Security Scan Report: camelotexchange-frontend.pages.dev

Site favicon
Submitted: Sep 19, 2026, 5:47:31 PMCompleted: Sep 19, 2026, 5:47:54 PMpubliccompleted

AI Security Verdict

High Risk

Confidence: 70%

7
Risk Score

Replica 'Camelot DEX' frontend on a pages.dev subdomain with a single-source phishing report and wallet-connect prompts; no forms or malware, but brand mismatch plus IoC makes this unsafe to connect a wallet to.

Risk Factors (4)
Brand impersonation of Camelot DEX on a mismatched pages.dev hostname
Single-source phishing IoC on the primary domain
Wallet-connect interaction promoted on a non-official replica frontend
Unknown/unranked domain with no reputation
Domain age information unavailable

Details

Page Title

Camelot DEX | Arbitrum native Decentralized Exchange

Scan Type

public

Domain Name Analysis

The domain 'camelotexchange-frontend.pages.dev' uses the developer-focused generic top-level domain (.dev) with subdomain 'camelotexchange-frontend'. Its registrable label 'pages' stretches across 5 characters holding two vowels versus three consonants. It segments into 1 word: pages. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://camelotexchange-frontend.pages.dev

Page Load Overview

2.05s
Total Load Time
996 KB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en
Text Length:1,195 chars
Detector Agreement:80%

Website Classification

Primary Category

cryptocurrency blockchain88% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

cryptocurrency blockchain
88%
technology software
70%
documentation technical
59%
social media network
52%
government public service
37%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
4188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
2142.251.20.95Google · CDNUnited States
AS15169Google LLC
2142.251.13.94Google · CDNUnited States
AS15169Google LLC
2172.67.74.234Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
125--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T11871A7967680D01D157A874C64C67424828EFE1788348CED73EF23798643FF4AA7B52B

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

48:bNo/tylApggg/OD7oiofohoIDgoGp6fl3MAV3pS2affFpcYTBcF:xolYApRdDPDgp6fl3MA3pS24pjNcF

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:3788:GAAIAGAAAHAURAAAjQkQAwAFEwAEhBAUBIBAIhWAgCFBgBoQSSBIQABIAAhAIAgECKEAQAABESABEATAAFBgaIAAEJADIAZA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffffe7e7ffffff
Perceptual Hash:e626999966669999
Difference Hash:0000000c08000000
Wavelet Hash:ffffffe720200000
Color Hash:#3a5678

Other Hashes

Crop Resistant:0000000c08000000

Scan History

Scan history not available

Unable to load historical scan data