Treasury sanctions hosting provider for crypto cybercrimes

來源 Cryptopolitan

U.S. Treasury’s Office of Foreign Assets Control sanctions Russia-based hosting provider Aeza Group LLC for enabling cybercriminal operations.

The action includes cryptocurrency address designation while targeting critical infrastructure supporting ransomware attacks and data theft activities globally.

OFAC sanctions Aeza Group network for bulletproof hosting services

On July 1, 2025, Aeza Group LLC, a Russia-based bulletproof hosting company, and its executives were sanctioned by the U.S. Department of Treasury’s Office of Foreign Assets Control for aiding cybercrime. The penalties cover both cyber-related and CAATSA Russia-related agencies, according to Chainalysis.

The whole global network, including Aeza International Ltd. in the UK and other affiliated businesses, is covered by OFAC’s action in addition to the main Russian firm. This comprehensive approach addresses the global scope of modern cybercrime infrastructure operations spanning multiple jurisdictions.

The designation continues OFAC’s focus on disrupting service providers who enable massive cyber threats by targeting essential infrastructure that fraudsters use to host illicit information. This action follows the February 2025 designation of ZServers.

Aeza Group provided bulletproof hosting services that allowed cybercriminals to conduct ransomware attacks, data theft, and other malicious cyber activities while maintaining operational security. The company’s services included dedicated servers advertised from Moscow-based locations, providing resilient hosting infrastructure for criminal operations.

The sanctions target the supply chain supporting cybercrime operations rather than pursuing individual threat actors after attacks occur. This addresses the foundational infrastructure that makes large-scale cybercriminal activities possible.

Treasury flags addresses linked to Aeza payment infrastructure

OFAC’s designation includes one TRON cryptocurrency address TU4tDFRvcKhAZ1jdihojmBWZqvJhQCnJ4F associated with Aeza Group’s payment infrastructure for illicit hosting services. On-chain analysis reveals that Aeza Group relied on payment processors to receive payments for hosting services, obscuring the traceability of customer deposits through intermediary systems.

Treasury cracks down on hosting service, crypto addresses flagged.
Flow of funds from Aeza: Chainalysis

As an administrative wallet, the specified address manages cash-outs from payment processors, transfers money to other cryptocurrency exchanges, and occasionally gets paid directly for Aeza’s services. This wallet received more than $350,000 in cryptocurrency while cashing out at multiple deposit addresses across different exchanges.

The deposit addresses that Aeza utilized, according to Chainalysis Reactor study, also received money via an escrow provider for transactions on gaming platforms and the Garantex exchange. Additional connections include a darknet vendor selling infostealer malware, which breaches computer systems to steal sensitive user information.

This vendor was probably a client of Aeza since regular payments from the infostealer vendor wallet to Aeza’s exchange deposit address match Aeza’s hosting service pricing structures. The payment patterns provide evidence of the hosting provider’s direct involvement with malicious actors operating infostealers and other cybercriminal tools.

The detected TRON address has been marked by Chainalysis in their product suite, and they are still keeping an eye out for more addresses linked to Aeza and other reliable hosting services.

Targeting of cybercrime infrastructure disrupts criminal supply chains

Instead of going against specific threat actors after assaults have already taken place, OFAC’s action against Aeza Group targets the core infrastructure that enables large-scale cybercrime operations. This approach attacks the supply chain supporting cybercriminal activities by focusing on service providers that facilitate ongoing malicious operations.

Bulletproof hosting services like Aeza Group offer customized services resistant to takedown and law enforcement actions, providing high-level infrastructure for criminal use. The services facilitate constant access to hosting infrastructure needed for ransomware attacks, data thievery operations, and other malicious cyber activities.

Sanctions approach seeks to disrupt critical infrastructure dependencies used by cybercriminals for hosting malicious content and remaining online. Disrupting hosting services is meant by the authorities to make operationally difficult for cybercriminal groups that depend on robust infrastructure for running their operations.

This enforcement action follows similar disruptions of cybercrime infrastructure, including the February 2025 designation of ZServers, reflecting ongoing government dedication to disrupting service providers enabling criminality. This is a strategy of systemic disruption, rather than response to individual attacks.

KEY Difference Wire helps crypto brands break through and dominate headlines fast

免責聲明:僅供參考。 過去的表現並不預示未來的結果。
placeholder
非農重磅來襲,大行情一觸即發!聯準會7月能否降息?若非農數據好於預期,或能幫助美元止跌,並打壓黃金價格。反之,數據不佳將打壓美元,利好金價。
作者  Tony Chou
13 小時前
若非農數據好於預期,或能幫助美元止跌,並打壓黃金價格。反之,數據不佳將打壓美元,利好金價。
placeholder
【今日市場前瞻】「小非農」來襲!比特幣反彈破10.7萬美元美元反彈,關注ADP就業數據;比特幣突破10.7萬美元,多頭力量依舊穩健;黃金上漲受阻,關注這一支撐位>>
作者  Alison Ho
13 小時前
美元反彈,關注ADP就業數據;比特幣突破10.7萬美元,多頭力量依舊穩健;黃金上漲受阻,關注這一支撐位>>
placeholder
降息預測:貝森特押注9月前 高盛提前至9月 非農數據將成關鍵TradingKey - 美國財政部長貝森特(Scott Bessent)於週二(7月1日)表示,聯準會在9月前啟動降息,並強調川普的關稅政策不太可能如聯準會預期的那樣引發通膨。高盛也緊接著發布預測,表示聯準會首次降息將在9月。高盛在報告中預測,9月進行首次降息後,年內還將降息兩次,累計下調75個基點,將利率降到3.50%至3.75%的區間。相較於先前預測的12月首次降息,本次預測大幅提早。上述預
作者  TradingKey
13 小時前
TradingKey - 美國財政部長貝森特(Scott Bessent)於週二(7月1日)表示,聯準會在9月前啟動降息,並強調川普的關稅政策不太可能如聯準會預期的那樣引發通膨。高盛也緊接著發布預測,表示聯準會首次降息將在9月。高盛在報告中預測,9月進行首次降息後,年內還將降息兩次,累計下調75個基點,將利率降到3.50%至3.75%的區間。相較於先前預測的12月首次降息,本次預測大幅提早。上述預
placeholder
英特爾「豪賭」!跳過18A直攻14A,是彎道超車還是自陷巨坑?TradingKey-業界傳出消息,英特爾(INTC)正醞釀對其晶圓廠代工業務進行重大戰略調整,計劃跳過原定的Intel 18A(1.8奈米)工藝,直接推進更先進的14A(1.4奈米)工藝,旨在提升市場競爭力。原本18A對標台積電/三星的2奈米技術,是英特爾重奪製程領先的關鍵節點。但目前看來,該工藝對蘋果、英偉達等大客戶吸引力不足。而14A作為全球最先進的工藝,在能源效率和晶片密度上較18A提升1
作者  TradingKey
13 小時前
TradingKey-業界傳出消息,英特爾(INTC)正醞釀對其晶圓廠代工業務進行重大戰略調整,計劃跳過原定的Intel 18A(1.8奈米)工藝,直接推進更先進的14A(1.4奈米)工藝,旨在提升市場競爭力。原本18A對標台積電/三星的2奈米技術,是英特爾重奪製程領先的關鍵節點。但目前看來,該工藝對蘋果、英偉達等大客戶吸引力不足。而14A作為全球最先進的工藝,在能源效率和晶片密度上較18A提升1
placeholder
澳元/日元價格預測:測試94.50關口,同時在九日指數移動平均線處找到支撐澳元/日元在前一交易日錄得漲幅後獲得上漲動力,週三歐洲時段交投於94.50附近。根據日線圖的技術分析,該貨幣對繼續在上升通道模式中向上移動,表明當前存在看漲偏向
作者  FXStreet
13 小時前
澳元/日元在前一交易日錄得漲幅後獲得上漲動力,週三歐洲時段交投於94.50附近。根據日線圖的技術分析,該貨幣對繼續在上升通道模式中向上移動,表明當前存在看漲偏向
goTop
quote