Feeds

Russian SpyEye author pleads guilty to starting malware onslaught

FBI went down to Georgia

Secure remote control for conventional and virtual desktops

Russian national Aleksandr Andreevich Panin has pleaded guilty to charges of banking and wire fraud for his role in developing the SpyEye Trojan, which used botnets of enslaved computers to harvest financial credentials from internet users around the world.

"The apprehension of Mr. Panin means that one of the world's top developers of malicious software is no longer in a position to create computer programs that can victimize people around the world," said FBI special agent-in-charge Ricky Maxwell.

"Botnets such as SpyEye represent one of the most dangerous types of malicious software on the Internet today, which can steal people's identities and money from their bank accounts without their knowledge."

Panin released SpyEye in 2009 and it soon caught the antivirus industry's attention as a highly advanced piece of malware specifically designed with financial phishing in mind. It is thought to have infected over 1.4 million machines in its two years of operation, netting its shadowy users millions in the process.

According to the charges, Panin sold custom versions of SpyEye on invitation-only black code forums for between $1,000 to $8,500 a pop, and he had at least 150 clients. Just one of these, going by the moniker "Soldier," made a reported $3.2m from financial fraud using the malware. As of 2013, over 10,000 bank accounts are thought to have been compromised by it.

In February 2011, law enforcement seized a SpyEye server in a data center in Georgia and federal investigators found contact details for Panin embedded in the code. They then bought a copy of SpyEye from him and used it to file charges, before arresting him while he was en route through Hartsfield-Jackson Atlanta International Airport.

The investigation has also led to the arrest of four of Panin's "clients and associates" in the UK and Bulgaria.

"Panin was the architect of a pernicious malware known as 'SpyEye' that infected computers worldwide," said US Attorney Sally Yates of the Northern District of Georgia. "He commercialized the wholesale theft of financial and personal information. And now he is being held to account for his actions. Cyber criminals be forewarned: you cannot hide in the shadows of the Internet. We will find you and bring you to justice."

Panin is due to be sentenced by a court in the northern district of Georgia on April 29. ®

Beginner's guide to SSL certificates

More from The Register

next story
Webcam hacker pervs in MASS HOME INVASION
You thought you were all alone? Nope – change your password, says ICO
You really need to do some tech support for Aunty Agnes
Free anti-virus software, expires, stops updating and p0wns the world
Meet OneRNG: a fully-open entropy generator for a paranoid age
Kiwis to seek random investors for crowd-funded randomiser
USB coding anarchy: Consider all sticks licked
Thumb drive design ruled by almighty buck
Attack reveals 81 percent of Tor users but admins call for calm
Cisco Netflow a handy tool for cheapskate attackers
Patch NOW! Microsoft slings emergency bug fix at Windows admins
Vulnerability promotes lusers to domain overlords ... oops
prev story

Whitepapers

Choosing cloud Backup services
Demystify how you can address your data protection needs in your small- to medium-sized business and select the best online backup service to meet your needs.
Getting started with customer-focused identity management
Learn why identity is a fundamental requirement to digital growth, and how without it there is no way to identify and engage customers in a meaningful way.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Internet Security Threat Report 2014
An overview and analysis of the year in global threat activity: identify, analyze, and provide commentary on emerging trends in the dynamic threat landscape.
Intelligent flash storage arrays
Tegile Intelligent Storage Arrays with IntelliFlash helps IT boost storage utilization and effciency while delivering unmatched storage savings and performance.