Security Scan Report: bento123ndxhealth.xyz

Site favicon
Submitted: Jan 3, 2026, 9:54:00 PMCompleted: Jan 3, 2026, 9:55:19 PMpubliccompleted
Loading additional data...

Summary

This website contacted 8 IPs in 2 countries across 7 domains to perform 319 HTTP transactions. The main domain is bento123ndxhealth.xyz and was registered NaN years ago.

Submitted URL: https://bento123ndxhealth.xyz/desktop/game/slot/nlc

AI Security Verdict

High Risk

Confidence: 92%

7
Risk Score

Site likely used for credential harvesting; treat as high‑risk phishing.

Risk Factors
Hidden password field (credential harvesting)
Login form on a newly registered domain
Domain age < 30 days
Unranked/low‑reputation domain
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

entertainment media

(89%)

Domain Information

You're looking at domain 'bento123ndxhealth.xyz' on the open generic top-level domain (.xyz) with no subdomain. Count 17 characters in 'bento123ndxhealth' split between 4 vowels and ten consonants, along with 3 digits. Tokenizing the label suggests five words: bento, 123, nd, x, health. Average segment length settles at three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://bento123ndxhealth.xyz/desktop/game/slot/nlc

Page Load Overview

10.36s
Total Load Time
231
HTTP Requests
7
Domains
689 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:5,147 chars
Detector Agreement:80%

Website Classification

Primary Category

entertainment media89% confidence
Type: webapp
Method: ml+structural

All Detected Categories

entertainment media
89%
gambling betting
74%
adult content
65%
e-commerce shopping
51%
technology software
46%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
3565.8.102.99United States
AS16509AMAZON-02
2823.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2823.50.131.150Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2813.226.247.206United States
AS16509AMAZON-02
28188.114.97.3United States
AS13335CLOUDFLARENET
2823.36.162.17Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2813.226.247.213United States
AS16509AMAZON-02
2823.50.131.153Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2318--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T13C44BC3114F2243315B380E479A46B4BAFC1F603D65A8B84B1FD2BE55FD7E96AC13229

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:ZCZdOTXOYBtZbDTBgQfupeu3FFRkAoTojbrauhp:ZCZdOTXOYBtZbDTBgQfuperKd

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:275819:J4KEqDCIgAIBEClFgFVCEFYByCxZBhWEHDxAQChnA1BwohEocBcHARRIyQdkwBkSFIkEhpLCZE5EAFUhECVFAqJCihGrOCOs

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2010fd3d003c3d3d
Perceptual Hash:8a742377278bd338
Difference Hash:4db0f171f1696969
Wavelet Hash:2038ff3f003c3d3d
Color Hash:#4fbf40

Scan History

Scan history not available

Unable to load historical scan data