Europol, alongside Eurojust, has taken down over 1,025 servers used by three malware families: Rhadamanthys infostealer, VenomRAT, and the Elysium botnet malware operations. This mission is part of the latest phase of Operation Endgame, an activity taking place between November 10 and 13, designed to dismantle criminal infrastructures and combat ransomware enablers worldwide. In a […]Europol, alongside Eurojust, has taken down over 1,025 servers used by three malware families: Rhadamanthys infostealer, VenomRAT, and the Elysium botnet malware operations. This mission is part of the latest phase of Operation Endgame, an activity taking place between November 10 and 13, designed to dismantle criminal infrastructures and combat ransomware enablers worldwide. In a […]

Europol, Eurojust joint operation takes down over 1,025 servers used by malware operations

2025/11/13 21:54
4 min read
For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

Europol, alongside Eurojust, has taken down over 1,025 servers used by three malware families: Rhadamanthys infostealer, VenomRAT, and the Elysium botnet malware operations.

This mission is part of the latest phase of Operation Endgame, an activity taking place between November 10 and 13, designed to dismantle criminal infrastructures and combat ransomware enablers worldwide.

In a statement, Europol said, “The dismantled malware infrastructure consisted of hundreds of thousands of infected computers containing several million stolen credentials.”

The joint action, coordinated by Europol and Eurojust, was also supported by several private partners, including Cryptolaemus, Shadowserver, Spycloud, Cymru, Proofpoint, CrowdStrike, Lumen, Abuse.ch, HaveIBeenPwned, Spamhaus, DIVD, and Bitdefender.

Europol’s main suspect behind Venom RAT

According to Europol, many victims were unaware of infections. This has highlighted the sneaky nature of these threats. Infostealers quietly harvest login details, while RATs like VenomRAT enable remote control for espionage or ransomware deployment, and botnets like Elysium amplify distributed denial-of-service (DDoS) attacks and spam campaigns.

The joint action targeted ransomware infrastructure, the AVCheck site, Smokeloader botnet customers, and servers. It also disrupted major malware operations, such as DanaBot, IcedID, Pikabot, Trickbot, Smokeloader, Bumblebee, and SystemBC.

Besides eliminating the three major cybercrime enablers, authorities have also arrested the main suspect behind Venom RAT in Greece on November 3. Additionally, more than 1,025 servers have been taken down, and 20 domains have been seized.

Infostealer had access to 100,000 crypto wallets

Today’s announcement confirms the disruption of the Rhadamanthys infostealer operation, with the malware-as-a-service’s customers stating they no longer have access to their servers.

Europol dismantles Rhadamanthys Stealer, Venom RAT, Elysium botnet malware groups Seizure banner on Rhadamanthys’ site

This comes after Rhadamanthys promoted two tools on its website, called Elysium Proxy Bot and Crypt Service. The main information stealer had been updated to include the ability to collect fingerprints from devices and web browsers, among other things.

Rhadamanthys had become one of the most famous information scammers available as a malware-as-a-service (MaaS). It was first advertised by a threat actor named kingcrete2022. Version 0.9.2 of the stealer is the latest version.

Over time, the stealer’s skills have evolved to the point where they can accomplish much more than just steal data. They posed a serious threat to both personal and business security. Recorded Future revealed that version 0.7.0 of the malware had a new artificial intelligence (AI) tool for optical character recognition (OCR) that could capture crypto wallet seed phrases.

However, it is still unclear whether the Elysium botnet Europol refers to is the same proxy botnet service as RHAD security (also known as Mythical Origin Labs), the threat actor associated with Rhadamanthys, which was observed advertising as recently as last month.

Europol also revealed that the main suspect behind the infostealer had access to no less than 100,000 crypto wallets belonging to victims. That could potentially amount to millions of euros.

Authorities that participated in the effort included law enforcement agencies from Australia, Canada, Denmark, France, Germany, Greece, Lithuania, the Netherlands, and the US. 

At the same time, the US Department of Justice (DOJ), FBI, and Secret Service created a new interagency task force to fight cryptoscams targeting Americans.

As reported by Cryptopolitan, the new task force stated that criminals running the operations often operate from compounds in Southeast Asia. Workers at the sites are mostly victims of human trafficking, held against their will, abused, and guarded by armed groups.

US Attorney Jeanine Ferris Pirro said, “Estimates because of underreporting could be as much as 15 times more than $9 billion, and it starts with the devices that you and I hold and use every day to do our banking, to enrich our lives, to communicate with our friends and our loved ones.” 

Sharpen your strategy with mentorship + daily ideas - 30 days free access to our trading program

Market Opportunity
Particl Logo
Particl Price(PART)
$0.1504
$0.1504$0.1504
-0.19%
USD
Particl (PART) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

T7X Launches Regulated Launchpad for Tokenized Real-World Asset Securities

T7X Launches Regulated Launchpad for Tokenized Real-World Asset Securities

SHERIDAN, Wyo., March  18, 2026  (GLOBE NEWSWIRE) -- T7X announces the launch of the T7X Launchpad, a digital issuance platform designed to support the crea
Share
CryptoReporter2026/03/18 20:49
Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be

Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be

The post Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be appeared on BitcoinEthereumNews.com. Jordan Love and the Green Bay Packers are off to a 2-0 start. Getty Images The Green Bay Packers are, once again, one of the NFL’s better teams. The Cleveland Browns are, once again, one of the league’s doormats. It’s why unbeaten Green Bay (2-0) is a 8-point favorite at winless Cleveland (0-2) Sunday according to betmgm.com. The money line is also Green Bay -500. Most expect this to be a Packers’ rout, and it very well could be. But Green Bay knows taking anyone in this league for granted can prove costly. “I think if you look at their roster, the paper, who they have on that team, what they can do, they got a lot of talent and things can turn around quickly for them,” Packers safety Xavier McKinney said. “We just got to kind of keep that in mind and know we not just walking into something and they just going to lay down. That’s not what they going to do.” The Browns certainly haven’t laid down on defense. Far from. Cleveland is allowing an NFL-best 191.5 yards per game. The Browns gave up 141 yards to Cincinnati in Week 1, including just seven in the second half, but still lost, 17-16. Cleveland has given up an NFL-best 45.5 rushing yards per game and just 2.1 rushing yards per attempt. “The biggest thing is our defensive line is much, much improved over last year and I think we’ve got back to our personality,” defensive coordinator Jim Schwartz said recently. “When we play our best, our D-line leads us there as our engine.” The Browns rank third in the league in passing defense, allowing just 146.0 yards per game. Cleveland has also gone 30 straight games without allowing a 300-yard passer, the longest active streak in the NFL.…
Share
BitcoinEthereumNews2025/09/18 00:41
Edges higher ahead of BoC-Fed policy outcome

Edges higher ahead of BoC-Fed policy outcome

The post Edges higher ahead of BoC-Fed policy outcome appeared on BitcoinEthereumNews.com. USD/CAD gains marginally to near 1.3760 ahead of monetary policy announcements by the Fed and the BoC. Both the Fed and the BoC are expected to lower interest rates. USD/CAD forms a Head and Shoulder chart pattern. The USD/CAD pair ticks up to near 1.3760 during the late European session on Wednesday. The Loonie pair gains marginally ahead of monetary policy outcomes by the Bank of Canada (BoC) and the Federal Reserve (Fed) during New York trading hours. Both the BoC and the Fed are expected to cut interest rates amid mounting labor market conditions in their respective economies. Inflationary pressures in the Canadian economy have cooled down, emerging as another reason behind the BoC’s dovish expectations. However, the Fed is expected to start the monetary-easing campaign despite the United States (US) inflation remaining higher. Investors will closely monitor press conferences from both Fed Chair Jerome Powell and BoC Governor Tiff Macklem to get cues about whether there will be more interest rate cuts in the remainder of the year. According to analysts from Barclays, the Fed’s latest median projections for interest rates are likely to call for three interest rate cuts by 2025. Ahead of the Fed’s monetary policy, the US Dollar Index (DXY), which tracks the Greenback’s value against six major currencies, holds onto Tuesday’s losses near 96.60. USD/CAD forms a Head and Shoulder chart pattern, which indicates a bearish reversal. The neckline of the above-mentioned chart pattern is plotted near 1.3715. The near-term trend of the pair remains bearish as it stays below the 20-day Exponential Moving Average (EMA), which trades around 1.3800. The 14-day Relative Strength Index (RSI) slides to near 40.00. A fresh bearish momentum would emerge if the RSI falls below that level. Going forward, the asset could slide towards the round level of…
Share
BitcoinEthereumNews2025/09/18 01:23