SECURING CONNECTION
INITIALIZING BLOCKCHAIN ANALYSIS
SITE AVAILABLE TRUE
SECURITY LEVEL SECURE
NETWORK STATUS SECURE

Lazarus High Risk Bybit Hacking Investigation [CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001] - Wallet Analysis Report - Very High Risk - 0xd99f...6c5d

Published 15 Jul 2025 6 views
Wallet Name Analysis Target Wallet (CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001) - 0xd99f...6c5d
Login to view LLM Analysis

Overview

Project Scope

Analysis of wallet 0xd99f81773bb3b7eed44bd21c297fd352bccc6c5d - Lazarus High Risk Bybit Hacking Investigation

Suspicious Wallet Hash

0xd99f81773bb3b7eed44bd21c297fd352bccc6c5d
This is the primary wallet address being investigated in this report.

Methodology

Research Methodology

Automated Analysis Methodology for Wallet 0xd99f81773bb3b7eed44bd21c297fd352bccc6c5d 1. Data Collection - Automated transaction retrieval from blockchain - Historical transaction pattern analysis - Network connection mapping 2. Analysis Algorithms - Multi-algorithm approach using 16 detection methods - Statistical anomaly detection - Behavioral pattern analysis - Network-based risk assessment 3. Risk Scoring - Weighted risk factor calculation - Multi-dimensional analysis - Historical comparison baseline - Real-time pattern detection 4. Report Generation - Automated findings compilation - Risk level determination - Recommendation synthesis - Compliance-ready documentation

Data Collection

Data Collection Process for 0xd99f81773bb3b7eed44bd21c297fd352bccc6c5d 1. Blockchain Data Retrieval - Retrieved 16 analysis data points - Collected complete transaction history - Gathered network connection data 2. Analysis Processing - Applied multiple detection algorithms - Performed statistical analysis - Generated risk indicators - Created behavioral profiles 3. Quality Assurance - Data validation checks - Algorithm consistency verification - Result accuracy confirmation

Data Preprocessing

Data Preprocessing Steps: 1. Data Cleaning - Removed duplicate transactions - Standardized timestamp formats - Validated transaction data integrity 2. Feature Engineering - Created time-based features - Calculated statistical metrics - Generated network features 3. Normalization - Applied consistent scaling - Handled missing values - Optimized for analysis algorithms

Design Pattern

No design pattern information is available for this report.

Analysis

General Analysis Summary for 0xd99f81773bb3b7eed44bd21c297fd352bccc6c5d

Risk Level: Very High Risk Score: 100/100 Total Issues Identified: 63 Suspicious Transactions: 16

Key Findings: - Automated analysis detected 16 suspicious transactions - Risk assessment indicates very high risk level - 63 total suspicious patterns identified across all algorithms - Standardized risk score: 100/100

Analysis Confidence: High (automated multi-algorithm approach) Recommendation: Immediate investigation required

No suspicious patterns detected.
0xb570cf9587c99e978038c85e6f05d2fc50d12031ba3809102c66f71343b306c8: Very short time between transactions 0x34bd630718364bec3859dc053f0ba202a85ae30f13c8365b47b647e84244a855: Very short time between transactions 0x26540007067dc02e18948ff8e8038c552b7dffc81dce451a0d659b7d8bbc6dcb: Very short time between transactions 0x2af45afffeeceea9c84f49958f18501da3df5b55b696c985975cb3993d226f77: Very short time between transactions 0x88b24f839dbdb58209159b208e7c75f1bdb6824c8bbf25288a136ae92570a1b8: Very short time between transactions 0xc6124d84a3172833f8b87ae7a8a15e724ab8aef6da2bdb9f62dd26752f91107a: Very short time between transactions 0x004011d284694f013c4079a18afede006c792426bd1e17783f69b065805d4ce9: Very short time between transactions 0x3bd9628ef0e36255785300558f9c7122040f3e3636facef04b5f33016298dc52: Very short time between transactions 0xc78365a09d6c9ea55b238d70fba691988ba5768ef779054dcdb37861c2f69099: Very short time between transactions 0x2543b85437d24c0fe99838dd170f1889861820354a69e217733a4d6a3a329887: Very short time between transactions 0x7f3b6a1864b4198c847ce9be6bb9d72eace880d676456567ad65156feac0271c: Very short time between transactions 0xe48c2d0c636928a24bac1833ba072288563abf64533c15b32e02ffa9bf751bac: Very short time between transactions 0x69fc147d3aebd5837a469ab7acb73ed49cbe9537edbb175733665f64c301b610: Very short time between transactions 0xcf211c54ef0d9075a88f8b67d1f0f51ccee6ed00700b9df42a657fdaa7f471cb: Very short time between transactions 0xafddd53a82cef71ee9c1629a1452cc347cd153c3548d370bd4aebe89afb629d7: Very short time between transactions
0x34bd630718364bec3859dc053f0ba202a85ae30f13c8365b47b647e84244a855: Transaction amount doubled compared to previous transaction 0x26540007067dc02e18948ff8e8038c552b7dffc81dce451a0d659b7d8bbc6dcb: Transaction amount halved compared to previous transaction
0xb570cf9587c99e978038c85e6f05d2fc50d12031ba3809102c66f71343b306c8: High frequency transactions (less than 1 minute interval) 0x34bd630718364bec3859dc053f0ba202a85ae30f13c8365b47b647e84244a855: High frequency transactions (less than 1 minute interval) 0x26540007067dc02e18948ff8e8038c552b7dffc81dce451a0d659b7d8bbc6dcb: High frequency transactions (less than 1 minute interval) 0x2af45afffeeceea9c84f49958f18501da3df5b55b696c985975cb3993d226f77: High frequency transactions (less than 1 minute interval), Regular interval transactions between the same wallets 0x88b24f839dbdb58209159b208e7c75f1bdb6824c8bbf25288a136ae92570a1b8: High frequency transactions (less than 1 minute interval) 0xc6124d84a3172833f8b87ae7a8a15e724ab8aef6da2bdb9f62dd26752f91107a: High frequency transactions (less than 1 minute interval) 0x004011d284694f013c4079a18afede006c792426bd1e17783f69b065805d4ce9: High frequency transactions (less than 1 minute interval) 0x3bd9628ef0e36255785300558f9c7122040f3e3636facef04b5f33016298dc52: High frequency transactions (less than 1 minute interval) 0xc78365a09d6c9ea55b238d70fba691988ba5768ef779054dcdb37861c2f69099: High frequency transactions (less than 1 minute interval) 0x2543b85437d24c0fe99838dd170f1889861820354a69e217733a4d6a3a329887: High frequency transactions (less than 1 minute interval) 0x7f3b6a1864b4198c847ce9be6bb9d72eace880d676456567ad65156feac0271c: High frequency transactions (less than 1 minute interval) 0xe48c2d0c636928a24bac1833ba072288563abf64533c15b32e02ffa9bf751bac: High frequency transactions (less than 1 minute interval) 0x69fc147d3aebd5837a469ab7acb73ed49cbe9537edbb175733665f64c301b610: High frequency transactions (less than 1 minute interval) 0xcf211c54ef0d9075a88f8b67d1f0f51ccee6ed00700b9df42a657fdaa7f471cb: High frequency transactions (less than 1 minute interval) 0xafddd53a82cef71ee9c1629a1452cc347cd153c3548d370bd4aebe89afb629d7: High frequency transactions (less than 1 minute interval)

Summary

Total Suspicious Transactions
16
Average Risk Score
58.94
Top Tags
No tags

Suspicious Transactions

Transaction Hash Risk Score Risk Factors Tags
0xb570cf9…
100 High
High frequency transactions (less than 1 minute interval)
Related to 17 high-risk transactions (highest score: 100)
Receives funds from exploit address: 0x8a4f03...
Very short time between transactions
Transaction amount significantly higher than user average
Transaction amount significantly higher than average
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction involves DeFi exploit address: Bybit Exploiter 59
No tags
0x12a9f93…
56 High
Short time frame between transactions
Very short time between transactions
Transaction amount significantly higher than average
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Regular interval transactions between the same wallets
No tags
0x2654000…
49 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Very short time between transactions
Transaction amount significantly higher than average
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
No tags
0x3bd9628…
44 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0x88b24f8…
72 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Rapid accumulation of large transactions
Very short time between transactions
Transaction amount significantly higher than average
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
No tags
0x2af45af…
64 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Anomaly detected by Isolation Forest
Part of coordinated wallet cluster
Regular interval transactions between the same wallets
Transaction amount halved compared to previous transaction
No tags
0xc78365a…
75 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Rapid accumulation of large transactions
Very short time between transactions
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
Regular interval transactions between the same wallets
No tags
0x004011d…
56 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Anomaly detected by Isolation Forest
Transaction amount doubled compared to previous transaction
Part of coordinated wallet cluster
No tags
0x2543b85…
72 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Anomaly detected by Isolation Forest
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0x7f3b6a1…
42 High
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Fan-in structuring detected: 3 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0xe48c2d0…
41 High
Repetitive transaction amount
Short time frame between transactions
High frequency transactions (less than 1 minute interval)
Very short time between transactions
Transaction amount significantly lower than average
Fan-in structuring detected: 3 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
0x69fc147…
40 High
Repetitive transaction amount
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Fan-in structuring detected: 3 similar amounts from different addresses totaling 0.00
Low transaction fee
Part of coordinated wallet cluster
No tags
0xcf211c5…
36 Medium
Repetitive transaction amount
Very short time between transactions
Multiple round number transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
No tags
0xafddd53…
36 Medium
Repetitive transaction amount
Very short time between transactions
Multiple round number transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
No tags
0x34bd630…
100 High
Short time frame between transactions
Related to 17 high-risk transactions (highest score: 100)
Receives funds from exploit address: 0x8a4f03...
Very short time between transactions
Transaction amount significantly higher than user average
Transaction amount significantly higher than average
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction involves DeFi exploit address: Bybit Exploiter 59
No tags
0xc6124d8…
60 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
Showing 1 to 10 of 0 transactions

Advanced Analysis Findings

No Local Outlier Factor analysis data is available for this report.
No wallet community detection data is available for this report.
No transaction layering pattern data is available for this report.
No address clustering data is available for this report.
No sanctioned address connection data is available for this report.

Suspicious Activities

Suspicious Activities Summary: High Risk Activities: 16 Medium Risk Activities: 0 Total Flagged Transactions: 16 Pattern Categories: - Network-based anomalies - Behavioral inconsistencies - Statistical outliers - Temporal irregularities Automated Detection Results: - Algorithm coverage: Comprehensive - Detection confidence: High - Risk classification: Validated

Conclusions & Recommendations

Conclusions

Analysis Conclusions for 0xd99f81773bb3b7eed44bd21c297fd352bccc6c5d: 1. Risk Assessment - Overall Risk Level: Very High - Standardized Risk Score: 100/100 - Average Transaction Risk Score: 58.94 - Total Suspicious Patterns: 16 2. Key Findings - Automated analysis completed successfully - Multiple detection algorithms applied - Comprehensive risk evaluation performed - Standardized scoring methodology applied (score: 100/100) 3. Confidence Level - Analysis Quality: High - Data Coverage: Complete - Algorithm Performance: Validated 4. Summary The automated analysis has identified significant concerns. Immediate action recommended.

Recommendations

Immediate Action Recommendations: 1. Priority Actions - Escalate to compliance team immediately - Implement enhanced monitoring - Consider transaction restrictions - Document all findings 2. Investigation Requirements - Detailed transaction review required - Source of funds investigation - Enhanced due diligence protocols - Regular monitoring updates 3. Compliance Measures - File suspicious activity reports if required - Implement know-your-customer procedures - Apply enhanced monitoring protocols - Document risk mitigation measures

Severity Assessment

Very High

Appendices & References

Appendices

Appendix A: Automated Analysis Results Appendix B: Algorithm Details and Methodology Appendix C: Risk Assessment Matrix Appendix D: Transaction Pattern Analysis Appendix E: Network Connection Analysis Appendix F: Case Reference Documentation - CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001 Appendix G: Investigation Team Notes - Cladious Forensics Team

References

1. Blockchain Analysis Framework - Cladious Platform 2. Risk Assessment Guidelines - Financial Action Task Force (FATF) 3. Automated Analysis Documentation - Internal Methodology

Contact Information

Primary Analyst: Cladious Auto
Email: [email protected]
Generated: 2025-07-15 21:29:42 UTC
Investigation Team: Cladious Forensics Team
Case Reference: CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001

Platform: Cladious Security Analysis Platform
For questions or additional analysis requests, please contact the investigation team.

This report contains confidential information and should be handled according to your organization's data protection policies.

Report Information

Author Cladious Auto
Published Date July 15, 2025
Views 6
Likes 0