wurrly

ExchangeExplorer tag

Coinbase (exchange)

7 registry addresses

Observed portfolio value

Reading balances

No successful balance read yet.

The AVAX hot wallet that took nine of the twelve staging-wallet sweeps between 26 August and 15 September 2026, and the float addresses that only ever pay out to other Coinbase-tagged addresses. Three sweeps went to other addresses: 4 September 2026 to the one labelled internal float, 8 September 2026 to an address nobody has attributed, and 15 September 2026 to the address Snowtrace tags Coinbase 6.

Holdings

AVAX and the listed tokens, across the addresses in scopeThe price read has not finished. The quantities below are measured; USD values follow.24 h value change unavailable. No read returns a second valued endpoint 24 hours earlier.

Reading balances

Requested: Registered AVAX and liquid-staking balances. Returned coverage unavailable. Chains requested: C. 7 eligible addresses; none read yet.

Source: Avalanche C-Chain RPC, Wurrly Intel registry. No successful read yet.

Read method

Every figure is summed in exact decimal over one asset key at a time. A chain figure adds the priced holdings measured on that chain; an asset the price read could not answer for is left out of the sum, and the cell says how many were left out. A share is that chain figure over the summed priced holdings in the selected scope, divided at 60 decimal places and shown at two.

The P-Chain balance is one measurement for the whole owner group, so an address row on that chain shows the group note instead of a figure of its own. C-Chain AVAX and P-Chain AVAX are separate asset keys and are never added into one line.

No route this card reads returns a valued endpoint twenty-four hours back over the same addresses and assets, so the 24 h change is unavailable in every row. The price route’s own daily move is the AVAX market, which is a different measurement.

Balance history

History range
Display unit
Requested dates follow the read's own successful timestamp.Daily balance, rebuilt from returned transactions and anchored to the live balance

Reading balance history

Requested: C-Chain AVAX only, daily. Returned coverage unavailable. Chains requested: C. 7 eligible addresses; none read yet.

Source: Routescan, Wurrly Intel registry. No successful read yet.

Transaction count unavailable. Anchor time unavailable.

Current positions. Read time unavailable. Staking positions unavailable for this read.

Reading current staking positions

Read method

The series is rebuilt from the transactions the feeds return and then shifted so its last figure equals the live balance the node reported. The shift is the anchor adjustment, and the reach of the feeds behind it is stated above. Nothing is drawn before that shift is proved.

A day's figure is that UTC day's close: the balance after every movement dated that day.

Historical USD is each slot day's own final recorded close for AVAX, from Coinbase Exchange, joined on the UTC day. A day that has not finished has no close, and no other day's price stands in for it. The C-Chain and P-Chain AVAX are the same asset in that market, so both join the one AVAX close. Price join revision 2026-09-14.

Quantity coverage start unavailable.

Flows

Transfers summed by counterparty over the selected window
Flow window

Reading transfer history

Requested: External AVAX transfers of at least 1 AVAX, summed by counterparty. Returned coverage unavailable. Minimum transfer: 1 AVAX. Chains requested: C. 7 eligible addresses; none read yet.

Source: Routescan, Wurrly Intel registry. No successful read yet.

Read method

A trailing window is the interval from the read’s own time minus 30 periods of 24 hours up to that time. The start instant is excluded and the end instant is included, so two adjacent windows never both count the moment they share. Every figure in a trailing window is summed from the dated transfer rows the read returned, one row at a time, in exact decimal.

The returned history is the source’s own aggregate, summed over every row it read rather than over the rows it sent. It is never filtered by its first and last date to make a trailing total: a window that the returned rows cannot reach is reported as unavailable instead.

Inflow is AVAX this subject received and outflow is AVAX it sent. A movement with this subject on both sides is internal and is counted but never summed into an external total; a row with this subject on neither side is unmatched and is counted the same way. A row the feeds dated unreadably belongs to no trailing window, and the count of those is stated above.

Every amount on this card arrived from the source as a JavaScript number, so the sums are exact over the figures received and the received figures are not exact to the last digit of the chain. Each row’s Details says so beside the figure it applies to.

Transfers

Returned transfers, newest firstMinimum transfer: 1 AVAX

Reading transfer history

Requested: Returned AVAX transfers of at least 1 AVAX, newest first, including movements between the subject's own addresses. Returned coverage unavailable. Minimum transfer: 1 AVAX. Chains requested: C. 7 eligible addresses; none read yet.

Source: Routescan, Wurrly Intel registry. No successful read yet.

Read method

These are the transfers the flow read returned, newest first. The same request answers the card above: one read of the source, two measurements of it. Every row is at least 1 AVAX, because the source drops everything below that before it answers, and there are no token rows in it, so no token quantity is ever compared against the numeric 1 of another asset’s unit. A different threshold would need a source that reads to a different depth, which is not a setting on this page.

TRANSFERS shows every returned row, including movements between this subject’s own addresses, each marked Internal. A subject’s own P-Chain key counts as its own in both spellings, so a wallet moving value between its C-Chain and P-Chain sides is Internal rather than a pair of external flows to itself. INFLOW and OUTFLOW are external directions relative to this subject and exclude those rows, and they exclude rows with this subject on neither side and rows whose other endpoint is a chain rather than an address, which have no direction to sort into. CROSS-CHAIN holds the movements between two Avalanche chains: two endpoint chains that differ, or the atomic feed, which returns nothing else.

No pair identifier reaches this page, so a cross-chain export and its matching import are two rows with two amounts and two links. Nothing on this card adds them into one movement, and no figure here counts a pair once.

A historical USD value is that row’s own UTC day’s final closing price multiplied by its exact quantity. A day that has not finished has no close and says so; a day the price read did not return says so separately. Today’s price is never substituted for either.

Pages are windows on the frozen read named in the footer. A newer read landing while you are reading does not replace these rows; it offers itself at the top of the card, and adopting it returns to page 1.

Visualizer

Registry addresses as boxes, and the transfers the read observed between themRegistry addresses are grouped by role. Arrows show transfers returned by the selected read.A counterparty is the address or organisation on the other side of a transfer.

Coinbase (exchange). Reading transfers

Visualizer view

Coinbase (exchange): registry addresses by role, and the transfers this read observed between them7 boxes and no arrows. Transfer coverage is being read.Working1 addressstaging, pass-throughs, forwardersExits6 addressesdeposit addresses, exchanges, sinksCoinbase deposit #1deposit-address · C-Chain ·…0x6eaa…36bdCoinbase internal floatexchange · C-Chain · Inferr…0xc9f1…9d0eCoinbase internal floatexchange · C-Chain · Inferr…0x0df6…4b5eCoinbase internal floatexchange · C-Chain · Inferr…0xb624…ffe0Coinbase AVAX hot walle…exchange · C-Chain · Explor…0x4a4e…dfd2Coinbase 1 (Snowtrace t…exchange · C-Chain · Proven0x3dd8…24ccCoinbase 6 (Snowtrace t…exchange · C-Chain · Proven0x333d…9003

Select an address to read its identity and observed transfers.

Registry addresses in scope, with each one's role. 7 of 7 addresses read.

Wurrly Intel registry: compiled with this page.

Reading transfers. Transfer coverage is being read.

No transfer read has answered for this scope.

Read method

The boxes are the registry’s own rows, placed by the role the research gave each one: custody first, the working wallets next, the staking and protocol keys, then the exits. Whoever was on the other side of a returned transfer joins an outer column, on the right when this subject paid them and on the left when they only paid in. Grouping is not attribution: a box is named only where the registry names it.

Arrows are the transfers this read returned, summed by pair, asset, chain and kind. Two assets between one pair of boxes are two arrows, never one; a token quantity is never added to an AVAX total and never takes the AVAX reporting threshold. Reverse directions stay apart. A sum is labelled At least only where the source states the depth it reports to and says its coverage was partial; otherwise it is labelled Observed, which is still scoped to this request.

An endpoint the feed left as a chain rather than an address is not a counterparty, so no arrow is drawn to it and the count of transfers that were excluded for that reason is stated in the scope line above.

A column of more than 8 addresses folds its tail behind one control. Folding changes the drawing and nothing else: Connections still lists every canonical relationship, and any movement whose two ends fold into one box is kept as that group’s own internal subtotal, so the arrows plus the subtotals still add up to the same per-asset totals.

Proven: a filed quantity matched to the unit, or a transaction identified by its hash. Inferred: behaviour or timing, with the base rate stated in the source. Candidate: a lead, one tier below inferred, with a written test for promoting it and a written test for killing it. Explorer tag: an explorer's attribution label. Standing describes the cited claim. A transfer alone does not establish ownership.

Minimum transfer: 1 AVAX.

Evidence

Registry claims, address by address, with each claim's standing7 of 7 registry addresses on C-Chain; all registry evidence shown.

Proven: a filed quantity matched to the unit, or a transaction identified by its hash. Inferred: behaviour or timing, with the base rate stated in the source. Candidate: a lead, one tier below inferred, with a written test for promoting it and a written test for killing it. Explorer tag: an explorer's attribution label. Unattributed: no ownership attribution is established in the registry. Standing describes the cited claim. A transfer alone does not establish ownership.

Evidence class: A flow tie, B co-signature or shared infrastructure, C filed-quantity match, D node or provider continuity, E adjacency.

Registry method states a review on 4 September 2026. No record states a review date of its own.

  1. Coinbase deposit #1

    InferredC-Chaindeposit-address

    0x6eaaa6f808e2d67b125f12de4f44dafbac9336bd

    Attribution
    Filed under Coinbase (exchange) as deposit-address. Open entity
    Claim supported
    an exchange deposit address that AVAT's staging wallet used once: 100,000.00 AVAX on 26 Aug 2026, which is 18.1 per cent of a 552,494.11 AVAX lifetime inflow from four unrelated payer groups since 9 Dec 2025. It is not one of the five the P-Chain desk opened on 11 Jun 2026 and has never taken a P-Chain import. The account holder is not established and the tie is inferred, not proven
    Evidence
    scratch/hunt/blue2/deposit-provenance.md section 3, re-run in deposit-provenance-verify.md: zero atomic_tx rows ever, so no P-Chain import has ever reached this address, and its first row is 2025-12-09 17:55:04 UTC, six months before the ladder that opened the other five. Its lifetime inflow is 552,494.11 AVAX from four unrelated groups of payers across nine months: 0xff3d558C (0.1 and 49,998.90 AVAX on 9 Dec 2025, then 1.00 and 249,999.00 on 26 May 2026), 0xc13fDa27 (0.2 and 70,361.66 on 21 Jan 2026), 0x0b76b81d (5.00 then 58,865.21 by internal call on 23 Jan 2026, 104 minutes apart), 0x9a9ECAE2, 0xD80Fc084 and 0xB5d8549e (23,262.05 between them on 14 May 2026), a 0.001 AVAX ping from the export-gas dispenser 0xe1597DF1, and AVAT's staging wallet 0xb33c0018, which sent 100,000.00 AVAX once, at 16:34:30 UTC on 26 Aug 2026. That transfer is 18.1 per cent of the inflow, in one transfer on one day, and it is the whole of the AVAT edge. The account holder is not established: a deposit address is a receiving address, so a set of payers is not a set of owners. It sweeps within minutes to addresses Snowtrace tags Coinbase 1, Coinbase 6, the AVAX hot wallet and the internal float, and once, on 23 Jan 2026, to 0x7eD53F6E, which nobody has attributed. Those sweeps are why the row sits under the exchange: they establish which venue controls the address, not who the account holder is. Re-run: GET https://api.routescan.io/v2/network/mainnet/evm/43114/address/0x6eaaa6f808e2d67B125F12dE4F44daFBac9336BD/transactions?limit=100 paged to exhaustion, and GET https://api.routescan.io/v2/network/mainnet/evm/43114/etherscan/api?module=account&action=txlistinternal&address=0x6eaaa6f808e2d67B125F12dE4F44daFBac9336BD&sort=asc&page=1&offset=1000, which returns two rows and only two
    Source
    Source destination unavailable

    How this row was graded

    Evidence class
    A, flow tie
    What would promote it
    an account holder established by something other than a payment, since payers are not owners; or a filed quantity that only this address can carry
    What would kill it
    the 26 Aug 2026 transfer re-read as something other than AVAT's staging wallet

    Promotion is a person's decision, and every promotion writes the re-runnable query into the evidence above.

    Open addressOpen in Snowscan (opens in a new tab)

  2. Coinbase internal float

    InferredC-Chainexchange

    0xc9f151f016584bc26e47bb9cb16c890895779d0e

    Attribution
    Filed under Coinbase (exchange) as exchange. Open entity
    Claim supported
    takes from the AVAX hot wallet (Snowtrace tag: Coinbase 2) and pays out only to Coinbase-tagged addresses (Coinbase 1/3/5/6, Hot Wallet 1); no name tag of its own
    Evidence
    Snowtrace: 68% of outgoing value to 0x4a4E, the rest to other Coinbase-tagged addresses
    Source
    Source destination unavailable

    Open addressOpen in Snowscan (opens in a new tab)

  3. Coinbase internal float

    InferredC-Chainexchange

    0x0df676fc6a4cb62b9488b6dd2c67f3d3da774b5e

    Attribution
    Filed under Coinbase (exchange) as exchange. Open entity
    Claim supported
    fed by two Coinbase hot wallets; pays out only to Coinbase-tagged addresses (49% to 0x4a4E, the rest to Coinbase 1/3/5/6); no name tag of its own
    Evidence
    Snowtrace: 32 of 58 outgoing transfers to other Coinbase-tagged addresses
    Source
    Source destination unavailable

    Open addressOpen in Snowscan (opens in a new tab)

  4. Coinbase internal float

    InferredC-Chainexchange

    0xb624219480543c54603fb6b07d5eb347e51bffe0

    Attribution
    Filed under Coinbase (exchange) as exchange. Open entity
    Claim supported
    took deposit #4's July sweep, and deposit #6's sweep of 100,000 AVAX on 4 Sep 2026, 40 seconds after the staging wallet sent it
    Evidence
    14 Jul 250K sweep | chain read, 13 Sep 2026: tx 0xe4384e7cc3a9e37e1bac713ebe97ee8f5d62d144942c53fba6f5afdc7ed12e27 at 14:09:16 UTC on 4 Sep 2026, one of the three staging-wallet sweeps that did not go to the Coinbase AVAX hot wallet
    Source
    Source destination unavailable

    Open addressOpen in Snowscan (opens in a new tab)

  5. Coinbase AVAX hot wallet (Snowtrace: Coinbase 2)

    Explorer tagC-Chainexchange

    0x4a4e859565d9b563afc8e63641542455cff0dfd2

    Attribution
    Filed under Coinbase (exchange) as exchange. Open entity
    Claim supported
    Claim text unavailable
    Evidence
    Snowtrace and Arkham tags; took nine of the twelve staging-wallet sweeps between 26 Aug and 15 Sep 2026, each within 14 to 242 seconds (chain read, 16 Sep 2026)
    Source
    Source destination unavailable

    Open addressOpen in Snowscan (opens in a new tab)

  6. Coinbase 1 (Snowtrace tag)

    ProvenC-Chainexchange

    0x3dd87411a3754deea8cc52c4cf57e2fc254924cc

    Attribution
    Filed under Coinbase (exchange) as exchange. Open entity
    Claim supported
    where Coinbase deposit #1 forwards: 13,430 on 14 May and 250,000 on 26 May 2026, each within the minute of arrival; also paid directly by Prime-funded family wallets
    Evidence
    Snowtrace tag Coinbase 1 (scratch/verify/snowtrace.md); Routescan: deposit #1 to this address in the same minute as each deposit
    Source
    Source destination unavailable

    Open addressOpen in Snowscan (opens in a new tab)

  7. Coinbase 6 (Snowtrace tag)

    ProvenC-Chainexchange

    0x333d17d3b42bf7930dbc6e852ca7bcf560a69003

    Attribution
    Filed under Coinbase (exchange) as exchange. Open entity
    Claim supported
    where Coinbase deposit #6 forwarded 250,000 on 11 Jun 2026; also paid directly by Prime-funded family wallets
    Evidence
    Snowtrace tag Coinbase 6 (scratch/verify/snowtrace.md); Routescan: deposit #6 to this address
    Source
    Source destination unavailable

    Open addressOpen in Snowscan (opens in a new tab)

Registry claims, address by address, with each claim's standing. 7 of 7 addresses read.

Wurrly Intel registry: compiled with this page.

Source: research address registry. 7 registry addresses for this subject, every one of them shown.

Read method

Nothing here is a new claim. The registry is the research’s label sheet: an address enters it when a figure on one of the research pages established it, and it takes that figure’s standing. This card restates those rows; it does not add to them, and it never upgrades a standing.

Registry method states a review on 4 September 2026. That is the method’s assertion about the whole sheet rather than a date filed against any one row, so it is not copied into a record. A record the registry files no review date against says so.

A source link renders only where this application resolved the destination itself. The one destination the registry files per entity is the research article that entity is written up on, and it is labelled Related research rather than presented as the citation for an individual address’s figure. No anchor, filing URL or transaction hash is derived from evidence prose.

A candidate is a lead one tier below inferred, and it attributes nothing. Where the registry grades a row, the grade, the evidence class and the two tests are printed as the research wrote them, and a confidence appears only on a row that carries a number. A proven row prints no confidence and neither test: nobody measured a number for it, and a row already at the top standing has nothing written that would move it up or out. Promotion is a person's decision, and every promotion writes the re-runnable query into the evidence above.

An explorer link, where one is shown, is an inspection destination and not evidence of ownership. Snowscan reads the C-Chain and Avascan reads the P-Chain.