Guides / 0x43ec…d7a3
⚠ Exploit

Why is 0x43ec…d7a3 flagged?

0x43ec1d163cc4c15b574f86d8203c3b0f3ebed7a3 · View on explorer ↗
Quick answer

This address is flagged in public scam/exploit label data as Exploit — linked to a smart-contract exploit — an address used to drain funds from a vulnerable DeFi protocol. Its Hopchain label comes from the source list's own name for it: “GenomesDAO Exploiter” on matic-mainnet. If it shows up as a connection on a wallet you're checking, don't interact with it, sign anything it prompts, or visit any site linked to it.

What Hopchain observed
Flagged on (source label data) matic-mainnet
Most active chains (live data) matic-mainnet
First activity observed Jul 31, 2022
Last activity observed 2 years ago
Transactions observed 52
Distinct connections observed 24
A few addresses this wallet has sent to, found in the matic-mainnet transaction history Hopchain pulled (not a complete list — just the first 6 found):
0x7a13f5…84f7c1 Dec 10, 2022
0x91db15…6e3fc9 Sep 3, 2022
0x4f3aff…be192f Aug 6, 2022
0x2791bc…a84174 Aug 6, 2022
0x68b346…65fc45 Aug 6, 2022
0x2ef4a5…c4025c Aug 6, 2022
Seen sending: anyUSDC, USDC.e, anyMATIC, WETH, anyETH — based on a small sample of its own recent outgoing transactions, not exhaustive.
Don't
  • Interact with this address, or sign any transaction it prompts
  • Visit a site linked in a token or message associated with it
  • Try to "recover" or move on tokens it sent you by following its instructions
  • Assume a familiar-looking name or logo means it's legitimate
Do
  • Ignore unsolicited tokens or dust sent from it — it's safe to just leave them
  • Check your wallet's token approvals and revoke anything you don't recognize
  • Double-check a project's real official URL before connecting a wallet
  • See the full connection graph if you want to trace it further
See the full analysis for this address

Interactive connection graph, all connections, and CSV export — free, no signup.

Analyze 0x43ec…d7a3 →

Frequently asked

Is it dangerous just to receive tokens from a flagged address?
Receiving alone doesn't put your wallet at risk. The danger comes from interacting back — don't visit any site linked in the token's name or metadata, and don't sign anything it prompts, including a "claim" or "approve" transaction.

Why does Hopchain flag this specific address?
It's cross-referenced against verified public phishing/exploit/heist/scam label data (see how it works). Coverage isn't complete for every chain — Ethereum mainnet and Base aren't covered by this particular source yet, a known, disclosed gap.

What if I already approved this address to spend a token?
Open your wallet's connected-apps or approvals view (or a revocation tool) and revoke it. An approval only lets a contract move funds you granted it access to — revoking it removes that permission.