Security Scan Report: ndxx1-bento123.com

Site favicon
Submitted: Dec 28, 2025, 2:49:56 PMCompleted: Dec 28, 2025, 2:51:05 PMpubliccompleted
Loading additional data...

Summary

This website contacted 5 IPs in 2 countries across 7 domains to perform 524 HTTP transactions. The main domain is ndxx1-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx1-bento123.com/desktop/game/slot/jili

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam – credential‑harvesting form on a brand‑new, unranked domain.

Risk Factors
Domain registered within 7 days (critical age)
Credential harvesting form with disguised password fields
Multiple password fields on a newly created site
Unranked domain with no reputation
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(94%)

Domain Information

Domain 'ndxx1-bento123.com' uses the commercial generic top-level domain (.com) while skipping any subdomain. The core label 'ndxx1-bento123' covers 14 characters with two vowels and seven consonants; it also includes 4 digits and 1 hyphen. Word splitting yields 5 words: nd, xx, 1, bento, 123. Median word length comes out to two characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx1-bento123.com/desktop/game/slot/jili

Page Load Overview

49.00s
Total Load Time
524
HTTP Requests
0
Domains
N/A
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:7,542 chars
Detector Agreement:60%

Website Classification

Primary Category

gambling betting94% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
94%
entertainment media
83%
documentation technical
73%
technology software
58%
adult content
38%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
47345.192.223.64Mauritius
AS13335CLOUDFLARENET
2413.226.247.206UnknownUnknown
52.16.1.243UnknownUnknown
365.8.102.72UnknownUnknown
12.16.1.171Germany
AS20940Akamai International B.V.
05--

Detected Technologies8

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1FA74E63155E62437313370D87CA52B89AEB19247C1278F4473FC5BA27FE2DA8AC13A59

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:lCOOYBtZbDTiJYJY20+pTxIxu9AUM9AUR/ZVd5:lGJY6f+pTxIxRMaVd5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:354517:iDGCZCyoEkAKshJFBAIUBEhiAhAfkCRziZgCEdITRYwAIXCIKOHFAAf0MkhKAABVoADql56DoRTiLo3GUGWANCAlGAgEKCwQ

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2c10fd3d103c3d3d
Perceptual Hash:8a742357278bd339
Difference Hash:49b4f17171696969
Wavelet Hash:2c107d3d383c3d3d
Color Hash:#70783a

Scan History

Scan history not available

Unable to load historical scan data