Feeds

Russian SpyEye author pleads guilty to starting malware onslaught

FBI went down to Georgia

High performance access to file storage

Russian national Aleksandr Andreevich Panin has pleaded guilty to charges of banking and wire fraud for his role in developing the SpyEye Trojan, which used botnets of enslaved computers to harvest financial credentials from internet users around the world.

"The apprehension of Mr. Panin means that one of the world's top developers of malicious software is no longer in a position to create computer programs that can victimize people around the world," said FBI special agent-in-charge Ricky Maxwell.

"Botnets such as SpyEye represent one of the most dangerous types of malicious software on the Internet today, which can steal people's identities and money from their bank accounts without their knowledge."

Panin released SpyEye in 2009 and it soon caught the antivirus industry's attention as a highly advanced piece of malware specifically designed with financial phishing in mind. It is thought to have infected over 1.4 million machines in its two years of operation, netting its shadowy users millions in the process.

According to the charges, Panin sold custom versions of SpyEye on invitation-only black code forums for between $1,000 to $8,500 a pop, and he had at least 150 clients. Just one of these, going by the moniker "Soldier," made a reported $3.2m from financial fraud using the malware. As of 2013, over 10,000 bank accounts are thought to have been compromised by it.

In February 2011, law enforcement seized a SpyEye server in a data center in Georgia and federal investigators found contact details for Panin embedded in the code. They then bought a copy of SpyEye from him and used it to file charges, before arresting him while he was en route through Hartsfield-Jackson Atlanta International Airport.

The investigation has also led to the arrest of four of Panin's "clients and associates" in the UK and Bulgaria.

"Panin was the architect of a pernicious malware known as 'SpyEye' that infected computers worldwide," said US Attorney Sally Yates of the Northern District of Georgia. "He commercialized the wholesale theft of financial and personal information. And now he is being held to account for his actions. Cyber criminals be forewarned: you cannot hide in the shadows of the Internet. We will find you and bring you to justice."

Panin is due to be sentenced by a court in the northern district of Georgia on April 29. ®

High performance access to file storage

More from The Register

next story
OpenSSL Heartbleed: Bloody nose for open-source bleeding hearts
Bloke behind the cockup says not enough people are helping crucial crypto project
Web data BLEEDOUT: Users to feel the pain as Heartbleed bug revealed
Vendors and ISPs have work to do updating firmware - if it's possible to fix this
One year on: diplomatic fail as Chinese APT gangs get back to work
Mandiant says past 12 months shows Beijing won't call off its hackers
Obama allows NSA to exploit 0-days: report
If the spooks say they need it, they get it
Call of Duty 'fragged using OpenSSL's Heartbleed exploit'
So it begins ... or maybe not, says one analyst
Heartbleed exploit, inoculation, both released
File under 'this is going to hurt you more than it hurts me'
Experian subsidiary faces MEGA-PROBE for 'selling consumer data to fraudster'
US attorneys general roll up sleeves, snap on gloves
Bad PUPPY: Undead Windows XP deposits fresh scamware on lawn
Installing random interwebs shiz will bork your zombie box
prev story

Whitepapers

Mainstay ROI - Does application security pay?
In this whitepaper learn how you and your enterprise might benefit from better software security.
Five 3D headsets to be won!
We were so impressed by the Durovis Dive headset we’ve asked the company to give some away to Reg readers.
3 Big data security analytics techniques
Applying these Big Data security analytics techniques can help you make your business safer by detecting attacks early, before significant damage is done.
The benefits of software based PBX
Why you should break free from your proprietary PBX and how to leverage your existing server hardware.
Mobile application security study
Download this report to see the alarming realities regarding the sheer number of applications vulnerable to attack, as well as the most common and easily addressable vulnerability errors.