SECURING CONNECTION
INITIALIZING BLOCKCHAIN ANALYSIS
SITE AVAILABLE TRUE
SECURITY LEVEL SECURE
NETWORK STATUS SECURE

Lazarus High Risk Bybit Hacking Investigation [CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001] - Wallet Analysis Report - Very High Risk - 0xb6da...bb84

Published 15 Jul 2025 5 views
Wallet Name Analysis Target Wallet (CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001) - 0xb6da...bb84
LLM Analysis

Overview

Project Scope

Analysis of wallet 0xb6da7cb714b4e536412c40ca9b0bb6bc41f1bb84 - Lazarus High Risk Bybit Hacking Investigation

Suspicious Wallet Hash

0xb6da7cb714b4e536412c40ca9b0bb6bc41f1bb84
This is the primary wallet address being investigated in this report.

Methodology

Research Methodology

Automated Analysis Methodology for Wallet 0xb6da7cb714b4e536412c40ca9b0bb6bc41f1bb84 1. Data Collection - Automated transaction retrieval from blockchain - Historical transaction pattern analysis - Network connection mapping 2. Analysis Algorithms - Multi-algorithm approach using 18 detection methods - Statistical anomaly detection - Behavioral pattern analysis - Network-based risk assessment 3. Risk Scoring - Weighted risk factor calculation - Multi-dimensional analysis - Historical comparison baseline - Real-time pattern detection 4. Report Generation - Automated findings compilation - Risk level determination - Recommendation synthesis - Compliance-ready documentation

Data Collection

Data Collection Process for 0xb6da7cb714b4e536412c40ca9b0bb6bc41f1bb84 1. Blockchain Data Retrieval - Retrieved 18 analysis data points - Collected complete transaction history - Gathered network connection data 2. Analysis Processing - Applied multiple detection algorithms - Performed statistical analysis - Generated risk indicators - Created behavioral profiles 3. Quality Assurance - Data validation checks - Algorithm consistency verification - Result accuracy confirmation

Data Preprocessing

Data Preprocessing Steps: 1. Data Cleaning - Removed duplicate transactions - Standardized timestamp formats - Validated transaction data integrity 2. Feature Engineering - Created time-based features - Calculated statistical metrics - Generated network features 3. Normalization - Applied consistent scaling - Handled missing values - Optimized for analysis algorithms

Design Pattern

No design pattern information is available for this report.

Analysis

General Analysis Summary for 0xb6da7cb714b4e536412c40ca9b0bb6bc41f1bb84

Risk Level: Very High Risk Score: 100/100 Total Issues Identified: 71 Suspicious Transactions: 18

Key Findings: - Automated analysis detected 18 suspicious transactions - Risk assessment indicates very high risk level - 71 total suspicious patterns identified across all algorithms - Standardized risk score: 100/100

Analysis Confidence: High (automated multi-algorithm approach) Recommendation: Immediate investigation required

No suspicious patterns detected.
0x518c8fd607c3038f883b7682a1a70ead4edbdd4e0acccc1fbbce2ea5cb0b3633: Very short time between transactions 0xe6f09ac08f67bc075d09d62647ac508c655b39d494fd6ef1d3719bf4d2fffb64: Very short time between transactions 0xa2444c48adc8210b11472ad720ea56d2aa3735845460a561de1d3ff8261739cf: Very short time between transactions 0x02f1ff6909494b528b9c637b419b1d17f7ae10ca34b2606faee090e03fc7f35c: Very short time between transactions 0xd3302f535e346bf5fb168652f9bc20d458cc7171bf3ee0a84a6b0e2b244d6c83: Very short time between transactions 0x593d155c10ee33dd109d855df7455a77813a3cc66682e7fb3e8c6eee63397cb4: Very short time between transactions 0x50c5ffe66ca90b6f26b8fa7160a4e3e8f16f0eaf5f1f282b544b8b886a38969e: Very short time between transactions 0xb4ecb0d71e2722b4eaaa184d32551861565aac99430afa77811cd21e879a79ff: Very short time between transactions 0x0c188957a74a9f73594a9ce5a7e091676fdaafa1c0b655ccd810cc3fe6b2067e: Very short time between transactions 0xb90b4ebc7cdd03ab8744d1fc893ef4ab27dc5ea23ecd42e5b1113a137968296e: Very short time between transactions 0x9e9e600174aca7fc90ad29d281c1811755806d9f7171b588659054b4b3174107: Very short time between transactions 0x345db037c23d1c594c82cfbe1e169dc6452b8fcbd1c0cbb818ec01a1aabf0dce: Very short time between transactions 0xaf4f9b21f0b67286b77dc4cdcc225331cb246166e78916e5a791e45f21a960cf: Very short time between transactions 0xde74c1b24b19ec1f6336b4b53a4670d4e196f4cd8c82eb6378ba6eb571404cdf: Very short time between transactions 0x2de68ab6964acef2b495d712d7df8cf058fdaa4977fb4528d00d6a855a256901: Very short time between transactions 0x7c9112d56672030de263a49fe1dfec6a44d3a13f319a76810b7f4576ec25881c: Very short time between transactions 0x7f5ef161fe770a5311953bc2f251fe05b661b9866a49d70a3fd22d58712bc4cb: Very short time between transactions
0x518c8fd607c3038f883b7682a1a70ead4edbdd4e0acccc1fbbce2ea5cb0b3633: Transaction amount significantly higher than average 0x7f5ef161fe770a5311953bc2f251fe05b661b9866a49d70a3fd22d58712bc4cb: Transaction amount significantly lower than average, Transaction amount halved compared to previous transaction
0x518c8fd607c3038f883b7682a1a70ead4edbdd4e0acccc1fbbce2ea5cb0b3633: High frequency transactions (less than 1 minute interval) 0xe6f09ac08f67bc075d09d62647ac508c655b39d494fd6ef1d3719bf4d2fffb64: High frequency transactions (less than 1 minute interval) 0xa2444c48adc8210b11472ad720ea56d2aa3735845460a561de1d3ff8261739cf: High frequency transactions (less than 1 minute interval) 0x02f1ff6909494b528b9c637b419b1d17f7ae10ca34b2606faee090e03fc7f35c: High frequency transactions (less than 1 minute interval) 0xd3302f535e346bf5fb168652f9bc20d458cc7171bf3ee0a84a6b0e2b244d6c83: High frequency transactions (less than 1 minute interval) 0x593d155c10ee33dd109d855df7455a77813a3cc66682e7fb3e8c6eee63397cb4: High frequency transactions (less than 1 minute interval) 0x50c5ffe66ca90b6f26b8fa7160a4e3e8f16f0eaf5f1f282b544b8b886a38969e: High frequency transactions (less than 1 minute interval) 0xb4ecb0d71e2722b4eaaa184d32551861565aac99430afa77811cd21e879a79ff: High frequency transactions (less than 1 minute interval) 0x0c188957a74a9f73594a9ce5a7e091676fdaafa1c0b655ccd810cc3fe6b2067e: High frequency transactions (less than 1 minute interval) 0xb90b4ebc7cdd03ab8744d1fc893ef4ab27dc5ea23ecd42e5b1113a137968296e: High frequency transactions (less than 1 minute interval) 0x9e9e600174aca7fc90ad29d281c1811755806d9f7171b588659054b4b3174107: High frequency transactions (less than 1 minute interval) 0x345db037c23d1c594c82cfbe1e169dc6452b8fcbd1c0cbb818ec01a1aabf0dce: High frequency transactions (less than 1 minute interval) 0xaf4f9b21f0b67286b77dc4cdcc225331cb246166e78916e5a791e45f21a960cf: High frequency transactions (less than 1 minute interval) 0xde74c1b24b19ec1f6336b4b53a4670d4e196f4cd8c82eb6378ba6eb571404cdf: High frequency transactions (less than 1 minute interval) 0x2de68ab6964acef2b495d712d7df8cf058fdaa4977fb4528d00d6a855a256901: High frequency transactions (less than 1 minute interval) 0x7c9112d56672030de263a49fe1dfec6a44d3a13f319a76810b7f4576ec25881c: High frequency transactions (less than 1 minute interval) 0x7f5ef161fe770a5311953bc2f251fe05b661b9866a49d70a3fd22d58712bc4cb: High frequency transactions (less than 1 minute interval)

Suspicious Transactions

Transaction Hash Risk Score Risk Factors Tags
0xe6f09ac…
43 High
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0x0c18895…
51 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Part of cyclic transaction pattern: Part of cycle of length 4
Outgoing structuring detected: 4 similar amounts totaling 137.56
Rapid accumulation of large transactions
Very short time between transactions
Outgoing structuring detected: 5 similar amounts totaling 172.56
Outgoing structuring detected: 3 similar amounts totaling 102.56
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
No tags
0x345db03…
66 High
Rapid multi-hop layering pattern detected
Part of cyclic transaction pattern: Part of cycle of length 4
Rapid accumulation of large transactions
Very short time between transactions
Short time frame between transactions
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
No tags
0x593d155…
47 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Transaction amount halved compared to previous transaction
No tags
0x50c5ffe…
45 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Multiple round number transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0xb4ecb0d…
43 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Transaction amount doubled compared to previous transaction
Part of coordinated wallet cluster
No tags
0xb90b4eb…
43 High
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0x9e9e600…
31 Medium
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Multiple round number transactions
Transaction amount significantly lower than average
Low transaction fee
Transaction amount halved compared to previous transaction
No tags
0xaf4f9b2…
60 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
0xde74c1b…
40 High
Repetitive transaction amount
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
No tags
0x2de68ab…
34 Medium
Repetitive transaction amount
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Regular interval transactions between the same wallets
No tags
0x7c9112d…
62 High
Short time frame between transactions
Very short time between transactions
Transaction amount significantly lower than average
Low transaction fee
Anomaly detected by Isolation Forest
Transaction amount doubled compared to previous transaction
Part of coordinated wallet cluster
Regular interval transactions between the same wallets
No tags
0x7f5ef16…
0 Low
Transaction involves trusted address (Exchange/DeFi Protocol)
No tags
0x518c8fd…
100 High
High frequency transactions (less than 1 minute interval)
Related to 147 high-risk transactions (highest score: 100)
Very short time between transactions
Transaction involves DeFi exploit address: Bybit Exploiter 54
Transaction amount significantly higher than user average
Transaction amount significantly higher than average
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Receives funds from exploit address: 0x4571bd...
No tags
0xcbfd67f…
51 High
Short time frame between transactions
Very short time between transactions
Transaction amount significantly higher than average
Outgoing structuring detected: 5 similar amounts totaling 172.56
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount halved compared to previous transaction
No tags
0xa2444c4…
50 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Outgoing structuring detected: 4 similar amounts totaling 137.56
Very short time between transactions
Transaction amount significantly higher than average
Outgoing structuring detected: 5 similar amounts totaling 172.56
Low transaction fee
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
No tags
0xd3302f5…
64 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Rapid multi-hop layering pattern detected
Outgoing structuring detected: 4 similar amounts totaling 137.56
Very short time between transactions
Transaction amount significantly higher than average
Outgoing structuring detected: 5 similar amounts totaling 172.56
Low transaction fee
Outgoing structuring detected: 3 similar amounts totaling 102.56
Anomaly detected by Isolation Forest
Large transaction amount
Transaction amount doubled compared to previous transaction
No tags
0x02f1ff6…
45 High
High frequency transactions (less than 1 minute interval)
Short time frame between transactions
Very short time between transactions
Multiple round number transactions
Transaction amount significantly lower than average
Low transaction fee
Part of coordinated wallet cluster
Transaction amount halved compared to previous transaction
No tags
Showing 1 to 10 of 0 transactions

Advanced Analysis Findings

No Local Outlier Factor analysis data is available for this report.
No wallet community detection data is available for this report.
No transaction layering pattern data is available for this report.
No address clustering data is available for this report.
No sanctioned address connection data is available for this report.

Suspicious Activities

Suspicious Activities Summary: High Risk Activities: 17 Medium Risk Activities: 0 Total Flagged Transactions: 18 Pattern Categories: - Network-based anomalies - Behavioral inconsistencies - Statistical outliers - Temporal irregularities Automated Detection Results: - Algorithm coverage: Comprehensive - Detection confidence: High - Risk classification: Validated

Conclusions & Recommendations

Conclusions

Analysis Conclusions for 0xb6da7cb714b4e536412c40ca9b0bb6bc41f1bb84: 1. Risk Assessment - Overall Risk Level: Very High - Standardized Risk Score: 100/100 - Average Transaction Risk Score: 48.61 - Total Suspicious Patterns: 18 2. Key Findings - Automated analysis completed successfully - Multiple detection algorithms applied - Comprehensive risk evaluation performed - Standardized scoring methodology applied (score: 100/100) 3. Confidence Level - Analysis Quality: High - Data Coverage: Complete - Algorithm Performance: Validated 4. Summary The automated analysis has identified significant concerns. Immediate action recommended.

Recommendations

Immediate Action Recommendations: 1. Priority Actions - Escalate to compliance team immediately - Implement enhanced monitoring - Consider transaction restrictions - Document all findings 2. Investigation Requirements - Detailed transaction review required - Source of funds investigation - Enhanced due diligence protocols - Regular monitoring updates 3. Compliance Measures - File suspicious activity reports if required - Implement know-your-customer procedures - Apply enhanced monitoring protocols - Document risk mitigation measures

Severity Assessment

Very High

Appendices & References

Appendices

Appendix A: Automated Analysis Results Appendix B: Algorithm Details and Methodology Appendix C: Risk Assessment Matrix Appendix D: Transaction Pattern Analysis Appendix E: Network Connection Analysis Appendix F: Case Reference Documentation - CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001 Appendix G: Investigation Team Notes - Cladious Forensics Team

References

1. Blockchain Analysis Framework - Cladious Platform 2. Risk Assessment Guidelines - Financial Action Task Force (FATF) 3. Automated Analysis Documentation - Internal Methodology

Contact Information

Primary Analyst: Cladious Auto
Email: [email protected]
Generated: 2025-07-15 16:43:05 UTC
Investigation Team: Cladious Forensics Team
Case Reference: CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001

Platform: Cladious Security Analysis Platform
For questions or additional analysis requests, please contact the investigation team.

This report contains confidential information and should be handled according to your organization's data protection policies.