Security Scan Report: oraidex-dis.pages.dev

Site favicon
Submitted: Sep 20, 2026, 10:47:28 PMCompleted: Sep 20, 2026, 10:48:21 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 72%

7
Risk Score

Cloned OraiDEX exchange front end on a pages.dev subdomain, flagged as phishing by a single-source feed. No forms found, but a brand-impersonating DEX with wallet-connect is a classic drainer lure. Avoid connecting a wallet.

Risk Factors
Impersonation of the OraiDEX brand on a non-official domain
Phishing threat-intelligence indicator on the primary domain (single-source, unverified)
Free hosting-platform subdomain (pages.dev) without verifiable ownership
Unranked domain (no Cisco Umbrella reputation)
Wallet-connect interaction on a cloned DEX interface
Domain age information unavailable

Details

Page Title

OraiDEX

Scan Type

public

Domain Name Analysis

The domain 'oraidex-dis.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'oraidex-dis'. The registrable portion 'pages' spans 5 characters containing 2 vowels alongside three consonants. It segments into 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://oraidex-dis.pages.dev

Page Load Overview

12.22s
Total Load Time
1.4 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:635 chars
Detector Agreement:100%

Website Classification

Primary Category

cryptocurrency blockchain67% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
67%
finance banking
32%
gambling betting
31%
corporate
25%

Detected Features

OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
15172.66.44.96Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
620.250.198.32Azure · CLOUDZurich, Zurich, Switzerland
AS8075Microsoft Corporation
6142.251.110.97Google · CDNUnited States
AS15169Google LLC
6104.26.6.38Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
6172.66.47.160Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
6142.251.20.97Google · CDNUnited States
AS15169Google LLC
6216.239.32.36Google · CDNUnited States
AS15169Google LLC
6216.239.34.36Google · CDNUnited States
AS15169Google LLC
6172.67.71.52Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
6104.26.7.38Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
6910--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T146022ED288E01533D127D39573A6A628ABE6610BFA0D0D51B1FC07BCDF89E52EAD3505

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

192:DViCssr/J/t/QunuKyJRQQn0sr/J/t/QunukDZu9uUQiGXizm:D4xBOQiWiS

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:8425:IQEyIQYpAqIARVDIyARKrQsbBNcwpFw8IVLEJSJATkHsAJURARCogEmIUaa4QCECEQwo0IgQAWKKZBIMIIQEAYqtkIEYthgV

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffff000404000000
Perceptual Hash:92aaebae2a2a2a7a
Difference Hash:61a8bcfcbcbc3c51
Wavelet Hash:ffff060f0f0f0600
Color Hash:#87bac5

Scan History

Scan history not available

Unable to load historical scan data