SECURING CONNECTION
INITIALIZING BLOCKCHAIN ANALYSIS
SITE AVAILABLE TRUE
SECURITY LEVEL SECURE
NETWORK STATUS SECURE

Lazarus High Risk Bybit Hacking Investigation [CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001] - Wallet Analysis Report - Very High Risk - 0xe7cc...048d

Published 15 Jul 2025 5 views
Wallet Name Analysis Target Wallet (CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001) - 0xe7cc...048d
LLM Analysis

Overview

Project Scope

Analysis of wallet 0xe7cc95814dced070ecb35d9a139721c5b886048d - Lazarus High Risk Bybit Hacking Investigation

Suspicious Wallet Hash

0xe7cc95814dced070ecb35d9a139721c5b886048d
This is the primary wallet address being investigated in this report.

Methodology

Research Methodology

Automated Analysis Methodology for Wallet 0xe7cc95814dced070ecb35d9a139721c5b886048d 1. Data Collection - Automated transaction retrieval from blockchain - Historical transaction pattern analysis - Network connection mapping 2. Analysis Algorithms - Multi-algorithm approach using 26 detection methods - Statistical anomaly detection - Behavioral pattern analysis - Network-based risk assessment 3. Risk Scoring - Weighted risk factor calculation - Multi-dimensional analysis - Historical comparison baseline - Real-time pattern detection 4. Report Generation - Automated findings compilation - Risk level determination - Recommendation synthesis - Compliance-ready documentation

Data Collection

Data Collection Process for 0xe7cc95814dced070ecb35d9a139721c5b886048d 1. Blockchain Data Retrieval - Retrieved 26 analysis data points - Collected complete transaction history - Gathered network connection data 2. Analysis Processing - Applied multiple detection algorithms - Performed statistical analysis - Generated risk indicators - Created behavioral profiles 3. Quality Assurance - Data validation checks - Algorithm consistency verification - Result accuracy confirmation

Data Preprocessing

Data Preprocessing Steps: 1. Data Cleaning - Removed duplicate transactions - Standardized timestamp formats - Validated transaction data integrity 2. Feature Engineering - Created time-based features - Calculated statistical metrics - Generated network features 3. Normalization - Applied consistent scaling - Handled missing values - Optimized for analysis algorithms

Design Pattern

No design pattern information is available for this report.

Analysis

General Analysis Summary for 0xe7cc95814dced070ecb35d9a139721c5b886048d

Risk Level: Very High Risk Score: 100/100 Total Issues Identified: 99 Suspicious Transactions: 26

Key Findings: - Automated analysis detected 26 suspicious transactions - Risk assessment indicates very high risk level - 99 total suspicious patterns identified across all algorithms - Standardized risk score: 100/100

Analysis Confidence: High (automated multi-algorithm approach) Recommendation: Immediate investigation required

No suspicious patterns detected.
0x8f21e168b8506dfc62deeaa26e16ce21f00048d2fe5f28f108e990866153dc3e: Very short time between transactions 0xaf1e55d7565ec5bdf2040d4b9a53d5298790c7f010d883eed5dc28efe0234f38: Very short time between transactions 0xbdcbeefcabc382ecdda025c6647b302233adccd59c0da009de03ca10dd124443: Very short time between transactions 0x3de0868a4a5889714cd1e2eaac58c7ad2dc95382a9f5db4a203c1bb762121add: Very short time between transactions 0x0acb2dcc32019225894cf290f145794082016030a92cbf63aa63b00ae6d62dfc: Very short time between transactions 0xd39d9bc88e61df3d0d5528d636fbb3c04a79767f6f3075f25f56427d542c6f00: Very short time between transactions 0x64625e3774a9ecf267caf4f68bee1f20eb3cfbd7ced272f497289e4896277d2d: Very short time between transactions 0xed51423f4a0f099aff4d07392904edadd43a4a1971ba337975c708efea93327d: Very short time between transactions 0xbdadf443e237598fe99cec3bc8e4d323fb6c1db7e9fa40e60964a123b2cd38a4: Very short time between transactions 0xf82d3ae2e5ba51fe8a2553cb22eb1db0530782b5e93bc2e3cee020883b29c860: Very short time between transactions 0x13d99aaac92ada7b6169aa8e5d834645b88dea434e2fa8ce750096a43ea1632e: Very short time between transactions 0xf97bb553309d7b685e815c2b6fe5ee7d42d8b6fa88491b6b33822a2746080d5f: Very short time between transactions 0x7657fe457e67ba1716f0103789cf0f4fef0c9851b45529967d7cea65cfc0f56f: Very short time between transactions 0x32f73b96df7f45ebf36fd87785610f71fb4f2a308487daa3aa351405e01ed8b6: Very short time between transactions 0xf2a0e87d191073a67d8cfbe44281ac49a583ad816a548d8404d23e0d34ffbdf0: Very short time between transactions 0x5222aef515f10cb936d1f84a5699820c184a4700af15595fbf008857736be2e9: Very short time between transactions 0xe2047b464632a643d7e8f756fccda2741e03b6333d3f8ce284526de3784b424e: Very short time between transactions 0x3392e9a1a489c6998303d1171db82df9e2d5e271e5324d9468fb7c63c545e238: Very short time between transactions 0xead18702a084fce7b0a645f6dabc7920ebb059f878caeb02bb43d940fb93e9ce: Very short time between transactions 0xf7ad29386970e0ac7af85a73407e986148d622558ce581b98c05ee8435443844: Very short time between transactions 0xb2bc1c4541ed160316928ced79fc11c0100489bca587f3befcaf793787a565ab: Very short time between transactions 0xbec2cfe71250febff08ae444f8b285875e0f1c8ca10b1408a310923315b9afb2: Very short time between transactions 0x9efef1bf4db682c41c1ac6be1b74dfda006ffee19156a50ec1ee2e0bf4a5e30d: Very short time between transactions 0x0f8332b6e53fd726426102ddff94c9b6b9e3f984ae00f6bdfe3caae36a5adaaf: Very short time between transactions
0x7657fe457e67ba1716f0103789cf0f4fef0c9851b45529967d7cea65cfc0f56f: Transaction amount doubled compared to previous transaction 0x32f73b96df7f45ebf36fd87785610f71fb4f2a308487daa3aa351405e01ed8b6: Transaction amount doubled compared to previous transaction 0x5d91be600c4e210e2f151a5f75725f8173065e8ce9bde22ce216a584b85d9a9b: Transaction amount significantly lower than average 0xf2a0e87d191073a67d8cfbe44281ac49a583ad816a548d8404d23e0d34ffbdf0: Transaction amount significantly lower than average 0xb2bc1c4541ed160316928ced79fc11c0100489bca587f3befcaf793787a565ab: Transaction amount halved compared to previous transaction 0x0f8332b6e53fd726426102ddff94c9b6b9e3f984ae00f6bdfe3caae36a5adaaf: Transaction amount doubled compared to previous transaction
0x8f21e168b8506dfc62deeaa26e16ce21f00048d2fe5f28f108e990866153dc3e: High frequency transactions (less than 1 minute interval) 0xaf1e55d7565ec5bdf2040d4b9a53d5298790c7f010d883eed5dc28efe0234f38: High frequency transactions (less than 1 minute interval) 0xbdcbeefcabc382ecdda025c6647b302233adccd59c0da009de03ca10dd124443: High frequency transactions (less than 1 minute interval) 0x0acb2dcc32019225894cf290f145794082016030a92cbf63aa63b00ae6d62dfc: High frequency transactions (less than 1 minute interval) 0xd39d9bc88e61df3d0d5528d636fbb3c04a79767f6f3075f25f56427d542c6f00: High frequency transactions (less than 1 minute interval) 0x64625e3774a9ecf267caf4f68bee1f20eb3cfbd7ced272f497289e4896277d2d: High frequency transactions (less than 1 minute interval) 0xed51423f4a0f099aff4d07392904edadd43a4a1971ba337975c708efea93327d: Regular interval transactions between the same wallets, High frequency transactions (less than 1 minute interval) 0xbdadf443e237598fe99cec3bc8e4d323fb6c1db7e9fa40e60964a123b2cd38a4: High frequency transactions (less than 1 minute interval) 0xf82d3ae2e5ba51fe8a2553cb22eb1db0530782b5e93bc2e3cee020883b29c860: High frequency transactions (less than 1 minute interval) 0x13d99aaac92ada7b6169aa8e5d834645b88dea434e2fa8ce750096a43ea1632e: High frequency transactions (less than 1 minute interval) 0xf97bb553309d7b685e815c2b6fe5ee7d42d8b6fa88491b6b33822a2746080d5f: High frequency transactions (less than 1 minute interval) 0x32f73b96df7f45ebf36fd87785610f71fb4f2a308487daa3aa351405e01ed8b6: High frequency transactions (less than 1 minute interval) 0xf2a0e87d191073a67d8cfbe44281ac49a583ad816a548d8404d23e0d34ffbdf0: High frequency transactions (less than 1 minute interval) 0xe2047b464632a643d7e8f756fccda2741e03b6333d3f8ce284526de3784b424e: High frequency transactions (less than 1 minute interval) 0x3392e9a1a489c6998303d1171db82df9e2d5e271e5324d9468fb7c63c545e238: High frequency transactions (less than 1 minute interval) 0xead18702a084fce7b0a645f6dabc7920ebb059f878caeb02bb43d940fb93e9ce: High frequency transactions (less than 1 minute interval) 0xf7ad29386970e0ac7af85a73407e986148d622558ce581b98c05ee8435443844: High frequency transactions (less than 1 minute interval) 0xb2bc1c4541ed160316928ced79fc11c0100489bca587f3befcaf793787a565ab: High frequency transactions (less than 1 minute interval) 0xbec2cfe71250febff08ae444f8b285875e0f1c8ca10b1408a310923315b9afb2: High frequency transactions (less than 1 minute interval) 0x9efef1bf4db682c41c1ac6be1b74dfda006ffee19156a50ec1ee2e0bf4a5e30d: High frequency transactions (less than 1 minute interval) 0x0f8332b6e53fd726426102ddff94c9b6b9e3f984ae00f6bdfe3caae36a5adaaf: High frequency transactions (less than 1 minute interval)

Suspicious Transactions

Transaction Hash Risk Score Risk Factors Tags
0x64625e3…
56 High
Low transaction fee
Transaction amount significantly lower than average
Part of coordinated wallet cluster
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
0xe2047b4…
27 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Outgoing structuring detected: 5 similar amounts totaling 269.11
Outgoing structuring detected: 6 similar amounts totaling 321.87
Very short time between transactions
No tags
0x7657fe4…
100 High
Related to 198 high-risk transactions (highest score: 100)
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Transaction involves DeFi exploit address: Bybit Exploiter 22
Very short time between transactions
Receives funds from exploit address: 0xfc9266...
No tags
0x3de0868…
59 High
Local Outlier Factor (LOF) detected as anomaly
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
No tags
0xd39d9bc…
100 High
Related to 198 high-risk transactions (highest score: 100)
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Anomaly detected by Isolation Forest
Transaction involves DeFi exploit address: Bybit Exploiter 22
Very short time between transactions
Receives funds from exploit address: 0xfc9266...
No tags
0x8f21e16…
50 High
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
No tags
0x220a1fd…
100 High
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Transaction involves DeFi exploit address: Bybit Exploiter 26
Related to 168 high-risk transactions (highest score: 100)
Receives funds from exploit address: 0x83c767...
No tags
0xaf1e55d…
31 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Very short time between transactions
Outgoing structuring detected: 5 similar amounts totaling 268.83
No tags
0xed51423…
36 Medium
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Short time frame between transactions
Very short time between transactions
Outgoing structuring detected: 3 similar amounts totaling 162.53
Outgoing structuring detected: 5 similar amounts totaling 268.83
No tags
0xf82d3ae…
36 Medium
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Short time frame between transactions
Very short time between transactions
Outgoing structuring detected: 3 similar amounts totaling 162.53
Outgoing structuring detected: 5 similar amounts totaling 268.83
No tags
0x13d99aa…
49 High
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Outgoing structuring detected: 3 similar amounts totaling 162.53
Outgoing structuring detected: 5 similar amounts totaling 268.83
No tags
0x5222aef…
43 High
Low transaction fee
Transaction amount significantly lower than average
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
0x0acb2dc…
56 High
Low transaction fee
Transaction amount significantly lower than average
Part of coordinated wallet cluster
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
0xb2bc1c4…
43 High
Low transaction fee
Transaction amount significantly lower than average
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
0xf97bb55…
53 High
Low transaction fee
Transaction amount significantly lower than average
Part of coordinated wallet cluster
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Repetitive transaction amount
No tags
0x0f8332b…
52 High
Local Outlier Factor (LOF) detected as anomaly
Low transaction fee
Transaction amount significantly lower than average
Part of coordinated wallet cluster
Anomaly detected by Isolation Forest
Transaction amount halved compared to previous transaction
No tags
0x32f73b9…
100 High
Related to 198 high-risk transactions (highest score: 100)
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Anomaly detected by Isolation Forest
Transaction involves DeFi exploit address: Bybit Exploiter 22
Very short time between transactions
Receives funds from exploit address: 0xfc9266...
No tags
0xead1870…
43 High
Low transaction fee
Transaction amount significantly lower than average
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
0xf7ad293…
31 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Outgoing structuring detected: 5 similar amounts totaling 269.11
Outgoing structuring detected: 6 similar amounts totaling 321.87
Very short time between transactions
No tags
0xbdadf44…
38 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Outgoing structuring detected: 5 similar amounts totaling 269.11
Short time frame between transactions
Outgoing structuring detected: 6 similar amounts totaling 321.87
Very short time between transactions
Outgoing structuring detected: 3 similar amounts totaling 162.53
No tags
0x9efef1b…
39 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Outgoing structuring detected: 5 similar amounts totaling 269.11
Outgoing structuring detected: 6 similar amounts totaling 321.87
Anomaly detected by Isolation Forest
Outgoing structuring detected: 3 similar amounts totaling 162.53
No tags
0x3392e9a…
43 High
Low transaction fee
Transaction amount significantly lower than average
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
0xbdcbeef…
36 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Short time frame between transactions
Very short time between transactions
Outgoing structuring detected: 5 similar amounts totaling 268.83
No tags
0x5d91be6…
25 Medium
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Outgoing structuring detected: 6 similar amounts totaling 321.87
Very short time between transactions
High frequency transactions (less than 1 minute interval)
No tags
0xf2a0e87…
24 Low
Related to 2 high-risk transactions (highest score: 85)
Low transaction fee
Large transaction amount
Rapid accumulation of large transactions
Outgoing structuring detected: 4 similar amounts totaling 216.39
Outgoing structuring detected: 5 similar amounts totaling 269.11
Outgoing structuring detected: 6 similar amounts totaling 321.87
Outgoing structuring detected: 3 similar amounts totaling 162.53
No tags
0xbec2cfe…
43 High
Low transaction fee
Transaction amount significantly lower than average
Short time frame between transactions
Anomaly detected by Isolation Forest
Very short time between transactions
Transaction amount halved compared to previous transaction
No tags
Showing 1 to 10 of 0 transactions

Advanced Analysis Findings

No Local Outlier Factor analysis data is available for this report.
No wallet community detection data is available for this report.
No transaction layering pattern data is available for this report.
No address clustering data is available for this report.
No sanctioned address connection data is available for this report.

Suspicious Activities

Suspicious Activities Summary: High Risk Activities: 26 Medium Risk Activities: 0 Total Flagged Transactions: 26 Pattern Categories: - Network-based anomalies - Behavioral inconsistencies - Statistical outliers - Temporal irregularities Automated Detection Results: - Algorithm coverage: Comprehensive - Detection confidence: High - Risk classification: Validated

Conclusions & Recommendations

Conclusions

Analysis Conclusions for 0xe7cc95814dced070ecb35d9a139721c5b886048d: 1. Risk Assessment - Overall Risk Level: Very High - Standardized Risk Score: 100/100 - Average Transaction Risk Score: 50.50 - Total Suspicious Patterns: 26 2. Key Findings - Automated analysis completed successfully - Multiple detection algorithms applied - Comprehensive risk evaluation performed - Standardized scoring methodology applied (score: 100/100) 3. Confidence Level - Analysis Quality: High - Data Coverage: Complete - Algorithm Performance: Validated 4. Summary The automated analysis has identified significant concerns. Immediate action recommended.

Recommendations

Immediate Action Recommendations: 1. Priority Actions - Escalate to compliance team immediately - Implement enhanced monitoring - Consider transaction restrictions - Document all findings 2. Investigation Requirements - Detailed transaction review required - Source of funds investigation - Enhanced due diligence protocols - Regular monitoring updates 3. Compliance Measures - File suspicious activity reports if required - Implement know-your-customer procedures - Apply enhanced monitoring protocols - Document risk mitigation measures

Severity Assessment

Very High

Appendices & References

Appendices

Appendix A: Automated Analysis Results Appendix B: Algorithm Details and Methodology Appendix C: Risk Assessment Matrix Appendix D: Transaction Pattern Analysis Appendix E: Network Connection Analysis Appendix F: Case Reference Documentation - CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001 Appendix G: Investigation Team Notes - Cladious Forensics Team

References

1. Blockchain Analysis Framework - Cladious Platform 2. Risk Assessment Guidelines - Financial Action Task Force (FATF) 3. Automated Analysis Documentation - Internal Methodology

Contact Information

Primary Analyst: Cladious Auto
Email: [email protected]
Generated: 2025-07-15 23:37:29 UTC
Investigation Team: Cladious Forensics Team
Case Reference: CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001

Platform: Cladious Security Analysis Platform
For questions or additional analysis requests, please contact the investigation team.

This report contains confidential information and should be handled according to your organization's data protection policies.