Security Scan Report: ndxx-bento123.com

Site favicon
Submitted: Jan 5, 2026, 10:46:33 AMCompleted: Jan 5, 2026, 10:47:53 AMpubliccompleted
Loading additional data...

Summary

This website contacted 10 IPs in 3 countries across 7 domains to perform 318 HTTP transactions. The main domain is ndxx-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx-bento123.com/desktop/game/slot/habanero

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

High‑risk phishing site; newly registered domain with hidden password field.

Risk Factors
Very new domain (<30 days) with credential‑harvesting form
Hidden password field suggests attempt to harvest credentials covertly
Unranked domain lacking reputation
Login form on a brand‑new gambling site
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

entertainment media

(84%)

Domain Information

The domain name 'ndxx-bento123.com' uses the commercial generic top-level domain (.com) with no subdomain. Count 13 characters in 'ndxx-bento123' containing two vowels alongside 7 consonants, notching 3 digits and one hyphen. Breaking it apart gives 4 words: nd, xx, bento, 123. Median word length is 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx-bento123.com/desktop/game/slot/habanero

Page Load Overview

11.18s
Total Load Time
255
HTTP Requests
8
Domains
943 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:6,342 chars
Detector Agreement:60%

Website Classification

Primary Category

entertainment media84% confidence
Type: webapp
Method: ml+structural

All Detected Categories

entertainment media
84%
gambling betting
72%
adult content
44%
e-commerce shopping
33%
social_media
25%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3023.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2545.192.223.64Mauritius
AS13335CLOUDFLARENET
2565.8.102.45Mauritius
2513.226.247.189United States
AS16509AMAZON-02
2513.226.247.206United States
AS16509AMAZON-02
2523.53.42.242UnknownUnknown
2523.36.162.17Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2565.8.102.72UnknownUnknown
252.21.65.28UnknownUnknown
25184.86.103.208UnknownUnknown
25510--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13074BA3114F2243315B380E43964AB4BAF91F607D61B8B84B2FD6BE15FE7D95AC13229

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:8CZdOTXOYBtZbDTBNuQfupixe1cRjIllGixLH3j4xx/sauhp:8CZdOTXOYBtZbDTBNuQfupiySa

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:349623:FsZKLARqAI0QELGGNVEHUGghtQ7dNXRAQFgM6BlxmJUDAg8gV5JRFGBowggAAAaAAUlwAIUZUaSMjVoI1AAIITg0KUkzDKiw

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2010fd3d003c3d3d
Perceptual Hash:8a742376678bd338
Difference Hash:4db0f171f1697179
Wavelet Hash:2038ff3f003c3d3d
Color Hash:#bf40ac

Scan History

Scan history not available

Unable to load historical scan data