<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=TURBO_BOBO_GORILLA_Phishing_Inferno_Drainer</id>
	<title>TURBO BOBO GORILLA Phishing Inferno Drainer - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=TURBO_BOBO_GORILLA_Phishing_Inferno_Drainer"/>
	<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=TURBO_BOBO_GORILLA_Phishing_Inferno_Drainer&amp;action=history"/>
	<updated>2026-10-10T20:24:52Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.39.1</generator>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=TURBO_BOBO_GORILLA_Phishing_Inferno_Drainer&amp;diff=6084&amp;oldid=prev</id>
		<title>Azoundria: Created page with &quot;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/turbobobogorillaphishinginfernodrainer.php}} {{Unattributed Sources}}  Inferno DrainerGemini, Binance, Kraken customer with address 0x6435...1390 fell victim to a phishing website and lost a significant number of tokens including TURBO, BOBO, GORILLA, GROK, and SHRAP. There is limited information about what happened, or anything which was done about a re...&quot;</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=TURBO_BOBO_GORILLA_Phishing_Inferno_Drainer&amp;diff=6084&amp;oldid=prev"/>
		<updated>2024-09-18T21:05:23Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/turbobobogorillaphishinginfernodrainer.php}} {{Unattributed Sources}}  &lt;a href=&quot;/cryptocurrencyhackscamfraudwiki/index.php?title=File:Infernodrainer.jpg&quot; title=&quot;File:Infernodrainer.jpg&quot;&gt;thumb|Inferno Drainer&lt;/a&gt;Gemini, Binance, Kraken customer with address 0x6435...1390 fell victim to a phishing website and lost a significant number of tokens including TURBO, BOBO, GORILLA, GROK, and SHRAP. There is limited information about what happened, or anything which was done about a re...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/turbobobogorillaphishinginfernodrainer.php}}&lt;br /&gt;
{{Unattributed Sources}}&lt;br /&gt;
&lt;br /&gt;
[[File:Infernodrainer.jpg|thumb|Inferno Drainer]]Gemini, Binance, Kraken customer with address 0x6435...1390 fell victim to a phishing website and lost a significant number of tokens including TURBO, BOBO, GORILLA, GROK, and SHRAP. There is limited information about what happened, or anything which was done about a recovery.&amp;lt;ref name=&amp;quot;chainaegistwitter-14546&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;chainaegisapp-14547&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;etherscan-14548&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;metasleuth-14549&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;immunebytes-14550&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;metasleuth-14551&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;dexcheck-14552&amp;quot; /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== About 0x6435...1390 ==&lt;br /&gt;
Gemini, Binance, Kraken customer. tokens including TURBO, BOBO, GORILLA, GROK, and SHRAP.&lt;br /&gt;
&lt;br /&gt;
== The Reality ==&lt;br /&gt;
This sections is included if a case involved deception or information that was unknown at the time. Examples include:&lt;br /&gt;
&lt;br /&gt;
* When the service was actually started (if different than the &amp;quot;official story&amp;quot;).&lt;br /&gt;
* Who actually ran a service and their own personal history.&lt;br /&gt;
* How the service was structured behind the scenes. (For example, there was no &amp;quot;trading bot&amp;quot;.)&lt;br /&gt;
* Details of what audits reported and how vulnerabilities were missed during auditing.&lt;br /&gt;
&lt;br /&gt;
== What Happened ==&lt;br /&gt;
&amp;quot;Address 0x6435...1390 fallen victim to a phishing scheme, and lost ～$1.55M worth of tokens.&amp;quot;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|+Key Event Timeline - TURBO BOBO GORILLA Phishing Inferno Drainer&lt;br /&gt;
!Date&lt;br /&gt;
!Event&lt;br /&gt;
!Description&lt;br /&gt;
|-&lt;br /&gt;
|June 1st, 2024 3:17:59 PM MDT&lt;br /&gt;
|Blockchain Transaction&lt;br /&gt;
|Blockchain transaction draining the wallet happens.&lt;br /&gt;
|-&lt;br /&gt;
|June 1st, 2024 9:40:00 PM MDT&lt;br /&gt;
|ChainAegis Tweet&lt;br /&gt;
|ChainAegis tweets about the loss.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
== Technical Details ==&lt;br /&gt;
&amp;quot;In suspicious fund transfer, the victim's tokens are transferred to the attacker-controlled account. The attack is usually launched through social engineering, e.g., asking users to click a link to claim some rewards or AirDrop tokens.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;In this transaction, the TURBO token of the user (0x6435b) was transferred to the attacker (0xfc4ea). Since the attacker's account (0xfc4ea) was involved in several phishing scam incidents, we believe the user (0x6435b) was deceived into signing the approval transaction.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Total Amount Lost ==&lt;br /&gt;
&amp;quot;lost ～$1.55M worth of tokens.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
The total amount lost has been estimated at $1,550,000 USD.&lt;br /&gt;
&lt;br /&gt;
== Immediate Reactions ==&lt;br /&gt;
&amp;quot;Address 0x6435...1390 fallen victim to a phishing scheme, and lost ～$1.55M worth of tokens.&lt;br /&gt;
&lt;br /&gt;
The phishing address points to #InfernoDrainer&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;In suspicious fund transfer, the victim's tokens are transferred to the attacker-controlled account. The attack is usually launched through social engineering, e.g., asking users to click a link to claim some rewards or AirDrop tokens.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;In this transaction, the TURBO token of the user (0x6435b) was transferred to the attacker (0xfc4ea). Since the attacker's account (0xfc4ea) was involved in several phishing scam incidents, we believe the user (0x6435b) was deceived into signing the approval transaction.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Ultimate Outcome ==&lt;br /&gt;
What was the end result? Was any investigation done? Were any individuals prosecuted? Was there a lawsuit? Was any tracing done?&lt;br /&gt;
&lt;br /&gt;
== Total Amount Recovered ==&lt;br /&gt;
There do not appear to have been any funds recovered in this case.&lt;br /&gt;
&lt;br /&gt;
What funds were recovered? What funds were reimbursed for those affected users?&lt;br /&gt;
&lt;br /&gt;
== Ongoing Developments ==&lt;br /&gt;
What parts of this case are still remaining to be concluded?&lt;br /&gt;
== Individual Prevention Policies ==&lt;br /&gt;
{{Prevention:Individuals:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Individuals:End}}&lt;br /&gt;
&lt;br /&gt;
== Platform Prevention Policies ==&lt;br /&gt;
{{Prevention:Platforms:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Platforms:End}}&lt;br /&gt;
&lt;br /&gt;
== Regulatory Prevention Policies ==&lt;br /&gt;
{{Prevention:Regulators:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Regulators:End}}&lt;br /&gt;
&lt;br /&gt;
== References ==&lt;br /&gt;
&amp;lt;references&amp;gt;&amp;lt;ref name=&amp;quot;chainaegistwitter-14546&amp;quot;&amp;gt;[https://twitter.com/ChainAegis/status/1797110911523778578 @ChainAegis Twitter] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;chainaegisapp-14547&amp;quot;&amp;gt;[https://app.chainaegis.com/result?type=eth&amp;amp;search=0x185e8dac0cf8cd0967227169ac3c1562ae4e8e2c0121e71041f0f4afad497591 ChainAegis] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;etherscan-14548&amp;quot;&amp;gt;[https://etherscan.io/tx/0x185e8dac0cf8cd0967227169ac3c1562ae4e8e2c0121e71041f0f4afad497591 Ethereum Transaction Hash (Txhash) Details | Etherscan] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;metasleuth-14549&amp;quot;&amp;gt;[https://metasleuth.io/result/eth/0x6435b50861c5895c82a0789c6f91b80561ec1390 https://metasleuth.io/result/eth/0x6435b50861c5895c82a0789c6f91b80561ec1390] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;immunebytes-14550&amp;quot;&amp;gt;[https://www.immunebytes.com/blog/list-of-crypto-phishing-attacks/ List of Crypto Phishing Attacks - ImmuneBytes] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;metasleuth-14551&amp;quot;&amp;gt;[https://metasleuth.io/report/d980a3f5a8870d74b6fd8facfbe5f08b https://metasleuth.io/report/d980a3f5a8870d74b6fd8facfbe5f08b] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;dexcheck-14552&amp;quot;&amp;gt;[https://dexcheck.ai/app/wallet-analyzer/0x6435b50861c5895c82a0789c6f91b80561ec1390 https://dexcheck.ai/app/wallet-analyzer/0x6435b50861c5895c82a0789c6f91b80561ec1390] (Accessed Jul 3, 2024)&amp;lt;/ref&amp;gt;&amp;lt;/references&amp;gt;&lt;/div&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
</feed>