Treasury sanctions hosting provider for crypto cybercrimes

来源 Cryptopolitan

U.S. Treasury’s Office of Foreign Assets Control sanctions Russia-based hosting provider Aeza Group LLC for enabling cybercriminal operations.

The action includes cryptocurrency address designation while targeting critical infrastructure supporting ransomware attacks and data theft activities globally.

OFAC sanctions Aeza Group network for bulletproof hosting services

On July 1, 2025, Aeza Group LLC, a Russia-based bulletproof hosting company, and its executives were sanctioned by the U.S. Department of Treasury’s Office of Foreign Assets Control for aiding cybercrime. The penalties cover both cyber-related and CAATSA Russia-related agencies, according to Chainalysis.

The whole global network, including Aeza International Ltd. in the UK and other affiliated businesses, is covered by OFAC’s action in addition to the main Russian firm. This comprehensive approach addresses the global scope of modern cybercrime infrastructure operations spanning multiple jurisdictions.

The designation continues OFAC’s focus on disrupting service providers who enable massive cyber threats by targeting essential infrastructure that fraudsters use to host illicit information. This action follows the February 2025 designation of ZServers.

Aeza Group provided bulletproof hosting services that allowed cybercriminals to conduct ransomware attacks, data theft, and other malicious cyber activities while maintaining operational security. The company’s services included dedicated servers advertised from Moscow-based locations, providing resilient hosting infrastructure for criminal operations.

The sanctions target the supply chain supporting cybercrime operations rather than pursuing individual threat actors after attacks occur. This addresses the foundational infrastructure that makes large-scale cybercriminal activities possible.

Treasury flags addresses linked to Aeza payment infrastructure

OFAC’s designation includes one TRON cryptocurrency address TU4tDFRvcKhAZ1jdihojmBWZqvJhQCnJ4F associated with Aeza Group’s payment infrastructure for illicit hosting services. On-chain analysis reveals that Aeza Group relied on payment processors to receive payments for hosting services, obscuring the traceability of customer deposits through intermediary systems.

Treasury cracks down on hosting service, crypto addresses flagged.
Flow of funds from Aeza: Chainalysis

As an administrative wallet, the specified address manages cash-outs from payment processors, transfers money to other cryptocurrency exchanges, and occasionally gets paid directly for Aeza’s services. This wallet received more than $350,000 in cryptocurrency while cashing out at multiple deposit addresses across different exchanges.

The deposit addresses that Aeza utilized, according to Chainalysis Reactor study, also received money via an escrow provider for transactions on gaming platforms and the Garantex exchange. Additional connections include a darknet vendor selling infostealer malware, which breaches computer systems to steal sensitive user information.

This vendor was probably a client of Aeza since regular payments from the infostealer vendor wallet to Aeza’s exchange deposit address match Aeza’s hosting service pricing structures. The payment patterns provide evidence of the hosting provider’s direct involvement with malicious actors operating infostealers and other cybercriminal tools.

The detected TRON address has been marked by Chainalysis in their product suite, and they are still keeping an eye out for more addresses linked to Aeza and other reliable hosting services.

Targeting of cybercrime infrastructure disrupts criminal supply chains

Instead of going against specific threat actors after assaults have already taken place, OFAC’s action against Aeza Group targets the core infrastructure that enables large-scale cybercrime operations. This approach attacks the supply chain supporting cybercriminal activities by focusing on service providers that facilitate ongoing malicious operations.

Bulletproof hosting services like Aeza Group offer customized services resistant to takedown and law enforcement actions, providing high-level infrastructure for criminal use. The services facilitate constant access to hosting infrastructure needed for ransomware attacks, data thievery operations, and other malicious cyber activities.

Sanctions approach seeks to disrupt critical infrastructure dependencies used by cybercriminals for hosting malicious content and remaining online. Disrupting hosting services is meant by the authorities to make operationally difficult for cybercriminal groups that depend on robust infrastructure for running their operations.

This enforcement action follows similar disruptions of cybercrime infrastructure, including the February 2025 designation of ZServers, reflecting ongoing government dedication to disrupting service providers enabling criminality. This is a strategy of systemic disruption, rather than response to individual attacks.

KEY Difference Wire helps crypto brands break through and dominate headlines fast

免责声明:仅供参考。 过去的表现并不预示未来的结果。
placeholder
2025年美元年中收官:贬值10%创1970年代以来最差H1,下半年继续跌?TradingKey - 随着特朗普高关税政策的影响从提高通胀演变为美国例外论消退和美国资产大撤离,叠加美联储独立性受到质疑和降息预期升温,2025年上半年美元指数意外暴跌超10%,与华尔街2024年底的美元走势预期相去甚远。美元指数(DXY)今年已连续6个月单月下跌,从年初的110左右一度跌破97。截至6月30日,美元指数报97.09,处于近三年低位,上半年以来下跌约11%。【2025年美元指数
作者  TradingKey
6 月 30 日 周一
TradingKey - 随着特朗普高关税政策的影响从提高通胀演变为美国例外论消退和美国资产大撤离,叠加美联储独立性受到质疑和降息预期升温,2025年上半年美元指数意外暴跌超10%,与华尔街2024年底的美元走势预期相去甚远。美元指数(DXY)今年已连续6个月单月下跌,从年初的110左右一度跌破97。截至6月30日,美元指数报97.09,处于近三年低位,上半年以来下跌约11%。【2025年美元指数
placeholder
逢七必涨!美股会打破“7月上涨魔咒”吗? 7月是美股表现最强的月份之一,标普500平均回报率为3.35%。
作者  Alison Ho
7 月 01 日 周二
7月是美股表现最强的月份之一,标普500平均回报率为3.35%。
placeholder
特朗普“大而美”法案助力黄金上涨!汇丰:2025年下半年金价或承压市场对美国财政状况感到担忧,进而推动黄金价格上涨。7月1日金价一度涨至3358美元/盎司,截至7月2日发稿有所回落,报3334美元/盎司。
作者  Alison Ho
22 小时前
市场对美国财政状况感到担忧,进而推动黄金价格上涨。7月1日金价一度涨至3358美元/盎司,截至7月2日发稿有所回落,报3334美元/盎司。
placeholder
美国6月非农前瞻:失业率4.3%为7月降息铺路,美股美债继续涨?TradingKey - 2025年7月3日周四,美国劳工统计局将发布6月非农就业报告,这份就业报告因美国独立纪念日假期提前一日发布。分析认为,特朗普关税的负面影响将在6月劳动力市场数据体现,美联储7月降息概率有望增加,利好美股美债等资产表现。据Factset数据,经济学家预计美国6月非农就业新增人数将从5月的13.9万人降至11.5万;失业率将反弹至4.3%,此前已连续三个月稳定在4.2%的水平
作者  TradingKey
17 小时前
TradingKey - 2025年7月3日周四,美国劳工统计局将发布6月非农就业报告,这份就业报告因美国独立纪念日假期提前一日发布。分析认为,特朗普关税的负面影响将在6月劳动力市场数据体现,美联储7月降息概率有望增加,利好美股美债等资产表现。据Factset数据,经济学家预计美国6月非农就业新增人数将从5月的13.9万人降至11.5万;失业率将反弹至4.3%,此前已连续三个月稳定在4.2%的水平
placeholder
美股行业视角下的参议院版减税法案:晶片股利好,光伏股缓忧TradingKey - 美国参议院于7月1日以一票之差通过了特朗普的减税与支出法案,该版本法案拟对晶片制造商增加税收抵免额度且没有囊括此前市场担忧的对风能和太阳能项目的进口组件关税,晶片股和清洁能源股迎来利好。在参议院版本的「大美丽法案」中,若晶片制造商在现有《晶片与科学法案》剔除的2026年截止日期前在美国兴建新工厂,它们将有资格享受35%的投资税抵免,税收抵免比例高于目前的25%和预期的30
作者  TradingKey
15 小时前
TradingKey - 美国参议院于7月1日以一票之差通过了特朗普的减税与支出法案,该版本法案拟对晶片制造商增加税收抵免额度且没有囊括此前市场担忧的对风能和太阳能项目的进口组件关税,晶片股和清洁能源股迎来利好。在参议院版本的「大美丽法案」中,若晶片制造商在现有《晶片与科学法案》剔除的2026年截止日期前在美国兴建新工厂,它们将有资格享受35%的投资税抵免,税收抵免比例高于目前的25%和预期的30
goTop
quote