Grimy Times

Evgenii Ptitsyn, Wire Fraud Conspiracy, Maryland 2026

Published March 4, 2026

Crime Pays No Dividends for Russian Ransomware Administrator

In a move that will send a chill down the spines of cybercriminals worldwide, Russian national Evgenii Ptitsyn, 43, has pleaded guilty to a charge connected to a ransomware conspiracy in federal court.

According to the guilty plea, Ptitsyn administered the sale, distribution, and operation of Phobos ransomware, a malware that, through its affiliates, victimized more than 1,000 public and private entities in the United States and around the world, extorting ransom payments worth more than $39 million.

Ptitsyn, who authorities extradited from South Korea in November 2024, pleaded guilty in federal court to wire fraud conspiracy. This guilty plea is a significant blow to the global cybercrime community, as it highlights the consequences of engaging in such illicit activities.

Phobos ransomware, through its affiliates, hacked into victims' computer networks, often using stolen or otherwise unauthorized credentials, and extorted ransom payments in exchange for decryption keys to regain access to encrypted data. Ptitsyn and his co-conspirators operated a darknet website to coordinate the sale and distribution of Phobos ransomware and used online monikers to advertise their services on criminal forums and messaging platforms.

The decryption key fees were then transferred from the unique affiliate cryptocurrency wallet to a wallet Ptitsyn controlled. Ptitsyn also received a portion of the ransomware payments made by victims.

Ptitsyn faces a maximum penalty of 20 years in prison for wire fraud count. Sentencing is set for Wednesday, July 15, at 2:30 p.m. in Greenbelt, Maryland.

This guilty plea highlights the importance of international cooperation in combating cybercrime. The U.S. Attorney's Office for the District of Maryland, the FBI, and law enforcement partners in South Korea, the United Kingdom, Japan, Spain, Belgium, Poland, Czech Republic, France, Romania, and Europol, as well as the U.S. Department of Defense Cyber Crime Center, played a crucial role in the investigation.

As authorities continue to crack down on cybercrime, it is essential for individuals and organizations to take proactive measures to protect themselves against such threats. For more information on protecting networks against Phobos ransomware, visit StopRansomware.gov and justice.gov/usao-md/report-fraud.

Key Facts

🔒 Get the grimiest stories delivered weekly. Subscribe free →

Browse More

All Maryland Cases →All Districts →

Source: https://www.justice.gov/usao-md/pr/russian-ransomware-administrator-pleads-guilty-wire-fraud-conspiracy