Thursday, June 1, 2023
LetsAskBinu.com
  • Home
  • Cybersecurity
  • Cyber Threats
  • Hacking
  • Protection
  • Networking
  • Malware
  • Fintech
  • Internet Of Things
No Result
View All Result
LetsAskBinu.com
No Result
View All Result
Home Malware

Top tip for botnet overlords: Don’t vacation in countries that can extradite you to the United States

Researcher by Researcher
April 7, 2023
in Malware
0
Top tip for botnet overlords: Don’t vacation in countries that can extradite you to the United States
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


There’s no doubt that a life of cybercrime can earn its most successful overlords a considerable amount of money, but you will always have to live with the fear that you could be apprehended and – if convicted – spend years in prison.

Pyotr Levashov must be regretting his decision to go on a family vacation to Barcelona.

Related articles

Aggressive Android ransomware spreading in the USA

Aggressive Android ransomware spreading in the USA

April 11, 2023
The evolution of ransomware: From PC Cyborg to a service for sale

The evolution of ransomware: From PC Cyborg to a service for sale

April 11, 2023

The 36-year-old Russian computer programmer was arrested by Spanish police on Friday in a joint operation with United States law enforcement agencies.

Levashov is accused of running the sprawling Kelihos botnet, which for several years has been commanding tens of thousands of Windows computers to spam out malware campaigns – including password-stealers, ransomware and fake anti-virus attacks – to innocent users’ inboxes, as well as phishing emails, and advertisements for counterfeit drugs, make money fast schemes, and pump-and-dump stock scams.

Billions of malware-infected messages are thought to have been sent out by the Kelihos botnet every day.

US court documents allege that Levashov, who is also said to have gone by the online handle of “Severa”, advertised his botnet for rent on underground message forums – offering to deliver one million spam messages for “legal” products such as adult websites, cheap mortgages and counterfeit goods for just $200. The price would rise, however, to $300 per million messages for spam designed to recruit money mules, and as high as $500 to distribute phishing attacks and scam emails to a million inboxes.

Now the US authorities have announced that they are working hard to dismantle the Kelihos botnet, preventing further infections by blocking malicious domains associated with the Kelihos botnet.

US law enforcement has obtained a warrant to redirect Kelihos-infected Windows computers to a substitute server, recording the IP addresses of affected PCs. The IP addresses of Kelihos victims will then be shared with other bodies who can assist with the removal of the malware, such as internet service providers.

Curiously, shortly after Levashov’s arrest, Russian media reported his wife as claiming that his arrest was connected to the creation of malware linked to the presidential campaign of Donald Trump, although no mention of this is made in any of the legal documents released by the US Department of Justice, and officials at the DoJ have debunked any such association.

Pharmacy spam distributed by the Kelihos botnet

Pyotr Levashov has long been on the radar of US cybercrime investigators, having been charged back in 2009 with operating the “Storm” botnet – the precursor to Kelihos.

ESET researchers have previously described some of the characteristics and campaigns wrought by the Storm/Kelihos botnet in a technical paper: “Same botnet, same guys, new code”.

There’s no doubt that a life of cybercrime can earn its most successful overlords a considerable amount of money, but you will always have to live with the fear that you could be apprehended and – if convicted – spend years in prison. We have yet to see whether the US authorities are able to successfully convict Levashov for what he is alleged to have done, but he is surely already regretting that his trip to the sun.



Source link

Tags: botnetcountriesdontextraditeoverlordsStatesTipTopUnitedVacation
Share76Tweet47

Related Posts

Aggressive Android ransomware spreading in the USA

Aggressive Android ransomware spreading in the USA

April 11, 2023
0

The latest ESET discovery of the first known Android lock-screen-type ransomware that spreads in the wild and sets the phone’s...

The evolution of ransomware: From PC Cyborg to a service for sale

The evolution of ransomware: From PC Cyborg to a service for sale

April 11, 2023
0

A look back at how ransomware – a type of malware used mostly for hijacking user data – has evolved...

Using DroidJack to spy on an Android? Expect a visit from the police

Using DroidJack to spy on an Android? Expect a visit from the police

April 11, 2023
0

Law enforcement agencies across Europe have searched homes this week, as part of an international crackdown against users of a...

Fighting talk from Great Britain as it says it will hit back against internet attacks

Fighting talk from Great Britain as it says it will hit back against internet attacks

April 11, 2023
0

British chancellor George Osborne has warned about the spectre of online terrorists attacking national infrastructure, and made some rather bold...

Police arrest couple suspected of running malware encryption service

Police arrest couple suspected of running malware encryption service

April 10, 2023
0

British police arrested a man and a woman earlier this week, suspected of operating a website which offered services to...

Load More
  • Trending
  • Comments
  • Latest
This Week in Fintech: TFT Bi-Weekly News Roundup 08/02

This Week in Fintech: TFT Bi-Weekly News Roundup 15/03

March 15, 2022
QNAP Escalation Vulnerability Let Attackers Gain Administrator Privileges

QNAP Escalation Vulnerability Let Attackers Gain Administrator Privileges

March 15, 2022
Supply chain efficiency starts with securing port operations

Supply chain efficiency starts with securing port operations

March 15, 2022
A first look at threat intelligence and threat hunting tools

A first look at threat intelligence and threat hunting tools

March 15, 2022
Beware! Facebook accounts being hijacked via Messenger prize phishing chats

Beware! Facebook accounts being hijacked via Messenger prize phishing chats

0
Shoulder surfing: Watch out for eagle‑eyed snoopers peeking at your phone

Shoulder surfing: Watch out for eagle‑eyed snoopers peeking at your phone

0
Remote work causing security issues for system and IT administrators

Remote work causing security issues for system and IT administrators

0
Elementor WordPress plugin has a gaping security hole – update now – Naked Security

Elementor WordPress plugin has a gaping security hole – update now – Naked Security

0
Spring Framework Flaw Exploited in Mirai Malware Attacks

Threat Actors Exploit Critical Zyxel Flaw in Botnet Attacks

June 1, 2023
All eyes on APIs: Top 3 API security risks and how to mitigate them

All eyes on APIs: Top 3 API security risks and how to mitigate them

June 1, 2023
Cisco Acquiring Armorblox for Predictive and Generative AI Technology

Cisco Acquiring Armorblox for Predictive and Generative AI Technology

June 1, 2023
This Week in Fintech: TFT Bi-Weekly News Roundup 08/02

This Week in Fintech: TFT Bi-Weekly News Roundup /

June 1, 2023

Recent Posts

Spring Framework Flaw Exploited in Mirai Malware Attacks

Threat Actors Exploit Critical Zyxel Flaw in Botnet Attacks

June 1, 2023
All eyes on APIs: Top 3 API security risks and how to mitigate them

All eyes on APIs: Top 3 API security risks and how to mitigate them

June 1, 2023
Cisco Acquiring Armorblox for Predictive and Generative AI Technology

Cisco Acquiring Armorblox for Predictive and Generative AI Technology

June 1, 2023

Categories

  • Cyber Threats
  • Cybersecurity
  • Fintech
  • Hacking
  • Internet Of Things
  • LetsAskBinuBlogs
  • Malware
  • Networking
  • Protection

Tags

Access attack Attacks banking BiWeekly bug Cisco cloud code critical Cybersecurity Data Digital exploited financial Fintech Flaw flaws Google Group Hackers Krebs Latest launches malware Microsoft million Network News open patches Payments platform Ransomware RoundUp security Software Stories TFT Threat Top vulnerabilities vulnerability warns Week

© 2022 Lets Ask Binu All Rights Reserved

No Result
View All Result
  • Home
  • Cybersecurity
  • Cyber Threats
  • Hacking
  • Protection
  • Networking
  • Malware
  • Fintech
  • Internet Of Things

© 2022 Lets Ask Binu All Rights Reserved