The man behind those 'your computer is infected' pop-ups just got 16 years
For once, a story that ends with the bad guy in a cell. On August 5, a federal court in Alexandria, Virginia sentenced Maksim Silnikau, a 40-year-old Belarusian, to 16 years in prison. As BleepingComputer reported, he built and ran the Ransom Cartel ransomware operation - code cousin to the infamous REvil - which hit at least 18 companies between 2021 and 2023 and tried to extort more than $5.2 million.
The corporate ransomware is the headline, but the reason this one is worth your attention is what he did for years before it. Under aliases like "J.P. Morgan," Silnikau was one of the pioneers of a scam you've almost certainly seen: the sudden full-screen "your computer is infected" warning. Using the Angler exploit kit and poisoned online ads from 2013 through 2022 - and the earlier "Reveton" police-lock scareware before that - he pushed fake virus alerts that frightened ordinary people into paying up or handing over card details. Security firm Barracuda notes Reveton alone pulled in roughly $400,000 a month at its peak, and that his malvertising "infected millions of systems."
Here's the uncomfortable part: the arrest doesn't retire the trick. Fake antivirus warnings and "call this Microsoft number" pop-ups are still doing the rounds because they work on panic, not on any software flaw. The habit that beats every version of it stays the same - a real virus alert never arrives as a web page telling you to call a number or pay to "unlock" your PC. If one does, close the browser (Alt+F4), and don't call anyone.
If a scare page has left something behind - a browser toolbar you didn't add, a program that now launches at startup - Tendvane's Safety check flags exactly those kinds of unwanted leftovers so you can see what, if anything, actually landed on the machine.