Security Scan Report: ndxx-bento123.com

Site favicon
Submitted: Dec 27, 2025, 3:52:20 AMCompleted: Dec 27, 2025, 3:53:04 AMpubliccompleted
Loading additional data...

Summary

This website contacted 6 IPs in 3 countries across 7 domains to perform 521 HTTP transactions. The main domain is ndxx-bento123.com and was registered NaN years ago.

Submitted URL: https://ndxx-bento123.com/desktop/game/slot/og

AI Security Verdict

Confirmed Scam

Confidence: 95%

10
Risk Score

Confirmed phishing scam; do not use the site.

Risk Factors
Newly registered domain (<7 days)
Credential harvesting form with multiple password fields
Disguised password fields (type='text' with password placeholder)
Hidden password fields
Unicode evasion in form fields
Domain age information unavailable

Details

Page Title

BENTO123 # Situs Slot Online Dengan Bonus Promosi Paling Menguntungkan 2025.

Scan Type

public

Language

🇮🇩

ID

(80% confidence)

Category

gambling betting

(94%)

Domain Information

The domain name 'ndxx-bento123.com' uses the commercial generic top-level domain (.com) while skipping any subdomain. The core label 'ndxx-bento123' covers 13 characters with two vowels and 7 consonants; it also includes three digits and 1 hyphen. Segmentation suggests 4 words: nd, xx, bento, 123. Median word length is 2.5 characters. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://ndxx-bento123.com/desktop/game/slot/og

Page Load Overview

15.11s
Total Load Time
531
HTTP Requests
8
Domains
3.5 MB
Total Size

Language Analysis

Primary Language

🇮🇩Indonesian
Code: id
Confidence:80%
Script:Unknown
Direction:ltr

Detection Details

Language Code:id
Detection Confidence:80%
Script Type:Unknown
HTML Lang Attribute:id
Text Length:7,062 chars
Detector Agreement:60%

Website Classification

Primary Category

gambling betting94% confidence
Type: webapp
Method: ml+structural

All Detected Categories

gambling betting
94%
entertainment media
83%
documentation technical
73%
technology software
58%
adult content
38%

Detected Features

Login Form
OG: website

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
9145.192.223.64Mauritius
AS13335CLOUDFLARENET
8823.36.162.17United States
8865.8.102.45Mauritius
8852.222.232.141Germany
8823.36.162.25UnknownUnknown
8823.50.131.150UnknownUnknown
5316--

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1CD64093255963437313371D87CA52B89AEB15247C1278F0872FC57A27FE2D68AC13E9A

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

6144:lCOOYBtZbDTiJYJf9bP1lB5rdl+9AUG9AU8AtZVa5:lGJYnPHRSkVa5

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:325321:Ew7RA9tIUGwigJilYLBgngAWMDBACBySSMDIV4AWoygAmLgIACGTIUAJlEKUAEgIGiuGhIFGFKIcoAWy1KDMAIATCMFBtDwA

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:2c10fd3d183c3d3d
Perceptual Hash:8a7423532f8bd3b8
Difference Hash:49b4f17171596969
Wavelet Hash:2c10fd3d183c3d3d
Color Hash:#1f937e

Scan History

Scan history not available

Unable to load historical scan data