
Detect fakes the moment they’re registered
Our detection sources monitor Certificate Transparency logs, DNS records, and search indexes around the clock. A new domain that looks, sounds, or resolves like yours gets flagged before it ever reaches a user’s feed.

Block at the point of access
The moment a domain is confirmed malicious, it goes on our blocklist. That blocklist reaches wallets, browsers, and security partners within minutes, so users get warned before they connect a wallet or enter a seed phrase.

Take it down at the source
While the blocklist is protecting users, we file the takedown with the hosting provider or registrar. The site comes offline, and we keep monitoring in case it reappears under a new domain.
Typosquatting
Lookalike domains built from homoglyphs and common misspellings, like chainpatr0l.com or chianpatrol.com, caught the moment they’re registered.
Fake airdrop pages and wallet drainers
Cloned landing pages timed to launches and mints, and domains running malicious smart contracts that drain a connected wallet the moment a user signs.
Cloned brand sites
Full copies of your official site, sometimes down to the last pixel, built to harvest credentials or seed phrases.
Parked and dormant domains
Lookalike domains registered early and held until a scam campaign is ready to go live.

“Keeping the Arbitrum community safe is an iterative and ongoing process that ChainPatrol has helped to simplify, as well as improve, with the removal of over 4000+ threats and scams.”
Arbitrum Foundation
@Eli_DeFi, Community Lead

“ChainPatrol stood out with their impressive reporting capabilities, an active and involved team, and superior wallet blocking integration.”
Consensys
Luker