SECURING CONNECTION
INITIALIZING BLOCKCHAIN ANALYSIS
SITE AVAILABLE TRUE
SECURITY LEVEL SECURE
NETWORK STATUS SECURE

Lazarus High Risk Bybit Hacking Investigation [CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001] - Wallet Analysis Report - Very High Risk - 0xc195...88d1

Published 15 Jul 2025 6 views
Wallet Name Analysis Target Wallet (CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001) - 0xc195...88d1
LLM Analysis

Overview

Project Scope

Analysis of wallet 0xc195aee8f6916e4255910e30a667c81d37bc88d1 - Lazarus High Risk Bybit Hacking Investigation

Suspicious Wallet Hash

0xc195aee8f6916e4255910e30a667c81d37bc88d1
This is the primary wallet address being investigated in this report.

Methodology

Research Methodology

Automated Analysis Methodology for Wallet 0xc195aee8f6916e4255910e30a667c81d37bc88d1 1. Data Collection - Automated transaction retrieval from blockchain - Historical transaction pattern analysis - Network connection mapping 2. Analysis Algorithms - Multi-algorithm approach using 24 detection methods - Statistical anomaly detection - Behavioral pattern analysis - Network-based risk assessment 3. Risk Scoring - Weighted risk factor calculation - Multi-dimensional analysis - Historical comparison baseline - Real-time pattern detection 4. Report Generation - Automated findings compilation - Risk level determination - Recommendation synthesis - Compliance-ready documentation

Data Collection

Data Collection Process for 0xc195aee8f6916e4255910e30a667c81d37bc88d1 1. Blockchain Data Retrieval - Retrieved 24 analysis data points - Collected complete transaction history - Gathered network connection data 2. Analysis Processing - Applied multiple detection algorithms - Performed statistical analysis - Generated risk indicators - Created behavioral profiles 3. Quality Assurance - Data validation checks - Algorithm consistency verification - Result accuracy confirmation

Data Preprocessing

Data Preprocessing Steps: 1. Data Cleaning - Removed duplicate transactions - Standardized timestamp formats - Validated transaction data integrity 2. Feature Engineering - Created time-based features - Calculated statistical metrics - Generated network features 3. Normalization - Applied consistent scaling - Handled missing values - Optimized for analysis algorithms

Design Pattern

No design pattern information is available for this report.

Analysis

General Analysis Summary for 0xc195aee8f6916e4255910e30a667c81d37bc88d1

Risk Level: Very High Risk Score: 100/100 Total Issues Identified: 95 Suspicious Transactions: 24

Key Findings: - Automated analysis detected 24 suspicious transactions - Risk assessment indicates very high risk level - 95 total suspicious patterns identified across all algorithms - Standardized risk score: 100/100

Analysis Confidence: High (automated multi-algorithm approach) Recommendation: Immediate investigation required

No suspicious patterns detected.
0x5bd6fc476d205f219863aaafe5a8b75deeee5ca571703231bf39d27d32517963: Very short time between transactions 0x9657b5f0f2586a6fc5f90162e874de0f166b57fbd771ce44b43c768962539ad0: Very short time between transactions 0x884ef40c389c649f5873b39b8d464bd93c789b81e347df6230d188c6c7184fce: Very short time between transactions 0xd45d02864ea4be42c00d037a19a490bbcd161a3c7de5b325b7be98c8e6b2628d: Very short time between transactions 0x49b08daaf19f31af5a36bc6534fb0fb2ed5043459db4b2bcc81eaf3e4085ac47: Very short time between transactions 0x6dc5b64eea06a8f2244a40ff2b10fceab76c0a9573d0a711db2ee8126f923806: Very short time between transactions 0x1f55d961ee8ff80ec9bb3ba11dc3bd53f2b5a971e90ff8732ba45a609db0744f: Very short time between transactions 0x73088fa72f0cf820f28e2dd9d2423155303d0230a8a7acbebd6da276ffc4b4a1: Very short time between transactions 0xe1089c3c204b495434478827eba5dc2ef35170c404bdd077dc8b8dac943a189f: Very short time between transactions 0x14ae93bba007aa17aa0f7329a77fdae17a1b4fccd21c3b1ca3ab22ac544a2c87: Very short time between transactions 0x6e6e7895c4244cbdad0e9bf32fa8e792b950747a16a7f7c3d0614c6c853d284a: Very short time between transactions 0x2c6e6f3ad55066f7ebeb0088b33d7a9be7359e02e2eea1ac003b35facb788974: Very short time between transactions 0xa6348a5d5208c07f78fb74cdf7959580749265fced1ef726fe325a375ed1ca30: Very short time between transactions 0xb8482c33d649b1493b2647f113dac9a57c5cbd21c690b0a6af949500c329cfef: Very short time between transactions 0xb453d98741ba4ec5021ea8140feec16d62c0c406060ec39a6e10c7d327547605: Very short time between transactions 0x89311dc2ff42f82ee1865ceab68606d006482f7a1ea714b8e872b26aa4ce6d09: Very short time between transactions 0x2d7eb48614a09e889b79bf12660fc0307c51ea71a413b2bc39ceb398484c8008: Very short time between transactions 0x744eb3ecf911b7e21e785cc3674595254788d1cd25e1dc837db1da97ec907126: Very short time between transactions 0xc91e52296f1a33d629f3efc763551dfcccc40de4f64c10806abfb0056d415ebc: Very short time between transactions 0x0b2f4af6e02b0ed741b3c871cfa35eff6ef81e18a39b297153eeb52bf1849d4f: Very short time between transactions 0x646946ff83a70605a6dc98d1da6e1431474447bc4b55a2b3d7cdcfba3e3af9c4: Very short time between transactions 0xd1251356bb4fd2d7c25a9df99cf0613a655d4988f25919c06ab91eb6e6fc4830: Very short time between transactions 0xe8b13e93cf8019f2b2549f144c84b2d79876b17a372cad101e6d1f2ff870eaa9: Very short time between transactions
0x5bd6fc476d205f219863aaafe5a8b75deeee5ca571703231bf39d27d32517963: Transaction amount significantly higher than average 0x884ef40c389c649f5873b39b8d464bd93c789b81e347df6230d188c6c7184fce: Transaction amount halved compared to previous transaction
0x5bd6fc476d205f219863aaafe5a8b75deeee5ca571703231bf39d27d32517963: High frequency transactions (less than 1 minute interval) 0x9657b5f0f2586a6fc5f90162e874de0f166b57fbd771ce44b43c768962539ad0: High frequency transactions (less than 1 minute interval) 0x884ef40c389c649f5873b39b8d464bd93c789b81e347df6230d188c6c7184fce: High frequency transactions (less than 1 minute interval) 0xd45d02864ea4be42c00d037a19a490bbcd161a3c7de5b325b7be98c8e6b2628d: High frequency transactions (less than 1 minute interval) 0x49b08daaf19f31af5a36bc6534fb0fb2ed5043459db4b2bcc81eaf3e4085ac47: High frequency transactions (less than 1 minute interval) 0x6dc5b64eea06a8f2244a40ff2b10fceab76c0a9573d0a711db2ee8126f923806: High frequency transactions (less than 1 minute interval) 0x1f55d961ee8ff80ec9bb3ba11dc3bd53f2b5a971e90ff8732ba45a609db0744f: High frequency transactions (less than 1 minute interval) 0x73088fa72f0cf820f28e2dd9d2423155303d0230a8a7acbebd6da276ffc4b4a1: High frequency transactions (less than 1 minute interval) 0xe1089c3c204b495434478827eba5dc2ef35170c404bdd077dc8b8dac943a189f: High frequency transactions (less than 1 minute interval) 0x14ae93bba007aa17aa0f7329a77fdae17a1b4fccd21c3b1ca3ab22ac544a2c87: High frequency transactions (less than 1 minute interval) 0x6e6e7895c4244cbdad0e9bf32fa8e792b950747a16a7f7c3d0614c6c853d284a: High frequency transactions (less than 1 minute interval) 0x2c6e6f3ad55066f7ebeb0088b33d7a9be7359e02e2eea1ac003b35facb788974: High frequency transactions (less than 1 minute interval) 0xa6348a5d5208c07f78fb74cdf7959580749265fced1ef726fe325a375ed1ca30: High frequency transactions (less than 1 minute interval) 0xb8482c33d649b1493b2647f113dac9a57c5cbd21c690b0a6af949500c329cfef: High frequency transactions (less than 1 minute interval) 0xb453d98741ba4ec5021ea8140feec16d62c0c406060ec39a6e10c7d327547605: High frequency transactions (less than 1 minute interval) 0x89311dc2ff42f82ee1865ceab68606d006482f7a1ea714b8e872b26aa4ce6d09: High frequency transactions (less than 1 minute interval) 0x2d7eb48614a09e889b79bf12660fc0307c51ea71a413b2bc39ceb398484c8008: High frequency transactions (less than 1 minute interval) 0x744eb3ecf911b7e21e785cc3674595254788d1cd25e1dc837db1da97ec907126: High frequency transactions (less than 1 minute interval) 0xc91e52296f1a33d629f3efc763551dfcccc40de4f64c10806abfb0056d415ebc: High frequency transactions (less than 1 minute interval) 0x0b2f4af6e02b0ed741b3c871cfa35eff6ef81e18a39b297153eeb52bf1849d4f: High frequency transactions (less than 1 minute interval) 0x646946ff83a70605a6dc98d1da6e1431474447bc4b55a2b3d7cdcfba3e3af9c4: High frequency transactions (less than 1 minute interval) 0xd1251356bb4fd2d7c25a9df99cf0613a655d4988f25919c06ab91eb6e6fc4830: High frequency transactions (less than 1 minute interval) 0xe8b13e93cf8019f2b2549f144c84b2d79876b17a372cad101e6d1f2ff870eaa9: High frequency transactions (less than 1 minute interval)

Suspicious Transactions

Transaction Hash Risk Score Risk Factors Tags
0x1f55d96…
59 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Outgoing structuring detected: 3 similar amounts totaling 90.65
Outgoing structuring detected: 7 similar amounts totaling 216.65
Rapid accumulation of large transactions
Very short time between transactions
Low transaction fee
Outgoing structuring detected: 5 similar amounts totaling 153.65
Outgoing structuring detected: 6 similar amounts totaling 185.65
Large transaction amount
Transaction amount doubled compared to previous transaction
Regular interval transactions between the same wallets
Outgoing structuring detected: 4 similar amounts totaling 123.65
No tags
0x884ef40…
44 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Anomaly detected by Isolation Forest
Transaction amount halved compared to previous transaction
No tags
0x6dc5b64…
51 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Regular interval transactions between the same wallets
Transaction amount halved compared to previous transaction
No tags
0xe1089c3…
43 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Transaction amount doubled compared to previous transaction
Part of coordinated wallet cluster
No tags
0x6e6e789…
51 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0xb8482c3…
52 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
No tags
0x89311dc…
59 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Regular interval transactions between the same wallets
No tags
0xc91e522…
53 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Fan-in structuring detected: 6 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
0x646946f…
31 Medium
Repetitive transaction amount
Short time frame between transactions
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 4 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Fan-in structuring detected: 6 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 3 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
0xd125135…
39 Medium
Repetitive transaction amount
Short time frame between transactions
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 4 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Fan-in structuring detected: 6 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 3 similar amounts from different addresses totaling 0.00
Low transaction fee
Local Outlier Factor (LOF) detected as anomaly
Part of coordinated wallet cluster
No tags
0xe8b13e9…
31 Medium
Repetitive transaction amount
Short time frame between transactions
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 4 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Fan-in structuring detected: 6 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 3 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
0x5bd6fc4…
100 High
High frequency transactions (less than 1 minute interval)
Receives funds from exploit address: 0xb72334...
Very short time between transactions
Transaction involves DeFi exploit address: Bybit Exploiter 21
Related to 154 high-risk transactions (highest score: 100)
Transaction amount significantly higher than user average
Transaction amount significantly higher than average
Low transaction fee
Local Outlier Factor (LOF) detected as anomaly
Anomaly detected by Isolation Forest
Large transaction amount
No tags
0x578572f…
44 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Outgoing structuring detected: 7 similar amounts totaling 216.65
Outgoing structuring detected: 6 similar amounts totaling 185.65
Very short time between transactions
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
No tags
0x9657b5f…
31 Medium
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Outgoing structuring detected: 7 similar amounts totaling 216.65
Very short time between transactions
Low transaction fee
Outgoing structuring detected: 5 similar amounts totaling 153.65
Outgoing structuring detected: 6 similar amounts totaling 185.65
Large transaction amount
No tags
0xd45d028…
51 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Outgoing structuring detected: 7 similar amounts totaling 216.65
Outgoing structuring detected: 6 similar amounts totaling 185.65
Rapid accumulation of large transactions
Very short time between transactions
Low transaction fee
Outgoing structuring detected: 5 similar amounts totaling 153.65
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
Outgoing structuring detected: 4 similar amounts totaling 123.65
No tags
0x49b08da…
44 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Outgoing structuring detected: 3 similar amounts totaling 90.65
Outgoing structuring detected: 7 similar amounts totaling 216.65
Rapid accumulation of large transactions
Very short time between transactions
Low transaction fee
Outgoing structuring detected: 5 similar amounts totaling 153.65
Outgoing structuring detected: 6 similar amounts totaling 185.65
Large transaction amount
Regular interval transactions between the same wallets
Outgoing structuring detected: 4 similar amounts totaling 123.65
No tags
0x2c6e6f3…
62 High
Short time frame between transactions
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Regular interval transactions between the same wallets
No tags
0x14ae93b…
50 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Outgoing structuring detected: 3 similar amounts totaling 90.65
Outgoing structuring detected: 7 similar amounts totaling 216.65
Outgoing structuring detected: 6 similar amounts totaling 185.65
Rapid accumulation of large transactions
Very short time between transactions
Low transaction fee
Outgoing structuring detected: 5 similar amounts totaling 153.65
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
Outgoing structuring detected: 4 similar amounts totaling 123.65
No tags
0x73088fa…
60 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Anomaly detected by Isolation Forest
Transaction amount halved compared to previous transaction
No tags
0xa6348a5…
32 Medium
Repetitive transaction amount
Short time frame between transactions
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
No tags
0xb453d98…
52 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
No tags
0x2d7eb48…
59 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Regular interval transactions between the same wallets
No tags
0x744eb3e…
45 High
Repetitive transaction amount
Short time frame between transactions
Rapid multi-hop layering pattern detected
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Fan-in structuring detected: 6 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
0x0b2f4af…
31 Medium
Repetitive transaction amount
Short time frame between transactions
Fan-in structuring detected: 10 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 4 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 13 similar amounts from different addresses totaling 0.00
Fan-in structuring detected: 11 similar amounts from different addresses totaling 0.00
Transaction amount significantly lower than average
Fan-in structuring detected: 6 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
Showing 1 to 10 of 0 transactions

Advanced Analysis Findings

No Local Outlier Factor analysis data is available for this report.
No wallet community detection data is available for this report.
No transaction layering pattern data is available for this report.
No address clustering data is available for this report.
No sanctioned address connection data is available for this report.

Suspicious Activities

Suspicious Activities Summary: High Risk Activities: 24 Medium Risk Activities: 0 Total Flagged Transactions: 24 Pattern Categories: - Network-based anomalies - Behavioral inconsistencies - Statistical outliers - Temporal irregularities Automated Detection Results: - Algorithm coverage: Comprehensive - Detection confidence: High - Risk classification: Validated

Conclusions & Recommendations

Conclusions

Analysis Conclusions for 0xc195aee8f6916e4255910e30a667c81d37bc88d1: 1. Risk Assessment - Overall Risk Level: Very High - Standardized Risk Score: 100/100 - Average Transaction Risk Score: 48.92 - Total Suspicious Patterns: 24 2. Key Findings - Automated analysis completed successfully - Multiple detection algorithms applied - Comprehensive risk evaluation performed - Standardized scoring methodology applied (score: 100/100) 3. Confidence Level - Analysis Quality: High - Data Coverage: Complete - Algorithm Performance: Validated 4. Summary The automated analysis has identified significant concerns. Immediate action recommended.

Recommendations

Immediate Action Recommendations: 1. Priority Actions - Escalate to compliance team immediately - Implement enhanced monitoring - Consider transaction restrictions - Document all findings 2. Investigation Requirements - Detailed transaction review required - Source of funds investigation - Enhanced due diligence protocols - Regular monitoring updates 3. Compliance Measures - File suspicious activity reports if required - Implement know-your-customer procedures - Apply enhanced monitoring protocols - Document risk mitigation measures

Severity Assessment

Very High

Appendices & References

Appendices

Appendix A: Automated Analysis Results Appendix B: Algorithm Details and Methodology Appendix C: Risk Assessment Matrix Appendix D: Transaction Pattern Analysis Appendix E: Network Connection Analysis Appendix F: Case Reference Documentation - CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001 Appendix G: Investigation Team Notes - Cladious Forensics Team

References

1. Blockchain Analysis Framework - Cladious Platform 2. Risk Assessment Guidelines - Financial Action Task Force (FATF) 3. Automated Analysis Documentation - Internal Methodology

Contact Information

Primary Analyst: Cladious Auto
Email: [email protected]
Generated: 2025-07-15 18:06:31 UTC
Investigation Team: Cladious Forensics Team
Case Reference: CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001

Platform: Cladious Security Analysis Platform
For questions or additional analysis requests, please contact the investigation team.

This report contains confidential information and should be handled according to your organization's data protection policies.