpleHelp — for exactly this purpose, because those tools are signed, trusted and unlikely to be blocked.
The first two are widely used, legitimate applications. That is precisely why they are attractive to malicious actors: your antivirus software may not flag them as a threat, and downloading them does not look suspicious. The danger is rarely in the software itself — it is in who ends up on the other end of the connection.
Once a malicious actor is connected to your device, they can:
There are legitimate reasons to use these tools. You might connect to your own work computer from home, let a colleague present to you, help a family member with their device, or work with an IT technician you contacted yourself. What matters is who is on the other end, and what is visible while they are connected. If you do use it:
Only accept a session you arranged yourself, with a person or company you contacted.
Close anything sensitive first — exchange accounts, banking, email, password managers and wallet backups. Assume everything on screen can be read and copied.
Never sign in to Krak, approve a withdrawal or open a wallet backup while a session is active.
Stay at the device, watch the session, and end it as soon as the work is done.
Uninstall the software when you no longer need it, or turn off unattended access so nobody can reconnect without your approval.
Where you can, keep it off any device you use to hold or move crypto.
Almost every version of a remote access scam follows the same four steps.
You do not have to be talked into installing remote access software to lose control of your device. Remote access can also be installed silently, through a single click, and there may be no person persuading you at all. In these cases the first sign of trouble is often an unauthorized withdrawal.
The most common delivery methods are:
Covert remote access is designed to be hard to spot, and none of these signs is proof on its own. Treat several appearing together as a reason to investigate:
For more on how malicious software reaches your device and how to remove it, see Beware of computer malware. If you think remote access software is running on your device, follow the steps in the “If you think your device has been accessed” section below — they apply whether you granted access or not.
Treat any of the following as a reason to end the conversation immediately:
Krak Support will never ask you to:
Install remote access or screen sharing software, or grant access to your device.
Provide your password, 2FA code, device approval code, Master Key or wallet seed phrase.
Make any security change while someone is connected to your device, or during a call or chat you did not request.
Move your funds to another wallet or account to keep them safe.
If you receive a call claiming to be from Krak and you did not request it, hang up. You can verify that you are speaking to a genuine Krak Support specialist using the in-app verification feature described in How to contact Voice Support.
These steps apply whether you granted access during a call or believe something was installed without your knowledge. Act quickly, and use a different device you trust for anything that involves signing in.