He found a lot of e-mails for transactions through liberty reserve which indicated the account numbers this person had there. Paypal does require you to provide a real name and this e-mail said this paypal account belonged to roman seleznev. [music] The same roman seleznev that was ncux, the big-time carder the secret service was tracking years ago but went dark.

The becu was reporting that a number of fraudulent charges have showed up on some credit cards with the common purchase point of the broadway grill right in capitol hill in seattle. Since the detective was in seattle he drove over to the restaurant and started conducting a forensic analysis of the computers there. Their cash registers were windows computers running a credit card processing software. These computers had the same kameo malware that the detective found on the schlotzsky’s deli computers.

These transactions also gave the secret service more relevant information about roman like his most recent address and phone numbers. On july 1st, 2014, the secret service got a tip that roman was in the maldives. The problem though is that the maldives doesn’t have an extradition treaty with the us either, so they aren’t going to help the us in capturing him.

Then he took a small plane to a private beach on another island which is where he was. The secret service thought he’ll probably come back to the international airport to return to russia so they waited for him at the airport. Two days later roman, his wife, and his daughter landed in a small plane at the airport and tried to switch planes to go to russia.

Listen to the podcast about the war in ukraine and how sanctions against russia are leading to a global rise in credit card fraud. Later, the prosecutors did get a bribe of around ten million dollars to release him. The prosecutors did not accept this and it only added to his case.

They all had the same signs and were communicating to the same servers. Some of these restaurants had no clue they were hacked until the secret service came to their door. With this he could see the metadata about the traffic going in and out of that server. Things like ip addresses, ports carders forum, and volume of traffic, but not the full packet capture. Upon putting a pen trap on the server they found hundreds of computers around the world are connecting to the server and uploading credit card data to it. Detective dunn started visiting any of these places that were local to washington state where he was based out of.