Guardicore Labs analysts have told about the discovery of the FritzFrog, written in Go malware,…
Sometimes Tsurkan allowed dozens of his criminal clients to proxy traffic through one victim’s home router. For example, in the case of Victim 3, a hospital located in Alaska, Tsurkan configured the victim’s router so that it could proxy traffic from more than 70 different computers. the court documents say.
Compromising routers led to the fact that victims had communication problems, and they also had significantly increased Internet bills. Essentially, the traffic grew up to 3-6 GB per day, and sometimes the victims received invoices for hundreds and even thousands of US dollars.
Let me remind you that Tsurcan was arrested in Estonia in 2019 and then extradited to the United States. After pleading guilty, he faces up to 10 years in prison. Last month, he also pleaded guilty to another case involving the Kelihos botnet and the use of the Crypt4U cryptor (which Kelihos used to hide payloads and evade detection). Moreover, Turcan also used Crypt4U.
The Kelihos botnet has been active since at least 2010 and was one of the largest in the world. He was eliminated only in 2017, and then its operators controlled more than 60,000 infected devices. Up to this point, the botnet was used by both the authors themselves and other criminals who rented it to send millions of spam messages per hour.
Sentencing in both cases is scheduled for this fall, while Turcan has been released on bail in the amount of US $200,000.
Let me remind you that we also talked about the fact that One of WeLeakInfo operators sentenced to two years in prison.
Kurlibat.xyz is a site that tries to trick you into clik to its browser notifications…
Initiateintenselyrenewedthe-file.top is a domain that tries to trick you into clik to its browser notifications…
Wotigorn.xyz is a site that tries to force you into subscribing to its browser notifications…
Initiateintenselyprogressivethe-file.top is a domain that tries to force you into clik to its browser notifications…
Nuesobatoxylors.co.in is a domain that tries to trick you into subscribing to its browser notifications…
Helistym.xyz is a site that tries to force you into clik to its browser notifications…