Tuesday, April 1, 2025
HomeCyber AttackFBI Seizes 9 Virtual Currency Exchange Services to Block Ransom Payments

FBI Seizes 9 Virtual Currency Exchange Services to Block Ransom Payments

Published on

SIEM as a Service

Follow Us on Google News

The FBI has reportedly shut down 9 Virtual Currency Exchange services belonging to organizations to prevent cyber criminals from laundering their money.

These exchange services were used by threat actors who received ransom payments through criminal activities.

These organizations were knowingly supporting cybercrime activities and were supporting all kinds of threat actors. The domain names that were seized by authorities are as follows,

  • 24xbtc.com
  • 100btc.pro
  • pridechange.com
  • 101crypta.com
  • uxbtc.com
  • trust-exchange.org
  • bitcoin24.exchange
  • paybtc.pro
  • owl.gold

Virtual Exchanges are non-compliant if they have a lax anti-money laundering program or do not collect users’ enough KYC (Know Your Customer) information.

As stated by the FBI, These kinds of services operating in the cybercrime ecosystem are in violation of Title 18 United States Code, Sections 1960 and 1956.

In addition, these kinds of illegal currency exchanges are advertised online to get more and more cybercriminals to use their platform, resulting in an enormous revenue generation.

Most of these platforms were a playground for threat actors responsible for ransomware, scamming, and phishing campaigns. These services were offered in both Russian and English Speaking Countries.

The FBI has been investigating this issue further and will put up a seizure banner for these websites to inform visitors about their actions.

Running a money service business without an operating license and helping with money laundering is a federal crime.

Struggling to Apply The Security Patch in Your System? – 
Try All-in-One Patch Manager Plus

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

CrushFTP Security Vulnerability Under Attack After PoC Release

A recently disclosed security vulnerability in CrushFTP, identified as CVE-2025-2825, has become the target...

CISA Warns of Cisco Smart Licensing Utility Credential Flaw Exploited in Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a security advisory warning organizations...

Hackers Deploy 24,000 IPs to Breach Palo Alto Networks GlobalProtect

A wave of malicious activity targeting Palo Alto Networks PAN-OS GlobalProtect portals has been...

Linux Lite 7.4 Final Released: Enhanced GUI and Bug Fixes

Linux Lite, a popular lightweight Linux distribution aimed at making Linux accessible to beginners,...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Weaponized Zoom Installer Used by Hackers to Gain RDP Access and Deploy BlackSuit Ransomware

Cybersecurity researchers have uncovered a sophisticated attack campaign where threat actors utilized a trojanized...

Beware! A Fake Zoom Installer Drops BlackSuit Ransomware on Your Windows Systems

Cybersecurity analysts have uncovered a sophisticated campaign exploiting a fake Zoom installer to deliver...

ClickFix Captcha – A New Technique Hackers Used to Deliver Infostealers, Ransomware, & Quakbot Malware

Cybercriminals are leveraging fake CAPTCHA verification pages dubbed ClickFix to distribute malware, including infostealers,...