Security Scan Report: ratuslot.app

Site favicon
Submitted: Sep 27, 2026, 12:21:32 AMCompleted: Sep 27, 2026, 12:22:08 AMpubliccompleted

AI Security Verdict

Moderate Risk

Confidence: 65%

5
Risk Score

Self-branded unlicensed Indonesian online casino with no forms, no impersonation and no malware/IoC hits. Illegal gambling exposure drives a moderate risk rating rather than phishing.

Risk Factors (3)
Unlicensed online casino / sportsbook targeting Indonesian users where gambling is illegal
Accepts real-money deposits via QRIS and Indonesian e-wallets (DANA, OVO, GoPay)
Domain is recent (128 days) and not ranked in Cisco Umbrella top 1M
Safety Factors (4)
No brand impersonation — site displays its own brand 'ratuslot' matching its domain
No credential or payment forms on the page (0 password, 0 payment, 0 total forms)
No Indicators of Compromise, no YARA malware patterns, no IDS alerts, no Safe Browsing hits
No obfuscated or credential-exfiltrating JavaScript detected
Domain age information unavailable

Details

Page Title

ratuslot | Online Casino & Slots with QRIS DANA OVO for Indonesia

Scan Type

public

Domain Name Analysis

Within the application-focused generic top-level domain (.app), 'ratuslot.app' is registered and has no subdomain. The second-level label 'ratuslot' is 8 characters long split between 3 vowels and five consonants. Tokenizing the label suggests three words: rat, us, lot. Median word length comes out to three characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ratuslot.app/

Page Load Overview

1.68s
Total Load Time
1.7 MB
Total Size

Language Analysis

Primary Language

🇺🇸English
Code: en
Confidence:80%
Script:Latin
Direction:ltr

Detection Details

HTML Lang Attribute:en-ID
Text Length:10,182 chars
Detector Agreement:100%

Website Classification

Primary Category

entertainment media88% confidence
Type: dynamic
Method: ml+structural

All Detected Categories

entertainment media
88%
gambling betting
83%
technology software
62%
adult content
42%
corporate
25%

Detected Features

OG: website
Schema.org

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
14188.114.97.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3104.17.207.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3142.251.13.95Google · CDNUnited States
AS15169Google LLC
3175.41.22.204Japan
AS963N963 PTE. LTD.
3192.178.183.94Google · CDNUnited States
AS15169Google LLC
3188.114.96.9Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3104.17.208.5Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
3142.251.153.119Google · CDNUnited States
AS15169Google LLC
3142.251.150.119Google · CDNUnited States
AS15169Google LLC
3192.178.183.120Google · CDNUnited States
AS15169Google LLC
7722--

Detected Technologies5

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1E1938421B1E1353B5063C1A677927B6EBEBAC107C3170D68B3BE53A40F96CD79863609

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:D0qbcwfUct9uLdaNGlAh6J2ARuPY59203TnWV84KwiR:+wf1CLdaeAh6J2ARuPY59203TnA8t

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:93683:TjAcChMEKagKy4YGAaI7JCxweAAgVPAEIAAEYAIoUDkN45CHWgUBewAJgAKPGAEH1MgSMPsEiZkoGBAmLdAQEZagDIBldQhY

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:fbf1d1ffffff8100
Perceptual Hash:eded61961292b30d
Difference Hash:6723232d234f338d
Wavelet Hash:f3c181dfdfe70100
Color Hash:#3a7863

Scan History

Scan history not available

Unable to load historical scan data