Phishing Address
A phishing address is a wallet that received funds obtained by tricking a victim into signing a malicious transaction or approving a fraudulent token spending allowance, typically through a fake website, wallet-drainer link, or impersonated support contact.
Phishing Address
A phishing address is a wallet that received funds obtained by tricking a victim into signing a malicious transaction or approving a fraudulent token spending allowance, typically through a fake website, wallet-drainer link, or impersonated support contact.
What it means
Unlike a smart contract exploit, phishing targets the human, not the code. A victim is convinced to connect their wallet to a fake site or approve what looks like a routine transaction, and a malicious contract then transfers out tokens the victim has, often unknowingly, authorized it to spend — sometimes emptying an entire wallet in a single approved transaction.
Phishing infrastructure has industrialized in recent years around "drainer" toolkits sold or rented to less technical operators, which package the malicious contract, the fake front-end, and the distribution mechanism together. This has made phishing-address volume grow substantially even as security awareness about mixers and obviously fake sites has improved.
Real-world example
Wallet-drainer kits like Inferno Drainer were linked to hundreds of millions of dollars in stolen funds across thousands of victim wallets before researchers and platforms moved to disrupt the service in 2023 and 2024, illustrating how a single toolkit can generate large volumes of phishing-address activity.
Related terms
In FreezeRadar
FreezeRadar's label dataset tracks known phishing and drainer-linked addresses, flagging both direct receipt of drained funds and downstream movement through subsequent wallets.
By FreezeRadar Team
Research and product team behind FreezeRadar.
Related reading
Continue exploring FreezeRadar knowledge content.