Cointime

Download App
iOS & Android

Trustformer's Analysis of OFAC-Sanctioned Russian Addresses in Money Laundering

Validated Project

1. Event Background

On November 3, the U.S. Treasury and its Office of Foreign Assets Control (OFAC) sanctioned Russian businesswoman Ekaterina Zhdanova for alleged assistance in money laundering and fund transfers for Russian elites. She was involved in massive cross-border transactions, including moving over $100 million to the United Arab Emirates for a Russian oligarch. Zhdanova is also implicated in laundering $2.3 million for a Ryuk ransomware group affiliate, which is believed to be from ransomware victims' payments. As a result, three Bitcoin addresses were sanctioned:

1Ljk8RNNabkZ9bfDYQBn98XfFozJhTjqcZ

3685sEusmTwZBiKJ4cgV73EAhpVD1nbgbe

39p8qWp1bkBNhi4vPpFTetKPtH7goqNDZf

The analysis with the Trustformer system focuses on the sanctioned addresses as examples to examine the pathways of fund transfers and clarify the ultimate destinations of the funds.

2. Event Analysis

2.1 Sanctioned Address: 1Ljk8RNNabkZ9bfDYQBn98XfFozJhTjqcZ

The Trustformer Risk Detector revealed that the address has a TCR score of 98, indicating severe risk and classifying it as a direct risk address. The risk type is identified as USA political blacklist. By clicking on the label, more information about associated individuals and nationalities linked to the address can be accessed.

A review of the address's historical transactions reveals the most recent one on February 6, 2022. Trustformer's Trackr product aids in analyzing the fund movements from this address.

Analyzing transactions from January to February 2022, the address 1Ljk8RNNabkZ9bfDYQBn98XfFozJhTjqcZ initiated 13 fund transfers within this period. The analysis revealed financial transactions among the three sanctioned addresses during this time, indicating their role as collective wallets for the sanctioned individuals. Notably, they transferred 29.1BTC to another sanctioned address, 3685sEusmTwZBiKJ4cgV73EAhpVD1nbgbe, and 1.1BTC to 39p8qWp1bkBNhi4vPpFTetKPtH7goqNDZf.

2.2 Sanctioned Address: 3685sEusmTwZBiKJ4cgV73EAhpVD1nbgbe

This address also showed a TCR score of 98, indicating severe risk and classifying it as a direct risk address. The risk type is identified as USA political blacklist. The most recent transaction for this address occurred on April 3, 2022. Trustformer's Trackr product assists in analyzing the fund movements from this address between February and April 2022.

The address 3685sEusmTwZBiKJ4cgV73EAhpVD1nbgbe initiated four fund transfers between February and April 2022. It moved 33BTC to the same address, bc1qwxqxd25yk2dtw2ml04vxj9atq3huv4rdytf6vt, which is identified as a risk address related to a coin mixer.

After thorough tracking, it was discovered that the address transferred 72BTC to the Huobi exchange.

2.3 Sanctioned Address: 39p8qWp1bkBNhi4vPpFTetKPtH7goqNDZf

This address had a TCR score of 26, indicating severe risk and classifying it as a direct risk address. The risk type is identified as USA political blacklist. The most recent transaction for this address occurred on February 25, 2022. Trustformer's Trackr product assists in analyzing the fund movements from this address between January and February 2022. The latest transaction was on February 25, 2022.

Analysis for January to February 2022 revealed six fund transfers, including a large transaction of 60BTC to 1AynRWwpCcVpm6Ye8xJ8mXRAJ3Qpx3yQuw, and 133BTC flows into Binance.

3. Event Summary

Investigations with Trustformer KYT system's Trackr and Risk Detector conclude:

-Address 1Ljk8RNNabkZ9bfDYQBn98XfFozJhTjqcZ transferred 29.1BTC to 3685sEusmTwZBiKJ4cgV73EAhpVD1nbgbe and 1.1BTC to 39p8qWp1bkBNhi4vPpFTetKPtH7goqNDZf in the most active recent months.

-Address 3685sEusmTwZBiKJ4cgV73EAhpVD1nbgbe moved 72BTC into Huobi and engaged with coin mixer-related intermediary addresses.

-Address 39p8qWp1bkBNhi4vPpFTetKPtH7goqNDZf sent 60BTC to 1AynRWwpCcVpm6Ye8xJ8mXRAJ3Qpx3yQuw, with 133BTC entering Binance.

Recommendations:

-Bitcoin transactions inherently feature mixing characteristics, making it challenging to investigate and gather evidence on sanctioned addresses that often disperse funds in small amounts. Close monitoring of these addresses' transactions is recommended, especially focusing on transfers between other sanctioned addresses.

-Records show funds moving to centralized exchanges like Huobi and Binance during these transfers. Enhanced monitoring of involved exchanges is advised to detect suspicious activities promptly.

🎁 Start your complimentary 31-days trial in KYT experience to elevate your on-chain transaction security.

●📚 Instructions for the use of related products in the event analysis:

●Risk Detector User Guide: https://help.trustformer.ai/

●Trackr User Guide: https://help.trustformer.ai/trackr-user-guide

👉 About Trustformer

Trustformer is a leading large-scale model for applying compliance technology, combining blockchain data for real-time risk monitoring and early warning, and realizing real-time identification and early warning of risks such as risk entities, wallets, and transactions. Combined with the FATF Travel Rule, according to global multinational financial supervision and crypto asset supervision policies, combined with localized finance and crypto financial licenses and policies of jurisdictions, real-time risk identification, transaction analysis, and early warning are carried out. Through graphical node reasoning, the security analysis of transaction addresses and capital chains is realized, and risk compliance investigation and capital security audit services are provided.

Find us

●Website: www.trustformer.ai

●Telegram: t.me/Trustformerai

●Twitter: https://twitter.com/trustformerai

●Email: kyt(@)trustformerai.com

Comments

All Comments

Recommended for you

  • International Oil Prices Plunge as U.S. Oil Futures Fall Below $70

    On June 24, international crude oil prices continued to decline, with U.S. WTI crude oil futures falling below the $70 per barrel mark during trading, down 4.4% for the day, reaching a new low since March 2, and reverting to levels seen before the outbreak of the Iran conflict. Brent crude oil futures for August dropped 4.5%, settling at $73.6 per barrel. Market expectations of easing tensions in the Middle East, a recovery in Iranian oil supply, and rising interest rate expectations due to U.S. inflation have pressured oil prices.

  • Strategy Stock Price Falls Below $100 for the First Time Since March 2024

    Strategy's stock price has fallen below $100 for the first time since March 2024.

  • Caixin: Son of Former Wuhan Supervisory Official Launders Over HKD 64 Million in Hong Kong, Claims Some Funds Came from Bitcoin Sales

    According to Caixin, Xiao Rui, the son of former Wuhan Supervisory Committee member Xiao Jun, is suspected of receiving approximately HKD 4.72 million in bribes from mainland construction contractors on behalf of his father, and has laundered over HKD 64 million through underground money houses. On June 23, the Hong Kong District Court found Xiao Rui guilty on four counts of 'money laundering' and one count of 'using a false document,' with sentencing scheduled for July 23. In court, Xiao Rui claimed that the large sums involved were legitimate earnings from his mother's business, which she gifted to him for investment in Hong Kong, and that part of the funds came from Bitcoin sales. However, the judge rejected his testimony regarding Bitcoin, stating that Xiao Rui could not provide any basic records such as transaction dates, numbers, or wallet addresses.

  • U.S. Stock Indices Mixed, Micron Technology Rises About 3%

    On June 24, U.S. stock markets opened with mixed results: the Nasdaq fell 0.03%, the S&P 500 rose 0.07%, and the Dow Jones increased by 0.01%. Micron Technology saw an increase of about 3%, with the market widely expecting its quarterly performance to continue its 'explosive growth.' FedEx dropped nearly 2%, as its core express business profit margin narrowed last quarter, and its full-year profit outlook fell short of expectations. AI chip manufacturer Cerebras fell over 11%, maintaining a negative guidance for its full-year core operating profit margin.

  • Gold Price Falls Below $4000, Mining Stocks Decline, Harmony Gold Drops 6%

    On June 24, Newmont Corporation (NEM.US) saw its stock price decrease by 4.4%, Sibanye Stillwater fell by 6.1%, Angola Gold dropped by 7%, SPDR Gold ETF declined by 3%, Kinross Gold fell by 6.5%, and Harmony Gold decreased by 6%, while Gold Fields fell by 3.9%. In the news, international gold prices remain under pressure, with spot gold's decline expanding to 2.8%, falling below the $4000 per ounce mark for the first time since November 2025. This represents a drop of approximately $1600 (nearly 30%) from this year's historical high of $5596 per ounce, indicating a significant technical adjustment. Factors contributing to this trend include a strengthening U.S. dollar, rising expectations for Federal Reserve interest rate hikes, and increasing U.S. Treasury yields, all of which continue to suppress precious metals performance.

  • Market Pricing No Longer Fully Reflects 25 Basis Point Rate Hike by Bank of England This Year

    Market pricing shows that it is no longer fully pricing in a 25 basis point rate hike by the Bank of England this year.

  • Spot Silver Plummets 5%, Down 52% from January Highs

    On June 24, spot silver fell by 5%, dropping over $3 during the day to approach $58 per ounce, marking a new low since December of last year and a 52% decline from the January peak. New York silver futures experienced a sharp drop of 6%, currently reported at $58.34 per ounce.

  • Brent Crude Oil Futures August Contract Drops 4% to $73.95 per Barrel

    Brent crude oil futures for the August contract have seen an intraday decline of 4%, currently priced at $73.95 per barrel.

  • SpaceX (SPCX.US) Pre-Market Stock Price Drops 2.7% to Daily Low

    On June 24, SpaceX (SPCX.US) saw its pre-market stock price decline expand to 2.7%, reaching a daily low.

  • Meta and Microsoft Lead with Data Center Leasing Commitments Exceeding $850 Billion

    On June 24, Bloomberg reported that Meta Platforms Inc. and Microsoft Corp. each committed billions of dollars in additional data center leasing expenditures during their most recent fiscal quarters, further increasing the overall investment in the AI sector. These commitments have pushed the total future data center leasing commitments of major cloud computing companies to over $850 billion. An analysis of regulatory filings shows that as tech giants compete to expand their server clusters, the amounts of these leasing commitments have continued to rise over the past year. These future leasing costs are additional to existing leasing contracts and will not appear on the balance sheet until the companies begin actual payments. While these leasing commitments typically pertain to data centers, they may also encompass facilities such as offices or warehouses. Some leasing contracts include specific clauses that allow companies to terminate future performance obligations under certain conditions.