SECURING CONNECTION
INITIALIZING BLOCKCHAIN ANALYSIS
SITE AVAILABLE TRUE
SECURITY LEVEL SECURE
NETWORK STATUS SECURE

Lazarus High Risk Bybit Hacking Investigation [CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001] - Wallet Analysis Report - Very High Risk - 0x5dfd...634c

Published 14 Jul 2025 5 views
Wallet Name Analysis Target Wallet (CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001) - 0x5dfd...634c
Login to view LLM Analysis

Overview

Project Scope

Analysis of wallet 0x5dfd0631d11f04410b4a7e165f6a76dbf13b634c - Lazarus High Risk Bybit Hacking Investigation

Suspicious Wallet Hash

0x5dfd0631d11f04410b4a7e165f6a76dbf13b634c
This is the primary wallet address being investigated in this report.

Methodology

Research Methodology

Automated Analysis Methodology for Wallet 0x5dfd0631d11f04410b4a7e165f6a76dbf13b634c 1. Data Collection - Automated transaction retrieval from blockchain - Historical transaction pattern analysis - Network connection mapping 2. Analysis Algorithms - Multi-algorithm approach using 25 detection methods - Statistical anomaly detection - Behavioral pattern analysis - Network-based risk assessment 3. Risk Scoring - Weighted risk factor calculation - Multi-dimensional analysis - Historical comparison baseline - Real-time pattern detection 4. Report Generation - Automated findings compilation - Risk level determination - Recommendation synthesis - Compliance-ready documentation

Data Collection

Data Collection Process for 0x5dfd0631d11f04410b4a7e165f6a76dbf13b634c 1. Blockchain Data Retrieval - Retrieved 25 analysis data points - Collected complete transaction history - Gathered network connection data 2. Analysis Processing - Applied multiple detection algorithms - Performed statistical analysis - Generated risk indicators - Created behavioral profiles 3. Quality Assurance - Data validation checks - Algorithm consistency verification - Result accuracy confirmation

Data Preprocessing

Data Preprocessing Steps: 1. Data Cleaning - Removed duplicate transactions - Standardized timestamp formats - Validated transaction data integrity 2. Feature Engineering - Created time-based features - Calculated statistical metrics - Generated network features 3. Normalization - Applied consistent scaling - Handled missing values - Optimized for analysis algorithms

Design Pattern

No design pattern information is available for this report.

Analysis

General Analysis Summary for 0x5dfd0631d11f04410b4a7e165f6a76dbf13b634c

Risk Level: Very High Risk Score: 100/100 Total Issues Identified: 95 Suspicious Transactions: 25

Key Findings: - Automated analysis detected 25 suspicious transactions - Risk assessment indicates very high risk level - 95 total suspicious patterns identified across all algorithms - Standardized risk score: 100/100

Analysis Confidence: High (automated multi-algorithm approach) Recommendation: Immediate investigation required

No suspicious patterns detected.
0xeeed7da47ff4d4bc6d62bd92554cfe201d93e2fd36aa8a3e743ad93d49f8732d: Very short time between transactions 0x17f0f44809638f355a358e3d74dec4439c40b773d8503f563e44c9da89895285: Very short time between transactions 0x0963a66c84a738c530a6ed7be24798f5ed029df12f2778b01bdf53dc67cbcb03: Very short time between transactions 0xa596b3932a668562ffc05252e70e6216cf63e66aaf1c16abb876ea5ad5c74557: Very short time between transactions 0x30e5b68baaa9b030372d234160fecacbee2d97bd26f02103311de9a4cc8d85e3: Very short time between transactions 0x1702e8af0a507210b2cb7b98c30a357110b22688dc5da51b9fe1c3faed5c1b4a: Very short time between transactions 0x091707942ac1242db8b7991ede8d66c541492323f4b0acd237e6dcb5a60821f9: Very short time between transactions 0xfbe365603c29bd4762d317ceb7be4dd0f7fbd4635d3a9bd70dd8296745ddd8df: Very short time between transactions 0xfded19a280911d47f4afd9fb9f01805a7418c4f3a29b0659e4731bd70fdefb3a: Very short time between transactions 0x6a4b2a11b172251b84f51e602ba89963718976154af7cd9cef6c8e8a4c475a03: Very short time between transactions 0xb6e5c666a907155f0b44e8080b516c32152765c4c049d06701e98f38367a2978: Very short time between transactions 0x2ce52ba2fa6d91cf6d76ebc84207b44b06530adfba125cb1e2835ac42817bfc2: Very short time between transactions 0xce7b68a44f51a82772c75ab634907e51f50069cfa1924b03ee2568f76630281a: Very short time between transactions 0xa98ae026d3cac20d389847e4f19dbb2cf3ed6eac00afbbfb99a8252e0a8b1a25: Very short time between transactions 0xd35a21cc574b6acccdd174a8f8f90cac12356116cd9ac2470bd90bb0418e38bd: Very short time between transactions 0xe0ac762a4e39ac1c5b1a28236f4927b0b4d674ed2e69e8620985904f7315500e: Very short time between transactions 0x1c2230cb1ba18864f5b354f855444c22d22a962889dd3bf609f461c0547825fa: Very short time between transactions 0xa7999c34b917926892d96b895186eae448a14d32e5f2ba5830acc1424e4b77b6: Very short time between transactions 0xc7d189d4c9475cba216bf835ad1ca924259714b1ba32772d6f2d1a5e9a456973: Very short time between transactions 0xf7cb4c2fb30489facee1b21744364d6fe1f974e7eabda30d51b6b998a75dbe74: Very short time between transactions 0xd9196631f87303777bbdea6fa86954135402b14849f573ed2fa016697fbda179: Very short time between transactions 0x998087ff95f091cac3ccad20a33d9b5c491b9e2f5b10ef4a20225d816593b6a2: Very short time between transactions 0xfdbd327f427b33246b4980f54beccb56bc30e7051a8d7d82606923e6f9944bee: Very short time between transactions
0x17f0f44809638f355a358e3d74dec4439c40b773d8503f563e44c9da89895285: Transaction amount doubled compared to previous transaction 0xa596b3932a668562ffc05252e70e6216cf63e66aaf1c16abb876ea5ad5c74557: Transaction amount doubled compared to previous transaction 0xeae4d3a1c8640cfba1166982e576ada09b86d58e4c155de70ddec76ddc61f8ec: Transaction amount doubled compared to previous transaction 0xfbe365603c29bd4762d317ceb7be4dd0f7fbd4635d3a9bd70dd8296745ddd8df: Transaction amount halved compared to previous transaction 0x6a4b2a11b172251b84f51e602ba89963718976154af7cd9cef6c8e8a4c475a03: Transaction amount halved compared to previous transaction 0xb6e5c666a907155f0b44e8080b516c32152765c4c049d06701e98f38367a2978: Transaction amount halved compared to previous transaction
0xeeed7da47ff4d4bc6d62bd92554cfe201d93e2fd36aa8a3e743ad93d49f8732d: High frequency transactions (less than 1 minute interval) 0x0963a66c84a738c530a6ed7be24798f5ed029df12f2778b01bdf53dc67cbcb03: High frequency transactions (less than 1 minute interval) 0xa596b3932a668562ffc05252e70e6216cf63e66aaf1c16abb876ea5ad5c74557: High frequency transactions (less than 1 minute interval) 0x30e5b68baaa9b030372d234160fecacbee2d97bd26f02103311de9a4cc8d85e3: High frequency transactions (less than 1 minute interval) 0x1702e8af0a507210b2cb7b98c30a357110b22688dc5da51b9fe1c3faed5c1b4a: High frequency transactions (less than 1 minute interval) 0x091707942ac1242db8b7991ede8d66c541492323f4b0acd237e6dcb5a60821f9: High frequency transactions (less than 1 minute interval) 0x6a4b2a11b172251b84f51e602ba89963718976154af7cd9cef6c8e8a4c475a03: High frequency transactions (less than 1 minute interval) 0xb6e5c666a907155f0b44e8080b516c32152765c4c049d06701e98f38367a2978: High frequency transactions (less than 1 minute interval) 0x2ce52ba2fa6d91cf6d76ebc84207b44b06530adfba125cb1e2835ac42817bfc2: High frequency transactions (less than 1 minute interval) 0xce7b68a44f51a82772c75ab634907e51f50069cfa1924b03ee2568f76630281a: High frequency transactions (less than 1 minute interval) 0xa98ae026d3cac20d389847e4f19dbb2cf3ed6eac00afbbfb99a8252e0a8b1a25: High frequency transactions (less than 1 minute interval) 0xd35a21cc574b6acccdd174a8f8f90cac12356116cd9ac2470bd90bb0418e38bd: High frequency transactions (less than 1 minute interval) 0xe0ac762a4e39ac1c5b1a28236f4927b0b4d674ed2e69e8620985904f7315500e: High frequency transactions (less than 1 minute interval) 0x1c2230cb1ba18864f5b354f855444c22d22a962889dd3bf609f461c0547825fa: High frequency transactions (less than 1 minute interval) 0xa7999c34b917926892d96b895186eae448a14d32e5f2ba5830acc1424e4b77b6: High frequency transactions (less than 1 minute interval) 0xc7d189d4c9475cba216bf835ad1ca924259714b1ba32772d6f2d1a5e9a456973: High frequency transactions (less than 1 minute interval) 0xf7cb4c2fb30489facee1b21744364d6fe1f974e7eabda30d51b6b998a75dbe74: High frequency transactions (less than 1 minute interval) 0xd9196631f87303777bbdea6fa86954135402b14849f573ed2fa016697fbda179: Regular interval transactions between the same wallets, High frequency transactions (less than 1 minute interval) 0x998087ff95f091cac3ccad20a33d9b5c491b9e2f5b10ef4a20225d816593b6a2: Regular interval transactions between the same wallets, High frequency transactions (less than 1 minute interval) 0xfdbd327f427b33246b4980f54beccb56bc30e7051a8d7d82606923e6f9944bee: Regular interval transactions between the same wallets, High frequency transactions (less than 1 minute interval)

Summary

Total Suspicious Transactions
26
Average Risk Score
65.0
Top Tags
No tags

Suspicious Transactions

Transaction Hash Risk Score Risk Factors Tags
0xeeed7da…
100 High
Receives funds from exploit address: 0x4571bd...
Large transaction amount
High frequency transactions (less than 1 minute interval)
Transaction involves DeFi exploit address: Bybit Exploiter 54
Low transaction fee
Part of suspicious wallet community
Related to 88 high-risk transactions (highest score: 100)
Very short time between transactions
No tags
0xc551089…
54 High
Short time frame between transactions
Anomaly detected by Isolation Forest
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
No tags
0x0963a66…
100 High
Short time frame between transactions
Rapid accumulation of large transactions
Transaction involves DeFi exploit address: Bybit Exploiter 30
Receives funds from exploit address: 0xaf620e...
Large transaction amount
Outgoing structuring detected: 4 similar amounts totaling 1271.84
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 5 similar amounts totaling 1582.33
Transaction amount doubled compared to previous transaction
Very short time between transactions
Related to 68 high-risk transactions (highest score: 100)
No tags
0x30e5b68…
100 High
Short time frame between transactions
Rapid accumulation of large transactions
Transaction involves DeFi exploit address: Bybit Exploiter 30
Receives funds from exploit address: 0xaf620e...
Large transaction amount
Outgoing structuring detected: 4 similar amounts totaling 1271.84
Outgoing structuring detected: 3 similar amounts totaling 958.38
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 5 similar amounts totaling 1582.33
Transaction amount doubled compared to previous transaction
Very short time between transactions
Related to 68 high-risk transactions (highest score: 100)
No tags
0x1702e8a…
100 High
Short time frame between transactions
Transaction involves DeFi exploit address: Bybit Exploiter 30
Receives funds from exploit address: 0xaf620e...
Anomaly detected by Isolation Forest
Large transaction amount
Outgoing structuring detected: 4 similar amounts totaling 1271.84
Outgoing structuring detected: 3 similar amounts totaling 958.38
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 5 similar amounts totaling 1582.33
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Related to 68 high-risk transactions (highest score: 100)
Very short time between transactions
No tags
0xfbe3656…
40 High
Short time frame between transactions
Low transaction fee
Part of suspicious wallet community
Related to 2 high-risk transactions (highest score: 100)
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0xfded19a…
57 High
Short time frame between transactions
Anomaly detected by Isolation Forest
Large transaction amount
High frequency transactions (less than 1 minute interval)
Low transaction fee
Part of suspicious wallet community
Transaction amount doubled compared to previous transaction
Very short time between transactions
No tags
0x6a4b2a1…
40 High
Short time frame between transactions
Outgoing structuring detected: 6 similar amounts totaling 0.00
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0xb6e5c66…
39 Medium
Short time frame between transactions
Outgoing structuring detected: 6 similar amounts totaling 0.00
Outgoing structuring detected: 5 similar amounts totaling 0.00
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0x2ce52ba…
48 High
Short time frame between transactions
Rapid accumulation of large transactions
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
No tags
0xce7b68a…
39 Medium
Short time frame between transactions
Outgoing structuring detected: 4 similar amounts totaling 0.00
Outgoing structuring detected: 6 similar amounts totaling 0.00
Outgoing structuring detected: 5 similar amounts totaling 0.00
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0xa98ae02…
40 High
Short time frame between transactions
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0xd35a21c…
48 High
Short time frame between transactions
Rapid accumulation of large transactions
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
No tags
0xe0ac762…
39 Medium
Short time frame between transactions
Outgoing structuring detected: 4 similar amounts totaling 0.00
Outgoing structuring detected: 6 similar amounts totaling 0.00
Outgoing structuring detected: 5 similar amounts totaling 0.00
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 3 similar amounts totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0x17f0f44…
100 High
Transaction involves DeFi exploit address: Bybit Exploiter 30
Receives funds from exploit address: 0xaf620e...
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 5 similar amounts totaling 1582.33
Transaction amount doubled compared to previous transaction
Very short time between transactions
Related to 68 high-risk transactions (highest score: 100)
No tags
0xa596b39…
100 High
Transaction involves DeFi exploit address: Bybit Exploiter 30
Receives funds from exploit address: 0xaf620e...
Large transaction amount
Outgoing structuring detected: 4 similar amounts totaling 1271.84
Outgoing structuring detected: 3 similar amounts totaling 958.38
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 5 similar amounts totaling 1582.33
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Related to 68 high-risk transactions (highest score: 100)
Very short time between transactions
No tags
0x1c2230c…
48 High
Short time frame between transactions
Rapid accumulation of large transactions
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
No tags
0xc7d189d…
48 High
Short time frame between transactions
Rapid accumulation of large transactions
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Very short time between transactions
No tags
0xa7999c3…
39 Medium
Short time frame between transactions
Outgoing structuring detected: 4 similar amounts totaling 0.00
Outgoing structuring detected: 6 similar amounts totaling 0.00
Outgoing structuring detected: 5 similar amounts totaling 0.00
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 3 similar amounts totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0xeae4d3a…
100 High
Short time frame between transactions
Anomaly detected by Isolation Forest
Large transaction amount
Transaction involves DeFi exploit address: Bybit Exploiter 34
Related to 99 high-risk transactions (highest score: 100)
Low transaction fee
Part of suspicious wallet community
Receives funds from exploit address: 0x3a21f4...
Rapid accumulation of large transactions
Very short time between transactions
No tags
0xf7cb4c2…
61 High
Short time frame between transactions
Anomaly detected by Isolation Forest
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Rapid accumulation of large transactions
Very short time between transactions
No tags
0x0917079…
100 High
Anomaly detected by Isolation Forest
Large transaction amount
Transaction involves DeFi exploit address: Bybit Exploiter 34
Related to 99 high-risk transactions (highest score: 100)
Low transaction fee
Part of suspicious wallet community
Transaction amount doubled compared to previous transaction
Receives funds from exploit address: 0x3a21f4...
Rapid accumulation of large transactions
Very short time between transactions
No tags
0xd919663…
61 High
Short time frame between transactions
Anomaly detected by Isolation Forest
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Rapid accumulation of large transactions
Very short time between transactions
No tags
0x998087f…
39 Medium
Short time frame between transactions
Outgoing structuring detected: 4 similar amounts totaling 0.00
Outgoing structuring detected: 6 similar amounts totaling 0.00
Outgoing structuring detected: 5 similar amounts totaling 0.00
Low transaction fee
Part of suspicious wallet community
Outgoing structuring detected: 3 similar amounts totaling 0.00
Very short time between transactions
Transaction amount significantly lower than average
Transaction amount halved compared to previous transaction
No tags
0xfdbd327…
64 High
Anomaly detected by Isolation Forest
Local Outlier Factor (LOF) detected as anomaly
Large transaction amount
Low transaction fee
Part of suspicious wallet community
Transaction amount doubled compared to previous transaction
Rapid accumulation of large transactions
Transaction amount significantly lower than average
No tags
Showing 1 to 10 of 0 transactions

Advanced Analysis Findings

No Local Outlier Factor analysis data is available for this report.
No wallet community detection data is available for this report.
No transaction layering pattern data is available for this report.
No address clustering data is available for this report.
No sanctioned address connection data is available for this report.

Suspicious Activities

Suspicious Activities Summary: High Risk Activities: 25 Medium Risk Activities: 0 Total Flagged Transactions: 25 Pattern Categories: - Network-based anomalies - Behavioral inconsistencies - Statistical outliers - Temporal irregularities Automated Detection Results: - Algorithm coverage: Comprehensive - Detection confidence: High - Risk classification: Validated

Conclusions & Recommendations

Conclusions

Analysis Conclusions for 0x5dfd0631d11f04410b4a7e165f6a76dbf13b634c: 1. Risk Assessment - Overall Risk Level: Very High - Standardized Risk Score: 100/100 - Average Transaction Risk Score: 64.16 - Total Suspicious Patterns: 25 2. Key Findings - Automated analysis completed successfully - Multiple detection algorithms applied - Comprehensive risk evaluation performed - Standardized scoring methodology applied (score: 100/100) 3. Confidence Level - Analysis Quality: High - Data Coverage: Complete - Algorithm Performance: Validated 4. Summary The automated analysis has identified significant concerns. Immediate action recommended.

Recommendations

Immediate Action Recommendations: 1. Priority Actions - Escalate to compliance team immediately - Implement enhanced monitoring - Consider transaction restrictions - Document all findings 2. Investigation Requirements - Detailed transaction review required - Source of funds investigation - Enhanced due diligence protocols - Regular monitoring updates 3. Compliance Measures - File suspicious activity reports if required - Implement know-your-customer procedures - Apply enhanced monitoring protocols - Document risk mitigation measures

Severity Assessment

Very High

Appendices & References

Appendices

Appendix A: Automated Analysis Results Appendix B: Algorithm Details and Methodology Appendix C: Risk Assessment Matrix Appendix D: Transaction Pattern Analysis Appendix E: Network Connection Analysis Appendix F: Case Reference Documentation - CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001 Appendix G: Investigation Team Notes - Cladious Forensics Team

References

1. Blockchain Analysis Framework - Cladious Platform 2. Risk Assessment Guidelines - Financial Action Task Force (FATF) 3. Automated Analysis Documentation - Internal Methodology

Contact Information

Primary Analyst: Cladious Auto
Email: [email protected]
Generated: 2025-07-14 05:15:33 UTC
Investigation Team: Cladious Forensics Team
Case Reference: CLADIOUS-[BYBIT_HACKER_LAZARUS_ITER]-2025-001

Platform: Cladious Security Analysis Platform
For questions or additional analysis requests, please contact the investigation team.

This report contains confidential information and should be handled according to your organization's data protection policies.

Report Information

Author Cladious Auto
Published Date July 14, 2025
Views 5
Likes 0