This research analyzed a drop zone hosting stolen credit card data from attacks on eight Italian banks. The drop zone was a custom web application located on a server in Russia that functioned as a command and control center. It contained encrypted credit card and account information in a SQL database. The researchers discovered encryption/decryption keys and functions used by the attackers to decrypt and access the stolen data through the control panel interface. The attacks appeared to be ongoing, targeting new victims each week from the banks.