The person at the center of this case
Multiple victims of identity theft and financial fraud through botnet operations
Justice for Multiple victims of identity theft and financial fraud through botnet operations — the trail went cold in 2021, but the truth hasn't.
Start here
What is Lefterov's current location and is he still operating cybercriminal activities?
How many victims were affected by the botnet and what total financial losses occurred?
Who were Lefterov's co-conspirators and have they been identified or apprehended?
Alexander Lefterov, a Moldovan citizen, is wanted for operating a sophisticated botnet scheme from March through November 2021 that infected thousands of computers and stole credentials from financial institutions, payment processors, and retail accounts. Using online aliases including 'Alipako' and 'Uptime,' Lefterov and his co-conspirators used malware dashboards to monitor compromised systems and sold unauthorized access to other cybercriminals. A federal arrest warrant was issued on December 29, 2021, but Lefterov remains at large, likely in Moldova, making this case a significant cybercrime investigation requiring international cooperation.
Try asking
A one-time $10 claim transfers this imported case workspace to your account. You get 10 uploads for this case, 25 daily AI questions for this case, and public tips with files route to you.
This does not start a subscription. When the included limits are reached, the Personal plan unlocks more workspace capacity.
Beyond the top three above — each detail below could be the thread that pulls this case open.
What infrastructure or financial accounts were used to operate the botnet dashboard and receive proceeds?
Even the smallest detail could be the key to solving this case.
Official wording
Conspiracy to Commit Computer Fraud; Intentional Damage to a Protected Computer; Unauthorized Access of a Protected Computer to Obtain Information for Private Financial Gain; Aggravated Identity Theft; Conspiracy to Commit Wire Fraud Caution: Alexander Lefterov is wanted for his alleged involvement in cyber-related crimes. From approximately March of 2021 through November of 2021, Lefterov, using the online monikers "Alipako" and "Uptime" among others, allegedly conspired with others to profit from his operation and control of a botnet comprised of thousands of malware-infected computers.
Lefterov and his co-conspirators allegedly used malware to steal victim credentials to online accounts, including accounts at financial institutions, payment processors, and retail establishments, as well as other personal information, from infected computers within the botnet. Lefterov and his co-conspirators allegedly used an online dashboard or panel to monitor the infected computers, access victim credentials, and access victim computers.
Lefterov and his co-conspirators also allegedly sold access to the botnet to other cyber criminals, allowing cyber criminals to gain unauthorized access to victims’ online accounts by fraudulently posing as the legitimate account holder. On December 29, 2021, a federal arrest warrant was issued for Lefterov in the United States District Court, Western District of Pennsylvania, after he was charged with Conspiracy to Commit Computer Fraud; Intentional Damage to a Protected Computer; Unauthorized Access of a Protected Computer to Obtain Information for Private Financial Gain; Aggravated Identity Theft; and Conspiracy to Commit Wire Fraud.
Remarks: Lefterov is a citizen of Moldova and last resided in Chisinau, Moldova.
Lefterov and co-conspirators begin operating botnet comprised of thousands of malware-infected computers
Alleged botnet operation ceases by end of November 2021
Warrant issued in United States District Court, Western District of Pennsylvania for multiple cyber crimes