Security Scan Report: apk1preman69.xyz

Site favicon
Submitted: Dec 9, 2025, 9:50:19 AMCompleted: Dec 9, 2025, 9:52:23 AMpubliccompleted
Loading additional data...

Summary

This website contacted 49 IPs in 2 countries across 12 domains to perform 564 HTTP transactions. The main domain is apk1preman69.xyz.

Submitted URL: https://apk1preman69.xyz/desktop/game/slot/microgaming

AI Security Verdict

High Risk

Confidence: 92%

10
Risk Score

Site likely harvests credentials; treat as high‑risk phishing.

Risk Factors
Credential harvesting form on a suspicious, likely newly created domain
Disguised password fields (type=text with password placeholder)
Hidden password fields that can capture credentials without user awareness
Unicode evasion technique to obscure field purpose
Unranked domain with no established reputation
Domain age information unavailable

Details

Page Title

PREMAN69 # Link Masuk Game Online Anti Lag Preman 69

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(88%)

Domain Information

Domain 'apk1preman69.xyz' uses the open generic top-level domain (.xyz) with no subdomain. The core label 'apk1preman69' covers 12 characters containing three vowels alongside 6 consonants, along with 3 digits. Tokenizing the label suggests 6 words: a, pk, 1, pre, man, 69. Average segment length settles at 2 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://apk1preman69.xyz/desktop/game/slot/microgaming

Page Load Overview

96.65s
Total Load Time
564
HTTP Requests
12
Domains
3.6 MB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:15,497 chars
Detector Agreement:60%

Website Classification

Primary Category

gambling betting88% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
88%
entertainment media
88%
documentation technical
77%
technology software
72%
cryptocurrency blockchain
44%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3623.50.131.153Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1157.144.244.1Frankfurt am Main, Hesse, Germany
AS32934FACEBOOK
1152.222.232.141United States
AS16509AMAZON-02
11188.114.96.3United States
AS13335CLOUDFLARENET
112.20.143.66Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1123.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1123.50.131.150Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
112.21.65.28Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
1152.222.232.47United States
AS16509AMAZON-02
1165.8.102.99United States
AS16509AMAZON-02
56449--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FDA4097314561A373A3320E875703F5A9D90D75BD9639BC1B7FCA7A213E6CD8A823260

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:CaxxptiQHtuSsLOLAGuj2Vi+ztKix6bgK2hbDLrCuDNuGFnbJegiWegibKZX3H:Cs68K2b37DvZXD9

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:487712:BKxIG9AnEDCAsAASBkMAQEUpwsAOhAMMLSIBQAKoF2AJBhgFMHhw/ocIg2BVAyqfKYADMAGAvABQgTagzSBgAiABIAQCAYCK

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2c10fd3d183c3c3c
Perceptual Hash:8af53333278b83d8
Difference Hash:49b0f17171797161
Wavelet Hash:2c18fd3d383c3c3c
Color Hash:#53931f

Scan History

Scan history not available

Unable to load historical scan data