Shuttered Russian Crypto Exchange Garantex Rebrands as Grinex, Global Ledger Finds

1 month ago

Less than 2 weeks aft it was taken down by planetary instrumentality enforcement authorities, Garantex — a Russian crypto speech fashionable with ransomware gangs and sanctions-evading oligarchs — has allegedly already risen from the ashes, rebranding itself arsenic Grinex.

According to a caller study from Swiss blockchain analytics steadfast Global Ledger, a slew of connected and off-chain information indicates that Grinex is simply a nonstop successor to Garantex. Some liquidity from Garantex, including each of Garantex’s holdings of a ruble-backed stablecoin called A7A5, has already been moved to Grinex-controlled wallets.

Global Ledger CEO Lex Fisun told CoinDesk that, successful summation to on-chain information connecting Garantex to Grinex, determination person been galore off-chain indications that the 2 exchanges are intimately connected. Fisun pointed to the accelerated maturation of Grinex, which helium said had surpassed $40 cardinal successful measurement successful conscionable 2 weeks, arsenic good arsenic a big of societal media ties betwixt the 2 exchanges.

Though different large blockchain analytics companies, including TRM Labs and Chainalysis, person yet to corroborate Global Ledger’s findings, Chainalysis’ Head of National Security Intelligence Andrew Fierman told CoinDesk that helium had seen respective indicators that Grinex was apt to beryllium the rebrand of Garantex.

Fierman pointed to a caller Telegram remark from Sergey Mendeleev, 1 of the archetypal founders of Garantex, announcing the instauration of Grinex and claiming immoderate similarities betwixt the 2 exchanges were random — followed by 2 crying laughing emojis. Both Fierman and Fisun told CoinDesk that determination were galore reports of Garantex users going to Garantex’s in-person offices successful Europe and the Middle East and transferring their crypto from Garantex to Grinex. Both besides pointed retired the similarities successful the 2 platforms’ idiosyncratic interfaces.

Though the grounds is surely compelling, Fierman said that until Chainalysis completes its reappraisal of Grinex’s infrastructure, it cannot definitively validate the accuracy of Global Ledger’s report.

But, if Grinex is, successful fact, a rebrand of Garantex, it wouldn’t beryllium the archetypal clip that a sanctioned speech remade itself aft a shutdown. In 2017, Russian crypto speech BTC-E was taken down by American instrumentality enforcement, and subsequently rebranded arsenic WEX. WEX didn’t past agelong though — it shuttered a twelvemonth aboriginal owed to interior struggle and in-fighting among its remaining leadership. Similarly, sanctioned Russian speech Suex rebranded arsenic Chatex, and was subsequently sanctioned again.

The occupation with sanctions

The accelerated revival of Garantex demonstrates the situation of sanctions, particularly against transgression operations similar non-compliant exchanges, darknet marketplaces and ransomware gangs that tin simply morph to debar detection.

“Sanctions evasion is going to happen,” Fierson said. “Because if you're sanctioned, you aren't conscionable going to judge that you tin nary longer behaviour immoderate fiscal transactions. You are going to look to debar detection, nevertheless that whitethorn be, whether it beryllium done creating ammunition companies, creating caller crypto wallets — and the larger the operation, and the much prominent, the much technically precocious you'd person to beryllium to really marque it work.”

Feirson said this occupation isn’t unsocial to crypto, but crypto-related sanctions connection instrumentality enforcement a unsocial accidental to travel the wealth aft sanctions are enactment successful place.

“The unsocial facet to the blockchain is that it's transparent and immutable, and truthful what happens erstwhile a institution gets unopen down is simply a batch much examined,” Fierson said. “There's a batch much to analyse on-chain. Garantex gets unopen down, their Tether holdings get seized, but that doesn't halt them from moving different assets. There's accidental to show what happens to those funds post-official shutdown.”

A hydra-like web of imaginable successors

Whether Grinex is Garantex 2.0 oregon not, determination are a fig of different non-compliant Russian crypto exchanges anxious and consenting to instrumentality its place.

Ari Redbord, planetary caput of argumentation and authorities affairs astatine TRM Labs, told CoinDesk that it was simply “too early” to definitively measure the narration betwixt Grinex and Garantex. “That said, it is wide that different high-risk non-compliant exchanges volition effort to capable the illicit concern void near by Garantex,” helium added.

A caller lawsuit study from TRM Labs named respective imaginable successors, including high-risk Russian exchanges ABCEX and Keine-Exchange.

Garantex instrumentality down

Garantex was dismantled by planetary instrumentality enforcement from the U.S., Germany and Finland successful a associated cognition earlier this month, which seized its domain and servers.

The U.S. Treasury’s Department of Foreign Asset Control (OFAC) archetypal sanctioned the speech successful 2022, accusing it of knowingly facilitating wealth laundering for ransomware gangs similar Black Basta and Conti, arsenic good arsenic darknet markets similar Hydra.

According to tribunal documents, Garantex’s clientele besides included North Korea’s state-sanctioned hacking squad The Lazarus Group, which was down the caller $1.4 cardinal Bybit hack, arsenic good arsenic Russian oligarchs who utilized the work to evade sanctions aft Russia’s penetration of Ukraine.

Two of Garantex’s operators, Lithuanian nationalist and Russian nonmigratory Aleksej Besciokov and Russian national and United Arab Emirates nonmigratory Aleksandr Mira Serda person been charged with wealth laundering conspiracy successful transportation with their enactment with Garantex. Besciokov was arrested portion vacationing with his household successful India earlier this month, and is expected to beryllium extradited to the U.S. to look charges.

View source