Why blocking first beats takedowns alone
A takedown can take days. A user can lose funds in minutes. That’s why we block first and take down second.

Detect fakes the moment they’re registered
Our detection sources monitor Certificate Transparency logs, DNS records, and search indexes around the clock. A new domain that looks, sounds, or resolves like yours gets flagged before it ever reaches a user’s feed.

Block at the point of access
The moment a domain is confirmed malicious, it goes on our blocklist. That blocklist reaches wallets, browsers, and security partners within minutes, so users get warned before they connect a wallet or enter a seed phrase.

Take it down at the source
While the blocklist is protecting users, we file the takedown with the hosting provider or registrar. The site comes offline, and we keep monitoring in case it reappears under a new domain.
Wherever scammers register domains, we’re already watching
Typosquatters don’t wait for a launch to register lookalike domains. Neither do we.
Typosquatting
Lookalike domains built from homoglyphs and common misspellings, like chainpatr0l.com or chianpatrol.com, caught the moment they’re registered.
Fake airdrop pages and wallet drainers
Cloned landing pages timed to launches and mints, and domains running malicious smart contracts that drain a connected wallet the moment a user signs.
Cloned brand sites
Full copies of your official site, sometimes down to the last pixel, built to harvest credentials or seed phrases.
Parked and dormant domains
Lookalike domains registered early and held until a scam campaign is ready to go live.
These are a few of the patterns we cover, not the full list. Detection runs across 28+ sources, including Certificate Transparency monitoring, typosquatting analysis, and third-party threat intel.
Why the best brands don’t handle domain takedowns alone
Most brands either wait for users to report fake domains or use a tool that flags them and hands the problem back. We flag them, block them, and take them down, without your team touching it.
Trusted by 100+ brands to protect their users from fake domains
The most targeted names rely on us to keep phishing domains away from their communities.

“Keeping the Arbitrum community safe is an iterative and ongoing process that ChainPatrol has helped to simplify, as well as improve, with the removal of over 4000+ threats and scams.”
Arbitrum Foundation
@Eli_DeFi, Community Lead

“ChainPatrol stood out with their impressive reporting capabilities, an active and involved team, and superior wallet blocking integration.”
Consensys
Luker
FAQ
Frequently asked questions
How ChainPatrol finds fake domains, blocks them in minutes, and takes them down at the source.
General
Detection
Blocking & Takedowns
Coverage
Still have questions? Book a demo and ask us directly.
See the fake domains targeting your brand right now
We’ll scan the web and show you exactly which domains are impersonating you. Results in 48 hours. No credit card required.