₿ Cryptocurrency Address
Blockchain wallet address for receiving or sending crypto assets.
Financial
🔧 Native workbench
🔎 Live indicators (IoC view)
🔗 Analyst pivots
🔌 Sources that yield Cryptocurrency Address (19)
| Source | Category | Auth | Format | |
|---|---|---|---|---|
| Arkham Intelligence Entity attribution & flow analysis. | Crypto Attribution | NONE | html | home↗ api↗ |
| Blockchair API Multi-chain explorer & analytics API. | Blockchain Explorer | NONE | json | home↗ api↗ |
| Blockstream Esplora Bitcoin explorer REST API. | Blockchain Explorer | NONE | json | home↗ api↗ |
| Breadcrumbs Free visual crypto tracing. | Crypto Investigation | NONE | html | home↗ api↗ |
| Chainabuse Community scam/abuse address reporting (TRM). | Crypto Fraud | NONE | html | home↗ api↗ |
| Chainabuse reports Community scam/abuse address reporting (TRM Labs). | Crypto Fraud | NONE | html | home↗ api↗ |
| CryptoScamDB Known scam/phishing crypto addresses & domains. | Crypto Fraud | NONE | json | home↗ api↗ |
| CryptoScamDB addresses Known scam / phishing crypto addresses. | Crypto Fraud | NONE | json | home↗ api↗ |
| GraphSense TagPacks Open attribution tags for blockchain addresses. | Crypto Attribution | NONE | text | home↗ api↗ |
| mempool.space API Bitcoin transaction/address analytics API. | Blockchain Explorer | NONE | json | home↗ api↗ |
| MetaSleuth (Blocksec) Fund-flow tracing & labelling. | Crypto Investigation | NONE | html | home↗ api↗ |
| MistTrack AML risk scoring & tracing (SlowMist). | Crypto Investigation | NONE | html | home↗ api↗ |
| OFAC Sanctioned Crypto Addresses (0xB10C) Machine-readable OFAC-designated wallet lists per chain. | Crypto Sanctions | NONE | text | home↗ api↗ |
| OXT / WalletExplorer Bitcoin wallet clustering & attribution. | Crypto Attribution | NONE | html | home↗ api↗ |
| Ransomwhere export Crowd-sourced ransomware payment wallets + family attribution. | Ransom Payments | NONE | json | home↗ api↗ |
| Ransomwhere payments Crowdsourced ransomware payment address tracking. | Ransom Payments | NONE | json | home↗ api↗ |
| ScamSniffer scam addresses Community-reported scam wallet addresses. | Crypto Fraud | NONE | json | home↗ api↗ |
| BitcoinAbuse / Chainabuse Reported abusive BTC addresses (extortion, ransom). | Crypto Fraud | KEY | csv | home↗ api↗ |
| Etherscan API Ethereum explorer + address labels. | Blockchain Explorer | KEY | json | home↗ api↗ |
🧭 Disciplines
🎯 Mission Domains
🔍 Lookup
🔄 Live Datasets & APIs (10 key-free · ingestible)
📜 Playbook — Cryptocurrency Address exploitation
- Direction — frame the requirement for Cryptocurrency Address: what decision does this support, by when?
- Collection — pull the 19 mapped sources (17 free) and the native workbench (open); capture provenance and observe OPSEC.
- Processing — normalize, de-duplicate and enrich the collected data.
- Analysis — correlate against local holdings; apply ACH; assign confidence.
- Dissemination — open a case, draft a report, share via STIX/MISP.
- Feedback — set an alert rule / watchlist to monitor for change.
⚡ AI Skills & Automation
Automate unattended via the cron pipeline (collect → ingest → resolve → enrich → score → alert).
🧩 Advanced Capabilities
✨ Enrichment pathways
🎫 Cryptocurrency Address
A cryptocurrency address is a public identifier (derived from a public key or script) that receives and sends funds on a blockchain. It is a pseudonymous financial fingerprint used to trace illicit flows, cluster wallets to a single actor, and screen against sanctions and scam databases.
Format: BTC: legacy 1..., P2SH 3..., bech32 bc1... (base58/bech32); ETH/EVM: 0x + 40 hex (EIP-55 checksum); TRON T...; XMR 95-char; each with its own checksum
📡 How it is collected
- Blockchain explorer scraping
- Ransom notes and extortion demands
- Darknet market and scam pages
- Exchange deposit/withdrawal records
- Donation/tip jar disclosures
- Malware config and wallet drainers
📚 Enrichment & validation sources
🔗 Pivot to
🧩 Analysis & hunting techniques
- Address checksum/format validation
- Common-input-ownership clustering
- Change-address heuristics
- Sanctions and scam-list screening
- Exchange attribution / entity tagging
- Peel-chain and mixer detection
- Cross-chain bridge tracing
- Dusting-attack detection
🔧 Tools
- Blockchair
- Etherscan
- Breadcrumbs
- Arkham
- GraphSense
- OXT / Samourai tools
- Chainalysis (commercial)
- bitcoinlib (Python)
⚡ Workbench actions
- Validate address format
- Screen against OFAC/scam lists
- Cluster co-spending wallets
- Trace transaction graph
- Attribute to exchange/VASP
- Monitor for new activity
- Export flow graph
📊 Dashboard KPIs
Total received/sent balanceTransaction countSanctions/abuse hit flagCluster size (linked addresses)Days since last activity
📂 Open
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron