Cointime

Download App
iOS & Android

US sanctions crypto wallet tied to ransomware, infostealer host

The US Treasury has sanctioned the Russia-based Aeza Group, along with its top brass and a crypto wallet connected to the service, for allegedly hosting ransomware and info-stealers. 

Aeza Group, a bulletproof hosting (BPH) services provider, allegedly sells access to specialized servers and other computer infrastructure to help cyber criminals conduct ransomware campaigns and steal sensitive info, the Treasury’s Office of Foreign Assets Control (OFAC) said on Tuesday.

OFAC’s sanctions also include an address with $350,000 in crypto, multiple Russian and UK-based companies, and four Russian nationals who allegedly partly own or are executives at Aeza.

Crypto users are frequently targeted with ransomware and other info-stealers, with blockchain security firm CertiK attributing the bulk of the $2.1 billion in stolen crypto for 2025 so far to phishing attacks that steal sensitive information such as crypto wallet keys.

OFAC sanctioned a Tron blockchain address that was an administrative wallet, handling cash-outs from Aeza’s payment processor, forwarding funds to various crypto exchanges and occasionally receiving direct payments for Aeza’s services, blockchain analytics firm Chainalysis said on Tuesday.

“On-chain analysis and additional research indicate that Aeza relied on a payment processor to receive payments for hosting services, thereby obscuring the traceability of customer deposits,” the firm added.+

  The sanctioned Tron crypto address was an administrative wallet that handled payments for Aeza, says Chainalysis. Source: Chainalysis

Blockchain intelligence firm TRM Labs said on Tuesday that the crypto address also had regular cash-out points to payment services providers and is connected through intermediary addresses to other cybercrime services and the sanctioned Russian crypto exchange Garantex

OFAC alleged that Aeza Group, based in St. Petersburg, provided BPH services to ransomware and malware groups such as the Meduza and Lumma infostealer operators, BianLian ransomware, RedLine infostealer panels, and BlackSprut, a Russian darknet marketplace. 

Aeza’s board of directors sanctioned

OFAC also sanctioned members of what it said was Aeza’s “board of directors,” made up of CEO and part owner Arsenii Aleksandrovich Penzev, general director and part owner Yurii Meruzhanovich Bozoyan, technical director Vladimir Vyacheslavovich Gast, and Igor Anatolyevich Knyazev, another part owner.

It claimed that Knyazev is managing the business after Penzev and Bozoyan were arrested by Russian law enforcement over their alleged connection to the illicit dark marketplace Blacksprut.

The sanctions mean all US assets connected to Aeza and those named are frozen. It’s also illegal for people in the US to conduct any financial transactions or have business dealings with them under threat of civil and criminal penalties. 

Global law enforcement targeting cybercrime infrastructure

Chainalysis said OFAC’s sanctions represent “another significant step” in targeting key cybercrime infrastructure.

“By sanctioning bulletproof hosting providers, the US government is attacking the supply chain that makes large-scale cybercrime possible, rather than just pursuing individual threat actors after attacks have occurred,” the firm said.

Meanwhile, TRM Labs said taking down businesses like Aeza’ reduces the “surface area of abuse” and provides “potential pressure points” for law enforcement to target in its ongoing war against cybercrime. 

Comments

All Comments

Recommended for you

  • BTC breaks through $92,000

     the market shows BTC breaking through $92,000, currently at $92,023.91, with a 24-hour decline of 0.13%. The market is highly volatile, please manage your risk accordingly.

  • WLFI launches lending marketplace powered by Dolomite

     WLFI launches a lending market supported by Dolomite.

  • Spot gold rose more than $300 in January.

     spot gold has risen above $4620/oz, with a daily increase of 2.44%, accumulating a rise of over $300 in the first month of the new year.

  • Hassett: Still interested in a Fed position

    White House National Economic Council Director Hassett: Still interested in the Federal Reserve position. It is unknown whether U.S. President Trump has approved an investigation into the Federal Reserve. Federal Reserve Chairman Powell is a good person.

  • BTC falls below $91,000

     the market shows BTC fell below $91,000, currently at $90,997.44, with a 24-hour increase of 0.26%. The market is highly volatile, please manage your risks accordingly.

  • The US spot Ethereum ETF saw a net outflow of $68.57 million last week.

    according to SoSoValue data, during the trading days last week (January 5 to January 9, Eastern US time), the US spot Ethereum ETF had a net outflow of 68.57 million USD.

  • BTC breaks through $92,000

    the market shows BTC breaking through $92,000, currently at $92,041.92, with a 24-hour increase of 1.49%. The market is volatile, please manage your risk accordingly.

  • Japanese Prime Minister considers dissolving the House of Representatives; USD/JPY rises sharply.

    Japanese Prime Minister is considering dissolving the House of Representatives. The USD/JPY exchange rate quickly rose by 0.66% to 157.95, hitting a new one-year high. 

  • a16z announced the completion of a $15 billion funding round, which will focus on investments in AI and crypto.

    a16z has just completed raising over $15 billion in funds. This batch of funds includes: American Dynamism Fund ($1.176 billion), Apps Fund ($1.7 billion), Bio + Health Fund ($700 million), Infrastructure Fund ($1.7 billion), Growth Fund ($6.75 billion), and other venture capital strategy funds ($3 billion). The announcement states that its mission is to ensure the United States wins the technology competition in the next 100 years, focusing on winning key infrastructures such as AI and crypto. In addition, it will promote the application of related technologies in fields such as biology, health, defense, public safety, education, and entertainment.

  • BTC falls below $90,000

     market shows BTC fell below 90,000 USD, currently at 89,996.08 USD, 24-hour decline reached 0.43%, market volatility is high, please manage risk properly.