The person at the center of this case
Thousands of computer users whose credentials and personal information were stolen
Justice for Thousands of computer users whose credentials and personal information were stolen — the trail went cold in 2021, but the truth hasn't.
Start here
Where is Alexander Lefterov currently located and what is his current status?
How many victims were affected by the botnet and what financial losses resulted?
Who were Lefterov's co-conspirators and have they been identified or arrested?
Alexander Lefterov, a Moldovan citizen, is wanted by the FBI for operating a sophisticated botnet scheme from March through November 2021 that infected thousands of computers to steal financial credentials and personal information. Using online aliases including 'Alipako' and 'Uptime,' Lefterov allegedly conspired with others to profit from unauthorized access to victim accounts at banks, payment processors, and retailers, while also selling botnet access to other cybercriminals. A federal arrest warrant was issued on December 29, 2021, and Lefterov remains at large, believed to be in Moldova.
Try asking
A one-time $10 claim transfers this imported case workspace to your account. You get 10 uploads for this case, 25 daily AI questions for this case, and public tips with files route to you.
This does not start a subscription. When the included limits are reached, the Personal plan unlocks more workspace capacity.
Beyond the top three above — each detail below could be the thread that pulls this case open.
What infrastructure or technical systems supported the botnet operation and command-and-control dashboard?
What other online aliases or accounts may be associated with Lefterov beyond 'Alipako' and 'Uptime'?
Even the smallest detail could be the key to solving this case.
Official wording
Conspiracy to Commit Computer Fraud; Intentional Damage to a Protected Computer; Unauthorized Access of a Protected Computer to Obtain Information for Private Financial Gain; Aggravated Identity Theft; Conspiracy to Commit Wire Fraud Caution: Alexander Lefterov is wanted for his alleged involvement in cyber-related crimes. From approximately March of 2021 through November of 2021, Lefterov, using the online monikers "Alipako" and "Uptime" among others, allegedly conspired with others to profit from his operation and control of a botnet comprised of thousands of malware-infected computers.
Lefterov and his co-conspirators allegedly used malware to steal victim credentials to online accounts, including accounts at financial institutions, payment processors, and retail establishments, as well as other personal information, from infected computers within the botnet. Lefterov and his co-conspirators allegedly used an online dashboard or panel to monitor the infected computers, access victim credentials, and access victim computers.
Lefterov and his co-conspirators also allegedly sold access to the botnet to other cyber criminals, allowing cyber criminals to gain unauthorized access to victims’ online accounts by fraudulently posing as the legitimate account holder. On December 29, 2021, a federal arrest warrant was issued for Lefterov in the United States District Court, Western District of Pennsylvania, after he was charged with Conspiracy to Commit Computer Fraud; Intentional Damage to a Protected Computer; Unauthorized Access of a Protected Computer to Obtain Information for Private Financial Gain; Aggravated Identity Theft; and Conspiracy to Commit Wire Fraud.
Remarks: Lefterov is a citizen of Moldova and last resided in Chisinau, Moldova.
Alexander Lefterov and co-conspirators begin operating botnet using malware to steal credentials from infected computers
Botnet operation concludes after approximately nine months of criminal activity
Federal arrest warrant issued in United States District Court, Western District of Pennsylvania for Conspiracy to Commit Computer Fraud, Intentional Damage to a Protected Computer, Unauthorized Access, Aggravated Identity Theft, and Conspiracy to Commit Wire Fraud