I wouldn't hold out much hope of ever getting your money back, and you could end up spending a lot of time and effort chasing it.
If you are in the US (or the attacher is) and you can prove that the damage was in excess of $50,000 then the FBI may investigate. If the locations are elsewhere then you may consider contacting your local law enforcement. But do bear in mind that in order to progress an investigation and prosecution, the first response by the law enforcement agency may be to impound your hardware as evidence.
Evidence from a compromised system must itself be considered as potentially compromised - which is a big problem with securing convictions.
Also its worth bearing in mind that even though you may know where the attacks came from - its very likely that the source was itself a compromised system - tracking back to the origin can be very difficult.
DEpending on the amount of money involved, I would recommend seeking confidential, professional advice on whether pursuing the attacker is likely to be of any benefit. If you decide that this is not worthwhile, I would recommend you forward the details to the ISP where the attacks appear to come from.
C.