추적 대상 도메인을 검색하고, 저장된 증거, 탐지 내역 및 최근 확인된 가용성 정보를 검토합니다.
How This Attack Works
Inferno Drainer is a sophisticated phishing threat targeting users via fraudulent domains.
STEP 1
도메인 등록
Attackers register domains, often using top TLDs like .com and .net.
STEP 2
Phishing Site Deployment
가짜 웹사이트 are created to mimic legitimate sites, duping users into entering sensitive information.
STEP 3
User Targeting
Users are lured to these sites through phishing emails or social engineering tactics.
STEP 4
Data Harvesting
Sensitive data submitted by users is harvested and used for malicious purposes.
Technical Analysis
Inferno Drainer utilizes a combination of social engineering and technical mimicry to lure victims. Attackers typically host their phishing sites on compromised or newly registered domains, often using registrars like NICENIC INTERNATIONAL GROUP CO., LIMITED. The sites are designed to replicate the appearance and functionality of legitimate services, making use of HTML and JavaScript to capture user inputs. In some cases, attackers employ SSL certificates to give an illusion of security, which can deceive even the wary users. Furthermore, the infrastructure often involves the use of content delivery networks (CDNs) such as Cloudflare to efficiently manage traffic and obscure the server's true location, complicating takedown efforts.
Real Cases
Case 1 - Major Financial Institution Breach (2023)
$3 million stolen
A phishing campaign targeting a major bank resulted in significant financial losses.
Case 2 - Retail Giant Data Breach (2024)
$1.5 million stolen
An attack on an online retail platform led to the compromise of thousands of customer credentials.
Case 3 - Cryptocurrency Exchange Hack (2024)
$2 million stolen
A targeted attack on a crypto exchange drained funds from user accounts through phishing.
How to Detect
Unusual domain names mimicking legitimate services
Poor website design or functionality
Requests for sensitive information via email or pop-ups
HTTPS present but with an unfamiliar issuer
Emails with urgent language or threats
How to Protect Yourself
1
Verify URLs before clicking any links
2
Use multi-factor authentication on all accounts
3
Regularly update passwords and security questions
4
Employ anti-phishing browser extensions
5
Educate yourself and your organization about phishing tactics
Frequently Asked Questions
Data sourced from PhishDestroy threat intelligence database — 41 domains tracked for this threat type
Inferno Drainer 41 domains
![[스크린샷] www-walletconnect.pages.dev](https://screenshots.phishdestroy.io/019c5f16-d328-7361-9690-117e5849ec4a.png)
www-walletconnect.pages.dev
![[스크린샷] clickwinorio.com](https://screenshots.phishdestroy.io/019b6d00-5177-70a8-96a5-6ea4f6b92644.png)
clickwinorio.com
![[스크린샷] cssats.com](https://screenshots.phishdestroy.io/01980d14-752f-75b9-8264-a9f9fefa804c.png)
cssats.com
![[스크린샷] angelxferno.wuaze.com](https://screenshots.phishdestroy.io/019b419e-a149-72d7-bbdc-e45f62c0c12f.png)
angelxferno.wuaze.com
![[스크린샷] evobet.cz](https://screenshots.phishdestroy.io/019a91ef-b98d-719b-8fac-276a2eac2036.png)
evobet.cz
![[스크린샷] dapp-3.pages.dev](https://screenshots.phishdestroy.io/01993973-deb1-711b-a2eb-6723b7eebf6a.png)
dapp-3.pages.dev
![[스크린샷] dapp-w.pages.dev](https://screenshots.phishdestroy.io/0199397a-2ad3-77f9-bdf5-fea01d8a34a1.png)
dapp-w.pages.dev
![[스크린샷] inferno-drainer.com](https://screenshots.phishdestroy.io/01997cc6-739c-7120-8520-f26e0a9145e8.png)
inferno-drainer.com
![[스크린샷] dapp-y.pages.dev](https://screenshots.phishdestroy.io/019a06b9-cfe8-749c-b616-eeed195bd410.png)
dapp-y.pages.dev
![[스크린샷] infernodrainer.net](https://screenshots.phishdestroy.io/01999d5d-321a-7366-a004-79d3bd58a58a.png)
infernodrainer.net
![[스크린샷] pyrax.app](https://screenshots.phishdestroy.io/019d15a5-d6de-736f-9128-3a37a539ae74.png)
pyrax.app
![[스크린샷] angelx-panel.com](https://screenshots.phishdestroy.io/019b41d2-34bb-728e-820f-c9b44a3de6dc.png)
angelx-panel.com
![[스크린샷] panel-inferno.com](https://screenshots.phishdestroy.io/019b41d6-39cc-75be-8373-f2b8b2ec6e09.png)
panel-inferno.com
![[스크린샷] dapp-4.pages.dev](https://screenshots.phishdestroy.io/01993974-1357-75fa-a9a2-85ea5b1eafdc.png)
dapp-4.pages.dev
![[스크린샷] dapp-5.pages.dev](https://screenshots.phishdestroy.io/01995ff1-2623-73a9-94e2-292559cd2bd6.png)
dapp-5.pages.dev
![[스크린샷] dapp-b.pages.dev](https://screenshots.phishdestroy.io/0199397e-8d2d-70ea-93a1-1c1c4753bc68.png)
dapp-b.pages.dev
![[스크린샷] dapp-d.pages.dev](https://screenshots.phishdestroy.io/0199397b-beb3-7276-b05d-038a3a43efd0.png)
dapp-d.pages.dev
![[스크린샷] dapp-f.pages.dev](https://screenshots.phishdestroy.io/0199397b-ad04-73af-95ae-ed579864e25f.png)
dapp-f.pages.dev
![[스크린샷] dapp-h.pages.dev](https://screenshots.phishdestroy.io/0199522c-02f4-7548-8016-f701ea554e1d.png)
dapp-h.pages.dev
![[스크린샷] dapp-i.pages.dev](https://screenshots.phishdestroy.io/01993976-faf8-735c-9dd4-c4e983bc70f4.png)
dapp-i.pages.dev
![[스크린샷] dapp-j.pages.dev](https://screenshots.phishdestroy.io/0199397b-a2ed-754d-afc2-cbf886a1be92.png)
dapp-j.pages.dev
![[스크린샷] dapp-k.pages.dev](https://screenshots.phishdestroy.io/0199397d-7c79-74ad-9427-95c628900617.png)
dapp-k.pages.dev
![[스크린샷] dapp-o.pages.dev](https://screenshots.phishdestroy.io/01995ff1-0790-7558-b05a-7875e67c91b2.png)
dapp-o.pages.dev
![[스크린샷] dapp-p.pages.dev](https://screenshots.phishdestroy.io/0199397b-2b4f-76bd-b883-b9b423367cdb.png)
dapp-p.pages.dev
![[스크린샷] dapp-q.pages.dev](https://screenshots.phishdestroy.io/01995ff0-b8dc-75e9-8131-cfe9d427adac.png)
dapp-q.pages.dev
![[스크린샷] dapp-r.pages.dev](https://screenshots.phishdestroy.io/01993979-63ea-717e-a323-792b7df4efa4.png)
dapp-r.pages.dev
![[스크린샷] dapp-rx.pages.dev](https://screenshots.phishdestroy.io/01994b11-d503-73aa-aade-ea1bf076cdce.png)
dapp-rx.pages.dev
![[스크린샷] dapp-tx.pages.dev](https://screenshots.phishdestroy.io/0199395f-cffe-75fc-ab15-244872099de8.png)
dapp-tx.pages.dev
![[스크린샷] dapp-v.pages.dev](https://screenshots.phishdestroy.io/01995ff0-8463-7616-80a3-c05b227ebb50.png)
dapp-v.pages.dev
![[스크린샷] dapp-x.pages.dev](https://screenshots.phishdestroy.io/01994b12-0ae2-7288-92f1-edb0e3868435.png)
dapp-x.pages.dev
![[스크린샷] dapp-z.pages.dev](https://screenshots.phishdestroy.io/01995ff0-e606-70b3-ab72-bd7e122df9c9.png)
dapp-z.pages.dev
![[스크린샷] infernolukso.pages.dev](https://screenshots.phishdestroy.io/019d331b-1d63-732e-88bb-0b3a508239f8.png)
infernolukso.pages.dev
![[스크린샷] dapp-s.pages.dev](https://screenshots.phishdestroy.io/01993979-1641-72ba-a4b0-b1164f6bc6fe.png)
dapp-s.pages.dev
![[스크린샷] dapp-u.pages.dev](https://screenshots.phishdestroy.io/01993978-2083-70eb-956e-2694f6d348b2.png)
dapp-u.pages.dev
![[스크린샷] guild-blockchain-web3.pages.dev](https://screenshots.phishdestroy.io/019d7afd-6c68-73da-a202-36f4ba854919.png)
guild-blockchain-web3.pages.dev
![[스크린샷] inferno-drainer.build](https://screenshots.phishdestroy.io/0199956a-7346-728a-a5a9-b27cf153bb3a.png)
inferno-drainer.build
![[스크린샷] inferno-panel.net](https://screenshots.phishdestroy.io/019987c9-c3cd-7196-87ee-da03c9fec683.png)
inferno-panel.net
![[스크린샷] template-landing.com](https://screenshots.phishdestroy.io/019980e5-8e34-752e-933d-e4d5cf1013f3.png)
template-landing.com
![[스크린샷] inferno-line.com](https://screenshots.phishdestroy.io/019e6ed7-5d58-75c8-8641-bbd880da3663.png)
inferno-line.com
위협 대응 Pipeline
이 허브에 포함된 모든 도메인이 어떻게 검증되며, 확인된 위협은 어떻게 무력화되는지. 전체 파이프라인 시각화 →
위협 인텔리전스 점검— 모든 도메인은 다음 항목에 대해 스캔 및 교차 확인을 거칩니다:
urlscan.io스크린샷 · DOM · HTTPVirusTotal90+ AV enginesGoogle Safe BrowsingTransparency 보고서Cloudflare RadarDNS · certs · categoriesAlienVault OTXThreat-intel pulses웨이백 머신Historical evidenceabuse.ch ThreatFoxIOC correlationcrt.shCertificate TransparencyDNS 보안 FiltersQuad9 · AdGuard · CleanBrowsingWeb-확인Full surface scan
글로벌 공급업체 동기화— 확인된 탐지 결과는 29개 파트너사에 전송됩니다:
GoogleSafe BrowsingGoogleWeb Risk APIMicrosoftSmartScreenVirusTotalDetection feedCloudflareRadar / 1.1.1.1YandexSafe BrowsingURLScan.ioPublic scanESETWebGuard비트디펜더Threat exchangeNortonSafe WebSymantec사이트 리뷰AviraCloud detectionAvast / AVGWeb Shield카스퍼스키OpenTIPDr.WebOnline scanner넷크래프트제거 APIPhishTankVerified voteAPWG eCXBulk feedPhishStatsOpen feedPhish.보고서Hosting abuseSpamhausDBL feedPolySwarmMarketplaceCheckPhishBolster scanQutteraMalware scanURLquerySandboxCriminal IPAsset intelCRDFThreat CenterScamadviserTrust scoreMyWOTWeb of Trust