Security Scan Report: ndxx-bento123.com

Site favicon
Submitted: Dec 30, 2025, 9:25:18 PMCompleted: Dec 30, 2025, 9:26:49 PMpubliccompleted
Loading additional data...

Summary

This website contacted 9 IPs in 3 countries across 7 domains to perform 320 HTTP transactions. The main domain is ndxx-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx-bento123.com/desktop/game/slot/nlc

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

New unranked site with hidden password field; classified as confirmed phishing scam.

Risk Factors
Newly registered domain (<7 days) with credential‑harvesting form
Hidden password field suggests attempt to harvest credentials covertly
Unranked domain lacking reputation
Login form on a site that appears to be a gambling promotion
Multiple email/username fields increase data collection scope
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

entertainment media

(90%)

Domain Information

The domain name 'ndxx-bento123.com' uses the commercial generic top-level domain (.com) and has no subdomain. The core label 'ndxx-bento123' covers 13 characters containing 2 vowels alongside 7 consonants, plus three digits and one hyphen. Splitting it apart reveals 4 words: nd, xx, bento, 123. Average segment length settles at 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx-bento123.com/desktop/game/slot/nlc

Page Load Overview

14.95s
Total Load Time
234
HTTP Requests
7
Domains
689 KB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:5,079 chars
Detector Agreement:80%

Website Classification

Primary Category

entertainment media90% confidence
Type: webapp
Method: ml+structural

All Detected Categories

entertainment media
90%
gambling betting
74%
adult content
65%
e-commerce shopping
47%
technology software
45%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
2623.36.162.71Germany
262.21.239.210United States
2665.8.102.45Mauritius
2645.192.223.64Mauritius
AS13335CLOUDFLARENET
2652.222.232.119United States
AS16509AMAZON-02
2652.222.232.47United States
AS16509AMAZON-02
2623.36.162.25Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2623.36.162.17Frankfurt am Main, Hesse, Germany
AS20940Akamai International B.V.
2623.36.162.84UnknownUnknown
2349--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T17E44CD3114F2243211B380E479A46B4BAFC1F603D65B8B84B1FD6BE55FD7E96AC13229

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

1536:8CdOOYBtZbDTIQfupyu3FFRkAoTDQEXx/sauhp:8CdOOYBtZbDTIQfupyrEwa

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:275165:gO5TEjSEEozFSYUsTFAA0riLAjpTcQIskIi5UQABoMB1BgRJgyWAEiaAsYsQEAAAEncsVIKLKAPfhyAohAUIq5MaEZggCKQh

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2010fd3d003c3d3d
Perceptual Hash:8a742377278bd338
Difference Hash:4db0f171f1696969
Wavelet Hash:2038ff3f003c3d3d
Color Hash:#ac7153

Scan History

Scan history not available

Unable to load historical scan data