Aleksei Valerevich Kovalskii Updated Work May 2026

The Trickbot group has been active since at least 2016, evolving from a simple banking trojan into a sophisticated "malware-as-a-service" operation. The group is responsible for infecting hundreds of thousands of computer systems globally, targeting hospitals, schools, and private companies.

He is currently listed on the OpenSanctions database due to his Interpol Red Notice status. aleksei valerevich kovalskii updated

Born on August 16, 1991, in Krasnoyarsk, Russia, Kovalskii is identified by law enforcement as a key technical operative within the notorious group (also known as Wizard Spider). Operating under the online aliases "neo" and "wild," he is alleged to have served as a "crypter" for the group's malware. In this role, he was responsible for modifying malicious code to ensure it could bypass antivirus software and other security measures undetected. Profile Summary Full Name: Aleksei Valerevich Kovalskii Aliases: , Date of Birth: August 16, 1991 Place of Birth: Krasnoyarsk, Russian Federation Status: Wanted / Under Sanctions The Trickbot group has been active since at

Membership in a criminal organization, cyber-extortion, and data theft The "Trickbot" Connection Born on August 16, 1991, in Krasnoyarsk, Russia,

While he is believed to be living in the Russian Federation, his exact whereabouts remain unknown.

In May 2025, Kovalskii was prominently featured in , a coordinated international crackdown led by European and U.S. authorities targeting major botnet infrastructures.

Authorities, including the BKA and the General Prosecutor’s Office in Frankfurt am Main, continue to seek information regarding his online presence, communication channels, or any travel outside of Russia. www.bka.de